Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

System Shutdown.exe keeps coming randomly


  • Please log in to reply

#1
spywareridden

spywareridden

    Member

  • Member
  • PipPip
  • 37 posts
Hi,
Please see the attached image, it keeps coming randomly and reboots the laptop.
i also keep getting the active x install message whenver i start the laptop.

I ran the TFC , cleaned up the temp file. Ran the Erut for the backup of registry.
Ran the quick scan of MBAM .. Attached is the MBAM log.

System also keeps running out of memory very quickly, i end up rebooting it too often.. :) pls advise....

Attached Thumbnails

  • sys_error_jpg.JPG

Attached Files


  • 0

Advertisements


#2
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Hi spywareridden,

Welcome to Geeks To Go!

My name is mpascal, and I will be helping you fix your problem.

Before we begin, I would like to make a few things clear so that we can fix your problem as efficiently as possible:
  • Be sure to follow all my instructions carefully! If there is anything you don't understand, don't hesitate to ask.
  • Please do not do anything or perform other steps unless I have asked you to do so.
  • Please make sure you post all logs I ask you to, and make sure that the entire log gets posted.
  • Don't attach any logs unless asked. Posting them in the forums will make them easier to analyze.
  • If you are unsure of how to reply, or need help with anything regarding the website, please look here.
Sorry for the delay, the forums here get very busy and sometimes topics get overlooked.

As it has been a few days, I'm going to need some fresh logs. Please run the following:

STEP 1 - Stop Shutdown

If at any time your system has the shutdown counter, all you have to do is run the following batch file and it should stop. This way you should be able to run the programs without any interruptions.

Please open notepad by going Start -> Run and type "notepad.exe. Copy and paste the following into the blank document:
@echo off
shutdown -a
exit
  • Save to your desktop as: fix.bat
  • Save as file type: All Files
You can open the file by double clicking fix.bat on your desktop. The file should only open briefly.

STEP 2 - MBAM

Open Malwarebyte's Anti-Malware.
  • Under the Updates tab, click Check for Updates. Let the updates install (if any).
  • After that, under the Scanner tab, click Perform Quick Scan and then Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
  • Exit MBAM when done.
Note: If MBAM encounters a file that is difficult to remove, you will be asked to reboot your computer so MBAM can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware.

STEP 3 - GMER

Please download GMER from one of the following locations and save it to your desktop:
  • Main Mirror
    This version will download a randomly named file (Recommended)
  • Zipped Mirror
    This version will download a zip file you will need to extract first. If you use this mirror, please extract the zip file to your desktop.
  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.
  • Double-click on the randomly named GMER file (i.e. n7gmo46c.exe) and allow the gmer.sys driver to load if asked.
  • Note: If you downloaded the zipped version, extract the file to its own folder such as C:\gmer and then double-click on gmer.exe.

    Posted Image
  • GMER will open to the Rootkit/Malware tab and perform an automatic quick scan when first run. (do not use the computer while the scan is in progress)
  • If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
  • Now click the Scan button. If you see a rootkit warning window, click OK.
  • When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
  • Click the Copy button and paste the results into your next reply.
  • Exit GMER and be sure to re-enable your anti-virus, Firewall and any other security programs you had disabled.
-- If you encounter any problems, try running GMER in safe mode.
-- If GMER crashes or keeps resulting in a BSODs, uncheck Devices on the right side before scanning
.

STEP 4 - OTL

Open OTL. Make sure all other windows are closed and to let it run uninterrupted.
  • When the window appears, underneath Output at the top change it to Minimal Output.
  • Change the Standard Registry and Extra Registry options to Use Safelist.
  • Check the boxes beside LOP Check and Purity Check.
  • In the Custom Scans box, copy and paste the following:
    netsvcs
    drivers32 /all
    %SYSTEMDRIVE%\*.*
    %systemroot%\system32\Spool\prtprocs\w32x86\*.dll
    %systemroot%\system32\*.wt
    %systemroot%\system32\*.ruy
    %systemroot%\Fonts\*.com
    %systemroot%\system32\spool\prtprocs\w32x86\*.tmp
    %systemroot%\*. /mp /s
    CREATERESTOREPOINT
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\user32.dll /md5
    %systemroot%\system32\ws2_32.dll /md5
    %systemroot%\system32\ws2help.dll /md5
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs
  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply.
STEP 5 - Reply

Please reply with the following logs:
  • MBAM Log
  • OTL Log
  • GMER Log

  • 0

#3
spywareridden

spywareridden

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Hi mpascal,
Thanks for reverting...
i tried to run the GMER utility in the regular mode , on all ocassions it kept on running and on most ocassions it ended up when the system rebooted , blue screen dump.. then on one ocassion it ran completely ( in 4 hours :) ) but i couldnt save the log as it hung on me... then i ran GMER in safe mode.. attached is the log but it isnt that long as i got in the normal mode... following are the logs from otl, gmer and mbam.. please advise on the next step.. also the system takes ages to log off mostly i have to use hard shut down as it seems to be stuck in the log off screen for very long. but if i leave it like that it usually shuts properly..

GMER Log
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-07-05 18:32:10
Windows 5.1.2600 Service Pack 2
Running: 59b413uq.exe; Driver: C:\DOCUME~1\XXXX~1.HC~\LOCALS~1\Temp\pxtdipow.sys


---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\ControlSet001\Services\BTHPORT\Parameters\Keys\001e3759824b (not active ControlSet)
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\001e3759824b
Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\001e3759824b (not active ControlSet)

---- EOF - GMER 1.0.15 ----



MBAM Log
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4275

Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702

7/4/2010 8:09:48 PM
mbam-log-2010-07-04 (20-09-48).txt

Scan type: Quick scan
Objects scanned: 163291
Time elapsed: 11 minute(s), 20 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 1
Files Infected: 3

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Golden Palace Casino PT (Trojan.DNSChanger) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\fontcomruntime (Trojan.Downloader) -> Quarantined and deleted successfully.

Files Infected:
C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\fontcomruntime\fontcomruntime.dll (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\config\systemprofile\Application Data\fvgqad.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\config\systemprofile\oashdihasidhasuidhiasdhiashdiuasdhasd (Malware.Trace) -> Quarantined and deleted successfully.



Extra.txt

OTL Extras logfile created on: 7/5/2010 4:38:05 PM - Run 3
OTL by OldTimer - Version 3.2.1.0 Folder = C:\Documents and Settings\XXXXs.XXXX\Desktop\geekstogo
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 53.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 76.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 20.00 Gb Total Space | 6.09 Gb Free Space | 30.42% Space Free | Partition Type: NTFS
Drive D: | 54.47 Gb Total Space | 12.44 Gb Free Space | 22.83% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: XXXX
Current User Name: XXXXs
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe" = C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe:*:Enabled:Microsoft Office Live Meeting 2007 -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE" = C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\WINDOWS\essledv.exe" = C:\WINDOWS\essledv.exe:*:Disabled:Sandboxie Start -- File not found
"C:\Program Files\Orbitdownloader\orbitdm.exe" = C:\Program Files\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit -- (Orbitdownloader.com)
"C:\Program Files\Orbitdownloader\orbitnet.exe" = C:\Program Files\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit -- (Orbitdownloader.com)
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe" = C:\Program Files\Microsoft Office\Live Meeting 8\Console\PWConsole.exe:*:Enabled:Microsoft Office Live Meeting 2007 -- (Microsoft Corporation)
"C:\Program Files\Vuze\Azureus.exe" = C:\Program Files\Vuze\Azureus.exe:*:Enabled:Azureus / Vuze -- (Vuze Inc.)
"C:\Program Files\VideoLAN\VLC\vlc.exe" = C:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player -- ()
"C:\Program Files\Microsoft Office Communicator\communicator.exe" = C:\Program Files\Microsoft Office Communicator\communicator.exe:*:Enabled:Office Communicator -- (Microsoft Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{08234a0d-cf39-4dca-99f0-0c5cb496da81}" = Bing Bar
"{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Windows Live ID Sign-in Assistant
"{0D1CBBB9-F4A8-45B6-95E7-202BA61D7AF4}" = Microsoft Office Communicator 2007 R2
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1C1A21AF-75C5-42A1-89B9-419121336BF5}" = Microsoft Conferencing Add-in for Microsoft Office Outlook
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java™ 6 Update 17
"{26E76762-7F20-4694-AD06-CC3A9B547A71}" = Microsoft Office Live Meeting 2007
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{2CCBABCB-6427-4A55-B091-49864623C43F}" = Google Toolbar for Firefox
"{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}" = Rhapsody Player Engine
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{42929F0F-CE14-47AF-9FC7-FF297A603021}" = Dell Resource CD
"{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{5E4B86E5-CD0E-4D3D-BE21-45A30326850A}" = Microsoft Search Enhancement Pack
"{72EEB695-388B-4835-8EA6-0C04545B06B9}" = Intel® PROSet/Wireless WiFi Software
"{76BC2442-0002-47FA-9617-43BAD82BEF4C}" = Bonjour
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A708DD8-A5E6-11D4-A706-000629E95E20}" = Intel® Graphics Media Accelerator Driver
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{903A0409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Project Standard 2003
"{90510409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Visio Professional 2003
"{961034C0-58DF-11DF-97FD-005056806466}" = Google Earth Plug-in
"{99052DB7-9592-4522-A558-5417BBAD48EE}" = Microsoft ActiveSync
"{996A2FAA-7514-4628-9D12-A8FC34A0016E}" = iTunes
"{9C9D0F85-5658-4A5E-95A9-65F7DB2916EE}" = Broadcom 440x 10/100 Integrated Controller
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = ALPS Touch Pad Driver
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}" = MSXML 6.0 Parser
"{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}" = SigmaTel Audio
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1033-7B44-A91000000001}" = Adobe Reader 9.1
"{B5C3B892-0849-476C-9F46-B12F84819D57}" = Apple Mobile Device Support
"{B95B1BA9-F887-4B3C-8D3A-CCD4C4675120}" = Microsoft Default Manager
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{E21DA178-9FB0-4F91-B79C-5A6DDEEBFB8D}" = Bing Bar Platform
"{EBFEEB3F-3E3B-4725-A4E0-376144CE4F76}" = Citrix XenApp Web Plugin
"8461-7759-5462-8226" = Vuze
"ActiveTouchMeetingClient" = WebEx
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Ashampoo Burning Studio 6 FREE_is1" = Ashampoo Burning Studio 6 FREE
"Broadcom 802.11b Network Adapter" = Dell Wireless WLAN Card
"Burn4Free" = Burn4Free CD and DVD
"Crack-Gmat Diagnostic Test_is1" = Crack-Gmat Diagnostic Test
"Data Doctor-Length and Area Convertor_is1" = Data Doctor-Length and Area Convertor 2.0.1.5
"EB88B6218325D2AB47CFFBF7170236B60A6198FF" = Windows Driver Package - Microsoft Corporation (usbvideo) Image (05/25/2007 1.0.3656.0)
"ENTERPRISE" = Microsoft Office Enterprise 2007
"ERUNT_is1" = ERUNT 1.1j
"GMAT POWERPREP" = GMAT POWERPREP
"Google Desktop" = Google Desktop
"ie8" = Windows Internet Explorer 8
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"OfficeScanNT" = Trend Micro OfficeScan Client
"Orbit_is1" = Orbit Downloader
"ProInst" = Intel PROSet Wireless
"Qlock" = Qlock Lite
"Reliance Netconnect - Broadband+" = Reliance Netconnect - Broadband+
"Remote Administrator v2.2" = Remote Administrator v2.2
"Rhapsody" = Rhapsody
"Unlocker" = Unlocker 1.8.8
"VLC media player" = VLC media player 1.0.3
"Vuze_Remote Toolbar" = Vuze_Remote Toolbar
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WinRAR archiver" = WinRAR archiver
"WinZip" = WinZip
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 7/5/2010 1:51:47 PM | Computer Name = XXXX | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1969

Error - 7/5/2010 1:51:52 PM | Computer Name = XXXX | Source = Google Update | ID = 20
Description =

Error - 7/5/2010 2:01:05 PM | Computer Name = XXXX | Source = Userenv | ID = 1054
Description = Windows cannot obtain the domain controller name for your computer
network. (The specified domain either does not exist or could not be contacted.
). Group Policy processing aborted.

Error - 7/5/2010 2:01:10 PM | Computer Name = XXXX | Source = Google Update | ID = 20
Description =

Error - 7/5/2010 2:02:15 PM | Computer Name = XXXX | Source = AutoEnrollment | ID = 15
Description = Automatic certificate enrollment for local system failed to contact
the active directory (0x8007054b). The specified domain either does not exist
or could not be contacted. Enrollment will not be performed.

Error - 7/5/2010 2:03:48 PM | Computer Name = XXXX | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft ActiveSync -- Error.No valid source could be found
for product Microsoft ActiveSync. The Windows Installer cannot continue.

Error - 7/5/2010 5:30:25 PM | Computer Name = XXXX | Source = Userenv | ID = 1054
Description = Windows cannot obtain the domain controller name for your computer
network. (The specified domain either does not exist or could not be contacted.
). Group Policy processing aborted.

Error - 7/5/2010 5:30:30 PM | Computer Name = XXXX | Source = Google Update | ID = 20
Description =

Error - 7/5/2010 5:31:33 PM | Computer Name = XXXX | Source = AutoEnrollment | ID = 15
Description = Automatic certificate enrollment for local system failed to contact
the active directory (0x8007054b). The specified domain either does not exist
or could not be contacted. Enrollment will not be performed.

Error - 7/5/2010 5:33:05 PM | Computer Name = XXXX | Source = MsiInstaller | ID = 11706
Description = Product: Microsoft ActiveSync -- Error.No valid source could be found
for product Microsoft ActiveSync. The Windows Installer cannot continue.

[ OSession Events ]
Error - 6/8/2010 2:51:05 AM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 120
seconds with 60 seconds of active time. This session ended with a crash.

Error - 6/8/2010 1:00:30 PM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session
lasted 4512 seconds with 1320 seconds of active time. This session ended with a
crash.

Error - 6/9/2010 1:13:22 AM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 13139
seconds with 4200 seconds of active time. This session ended with a crash.

Error - 6/14/2010 12:53:28 PM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 10582
seconds with 2940 seconds of active time. This session ended with a crash.

Error - 6/29/2010 3:50:54 AM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 11237
seconds with 2400 seconds of active time. This session ended with a crash.

Error - 6/29/2010 2:57:36 PM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 8893
seconds with 240 seconds of active time. This session ended with a crash.

Error - 7/1/2010 5:56:46 PM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 11565
seconds with 3660 seconds of active time. This session ended with a crash.

Error - 7/2/2010 9:02:09 AM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 17
seconds with 0 seconds of active time. This session ended with a crash.

Error - 7/3/2010 10:52:03 PM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 6, Application Name: Microsoft Office Outlook, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 3365
seconds with 1260 seconds of active time. This session ended with a crash.

Error - 7/4/2010 4:47:21 AM | Computer Name = XXXX | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 3852
seconds with 240 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 7/4/2010 2:39:16 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/4/2010 7:36:37 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/4/2010 8:15:42 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/4/2010 8:25:56 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/4/2010 9:22:14 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/4/2010 9:46:58 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/4/2010 11:47:44 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/5/2010 12:40:44 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/5/2010 2:01:05 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

Error - 7/5/2010 5:30:25 PM | Computer Name = XXXX | Source = NETLOGON | ID = 5719
Description = No Domain Controller is available for domain HCLISD due to the following:
%%1311. Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.


< End of report >



OTL.txt

OTL logfile created on: 7/5/2010 4:38:05 PM - Run 3
OTL by OldTimer - Version 3.2.1.0 Folder = C:\Documents and Settings\XXXXs.XXXX\Desktop\geekstogo
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 53.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 76.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 20.00 Gb Total Space | 6.09 Gb Free Space | 30.42% Space Free | Partition Type: NTFS
Drive D: | 54.47 Gb Total Space | 12.44 Gb Free Space | 22.83% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: XXXX
Current User Name: XXXXs
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\XXXXs.XXXX\Local Settings\Application Data\Google\Update\1.2.183.29\GoogleCrashHandler.exe (Google Inc.)
PRC - C:\Documents and Settings\XXXXs.XXXX\Desktop\geekstogo\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\MSN Toolbar\Platform\5.0.1423.0\mswinext.exe (Microsoft Corp.)
PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
PRC - C:\Program Files\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe (Microsoft Corporation)
PRC - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
PRC - C:\Program Files\Orbitdownloader\orbitdm.exe (Orbitdownloader.com)
PRC - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
PRC - C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe (Google Inc.)
PRC - C:\Program Files\Orbitdownloader\orbitnet.exe (Orbitdownloader.com)
PRC - C:\Program Files\Unlocker\UnlockerAssistant.exe ()
PRC - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation)
PRC - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation)
PRC - C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel® Corporation)
PRC - C:\Program Files\Intel\WiFi\bin\WLKEEPER.exe (Intel® Corporation)
PRC - C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe (Intel® Corporation)
PRC - C:\Program Files\Intel\WiFi\bin\S24EvMon.exe (Intel® Corporation)
PRC - C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel® Corporation)
PRC - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation)
PRC - C:\WINDOWS\temp\IH6578.EXE (Trend Micro Inc.)
PRC - C:\Program Files\Trend Micro\OfficeScan Client\TmListen.exe (Trend Micro Inc.)
PRC - C:\Program Files\Trend Micro\OfficeScan Client\NTRtScan.exe (Trend Micro Inc.)
PRC - C:\Program Files\Trend Micro\OfficeScan Client\PccNTMon.exe (Trend Micro Inc.)
PRC - C:\Program Files\Trend Micro\OfficeScan Client\CNTAoSMgr.exe (Trend Micro Inc.)
PRC - C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
PRC - C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
PRC - C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
PRC - C:\Program Files\Apoint\ApntEx.exe (Alps Electric Co., Ltd.)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Apoint\hidfind.exe (Alps Electric Co., Ltd.)


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\XXXXs.XXXX\Desktop\geekstogo\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\Unlocker\UnlockerHook.dll ()
MOD - C:\WINDOWS\system32\hccutils.dll (Intel Corporation)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (GoogleDesktopManager-110309-193829) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
SRV - (SeaPort) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corporation)
SRV - (wlidsvc) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation)
SRV - (EvtEng) Intel® -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel® Corporation)
SRV - (WLANKEEPER) Intel® -- C:\Program Files\Intel\WiFi\bin\WLKEEPER.exe (Intel® Corporation)
SRV - (S24EventMonitor) Intel® -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe (Intel® Corporation)
SRV - (RegSrvc) Intel® -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation)
SRV - (tmlisten) -- C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe (Trend Micro Inc.)
SRV - (ntrtscan) -- C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe (Trend Micro Inc.)
SRV - (vvdsvc) -- C:\WINDOWS\system32\nagasoft\vjocx.dll (NanJing Nagasoft Co, LTD.)
SRV - (TmProxy) -- C:\Program Files\Trend Micro\OfficeScan Client\TmProxy.exe (Trend Micro Inc.)


========== Driver Services (SafeList) ==========

DRV - (atapi) -- C:\WINDOWS\system32\DRIVERS\atapi.sys ()
DRV - (SASDIFSV) -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASENUM) -- C:\Program Files\SUPERAntiSpyware\SASENUM.SYS ( SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (SASKUTIL) -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS (SUPERAdBlocker.com and SUPERAntiSpyware.com)
DRV - (NETw5x32) Intel® -- C:\WINDOWS\system32\drivers\NETw5x32.sys (Intel Corporation)
DRV - (TmFilter) -- C:\Program Files\Trend Micro\OfficeScan Client\tmxpflt.sys (Trend Micro Inc.)
DRV - (TmPreFilter) -- C:\Program Files\Trend Micro\OfficeScan Client\tmpreflt.sys (Trend Micro Inc.)
DRV - (VSApiNt) -- C:\Program Files\Trend Micro\OfficeScan Client\VsapiNT.sys (Trend Micro Inc.)
DRV - (tmcomm) -- C:\WINDOWS\system32\drivers\tmcomm.sys (Trend Micro Inc.)
DRV - (tmtdi) -- C:\WINDOWS\system32\drivers\tmtdi.sys (Trend Micro Inc.)
DRV - (s24trans) -- C:\WINDOWS\system32\drivers\s24trans.sys (Intel Corporation)
DRV - (hwdatacard) -- C:\WINDOWS\system32\drivers\ewusbmdm.sys (Huawei Technologies Co., Ltd.)
DRV - (bcm4sbxp) -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys (Broadcom Corporation)
DRV - (STHDA) -- C:\WINDOWS\system32\drivers\sthda.sys (SigmaTel, Inc.)
DRV - (BCOREUSB) -- C:\WINDOWS\system32\drivers\BCOREUSB.sys (CSR)
DRV - (ApfiltrService) -- C:\WINDOWS\system32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\Hdaudbus.sys (Windows ® Server 2003 DDK provider)
DRV - (CVirtA) -- C:\WINDOWS\system32\drivers\CVirtA.sys (Cisco Systems, Inc.)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

FF - HKLM\software\mozilla\Firefox\Extensions\\{3112ca9c-de6d-4884-a869-9855de68056c}: C:\Documents and Settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c} [2009/12/03 00:34:47 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{431D639F-3EC7-46A5-A962-D250D138006B}: C:\Documents and Settings\XXXXs\Local Settings\Application Data\{431D639F-3EC7-46A5-A962-D250D138006B} [2009/12/08 12:40:34 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MSN Toolbar\Platform\5.0.1423.0\Firefox [2010/06/10 22:03:44 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2010/06/10 22:03:50 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2009/12/08 14:32:25 | 000,000,736 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Octh Class) - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll (Orbitdownloader.com)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll (Google Inc.)
O2 - BHO: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuz1.dll (Conduit Ltd.)
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\5.0.1423.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (@C:\Program Files\MSN Toolbar\Platform\5.0.1423.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\5.0.1423.0\npwinext.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Vuze Remote Toolbar) - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuz1.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Grab Pro) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (Vuze Remote Toolbar) - {BA14329E-9550-4989-B3F2-9732E92D17CC} - C:\Program Files\Vuze_Remote\tbVuz1.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Grab Pro) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll ()
O4 - HKLM..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [Bing Bar] C:\Program Files\MSN Toolbar\Platform\5.0.1423.0\mswinext.exe (Microsoft Corp.)
O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation)
O4 - HKLM..\Run: [Communicator] C:\Program Files\Microsoft Office Communicator\communicator.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Google Desktop Search] C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
O4 - HKLM..\Run: [Google Quick Search Box] C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe (Google Inc.)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel® Corporation)
O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe (Intel® Corporation)
O4 - HKLM..\Run: [Microsoft Default Manager] C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe (Microsoft Corporation)
O4 - HKLM..\Run: [OfficeScanNT Monitor] C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe (Trend Micro Inc.)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\WINDOWS\stsystra.exe (SigmaTel, Inc.)
O4 - HKLM..\Run: [UnlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe ()
O4 - HKCU..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Orbit.lnk = C:\Program Files\Orbitdownloader\orbitdm.exe (Orbitdownloader.com)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\XXXXs.XXXX\Start Menu\Programs\Startup\Seagate 2GH2V8V5 Product Registration.lnk = C:\Documents and Settings\XXXXs.XXXX\Application Data\Leadertech\PowerRegister\Seagate 2GH2V8V5 Product Registration.exe (Leader Technologies/Seagate)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKLM\..Trusted Domains: hotmail.com ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D4003189-95B1-4A2F-9A87-F2B03665960D} http://www.cric7.com...cx-en-black.cab (VodClient Control Class)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://enterprisema...ent/ieatgpc.cab (GpcContainer Class)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 209.18.47.61 209.18.47.62
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = HCLC.CORP.HCL.IN
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\XXXXs.XXXX\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\XXXXs.XXXX\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/11/09 06:44:13 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009/11/09 11:55:26 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: midi - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midimapper - C:\WINDOWS\System32\midimap.dll (Microsoft Corporation)
Drivers32: mixer - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.imaadpcm - C:\WINDOWS\System32\imaadp32.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.msadpcm - C:\WINDOWS\System32\msadp32.acm (Microsoft Corporation)
Drivers32: msacm.msaudio1 - C:\WINDOWS\System32\msaud32.acm (Microsoft Corporation)
Drivers32: msacm.msg711 - C:\WINDOWS\System32\msg711.acm (Microsoft Corporation)
Drivers32: msacm.msg723 - C:\WINDOWS\System32\msg723.acm (Microsoft Corporation)
Drivers32: msacm.msgsm610 - C:\WINDOWS\System32\msgsm32.acm (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.I420 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.iyuv - C:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation)
Drivers32: vidc.M261 - C:\WINDOWS\System32\msh261.drv (Microsoft Corporation)
Drivers32: vidc.M263 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.mrle - C:\WINDOWS\System32\msrle32.dll (Microsoft Corporation)
Drivers32: vidc.msvc - C:\WINDOWS\System32\msvidc32.dll (Microsoft Corporation)
Drivers32: vidc.uyvy - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: vidc.yuy2 - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: vidc.yvu9 - C:\WINDOWS\System32\tsbyuv.dll (Microsoft Corporation)
Drivers32: vidc.yvyu - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: wave - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wavemapper - C:\WINDOWS\System32\msacm32.drv (Microsoft Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (54338281256517632)

========== Files/Folders - Created Within 30 Days ==========

[2010/06/28 23:17:51 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2010/06/28 23:17:51 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2010/06/28 23:17:49 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2010/06/28 23:17:48 | 001,985,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2010/06/28 23:17:44 | 011,076,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
[2010/06/28 22:37:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\Malwarebytes
[2010/06/18 01:08:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\dvdcss
[2010/06/16 15:57:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Temp
[2010/06/12 19:39:13 | 000,836,608 | ---- | C] (Micrologics Ltd) -- C:\Documents and Settings\XXXXs.XXXX\Desktop\ActiveSyncToggle.exe
[2010/06/10 22:03:46 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2010/06/10 22:03:43 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Toolbar
[2010/06/10 22:03:36 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2010/06/10 22:03:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010/06/10 22:02:03 | 000,000,000 | ---D | C] -- C:\Program Files\Bing Bar Installer
[2010/06/10 00:52:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\XXXXs.XXXX\Desktop\Phil Notes
[2010/06/07 00:17:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\GrabPro
[2010/03/26 08:19:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2010/01/23 14:33:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\wmrpcd9
[2010/01/22 13:11:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\deskkbd64
[2010/01/17 03:24:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\spsclibrary
[2009/12/08 16:19:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Intel
[2009/12/08 16:19:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Intel
[2009/12/03 10:01:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\nagasoft
[2009/12/03 00:37:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2009/12/03 00:32:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2009/11/09 06:48:12 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2009/11/09 06:48:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft

========== Files - Modified Within 30 Days ==========

[2010/07/05 16:44:01 | 000,000,996 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-725345543-1006UA.job
[2010/07/05 16:43:02 | 000,000,986 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2838966446-1611402468-3389684964-14612UA.job
[2010/07/05 16:40:00 | 000,000,426 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{2F904E52-9B2D-4D70-8C9A-3666E1F63EEF}.job
[2010/07/05 16:32:28 | 000,001,554 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Orbit.lnk
[2010/07/05 16:31:02 | 000,000,884 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/07/05 16:31:01 | 000,000,888 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/07/05 16:30:24 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/07/05 16:30:23 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/07/05 16:30:22 | 2137,456,640 | -HS- | M] () -- C:\hiberfil.sys
[2010/07/04 20:20:51 | 007,602,176 | -H-- | M] () -- C:\Documents and Settings\XXXXs.XXXX\NTUSER.DAT
[2010/07/04 20:20:51 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\XXXXs.XXXX\ntuser.ini
[2010/07/04 19:45:30 | 000,000,028 | ---- | M] () -- C:\Documents and Settings\XXXXs.XXXX\Desktop\fix.bat
[2010/07/04 15:03:44 | 000,245,760 | ---- | M] () -- C:\Documents and Settings\XXXXs.XXXX\Desktop\To Do.xls
[2010/07/03 22:43:02 | 000,000,934 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2838966446-1611402468-3389684964-14612Core.job
[2010/07/03 20:44:00 | 000,000,944 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-725345543-1006Core.job
[2010/07/03 11:39:45 | 000,336,120 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/07/03 11:39:45 | 000,048,292 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/07/03 11:39:44 | 000,389,346 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/07/02 13:45:02 | 000,002,341 | ---- | M] () -- C:\Documents and Settings\XXXXs.XXXX\Desktop\Google Chrome.lnk
[2010/06/29 10:28:24 | 000,001,342 | ---- | M] () -- C:\Documents and Settings\XXXXs.XXXX\Start Menu\Programs\Startup\Seagate 2GH2V8V5 Product Registration.lnk
[2010/06/29 10:19:54 | 000,001,809 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/06/29 10:13:20 | 000,000,582 | ---- | M] () -- C:\WINDOWS\win.ini
[2010/06/27 13:22:21 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/06/14 09:14:07 | 000,460,288 | ---- | M] () -- C:\Documents and Settings\XXXXs.XXXX\Desktop\Remedy Self Service Quick Start Guide SAMPLE.ppt
[2010/06/13 23:58:28 | 000,056,136 | -H-- | M] () -- C:\WINDOWS\System32\mlfcache.dat
[2010/06/12 19:39:13 | 000,836,608 | ---- | M] (Micrologics Ltd) -- C:\Documents and Settings\XXXXs.XXXX\Desktop\ActiveSyncToggle.exe
[2010/06/12 15:31:25 | 000,074,752 | ---- | M] () -- C:\Documents and Settings\XXXXs.XXXX\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/06/10 22:02:47 | 000,001,505 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Vuze.lnk

========== Files Created - No Company Name ==========

[2010/07/04 19:45:30 | 000,000,028 | ---- | C] () -- C:\Documents and Settings\XXXXs.XXXX\Desktop\fix.bat
[2010/06/14 09:09:02 | 000,460,288 | ---- | C] () -- C:\Documents and Settings\XXXXs.XXXX\Desktop\Remedy Self Service Quick Start Guide SAMPLE.ppt
[2010/05/02 12:48:38 | 000,000,050 | ---- | C] () -- C:\WINDOWS\OSA.INI
[2010/05/01 21:56:46 | 000,000,590 | ---- | C] () -- C:\Program Files\savetestgre4m.dat
[2010/05/01 20:38:16 | 000,000,565 | ---- | C] () -- C:\Program Files\savetestgmat2m.dat
[2010/04/29 00:05:21 | 000,000,590 | ---- | C] () -- C:\Program Files\savetestgmat1v.dat
[2010/04/28 22:31:45 | 000,000,579 | ---- | C] () -- C:\Program Files\savetestgmat1m.dat
[2010/04/18 22:25:21 | 000,000,591 | ---- | C] () -- C:\Program Files\savetestgmat5v.dat
[2010/04/18 20:49:28 | 000,000,576 | ---- | C] () -- C:\Program Files\savetestgmat5m.dat
[2010/04/17 15:11:01 | 000,000,610 | ---- | C] () -- C:\Program Files\savetestgmat4v.dat
[2010/04/17 13:45:27 | 000,000,569 | ---- | C] () -- C:\Program Files\savetestgmat4m.dat
[2010/04/11 18:30:17 | 000,172,056 | ---- | C] () -- C:\WINDOWS\System32\CSGina.dll
[2010/04/04 23:50:43 | 000,000,575 | ---- | C] () -- C:\Program Files\savetestgmat3m.dat
[2010/04/04 22:33:38 | 000,000,540 | ---- | C] () -- C:\Program Files\savetestgmat3v.dat
[2010/03/25 09:13:14 | 000,074,752 | ---- | C] () -- C:\Documents and Settings\XXXXs.XXXX\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/03/24 17:52:42 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\XXXXs.XXXX\Application Data\$_hpcst$.hpc
[2010/03/24 17:50:49 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\XXXXs.XXXX\ntuser.ini
[2010/03/24 17:50:47 | 000,061,440 | -H-- | C] () -- C:\Documents and Settings\XXXXs.XXXX\ntuser.dat.LOG
[2010/03/24 17:50:46 | 007,602,176 | -H-- | C] () -- C:\Documents and Settings\XXXXs.XXXX\NTUSER.DAT
[2009/12/08 16:33:33 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\preflib.dll
[2009/12/08 16:33:32 | 000,757,760 | ---- | C] () -- C:\WINDOWS\System32\bcm1xsup.dll
[2009/11/09 07:56:24 | 000,014,261 | ---- | C] () -- C:\WINDOWS\cfgall.ini
[2009/11/09 07:47:38 | 000,005,190 | RHS- | C] () -- C:\Documents and Settings\All Users\ntuser.pol
[2009/11/09 07:42:26 | 000,000,057 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2009/11/09 07:37:56 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2007/09/27 10:51:02 | 000,020,698 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini
[2007/09/27 10:48:48 | 000,030,628 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini
[2007/09/27 10:48:28 | 000,031,698 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini
[2004/08/04 07:00:00 | 000,147,616 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys
[2004/08/04 07:00:00 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys

========== LOP Check ==========

[2010/02/09 15:51:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Applications
[2009/11/19 00:26:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ashampoo
[2010/03/05 00:57:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Azureus
[2010/05/02 21:44:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\WindSolutions
[2010/04/10 21:05:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010/06/13 03:52:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\Azureus
[2010/06/07 00:17:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\GrabPro
[2010/05/31 21:29:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\Leadertech
[2010/07/05 16:32:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\Orbit
[2010/03/25 15:01:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\webex
[2010/04/11 19:13:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\Windows Desktop Search
[2010/03/26 07:40:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\Windows Search
[2010/04/13 16:11:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\WindSolutions
[2010/04/30 14:48:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\XXXXs.XXXX\Application Data\Xerox
[2010/07/05 16:40:00 | 000,000,426 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{2F904E52-9B2D-4D70-8C9A-3666E1F63EEF}.job

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2009/11/09 06:44:13 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2009/11/29 07:23:37 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010/05/01 00:34:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2004/08/04 02:00:00 | 000,260,272 | ---- | M] () -- C:\cmldr
[2009/12/05 15:40:53 | 000,017,970 | ---- | M] () -- C:\ComboFix.txt
[2009/11/09 06:44:13 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010/07/05 16:30:22 | 2137,456,640 | -HS- | M] () -- C:\hiberfil.sys
[2009/11/09 06:44:13 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010/06/28 22:54:28 | 000,000,109 | ---- | M] () -- C:\mbam-error.txt
[2009/11/09 06:44:13 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2004/08/04 07:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2004/08/04 07:00:00 | 000,250,032 | RHS- | M] () -- C:\ntldr
[2010/07/05 16:30:21 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
[2009/11/29 07:15:30 | 000,001,182 | ---- | M] () -- C:\RootRepeal report 11-29-09 (04-15-30).txt
[2009/11/29 07:19:26 | 000,001,182 | ---- | M] () -- C:\RootRepeal report 11-29-09 (04-19-26).txt

< %systemroot%\system32\Spool\prtprocs\w32x86\*.dll >
[2010/03/17 08:51:42 | 000,082,184 | ---- | M] (Microsoft Corporation.) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\lmdippr8.dll
[2006/10/26 09:28:12 | 000,030,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\mdippr.dll
[2006/10/26 09:26:12 | 000,033,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll

< %systemroot%\system32\*.wt >

< %systemroot%\system32\*.ruy >

< %systemroot%\Fonts\*.com >

< %systemroot%\system32\spool\prtprocs\w32x86\*.tmp >

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2009/03/08 07:31:44 | 000,348,160 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\dxtmsft.dll
[2009/03/08 07:31:38 | 000,216,064 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\WINDOWS\system32\dxtrans.dll

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2009/11/09 12:01:41 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2009/11/09 12:01:41 | 000,659,456 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2009/11/09 12:01:40 | 000,897,024 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %systemroot%\system32\user32.dll /md5 >
[2004/08/04 07:00:00 | 000,577,024 | ---- | M] (Microsoft Corporation) MD5=C72661F8552ACE7C5C85E16A3CF505C4 -- C:\WINDOWS\system32\user32.dll

< %systemroot%\system32\ws2_32.dll /md5 >
[2004/08/04 07:00:00 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=2ED0B7F12A60F90092081C50FA0EC2B2 -- C:\WINDOWS\system32\ws2_32.dll

< %systemroot%\system32\ws2help.dll /md5 >
[2004/08/04 07:00:00 | 000,019,968 | ---- | M] (Microsoft Corporation) MD5=9BEACB911CA61E5881102188AB7FB431 -- C:\WINDOWS\system32\ws2help.dll

< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
"NoAutoUpdate" = 0
"AUOptions" = 2
"ScheduledInstallDay" = 6
"ScheduledInstallTime" = 13

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
< End of report >
  • 0

#4
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Hi there,

STEP 1 - TFC

Download TFC to your desktop
  • Open the file and close any other windows.
  • It will close all programs itself when run, make sure to let it run uninterrupted.
  • Click the Start button to begin the process. The program should not take long to finish its job
  • Once its finished it should reboot your machine, if not, do this yourself to ensure a complete clean
STEP 2 - MBAM

Open Malwarebyte's Anti-Malware.
  • Under the Updates tab, click Check for Updates. Let the updates install (if any).
  • After that, under the Scanner tab, click Perform Quick Scan and then Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
  • Exit MBAM when done.
Note: If MBAM encounters a file that is difficult to remove, you will be asked to reboot your computer so MBAM can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware.

STEP 3 - Kaspersky

Using Internet Explorer or Firefox, visit Kaspersky Online Scanner

1. Click Accept, when prompted to download and install the program files and database of malware definitions.

2. To optimize scanning time and produce a more sensible report for review:
  • Close any open programs
  • Turn off the real time scanner of any existing antivirus program while performing the online scan. Click HERE to see how to disable the most common antivirus programs.
3. Click Run at the Security prompt.

The program will then begin downloading and installing and will also update the database.
Please be patient as this can take quite a long time to download.
  • Once the update is complete, click on Settings.
  • Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
    • Spyware, adware, dialers, and other riskware
    • Archives
    • E-mail databases
  • Click on My Computer under the green Scan bar to the left to start the scan.
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
  • Do NOT be alarmed by what you see in the report. Many of the finds have likely been quarantined.
  • Click View report... at the bottom.
  • Click the Save report... button.

    Posted Image

  • Change the Files of type dropdown box to Text file (.txt) and name the file KasReport.txt to save the file to your desktop so that you may post it in your next reply
STEP 4 - Reply

Please reply with the following log:
  • MBAM Log
  • Kaspersky Log

  • 0

#5
spywareridden

spywareridden

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Hi pascal,
I couldnt run the Kaspersky, tried atleast 7 times, each time the system froze, once it didnt freeze but it froze when i tried to get the log file..

However ran the TFC, and the mbam log is as follows.. ( Now i am having google redirects but not that many.. )

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4322

Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702

7/17/2010 9:32:17 PM
mbam-log-2010-07-17 (21-32-17).txt

Scan type: Quick scan
Objects scanned: 168438
Time elapsed: 14 minute(s), 1 second(s)

Memory Processes Infected: 1
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 4
Files Infected: 4

Memory Processes Infected:
C:\Documents and Settings\sorabhs.HCLA\Application Data\SystemProc\lsass.exe (Worm.Prolaco) -> No action taken.

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\rthdbpl (Worm.Prolaco) -> No action taken.

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
C:\Documents and Settings\sorabhs.HCLA\Application Data\SystemProc (Trojan.Agent) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D} (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Worm.Prolaco.M) -> No action taken.

Files Infected:
C:\Documents and Settings\sorabhs.HCLA\Application Data\SystemProc\lsass.exe (Worm.Prolaco) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Worm.Prolaco.M) -> No action taken.
C:\Program Files\Mozilla Firefox\extensions\{9CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Worm.Prolaco.M) -> No action taken.
  • 0

#6
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Hi there,

We will begin with ComboFix.exe. Please visit this webpage for download links, and instructions for running the tool:

http://www.bleepingc...to-use-combofix

Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Please include the C:\ComboFix.txt in your next reply for further review.
  • 0

#7
spywareridden

spywareridden

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Hi pascal,
Thanks for reverting... please find the combofix log ..
ComboFix 10-07-16.02 - xxxxs 07/18/2010 19:26:23.5.2 - x86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2038.1061 [GMT -5:00]
Running from: c:\documents and settings\xxxxs.XXXX\Desktop\geekstogo\ComboFix.exe
AV: Trend Micro OfficeScan Antivirus *On-access scanning disabled* (Outdated) {58C97A67-8986-4691-8492-9EB789F7F9AE}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\LocalService\Local Settings\Application Data\deskkbd64\deskkbd64.dll
c:\documents and settings\LocalService\Local Settings\Application Data\spsclibrary\spsclibrary.dll
c:\documents and settings\LocalService\Local Settings\Application Data\wmrpcd9\wmrpcd9.dll
c:\documents and settings\xxxxs.XXXX\Application Data\SystemProc
c:\program files\Defense Center
c:\program files\Defense Center\defcnt.exe
c:\program files\Defense Center\defhook.dll
c:\windows\system32\drivers\cvdd.sys
c:\windows\system32\fjhdyfhsn.bat

Infected copy of c:\windows\system32\Drivers\atapi.sys was found and disinfected
Restored copy from - c:\windows\ERDNT\cache\atapi.sys

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_vurwxing


((((((((((((((((((((((((( Files Created from 2010-06-19 to 2010-07-19 )))))))))))))))))))))))))))))))
.

2010-07-06 17:06 . 2010-07-06 17:06 503808 ----a-w- c:\documents and settings\xxxxs.XXXX\Application Data\Sun\Java\Deployment\cache\6.0\46\f84c6ae-3e52950c-n\msvcp71.dll
2010-07-06 17:06 . 2010-07-06 17:06 499712 ----a-w- c:\documents and settings\xxxxs.XXXX\Application Data\Sun\Java\Deployment\cache\6.0\46\f84c6ae-3e52950c-n\jmc.dll
2010-07-06 17:06 . 2010-07-06 17:06 348160 ----a-w- c:\documents and settings\xxxxs.XXXX\Application Data\Sun\Java\Deployment\cache\6.0\46\f84c6ae-3e52950c-n\msvcr71.dll
2010-07-06 02:40 . 2010-07-06 02:40 -------- d-----w- c:\program files\Common Files\Skype
2010-07-06 02:21 . 2010-07-06 02:21 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\skypePM
2010-07-06 02:18 . 2010-07-06 05:01 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\Skype
2010-07-06 02:16 . 2004-08-04 04:07 59264 -c--a-w- c:\windows\system32\dllcache\usbaudio.sys
2010-07-06 02:16 . 2004-08-04 04:07 59264 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2010-07-06 02:16 . 2004-08-04 05:56 53760 -c--a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2010-07-06 02:16 . 2004-08-04 05:56 53760 ----a-w- c:\windows\system32\vfwwdm32.dll
2010-07-06 02:16 . 2004-08-04 04:10 78464 -c--a-w- c:\windows\system32\dllcache\usbvideo.sys
2010-07-06 02:16 . 2004-08-04 04:10 78464 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2010-07-06 01:11 . 2009-11-09 12:34 38200 ----a-w- c:\documents and settings\xxxxs.XXXX\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
2010-06-29 15:05 . 2010-06-29 15:05 -------- d-sh--w- c:\documents and settings\Default User\IETldCache
2010-06-29 04:17 . 2010-05-06 10:41 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-06-29 04:17 . 2010-05-06 10:41 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-06-29 04:17 . 2010-05-06 10:41 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-06-29 04:17 . 2010-05-06 10:41 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-06-29 04:17 . 2010-05-06 10:41 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-06-29 04:17 . 2010-05-06 10:41 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-06-29 04:17 . 2010-05-06 10:41 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-06-29 03:37 . 2010-06-29 03:37 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\Malwarebytes
2010-06-23 15:47 . 2010-06-23 15:47 501936 ----a-w- c:\documents and settings\All Users\Application Data\Google\Google Toolbar\Update\gtb3F.tmp.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-19 00:49 . 2010-03-25 04:17 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\Orbit
2010-07-13 17:20 . 2010-03-05 05:56 -------- d-----w- c:\program files\Vuze
2010-07-13 17:20 . 2010-04-14 06:45 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\Azureus
2010-07-11 16:07 . 2009-11-20 21:34 -------- d-----w- c:\program files\Microsoft Silverlight
2010-06-29 16:28 . 2009-11-09 12:20 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2010-06-29 15:20 . 2010-03-26 01:50 -------- d-----w- c:\program files\Windows Desktop Search
2010-06-29 15:19 . 2009-11-09 12:23 -------- d-----w- c:\program files\Microsoft Works
2010-06-29 15:07 . 2010-03-26 01:58 -------- d-----w- c:\program files\Microsoft Office Communicator
2010-06-29 04:27 . 2009-11-29 04:49 -------- d-----w- c:\program files\ERUNT
2010-06-29 03:54 . 2009-11-29 04:57 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-06-23 23:00 . 2010-04-09 06:13 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\vlc
2010-06-18 06:29 . 2010-06-18 06:08 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\dvdcss
2010-06-14 04:58 . 2010-04-12 01:42 56136 ---ha-w- c:\windows\system32\mlfcache.dat
2010-06-11 03:04 . 2010-06-11 03:02 -------- d-----w- c:\program files\Bing Bar Installer
2010-06-11 03:03 . 2010-06-11 03:03 -------- d-----w- c:\program files\Microsoft
2010-06-11 03:03 . 2010-06-11 03:03 -------- d-----w- c:\program files\MSN Toolbar
2010-06-07 05:17 . 2010-06-07 05:17 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\GrabPro
2010-06-01 02:29 . 2010-06-01 02:29 -------- d-----w- c:\documents and settings\xxxxs.XXXX\Application Data\Leadertech
2010-05-23 02:14 . 2009-12-03 05:31 -------- d-----w- c:\program files\Google
2010-05-21 19:49 . 2010-03-05 05:56 -------- d-----w- c:\program files\Vuze_Remote
2010-05-17 20:44 . 2010-05-17 20:44 1956656 ----a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player_ax.exe
2010-05-06 10:41 . 2004-08-04 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-03 00:26 . 2010-03-25 05:08 68456 ----a-w- c:\documents and settings\xxxxs.XXXX\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-05-02 03:27 . 2010-05-02 02:56 590 ----a-w- c:\program files\savetestgre4m.dat
2010-05-02 01:38 . 2010-05-02 01:38 565 ----a-w- c:\program files\savetestgmat2m.dat
2010-04-29 20:39 . 2009-11-29 04:57 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-04-29 20:39 . 2009-11-29 04:57 20952 -c--a-w- c:\windows\system32\drivers\mbam.sys
2010-04-29 05:05 . 2010-04-29 05:05 590 ----a-w- c:\program files\savetestgmat1v.dat
2010-04-29 03:33 . 2010-04-29 03:31 579 ----a-w- c:\program files\savetestgmat1m.dat
2010-04-19 03:25 . 2010-04-19 03:25 591 ----a-w- c:\program files\savetestgmat5v.dat
2010-04-19 01:56 . 2010-04-19 01:49 576 ----a-w- c:\program files\savetestgmat5m.dat
2010-04-18 19:27 . 2010-04-05 04:50 575 ----a-w- c:\program files\savetestgmat3m.dat
2010-04-18 19:26 . 2010-04-05 03:33 540 ----a-w- c:\program files\savetestgmat3v.dat
2010-04-18 19:26 . 2010-04-17 20:11 610 ----a-w- c:\program files\savetestgmat4v.dat
2010-04-18 19:25 . 2010-04-17 18:45 569 ----a-w- c:\program files\savetestgmat4m.dat
.

((((((((((((((((((((((((((((( SnapShot@2009-12-05_19.56.57 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-10-25 02:15 . 2008-10-25 02:15 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80KOR.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80JPN.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ITA.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80FRA.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ESP.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ENU.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 65536 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80DEU.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 45056 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80CHT.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 40960 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80CHS.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 57856 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfcm80u.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 69632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfcm80.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 96256 c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.dll
+ 2010-07-19 00:43 . 2010-07-19 00:43 16384 c:\windows\temp\Perflib_Perfdata_74c.dat
+ 2008-05-27 03:18 . 2008-05-27 03:18 56320 c:\windows\system32\xmlfilter.dll
+ 2006-09-29 02:56 . 2006-09-29 02:56 55808 c:\windows\system32\WudfSvc.dll
+ 2006-09-29 04:13 . 2006-09-29 04:13 95344 c:\windows\system32\WUDFCoinstaller.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 38400 c:\windows\system32\wpdshextres.dll
+ 2006-10-19 04:00 . 2006-10-19 04:00 17408 c:\windows\system32\wpdshextautoplay.exe
+ 2006-10-19 05:47 . 2006-10-19 05:47 63488 c:\windows\system32\wpdmtpus.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 35840 c:\windows\system32\wpdconns.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 99840 c:\windows\system32\wmpshell.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 37376 c:\windows\system32\wmdmps.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 33792 c:\windows\system32\wmdmlog.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 20480 c:\windows\system32\WLTRYSVC.EXE
+ 2009-12-08 21:33 . 2006-11-01 20:48 44032 c:\windows\system32\wltrynt.dll
+ 2004-08-04 12:00 . 2009-06-25 08:44 59392 c:\windows\system32\wdigest.dll
+ 2009-11-09 17:04 . 2004-08-04 08:56 74240 c:\windows\system32\usbui.dll
- 2009-11-09 17:04 . 2004-08-04 00:56 74240 c:\windows\system32\usbui.dll
+ 2008-05-27 03:19 . 2008-05-27 03:19 97792 c:\windows\system32\UncCplExt.dll
+ 2010-03-03 05:43 . 2010-04-21 13:28 46080 c:\windows\system32\tzchange.exe
+ 2008-05-27 02:59 . 2008-05-27 02:59 18904 c:\windows\system32\structuredqueryschematrivial.bin
+ 2009-11-26 19:55 . 2009-05-12 20:12 26144 c:\windows\system32\spupdsvc.exe
+ 2009-12-21 13:44 . 2006-10-26 14:28 30512 c:\windows\system32\spool\prtprocs\w32x86\mdippr.dll
+ 2010-02-09 20:53 . 2010-03-17 13:51 82184 c:\windows\system32\spool\prtprocs\w32x86\lmdippr8.dll
+ 2009-12-21 13:44 . 2006-10-26 14:28 65328 c:\windows\system32\spool\drivers\w32x86\mdiui.dll
+ 2007-09-13 15:11 . 2010-02-02 13:21 31744 c:\windows\system32\spool\drivers\w32x86\3\x2fpd02.dll
+ 2009-12-21 13:44 . 2006-10-26 14:28 65328 c:\windows\system32\spool\drivers\w32x86\3\mdiui.dll
+ 2009-12-05 23:25 . 2009-05-12 20:12 16928 c:\windows\system32\spmsg.dll
+ 2004-08-04 12:00 . 2009-06-25 08:44 56320 c:\windows\system32\secur32.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 87552 c:\windows\system32\searchfilterhost.exe
+ 2004-08-04 12:00 . 2009-02-06 16:54 35328 c:\windows\system32\sc.exe
+ 2008-05-14 23:02 . 2008-05-14 23:02 16896 c:\windows\system32\S24NCfg.dll
+ 2008-05-27 03:18 . 2008-05-27 03:18 38400 c:\windows\system32\rtffilt.dll
+ 2009-12-08 20:24 . 2004-08-04 08:56 74240 c:\windows\system32\ReinstallBackups\0010\DriverFiles\i386\usbui.dll
+ 2009-12-08 20:24 . 2004-08-04 07:08 57600 c:\windows\system32\ReinstallBackups\0010\DriverFiles\i386\usbhub.sys
+ 2009-12-08 20:24 . 2004-08-04 12:00 26624 c:\windows\system32\ReinstallBackups\0010\DriverFiles\i386\usbehci.sys
+ 2009-12-08 20:24 . 2004-08-04 08:56 74240 c:\windows\system32\ReinstallBackups\0009\DriverFiles\i386\usbui.dll
+ 2009-12-08 20:24 . 2004-08-04 07:08 20480 c:\windows\system32\ReinstallBackups\0009\DriverFiles\i386\usbuhci.sys
+ 2009-12-08 20:24 . 2004-08-04 07:08 57600 c:\windows\system32\ReinstallBackups\0009\DriverFiles\i386\usbhub.sys
+ 2009-12-08 20:24 . 2004-08-04 08:56 74240 c:\windows\system32\ReinstallBackups\0008\DriverFiles\i386\usbui.dll
+ 2009-12-08 20:24 . 2004-08-04 07:08 20480 c:\windows\system32\ReinstallBackups\0008\DriverFiles\i386\usbuhci.sys
+ 2009-12-08 20:24 . 2004-08-04 07:08 57600 c:\windows\system32\ReinstallBackups\0008\DriverFiles\i386\usbhub.sys
+ 2009-12-08 20:24 . 2004-08-04 08:56 74240 c:\windows\system32\ReinstallBackups\0007\DriverFiles\i386\usbui.dll
+ 2009-12-08 20:24 . 2004-08-04 07:08 20480 c:\windows\system32\ReinstallBackups\0007\DriverFiles\i386\usbuhci.sys
+ 2009-12-08 20:24 . 2004-08-04 07:08 57600 c:\windows\system32\ReinstallBackups\0007\DriverFiles\i386\usbhub.sys
+ 2009-12-08 20:24 . 2004-08-04 00:56 74240 c:\windows\system32\ReinstallBackups\0006\DriverFiles\i386\usbui.dll
+ 2009-12-08 20:24 . 2004-08-04 12:00 20480 c:\windows\system32\ReinstallBackups\0006\DriverFiles\i386\usbuhci.sys
+ 2009-12-08 20:24 . 2004-08-04 12:00 57600 c:\windows\system32\ReinstallBackups\0006\DriverFiles\i386\usbhub.sys
+ 2009-12-08 20:23 . 2004-08-04 12:00 25088 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\pciidex.sys
+ 2009-12-08 20:23 . 2004-08-04 07:07 68224 c:\windows\system32\ReinstallBackups\0004\DriverFiles\i386\pci.sys
+ 2009-12-08 20:23 . 2004-08-04 12:00 68224 c:\windows\system32\ReinstallBackups\0003\DriverFiles\i386\pci.sys
+ 2009-12-08 20:23 . 2004-08-04 12:00 35840 c:\windows\system32\ReinstallBackups\0002\DriverFiles\i386\isapnp.sys
+ 2004-08-04 12:00 . 2009-10-12 13:54 69632 c:\windows\system32\raschap.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 69632 c:\windows\system32\raschap.dll
+ 2008-05-27 03:18 . 2008-05-27 03:18 71680 c:\windows\system32\propdefs.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 86016 c:\windows\system32\preflib.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 46592 c:\windows\system32\pngfilt.dll
+ 2004-08-04 12:00 . 2010-07-03 16:39 48292 c:\windows\system32\perfc009.dat
+ 2008-05-27 03:19 . 2008-05-27 03:19 11264 c:\windows\system32\oephRes.dll
+ 2009-01-08 02:20 . 2009-01-08 02:20 23552 c:\windows\system32\normaliz.dll
+ 2009-01-08 02:20 . 2009-01-08 02:20 24576 c:\windows\system32\nlsdl.dll
+ 2004-08-04 12:00 . 2008-03-07 16:56 98304 c:\windows\system32\nlhtml.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 91648 c:\windows\system32\mtxoci.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 66560 c:\windows\system32\mtxclu.dll
+ 2004-08-04 12:00 . 2008-06-12 14:16 66560 c:\windows\system32\mtxclu.dll
+ 2004-08-04 00:56 . 2009-11-27 17:33 17920 c:\windows\system32\msyuv.dll
+ 2006-10-05 09:31 . 2006-10-05 09:31 79872 c:\windows\system32\msxml6r.dll
+ 2004-08-04 12:00 . 2009-11-27 16:37 28672 c:\windows\system32\msvidc32.dll
+ 2008-05-27 03:18 . 2008-05-27 03:18 44032 c:\windows\system32\msstrc.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 32768 c:\windows\system32\mssprxy.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 87552 c:\windows\system32\mssitlb.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 11776 c:\windows\system32\msshooks.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 60416 c:\windows\system32\msscntrs.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 34816 c:\windows\system32\msscb.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 11264 c:\windows\system32\msrle32.dll
+ 2004-08-04 12:00 . 2009-11-27 16:37 11264 c:\windows\system32\msrle32.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 27136 c:\windows\system32\mspmsnsv.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 48128 c:\windows\system32\mshtmler.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 66560 c:\windows\system32\mshtmled.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 45568 c:\windows\system32\mshta.exe
+ 2009-03-08 12:31 . 2009-03-08 12:31 13312 c:\windows\system32\msfeedssync.exe
+ 2009-03-08 12:31 . 2010-05-06 10:41 55296 c:\windows\system32\msfeedsbs.dll
- 2009-11-09 11:39 . 2004-08-04 12:00 58880 c:\windows\system32\msdtclog.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 58880 c:\windows\system32\msdtclog.dll
+ 2004-08-04 12:00 . 2009-09-04 20:45 58880 c:\windows\system32\msasn1.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 48640 c:\windows\system32\mqupgrd.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 48640 c:\windows\system32\mqupgrd.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 95744 c:\windows\system32\mqsec.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 95744 c:\windows\system32\mqsec.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 16896 c:\windows\system32\mqise.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 16896 c:\windows\system32\mqise.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 47104 c:\windows\system32\mqdscli.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 47104 c:\windows\system32\mqdscli.dll
+ 2004-08-04 12:00 . 2009-06-22 11:49 19968 c:\windows\system32\mqbkup.exe
- 2004-08-04 12:00 . 2004-08-04 12:00 19968 c:\windows\system32\mqbkup.exe
+ 2004-08-04 12:00 . 2008-03-07 16:56 29696 c:\windows\system32\mimefilt.dll
+ 2009-12-21 13:44 . 2006-10-26 14:28 30512 c:\windows\system32\mdimon.dll
+ 2009-11-20 20:49 . 2010-05-17 20:45 84507 c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
+ 2010-02-09 20:53 . 2010-03-17 13:51 82696 c:\windows\system32\lmdimon8.dll
+ 2004-08-04 12:00 . 2009-03-08 12:34 43008 c:\windows\system32\licmgr10.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 11264 c:\windows\system32\LAPRXY.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 25600 c:\windows\system32\jsproxy.dll
+ 2004-08-04 00:56 . 2009-11-27 16:37 48128 c:\windows\system32\iyuv_32.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 94720 c:\windows\system32\inseng.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 34816 c:\windows\system32\imgutil.dll
+ 2009-03-08 12:32 . 2009-03-08 12:32 36864 c:\windows\system32\ieudinit.exe
+ 2004-08-04 12:00 . 2009-03-08 12:32 71680 c:\windows\system32\iesetup.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 55808 c:\windows\system32\iernonce.dll
+ 2009-01-08 02:20 . 2009-01-08 02:20 26112 c:\windows\system32\idndl.dll
+ 2009-03-08 12:31 . 2009-03-08 12:31 59904 c:\windows\system32\icardie.dll
+ 2004-08-04 12:00 . 2009-10-15 17:21 82432 c:\windows\system32\fontsub.dll
+ 2010-04-11 02:02 . 2009-10-16 07:33 41472 c:\windows\system32\DRVSTORE\usbaapl_E0F497D6C8B1C59AEB6422181BF0AFABD8356D47\usbaapl.sys
+ 2010-04-28 01:21 . 2010-03-17 13:51 30984 c:\windows\system32\DRVSTORE\RoundTable_F29D632BDCC1844B9B7688A0A4B4DA9E716B76FF\RTYUV.dll
+ 2010-04-11 02:02 . 2010-03-17 00:53 17408 c:\windows\system32\DRVSTORE\netaapl_F433E854B3FF3BEE74986FDE8E16A64162342BFF\netaapl.sys
+ 2010-04-11 02:05 . 2009-05-18 18:17 26600 c:\windows\system32\DRVSTORE\GEARAspiWD_3B7AACF0636A2C042EB7AD2AFF76D37B27BDD28C\x86\GEARAspiWDM.sys
+ 2006-09-29 03:00 . 2006-09-29 03:00 82944 c:\windows\system32\drivers\WudfRd.sys
+ 2006-09-29 02:55 . 2006-09-29 02:55 77568 c:\windows\system32\drivers\WudfPf.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 19328 c:\windows\system32\drivers\WSTCODEC.SYS
+ 2006-10-19 04:00 . 2006-10-19 04:00 38528 c:\windows\system32\drivers\wpdusb.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 20480 c:\windows\system32\drivers\usbuhci.sys
+ 2004-08-04 12:00 . 2004-08-04 07:08 20480 c:\windows\system32\drivers\usbuhci.sys
+ 2010-04-15 04:55 . 2004-08-04 03:58 15104 c:\windows\system32\drivers\usbscan.sys
+ 2004-08-04 12:00 . 2004-08-04 07:08 57600 c:\windows\system32\drivers\usbhub.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 57600 c:\windows\system32\drivers\usbhub.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 26624 c:\windows\system32\drivers\usbehci.sys
+ 2004-08-04 12:00 . 2004-08-04 07:08 26624 c:\windows\system32\drivers\usbehci.sys
+ 2010-04-11 02:02 . 2009-10-16 07:33 41472 c:\windows\system32\drivers\usbaapl.sys
+ 2010-02-20 20:09 . 2005-10-21 01:47 12800 c:\windows\system32\drivers\usb8023x.sys
+ 2004-08-04 12:00 . 2005-10-21 01:47 12800 c:\windows\system32\drivers\usb8023.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 15360 c:\windows\system32\drivers\StreamIP.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 11136 c:\windows\system32\drivers\SLIP.sys
+ 2008-08-14 01:23 . 2008-08-14 01:23 11904 c:\windows\system32\drivers\s24trans.sys
+ 2010-02-20 20:09 . 2005-10-21 01:47 30592 c:\windows\system32\drivers\rndismpx.sys
+ 2004-08-04 12:00 . 2005-10-21 01:47 30592 c:\windows\system32\drivers\rndismp.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 25088 c:\windows\system32\drivers\pciidex.sys
+ 2004-08-04 12:00 . 2004-08-04 06:59 25088 c:\windows\system32\drivers\pciidex.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 68224 c:\windows\system32\drivers\pci.sys
+ 2004-08-04 12:00 . 2004-08-04 07:07 68224 c:\windows\system32\drivers\pci.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 10880 c:\windows\system32\drivers\NdisIP.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 85376 c:\windows\system32\drivers\NABTSFEC.sys
+ 2004-08-04 12:00 . 2009-06-22 11:48 91776 c:\windows\system32\drivers\mqac.sys
+ 2004-08-04 12:00 . 2009-06-22 11:34 92544 c:\windows\system32\drivers\ksecdd.sys
+ 2004-08-04 12:00 . 2001-08-17 21:58 35840 c:\windows\system32\drivers\isapnp.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 35840 c:\windows\system32\drivers\isapnp.sys
+ 2010-04-11 02:05 . 2009-05-18 18:17 26600 c:\windows\system32\drivers\GEARAspiWDM.sys
+ 2004-08-04 12:00 . 2010-02-25 00:02 49536 c:\windows\system32\drivers\cdrom.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 49536 c:\windows\system32\drivers\cdrom.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 17024 c:\windows\system32\drivers\CCDECODE.sys
+ 2009-12-08 21:33 . 2006-11-01 20:48 33664 c:\windows\system32\drivers\BCMWLNPF.SYS
+ 2010-02-12 16:46 . 2010-02-12 16:46 91424 c:\windows\system32\dnssd.dll
+ 2010-07-06 02:17 . 2004-08-04 04:10 19328 c:\windows\system32\dllcache\wstcodec.sys
+ 2004-08-04 12:00 . 2006-10-19 05:47 99840 c:\windows\system32\dllcache\wmpshell.dll
+ 2009-11-09 11:42 . 2006-10-19 05:46 64000 c:\windows\system32\dllcache\wmplayer.exe
+ 2009-11-09 11:42 . 2006-10-19 05:47 96256 c:\windows\system32\dllcache\wmpband.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 37376 c:\windows\system32\dllcache\wmdmps.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 33792 c:\windows\system32\dllcache\wmdmlog.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 13600 c:\windows\system32\dllcache\wfwnet.drv
+ 2009-11-09 17:03 . 2004-08-04 12:00 13600 c:\windows\system32\dllcache\wfwnet.drv
+ 2004-08-04 12:00 . 2009-06-25 08:44 59392 c:\windows\system32\dllcache\wdigest.dll
+ 2009-11-09 17:04 . 2004-08-04 08:56 74240 c:\windows\system32\dllcache\usbui.dll
+ 2004-08-04 12:00 . 2004-08-04 07:08 20480 c:\windows\system32\dllcache\usbuhci.sys
+ 2010-04-15 04:55 . 2004-08-04 03:58 15104 c:\windows\system32\dllcache\usbscan.sys
+ 2004-08-04 12:00 . 2004-08-04 07:08 57600 c:\windows\system32\dllcache\usbhub.sys
+ 2004-08-04 12:00 . 2004-08-04 07:08 26624 c:\windows\system32\dllcache\usbehci.sys
+ 2004-08-04 12:00 . 2005-10-21 01:47 12800 c:\windows\system32\dllcache\usb8023.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 15360 c:\windows\system32\dllcache\streamip.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 11136 c:\windows\system32\dllcache\slip.sys
+ 2004-08-04 12:00 . 2009-06-25 08:44 56320 c:\windows\system32\dllcache\secur32.dll
+ 2004-08-04 12:00 . 2009-02-06 16:54 35328 c:\windows\system32\dllcache\sc.exe
+ 2004-08-04 12:00 . 2005-10-21 01:47 30592 c:\windows\system32\dllcache\rndismp.sys
+ 2004-08-04 12:00 . 2009-10-12 13:54 69632 c:\windows\system32\dllcache\raschap.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 69632 c:\windows\system32\dllcache\raschap.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 46592 c:\windows\system32\dllcache\pngfilt.dll
+ 2004-08-04 12:00 . 2004-08-04 06:59 25088 c:\windows\system32\dllcache\pciidex.sys
+ 2004-08-04 12:00 . 2004-08-04 07:07 68224 c:\windows\system32\dllcache\pci.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 69120 c:\windows\system32\dllcache\notepad.exe
+ 2009-11-09 17:03 . 2004-08-04 12:00 69120 c:\windows\system32\dllcache\notepad.exe
+ 2004-08-04 12:00 . 2008-03-07 16:56 98304 c:\windows\system32\dllcache\nlhtml.dll
+ 2010-07-06 02:17 . 2004-08-04 04:10 10880 c:\windows\system32\dllcache\ndisip.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 85376 c:\windows\system32\dllcache\nabtsfec.sys
+ 2009-11-09 11:39 . 2008-06-12 14:16 91648 c:\windows\system32\dllcache\mtxoci.dll
+ 2004-08-04 12:00 . 2008-06-12 14:16 66560 c:\windows\system32\dllcache\mtxclu.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 66560 c:\windows\system32\dllcache\mtxclu.dll
+ 2009-11-27 17:33 . 2009-11-27 17:33 17920 c:\windows\system32\dllcache\msyuv.dll
+ 2004-08-04 12:00 . 2009-11-27 16:37 28672 c:\windows\system32\dllcache\msvidc32.dll
+ 2004-08-04 12:00 . 2009-11-27 16:37 11264 c:\windows\system32\dllcache\msrle32.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 11264 c:\windows\system32\dllcache\msrle32.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 27136 c:\windows\system32\dllcache\mspmsnsv.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 48128 c:\windows\system32\dllcache\mshtmler.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 66560 c:\windows\system32\dllcache\mshtmled.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 45568 c:\windows\system32\dllcache\mshta.exe
+ 2009-11-09 11:39 . 2008-06-12 14:16 58880 c:\windows\system32\dllcache\msdtclog.dll
- 2009-11-09 11:39 . 2004-08-04 12:00 58880 c:\windows\system32\dllcache\msdtclog.dll
+ 2004-08-04 12:00 . 2009-09-04 20:45 58880 c:\windows\system32\dllcache\msasn1.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 48640 c:\windows\system32\dllcache\mqupgrd.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 48640 c:\windows\system32\dllcache\mqupgrd.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 95744 c:\windows\system32\dllcache\mqsec.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 95744 c:\windows\system32\dllcache\mqsec.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 16896 c:\windows\system32\dllcache\mqise.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 16896 c:\windows\system32\dllcache\mqise.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 47104 c:\windows\system32\dllcache\mqdscli.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 47104 c:\windows\system32\dllcache\mqdscli.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 19968 c:\windows\system32\dllcache\mqbkup.exe
+ 2004-08-04 12:00 . 2009-06-22 11:49 19968 c:\windows\system32\dllcache\mqbkup.exe
+ 2004-08-04 12:00 . 2009-06-22 11:48 91776 c:\windows\system32\dllcache\mqac.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 68768 c:\windows\system32\dllcache\mmsystem.dll
+ 2009-11-09 17:03 . 2004-08-04 12:00 68768 c:\windows\system32\dllcache\mmsystem.dll
+ 2004-08-04 12:00 . 2008-03-07 16:56 29696 c:\windows\system32\dllcache\mimefilt.dll
+ 2004-08-04 12:00 . 2009-03-08 12:34 43008 c:\windows\system32\dllcache\licmgr10.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 11264 c:\windows\system32\dllcache\laprxy.dll
+ 2004-08-04 12:00 . 2009-06-22 11:34 92544 c:\windows\system32\dllcache\ksecdd.sys
+ 2004-08-04 12:00 . 2010-05-06 10:41 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-11-27 16:37 . 2009-11-27 16:37 48128 c:\windows\system32\dllcache\iyuv_32.dll
+ 2004-08-04 12:00 . 2001-08-17 21:58 35840 c:\windows\system32\dllcache\isapnp.sys
+ 2004-08-04 12:00 . 2009-03-08 12:32 94720 c:\windows\system32\dllcache\inseng.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 34816 c:\windows\system32\dllcache\imgutil.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 71680 c:\windows\system32\dllcache\iesetup.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 55808 c:\windows\system32\dllcache\iernonce.dll
+ 2009-11-10 11:56 . 2009-10-02 04:44 92160 c:\windows\system32\dllcache\iecompat.dll
+ 2009-11-09 11:41 . 2009-03-08 12:24 68608 c:\windows\system32\dllcache\hmmapi.dll
+ 2004-08-04 12:00 . 2009-10-15 17:21 82432 c:\windows\system32\dllcache\fontsub.dll
+ 2004-08-04 12:00 . 2009-12-14 07:35 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2004-08-04 12:00 . 2009-03-08 12:33 18944 c:\windows\system32\dllcache\corpol.dll
+ 2009-11-09 11:39 . 2005-07-26 04:39 60416 c:\windows\system32\dllcache\colbact.dll
+ 2009-12-22 07:53 . 2010-02-25 00:02 49536 c:\windows\system32\dllcache\cdrom.sys
+ 2010-07-06 02:17 . 2004-08-04 04:10 17024 c:\windows\system32\dllcache\ccdecode.sys
+ 2004-08-04 12:00 . 2010-01-13 14:10 85504 c:\windows\system32\dllcache\cabview.dll
+ 2004-08-04 12:00 . 2009-11-27 16:37 84992 c:\windows\system32\dllcache\avifil32.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 84992 c:\windows\system32\dllcache\avifil32.dll
+ 2004-08-04 12:00 . 2009-07-17 18:55 58880 c:\windows\system32\dllcache\atl.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 58880 c:\windows\system32\dllcache\atl.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 72704 c:\windows\system32\dllcache\admparse.dll
+ 2004-08-04 12:00 . 2009-12-14 07:35 33280 c:\windows\system32\csrsrv.dll
+ 2004-08-04 12:00 . 2009-03-08 12:33 18944 c:\windows\system32\corpol.dll
+ 2009-11-09 11:48 . 2009-12-08 19:48 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2009-11-09 11:48 . 2009-12-05 15:39 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2009-12-08 19:48 . 2009-12-08 19:48 16384 c:\windows\system32\config\systemprofile\IETldCache\index.dat
+ 2009-12-08 04:03 . 2009-12-08 19:48 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
- 2009-11-29 17:16 . 2009-12-05 15:39 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2009-11-09 11:39 . 2005-07-26 04:39 60416 c:\windows\system32\colbact.dll
+ 2006-11-13 21:38 . 2006-11-13 21:38 22824 c:\windows\system32\ceutil.dll
+ 2004-08-04 12:00 . 2010-01-13 14:10 85504 c:\windows\system32\cabview.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 69632 c:\windows\system32\bcmwlpkt.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 84992 c:\windows\system32\avifil32.dll
+ 2004-08-04 12:00 . 2009-11-27 16:37 84992 c:\windows\system32\avifil32.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 89088 c:\windows\system32\ATL71.DLL
- 2004-08-04 12:00 . 2004-08-04 12:00 58880 c:\windows\system32\atl.dll
+ 2004-08-04 12:00 . 2009-07-17 18:55 58880 c:\windows\system32\atl.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 72704 c:\windows\system32\admparse.dll
+ 2010-05-02 17:48 . 1994-09-16 19:00 14128 c:\windows\system\TOOLHELP.DLL
+ 2010-05-02 17:48 . 1995-01-13 19:10 51712 c:\windows\system\OLE2PROX.DLL
+ 2010-05-02 17:48 . 1995-01-13 19:10 57328 c:\windows\system\OLE2CONV.DLL
+ 2010-05-02 17:48 . 1994-09-16 19:00 36864 c:\windows\system\DDEML.DLL
+ 2010-03-18 04:26 . 2010-03-18 04:26 22528 c:\windows\Installer\3f1649.msi
+ 2010-04-11 02:02 . 2010-04-11 02:02 27136 c:\windows\Installer\{C41300B9-185D-475E-BFEC-39EF732F19B1}\AppleSoftwareUpdateIco.exe
+ 2010-02-20 20:09 . 2010-02-20 20:09 22486 c:\windows\Installer\{99052DB7-9592-4522-A558-5417BBAD48EE}\WCESMgrIcon.exe
+ 2010-02-20 20:09 . 2010-02-20 20:09 22486 c:\windows\Installer\{99052DB7-9592-4522-A558-5417BBAD48EE}\ARPPRODUCTICON.exe
+ 2010-05-23 02:14 . 2010-05-23 02:14 25214 c:\windows\Installer\{961034C0-58DF-11DF-97FD-005056806466}\UNINST_Uninstall_G_F6A848FB884248E6A4CDCBDCF41F6A74_1.exe
+ 2010-05-23 02:14 . 2010-05-23 02:14 25214 c:\windows\Installer\{961034C0-58DF-11DF-97FD-005056806466}\ARPPRODUCTICON.exe
+ 2010-02-10 17:14 . 2010-03-26 13:30 12288 c:\windows\Installer\{90510409-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 35088 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 35088 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 18704 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 18704 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 20240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 20240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-07-11 16:03 . 2010-07-11 16:03 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2009-12-08 21:19 . 2009-12-08 21:19 49152 c:\windows\Installer\{72EEB695-388B-4835-8EA6-0C04545B06B9}\NewShortcut1_EC2A9EA7A46E48B9A0FD04BC5EF9F6A5.exe
+ 2003-07-14 17:27 . 2003-07-14 17:27 58944 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\SEQCHK10.DLL
+ 2003-05-08 16:24 . 2003-05-08 16:24 77824 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\REFEDIT.DLL
+ 2003-07-14 17:26 . 2003-07-14 17:26 13888 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\NPOFFICE.DLL
+ 2003-07-14 17:27 . 2003-07-14 17:27 56888 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\NAME.DLL
+ 2003-07-14 17:22 . 2003-07-14 17:22 41528 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSSH.DLL
+ 2003-07-14 17:15 . 2003-07-14 17:15 39488 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSOXMLMF.DLL
+ 2003-07-14 17:15 . 2003-07-14 17:15 55360 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSOXMLED.EXE
+ 2003-07-14 17:16 . 2003-07-14 17:16 42040 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSOXEV.DLL
+ 2003-07-14 17:22 . 2003-07-14 17:22 28224 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSOSTYLE.DLL
+ 2003-07-14 17:22 . 2003-07-14 17:22 55360 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSOHTMED.EXE
+ 2003-07-14 17:22 . 2003-07-14 17:22 27704 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSODCW.DLL
+ 2003-07-14 17:22 . 2003-07-14 17:22 17464 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSMH.DLL
+ 2003-07-14 17:21 . 2003-07-14 17:21 87104 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSENCODE.DLL
+ 2003-07-14 17:27 . 2003-07-14 17:27 87096 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\IEAWSDC.DLL
+ 2003-07-14 21:48 . 2003-07-14 21:48 47160 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\DFUICOM.EXE
+ 2003-07-14 17:23 . 2003-07-14 17:23 94768 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\AW.DLL
+ 2003-07-14 17:27 . 2003-07-14 17:27 38968 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\AUTHZAX.DLL
+ 2010-06-29 15:08 . 2009-03-08 12:33 12288 c:\windows\ie8updates\KB982381-IE8\xpshims.dll
+ 2010-06-29 15:08 . 2009-03-08 12:31 55296 c:\windows\ie8updates\KB982381-IE8\msfeedsbs.dll
+ 2010-06-29 15:08 . 2009-03-08 12:33 25600 c:\windows\ie8updates\KB982381-IE8\jsproxy.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 37888 c:\windows\ie8\url.dll
+ 2009-12-08 05:36 . 2009-03-08 22:23 58464 c:\windows\ie8\spuninst\iecustom.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 39424 c:\windows\ie8\pngfilt.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 96256 c:\windows\ie8\occache.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 56832 c:\windows\ie8\mshtmler.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 29184 c:\windows\ie8\mshta.exe
+ 2009-12-08 05:35 . 2004-08-04 12:00 22016 c:\windows\ie8\licmgr10.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 15872 c:\windows\ie8\jsproxy.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 96256 c:\windows\ie8\inseng.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 35840 c:\windows\ie8\imgutil.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 93184 c:\windows\ie8\iexplore.exe
+ 2009-12-08 05:35 . 2004-08-04 12:00 62976 c:\windows\ie8\iesetup.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 48640 c:\windows\ie8\iernonce.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 81920 c:\windows\ie8\ieencode.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 34304 c:\windows\ie8\ie4uinit.exe
+ 2009-12-08 05:35 . 2004-08-04 12:00 38912 c:\windows\ie8\hmmapi.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 35328 c:\windows\ie8\corpol.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 99840 c:\windows\ie8\advpack.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 61440 c:\windows\ie8\admparse.dll
+ 2010-02-20 20:09 . 2005-10-21 01:47 12800 c:\windows\Driver Cache\i386\usb8023x.sys
+ 2010-02-20 20:09 . 2005-10-21 01:47 30592 c:\windows\Driver Cache\i386\rndismpx.sys
+ 2009-11-27 17:33 . 2009-11-27 17:33 17920 c:\windows\Driver Cache\i386\msyuv.dll
+ 2009-11-27 16:37 . 2009-11-27 16:37 48128 c:\windows\Driver Cache\i386\iyuv_32.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 49152 c:\windows\Downloaded Program Files\WebEx\926\wbxtrace.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 65536 c:\windows\Downloaded Program Files\WebEx\926\wbxcrypt.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 45125 c:\windows\Downloaded Program Files\WebEx\926\raurl.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 69632 c:\windows\Downloaded Program Files\WebEx\926\mticket.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 98304 c:\windows\Downloaded Program Files\WebEx\926\atplayim.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 48201 c:\windows\Downloaded Program Files\WebEx\926\atpack.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 65536 c:\windows\Downloaded Program Files\WebEx\926\atnetext.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 24576 c:\windows\Downloaded Program Files\WebEx\926\atmemmgr.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 81408 c:\windows\Downloaded Program Files\WebEx\926\atjpeg60.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 45056 c:\windows\Downloaded Program Files\WebEx\926\atdocvu.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 53248 c:\windows\Downloaded Program Files\WebEx\926\atcarmcl.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 32648 c:\windows\Downloaded Program Files\WebEx\926\atasanot.exe
+ 2010-03-25 20:01 . 2010-03-25 20:01 49152 c:\windows\Downloaded Program Files\WebEx\924\wbxtrace.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 65536 c:\windows\Downloaded Program Files\WebEx\924\wbxcrypt.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 45121 c:\windows\Downloaded Program Files\WebEx\924\raurl.dll
+ 2010-07-15 18:01 . 2010-07-15 18:01 98304 c:\windows\Downloaded Program Files\WebEx\924\PsImgStrm.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 77824 c:\windows\Downloaded Program Files\WebEx\924\mticket.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 86016 c:\windows\Downloaded Program Files\WebEx\924\hybridaudio.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 98304 c:\windows\Downloaded Program Files\WebEx\924\atplayim.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 47685 c:\windows\Downloaded Program Files\WebEx\924\atpack.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 65536 c:\windows\Downloaded Program Files\WebEx\924\atnetext.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 24576 c:\windows\Downloaded Program Files\WebEx\924\atmemmgr.dll
+ 2010-03-25 20:01 . 2010-03-25 20:01 81408 c:\windows\Downloaded Program Files\WebEx\924\atjpeg60.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 45056 c:\windows\Downloaded Program Files\WebEx\924\atdocvu.dll
+ 2010-03-25 20:01 . 2010-03-25 20:01 18432 c:\windows\Downloaded Program Files\WebEx\924\atconc.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 53248 c:\windows\Downloaded Program Files\WebEx\924\atcarmcl.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 30080 c:\windows\Downloaded Program Files\WebEx\924\atasanot.exe
+ 2010-03-23 03:23 . 2010-03-23 03:23 28672 c:\windows\Downloaded Program Files\WebEx\824\atstmget.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 46408 c:\windows\Downloaded Program Files\WebEx\824\atrcp.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 23110 c:\windows\Downloaded Program Files\WebEx\824\atpack.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 65536 c:\windows\Downloaded Program Files\WebEx\824\atnetext.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 81408 c:\windows\Downloaded Program Files\WebEx\824\atjpeg60.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 28672 c:\windows\Downloaded Program Files\WebEx\824\atinet.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 46408 c:\windows\Downloaded Program Files\WebEx\824\atauthor.exe
+ 2010-01-23 07:04 . 2010-01-23 07:04 99208 c:\windows\Downloaded Program Files\ieatgpc.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 99656 c:\windows\Downloaded Program Files\atmgr.exe
+ 2010-03-09 16:02 . 2010-03-25 20:01 28472 c:\windows\Downloaded Program Files\atgpcdec.dll
+ 2009-12-05 23:25 . 2006-10-04 14:05 39424 c:\windows\AppPatch\acadproc.dll
+ 2009-12-05 23:23 . 2006-09-29 03:01 58368 c:\windows\$NtUninstallWudf01000$\spuninst\WudfCustom.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 73728 c:\windows\$NtUninstallwmp11$\wmplayer.exe
+ 2009-12-05 23:25 . 2004-08-04 12:00 98304 c:\windows\$NtUninstallwmp11$\wmpband.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 23552 c:\windows\$NtUninstallWMFDist11$\wmdmps.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 27136 c:\windows\$NtUninstallWMFDist11$\wmdmlog.dll
+ 2009-12-05 23:24 . 2006-11-02 19:46 13312 c:\windows\$NtUninstallWMFDist11$\spuninst\wpdinstallutil.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 52224 c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll
+ 2010-03-04 08:30 . 2010-01-23 10:40 16896 c:\windows\$NtUninstallKB979306$\spuninst\tzchange.dll
+ 2010-03-04 08:40 . 2004-08-04 12:00 32768 c:\windows\$NtUninstallKB978037$\csrsrv.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 25600 c:\windows\$NtUninstallKB977914$\msvidc32.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 11264 c:\windows\$NtUninstallKB977914$\msrle32.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 47616 c:\windows\$NtUninstallKB977914$\iyuv_32.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 84992 c:\windows\$NtUninstallKB977914$\avifil32.dll
+ 2010-03-04 08:36 . 2004-08-04 12:00 17408 c:\windows\$NtUninstallKB975560$\msyuv.dll
+ 2010-03-04 08:37 . 2004-08-04 12:00 57344 c:\windows\$NtUninstallKB974571$\msasn1.dll
+ 2010-03-04 08:40 . 2004-08-04 12:00 69632 c:\windows\$NtUninstallKB974318$\raschap.dll
+ 2010-03-04 08:36 . 2004-08-04 12:00 58880 c:\windows\$NtUninstallKB973507$\atl.dll
+ 2010-03-04 08:39 . 2004-08-04 12:00 79360 c:\windows\$NtUninstallKB972270$\fontsub.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 48640 c:\windows\$NtUninstallKB971032$\mqupgrd.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 95744 c:\windows\$NtUninstallKB971032$\mqsec.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 16896 c:\windows\$NtUninstallKB971032$\mqise.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 47104 c:\windows\$NtUninstallKB971032$\mqdscli.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 19968 c:\windows\$NtUninstallKB971032$\mqbkup.exe
+ 2010-03-04 08:31 . 2004-08-04 12:00 72960 c:\windows\$NtUninstallKB971032$\mqac.sys
+ 2010-03-04 08:29 . 2004-08-04 12:00 49152 c:\windows\$NtUninstallKB968389$\wdigest.dll
+ 2010-03-04 08:29 . 2004-08-04 12:00 55808 c:\windows\$NtUninstallKB968389$\secur32.dll
+ 2010-03-04 08:29 . 2004-08-04 12:00 92032 c:\windows\$NtUninstallKB968389$\ksecdd.sys
+ 2010-03-04 08:38 . 2004-08-04 12:00 31232 c:\windows\$NtUninstallKB956572$\sc.exe
+ 2010-03-04 08:38 . 2004-08-04 12:00 62464 c:\windows\$NtUninstallKB956572$\colbact.dll
+ 2010-03-04 08:37 . 2004-08-04 12:00 90112 c:\windows\$NtUninstallKB952004$\mtxoci.dll
+ 2010-03-04 08:37 . 2004-08-04 12:00 66560 c:\windows\$NtUninstallKB952004$\mtxclu.dll
+ 2010-03-04 08:37 . 2004-08-04 12:00 58880 c:\windows\$NtUninstallKB952004$\msdtclog.dll
+ 2010-03-26 01:49 . 2004-08-04 12:00 18944 c:\windows\$NtUninstallKB915800-v4$\mimefilt.dll
+ 2010-02-20 20:09 . 2004-08-04 12:00 12672 c:\windows\$NtUninstallKB909394$\usb8023.sys
+ 2010-02-20 20:09 . 2004-08-04 12:00 30080 c:\windows\$NtUninstallKB909394$\rndismp.sys
+ 2010-03-04 08:32 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB978706\update\spcustom.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB978706\spmsg.dll
+ 2010-03-04 08:38 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB978251\update\spcustom.dll
+ 2010-03-04 08:38 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB978251\spmsg.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB978037\update\spcustom.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB978037\spmsg.dll
+ 2009-12-14 07:10 . 2009-12-14 07:10 33280 c:\windows\$hf_mig$\KB978037\SP3QFE\csrsrv.dll
+ 2009-12-14 07:08 . 2009-12-14 07:08 33280 c:\windows\$hf_mig$\KB978037\SP3GDR\csrsrv.dll
+ 2009-12-14 07:27 . 2009-12-14 07:27 33280 c:\windows\$hf_mig$\KB978037\SP2QFE\csrsrv.dll
+ 2010-03-04 08:33 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB977914\update\spcustom.dll
+ 2010-03-04 08:33 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB977914\spmsg.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 28672 c:\windows\$hf_mig$\KB977914\SP3QFE\msvidc32.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 11264 c:\windows\$hf_mig$\KB977914\SP3QFE\msrle32.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 48128 c:\windows\$hf_mig$\KB977914\SP3QFE\iyuv_32.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 84992 c:\windows\$hf_mig$\KB977914\SP3QFE\avifil32.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 28672 c:\windows\$hf_mig$\KB977914\SP3GDR\msvidc32.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 11264 c:\windows\$hf_mig$\KB977914\SP3GDR\msrle32.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 48128 c:\windows\$hf_mig$\KB977914\SP3GDR\iyuv_32.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 84992 c:\windows\$hf_mig$\KB977914\SP3GDR\avifil32.dll
+ 2009-11-27 16:18 . 2009-11-27 16:18 28672 c:\windows\$hf_mig$\KB977914\SP2QFE\msvidc32.dll
+ 2009-11-27 16:18 . 2009-11-27 16:18 11264 c:\windows\$hf_mig$\KB977914\SP2QFE\msrle32.dll
+ 2009-11-27 16:18 . 2009-11-27 16:18 48128 c:\windows\$hf_mig$\KB977914\SP2QFE\iyuv_32.dll
+ 2009-11-27 16:18 . 2009-11-27 16:18 84992 c:\windows\$hf_mig$\KB977914\SP2QFE\avifil32.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB975713\update\spcustom.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB975713\spmsg.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB975560\update\spcustom.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB975560\spmsg.dll
+ 2009-11-27 17:23 . 2009-11-27 17:23 17920 c:\windows\$hf_mig$\KB975560\SP3QFE\msyuv.dll
+ 2009-11-27 17:11 . 2009-11-27 17:11 17920 c:\windows\$hf_mig$\KB975560\SP3GDR\msyuv.dll
+ 2009-11-27 17:04 . 2009-11-27 17:04 17920 c:\windows\$hf_mig$\KB975560\SP2QFE\msyuv.dll
+ 2010-03-04 08:30 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB975467\update\spcustom.dll
+ 2010-03-04 08:30 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB975467\spmsg.dll
+ 2009-12-08 05:38 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB975364-IE8\update\spcustom.dll
+ 2009-12-08 05:38 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB975364-IE8\spmsg.dll
+ 2009-11-10 11:56 . 2009-10-02 04:43 92160 c:\windows\$hf_mig$\KB975364-IE8\SP3QFE\iecompat.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB975025\update\spcustom.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB975025\spmsg.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974571\update\spcustom.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB974571\spmsg.dll
+ 2009-09-04 20:57 . 2009-09-04 20:57 58880 c:\windows\$hf_mig$\KB974571\SP3QFE\msasn1.dll
+ 2009-09-04 21:03 . 2009-09-04 21:03 58880 c:\windows\$hf_mig$\KB974571\SP3GDR\msasn1.dll
+ 2009-09-04 20:36 . 2009-09-04 20:36 58880 c:\windows\$hf_mig$\KB974571\SP2QFE\msasn1.dll
+ 2010-03-04 08:34 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974392\update\spcustom.dll
+ 2010-03-04 08:34 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB974392\spmsg.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974318\update\spcustom.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB974318\spmsg.dll
+ 2009-10-12 13:28 . 2009-10-12 13:28 79872 c:\windows\$hf_mig$\KB974318\SP3QFE\raschap.dll
+ 2009-10-12 13:38 . 2009-10-12 13:38 79872 c:\windows\$hf_mig$\KB974318\SP3GDR\raschap.dll
+ 2009-10-12 13:41 . 2009-10-12 13:41 69632 c:\windows\$hf_mig$\KB974318\SP2QFE\raschap.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974112\update\spcustom.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB974112\spmsg.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973904\update\spcustom.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB973904\spmsg.dll
+ 2010-03-04 08:37 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB973869\update\spcustom.dll
+ 2010-03-04 08:37 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB973869\spmsg.dll
+ 2010-03-04 08:31 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973815\update\spcustom.dll
+ 2010-03-04 08:31 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB973815\spmsg.dll
+ 2010-03-04 08:36 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB973687\update\spcustom.dll
+ 2010-03-04 08:36 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB973687\spmsg.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973507\update\spcustom.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB973507\spmsg.dll
+ 2009-07-17 19:25 . 2009-07-17 19:25 58880 c:\windows\$hf_mig$\KB973507\SP3QFE\atl.dll
+ 2009-07-17 19:01 . 2009-07-17 19:01 58880 c:\windows\$hf_mig$\KB973507\SP3GDR\atl.dll
+ 2009-07-17 18:43 . 2009-07-17 18:43 58880 c:\windows\$hf_mig$\KB973507\SP2QFE\atl.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973354\update\spcustom.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB973354\spmsg.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB972270\update\spcustom.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB972270\spmsg.dll
+ 2010-03-03 05:57 . 2009-10-15 16:39 81920 c:\windows\$hf_mig$\KB972270\SP3QFE\fontsub.dll
+ 2010-03-03 05:57 . 2009-10-15 16:28 81920 c:\windows\$hf_mig$\KB972270\SP3GDR\fontsub.dll
+ 2010-03-03 05:57 . 2009-10-15 16:56 81920 c:\windows\$hf_mig$\KB972270\SP2QFE\fontsub.dll
+ 2010-03-04 08:31 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB971961-IE8\update\spcustom.dll
+ 2010-03-04 08:31 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB971961-IE8\spmsg.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB971657\update\spcustom.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB971657\spmsg.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB971486\update\spcustom.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 17272 c:\windows\$hf_mig$\KB971486\spmsg.dll
+ 2010-03-04 08:31 . 2007-03-06 01:22 22752 c:\windows\$hf_mig$\KB971032\update\spcustom.dll
+ 2010-03-04 08:31 . 2007-03-06 01:22 14048 c:\windows\$hf_mig$\KB971032\spmsg.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 48640 c:\windows\$hf_mig$\KB971032\SP2QFE\mqupgrd.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 95744 c:\windows\$hf_mig$\KB971032\SP2QFE\mqsec.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 16896 c:\windows\$hf_mig$\KB971032\SP2QFE\mqise.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 47104 c:\windows\$hf_mig$\KB971032\SP2QFE\mqdscli.dll
+ 2009-06-22 11:30 . 2009-06-22 11:30 19968 c:\windows\$hf_mig$\KB971032\SP2QFE\mqbkup.exe
+ 2009-06-22 11:30 . 2009-06-22 11:30 91776 c:\windows\$hf_mig$\KB971032\SP2QFE\mqac.sys
+ 2010-03-04 08:33 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB970238\update\spcustom.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB970238\spmsg.dll
+ 2010-03-04 08:29 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB969947\update\spcustom.dll
+ 2010-03-04 08:29 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB969947\spmsg.dll
+ 2010-03-04 08:40 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB969059\update\spcustom.dll
+ 2010-03-04 08:40 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB969059\spmsg.dll
+ 2010-03-04 08:29 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB968389\update\spcustom.dll
+ 2010-03-04 08:29 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB968389\spmsg.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 54272 c:\windows\$hf_mig$\KB968389\SP3QFE\wdigest.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 56832 c:\windows\$hf_mig$\KB968389\SP3QFE\secur32.dll
+ 2009-06-24 10:28 . 2009-06-24 10:28 92928 c:\windows\$hf_mig$\KB968389\SP3QFE\ksecdd.sys
+ 2009-06-25 08:25 . 2009-06-25 08:25 54272 c:\windows\$hf_mig$\KB968389\SP3GDR\wdigest.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 56832 c:\windows\$hf_mig$\KB968389\SP3GDR\secur32.dll
+ 2009-06-24 11:18 . 2009-06-24 11:18 92928 c:\windows\$hf_mig$\KB968389\SP3GDR\ksecdd.sys
+ 2009-06-25 08:17 . 2009-06-25 08:17 59392 c:\windows\$hf_mig$\KB968389\SP2QFE\wdigest.dll
+ 2009-06-25 08:17 . 2009-06-25 08:17 56320 c:\windows\$hf_mig$\KB968389\SP2QFE\secur32.dll
+ 2009-06-22 11:35 . 2009-06-22 11:35 92544 c:\windows\$hf_mig$\KB968389\SP2QFE\ksecdd.sys
+ 2010-03-04 08:35 . 2008-07-09 07:38 26488 c:\windows\$hf_mig$\KB967715\update\spcustom.dll
+ 2010-03-04 08:35 . 2008-07-09 07:38 17272 c:\windows\$hf_mig$\KB967715\spmsg.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 26488 c:\windows\$hf_mig$\KB961501\update\spcustom.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 17272 c:\windows\$hf_mig$\KB961501\spmsg.dll
+ 2010-03-04 08:31 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB960803\update\spcustom.dll
+ 2010-03-04 08:31 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB960803\spmsg.dll
+ 2010-03-04 08:39 . 2007-11-30 11:18 26488 c:\windows\$hf_mig$\KB960225\update\spcustom.dll
+ 2010-03-04 08:39 . 2007-11-30 11:18 17272 c:\windows\$hf_mig$\KB960225\spmsg.dll
+ 2010-03-04 08:31 . 2007-11-30 11:18 26488 c:\windows\$hf_mig$\KB958644\update\spcustom.dll
+ 2010-03-04 08:31 . 2007-11-30 11:18 17272 c:\windows\$hf_mig$\KB958644\spmsg.dll
+ 2010-03-04 08:32 . 2007-03-06 01:22 22752 c:\windows\$hf_mig$\KB958470\update\spcustom.dll
+ 2010-03-03 05:44 . 2009-06-05 07:42 17408 c:\windows\$hf_mig$\KB958470\update\msrdpcustom.dll
+ 2010-03-04 08:32 . 2007-03-06 01:22 14048 c:\windows\$hf_mig$\KB958470\spmsg.dll
+ 2010-03-04 08:38 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB956844\update\spcustom.dll
+ 2010-03-04 08:38 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB956844\spmsg.dll
+ 2010-03-04 08:30 . 2008-07-08 13:02 26488 c:\windows\$hf_mig$\KB956802\update\spcustom.dll
+ 2010-03-04 08:30 . 2008-07-08 13:02 17272 c:\windows\$hf_mig$\KB956802\spmsg.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 26488 c:\windows\$hf_mig$\KB956572\update\spcustom.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 17272 c:\windows\$hf_mig$\KB956572\spmsg.dll
+ 2010-03-03 05:57 . 2009-02-06 10:36 35328 c:\windows\$hf_mig$\KB956572\SP3QFE\sc.exe
+ 2010-03-03 05:57 . 2009-02-06 10:39 35328 c:\windows\$hf_mig$\KB956572\SP3GDR\sc.exe
+ 2010-03-03 05:57 . 2009-02-06 09:54 35328 c:\windows\$hf_mig$\KB956572\SP2QFE\sc.exe
+ 2010-03-03 05:57 . 2005-07-26 04:20 60416 c:\windows\$hf_mig$\KB956572\SP2QFE\colbact.dll
+ 2010-03-04 08:30 . 2007-11-30 11:18 26488 c:\windows\$hf_mig$\KB955069\update\spcustom.dll
+ 2010-03-04 08:30 . 2007-11-30 11:18 17272 c:\windows\$hf_mig$\KB955069\spmsg.dll
+ 2010-03-04 08:35 . 2007-11-30 11:18 26488 c:\windows\$hf_mig$\KB952287\update\spcustom.dll
+ 2010-03-04 08:35 . 2007-11-30 11:18 17272 c:\windows\$hf_mig$\KB952287\spmsg.dll
+ 2010-03-04 08:37 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB952004\update\spcustom.dll
+ 2010-03-04 08:37 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB952004\spmsg.dll
+ 2008-06-12 14:09 . 2008-06-12 14:09 91648 c:\windows\$hf_mig$\KB952004\SP3QFE\mtxoci.dll
+ 2008-06-12 14:09 . 2008-06-12 14:09 66560 c:\windows\$hf_mig$\KB952004\SP3QFE\mtxclu.dll
+ 2008-06-12 14:09 . 2008-06-12 14:09 58880 c:\windows\$hf_mig$\KB952004\SP3QFE\msdtclog.dll
+ 2008-06-12 14:23 . 2008-06-12 14:23 91648 c:\windows\$hf_mig$\KB952004\SP3GDR\mtxoci.dll
+ 2008-06-12 14:23 . 2008-06-12 14:23 66560 c:\windows\$hf_mig$\KB952004\SP3GDR\mtxclu.dll
+ 2008-06-12 14:23 . 2008-06-12 14:23 58880 c:\windows\$hf_mig$\KB952004\SP3GDR\msdtclog.dll
+ 2008-06-12 13:47 . 2008-06-12 13:47 91648 c:\windows\$hf_mig$\KB952004\SP2QFE\mtxoci.dll
+ 2008-06-12 13:47 . 2008-06-12 13:47 66560 c:\windows\$hf_mig$\KB952004\SP2QFE\mtxclu.dll
+ 2008-06-12 13:47 . 2008-06-12 13:47 58880 c:\windows\$hf_mig$\KB952004\SP2QFE\msdtclog.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB951748\update\spcustom.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB951748\spmsg.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB951066\update\spcustom.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB951066\spmsg.dll
+ 2010-03-04 08:40 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB950974\update\spcustom.dll
+ 2010-03-04 08:40 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB950974\spmsg.dll
+ 2010-03-04 08:36 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB950762\update\spcustom.dll
+ 2010-03-04 08:36 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB950762\spmsg.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB950760\update\spcustom.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB950760\spmsg.dll
+ 2010-03-04 08:30 . 2008-07-09 07:38 26488 c:\windows\$hf_mig$\KB923561\update\spcustom.dll
+ 2010-03-04 08:30 . 2008-07-09 07:38 17272 c:\windows\$hf_mig$\KB923561\spmsg.dll
+ 2010-03-03 05:43 . 2009-03-25 05:54 39424 c:\windows\$hf_mig$\KB923561\SP2QFE\acadproc.dll
+ 2010-03-26 01:49 . 2007-11-30 12:39 26488 c:\windows\$hf_mig$\KB915800-v4\update\spcustom.dll
+ 2010-03-26 01:49 . 2007-11-30 12:39 17272 c:\windows\$hf_mig$\KB915800-v4\spmsg.dll
+ 2010-03-26 01:49 . 2008-03-07 17:02 98304 c:\windows\$hf_mig$\KB915800-v4\SP3QFE\nlhtml.dll
+ 2010-03-26 01:49 . 2008-03-07 17:02 29696 c:\windows\$hf_mig$\KB915800-v4\SP3QFE\mimefilt.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\wmvdmoe2.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\wmvdmod.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 4096 c:\windows\system32\WMVADVE.DLL
+ 2006-10-19 05:47 . 2006-10-19 05:47 4096 c:\windows\system32\WMVADVD.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\wmsdmoe2.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\wmsdmod.dll
+ 2006-10-19 05:58 . 2006-10-19 05:58 8704 c:\windows\system32\wdfmgr.exe
+ 2006-10-19 05:47 . 2006-10-19 05:47 4096 c:\windows\system32\wdfapi.dll
+ 2006-10-19 05:58 . 2006-10-19 05:58 8704 c:\windows\system32\uwdf.exe
+ 2008-05-27 03:19 . 2008-05-27 03:19 2048 c:\windows\system32\UncRes.dll
+ 2001-08-17 22:36 . 2009-11-27 16:37 8704 c:\windows\system32\tsbyuv.dll
+ 2009-12-08 20:24 . 2004-08-04 12:00 7168 c:\windows\system32\ReinstallBackups\0010\DriverFiles\i386\hccoin.dll
+ 2009-12-08 20:23 . 2004-08-04 12:00 3328 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\pciide.sys
+ 2010-04-15 04:55 . 2001-08-18 03:36 5632 c:\windows\system32\ptpusb.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 4608 c:\windows\system32\mqsvc.exe
+ 2004-08-04 12:00 . 2009-06-22 11:49 4608 c:\windows\system32\mqsvc.exe
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\MPG4DMOD.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\MP4SDMOD.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\MP43DMOD.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 3328 c:\windows\system32\drivers\pciide.sys
+ 2004-08-04 12:00 . 2001-08-17 21:51 3328 c:\windows\system32\drivers\pciide.sys
+ 2010-07-06 02:17 . 2004-08-04 03:58 5504 c:\windows\system32\drivers\MSTEE.sys
+ 2010-04-11 23:30 . 2003-05-01 18:26 5220 c:\windows\system32\drivers\CVirtA.sys
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\dllcache\wmvdmoe2.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\dllcache\wmvdmod.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\dllcache\wmsdmoe2.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\dllcache\wmsdmod.dll
+ 2009-11-09 17:03 . 2004-08-04 12:00 2176 c:\windows\system32\dllcache\vga.drv
- 2004-08-04 12:00 . 2004-08-04 12:00 2176 c:\windows\system32\dllcache\vga.drv
+ 2009-11-27 16:37 . 2009-11-27 16:37 8704 c:\windows\system32\dllcache\tsbyuv.dll
+ 2009-11-09 17:03 . 2004-08-04 12:00 4048 c:\windows\system32\dllcache\timer.drv
- 2004-08-04 12:00 . 2004-08-04 12:00 4048 c:\windows\system32\dllcache\timer.drv
+ 2009-11-09 17:03 . 2004-08-04 12:00 3360 c:\windows\system32\dllcache\system.drv
- 2004-08-04 12:00 . 2004-08-04 12:00 3360 c:\windows\system32\dllcache\system.drv
+ 2009-11-09 17:03 . 2004-08-04 12:00 1744 c:\windows\system32\dllcache\sound.drv
- 2004-08-04 12:00 . 2004-08-04 12:00 1744 c:\windows\system32\dllcache\sound.drv
+ 2004-08-04 12:00 . 2001-08-17 21:51 3328 c:\windows\system32\dllcache\pciide.sys
+ 2010-07-06 02:17 . 2004-08-04 03:58 5504 c:\windows\system32\dllcache\mstee.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 4608 c:\windows\system32\dllcache\mqsvc.exe
+ 2004-08-04 12:00 . 2009-06-22 11:49 4608 c:\windows\system32\dllcache\mqsvc.exe
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\dllcache\mpg4dmod.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\dllcache\mp4sdmod.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 4096 c:\windows\system32\dllcache\mp43dmod.dll
+ 2009-11-09 17:03 . 2004-08-04 12:00 2032 c:\windows\system32\dllcache\mouse.drv
- 2004-08-04 12:00 . 2004-08-04 12:00 2032 c:\windows\system32\dllcache\mouse.drv
+ 2009-11-09 17:03 . 2004-08-04 12:00 2000 c:\windows\system32\dllcache\keyboard.drv
- 2004-08-04 12:00 . 2004-08-04 12:00 2000 c:\windows\system32\dllcache\keyboard.drv
+ 2004-08-04 12:00 . 2006-10-19 05:47 7168 c:\windows\system32\dllcache\asferror.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 7168 c:\windows\system32\asferror.dll
+ 2010-02-10 17:14 . 2010-03-26 13:30 4096 c:\windows\Installer\{90510409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2009-11-09 12:37 . 2009-11-17 09:18 4096 c:\windows\Installer\{903A0409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-11-09 12:37 . 2010-06-29 15:07 4096 c:\windows\Installer\{903A0409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-12-08 21:19 . 2009-12-08 21:19 9110 c:\windows\Installer\{72EEB695-388B-4835-8EA6-0C04545B06B9}\ARPPRODUCTICON.exe
+ 2009-12-08 05:37 . 2009-03-08 12:35 2048 c:\windows\ie8updates\KB975364-IE8\iecompat.dll
+ 2009-11-27 16:37 . 2009-11-27 16:37 8704 c:\windows\Driver Cache\i386\tsbyuv.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 5706 c:\windows\Downloaded Program Files\WebEx\926\atkbctl.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 5702 c:\windows\Downloaded Program Files\WebEx\924\atkbctl.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 5706 c:\windows\Downloaded Program Files\WebEx\824\atkbctl.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 8192 c:\windows\$NtUninstallwmp11$\asferror.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 6656 c:\windows\$NtUninstallWMFDist11$\laprxy.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 8192 c:\windows\$NtUninstallKB977914$\tsbyuv.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 4608 c:\windows\$NtUninstallKB971032$\mqsvc.exe
+ 2009-11-27 16:28 . 2009-11-27 16:28 8704 c:\windows\$hf_mig$\KB977914\SP3QFE\tsbyuv.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 8704 c:\windows\$hf_mig$\KB977914\SP3GDR\tsbyuv.dll
+ 2009-11-27 16:18 . 2009-11-27 16:18 8704 c:\windows\$hf_mig$\KB977914\SP2QFE\tsbyuv.dll
+ 2009-06-22 11:30 . 2009-06-22 11:30 4608 c:\windows\$hf_mig$\KB971032\SP2QFE\mqsvc.exe
+ 2010-03-03 05:43 . 2008-05-03 11:55 2560 c:\windows\$hf_mig$\KB923561\SP3QFE\xpsp4res.dll
+ 2010-03-03 05:43 . 2008-05-03 11:55 2560 c:\windows\$hf_mig$\KB923561\SP3GDR\xpsp4res.dll
+ 2007-11-07 06:19 . 2007-11-07 06:19 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcr90.dll
+ 2007-11-07 06:19 . 2007-11-07 06:19 568832 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcp90.dll
+ 2007-11-07 01:23 . 2007-11-07 01:23 224768 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcm90.dll
+ 2009-07-12 06:12 . 2009-07-12 06:12 632656 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
+ 2009-07-12 06:09 . 2009-07-12 06:09 554832 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcp80.dll
+ 2009-07-12 06:08 . 2009-07-12 06:08 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcm80.dll
+ 2010-07-19 00:44 . 2009-04-20 12:10 296224 c:\windows\temp\OBE82B.EXE
+ 2010-03-03 05:43 . 2009-04-15 09:24 351744 c:\windows\system32\xpsp3res.dll
+ 2009-01-08 02:21 . 2009-01-08 02:21 121856 c:\windows\system32\xmllite.dll
+ 2006-09-29 02:56 . 2006-09-29 02:56 316416 c:\windows\system32\WUDFx.dll
+ 2006-09-29 02:56 . 2006-09-29 02:56 165376 c:\windows\system32\WudfPlatform.dll
+ 2006-09-29 02:56 . 2006-09-29 02:56 146432 c:\windows\system32\WudfHost.exe
+ 2006-10-19 05:47 . 2006-10-19 05:47 356352 c:\windows\system32\wpdsp.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 133632 c:\windows\system32\WPDShServiceObj.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 154624 c:\windows\system32\wpdmtp.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 629760 c:\windows\system32\wpd_ci.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 656896 c:\windows\system32\WMVXENCD.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 767488 c:\windows\system32\WMVSENCD.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 603648 c:\windows\system32\WMSPDMOD.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 204288 c:\windows\system32\wmpsrcwp.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 130048 c:\windows\system32\wmpps.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 221184 c:\windows\system32\wmpns.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 613376 c:\windows\system32\wmpmde.dll
+ 2006-10-19 05:47 . 2008-06-25 00:12 295936 c:\windows\system32\wmpeffects.dll
+ 2004-08-04 12:00 . 2009-07-14 05:43 286208 c:\windows\system32\wmpdxm.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 242688 c:\windows\system32\wmpasf.dll
+ 2004-08-04 12:00 . 2008-06-18 11:03 938496 c:\windows\system32\WMNetmgr.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 157184 c:\windows\system32\wmidx.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 227328 c:\windows\system32\wmerror.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 535040 c:\windows\system32\wmdrmsdk.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 348672 c:\windows\system32\wmdrmnet.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 429056 c:\windows\system32\wmdrmdev.dll
+ 2004-08-04 12:00 . 2007-10-27 23:40 222720 c:\windows\system32\wmasf.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 757248 c:\windows\system32\WMADMOD.dll
+ 2004-08-04 12:00 . 2009-06-10 06:32 132096 c:\windows\system32\wkssvc.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 132096 c:\windows\system32\wkssvc.dll
+ 2004-08-04 12:00 . 2009-12-24 07:05 177664 c:\windows\system32\wintrust.dll
+ 2004-08-04 12:00 . 2008-12-16 12:47 351232 c:\windows\system32\winhttp.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 351232 c:\windows\system32\winhttp.dll
+ 2009-03-08 12:34 . 2009-03-08 12:34 208384 c:\windows\system32\WinFXDocObj.exe
+ 2004-08-04 12:00 . 2009-03-08 12:34 236544 c:\windows\system32\webcheck.dll
+ 2009-11-09 11:39 . 2009-02-06 16:39 227840 c:\windows\system32\wbem\wmiprvse.exe
+ 2009-11-09 11:39 . 2009-02-09 10:20 453120 c:\windows\system32\wbem\wmiprvsd.dll
+ 2009-11-09 11:39 . 2009-02-09 10:20 473088 c:\windows\system32\wbem\fastprox.dll
+ 2004-08-04 12:00 . 2010-03-10 06:15 420352 c:\windows\system32\vbscript.dll
+ 1999-06-01 05:00 . 1999-06-01 05:00 101888 c:\windows\system32\Vb6stkit.dll
+ 2004-08-04 12:00 . 2009-03-08 12:34 105984 c:\windows\system32\url.dll
+ 2008-05-27 03:19 . 2008-05-27 03:19 131072 c:\windows\system32\UncPH.dll
+ 2008-05-27 03:19 . 2008-05-27 03:19 108032 c:\windows\system32\UncNE.dll
+ 2008-05-27 03:19 . 2008-05-27 03:19 143872 c:\windows\system32\UncDMS.dll
+ 2004-08-04 12:00 . 2009-10-16 04:51 119808 c:\windows\system32\t2embed.dll
+ 2008-05-27 02:59 . 2008-05-27 02:59 106605 c:\windows\system32\structuredqueryschema.bin
+ 2004-08-04 12:00 . 2009-08-26 08:16 247326 c:\windows\system32\strmdll.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 301568 c:\windows\system32\srchadmin.dll
+ 2009-12-21 13:44 . 2006-10-26 14:28 793392 c:\windows\system32\spool\drivers\w32x86\mdigraph.dll
+ 2006-12-14 21:00 . 2005-10-18 16:24 831488 c:\windows\system32\spool\drivers\w32x86\3\xlibeay.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 122880 c:\windows\system32\spool\drivers\w32x86\3\x2wmrkAP.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 101888 c:\windows\system32\spool\drivers\w32x86\3\x2wftuAP.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 689152 c:\windows\system32\spool\drivers\w32x86\3\x2utilAP.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 501760 c:\windows\system32\spool\drivers\w32x86\3\x2upAP.dll
+ 2007-09-13 15:11 . 2010-02-02 13:21 784896 c:\windows\system32\spool\drivers\w32x86\3\x2txt01.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 512000 c:\windows\system32\spool\drivers\w32x86\3\x2rpsAP.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 365568 c:\windows\system32\spool\drivers\w32x86\3\x2jobtAP.exe
+ 2007-09-13 15:19 . 2010-02-02 13:31 431616 c:\windows\system32\spool\drivers\w32x86\3\x2fpb02.exe
+ 2007-09-13 15:19 . 2007-09-13 15:19 711680 c:\windows\system32\spool\drivers\w32x86\3\x2comsAP.dll
+ 2007-11-15 05:38 . 2010-01-01 16:46 542208 c:\windows\system32\spool\drivers\w32x86\3\PSCRIPT5.DLL
+ 2007-11-15 05:38 . 2010-01-01 16:46 726016 c:\windows\system32\spool\drivers\w32x86\3\PS5UI.DLL
+ 2009-12-21 13:44 . 2006-10-26 14:28 793392 c:\windows\system32\spool\drivers\w32x86\3\mdigraph.dll
+ 2010-04-28 01:21 . 2010-03-17 13:51 160008 c:\windows\system32\spool\drivers\w32x86\3\lmdiui8.dll
+ 2010-04-28 01:21 . 2010-03-17 13:51 984336 c:\windows\system32\spool\drivers\w32x86\3\lmdigraph8.dll
+ 2004-08-04 12:00 . 2009-12-08 08:59 474112 c:\windows\system32\shlwapi.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 169472 c:\windows\system32\Setup\msmqocm.dll
+ 2004-08-04 12:00 . 2009-02-06 17:14 110592 c:\windows\system32\services.exe
+ 2008-05-27 03:18 . 2008-05-27 03:18 184832 c:\windows\system32\searchprotocolhost.exe
+ 2008-05-27 03:18 . 2008-05-27 03:18 439808 c:\windows\system32\searchindexer.exe
+ 2004-08-04 12:00 . 2009-06-25 08:44 168448 c:\windows\system32\schannel.dll
+ 2004-08-04 12:00 . 2009-02-09 10:20 399360 c:\windows\system32\rpcss.dll
+ 2004-08-04 12:00 . 2009-04-15 15:11 584192 c:\windows\system32\rpcrt4.dll
+ 2009-12-08 20:24 . 2004-08-04 07:08 142976 c:\windows\system32\ReinstallBackups\0010\DriverFiles\i386\usbport.sys
+ 2009-12-08 20:24 . 2004-08-04 07:08 142976 c:\windows\system32\ReinstallBackups\0009\DriverFiles\i386\usbport.sys
+ 2009-12-08 20:24 . 2004-08-04 07:08 142976 c:\windows\system32\ReinstallBackups\0008\DriverFiles\i386\usbport.sys
+ 2009-12-08 20:24 . 2004-08-04 07:08 142976 c:\windows\system32\ReinstallBackups\0007\DriverFiles\i386\usbport.sys
+ 2009-12-08 20:24 . 2004-08-04 12:00 142976 c:\windows\system32\ReinstallBackups\0006\DriverFiles\i386\usbport.sys
+ 2009-12-08 20:23 . 2009-12-08 05:50 147616 c:\windows\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
+ 2004-08-04 12:00 . 2009-10-12 13:54 112128 c:\windows\system32\rastls.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 112128 c:\windows\system32\rastls.dll
+ 2006-11-13 21:39 . 2006-11-13 21:39 138024 c:\windows\system32\rapi.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 211456 c:\windows\system32\qasf.dll
+ 2010-04-15 04:55 . 2004-08-04 05:56 159232 c:\windows\system32\ptpusd.dll
+ 2008-05-27 03:17 . 2008-05-27 03:17 754176 c:\windows\system32\propsys.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 199168 c:\windows\system32\PortableDeviceWMDRM.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 132096 c:\windows\system32\PortableDeviceWiaCompat.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 166912 c:\windows\system32\PortableDeviceTypes.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 101888 c:\windows\system32\PortableDeviceClassExtension.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 284160 c:\windows\system32\PortableDeviceApi.dll
+ 2004-08-04 12:00 . 2010-07-03 16:39 336120 c:\windows\system32\perfh009.dat
+ 2004-08-04 12:00 . 2009-03-06 14:44 283648 c:\windows\system32\pdh.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 283648 c:\windows\system32\pdh.dll
+ 2004-08-04 12:00 . 2008-03-07 16:56 192000 c:\windows\system32\offfilt.dll
+ 2008-05-27 03:19 . 2008-05-27 03:19 273408 c:\windows\system32\oeph.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 206848 c:\windows\system32\occache.dll
+ 2004-08-04 12:00 . 2009-10-13 10:53 266752 c:\windows\system32\oakley.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 266752 c:\windows\system32\oakley.dll
+ 2004-08-04 12:00 . 2009-02-09 10:20 714752 c:\windows\system32\ntdll.dll
+ 2009-12-08 21:18 . 2008-06-20 18:32 663552 c:\windows\system32\NETw5c32.dll
+ 2009-05-21 21:57 . 2009-05-21 21:57 204800 c:\windows\system32\NetProvCredMan.dll
+ 2004-08-04 12:00 . 2008-10-15 16:57 332800 c:\windows\system32\netapi32.dll
+ 2010-03-25 03:40 . 2009-08-07 00:23 215920 c:\windows\system32\muweb.dll
+ 2010-03-25 03:40 . 2009-08-07 00:23 274288 c:\windows\system32\mucltui.dll
+ 2004-08-04 12:00 . 2008-06-20 17:41 245248 c:\windows\system32\mswsock.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 245248 c:\windows\system32\mswsock.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 321536 c:\windows\system32\mswmdm.dll
+ 2004-08-04 12:00 . 2009-08-05 09:11 204800 c:\windows\system32\mswebdvd.dll
- 2003-02-21 10:42 . 2003-02-21 10:42 348160 c:\windows\system32\msvcr71.dll
+ 2003-02-21 10:42 . 2006-11-01 20:48 348160 c:\windows\system32\MSVCR71.DLL
+ 2009-12-08 21:33 . 2006-11-01 20:48 499712 c:\windows\system32\MSVCP71.DLL
+ 2004-08-04 12:00 . 2009-09-11 14:33 133632 c:\windows\system32\msv1_0.dll
+ 2009-11-09 11:39 . 2009-06-05 07:42 655872 c:\windows\system32\mstscax.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 611840 c:\windows\system32\mstime.dll
+ 2008-05-27 03:18 . 2008-05-27 03:18 203776 c:\windows\system32\mssphtb.dll
+ 2008-05-27 03:18 . 2009-05-25 05:24 350208 c:\windows\system32\mssph.dll
+ 2008-05-27 03:18 . 2008-05-27 03:18 231936 c:\windows\system32\msshsq.dll
+ 2004-08-04 12:00 . 2006-12-04 22:21 414720 c:\windows\system32\msscp.dll
+ 2004-08-04 12:00 . 2009-03-08 12:34 193536 c:\windows\system32\msrating.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 175616 c:\windows\system32\mspmsp.dll
- 2009-11-09 11:39 . 2004-08-04 12:00 343040 c:\windows\system32\mspaint.exe
+ 2009-11-09 11:39 . 2009-12-16 12:58 343040 c:\windows\system32\mspaint.exe
+ 2004-08-04 12:00 . 2006-10-19 05:47 179712 c:\windows\system32\msnetobj.dll
+ 2004-08-04 12:00 . 2009-03-08 12:22 156160 c:\windows\system32\msls31.dll
+ 2009-03-08 12:32 . 2010-05-06 10:41 599040 c:\windows\system32\msfeeds.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 161792 c:\windows\system32\msdtcuiu.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 956928 c:\windows\system32\msdtctm.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 428032 c:\windows\system32\msdtcprx.dll
+ 2006-10-02 23:28 . 2006-10-02 23:28 312128 c:\windows\system32\msdelta.dll
+ 2009-01-08 02:20 . 2009-01-08 02:20 265720 c:\windows\system32\msdbg2.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 471552 c:\windows\system32\mqutil.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 471552 c:\windows\system32\mqutil.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 186880 c:\windows\system32\mqtrig.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 186880 c:\windows\system32\mqtrig.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 117248 c:\windows\system32\mqtgsvc.exe
+ 2004-08-04 12:00 . 2009-06-22 11:49 117248 c:\windows\system32\mqtgsvc.exe
+ 2004-08-04 12:00 . 2009-06-25 18:36 517120 c:\windows\system32\mqsnap.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 123392 c:\windows\system32\mqrtdep.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 123392 c:\windows\system32\mqrtdep.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 177152 c:\windows\system32\mqrt.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 177152 c:\windows\system32\mqrt.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 661504 c:\windows\system32\mqqm.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 225280 c:\windows\system32\mqoa.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 225280 c:\windows\system32\mqoa.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 138240 c:\windows\system32\mqad.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 138240 c:\windows\system32\mqad.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 259072 c:\windows\system32\MPG4DECD.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 317440 c:\windows\system32\MP4SDECD.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 259072 c:\windows\system32\MP43DECD.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 212992 c:\windows\system32\MFPLAT.dll
+ 2010-01-27 00:58 . 2010-01-27 00:58 256280 c:\windows\system32\Macromed\Flash\FlashUtil10e.exe
+ 2004-08-04 12:00 . 2009-06-25 08:44 724480 c:\windows\system32\lsasrv.dll
+ 2004-08-04 12:00 . 2008-06-18 07:09 100864 c:\windows\system32\logagent.exe
+ 2004-08-04 12:00 . 2009-05-07 15:44 344064 c:\windows\system32\localspl.dll
+ 2004-08-04 12:00 . 2009-06-25 08:44 298496 c:\windows\system32\kerberos.dll
+ 2004-08-04 12:00 . 2009-06-22 06:44 726528 c:\windows\system32\jscript.dll
+ 2009-11-09 11:41 . 2008-04-11 18:50 683520 c:\windows\system32\inetcomm.dll
+ 2009-03-08 12:22 . 2009-03-08 12:22 164352 c:\windows\system32\ieui.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 184320 c:\windows\system32\iepeers.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 387584 c:\windows\system32\iedkcs32.dll
+ 2009-03-08 12:11 . 2009-03-08 12:11 445952 c:\windows\system32\ieapfltr.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 163840 c:\windows\system32\ieakui.dll
+ 2004-08-04 12:00 . 2009-03-08 12:33 229376 c:\windows\system32\ieaksie.dll
+ 2004-08-04 12:00 . 2009-03-08 12:33 125952 c:\windows\system32\ieakeng.dll
+ 2004-08-04 12:00 . 2010-05-05 13:30 173056 c:\windows\system32\ie4uinit.exe
+ 2010-04-11 02:05 . 2008-04-17 17:12 107368 c:\windows\system32\GEARAspi.dll
+ 2004-08-04 12:00 . 2008-10-23 13:01 283648 c:\windows\system32\gdi32.dll
+ 2009-11-09 17:02 . 2010-05-02 17:49 265416 c:\windows\system32\FNTCACHE.DAT
+ 2004-08-04 12:00 . 2008-07-07 20:32 253952 c:\windows\system32\es.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 216064 c:\windows\system32\dxtrans.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 348160 c:\windows\system32\dxtmsft.dll
+ 2009-12-08 21:18 . 2007-02-12 20:40 557056 c:\windows\system32\DRVSTORE\w29n51_AEF466EE116FDF742A02BFF75E6143DB4A91003C\Netw2c32.dll
+ 2009-12-08 21:18 . 2008-06-20 18:32 663552 c:\windows\system32\DRVSTORE\netw5x32_D5D0E44792B0452958414D32626987C3E12635A2\NETw5c32.dll
+ 2010-04-11 02:05 . 2008-04-17 17:12 107368 c:\windows\system32\DRVSTORE\GEARAspiWD_3B7AACF0636A2C042EB7AD2AFF76D37B27BDD28C\x86\GEARAspi.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 991744 c:\windows\system32\drmv2clt.dll
+ 2006-10-19 04:00 . 2006-10-19 04:00 249856 c:\windows\system32\drmupgds.exe
+ 2004-08-04 12:00 . 2004-08-04 07:08 142976 c:\windows\system32\drivers\usbport.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 142976 c:\windows\system32\drivers\usbport.sys
+ 2006-10-19 05:47 . 2006-10-19 05:47 671232 c:\windows\system32\drivers\UMDF\wpdmtpdr.dll
+ 2004-08-04 12:00 . 2008-06-20 09:52 225920 c:\windows\system32\drivers\tcpip6.sys
+ 2004-08-04 12:00 . 2008-06-20 10:45 360320 c:\windows\system32\drivers\tcpip.sys
+ 2004-08-04 12:00 . 2008-05-08 12:28 202752 c:\windows\system32\drivers\rmcast.sys
+ 2004-08-04 12:00 . 2009-12-04 14:41 453760 c:\windows\system32\drivers\mrxsmb.sys
+ 2010-04-11 23:30 . 2003-07-24 23:55 139604 c:\windows\system32\drivers\dne2000.sys
+ 2004-08-04 12:00 . 2008-06-20 10:44 138368 c:\windows\system32\drivers\afd.sys
+ 2004-08-04 12:00 . 2008-06-20 17:41 148992 c:\windows\system32\dnsapi.dll
+ 2010-02-12 16:46 . 2010-02-12 16:46 107808 c:\windows\system32\dns-sd.exe
+ 2010-04-11 23:30 . 2004-01-23 20:28 113596 c:\windows\system32\dneinobj.dll
+ 2009-11-09 11:39 . 2008-04-21 10:02 215552 c:\windows\system32\dllcache\wordpad.exe
+ 2004-08-04 12:00 . 2006-10-19 05:47 603648 c:\windows\system32\dllcache\WMSPDMOD.dll
+ 2004-08-04 12:00 . 2009-07-14 05:43 286208 c:\windows\system32\dllcache\wmpdxm.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 242688 c:\windows\system32\dllcache\wmpasf.dll
+ 2004-08-04 12:00 . 2008-06-18 11:03 938496 c:\windows\system32\dllcache\WMNetmgr.dll
+ 2009-11-09 11:39 . 2009-02-06 16:39 227840 c:\windows\system32\dllcache\wmiprvse.exe
+ 2009-11-09 11:39 . 2009-02-09 10:20 453120 c:\windows\system32\dllcache\wmiprvsd.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 157184 c:\windows\system32\dllcache\wmidx.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 227328 c:\windows\system32\dllcache\wmerror.dll
+ 2004-08-04 12:00 . 2007-10-27 23:40 222720 c:\windows\system32\dllcache\wmasf.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 757248 c:\windows\system32\dllcache\WMADMOD.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2004-08-04 12:00 . 2009-06-10 06:32 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2004-08-04 12:00 . 2009-12-24 07:05 177664 c:\windows\system32\dllcache\wintrust.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 146432 c:\windows\system32\dllcache\winspool.drv
+ 2009-11-09 17:03 . 2004-08-04 12:00 146432 c:\windows\system32\dllcache\winspool.drv
+ 2004-08-04 12:00 . 2010-05-06 10:41 916480 c:\windows\system32\dllcache\wininet.dll
+ 2004-08-04 12:00 . 2008-12-16 12:47 351232 c:\windows\system32\dllcache\winhttp.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 351232 c:\windows\system32\dllcache\winhttp.dll
+ 2004-08-04 12:00 . 2009-03-08 12:34 236544 c:\windows\system32\dllcache\webcheck.dll
+ 2009-11-09 11:42 . 2009-03-08 12:33 759296 c:\windows\system32\dllcache\VGX.dll
+ 2004-08-04 12:00 . 2010-03-10 06:15 420352 c:\windows\system32\dllcache\vbscript.dll
+ 2004-08-04 12:00 . 2004-08-04 07:08 142976 c:\windows\system32\dllcache\usbport.sys
+ 2004-08-04 12:00 . 2009-03-08 12:34 105984 c:\windows\system32\dllcache\url.dll
+ 2004-08-04 12:00 . 2007-06-27 04:10 317440 c:\windows\system32\dllcache\unregmp2.exe
- 2009-11-09 11:41 . 2004-08-04 12:00 153088 c:\windows\system32\dllcache\triedit.dll
+ 2009-11-09 11:41 . 2009-06-21 22:04 153088 c:\windows\system32\dllcache\triedit.dll
+ 2004-08-04 12:00 . 2008-06-20 09:52 225920 c:\windows\system32\dllcache\tcpip6.sys
+ 2004-08-04 12:00 . 2008-06-20 10:45 360320 c:\windows\system32\dllcache\tcpip.sys
+ 2004-08-04 12:00 . 2009-10-16 04:51 119808 c:\windows\system32\dllcache\t2embed.dll
+ 2004-08-04 12:00 . 2009-08-26 08:16 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2009-01-08 02:20 . 2009-01-08 02:20 134144 c:\windows\system32\dllcache\sqmapi.dll
+ 2004-08-04 12:00 . 2009-12-08 08:59 474112 c:\windows\system32\dllcache\shlwapi.dll
+ 2004-08-04 12:00 . 2009-02-06 17:14 110592 c:\windows\system32\dllcache\services.exe
+ 2004-08-04 12:00 . 2009-06-25 08:44 168448 c:\windows\system32\dllcache\schannel.dll
+ 2004-08-04 12:00 . 2009-02-09 10:20 399360 c:\windows\system32\dllcache\rpcss.dll
+ 2004-08-04 12:00 . 2009-04-15 15:11 584192 c:\windows\system32\dllcache\rpcrt4.dll
+ 2004-08-04 12:00 . 2008-05-08 12:28 202752 c:\windows\system32\dllcache\rmcast.sys
+ 2004-08-04 12:00 . 2009-10-12 13:54 112128 c:\windows\system32\dllcache\rastls.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 112128 c:\windows\system32\dllcache\rastls.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 211456 c:\windows\system32\dllcache\qasf.dll
+ 2004-08-04 12:00 . 2009-03-06 14:44 283648 c:\windows\system32\dllcache\pdh.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 283648 c:\windows\system32\dllcache\pdh.dll
+ 2004-08-04 12:00 . 2008-03-07 16:56 192000 c:\windows\system32\dllcache\offfilt.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 206848 c:\windows\system32\dllcache\occache.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 266752 c:\windows\system32\dllcache\oakley.dll
+ 2004-08-04 12:00 . 2009-10-13 10:53 266752 c:\windows\system32\dllcache\oakley.dll
+ 2004-08-04 12:00 . 2009-02-09 10:20 714752 c:\windows\system32\dllcache\ntdll.dll
+ 2004-08-04 12:00 . 2008-10-15 16:57 332800 c:\windows\system32\dllcache\netapi32.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 245248 c:\windows\system32\dllcache\mswsock.dll
+ 2004-08-04 12:00 . 2008-06-20 17:41 245248 c:\windows\system32\dllcache\mswsock.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 321536 c:\windows\system32\dllcache\mswmdm.dll
+ 2004-08-04 12:00 . 2009-08-05 09:11 204800 c:\windows\system32\dllcache\mswebdvd.dll
+ 2004-08-04 12:00 . 2009-09-11 14:33 133632 c:\windows\system32\dllcache\msv1_0.dll
+ 2009-11-09 11:39 . 2009-06-05 07:42 655872 c:\windows\system32\dllcache\mstscax.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 611840 c:\windows\system32\dllcache\mstime.dll
+ 2004-08-04 12:00 . 2006-12-04 22:21 414720 c:\windows\system32\dllcache\msscp.dll
+ 2004-08-04 12:00 . 2009-03-08 12:34 193536 c:\windows\system32\dllcache\msrating.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 175616 c:\windows\system32\dllcache\mspmsp.dll
- 2009-11-09 11:39 . 2004-08-04 12:00 343040 c:\windows\system32\dllcache\mspaint.exe
+ 2009-11-09 11:39 . 2009-12-16 12:58 343040 c:\windows\system32\dllcache\mspaint.exe
+ 2004-08-04 12:00 . 2006-10-19 05:47 179712 c:\windows\system32\dllcache\msnetobj.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 169472 c:\windows\system32\dllcache\msmqocm.dll
+ 2004-08-04 12:00 . 2009-03-08 12:22 156160 c:\windows\system32\dllcache\msls31.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 161792 c:\windows\system32\dllcache\msdtcuiu.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 956928 c:\windows\system32\dllcache\msdtctm.dll
+ 2009-11-09 11:39 . 2008-06-12 14:16 428032 c:\windows\system32\dllcache\msdtcprx.dll
+ 2009-11-09 11:41 . 2008-05-01 14:30 331776 c:\windows\system32\dllcache\msadce.dll
- 2009-11-09 11:41 . 2004-08-04 12:00 331776 c:\windows\system32\dllcache\msadce.dll
+ 2010-03-03 05:53 . 2009-12-04 14:41 453760 c:\windows\system32\dllcache\mrxsmb.sys
- 2004-08-04 12:00 . 2004-08-04 12:00 471552 c:\windows\system32\dllcache\mqutil.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 471552 c:\windows\system32\dllcache\mqutil.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 186880 c:\windows\system32\dllcache\mqtrig.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 186880 c:\windows\system32\dllcache\mqtrig.dll
+ 2004-08-04 12:00 . 2009-06-22 11:49 117248 c:\windows\system32\dllcache\mqtgsvc.exe
- 2004-08-04 12:00 . 2004-08-04 12:00 117248 c:\windows\system32\dllcache\mqtgsvc.exe
+ 2004-08-04 12:00 . 2009-06-25 18:36 517120 c:\windows\system32\dllcache\mqsnap.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 123392 c:\windows\system32\dllcache\mqrtdep.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 123392 c:\windows\system32\dllcache\mqrtdep.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 177152 c:\windows\system32\dllcache\mqrt.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 177152 c:\windows\system32\dllcache\mqrt.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 661504 c:\windows\system32\dllcache\mqqm.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 225280 c:\windows\system32\dllcache\mqoa.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 225280 c:\windows\system32\dllcache\mqoa.dll
+ 2004-08-04 12:00 . 2009-06-25 18:36 138240 c:\windows\system32\dllcache\mqad.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 138240 c:\windows\system32\dllcache\mqad.dll
+ 2009-11-09 11:42 . 2006-10-19 05:47 243712 c:\windows\system32\dllcache\mpvis.dll
+ 2004-08-04 12:00 . 2009-06-25 08:44 724480 c:\windows\system32\dllcache\lsasrv.dll
+ 2004-08-04 12:00 . 2008-06-18 07:09 100864 c:\windows\system32\dllcache\logagent.exe
+ 2004-08-04 12:00 . 2009-05-07 15:44 344064 c:\windows\system32\dllcache\localspl.dll
+ 2004-08-04 12:00 . 2009-06-25 08:44 298496 c:\windows\system32\dllcache\kerberos.dll
+ 2004-08-04 12:00 . 2009-06-22 06:44 726528 c:\windows\system32\dllcache\jscript.dll
+ 2009-11-09 11:41 . 2008-04-11 18:50 683520 c:\windows\system32\dllcache\inetcomm.dll
+ 2009-11-09 11:41 . 2009-03-08 22:09 638816 c:\windows\system32\dllcache\iexplore.exe
+ 2004-08-04 12:00 . 2010-05-06 10:41 184320 c:\windows\system32\dllcache\iepeers.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 387584 c:\windows\system32\dllcache\iedkcs32.dll
+ 2004-08-04 12:00 . 2009-03-08 12:32 163840 c:\windows\system32\dllcache\ieakui.dll
+ 2004-08-04 12:00 . 2009-03-08 12:33 229376 c:\windows\system32\dllcache\ieaksie.dll
+ 2004-08-04 12:00 . 2009-03-08 12:33 125952 c:\windows\system32\dllcache\ieakeng.dll
+ 2004-08-04 12:00 . 2010-05-05 13:30 173056 c:\windows\system32\dllcache\ie4uinit.exe
+ 2004-08-04 12:00 . 2008-10-23 13:01 283648 c:\windows\system32\dllcache\gdi32.dll
+ 2009-11-09 11:39 . 2009-02-09 10:20 473088 c:\windows\system32\dllcache\fastprox.dll
+ 2004-08-04 12:00 . 2008-07-07 20:32 253952 c:\windows\system32\dllcache\es.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 216064 c:\windows\system32\dllcache\dxtrans.dll
+ 2004-08-04 12:00 . 2009-03-08 12:31 348160 c:\windows\system32\dllcache\dxtmsft.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 991744 c:\windows\system32\dllcache\drmv2clt.dll
+ 2004-08-04 12:00 . 2008-06-20 17:41 148992 c:\windows\system32\dllcache\dnsapi.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 229376 c:\windows\system32\dllcache\cewmdm.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 542720 c:\windows\system32\dllcache\blackbox.dll
+ 2004-08-04 12:00 . 2008-06-20 10:44 138368 c:\windows\system32\dllcache\afd.sys
+ 2004-08-04 12:00 . 2009-03-08 12:32 128512 c:\windows\system32\dllcache\advpack.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 616960 c:\windows\system32\dllcache\advapi32.dll
+ 2004-08-04 12:00 . 2009-02-09 10:20 616960 c:\windows\system32\dllcache\advapi32.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 100352 c:\windows\system32\dllcache\6to4svc.dll
+ 2004-08-04 12:00 . 2006-08-16 11:58 100352 c:\windows\system32\dllcache\6to4svc.dll
+ 2010-04-11 23:30 . 2005-01-07 19:15 172056 c:\windows\system32\CSGina.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 229376 c:\windows\system32\cewmdm.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 542720 c:\windows\system32\blackbox.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 253952 c:\windows\system32\bcmwlu00.exe
+ 2009-12-08 21:33 . 2006-11-01 20:48 770048 c:\windows\system32\BCMLogon.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 757760 c:\windows\system32\bcm1xsup.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 276992 c:\windows\system32\audiodev.dll
+ 2009-11-09 12:15 . 2009-12-08 19:45 319488 c:\windows\system32\AegisI5Installer.exe
- 2009-11-09 12:15 . 2009-11-09 12:15 319488 c:\windows\system32\AegisI5Installer.exe
+ 2004-08-04 12:00 . 2009-03-08 12:32 128512 c:\windows\system32\advpack.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 616960 c:\windows\system32\advapi32.dll
+ 2004-08-04 12:00 . 2009-02-09 10:20 616960 c:\windows\system32\advapi32.dll
+ 2004-08-04 12:00 . 2006-08-16 11:58 100352 c:\windows\system32\6to4svc.dll
- 2004-08-04 12:00 . 2004-08-04 12:00 100352 c:\windows\system32\6to4svc.dll
+ 2010-05-02 17:48 . 1995-01-13 19:10 177216 c:\windows\system\TYPELIB.DLL
+ 2010-05-02 17:48 . 1995-01-13 19:10 157696 c:\windows\system\STORAGE.DLL
+ 2010-05-02 17:48 . 1995-01-13 19:10 150976 c:\windows\system\OLE2NLS.DLL
+ 2010-05-02 17:48 . 1995-01-13 19:10 164832 c:\windows\system\OLE2DISP.DLL
+ 2010-05-02 17:48 . 1995-01-13 19:10 302592 c:\windows\system\OLE2.DLL
+ 2010-05-02 17:48 . 1995-04-27 03:33 146976 c:\windows\system\MFCOLEUI.DLL
+ 2010-05-02 17:48 . 1995-04-27 04:20 125856 c:\windows\system\MFCO250.DLL
+ 2010-05-02 17:48 . 1995-04-27 04:15 322384 c:\windows\system\MFC250.DLL
+ 2010-05-02 17:48 . 1995-01-13 19:10 108544 c:\windows\system\COMPOBJ.DLL
+ 2010-05-02 17:48 . 1998-10-29 22:45 306688 c:\windows\IsUninst.exe
+ 2010-03-11 18:40 . 2010-03-11 18:40 164352 c:\windows\Installer\bf0b10.msi
+ 2010-02-20 20:09 . 2010-02-20 20:09 912384 c:\windows\Installer\b365dc.msi
+ 2010-05-23 02:14 . 2010-05-23 02:14 881664 c:\windows\Installer\8d912b.msi
+ 2010-03-26 01:58 . 2010-03-26 01:58 705536 c:\windows\Installer\7342ec.msi
+ 2010-03-26 01:58 . 2010-03-26 01:58 868864 c:\windows\Installer\7342e8.msi
+ 2010-06-11 03:04 . 2010-06-11 03:04 165888 c:\windows\Installer\29c6f0.msi
+ 2010-06-11 03:03 . 2010-06-11 03:03 186368 c:\windows\Installer\29c6ea.msi
+ 2010-06-11 03:03 . 2010-06-11 03:03 206336 c:\windows\Installer\29c6de.msi
+ 2008-06-11 19:02 . 2008-06-11 19:02 830464 c:\windows\Installer\24e2b2c.msp
+ 2010-04-11 02:01 . 2010-04-11 02:01 791552 c:\windows\Installer\10f0fe.msi
- 2009-11-11 17:11 . 2009-11-11 17:11 371272 c:\windows\Installer\{D103C4BA-F905-437A-8049-DB24763BBE36}\SkypeIcon.exe
+ 2010-07-06 02:40 . 2010-07-06 02:40 371272 c:\windows\Installer\{D103C4BA-F905-437A-8049-DB24763BBE36}\SkypeIcon.exe
+ 2010-04-11 02:05 . 2010-04-11 02:05 372736 c:\windows\Installer\{996A2FAA-7514-4628-9D12-A8FC34A0016E}\iTunesIco.exe
+ 2010-02-10 17:14 . 2010-03-26 13:30 176128 c:\windows\Installer\{90510409-6000-11D3-8CFE-0150048383C9}\visicon.exe
+ 2010-02-10 17:14 . 2010-03-26 13:30 135168 c:\windows\Installer\{90510409-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-11-09 12:37 . 2009-11-17 09:18 147456 c:\windows\Installer\{903A0409-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
+ 2009-11-09 12:37 . 2010-06-29 15:07 147456 c:\windows\Installer\{903A0409-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
- 2009-11-09 12:37 . 2009-11-17 09:18 135168 c:\windows\Installer\{903A0409-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-11-09 12:37 . 2010-06-29 15:07 135168 c:\windows\Installer\{903A0409-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2010-06-29 15:12 . 2010-06-29 15:12 217864 c:\windows\Installer\{90120000-006E-0409-0000-0000000FF1CE}\misc.exe
- 2009-11-09 12:20 . 2009-11-09 12:20 217864 c:\windows\Installer\{90120000-006E-0409-0000-0000000FF1CE}\misc.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 888080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 888080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 272648 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 272648 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 922384 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 922384 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 845584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 845584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 217864 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 217864 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 184080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 184080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 159504 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 159504 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
+ 2008-12-17 04:02 . 2008-12-17 04:02 183624 c:\windows\Installer\$PatchCache$\Managed\9BBBC1D08A4F6B54597E02B26AD1A74F\3.5.6907\appshcom.dll
+ 2008-12-17 04:03 . 2008-12-17 04:03 594248 c:\windows\Installer\$PatchCache$\Managed\9BBBC1D08A4F6B54597E02B26AD1A74F\3.5.6907\appshapi.dll
+ 2007-05-29 08:02 . 2007-05-29 08:02 685608 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\SERCONV.DLL
+ 2007-05-29 06:48 . 2007-05-29 06:48 223152 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PJSPOOL.EXE
+ 2007-05-29 06:48 . 2007-05-29 06:48 304560 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PJRESC.DLL
+ 2006-01-17 20:48 . 2006-01-17 20:48 167176 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PJMSGSDR.DLL
+ 2006-01-17 20:48 . 2006-01-17 20:48 146696 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PJMSGMGR.DLL
+ 2007-05-29 06:48 . 2007-05-29 06:48 280496 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PJ11TM11.DLL
+ 2007-05-29 08:02 . 2007-05-29 08:02 951848 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PJ11OD11.DLL
+ 2007-05-29 08:02 . 2007-05-29 08:02 325040 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\ATLCONV.DLL
+ 2004-08-02 13:51 . 2004-08-02 13:51 719720 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\ANLYZTS.DLL
+ 2003-07-18 13:44 . 2003-07-18 13:44 346880 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\VISPRJ.DLL
+ 2003-08-15 21:17 . 2003-08-15 21:17 641760 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\SERCONV.DLL
+ 2003-08-15 19:33 . 2003-08-15 19:33 220264 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJSPOOL.EXE
+ 2003-08-15 19:33 . 2003-08-15 19:33 301672 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJRESC.DLL
+ 2003-08-15 19:32 . 2003-08-15 19:32 166504 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJMSGSDR.DLL
+ 2003-08-15 19:32 . 2003-08-15 19:32 146024 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJMSGMGR.DLL
+ 2003-08-15 19:33 . 2003-08-15 19:33 174696 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJCALEND.DLL
+ 2003-08-15 19:33 . 2003-08-15 19:33 265320 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJ11TM11.DLL
+ 2003-08-15 21:17 . 2003-08-15 21:17 924384 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJ11OD11.DLL
+ 2003-07-14 17:30 . 2003-07-14 17:30 145984 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSWEBCAP.DLL
+ 2003-07-14 17:27 . 2003-07-14 17:27 120888 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSOAUTH.DLL
+ 2003-07-25 13:44 . 2003-07-25 13:44 799288 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\FPWEC.DLL
+ 2003-07-23 08:55 . 2003-07-23 08:55 907936 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\CPICOFF.DLL
+ 2003-08-05 13:50 . 2003-08-05 13:50 416456 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\COMPPRJ.DLL
+ 2003-08-15 21:17 . 2003-08-15 21:17 305768 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\ATLCONV.DLL
+ 2003-07-09 08:02 . 2003-07-09 08:02 719568 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\ANLYZTS.DLL
+ 2006-10-26 14:19 . 2006-10-26 14:19 970528 c:\windows\Installer\$PatchCache$\Managed\00002109010090400000000000F01FEC\12.0.4518\MSONSEXT.DLL
+ 2004-08-04 12:00 . 2007-06-27 04:10 317440 c:\windows\inf\unregmp2.exe
+ 2010-06-29 15:08 . 2009-03-08 12:34 914944 c:\windows\ie8updates\KB982381-IE8\wininet.dll
+ 2010-06-29 15:08 . 2010-02-22 14:23 382840 c:\windows\ie8updates\KB982381-IE8\spuninst\updspapi.dll
+ 2010-06-29 15:08 . 2008-07-08 13:02 231288 c:\windows\ie8updates\KB982381-IE8\spuninst\spuninst.exe
+ 2010-06-29 15:08 . 2009-03-08 12:34 109568 c:\windows\ie8updates\KB982381-IE8\occache.dll
+ 2010-06-29 15:08 . 2009-03-08 12:32 611840 c:\windows\ie8updates\KB982381-IE8\mstime.dll
+ 2010-06-29 15:08 . 2009-03-08 12:32 594432 c:\windows\ie8updates\KB982381-IE8\msfeeds.dll
+ 2010-06-29 15:08 . 2009-03-08 12:33 246784 c:\windows\ie8updates\KB982381-IE8\ieproxy.dll
+ 2010-06-29 15:08 . 2009-03-08 12:31 183808 c:\windows\ie8updates\KB982381-IE8\iepeers.dll
+ 2010-06-29 15:08 . 2009-03-08 12:35 742912 c:\windows\ie8updates\KB982381-IE8\iedvtool.dll
+ 2010-06-29 15:08 . 2009-03-08 22:09 391536 c:\windows\ie8updates\KB982381-IE8\iedkcs32.dll
+ 2010-06-29 15:08 . 2009-03-08 12:32 173056 c:\windows\ie8updates\KB982381-IE8\ie4uinit.exe
+ 2010-06-29 15:06 . 2009-03-08 12:33 420352 c:\windows\ie8updates\KB981332-IE8\vbscript.dll
+ 2010-06-29 15:06 . 2009-05-26 11:40 382840 c:\windows\ie8updates\KB981332-IE8\spuninst\updspapi.dll
+ 2010-06-29 15:06 . 2009-05-26 11:40 231288 c:\windows\ie8updates\KB981332-IE8\spuninst\spuninst.exe
+ 2009-12-08 05:37 . 2009-05-26 11:40 382840 c:\windows\ie8updates\KB975364-IE8\spuninst\updspapi.dll
+ 2009-12-08 05:37 . 2009-05-26 11:40 231288 c:\windows\ie8updates\KB975364-IE8\spuninst\spuninst.exe
+ 2010-03-04 08:31 . 2008-07-08 13:02 382840 c:\windows\ie8updates\KB971961-IE8\spuninst\updspapi.dll
+ 2010-03-04 08:31 . 2008-07-08 13:02 231288 c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
+ 2010-03-04 08:31 . 2009-03-08 12:33 726528 c:\windows\ie8updates\KB971961-IE8\jscript.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 656384 c:\windows\ie8\wininet.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 276480 c:\windows\ie8\webcheck.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 848384 c:\windows\ie8\vgx.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 417792 c:\windows\ie8\vbscript.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 601088 c:\windows\ie8\urlmon.dll
+ 2009-12-08 05:36 . 2009-01-08 02:21 382496 c:\windows\ie8\spuninst\updspapi.dll
+ 2009-12-08 05:36 . 2009-01-08 02:20 231456 c:\windows\ie8\spuninst\spuninst.exe
+ 2009-12-08 05:35 . 2004-08-04 12:00 473600 c:\windows\ie8\shlwapi.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 530432 c:\windows\ie8\mstime.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 146432 c:\windows\ie8\msrating.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 146432 c:\windows\ie8\msls31.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 448512 c:\windows\ie8\mshtmled.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 450560 c:\windows\ie8\jscript.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 249344 c:\windows\ie8\iepeers.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 323584 c:\windows\ie8\iedkcs32.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 221184 c:\windows\ie8\ieakui.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 216576 c:\windows\ie8\ieaksie.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 139264 c:\windows\ie8\ieakeng.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 201728 c:\windows\ie8\dxtrans.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 357888 c:\windows\ie8\dxtmsft.dll
+ 2010-06-29 04:27 . 2010-06-29 04:27 188416 c:\windows\ERDNT\6-28-2010\Users\00000002\UsrClass.dat
+ 2010-06-29 04:27 . 2005-10-20 17:02 163328 c:\windows\ERDNT\6-28-2010\ERDNT.EXE
+ 2010-03-21 15:10 . 2010-03-21 15:10 413696 c:\windows\ERDNT\3-21-2010\Users\00000002\UsrClass.dat
+ 2010-03-21 15:10 . 2005-10-20 17:02 163328 c:\windows\ERDNT\3-21-2010\ERDNT.EXE
+ 2010-03-03 05:53 . 2009-12-04 14:41 453760 c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2010-03-09 16:02 . 2010-03-09 16:02 165176 c:\windows\Downloaded Program Files\WebEx\926\wbxreport.exe
+ 2010-03-09 16:02 . 2010-03-09 16:02 163840 c:\windows\Downloaded Program Files\WebEx\926\uilibres.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 196608 c:\windows\Downloaded Program Files\WebEx\926\strsess.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 187392 c:\windows\Downloaded Program Files\WebEx\926\qactrl30.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 622592 c:\windows\Downloaded Program Files\WebEx\926\mutiltpd.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 548864 c:\windows\Downloaded Program Files\WebEx\926\mmssl32.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 454656 c:\windows\Downloaded Program Files\WebEx\926\atwbxui7.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 111928 c:\windows\Downloaded Program Files\WebEx\926\atucfobj.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 278528 c:\windows\Downloaded Program Files\WebEx\926\attp.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 339968 c:\windows\Downloaded Program Files\WebEx\926\atresec.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 372736 c:\windows\Downloaded Program Files\WebEx\926\atpollk2.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 135168 c:\windows\Downloaded Program Files\WebEx\926\atpng12.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 323584 c:\windows\Downloaded Program Files\WebEx\926\atlchat.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 150091 c:\windows\Downloaded Program Files\WebEx\926\atdl2006.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 114764 c:\windows\Downloaded Program Files\WebEx\926\atasuicom.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 528384 c:\windows\Downloaded Program Files\WebEx\926\atastrm.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 101256 c:\windows\Downloaded Program Files\WebEx\926\atasnt40.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 388488 c:\windows\Downloaded Program Files\WebEx\926\atasctrl.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 115273 c:\windows\Downloaded Program Files\WebEx\926\atas32.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 364544 c:\windows\Downloaded Program Files\WebEx\926\atarm.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 165176 c:\windows\Downloaded Program Files\WebEx\924\wbxreport.exe
+ 2010-03-25 20:01 . 2010-07-15 18:01 163840 c:\windows\Downloaded Program Files\WebEx\924\uilibres.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 561152 c:\windows\Downloaded Program Files\WebEx\924\mvc.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 630784 c:\windows\Downloaded Program Files\WebEx\924\mutiltpd.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 286720 c:\windows\Downloaded Program Files\WebEx\924\msess.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 548864 c:\windows\Downloaded Program Files\WebEx\924\mmssl32.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 421888 c:\windows\Downloaded Program Files\WebEx\924\mcres.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 221184 c:\windows\Downloaded Program Files\WebEx\924\h264enc.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 217088 c:\windows\Downloaded Program Files\WebEx\924\h264dec.dll
+ 2010-03-25 20:01 . 2010-03-25 20:01 122880 c:\windows\Downloaded Program Files\WebEx\924\flvstrm.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 458752 c:\windows\Downloaded Program Files\WebEx\924\atwbxui7.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 111928 c:\windows\Downloaded Program Files\WebEx\924\atucfobj.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 286720 c:\windows\Downloaded Program Files\WebEx\924\attp.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 376832 c:\windows\Downloaded Program Files\WebEx\924\atpollk2.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 135168 c:\windows\Downloaded Program Files\WebEx\924\atpng12.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 148992 c:\windows\Downloaded Program Files\WebEx\924\atnote.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 311296 c:\windows\Downloaded Program Files\WebEx\924\atlchat.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 150087 c:\windows\Downloaded Program Files\WebEx\924\atdl2006.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 121416 c:\windows\Downloaded Program Files\WebEx\924\atasuicom.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 115584 c:\windows\Downloaded Program Files\WebEx\924\atasnt40.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 396160 c:\windows\Downloaded Program Files\WebEx\924\atasctrl.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 118853 c:\windows\Downloaded Program Files\WebEx\924\atas32.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 380928 c:\windows\Downloaded Program Files\WebEx\924\atarm.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 110592 c:\windows\Downloaded Program Files\WebEx\824\uilibres.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 315392 c:\windows\Downloaded Program Files\WebEx\824\atwbxui6.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 212992 c:\windows\Downloaded Program Files\WebEx\824\atrpui.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 401408 c:\windows\Downloaded Program Files\WebEx\824\atrecply.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 135168 c:\windows\Downloaded Program Files\WebEx\824\atpng12.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 119883 c:\windows\Downloaded Program Files\WebEx\824\atdl2006.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 221184 c:\windows\Downloaded Program Files\WebEx\824\ataudio.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 405912 c:\windows\Downloaded Program Files\WebEx\824\atasctrl.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 105545 c:\windows\Downloaded Program Files\WebEx\824\atas32.dll
+ 2010-03-09 16:02 . 2010-07-15 18:01 239488 c:\windows\Downloaded Program Files\atgpcext.dll
+ 2010-03-09 16:02 . 2010-07-15 18:01 402744 c:\windows\Downloaded Program Files\atcliun.exe
+ 2009-12-05 23:23 . 2006-09-16 09:05 379184 c:\windows\$NtUninstallWudf01000$\spuninst\updspapi.dll
+ 2009-12-05 23:23 . 2006-09-16 09:05 221488 c:\windows\$NtUninstallWudf01000$\spuninst\spuninst.exe
+ 2009-12-05 23:25 . 2004-08-04 12:00 102400 c:\windows\$NtUninstallwmp11$\wmpshell.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 233472 c:\windows\$NtUninstallwmp11$\wmpdxm.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 114688 c:\windows\$NtUninstallwmp11$\wmpasf.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 168448 c:\windows\$NtUninstallwmp11$\wmerror.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 208896 c:\windows\$NtUninstallwmp11$\unregmp2.exe
+ 2009-12-05 23:25 . 2006-05-17 02:11 371424 c:\windows\$NtUninstallwmp11$\spuninst\updspapi.dll
+ 2009-12-05 23:25 . 2006-05-17 02:11 213216 c:\windows\$NtUninstallwmp11$\spuninst\spuninst.exe
+ 2009-12-05 23:25 . 2004-08-04 12:00 774144 c:\windows\$NtUninstallwmp11$\setup_wm.exe
+ 2009-12-05 23:25 . 2004-08-04 12:00 368640 c:\windows\$NtUninstallwmp11$\mpvis.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 809984 c:\windows\$NtUninstallWMFDist11$\wmvdmod.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 896512 c:\windows\$NtUninstallWMFDist11$\wmspdmoe.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 484864 c:\windows\$NtUninstallWMFDist11$\wmspdmod.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 759296 c:\windows\$NtUninstallWMFDist11$\wmsdmod.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 151552 c:\windows\$NtUninstallWMFDist11$\wmidx.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 230400 c:\windows\$NtUninstallWMFDist11$\wmasf.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 670720 c:\windows\$NtUninstallWMFDist11$\wmadmoe.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 408064 c:\windows\$NtUninstallWMFDist11$\wmadmod.dll
+ 2009-12-05 23:24 . 2006-05-17 02:11 371424 c:\windows\$NtUninstallWMFDist11$\spuninst\updspapi.dll
+ 2009-12-05 23:24 . 2006-05-17 02:11 213216 c:\windows\$NtUninstallWMFDist11$\spuninst\spuninst.exe
+ 2009-12-05 23:24 . 2004-08-04 12:00 237568 c:\windows\$NtUninstallWMFDist11$\qasf.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 245760 c:\windows\$NtUninstallWMFDist11$\mswmdm.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 356352 c:\windows\$NtUninstallWMFDist11$\msscp.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 201728 c:\windows\$NtUninstallWMFDist11$\mspmsp.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 259072 c:\windows\$NtUninstallWMFDist11$\msnetobj.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 240640 c:\windows\$NtUninstallWMFDist11$\mpg4dmod.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 384512 c:\windows\$NtUninstallWMFDist11$\mp4sdmod.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 310272 c:\windows\$NtUninstallWMFDist11$\mp43dmod.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 103936 c:\windows\$NtUninstallWMFDist11$\logagent.exe
+ 2009-12-05 23:24 . 2004-08-04 12:00 695296 c:\windows\$NtUninstallWMFDist11$\drmv2clt.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 159232 c:\windows\$NtUninstallWMFDist11$\cewmdm.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 286208 c:\windows\$NtUninstallWMFDist11$\blackbox.dll
+ 2009-12-05 23:25 . 2006-09-26 01:58 379184 c:\windows\$NtUninstallMSCompPackV1$\spuninst\updspapi.dll
+ 2009-12-05 23:25 . 2006-09-26 01:58 221488 c:\windows\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB979306$\spuninst\updspapi.dll
+ 2010-03-04 08:30 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB979306$\spuninst\spuninst.exe
+ 2010-03-04 08:32 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB978706$\spuninst\updspapi.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB978706$\spuninst\spuninst.exe
+ 2010-03-04 08:32 . 2004-08-04 12:00 343040 c:\windows\$NtUninstallKB978706$\mspaint.exe
+ 2010-03-04 08:38 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB978251$\spuninst\updspapi.dll
+ 2010-03-04 08:38 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB978251$\spuninst\spuninst.exe
+ 2010-03-04 08:38 . 2004-08-04 12:00 451456 c:\windows\$NtUninstallKB978251$\mrxsmb.sys
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB978037$\spuninst\updspapi.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB978037$\spuninst\spuninst.exe
+ 2010-03-04 08:33 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB977914$\spuninst\updspapi.dll
+ 2010-03-04 08:33 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB977914$\spuninst\spuninst.exe
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB975713$\spuninst\updspapi.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB975713$\spuninst\spuninst.exe
+ 2010-03-04 08:40 . 2009-01-08 02:20 474112 c:\windows\$NtUninstallKB975713$\shlwapi.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB975560$\spuninst\updspapi.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB975560$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB975467$\spuninst\updspapi.dll
+ 2010-03-04 08:30 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB975467$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2009-06-25 08:44 133632 c:\windows\$NtUninstallKB975467$\msv1_0.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB975025$\spuninst\updspapi.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB975025$\spuninst\spuninst.exe
+ 2010-03-04 08:37 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB974571$\spuninst\updspapi.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB974571$\spuninst\spuninst.exe
+ 2010-03-04 08:34 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB974392$\spuninst\updspapi.dll
+ 2010-03-04 08:34 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB974392$\spuninst\spuninst.exe
+ 2010-03-04 08:34 . 2004-08-04 12:00 266752 c:\windows\$NtUninstallKB974392$\oakley.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB974318$\spuninst\updspapi.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB974318$\spuninst\spuninst.exe
+ 2010-03-04 08:40 . 2004-08-04 12:00 112128 c:\windows\$NtUninstallKB974318$\rastls.dll
+ 2010-03-04 08:39 . 2004-08-04 12:00 246302 c:\windows\$NtUninstallKB974112$\strmdll.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB974112$\spuninst\updspapi.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB974112$\spuninst\spuninst.exe
+ 2010-03-04 08:35 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB973904$\spuninst\updspapi.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB973904$\spuninst\spuninst.exe
+ 2010-03-04 08:37 . 2008-07-08 13:02 382840 c:\windows\$NtUninstallKB973869$\spuninst\updspapi.dll
+ 2010-03-04 08:37 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB973869$\spuninst\spuninst.exe
+ 2010-03-04 08:31 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB973815$\spuninst\updspapi.dll
+ 2010-03-04 08:31 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB973815$\spuninst\spuninst.exe
+ 2010-03-04 08:31 . 2004-08-04 12:00 204288 c:\windows\$NtUninstallKB973815$\mswebdvd.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB973687$\spuninst\updspapi.dll
+ 2010-03-04 08:36 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB973687$\spuninst\spuninst.exe
+ 2010-03-04 08:37 . 2006-10-19 05:47 314880 c:\windows\$NtUninstallKB973540_WM9L$\wmpdxm.dll
+ 2010-03-04 08:37 . 2007-07-27 16:41 382840 c:\windows\$NtUninstallKB973540_WM9L$\spuninst\updspapi.dll
+ 2010-03-04 08:37 . 2007-07-27 16:41 231288 c:\windows\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe
+ 2010-03-04 08:36 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB973507$\spuninst\updspapi.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB973507$\spuninst\spuninst.exe
+ 2010-03-04 08:35 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB973354$\spuninst\updspapi.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB973354$\spuninst\spuninst.exe
+ 2010-03-04 08:39 . 2004-08-04 12:00 210432 c:\windows\$NtUninstallKB972270$\t2embed.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 382840 c:\windows\$NtUninstallKB972270$\spuninst\updspapi.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB972270$\spuninst\spuninst.exe
+ 2010-03-04 08:39 . 2004-08-04 12:00 132096 c:\windows\$NtUninstallKB971657$\wkssvc.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB971657$\spuninst\updspapi.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB971657$\spuninst\spuninst.exe
+ 2010-03-04 08:32 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB971486$\spuninst\updspapi.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 231288 c:\windows\$NtUninstallKB971486$\spuninst\spuninst.exe
+ 2010-03-04 08:31 . 2007-03-06 01:23 371424 c:\windows\$NtUninstallKB971032$\spuninst\updspapi.dll
+ 2010-03-04 08:31 . 2007-03-06 01:22 213216 c:\windows\$NtUninstallKB971032$\spuninst\spuninst.exe
+ 2010-03-04 08:31 . 2004-08-04 12:00 169984 c:\windows\$NtUninstallKB971032$\msmqocm.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 471552 c:\windows\$NtUninstallKB971032$\mqutil.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 186880 c:\windows\$NtUninstallKB971032$\mqtrig.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 117248 c:\windows\$NtUninstallKB971032$\mqtgsvc.exe
+ 2010-03-04 08:31 . 2004-08-04 12:00 517632 c:\windows\$NtUninstallKB971032$\mqsnap.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 123392 c:\windows\$NtUninstallKB971032$\mqrtdep.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 177152 c:\windows\$NtUninstallKB971032$\mqrt.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 660992 c:\windows\$NtUninstallKB971032$\mqqm.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 225280 c:\windows\$NtUninstallKB971032$\mqoa.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 138240 c:\windows\$NtUninstallKB971032$\mqad.dll
+ 2010-03-04 08:33 . 2008-02-15 09:06 351744 c:\windows\$NtUninstallKB970238$\xpsp3res.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB970238$\spuninst\updspapi.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB970238$\spuninst\spuninst.exe
+ 2010-03-04 08:33 . 2004-08-04 12:00 581120 c:\windows\$NtUninstallKB970238$\rpcrt4.dll
+ 2010-03-04 08:29 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB969947$\spuninst\updspapi.dll
+ 2010-03-04 08:29 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB969947$\spuninst\spuninst.exe
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB969059$\spuninst\updspapi.dll
+ 2010-03-04 08:40 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB969059$\spuninst\spuninst.exe
+ 2010-03-04 08:38 . 2007-07-27 16:41 382840 c:\windows\$NtUninstallKB968816_WM9$\spuninst\updspapi.dll
+ 2010-03-04 08:38 . 2007-07-27 16:41 231288 c:\windows\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe
+ 2010-03-04 08:29 . 2009-05-26 11:40 382840 c:\windows\$NtUninstallKB968389$\spuninst\updspapi.dll
+ 2010-03-04 08:29 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB968389$\spuninst\spuninst.exe
+ 2010-03-04 08:29 . 2004-08-04 12:00 144896 c:\windows\$NtUninstallKB968389$\schannel.dll
+ 2010-03-04 08:29 . 2004-08-04 12:00 129536 c:\windows\$NtUninstallKB968389$\msv1_0.dll
+ 2010-03-04 08:29 . 2004-08-04 12:00 721920 c:\windows\$NtUninstallKB968389$\lsasrv.dll
+ 2010-03-04 08:29 . 2004-08-04 12:00 294400 c:\windows\$NtUninstallKB968389$\kerberos.dll
+ 2010-03-04 08:35 . 2008-07-09 07:38 382840 c:\windows\$NtUninstallKB967715$\spuninst\updspapi.dll
+ 2010-03-04 08:35 . 2008-07-09 07:38 231288 c:\windows\$NtUninstallKB967715$\spuninst\spuninst.exe
+ 2010-03-04 08:38 . 2008-07-09 07:38 382840 c:\windows\$NtUninstallKB961501$\spuninst\updspapi.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 231288 c:\windows\$NtUninstallKB961501$\spuninst\spuninst.exe
+ 2010-03-04 08:38 . 2004-08-04 12:00 341504 c:\windows\$NtUninstallKB961501$\localspl.dll
+ 2010-03-04 08:31 . 2004-08-04 12:00 351232 c:\windows\$NtUninstallKB960803$\winhttp.dll
+ 2010-03-04 08:31 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB960803$\spuninst\updspapi.dll
+ 2010-03-04 08:31 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB960803$\spuninst\spuninst.exe
+ 2010-03-04 08:39 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB960225$\spuninst\updspapi.dll
+ 2010-03-04 08:39 . 2007-11-30 11:18 231288 c:\windows\$NtUninstallKB960225$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2007-11-30 11:18 382840 c:\windows\$NtUninstallKB958644$\spuninst\updspapi.dll
+ 2010-03-04 08:30 . 2007-11-30 11:18 231288 c:\windows\$NtUninstallKB958644$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2004-08-04 12:00 332288 c:\windows\$NtUninstallKB958644$\netapi32.dll
+ 2010-03-04 08:32 . 2007-03-06 01:23 371424 c:\windows\$NtUninstallKB958470$\spuninst\updspapi.dll
+ 2010-03-04 08:32 . 2007-03-06 01:22 213216 c:\windows\$NtUninstallKB958470$\spuninst\spuninst.exe
+ 2010-03-04 08:32 . 2004-08-04 12:00 655360 c:\windows\$NtUninstallKB958470$\mstscax.dll
+ 2010-03-04 08:38 . 2004-08-04 12:00 153088 c:\windows\$NtUninstallKB956844$\triedit.dll
+ 2010-03-04 08:38 . 2008-07-08 13:02 382840 c:\windows\$NtUninstallKB956844$\spuninst\updspapi.dll
+ 2010-03-04 08:38 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB956844$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2008-07-09 07:38 382840 c:\windows\$NtUninstallKB956802$\spuninst\updspapi.dll
+ 2010-03-04 08:30 . 2008-07-08 13:02 231288 c:\windows\$NtUninstallKB956802$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2004-08-04 12:00 278016 c:\windows\$NtUninstallKB956802$\gdi32.dll
+ 2010-03-04 08:38 . 2004-08-04 12:00 218112 c:\windows\$NtUninstallKB956572$\wmiprvse.exe
+ 2010-03-04 08:38 . 2004-08-04 12:00 437248 c:\windows\$NtUninstallKB956572$\wmiprvsd.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 382840 c:\windows\$NtUninstallKB956572$\spuninst\updspapi.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 231288 c:\windows\$NtUninstallKB956572$\spuninst\spuninst.exe
+ 2010-03-04 08:38 . 2004-08-04 12:00 108032 c:\windows\$NtUninstallKB956572$\services.exe
+ 2010-03-04 08:38 . 2004-08-04 12:00 395776 c:\windows\$NtUninstallKB956572$\rpcss.dll
+ 2010-03-04 08:38 . 2004-08-04 12:00 283648 c:\windows\$NtUninstallKB956572$\pdh.dll
+ 2010-03-04 08:38 . 2004-08-04 12:00 708096 c:\windows\$NtUninstallKB956572$\ntdll.dll
+ 2010-03-04 08:38 . 2004-08-04 12:00 472064 c:\windows\$NtUninstallKB956572$\fastprox.dll
+ 2010-03-04 08:38 . 2004-08-04 12:00 616960 c:\windows\$NtUninstallKB956572$\advapi32.dll
+ 2010-03-04 08:30 . 2008-07-09 19:08 382840 c:\windows\$NtUninstallKB955069$\spuninst\updspapi.dll
+ 2010-03-04 08:30 . 2007-11-30 11:18 231288 c:\windows\$NtUninstallKB955069$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2006-10-19 05:47 295936 c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
+ 2010-03-04 08:30 . 2007-07-27 16:41 382840 c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
+ 2010-03-04 08:30 . 2007-07-27 16:41 231288 c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
+ 2010-03-04 08:35 . 2007-11-30 11:18 382840 c:\windows\$NtUninstallKB952287$\spuninst\updspapi.dll
+ 2010-03-04 08:35 . 2007-11-30 11:18 231288 c:\windows\$NtUninstallKB952287$\spuninst\spuninst.exe
+ 2010-03-04 08:35 . 2004-08-04 12:00 331776 c:\windows\$NtUninstallKB952287$\msadce.dll
+ 2010-03-04 08:38 . 2006-10-19 05:47 937984 c:\windows\$NtUninstallKB952069_WM9$\wmnetmgr.dll
+ 2010-03-04 08:38 . 2007-07-27 15:41 382840 c:\windows\$NtUninstallKB952069_WM9$\spuninst\updspapi.dll
+ 2010-03-04 08:38 . 2007-07-27 15:41 231288 c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
+ 2010-03-04 08:38 . 2006-10-19 04:03 100864 c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
+ 2010-03-04 08:37 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB952004$\spuninst\updspapi.dll
+ 2010-03-04 08:37 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB952004$\spuninst\spuninst.exe
+ 2010-03-04 08:37 . 2004-08-04 12:00 161280 c:\windows\$NtUninstallKB952004$\msdtcuiu.dll
+ 2010-03-04 08:37 . 2004-08-04 12:00 949248 c:\windows\$NtUninstallKB952004$\msdtctm.dll
+ 2010-03-04 08:37 . 2004-08-04 12:00 425472 c:\windows\$NtUninstallKB952004$\msdtcprx.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 223616 c:\windows\$NtUninstallKB951748$\tcpip6.sys
+ 2010-03-04 08:33 . 2004-08-04 12:00 359040 c:\windows\$NtUninstallKB951748$\tcpip.sys
+ 2010-03-04 08:33 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB951748$\spuninst\updspapi.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB951748$\spuninst\spuninst.exe
+ 2010-03-04 08:33 . 2004-08-04 12:00 245248 c:\windows\$NtUninstallKB951748$\mswsock.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 148480 c:\windows\$NtUninstallKB951748$\dnsapi.dll
+ 2010-03-04 08:33 . 2004-08-04 12:00 138496 c:\windows\$NtUninstallKB951748$\afd.sys
+ 2010-03-04 08:33 . 2004-08-04 12:00 100352 c:\windows\$NtUninstallKB951748$\6to4svc.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB951066$\spuninst\updspapi.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB951066$\spuninst\spuninst.exe
+ 2010-03-04 08:34 . 2004-08-04 12:00 678400 c:\windows\$NtUninstallKB951066$\inetcomm.dll
+ 2010-03-04 08:40 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB950974$\spuninst\updspapi.dll
+ 2010-03-04 08:40 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB950974$\spuninst\spuninst.exe
+ 2010-03-04 08:40 . 2004-08-04 12:00 243200 c:\windows\$NtUninstallKB950974$\es.dll
+ 2010-03-04 08:36 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB950762$\spuninst\updspapi.dll
+ 2010-03-04 08:36 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB950762$\spuninst\spuninst.exe
+ 2010-03-04 08:36 . 2004-08-04 12:00 200064 c:\windows\$NtUninstallKB950762$\rmcast.sys
+ 2010-03-04 08:34 . 2007-11-30 12:39 382840 c:\windows\$NtUninstallKB950760$\spuninst\updspapi.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB950760$\spuninst\spuninst.exe
+ 2010-03-04 08:36 . 2006-10-19 05:47 222208 c:\windows\$NtUninstallKB941569$\wmasf.dll
+ 2010-03-04 08:36 . 2007-10-27 22:39 371424 c:\windows\$NtUninstallKB941569$\spuninst\updspapi.dll
+ 2010-03-04 08:36 . 2007-10-27 22:39 213216 c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
+ 2010-04-12 00:04 . 2008-05-27 03:18 261120 c:\windows\$NtUninstallKB940157$\spuninst\wss_SpCustom.dll
+ 2010-04-12 00:04 . 2007-09-27 15:46 379184 c:\windows\$NtUninstallKB940157$\spuninst\updspapi.dll
+ 2010-04-12 00:04 . 2007-09-27 15:46 221488 c:\windows\$NtUninstallKB940157$\spuninst\spuninst.exe
+ 2010-03-04 08:34 . 2006-11-02 02:31 315904 c:\windows\$NtUninstallKB939683$\unregmp2.exe
+ 2010-03-04 08:34 . 2005-06-28 16:23 371424 c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
+ 2010-03-04 08:34 . 2005-06-28 16:23 213216 c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
+ 2010-03-04 08:35 . 2005-06-28 16:23 371424 c:\windows\$NtUninstallKB929399$\spuninst\updspapi.dll
+ 2010-03-04 08:35 . 2005-06-28 16:23 213216 c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
+ 2010-03-04 08:35 . 2006-10-19 05:47 414208 c:\windows\$NtUninstallKB929399$\msscp.dll
+ 2009-12-05 23:26 . 2005-10-12 23:12 371424 c:\windows\$NtUninstallKB926239$\spuninst\updspapi.dll
+ 2009-12-05 23:26 . 2005-10-12 23:12 213216 c:\windows\$NtUninstallKB926239$\spuninst\spuninst.exe
+ 2010-03-04 08:30 . 2004-08-04 12:00 214528 c:\windows\$NtUninstallKB923561$\wordpad.exe
+ 2010-03-04 08:30 . 2008-07-09 07:38 382840 c:\windows\$NtUninstallKB923561$\spuninst\updspapi.dll
+ 2010-03-04 08:30 . 2008-07-09 07:38 231288 c:\windows\$NtUninstallKB923561$\spuninst\spuninst.exe
+ 2010-03-26 01:48 . 2005-10-12 23:12 371424 c:\windows\$NtUninstallKB915865$\spuninst\updspapi.dll
+ 2010-03-26 01:48 . 2005-10-12 23:12 213216 c:\windows\$NtUninstallKB915865$\spuninst\spuninst.exe
+ 2010-03-26 01:49 . 2007-11-30 11:18 382840 c:\windows\$NtUninstallKB915800-v4$\spuninst\updspapi.dll
+ 2010-03-26 01:49 . 2007-11-30 12:39 231288 c:\windows\$NtUninstallKB915800-v4$\spuninst\spuninst.exe
+ 2010-03-26 01:49 . 2004-08-04 12:00 120832 c:\windows\$NtUninstallKB915800-v4$\offfilt.dll
+ 2010-03-26 01:49 . 2004-08-04 12:00 103936 c:\windows\$NtUninstallKB915800-v4$\nlhtml.dll
+ 2010-02-20 20:09 . 2005-10-12 23:12 371424 c:\windows\$NtUninstallKB909394$\spuninst\updspapi.dll
+ 2010-02-20 20:09 . 2005-10-12 23:12 213216 c:\windows\$NtUninstallKB909394$\spuninst\spuninst.exe
+ 2010-03-04 08:32 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB978706\update\updspapi.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB978706\update\update.exe
+ 2010-03-04 08:32 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB978706\spuninst.exe
+ 2009-12-16 18:27 . 2009-12-16 18:27 343040 c:\windows\$hf_mig$\KB978706\SP3QFE\mspaint.exe
+ 2009-12-16 18:43 . 2009-12-16 18:43 343040 c:\windows\$hf_mig$\KB978706\SP3GDR\mspaint.exe
+ 2009-12-16 13:37 . 2009-12-16 13:37 343040 c:\windows\$hf_mig$\KB978706\SP2QFE\mspaint.exe
+ 2010-03-04 08:38 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB978251\update\updspapi.dll
+ 2010-03-04 08:38 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB978251\update\update.exe
+ 2010-03-04 08:38 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB978251\spuninst.exe
+ 2010-03-03 05:53 . 2009-12-04 17:25 456832 c:\windows\$hf_mig$\KB978251\SP3QFE\mrxsmb.sys
+ 2010-03-03 05:53 . 2009-12-04 18:22 455424 c:\windows\$hf_mig$\KB978251\SP3GDR\mrxsmb.sys
+ 2010-03-03 05:53 . 2009-12-04 13:37 456832 c:\windows\$hf_mig$\KB978251\SP2QFE\mrxsmb.sys
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB978037\update\updspapi.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB978037\update\update.exe
+ 2010-03-04 08:40 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB978037\spuninst.exe
+ 2010-03-04 08:33 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB977914\update\updspapi.dll
+ 2010-03-04 08:33 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB977914\update\update.exe
+ 2010-03-04 08:33 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB977914\spuninst.exe
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB975713\update\updspapi.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB975713\update\update.exe
+ 2010-03-04 08:40 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB975713\spuninst.exe
+ 2009-12-08 09:01 . 2009-12-08 09:01 474112 c:\windows\$hf_mig$\KB975713\SP3QFE\shlwapi.dll
+ 2009-12-08 09:23 . 2009-12-08 09:23 474112 c:\windows\$hf_mig$\KB975713\SP3GDR\shlwapi.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB975560\update\updspapi.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB975560\update\update.exe
+ 2010-03-04 08:36 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB975560\spuninst.exe
+ 2010-03-04 08:30 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB975467\update\updspapi.dll
+ 2010-03-04 08:30 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB975467\update\update.exe
+ 2010-03-04 08:30 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB975467\spuninst.exe
+ 2009-09-11 14:13 . 2009-09-11 14:13 136704 c:\windows\$hf_mig$\KB975467\SP3QFE\msv1_0.dll
+ 2009-09-11 14:18 . 2009-09-11 14:18 136192 c:\windows\$hf_mig$\KB975467\SP3GDR\msv1_0.dll
+ 2009-02-06 18:46 . 2009-02-06 18:46 408064 c:\windows\$hf_mig$\KB975467\SP2QFE\netlogon.dll
+ 2009-09-11 14:03 . 2009-09-11 14:03 136192 c:\windows\$hf_mig$\KB975467\SP2QFE\msv1_0.dll
+ 2009-12-08 05:38 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB975364-IE8\update\updspapi.dll
+ 2009-12-08 05:38 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB975364-IE8\update\update.exe
+ 2009-12-08 05:38 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB975364-IE8\spuninst.exe
+ 2010-03-04 08:37 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB975025\update\updspapi.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB975025\update\update.exe
+ 2010-03-04 08:37 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB975025\spuninst.exe
+ 2010-03-04 08:37 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB974571\update\updspapi.dll
+ 2010-03-04 08:37 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB974571\update\update.exe
+ 2010-03-04 08:37 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB974571\spuninst.exe
+ 2010-03-04 08:34 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB974392\update\updspapi.dll
+ 2010-03-04 08:34 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB974392\update\update.exe
+ 2010-03-04 08:34 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB974392\spuninst.exe
+ 2009-10-13 10:38 . 2009-10-13 10:38 270336 c:\windows\$hf_mig$\KB974392\SP3QFE\oakley.dll
+ 2009-10-13 10:30 . 2009-10-13 10:30 270336 c:\windows\$hf_mig$\KB974392\SP3GDR\oakley.dll
+ 2009-10-13 10:45 . 2009-10-13 10:45 270336 c:\windows\$hf_mig$\KB974392\SP2QFE\oakley.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB974318\update\updspapi.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB974318\update\update.exe
+ 2010-03-04 08:40 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB974318\spuninst.exe
+ 2009-10-12 13:28 . 2009-10-12 13:28 150016 c:\windows\$hf_mig$\KB974318\SP3QFE\rastls.dll
+ 2009-10-12 13:38 . 2009-10-12 13:38 149504 c:\windows\$hf_mig$\KB974318\SP3GDR\rastls.dll
+ 2009-10-12 13:41 . 2009-10-12 13:41 113664 c:\windows\$hf_mig$\KB974318\SP2QFE\rastls.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB974112\update\updspapi.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB974112\update\update.exe
+ 2010-03-04 08:39 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB974112\spuninst.exe
+ 2009-08-26 08:03 . 2009-08-26 08:03 247326 c:\windows\$hf_mig$\KB974112\SP3QFE\strmdll.dll
+ 2009-08-26 08:00 . 2009-08-26 08:00 247326 c:\windows\$hf_mig$\KB974112\SP3GDR\strmdll.dll
+ 2009-08-26 07:58 . 2009-08-26 07:58 247326 c:\windows\$hf_mig$\KB974112\SP2QFE\strmdll.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB973904\update\updspapi.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB973904\update\update.exe
+ 2010-03-04 08:35 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB973904\spuninst.exe
+ 2010-03-03 05:46 . 2009-07-29 14:01 119648 c:\windows\$hf_mig$\KB973904\SP3QFE\msconv97.dll
+ 2010-03-04 08:37 . 2008-07-08 13:02 382840 c:\windows\$hf_mig$\KB973869\update\updspapi.dll
+ 2010-03-04 08:37 . 2008-07-08 13:02 755576 c:\windows\$hf_mig$\KB973869\update\update.exe
+ 2010-03-04 08:37 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB973869\spuninst.exe
+ 2010-03-04 08:31 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB973815\update\updspapi.dll
+ 2010-03-04 08:31 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB973815\update\update.exe
+ 2010-03-04 08:31 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB973815\spuninst.exe
+ 2009-08-05 08:52 . 2009-08-05 08:52 204800 c:\windows\$hf_mig$\KB973815\SP3QFE\mswebdvd.dll
+ 2009-08-05 09:01 . 2009-08-05 09:01 204800 c:\windows\$hf_mig$\KB973815\SP3GDR\mswebdvd.dll
+ 2009-08-05 08:42 . 2009-08-05 08:42 204800 c:\windows\$hf_mig$\KB973815\SP2QFE\mswebdvd.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB973687\update\updspapi.dll
+ 2010-03-04 08:36 . 2008-07-08 13:02 755576 c:\windows\$hf_mig$\KB973687\update\update.exe
+ 2010-03-04 08:36 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB973687\spuninst.exe
+ 2010-03-04 08:36 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB973507\update\updspapi.dll
+ 2010-03-04 08:36 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB973507\update\update.exe
+ 2010-03-04 08:36 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB973507\spuninst.exe
+ 2010-03-04 08:35 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB973354\update\updspapi.dll
+ 2010-03-04 08:35 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB973354\update\update.exe
+ 2010-03-04 08:35 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB973354\spuninst.exe
+ 2010-03-04 08:39 . 2008-07-08 13:02 382840 c:\windows\$hf_mig$\KB972270\update\updspapi.dll
+ 2010-03-04 08:39 . 2008-07-08 13:02 755576 c:\windows\$hf_mig$\KB972270\update\update.exe
+ 2010-03-04 08:39 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB972270\spuninst.exe
+ 2010-03-03 05:57 . 2009-10-15 16:39 119808 c:\windows\$hf_mig$\KB972270\SP3QFE\t2embed.dll
+ 2010-03-03 05:57 . 2009-10-15 16:28 119808 c:\windows\$hf_mig$\KB972270\SP3GDR\t2embed.dll
+ 2010-03-03 05:57 . 2009-10-15 16:56 119808 c:\windows\$hf_mig$\KB972270\SP2QFE\t2embed.dll
+ 2010-03-04 08:31 . 2008-07-08 13:02 382840 c:\windows\$hf_mig$\KB971961-IE8\update\updspapi.dll
+ 2010-03-04 08:31 . 2008-07-08 13:02 755576 c:\windows\$hf_mig$\KB971961-IE8\update\update.exe
+ 2010-03-04 08:31 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB971961-IE8\spuninst.exe
+ 2010-03-03 05:44 . 2009-06-22 06:47 726528 c:\windows\$hf_mig$\KB971961-IE8\SP3QFE\jscript.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB971657\update\updspapi.dll
+ 2010-03-04 08:39 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB971657\update\update.exe
+ 2010-03-04 08:39 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB971657\spuninst.exe
+ 2009-06-10 06:17 . 2009-06-10 06:17 134144 c:\windows\$hf_mig$\KB971657\SP3QFE\wkssvc.dll
+ 2009-06-10 06:14 . 2009-06-10 06:14 132096 c:\windows\$hf_mig$\KB971657\SP3GDR\wkssvc.dll
+ 2009-06-10 06:26 . 2009-06-10 06:26 134144 c:\windows\$hf_mig$\KB971657\SP2QFE\wkssvc.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB971486\update\updspapi.dll
+ 2010-03-04 08:32 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB971486\update\update.exe
+ 2010-03-04 08:32 . 2009-05-26 11:40 231288 c:\windows\$hf_mig$\KB971486\spuninst.exe
+ 2010-03-04 08:31 . 2007-03-06 01:23 371424 c:\windows\$hf_mig$\KB971032\update\updspapi.dll
+ 2010-03-04 08:31 . 2007-03-06 01:22 716000 c:\windows\$hf_mig$\KB971032\update\update.exe
+ 2010-03-04 08:31 . 2007-03-06 01:22 213216 c:\windows\$hf_mig$\KB971032\spuninst.exe
+ 2009-06-25 18:26 . 2009-06-25 18:26 169472 c:\windows\$hf_mig$\KB971032\SP2QFE\msmqocm.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 471552 c:\windows\$hf_mig$\KB971032\SP2QFE\mqutil.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 186880 c:\windows\$hf_mig$\KB971032\SP2QFE\mqtrig.dll
+ 2009-06-22 11:30 . 2009-06-22 11:30 117248 c:\windows\$hf_mig$\KB971032\SP2QFE\mqtgsvc.exe
+ 2009-06-25 18:26 . 2009-06-25 18:26 517120 c:\windows\$hf_mig$\KB971032\SP2QFE\mqsnap.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 123392 c:\windows\$hf_mig$\KB971032\SP2QFE\mqrtdep.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 177152 c:\windows\$hf_mig$\KB971032\SP2QFE\mqrt.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 661504 c:\windows\$hf_mig$\KB971032\SP2QFE\mqqm.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 225280 c:\windows\$hf_mig$\KB971032\SP2QFE\mqoa.dll
+ 2009-06-25 18:26 . 2009-06-25 18:26 138240 c:\windows\$hf_mig$\KB971032\SP2QFE\mqad.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB970238\update\updspapi.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB970238\update\update.exe
+ 2010-03-04 08:33 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB970238\spuninst.exe
+ 2009-04-15 15:24 . 2009-04-15 15:24 585216 c:\windows\$hf_mig$\KB970238\SP3QFE\rpcrt4.dll
+ 2009-04-15 14:51 . 2009-04-15 14:51 585216 c:\windows\$hf_mig$\KB970238\SP3GDR\rpcrt4.dll
+ 2009-04-15 09:24 . 2009-04-15 09:24 351744 c:\windows\$hf_mig$\KB970238\SP2QFE\xpsp3res.dll
+ 2009-04-15 15:26 . 2009-04-15 15:26 583168 c:\windows\$hf_mig$\KB970238\SP2QFE\rpcrt4.dll
+ 2010-03-04 08:29 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB969947\update\updspapi.dll
+ 2010-03-04 08:29 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB969947\update\update.exe
+ 2010-03-04 08:29 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB969947\spuninst.exe
+ 2010-03-04 08:40 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB969059\update\updspapi.dll
+ 2010-03-04 08:40 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB969059\update\update.exe
+ 2010-03-04 08:40 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB969059\spuninst.exe
+ 2010-03-04 08:29 . 2009-05-26 11:40 382840 c:\windows\$hf_mig$\KB968389\update\updspapi.dll
+ 2010-03-04 08:29 . 2009-05-26 11:40 755576 c:\windows\$hf_mig$\KB968389\update\update.exe
+ 2010-03-04 08:29 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB968389\spuninst.exe
+ 2009-06-25 08:41 . 2009-06-25 08:41 147456 c:\windows\$hf_mig$\KB968389\SP3QFE\schannel.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 136704 c:\windows\$hf_mig$\KB968389\SP3QFE\msv1_0.dll
+ 2009-06-26 09:41 . 2009-06-26 09:41 730112 c:\windows\$hf_mig$\KB968389\SP3QFE\lsasrv.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 301568 c:\windows\$hf_mig$\KB968389\SP3QFE\kerberos.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 147456 c:\windows\$hf_mig$\KB968389\SP3GDR\schannel.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 136192 c:\windows\$hf_mig$\KB968389\SP3GDR\msv1_0.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 730112 c:\windows\$hf_mig$\KB968389\SP3GDR\lsasrv.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 301568 c:\windows\$hf_mig$\KB968389\SP3GDR\kerberos.dll
+ 2009-06-25 08:17 . 2009-06-25 08:17 168448 c:\windows\$hf_mig$\KB968389\SP2QFE\schannel.dll
+ 2009-02-06 18:46 . 2009-02-06 18:46 408064 c:\windows\$hf_mig$\KB968389\SP2QFE\netlogon.dll
+ 2009-06-25 08:17 . 2009-06-25 08:17 136192 c:\windows\$hf_mig$\KB968389\SP2QFE\msv1_0.dll
+ 2009-06-25 08:17 . 2009-06-25 08:17 729600 c:\windows\$hf_mig$\KB968389\SP2QFE\lsasrv.dll
+ 2009-06-25 08:17 . 2009-06-25 08:17 301568 c:\windows\$hf_mig$\KB968389\SP2QFE\kerberos.dll
+ 2010-03-04 08:35 . 2008-07-09 07:38 382840 c:\windows\$hf_mig$\KB967715\update\updspapi.dll
+ 2010-03-04 08:35 . 2008-07-09 07:38 755576 c:\windows\$hf_mig$\KB967715\update\update.exe
+ 2010-03-04 08:35 . 2008-07-09 07:38 231288 c:\windows\$hf_mig$\KB967715\spuninst.exe
+ 2008-02-15 09:06 . 2008-02-15 09:06 351744 c:\windows\$hf_mig$\KB967715\SP2QFE\xpsp3res.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 382840 c:\windows\$hf_mig$\KB961501\update\updspapi.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 755576 c:\windows\$hf_mig$\KB961501\update\update.exe
+ 2010-03-04 08:38 . 2008-07-09 07:38 231288 c:\windows\$hf_mig$\KB961501\spuninst.exe
+ 2009-05-07 15:14 . 2009-05-07 15:14 346112 c:\windows\$hf_mig$\KB961501\SP3QFE\localspl.dll
+ 2009-05-07 15:32 . 2009-05-07 15:32 345600 c:\windows\$hf_mig$\KB961501\SP3GDR\localspl.dll
+ 2009-05-07 15:26 . 2009-05-07 15:26 346112 c:\windows\$hf_mig$\KB961501\SP2QFE\localspl.dll
+ 2010-03-04 08:31 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB960803\update\updspapi.dll
+ 2010-03-04 08:31 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB960803\update\update.exe
+ 2010-03-04 08:31 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB960803\spuninst.exe
+ 2008-12-16 12:22 . 2008-12-16 12:22 354304 c:\windows\$hf_mig$\KB960803\SP3QFE\winhttp.dll
+ 2008-12-16 12:30 . 2008-12-16 12:30 354304 c:\windows\$hf_mig$\KB960803\SP3GDR\winhttp.dll
+ 2008-12-16 12:36 . 2008-12-16 12:36 354304 c:\windows\$hf_mig$\KB960803\SP2QFE\winhttp.dll
+ 2010-03-04 08:39 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB960225\update\updspapi.dll
+ 2010-03-04 08:39 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB960225\update\update.exe
+ 2010-03-04 08:39 . 2007-11-30 11:18 231288 c:\windows\$hf_mig$\KB960225\spuninst.exe
+ 2008-12-05 06:58 . 2008-12-05 06:58 144896 c:\windows\$hf_mig$\KB960225\SP3QFE\schannel.dll
+ 2008-12-05 06:54 . 2008-12-05 06:54 144896 c:\windows\$hf_mig$\KB960225\SP3GDR\schannel.dll
+ 2008-12-05 06:41 . 2008-12-05 06:41 144896 c:\windows\$hf_mig$\KB960225\SP2QFE\schannel.dll
+ 2010-03-04 08:31 . 2007-11-30 11:18 382840 c:\windows\$hf_mig$\KB958644\update\updspapi.dll
+ 2010-03-04 08:31 . 2007-11-30 11:18 755576 c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2010-03-04 08:31 . 2007-11-30 11:18 231288 c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2010-03-03 05:44 . 2008-10-15 16:25 339456 c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
+ 2010-03-03 05:44 . 2008-10-15 16:34 337408 c:\windows\$hf_mig$\KB958644\SP3GDR\netapi32.dll
+ 2010-03-03 05:44 . 2008-10-15 16:53 339456 c:\windows\$hf_mig$\KB958644\SP2QFE\netapi32.dll
+ 2010-03-04 08:32 . 2007-03-06 01:23 371424 c:\windows\$hf_mig$\KB958470\update\updspapi.dll
+ 2010-03-04 08:32 . 2007-03-06 01:22 716000 c:\windows\$hf_mig$\KB958470\update\update.exe
+ 2010-03-04 08:32 . 2007-03-06 01:22 213216 c:\windows\$hf_mig$\KB958470\spuninst.exe
+ 2010-03-03 05:44 . 2009-06-05 10:26 655872 c:\windows\$hf_mig$\KB958470\SP2QFE\mstscax.dll
+ 2010-03-04 08:38 . 2008-07-08 13:02 382840 c:\windows\$hf_mig$\KB956844\update\updspapi.dll
+ 2010-03-04 08:38 . 2008-07-08 13:02 755576 c:\windows\$hf_mig$\KB956844\update\update.exe
+ 2010-03-04 08:38 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB956844\spuninst.exe
+ 2010-03-03 05:56 . 2009-06-21 21:49 153088 c:\windows\$hf_mig$\KB956844\SP3QFE\triedit.dll
+ 2010-03-03 05:56 . 2009-06-21 21:44 153088 c:\windows\$hf_mig$\KB956844\SP3GDR\triedit.dll
+ 2010-03-03 05:56 . 2009-06-21 21:55 153088 c:\windows\$hf_mig$\KB956844\SP2QFE\triedit.dll
+ 2010-03-04 08:30 . 2008-07-09 07:38 382840 c:\windows\$hf_mig$\KB956802\update\updspapi.dll
+ 2010-03-04 08:30 . 2008-07-09 07:38 755576 c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2010-03-04 08:30 . 2008-07-08 13:02 231288 c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2008-10-23 12:43 . 2008-10-23 12:43 286720 c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
+ 2008-10-23 12:36 . 2008-10-23 12:36 286720 c:\windows\$hf_mig$\KB956802\SP3GDR\gdi32.dll
+ 2008-10-23 12:51 . 2008-10-23 12:51 284160 c:\windows\$hf_mig$\KB956802\SP2QFE\gdi32.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 382840 c:\windows\$hf_mig$\KB956572\update\updspapi.dll
+ 2010-03-04 08:38 . 2008-07-09 07:38 755576 c:\windows\$hf_mig$\KB956572\update\update.exe
+ 2010-03-04 08:38 . 2008-07-09 07:38 231288 c:\windows\$hf_mig$\KB956572\spuninst.exe
+ 2010-03-03 05:57 . 2009-02-06 10:15 227840 c:\windows\$hf_mig$\KB956572\SP3QFE\wmiprvse.exe
+ 2010-03-03 05:57 . 2009-02-09 10:56 453120 c:\windows\$hf_mig$\KB956572\SP3QFE\wmiprvsd.dll
+ 2010-03-03 05:57 . 2009-02-06 11:06 110592 c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
+ 2010-03-03 05:57 . 2009-02-09 10:56 401408 c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
+ 2010-03-03 05:57 . 2009-03-06 13:49 284160 c:\windows\$hf_mig$\KB956572\SP3QFE\pdh.dll
+ 2010-03-03 05:57 . 2009-02-09 10:56 715264 c:\windows\$hf_mig$\KB956572\SP3QFE\ntdll.dll
+ 2010-03-03 05:57 . 2009-02-09 10:56 729088 c:\windows\$hf_mig$\KB956572\SP3QFE\lsasrv.dll
+ 2010-03-03 05:57 . 2009-02-09 10:56 473600 c:\windows\$hf_mig$\KB956572\SP3QFE\fastprox.dll
+ 2009-02-11 01:26 . 2009-02-11 01:26 617472 c:\windows\$hf_mig$\KB956572\SP3QFE\advapi32.dll
+ 2010-03-03 05:57 . 2009-02-06 10:10 227840 c:\windows\$hf_mig$\KB956572\SP3GDR\wmiprvse.exe
+ 2010-03-03 05:57 . 2009-02-09 12:10 453120 c:\windows\$hf_mig$\KB956572\SP3GDR\wmiprvsd.dll
+ 2010-03-03 05:57 . 2009-02-06 11:11 110592 c:\windows\$hf_mig$\KB956572\SP3GDR\services.exe
+ 2010-03-03 05:57 . 2009-02-09 12:10 401408 c:\windows\$hf_mig$\KB956572\SP3GDR\rpcss.dll
+ 2010-03-03 05:57 . 2009-03-06 14:22 284160 c:\windows\$hf_mig$\KB956572\SP3GDR\pdh.dll
+ 2010-03-03 05:57 . 2009-02-09 12:10 714752 c:\windows\$hf_mig$\KB956572\SP3GDR\ntdll.dll
+ 2010-03-03 05:57 . 2009-02-09 12:10 729088 c:\windows\$hf_mig$\KB956572\SP3GDR\lsasrv.dll
+ 2010-03-03 05:57 . 2009-02-09 12:10 473600 c:\windows\$hf_mig$\KB956572\SP3GDR\fastprox.dll
+ 2010-03-03 05:57 . 2009-02-09 12:10 617472 c:\windows\$hf_mig$\KB956572\SP3GDR\advapi32.dll
+ 2010-03-03 05:57 . 2009-02-06 09:41 227840 c:\windows\$hf_mig$\KB956572\SP2QFE\wmiprvse.exe
+ 2009-02-11 00:31 . 2009-02-11 00:31 453120 c:\windows\$hf_mig$\KB956572\SP2QFE\wmiprvsd.dll
+ 2010-03-03 05:57 . 2009-02-06 10:22 110592 c:\windows\$hf_mig$\KB956572\SP2QFE\services.exe
+ 2010-03-03 05:57 . 2009-02-09 10:01 401408 c:\windows\$hf_mig$\KB956572\SP2QFE\rpcss.dll
+ 2010-03-03 05:57 . 2009-03-06 14:00 284160 c:\windows\$hf_mig$\KB956572\SP2QFE\pdh.dll
+ 2010-03-03 05:57 . 2009-02-09 10:01 715264 c:\windows\$hf_mig$\KB956572\SP2QFE\ntdll.dll
+ 2010-03-03 05:57 . 2009-02-09 10:01 728576 c:\windows\$hf_mig$\KB956572\SP2QFE\lsasrv.dll
+ 2010-03-03 05:57 . 2009-02-09 10:01 473088 c:\windows\$hf_mig$\KB956572\SP2QFE\fastprox.dll
+ 2010-03-03 05:57 . 2009-02-09 10:01 617984 c:\windows\$hf_mig$\KB956572\SP2QFE\advapi32.dll
+ 2010-03-04 08:30 . 2008-07-09 19:08 382840 c:\windows\$hf_mig$\KB955069\update\updspapi.dll
+ 2010-03-04 08:30 . 2007-11-30 11:18 755576 c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2010-03-04 08:30 . 2007-11-30 11:18 231288 c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2010-03-04 08:35 . 2007-11-30 11:18 382840 c:\windows\$hf_mig$\KB952287\update\updspapi.dll
+ 2010-03-04 08:35 . 2007-11-30 11:18 755576 c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2010-03-04 08:35 . 2007-11-30 11:18 231288 c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2010-03-03 05:47 . 2008-05-01 14:38 331776 c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
+ 2010-03-03 05:47 . 2008-05-01 14:33 331776 c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
+ 2010-03-03 05:47 . 2008-05-01 15:04 331776 c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
+ 2010-03-04 08:37 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB952004\update\updspapi.dll
+ 2010-03-04 08:37 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB952004\update\update.exe
+ 2010-03-04 08:37 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB952004\spuninst.exe
+ 2008-06-12 14:09 . 2008-06-12 14:09 161792 c:\windows\$hf_mig$\KB952004\SP3QFE\msdtcuiu.dll
+ 2008-06-12 14:09 . 2008-06-12 14:09 956928 c:\windows\$hf_mig$\KB952004\SP3QFE\msdtctm.dll
+ 2008-06-12 14:09 . 2008-06-12 14:09 428032 c:\windows\$hf_mig$\KB952004\SP3QFE\msdtcprx.dll
+ 2008-06-12 14:23 . 2008-06-12 14:23 161792 c:\windows\$hf_mig$\KB952004\SP3GDR\msdtcuiu.dll
+ 2008-06-12 14:23 . 2008-06-12 14:23 956928 c:\windows\$hf_mig$\KB952004\SP3GDR\msdtctm.dll
+ 2008-06-12 14:23 . 2008-06-12 14:23 428032 c:\windows\$hf_mig$\KB952004\SP3GDR\msdtcprx.dll
+ 2008-06-12 13:47 . 2008-06-12 13:47 161792 c:\windows\$hf_mig$\KB952004\SP2QFE\msdtcuiu.dll
+ 2008-06-12 13:47 . 2008-06-12 13:47 956928 c:\windows\$hf_mig$\KB952004\SP2QFE\msdtctm.dll
+ 2008-06-12 13:47 . 2008-06-12 13:47 428032 c:\windows\$hf_mig$\KB952004\SP2QFE\msdtcprx.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB951748\update\updspapi.dll
+ 2010-03-04 08:33 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2010-03-04 08:33 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2008-06-20 11:16 . 2008-06-20 11:16 225856 c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
+ 2008-06-20 11:59 . 2008-06-20 11:59 361600 c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
+ 2008-06-20 17:43 . 2008-06-20 17:43 245248 c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
+ 2008-06-20 17:43 . 2008-06-20 17:43 147968 c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
+ 2008-06-20 11:48 . 2008-06-20 11:48 138496 c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
+ 2008-06-20 11:08 . 2008-06-20 11:08 225856 c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
+ 2008-06-20 11:51 . 2008-06-20 11:51 361600 c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
+ 2008-06-20 17:46 . 2008-06-20 17:46 245248 c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
+ 2008-06-20 17:46 . 2008-06-20 17:46 147968 c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
+ 2008-06-20 11:40 . 2008-06-20 11:40 138496 c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
+ 2008-06-20 09:32 . 2008-06-20 09:32 225920 c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
+ 2008-06-20 10:44 . 2008-06-20 10:44 360960 c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
+ 2008-06-20 17:36 . 2008-06-20 17:36 245248 c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
+ 2008-06-20 17:36 . 2008-06-20 17:36 147968 c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
+ 2008-06-20 10:44 . 2008-06-20 10:44 138368 c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
+ 2006-08-16 12:08 . 2006-08-16 12:08 100352 c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB951066\update\updspapi.dll
+ 2010-03-04 08:34 . 2007-12-03 15:25 755576 c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2010-03-04 08:34 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2008-04-12 06:22 . 2008-04-12 06:22 691712 c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
+ 2010-03-03 05:46 . 2008-04-11 19:04 691712 c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
+ 2010-03-03 05:46 . 2008-04-11 18:39 683520 c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
+ 2010-03-04 08:40 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB950974\update\updspapi.dll
+ 2010-03-04 08:40 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2010-03-04 08:40 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2008-07-07 20:23 . 2008-07-07 20:23 253952 c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
+ 2008-07-07 20:26 . 2008-07-07 20:26 253952 c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
+ 2008-07-07 20:06 . 2008-07-07 20:06 253952 c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
+ 2010-03-04 08:36 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB950762\update\updspapi.dll
+ 2010-03-04 08:36 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2010-03-04 08:36 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2010-03-03 05:49 . 2008-05-08 13:58 203136 c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2010-03-03 05:49 . 2008-05-08 14:02 203136 c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
+ 2010-03-03 05:49 . 2008-05-08 12:14 203008 c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
+ 2010-03-04 08:34 . 2007-11-30 12:39 382840 c:\windows\$hf_mig$\KB950760\update\updspapi.dll
+ 2010-03-04 08:34 . 2007-11-30 12:39 755576 c:\windows\$hf_mig$\KB950760\update\update.exe
+ 2010-03-04 08:34 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB950760\spuninst.exe
+ 2010-03-04 08:30 . 2008-07-09 07:38 382840 c:\windows\$hf_mig$\KB923561\update\updspapi.dll
+ 2010-03-04 08:30 . 2008-11-15 17:18 755576 c:\windows\$hf_mig$\KB923561\update\update.exe
+ 2010-03-04 08:30 . 2008-07-09 07:38 231288 c:\windows\$hf_mig$\KB923561\spuninst.exe
+ 2010-03-03 05:43 . 2008-04-21 12:15 215552 c:\windows\$hf_mig$\KB923561\SP3QFE\wordpad.exe
+ 2010-03-03 05:43 . 2008-04-21 12:08 215552 c:\windows\$hf_mig$\KB923561\SP3GDR\wordpad.exe
+ 2010-03-03 05:43 . 2008-02-15 09:06 351744 c:\windows\$hf_mig$\KB923561\SP2QFE\xpsp3res.dll
+ 2010-03-03 05:43 . 2008-04-21 09:26 215552 c:\windows\$hf_mig$\KB923561\SP2QFE\wordpad.exe
+ 2010-03-26 01:49 . 2007-11-30 11:18 382840 c:\windows\$hf_mig$\KB915800-v4\update\updspapi.dll
+ 2010-03-26 01:49 . 2007-11-30 11:18 755576 c:\windows\$hf_mig$\KB915800-v4\update\update.exe
+ 2010-03-26 01:49 . 2007-11-30 12:39 231288 c:\windows\$hf_mig$\KB915800-v4\spuninst.exe
+ 2010-03-26 01:49 . 2008-03-07 17:02 192000 c:\windows\$hf_mig$\KB915800-v4\SP3QFE\offfilt.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 1093120 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfc80u.dll
+ 2008-10-25 02:15 . 2008-10-25 02:15 1101824 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfc80.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 2603008 c:\windows\system32\WpdShext.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 1382912 c:\windows\system32\WMVSDECD.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 1574912 c:\windows\system32\WMVENCOD.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 1543680 c:\windows\system32\WMVDECOD.dll
+ 2004-08-04 12:00 . 2010-04-06 09:52 2462720 c:\windows\system32\WMVCore.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 1329152 c:\windows\system32\WMSPDMOE.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 8231936 c:\windows\system32\wmploc.dll
+ 2006-10-19 05:47 . 2006-10-19 05:47 1661440 c:\windows\system32\wmpencen.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 1117696 c:\windows\system32\WMADMOE.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 1392640 c:\windows\system32\WLTRAY.EXE
+ 2009-12-08 21:33 . 2006-11-01 20:48 2129920 c:\windows\system32\WLBCGCBPRO731.DLL
+ 2004-08-04 12:00 . 2009-08-14 12:19 1850112 c:\windows\system32\win32k.sys
+ 2010-04-11 02:02 . 2009-10-16 07:33 3003680 c:\windows\system32\usbaaplrc.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 1209344 c:\windows\system32\urlmon.dll
+ 2008-05-27 03:21 . 2008-05-27 03:21 1582592 c:\windows\system32\tquery.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 5407232 c:\windows\system32\spool\drivers\w32x86\3\x2guiAP.dll
+ 2007-09-13 15:19 . 2007-09-13 15:19 4005376 c:\windows\system32\spool\drivers\w32x86\3\x2coreAP.dll
+ 2004-08-04 12:00 . 2008-07-03 13:16 8454656 c:\windows\system32\shell32.dll
+ 2004-08-04 12:00 . 2009-01-08 02:20 1497088 c:\windows\system32\shdocvw.dll
+ 2010-05-02 17:48 . 1999-09-08 21:06 1056768 c:\windows\system32\ROBOEX32.DLL
- 2004-08-04 12:00 . 2004-08-04 12:00 1435648 c:\windows\system32\query.dll
+ 2004-08-04 12:00 . 2009-07-17 16:27 1435648 c:\windows\system32\query.dll
+ 2004-08-04 12:00 . 2010-02-05 18:40 1291264 c:\windows\system32\quartz.dll
+ 2004-08-04 12:00 . 2009-08-04 13:58 2136064 c:\windows\system32\ntoskrnl.exe
+ 2004-08-03 22:59 . 2009-08-04 13:13 2015744 c:\windows\system32\ntkrnlpa.exe
+ 2009-12-08 21:18 . 2008-06-20 18:33 2756608 c:\windows\system32\NETw5r32.dll
+ 2006-12-04 19:37 . 2006-12-04 19:37 1317648 c:\windows\system32\msxml6.dll
+ 2004-08-04 12:00 . 2009-07-31 04:57 1172480 c:\windows\system32\msxml3.dll
+ 2008-05-27 03:21 . 2008-05-27 03:21 1418240 c:\windows\system32\mssrch.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 5950976 c:\windows\system32\mshtml.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 1060864 c:\windows\system32\MFC71.DLL
+ 2009-12-10 15:24 . 2009-12-10 15:24 1485064 c:\windows\system32\lmxp32.dll
+ 2009-03-08 12:32 . 2010-05-06 10:41 1985536 c:\windows\system32\iertutil.dll
+ 2009-02-07 05:07 . 2009-02-07 05:07 3698584 c:\windows\system32\ieapfltr.dat
+ 2007-06-06 15:53 . 2007-06-06 15:53 1195888 c:\windows\system32\FM20.DLL
+ 2009-12-08 21:18 . 2008-01-07 22:36 2216064 c:\windows\system32\DRVSTORE\w29n51_AEF466EE116FDF742A02BFF75E6143DB4A91003C\w29n51.sys
+ 2009-12-08 21:18 . 2008-01-07 22:39 2212352 c:\windows\system32\DRVSTORE\w29n51_AEF466EE116FDF742A02BFF75E6143DB4A91003C\w29n50.sys
+ 2009-12-08 21:18 . 2007-02-12 20:41 2732032 c:\windows\system32\DRVSTORE\w29n51_AEF466EE116FDF742A02BFF75E6143DB4A91003C\Netw2r32.dll
+ 2010-04-11 02:02 . 2009-10-16 07:33 3003680 c:\windows\system32\DRVSTORE\usbaapl_E0F497D6C8B1C59AEB6422181BF0AFABD8356D47\usbaaplrc.dll
+ 2009-12-08 21:18 . 2009-05-29 06:23 4203392 c:\windows\system32\DRVSTORE\netw5x32_D5D0E44792B0452958414D32626987C3E12635A2\NETw5x32.sys
+ 2009-12-08 21:18 . 2008-06-20 18:33 2756608 c:\windows\system32\DRVSTORE\netw5x32_D5D0E44792B0452958414D32626987C3E12635A2\NETw5r32.dll
+ 2010-04-11 02:02 . 2010-03-17 00:53 1419232 c:\windows\system32\DRVSTORE\netaapl_F433E854B3FF3BEE74986FDE8E16A64162342BFF\wdfcoinstaller01005.dll
+ 2009-12-08 21:18 . 2009-05-29 06:23 4203392 c:\windows\system32\drivers\NETw5x32.sys
+ 2004-08-04 12:00 . 2010-04-06 09:52 2462720 c:\windows\system32\dllcache\WMVCore.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 1329152 c:\windows\system32\dllcache\WMSPDMOE.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 8231936 c:\windows\system32\dllcache\wmploc.dll
+ 2004-08-04 12:00 . 2006-10-19 05:47 1117696 c:\windows\system32\dllcache\WMADMOE.dll
+ 2004-08-04 12:00 . 2009-08-14 12:19 1850112 c:\windows\system32\dllcache\win32k.sys
+ 2004-08-04 12:00 . 2010-05-06 10:41 1209344 c:\windows\system32\dllcache\urlmon.dll
+ 2004-08-04 12:00 . 2008-07-03 13:16 8454656 c:\windows\system32\dllcache\shell32.dll
+ 2004-08-04 12:00 . 2009-01-08 02:20 1497088 c:\windows\system32\dllcache\shdocvw.dll
+ 2009-11-09 11:42 . 2006-11-02 02:31 1669120 c:\windows\system32\dllcache\setup_wm.exe
- 2004-08-04 12:00 . 2004-08-04 12:00 1435648 c:\windows\system32\dllcache\query.dll
+ 2004-08-04 12:00 . 2009-07-17 16:27 1435648 c:\windows\system32\dllcache\query.dll
+ 2004-08-04 12:00 . 2010-02-05 18:40 1291264 c:\windows\system32\dllcache\quartz.dll
+ 2010-03-03 05:45 . 2009-08-04 14:00 2180352 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2010-03-03 05:45 . 2009-08-04 13:13 2015744 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2010-03-03 05:45 . 2009-08-04 13:13 2057728 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2010-03-03 05:45 . 2009-08-04 13:58 2136064 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2004-08-04 12:00 . 2009-07-31 04:57 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2009-11-09 11:41 . 2009-07-10 13:42 1315328 c:\windows\system32\dllcache\msoe.dll
+ 2004-08-04 12:00 . 2010-05-06 10:41 5950976 c:\windows\system32\dllcache\mshtml.dll
+ 2004-08-04 12:00 . 2009-01-08 02:20 1022976 c:\windows\system32\dllcache\browseui.dll
+ 2004-08-04 12:00 . 2009-01-08 02:20 1022976 c:\windows\system32\browseui.dll
+ 2009-12-08 21:33 . 2006-11-01 20:48 1253376 c:\windows\system32\BCMWLTRY.EXE
+ 2010-03-09 15:38 . 2010-03-09 15:38 1358336 c:\windows\Installer\c682ec.msi
+ 2010-02-10 17:14 . 2010-02-10 17:14 2375168 c:\windows\Installer\9d4259.msi
+ 2009-12-05 21:16 . 2009-12-05 21:16 8691712 c:\windows\Installer\507d1f.msi
+ 2010-07-06 02:40 . 2010-07-06 02:40 1575936 c:\windows\Installer\34e65.msi
+ 2009-12-08 21:19 . 2009-12-08 21:19 5950976 c:\windows\Installer\2fc479.msi
+ 2010-06-11 03:03 . 2010-06-11 03:03 2223104 c:\windows\Installer\29c6e4.msp
+ 2010-06-11 03:03 . 2010-06-11 03:03 2317312 c:\windows\Installer\29c6d8.msi
+ 2009-04-04 15:14 . 2009-04-04 15:14 1094656 c:\windows\Installer\24e2b54.msp
+ 2008-10-25 14:15 . 2008-10-25 14:15 6227456 c:\windows\Installer\24e2b37.msp
+ 2009-09-29 14:08 . 2009-09-29 14:08 6747648 c:\windows\Installer\24e2b22.msp
+ 2009-07-23 20:36 . 2009-07-23 20:36 7497216 c:\windows\Installer\24e2b17.msp
+ 2010-05-19 04:35 . 2010-05-19 04:35 5023744 c:\windows\Installer\24e2b07.msp
+ 2010-04-28 01:21 . 2010-04-28 01:21 1205760 c:\windows\Installer\1b9088.msi
+ 2010-04-11 02:05 . 2010-04-11 02:05 4911104 c:\windows\Installer\10f11a.msi
+ 2010-04-11 02:03 . 2010-04-11 02:03 9472000 c:\windows\Installer\10f116.msi
+ 2010-04-11 02:02 . 2010-04-11 02:02 1554944 c:\windows\Installer\10f110.msi
+ 2010-04-11 02:02 . 2010-04-11 02:02 3165184 c:\windows\Installer\10f10a.msi
+ 2010-04-11 02:01 . 2010-04-11 02:01 1984000 c:\windows\Installer\10f104.msi
+ 2009-11-09 12:24 . 2010-06-29 16:28 1172240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 1172240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
+ 2009-11-09 12:24 . 2010-06-29 16:28 1165584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
- 2009-11-09 12:24 . 2009-11-09 12:24 1165584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
+ 2010-03-23 03:59 . 2010-03-23 03:59 1431040 c:\windows\Installer\{5C47C8B6-77FF-4FC7-A388-66FCF9CFC24C}\Icon0E6ED660.exe
+ 2007-05-29 08:02 . 2007-05-29 08:02 1738160 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PRJRES.DLL
+ 2007-05-29 06:48 . 2007-05-29 06:48 4323248 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\PJOLEDB.DLL
+ 2003-08-15 21:17 . 2003-08-15 21:17 1735272 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PRJRES.DLL
+ 2003-08-15 19:35 . 2003-08-15 19:35 4222056 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\PJOLEDB.DLL
+ 2003-08-01 09:39 . 2003-08-01 09:39 8086072 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\OWC11.DLL
+ 2003-07-25 13:30 . 2003-07-25 13:30 1157696 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\FPSRVUTL.DLL
+ 2006-09-15 10:55 . 2006-09-15 10:55 3611416 c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLFLTR.DAT
+ 2006-10-26 14:19 . 2006-10-26 14:19 1011488 c:\windows\Installer\$PatchCache$\Managed\00002109010090400000000000F01FEC\12.0.4518\MSDAIPP.DLL
+ 2010-06-29 15:08 . 2009-03-08 12:34 1206784 c:\windows\ie8updates\KB982381-IE8\urlmon.dll
+ 2010-06-29 15:08 . 2009-03-08 12:41 5937152 c:\windows\ie8updates\KB982381-IE8\mshtml.dll
+ 2010-06-29 15:08 . 2009-03-08 12:32 1985024 c:\windows\ie8updates\KB982381-IE8\iertutil.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 1483264 c:\windows\ie8\shdocvw.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 3003392 c:\windows\ie8\mshtml.dll
+ 2009-12-08 05:35 . 2004-08-04 12:00 1016832 c:\windows\ie8\browseui.dll
+ 2010-06-29 04:27 . 2010-06-29 04:27 7458816 c:\windows\ERDNT\6-28-2010\Users\00000001\NTUSER.DAT
+ 2010-03-21 15:10 . 2010-03-21 15:10 5828608 c:\windows\ERDNT\3-21-2010\Users\00000001\NTUSER.DAT
+ 2010-03-03 05:45 . 2009-08-04 14:00 2180352 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2010-03-03 05:45 . 2009-08-04 13:13 2015744 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2010-03-03 05:45 . 2009-08-04 13:13 2057728 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2010-03-03 05:45 . 2009-08-04 13:58 2136064 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2010-03-09 16:02 . 2010-03-09 16:02 2078008 c:\windows\Downloaded Program Files\WebEx\926\wbxmgrec.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 3293184 c:\windows\Downloaded Program Files\WebEx\926\pfwres.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 3047424 c:\windows\Downloaded Program Files\WebEx\926\atres.dll
+ 2010-03-09 16:02 . 2010-03-09 16:02 2211840 c:\windows\Downloaded Program Files\WebEx\926\atpdmod.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 2315576 c:\windows\Downloaded Program Files\WebEx\924\webexmgr.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 3563520 c:\windows\Downloaded Program Files\WebEx\924\pfwres.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 3043328 c:\windows\Downloaded Program Files\WebEx\924\atres.dll
+ 2010-03-25 20:01 . 2010-07-15 18:01 2084864 c:\windows\Downloaded Program Files\WebEx\924\atpdmod.dll
+ 2010-03-23 03:23 . 2010-03-23 03:23 2195456 c:\windows\Downloaded Program Files\WebEx\824\atres.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 2940928 c:\windows\$NtUninstallwmp11$\wmploc.dll
+ 2009-12-05 23:25 . 2004-08-04 12:00 4874240 c:\windows\$NtUninstallwmp11$\wmp.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 1001472 c:\windows\$NtUninstallWMFDist11$\wmvdmoe2.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 2105344 c:\windows\$NtUninstallWMFDist11$\wmvcore.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 1119744 c:\windows\$NtUninstallWMFDist11$\wmsdmoe2.dll
+ 2009-12-05 23:24 . 2004-08-04 12:00 1050624 c:\windows\$NtUninstallWMFDist11$\wmnetmgr.dll
+ 2010-03-04 08:36 . 2004-08-04 12:00 1287680 c:\windows\$NtUninstallKB975560$\quartz.dll
+ 2010-03-04 08:36 . 2008-09-04 16:42 1106944 c:\windows\$NtUninstallKB973687$\msxml3.dll
+ 2010-03-04 08:35 . 2004-08-04 12:00 1311232 c:\windows\$NtUninstallKB973354$\msoe.dll
+ 2010-03-04 08:32 . 2004-08-04 12:00 2148352 c:\windows\$NtUninstallKB971486$\ntoskrnl.exe
+ 2010-03-04 08:32 . 2004-08-04 12:00 2015232 c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe
+ 2010-03-04 08:29 . 2004-08-04 12:00 1835904 c:\windows\$NtUninstallKB969947$\win32k.sys
+ 2010-03-04 08:40 . 2004-08-04 12:00 1435648 c:\windows\$NtUninstallKB969059$\query.dll
+ 2010-03-04 08:38 . 2008-06-18 11:03 2458112 c:\windows\$NtUninstallKB968816_WM9$\wmvcore.dll
+ 2010-03-04 08:35 . 2004-08-04 12:00 8384000 c:\windows\$NtUninstallKB967715$\shell32.dll
+ 2010-03-04 08:30 . 2004-08-04 12:00 1236480 c:\windows\$NtUninstallKB955069$\msxml3.dll
+ 2010-03-04 08:38 . 2006-10-19 05:47 2450944 c:\windows\$NtUninstallKB952069_WM9$\wmvcore.dll
+ 2009-11-27 17:23 . 2009-11-27 17:23 1291776 c:\windows\$hf_mig$\KB975560\SP3QFE\quartz.dll
+ 2009-11-27 17:11 . 2009-11-27 17:11 1291776 c:\windows\$hf_mig$\KB975560\SP3GDR\quartz.dll
+ 2009-11-27 17:04 . 2009-11-27 17:04 1291776 c:\windows\$hf_mig$\KB975560\SP2QFE\quartz.dll
+ 2010-03-03 05:50 . 2009-07-31 04:24 1447424 c:\windows\$hf_mig$\KB973687\SP3QFE\msxml6.dll
+ 2010-03-03 05:50 . 2009-07-31 04:24 1172480 c:\windows\$hf_mig$\KB973687\SP3QFE\msxml3.dll
+ 2009-07-31 16:05 . 2009-07-31 16:05 1372672 c:\windows\$hf_mig$\KB973687\SP3GDR\msxml6.dll
+ 2010-03-03 05:50 . 2009-07-31 04:35 1172480 c:\windows\$hf_mig$\KB973687\SP3GDR\msxml3.dll
+ 2010-03-03 05:50 . 2009-07-31 04:36 1172480 c:\windows\$hf_mig$\KB973687\SP2QFE\msxml3.dll
+ 2009-07-11 00:54 . 2009-07-11 00:54 1315328 c:\windows\$hf_mig$\KB973354\SP3QFE\msoe.dll
+ 2010-03-03 05:47 . 2009-07-10 13:27 1315328 c:\windows\$hf_mig$\KB973354\SP3GDR\msoe.dll
+ 2010-03-03 05:47 . 2009-07-10 13:36 1315328 c:\windows\$hf_mig$\KB973354\SP2QFE\msoe.dll
+ 2010-03-03 05:45 . 2009-08-04 13:56 2189312 c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe
+ 2010-03-03 05:45 . 2009-08-04 13:17 2023936 c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrpamp.exe
+ 2009-08-05 00:47 . 2009-08-05 00:47 2066176 c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe
+ 2010-03-03 05:45 . 2009-08-04 13:54 2145280 c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlmp.exe
+ 2009-08-05 02:44 . 2009-08-05 02:44 2189184 c:\windows\$hf_mig$\KB971486\SP3GDR\ntoskrnl.exe
+ 2010-03-03 05:45 . 2009-08-04 14:20 2023936 c:\windows\$hf_mig$\KB971486\SP3GDR\ntkrpamp.exe
+ 2010-03-03 05:45 . 2009-08-04 14:20 2066048 c:\windows\$hf_mig$\KB971486\SP3GDR\ntkrnlpa.exe
+ 2010-03-03 05:45 . 2009-08-04 15:13 2145280 c:\windows\$hf_mig$\KB971486\SP3GDR\ntkrnlmp.exe
+ 2010-03-03 05:45 . 2009-08-04 12:51 2185984 c:\windows\$hf_mig$\KB971486\SP2QFE\ntoskrnl.exe
+ 2010-03-03 05:45 . 2009-08-04 12:02 2020864 c:\windows\$hf_mig$\KB971486\SP2QFE\ntkrpamp.exe
+ 2010-03-03 05:45 . 2009-08-04 12:02 2062976 c:\windows\$hf_mig$\KB971486\SP2QFE\ntkrnlpa.exe
+ 2010-03-03 05:45 . 2009-08-04 12:49 2142720 c:\windows\$hf_mig$\KB971486\SP2QFE\ntkrnlmp.exe
+ 2009-08-14 12:19 . 2009-08-14 12:19 1859712 c:\windows\$hf_mig$\KB969947\SP3QFE\win32k.sys
+ 2009-08-14 13:21 . 2009-08-14 13:21 1850624 c:\windows\$hf_mig$\KB969947\SP3GDR\win32k.sys
+ 2009-08-14 11:22 . 2009-08-14 11:22 1859328 c:\windows\$hf_mig$\KB969947\SP2QFE\win32k.sys
+ 2009-07-17 16:01 . 2009-07-17 16:01 1435648 c:\windows\$hf_mig$\KB969059\SP3QFE\query.dll
+ 2009-07-17 16:22 . 2009-07-17 16:22 1435648 c:\windows\$hf_mig$\KB969059\SP3GDR\query.dll
+ 2009-07-17 16:10 . 2009-07-17 16:10 1435648 c:\windows\$hf_mig$\KB969059\SP2QFE\query.dll
+ 2008-06-17 19:04 . 2008-06-17 19:04 8461824 c:\windows\$hf_mig$\KB967715\SP3QFE\shell32.dll
+ 2008-06-17 19:02 . 2008-06-17 19:02 8461312 c:\windows\$hf_mig$\KB967715\SP3GDR\shell32.dll
+ 2008-07-03 13:03 . 2008-07-03 13:03 8460800 c:\windows\$hf_mig$\KB967715\SP2QFE\shell32.dll
+ 2009-02-08 01:35 . 2009-02-08 01:35 2189184 c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
+ 2010-03-03 05:57 . 2009-02-06 10:30 2023936 c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrpamp.exe
+ 2010-03-03 05:57 . 2009-02-06 10:30 2066176 c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
+ 2010-03-03 05:57 . 2009-02-06 11:03 2145280 c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlmp.exe
+ 2010-03-03 05:57 . 2009-02-06 11:08 2189056 c:\windows\$hf_mig$\KB956572\SP3GDR\ntoskrnl.exe
+ 2010-03-03 05:57 . 2009-02-06 10:32 2023936 c:\windows\$hf_mig$\KB956572\SP3GDR\ntkrpamp.exe
+ 2009-02-08 01:02 . 2009-02-08 01:02 2066048 c:\windows\$hf_mig$\KB956572\SP3GDR\ntkrnlpa.exe
+ 2010-03-03 05:57 . 2009-02-06 11:06 2145280 c:\windows\$hf_mig$\KB956572\SP3GDR\ntkrnlmp.exe
+ 2010-03-03 05:57 . 2009-02-06 10:32 2186112 c:\windows\$hf_mig$\KB956572\SP2QFE\ntoskrnl.exe
+ 2010-03-03 05:57 . 2009-02-06 09:49 2020864 c:\windows\$hf_mig$\KB956572\SP2QFE\ntkrpamp.exe
+ 2010-03-03 05:57 . 2009-02-06 09:49 2062976 c:\windows\$hf_mig$\KB956572\SP2QFE\ntkrnlpa.exe
+ 2010-03-03 05:57 . 2009-02-06 10:29 2142720 c:\windows\$hf_mig$\KB956572\SP2QFE\ntkrnlmp.exe
+ 2010-03-03 05:43 . 2008-09-04 17:12 1106944 c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
+ 2010-03-03 05:43 . 2008-09-04 17:15 1106944 c:\windows\$hf_mig$\KB955069\SP3GDR\msxml3.dll
+ 2010-03-03 05:43 . 2008-09-04 16:32 1106944 c:\windows\$hf_mig$\KB955069\SP2QFE\msxml3.dll
+ 2004-08-04 12:00 . 2009-07-14 05:43 10841088 c:\windows\system32\wmp.dll
+ 2009-11-10 11:56 . 2009-11-05 17:36 26768832 c:\windows\system32\MRT.exe
+ 2009-03-08 12:39 . 2010-05-06 10:41 11076096 c:\windows\system32\ieframe.dll
+ 2004-08-04 12:00 . 2009-07-14 05:43 10841088 c:\windows\system32\dllcache\wmp.dll
+ 2010-02-18 12:51 . 2010-02-18 12:51 15710720 c:\windows\Installer\bea032.msp
+ 2010-07-11 16:02 . 2010-07-11 16:02 20242432 c:\windows\Installer\4e065.msp
+ 2007-07-08 17:55 . 2007-07-08 17:55 43614720 c:\windows\Installer\468d8a.msp
+ 2009-04-04 22:09 . 2009-04-04 22:09 15190016 c:\windows\Installer\24e2b75.msp
+ 2009-04-04 16:36 . 2009-04-04 16:36 21390848 c:\windows\Installer\24e2b55.msp
+ 2010-04-15 22:16 . 2010-04-15 22:16 10443776 c:\windows\Installer\24e2b49.msp
+ 2009-12-08 21:17 . 2009-06-01 21:34 33712128 c:\windows\Installer\_{72EEB695-388B-4835-8EA6-0C04545B06B9}\Intel PROSet Wireless.msi
+ 2007-05-29 08:02 . 2007-05-29 08:02 11421704 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.8173\WINPROJ.EXE
+ 2003-08-15 21:17 . 2003-08-15 21:17 11299520 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\WINPROJ.EXE
+ 2003-08-07 18:53 . 2003-08-07 18:53 12172336 c:\windows\Installer\$PatchCache$\Managed\9040A30900063D11C8EF10054038389C\11.0.5614\MSO.DLL
+ 2010-06-29 15:08 . 2009-03-08 12:39 11063808 c:\windows\ie8updates\KB982381-IE8\ieframe.dll
+ 2010-03-04 08:37 . 2006-10-19 05:47 10834432 c:\windows\$NtUninstallKB973540_WM9L$\wmp.dll
+ 2009-04-04 22:08 . 2009-04-04 22:08 343058432 c:\windows\Installer\24e2bbf.msp
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
2010-07-05 21:35 2515552 ----a-w- c:\program files\Vuze_Remote\tbVuz1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{ba14329e-9550-4989-b3f2-9732e92d17cc}"= "c:\program files\Vuze_Remote\tbVuz1.dll" [2010-07-05 2515552]

[HKEY_CLASSES_ROOT\clsid\{ba14329e-9550-4989-b3f2-9732e92d17cc}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{BA14329E-9550-4989-B3F2-9732E92D17CC}"= "c:\program files\Vuze_Remote\tbVuz1.dll" [2010-07-05 2515552]

[HKEY_CLASSES_ROOT\clsid\{ba14329e-9550-4989-b3f2-9732e92d17cc}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-12-03 39408]
"Google Update"="c:\documents and settings\xxxxs.XXXX\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2010-03-18 136176]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-04 110592]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-12-13 98304]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-12-13 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-12-13 118784]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"OfficeScanNT Monitor"="c:\program files\Trend Micro\OfficeScan Client\pccntmon.exe" [2009-04-20 718120]
"Apoint"="c:\program files\Apoint\Apoint.exe" [2005-10-07 176128]
"SigmatelSysTrayApp"="stsystra.exe" [2006-03-24 282624]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-29 149280]
"Google Quick Search Box"="c:\program files\Google\Quick Search Box\GoogleQuickSearchBox.exe" [2009-12-03 122880]
"IntelZeroConfig"="c:\program files\Intel\WiFi\bin\ZCfgSvc.exe" [2009-05-21 1372160]
"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2009-05-21 1202448]
"Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2006-11-01 1392640]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2010-02-08 30192]
"UnlockerAssistant"="c:\program files\Unlocker\UnlockerAssistant.exe" [2009-10-26 15872]
"Communicator"="c:\program files\Microsoft Office Communicator\communicator.exe" [2010-04-11 5116256]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-03-26 142120]
"Bing Bar"="c:\program files\MSN Toolbar\Platform\5.0.1423.0\mswinext.exe" [2010-03-24 243544]
"Microsoft Default Manager"="c:\program files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" [2009-11-11 288088]

c:\documents and settings\xxxxs.XXXX\Start Menu\Programs\Startup\
Seagate 2GH2V8V5 Product Registration.lnk - c:\documents and settings\xxxxs.XXXX\Application Data\Leadertech\PowerRegister\Seagate 2GH2V8V5 Product Registration.exe [2010-5-31 1731736]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
Orbit.lnk - c:\program files\Orbitdownloader\orbitdm.exe [2009-12-31 1719568]
Windows Search.lnk - c:\program files\Windows Desktop Search\WindowsSearch.exe [2008-5-26 123904]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-25 304128]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H/PC Connection Agent]
2006-11-13 21:39 1289000 ----a-w- c:\program files\Microsoft ActiveSync\wcescomm.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\TrendAntiVirus]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Orbitdownloader\\orbitdm.exe"=
"c:\\Program Files\\Orbitdownloader\\orbitnet.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Microsoft Office\\Live Meeting 8\\Console\\PWConsole.exe"=
"c:\\Program Files\\Vuze\\Azureus.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\Program Files\\Microsoft Office Communicator\\communicator.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [11/23/2009 11:43 AM 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [11/23/2009 11:43 AM 74480]
R2 TmFilter;Trend Micro Filter;c:\program files\Trend Micro\OfficeScan Client\tmxpflt.sys [3/9/2009 2:11 AM 225296]
R2 TmPreFilter;Trend Micro PreFilter;c:\program files\Trend Micro\OfficeScan Client\tmpreflt.sys [3/9/2009 2:11 AM 36368]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [12/3/2009 12:32 AM 135664]
S3 GoogleDesktopManager-110309-193829;Google Desktop Manager 5.9.911.3589;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [2/8/2010 2:28 PM 30192]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [11/23/2009 11:43 AM 7408]
S3 TmProxy;OfficeScan NT Proxy Service;c:\program files\Trend Micro\OfficeScan Client\TmProxy.exe [3/9/2009 2:11 AM 652552]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
vvdsvc REG_MULTI_SZ vvdsvc
.
Contents of the 'Scheduled Tasks' folder

2010-07-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-03 05:31]

2010-07-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-03 05:31]

2010-07-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-725345543-1006Core.job
- c:\documents and settings\xxxxs.XXXX\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-05-17 04:25]

2010-07-19 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-725345543-1006UA.job
- c:\documents and settings\xxxxs.XXXX\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-05-17 04:25]

2010-07-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2838966446-1611402468-3389684964-14612Core.job
- c:\documents and settings\xxxxs\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-11-28 23:41]

2010-07-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2838966446-1611402468-3389684964-14612UA.job
- c:\documents and settings\xxxxs\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-11-28 23:41]

2010-07-19 c:\windows\Tasks\User_Feed_Synchronization-{2F904E52-9B2D-4D70-8C9A-3666E1F63EEF}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 12:31]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
Trusted Zone: hotmail.com\www
.
- - - - ORPHANS REMOVED - - - -

MSConfigStartUp-nnsligha - c:\documents and settings\xxxxs\Local Settings\Application Data\egawlg\pinosysguard.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-07-18 19:49
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(864)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
c:\windows\system32\WININET.dll

- - - - - - - > 'explorer.exe'(248)
c:\windows\system32\WININET.dll
c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
c:\progra~1\WINDOW~2\wmpband.dll
c:\program files\Google\Quick Search Box\bin\1.2.1151.245\qsb.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Intel\WiFi\bin\S24EvMon.exe
c:\windows\System32\WLTRYSVC.EXE
c:\windows\System32\bcmwltry.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Intel\WiFi\bin\EvtEng.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Trend Micro\OfficeScan Client\ntrtscan.exe
c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\Intel\WiFi\bin\WLKeeper.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\windows\system32\SearchIndexer.exe
c:\program files\Trend Micro\OfficeScan Client\tmlisten.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\program files\Trend Micro\OfficeScan Client\CNTAoSMgr.exe
c:\windows\TEMP\OBE82B.EXE
c:\windows\system32\rundll32.exe
c:\windows\system32\igfxsrvc.exe
c:\windows\stsystra.exe
c:\program files\Apoint\Apntex.exe
c:\program files\Apoint\HidFind.exe
c:\windows\system32\wbem\unsecapp.exe
c:\documents and settings\xxxxs.XXXX\Local Settings\Application Data\Google\Update\1.2.183.29\GoogleCrashHandler.exe
c:\program files\Orbitdownloader\orbitnet.exe
c:\program files\iPod\bin\iPodService.exe
.
**************************************************************************
.
Completion time: 2010-07-18 19:53:23 - machine was rebooted
ComboFix-quarantined-files.txt 2010-07-19 00:53
ComboFix2.txt 2009-12-05 20:40
ComboFix3.txt 2009-12-05 19:58

Pre-Run: 2,602,369,024 bytes free
Post-Run: 3,081,486,336 bytes free

- - End Of File - - 186120860462A6D955EFEF97ECD40613
  • 0

#8
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Hi there,

STEP 1 - TFC

Download TFC to your desktop
  • Open the file and close any other windows.
  • It will close all programs itself when run, make sure to let it run uninterrupted.
  • Click the Start button to begin the process. The program should not take long to finish its job
  • Once its finished it should reboot your machine, if not, do this yourself to ensure a complete clean
STEP 2 - MBAM

Open Malwarebyte's Anti-Malware.
  • Under the Updates tab, click Check for Updates. Let the updates install (if any).
  • After that, under the Scanner tab, click Perform Quick Scan and then Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
  • Exit MBAM when done.
Note: If MBAM encounters a file that is difficult to remove, you will be asked to reboot your computer so MBAM can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware.

STEP 3 - Kaspersky

Using Internet Explorer or Firefox, visit Kaspersky Online Scanner

1. Click Accept, when prompted to download and install the program files and database of malware definitions.

2. To optimize scanning time and produce a more sensible report for review:
  • Close any open programs
  • Turn off the real time scanner of any existing antivirus program while performing the online scan. Click HERE to see how to disable the most common antivirus programs.
3. Click Run at the Security prompt.

The program will then begin downloading and installing and will also update the database.
Please be patient as this can take quite a long time to download.
  • Once the update is complete, click on Settings.
  • Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
    • Spyware, adware, dialers, and other riskware
    • Archives
    • E-mail databases
  • Click on My Computer under the green Scan bar to the left to start the scan.
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
  • Do NOT be alarmed by what you see in the report. Many of the finds have likely been quarantined.
  • Click View report... at the bottom.
  • Click the Save report... button.

    Posted Image

  • Change the Files of type dropdown box to Text file (.txt) and name the file KasReport.txt to save the file to your desktop so that you may post it in your next reply
STEP 4 - Reply

Please reply with the following log:
  • MBAM Log
  • Kaspersky Log

  • 0

#9
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0

#10
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Hi there,

Are you still here?
  • 0

Advertisements


#11
spywareridden

spywareridden

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
Hi pascal,
The kaspersky scan doesnt happen, at the end of some 3 hours the web page just hangs. i ran the mbam again today following is the log.
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4420

Windows 5.1.2600 Service Pack 2
Internet Explorer 8.0.6001.18702

8/12/2010 1:23:22 AM
mbam-log-2010-08-12 (01-23-22).txt

Scan type: Quick scan
Objects scanned: 178002
Time elapsed: 16 minute(s), 10 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 1
Files Infected: 1

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
C:\Documents and Settings\LocalService\Local Settings\Application Data\wmrpcd9 (Trojan.SearchRedir.M) -> Quarantined and deleted successfully.

Files Infected:
C:\WINDOWS\system32\cmmoay32.dll (Spyware.Passwords) -> Quarantined and deleted successfully.
  • 0

#12
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Hi there,

I'd like us to scan your machine with ESET OnlineScan
  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on Posted Image to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image icon on your desktop.
  • Check Posted Image
  • Click the Posted Image button.
  • Accept any security warnings from your browser.
  • Check Posted Image
  • Push the Start button.
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, push Posted Image
  • Push Posted Image, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Push the Posted Image button.
  • Push Posted Image

  • 0

#13
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0

#14
mpascal

mpascal

    Math Nerd

  • Retired Staff
  • 3,644 posts
Welcome back, can you continue with the ESET scan.
  • 0

#15
spywareridden

spywareridden

    Member

  • Topic Starter
  • Member
  • PipPip
  • 37 posts
hi pascal,
thanks for opening the thread and continuing to help. really appreciate your time.. please find the eset scan.
C:\Documents and Settings\sorabhs\Local Settings\Application Data\{431D639F-3EC7-46A5-A962-D250D138006B}\chrome\content\overlay.xul JS/Gord.A trojan cleaned by deleting - quarantined
C:\downloads\unlocker1.8.8.exe Win32/Adware.ADON application deleted - quarantined
C:\Qoobox\Quarantine\C\Documents and Settings\LocalService\Local Settings\Application Data\spsclibrary\spsclibrary.dll.vir a variant of Win32/Agent.QHQ trojan cleaned by deleting - quarantined
C:\Qoobox\Quarantine\C\Documents and Settings\LocalService\Local Settings\Application Data\wmrpcd9\wmrpcd9.dll.vir a variant of Win32/Agent.QRF trojan cleaned by deleting - quarantined
C:\Qoobox\Quarantine\C\WINDOWS\system32\fjhdyfhsn.bat.vir BAT/Agent.NFC trojan cleaned by deleting - quarantined
C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\atapi.sys.vir Win32/Protector.E virus cleaned - quarantined
C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys Win32/Protector.E virus cleaned - quarantined
D:\Documents And Setting\sosaxena.LAPTOP-55\Local Settings\Temporary Internet Files\Content.IE5\4LMBKHYR\index[2].htm HTML/ScrInject.B.Gen virus deleted - quarantined


Also one more thing... when ever i shut down the system it keeps lingering on the logging off prompt for ever, and many time i have to hard boot the laptop down.

regards
spywareridden
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP