Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Windows Explorer doesn't close on shutdown


  • Please log in to reply

#1
Silent Hunter

Silent Hunter

    New Member

  • Member
  • Pip
  • 4 posts
I have a problem. Windows explorer doesn't shutdown when I shut down XP, it tries to end the program so I have to always click end now. So after nearly 2 days, iPodservicemodule(32bit) keeps crashing upon startup and a program C:/WINDOWS/inf/Other.exe could not start pops up on startup as well as EXPLORER.EXE uses 120-170MB RAM when i see it running in Task Manager. I tried using MBAM and it detected 55 viruses and successfully removed them. After that i tried running SDFix and it couldn't delete some files. Here is the log of SDFix. I hope someone helps me.



SDFix: Version 1.240
Run by Administrator on Sat 03/12/2011 at 02:10 PM

Microsoft Windows XP [Version 5.1.2600]
Running From: C:\SDFix

Checking Services :


Restoring Default Security Values
Restoring Default Hosts File

Rebooting


Checking Files :

No Trojan Files Found






Removing Temp Files

ADS Check :



Final Check :

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-03-12 14:17:11
Windows 5.1.2600 Service Pack 3 FAT NTAPI

scanning hidden processes ...

scanning hidden services ...

scanning hidden autostart entries ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
HDAudDeck = C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe 1????????????????????????????????????????????????

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Remaining Services :




Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour Service"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"D:\\Opera\\opera.exe"="D:\\Opera\\opera.exe:*:Enabled:Opera Internet Browser"
"E:\\Velvet Assassin\\Launcher.exe"="E:\\Velvet Assassin\\Launcher.exe:*:Enabled:Velvet_Assassin-1"
"E:\\Velvet Assassin\\replay.exe"="E:\\Velvet Assassin\\replay.exe:*:Enabled:Velvet_Assassin-2"
"C:\\Program Files\\Messenger\\MSMSGS.EXE"="C:\\Program Files\\Messenger\\MSMSGS.EXE:*:Enabled:Windows Messenger"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:æTorrent"
"D:\\Games\\BFBC2Updater.exe"="D:\\Games\\BFBC2Updater.exe:*:Enabled:Battlefield: Bad CompanyT 2"
"C:\\Program Files\\SaveTubeVideo.com\\SaveTubeVideo\\downloader.exe"="C:\\Program Files\\SaveTubeVideo.com\\SaveTubeVideo\\downloader.exe:*:Enabled:SaveTubeVideo"
"C:\\Program Files\\Steam\\Steam.exe"="C:\\Program Files\\Steam\\Steam.exe:*:Enabled:Steam"
"E:\\Games\\RE5\\RE5DX9.EXE"="E:\\Games\\RE5\\RE5DX9.EXE:*:Enabled:RESIDENT EVIL 5 (DX9)"
"E:\\Games\\RE5\\RE5DX10.EXE"="E:\\Games\\RE5\\RE5DX10.EXE:*:Enabled:RESIDENT EVIL 5 (DX10)"
"D:\\Games\\BPUB\\BurnoutLauncher.exe"="D:\\Games\\BPUB\\BurnoutLauncher.exe:*:Enabled:Burnout™ Paradise The Ultimate Box"
"D:\\Games\\BPUB\\BurnoutConfigTool.exe"="D:\\Games\\BPUB\\BurnoutConfigTool.exe:*:Enabled:Burnout™ Paradise The Ultimate Box"
"D:\\Games\\BPUB\\BurnoutParadise.exe"="D:\\Games\\BPUB\\BurnoutParadise.exe:*:Enabled:Burnout™ Paradise The Ultimate Box"
"D:\\Games\\Crysis\\Bin32\\Crysis.exe"="D:\\Games\\Crysis\\Bin32\\Crysis.exe:*:Enabled:Crysis_32"
"D:\\Games\\Crysis\\Bin32\\CrysisDedicatedServer.exe"="D:\\Games\\Crysis\\Bin32\\CrysisDedicatedServer.exe:*:Enabled:CrysisDedicatedServer_32"
"D:\\Opera\\OperaUpgrader.exe"="D:\\Opera\\OperaUpgrader.exe:*:Enabled:Opera Internet Browser"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

Remaining Files :



Files with Hidden Attributes :

Fri 4 Mar 2011 3,278 ...HR --- "C:\Documents and Settings\Administrator\Application Data\SecuROM\UserData\securom_v7_01.bak"

Finished!

Edited by Silent Hunter, 12 March 2011 - 03:02 AM.

  • 0

Advertisements


#2
Silent Hunter

Silent Hunter

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
OTL Log:



OTL logfile created on: 3/12/2011 4:49:25 PM - Run 2
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Administrator\My Documents\Downloads
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 63.00% Memory free
4.00 Gb Paging File | 3.00 Gb Available in Paging File | 82.00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 24.40 Gb Total Space | 9.79 Gb Free Space | 40.14% Space Free | Partition Type: FAT32
Drive D: | 73.24 Gb Total Space | 18.50 Gb Free Space | 25.26% Space Free | Partition Type: NTFS
Drive E: | 73.25 Gb Total Space | 38.40 Gb Free Space | 52.42% Space Free | Partition Type: NTFS
Drive F: | 61.98 Gb Total Space | 21.86 Gb Free Space | 35.27% Space Free | Partition Type: NTFS

Computer Name: USER | User Name: Administrator | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/03/12 16:42:16 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\My Documents\Downloads\OTL.exe
PRC - [2011/02/18 13:52:04 | 000,995,896 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2010/12/20 15:19:48 | 000,103,760 | ---- | M] () -- D:\Games\Counter Strike Source\Counter Strike Source 2010\hl2.exe
PRC - [2010/11/22 18:14:36 | 000,227,344 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\SCANWSCS.EXE
PRC - [2010/11/22 18:14:36 | 000,205,776 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\SAPISSVC.EXE
PRC - [2010/11/22 18:14:36 | 000,146,384 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\UPSCHD.EXE
PRC - [2010/11/22 18:14:36 | 000,110,032 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\ONLINENT.EXE
PRC - [2010/11/22 18:14:36 | 000,090,576 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\QUHLPSVC.EXE
PRC - [2010/11/22 18:14:36 | 000,056,784 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\SCANMSG.EXE
PRC - [2010/11/22 18:14:36 | 000,028,112 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\EMLPROXY.EXE
PRC - [2010/11/22 18:14:36 | 000,022,480 | ---- | M] (Quick Heal Technologies (P) Ltd.) -- C:\Program Files\Quick Heal\Quick Heal Internet Security\OPSSVC.EXE
PRC - [2008/04/14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2011/03/12 16:42:16 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\My Documents\Downloads\OTL.exe
MOD - [2008/04/14 05:42:52 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- -- (lqnczsyw)
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - [2010/11/22 18:14:36 | 000,227,344 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Auto | Running] -- C:\Program Files\Quick Heal\Quick Heal Internet Security\SCANWSCS.EXE -- (ScanWscS)
SRV - [2010/11/22 18:14:36 | 000,205,776 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Auto | Stopped] -- C:\Program Files\Quick Heal\Quick Heal Internet Security\SAPISSVC.EXE -- (Core Scanning ServerEx)
SRV - [2010/11/22 18:14:36 | 000,205,776 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Auto | Running] -- C:\Program Files\Quick Heal\Quick Heal Internet Security\SAPISSVC.EXE -- (Core Scanning Server)
SRV - [2010/11/22 18:14:36 | 000,090,576 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Auto | Running] -- C:\Program Files\Quick Heal\Quick Heal Internet Security\quhlpsvc.exe -- (Quick Update Service)
SRV - [2010/11/22 18:14:36 | 000,028,112 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Auto | Running] -- C:\Program Files\Quick Heal\Quick Heal Internet Security\EMLPROXY.EXE -- (Core Mail Protection)
SRV - [2010/11/22 18:14:36 | 000,022,480 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Auto | Running] -- C:\Program Files\Quick Heal\Quick Heal Internet Security\opssvc.exe -- (Online Protection System)
SRV - [2010/09/01 15:52:00 | 000,066,112 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\bin\getPlus_Helper_3004.dll -- (nosGetPlusHelper) getPlus®


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme)
DRV - [2011/02/26 16:48:50 | 000,431,672 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2011/02/05 10:59:06 | 000,030,912 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Kernel | Boot | Stopped] -- C:\WINDOWS\system32\DRIVERS\mscank.sys -- (mscank)
DRV - [2010/11/22 18:14:36 | 000,110,032 | ---- | M] (Quick Heal Technologies (P) Ltd.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\catflt.sys -- (catflt)
DRV - [2010/11/22 18:14:36 | 000,029,392 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\EMLTDI.SYS -- (EMLSS)
DRV - [2010/11/22 18:14:36 | 000,027,464 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wsnf.sys -- (wsnfmp)
DRV - [2010/11/22 18:14:36 | 000,027,464 | ---- | M] (Quick Heal Technologies (P) Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wsnf.sys -- (wsnf)
DRV - [2010/10/26 11:18:20 | 000,046,672 | ---- | M] (Quick Heal Technologies (P) Ltd.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\ggc.sys -- (ggc)
DRV - [2008/05/09 02:53:22 | 000,238,080 | R--- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viahduaa.sys -- (VIAHdAudAddService)
DRV - [2008/02/14 19:42:00 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\monfilt.sys -- (monfilt)
DRV - [2007/11/17 21:13:56 | 000,022,016 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2007/11/17 21:13:46 | 000,054,016 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2004/08/12 13:30:00 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.smartwebs...ndex.php?from=3
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "www.google-feed.net"
FF - prefs.js..browser.search.defaulturl: "http://www.google.co...-8&oe=UTF-8&q="
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "about:home"
FF - prefs.js..keyword.URL: "http://www.smartwebs....php?form=5&q="

FF - HKLM\software\mozilla\Firefox\extensions\\[email protected]: C:\Program Files\MyWebSearch\bar\1.bin
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files\Mozilla Firefox 4.0 Beta 5\components [2010/09/15 05:58:14 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox 4.0 Beta 5\plugins

[2010/09/15 05:58:20 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Extensions
[2010/09/14 18:22:12 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\qmmde149.default\extensions
[2011/01/01 12:05:22 | 000,000,000 | ---D | M] (RuneScape Community Toolbar) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\qmmde149.default\extensions\{a8864317-e18b-4292-99d9-e6e65ab905d3}
[2010/09/15 05:58:20 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\qmmde149.default\extensions\nostmp
[2010/10/29 22:11:20 | 000,000,000 | ---D | M] (Search Results Optimizator) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\qmmde149.default\extensions\SearchHelper
[2011/02/09 16:50:24 | 000,002,138 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\qmmde149.default\searchplugins\GoogleFeed.xml
[2010/09/14 18:22:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/09/14 18:22:10 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2010/09/14 19:19:56 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
File not found (No name found) --
() (No name found) -- C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\QMMDE149.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\QMMDE149.DEFAULT\EXTENSIONS\{DDC359D1-844A-42A7-9AA1-88A850A938A8}.XPI
() (No name found) -- C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\QMMDE149.DEFAULT\EXTENSIONS\[email protected]
() (No name found) -- C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\QMMDE149.DEFAULT\EXTENSIONS\[email protected]
[2010/10/27 06:52:36 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010/10/27 06:52:42 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX 4.0 BETA 5\EXTENSIONS\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011/01/02 18:44:38 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX 4.0 BETA 5\EXTENSIONS\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011/03/05 21:25:58 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES\MOZILLA FIREFOX 4.0 BETA 5\EXTENSIONS\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/02/06 11:30:58 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2010/09/14 19:19:50 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll

O1 HOSTS File: ([2011/03/12 14:10:48 | 000,000,686 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\HOSTS
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [Quick Heal Core UI] C:\Program Files\Quick Heal\Quick Heal Internet Security\strtupap.exe (Quick Heal Technologies (P) Ltd.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/02/27 10:23:46 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.QH -- [ FAT32 ]
O32 - AutoRun File - [2010/12/13 21:56:10 | 000,001,498 | ---- | M] () - F:\Auto Mouse Click.lnk -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/03/12 14:10:05 | 000,578,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\user32.dll
[2011/03/12 14:09:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERUNT
[2011/03/12 14:00:48 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent
[2011/03/12 13:51:10 | 000,000,000 | ---D | C] -- C:\SDFix
[2011/03/12 13:49:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Malwarebytes
[2011/03/12 13:49:00 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2011/03/12 13:49:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/03/12 13:49:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/03/12 13:48:57 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/03/12 13:48:56 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/03/12 11:21:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\TechSmith
[2011/03/12 11:20:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\TechSmith
[2011/03/12 11:20:54 | 000,000,000 | ---D | C] -- C:\Program Files\TechSmith
[2011/03/11 21:00:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\RECBot
[2011/03/10 17:15:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\RAR Password Recovery
[2011/03/10 17:15:19 | 000,000,000 | ---D | C] -- C:\Program Files\Intelore
[2011/03/10 12:43:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Thief - Deadly Shadows
[2011/03/09 16:09:58 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2011/03/09 16:05:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Video Converter
[2011/03/09 16:05:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Video Converter
[2011/03/09 16:05:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Free Video Converter
[2011/03/09 16:05:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\MPEG4E
[2011/03/09 16:05:14 | 000,000,000 | ---D | C] -- C:\Program Files\Free Video Converter
[2011/03/09 16:03:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\VideoConverter
[2011/03/08 22:08:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Flux
[2011/03/08 17:55:42 | 000,000,000 | -HSD | C] -- C:\FOUND.002
[2011/03/08 11:29:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Digiarty
[2011/03/08 11:29:25 | 000,000,000 | ---D | C] -- C:\Program Files\Digiarty
[2011/03/08 10:20:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Prototype
[2011/03/08 06:28:22 | 000,000,000 | -HSD | C] -- C:\FOUND.001
[2011/03/07 15:03:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\WinRAR
[2011/03/07 09:12:09 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adpu160m.sys
[2011/03/07 09:12:08 | 000,046,112 | ---- | C] (Adaptec, Inc ) -- C:\WINDOWS\System32\dllcache\adptsf50.sys
[2011/03/07 09:12:07 | 000,747,392 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8830.sys
[2011/03/07 09:12:07 | 000,010,880 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\admjoy.sys
[2011/03/07 09:12:06 | 000,584,448 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8810.sys
[2011/03/07 09:12:06 | 000,553,984 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8820.sys
[2011/03/07 09:12:06 | 000,020,160 | ---- | C] (ADMtek Incorporated) -- C:\WINDOWS\System32\dllcache\adm8511.sys
[2011/03/07 09:12:05 | 000,061,440 | ---- | C] (Color Flatbed Scanner) -- C:\WINDOWS\System32\dllcache\acerscad.dll
[2011/03/07 09:12:05 | 000,007,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adicvls.sys
[2011/03/07 09:12:04 | 000,297,728 | ---- | C] (Silicon Integrated Systems Corp.) -- C:\WINDOWS\System32\dllcache\ac97sis.sys
[2011/03/07 09:12:04 | 000,084,480 | ---- | C] (VIA Technologies, Inc.) -- C:\WINDOWS\System32\dllcache\ac97via.sys
[2011/03/07 09:12:03 | 000,231,552 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\ac97ali.sys
[2011/03/07 09:12:03 | 000,096,256 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\ac97intc.sys
[2011/03/07 09:12:02 | 000,462,848 | ---- | C] (Aureal Inc.) -- C:\WINDOWS\System32\dllcache\a3dapi.dll
[2011/03/07 09:12:02 | 000,098,304 | ---- | C] (Aureal Semiconductor) -- C:\WINDOWS\System32\dllcache\a3d.dll
[2011/03/07 09:12:02 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\8514a.dll
[2011/03/07 09:12:02 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\abp480n5.sys
[2011/03/07 09:12:01 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\61883.sys
[2011/03/07 09:12:01 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\4mmdat.sys
[2011/03/07 09:12:00 | 000,762,780 | ---- | C] (3Com, Inc.) -- C:\WINDOWS\System32\dllcache\3cwmcru.sys
[2011/03/07 09:12:00 | 000,689,216 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvs.dll
[2011/03/07 09:12:00 | 000,148,352 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvsm.sys
[2011/03/07 09:12:00 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\1394vdbg.sys
[2011/03/07 09:11:59 | 000,053,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\1394bus.sys
[2011/03/07 09:11:49 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\s3legacy.dll
[2011/03/07 09:11:46 | 002,188,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2011/03/06 15:59:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia
[2011/03/06 15:59:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe
[2011/03/06 07:02:10 | 000,000,000 | -HSD | C] -- C:\FOUND.000
[2011/03/05 21:46:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\RSBuddy
[2011/03/05 21:32:39 | 000,000,000 | ---D | C] -- C:\rsroyal_cache
[2011/03/05 21:26:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/03/05 21:25:55 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2011/03/05 21:25:55 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2011/03/05 21:25:54 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2011/03/05 21:24:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2011/03/05 17:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2011/03/04 22:32:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\IObit
[2011/03/04 22:32:31 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2011/03/04 14:44:54 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2011/03/04 14:43:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\GameSpy
[2011/03/04 14:43:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\ApplicationHistory
[2011/03/04 14:43:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\GameSpy
[2011/03/04 14:42:43 | 000,000,000 | ---D | C] -- C:\Program Files\GameSpy
[2011/03/04 14:41:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTEMP
[2011/03/04 14:39:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Profiles
[2011/03/04 14:39:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Shaders
[2011/03/02 08:25:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Amnesia
[2011/03/02 08:23:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Amnesia - The Dark Descent
[2011/02/27 20:52:03 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Application Data\SecuROM
[2011/02/27 15:56:10 | 000,000,000 | ---D | C] -- C:\Program Files\Electronic Arts
[2011/02/27 15:56:08 | 000,000,000 | ---D | C] -- C:\ProgramData
[2011/02/27 15:55:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Downloaded Installations
[2011/02/27 15:55:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Electronic Arts
[2011/02/27 15:45:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Criterion Games
[2011/02/27 10:08:39 | 000,262,144 | ---- | C] (Creative Labs) -- C:\WINDOWS\System32\wrap_oal.dll
[2011/02/27 10:08:39 | 000,086,016 | ---- | C] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\System32\OpenAL32.dll
[2011/02/26 17:54:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\CityVilleBot
[2011/02/26 17:53:55 | 000,000,000 | ---D | C] -- C:\Program Files\CityVilleBot
[2011/02/26 16:17:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\SKIDROW
[2011/02/25 22:09:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\My Games
[2011/02/25 21:48:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DAEMON Tools Lite
[2011/02/25 21:48:01 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2011/02/25 21:47:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2011/02/25 21:47:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\DAEMON Tools Lite
[2011/02/25 21:43:45 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip
[2011/02/25 21:43:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\7-Zip
[2011/02/23 16:18:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\CAPCOM
[2011/02/23 16:10:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\CAPCOM
[2011/02/23 16:00:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Games for Windows - LIVE
[2011/02/19 19:30:47 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstdecod.dll
[2011/02/19 19:30:47 | 000,018,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstcodec.sys
[2011/02/19 19:30:47 | 000,014,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\streamip.sys
[2011/02/19 19:30:47 | 000,010,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\slip.sys
[2011/02/19 19:30:46 | 001,230,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msvidctl.dll
[2011/02/19 19:30:46 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kstvtune.ax
[2011/02/19 19:30:46 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kstvtune.ax
[2011/02/19 19:30:46 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kswdmcap.ax
[2011/02/19 19:30:46 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kswdmcap.ax
[2011/02/19 19:30:46 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nabtsfec.sys
[2011/02/19 19:30:46 | 000,052,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdv.sys
[2011/02/19 19:30:46 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksxbar.ax
[2011/02/19 19:30:46 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksxbar.ax
[2011/02/19 19:30:46 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bdaplgin.ax
[2011/02/19 19:30:46 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bdaplgin.ax
[2011/02/19 19:30:46 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ccdecode.sys
[2011/02/19 19:30:46 | 000,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mpe.sys
[2011/02/19 19:30:46 | 000,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpe.sys
[2011/02/19 19:30:46 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsink.ax
[2011/02/19 19:30:46 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ipsink.ax
[2011/02/19 19:30:46 | 000,011,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bdasup.sys
[2011/02/19 19:30:46 | 000,011,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bdasup.sys
[2011/02/19 19:30:46 | 000,010,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndisip.sys
[2011/02/19 19:30:45 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstee.sys
[2011/02/19 19:30:44 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksolay.ax
[2011/02/19 19:30:43 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mswebdvd.dll
[2011/02/19 19:30:41 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmime.dll
[2011/02/19 19:30:41 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmusic.dll
[2011/02/19 19:30:41 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmsynth.dll
[2011/02/19 19:30:41 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmstyle.dll
[2011/02/19 19:30:41 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmcompos.dll
[2011/02/19 19:30:41 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmloader.dll
[2011/02/19 19:30:40 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dinput8.dll
[2011/02/19 19:30:40 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmscript.dll
[2011/02/19 19:30:40 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmband.dll
[2011/02/19 19:30:40 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dswave.dll
[2011/02/19 19:30:39 | 001,201,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3d8.dll
[2011/02/19 19:30:39 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxdiag.exe
[2011/02/19 19:30:39 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsdmoprp.dll
[2011/02/19 19:30:39 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsdmo.dll
[2011/02/19 19:30:39 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvvox.dll
[2011/02/19 19:30:39 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvsetup.exe
[2011/02/19 19:30:39 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdllreg.exe
[2011/02/19 19:30:38 | 000,723,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnet.dll
[2011/02/19 19:30:38 | 000,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvoice.dll
[2011/02/19 19:30:38 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvacm.dll
[2011/02/19 19:30:38 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnsvr.exe
[2011/02/19 19:30:38 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnlobby.dll
[2011/02/19 19:30:37 | 001,189,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dx8vb.dll
[2011/02/19 19:30:37 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\joy.cpl
[2011/02/19 19:30:37 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnhupnp.dll
[2011/02/19 19:30:37 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnhpast.dll
[2011/02/19 19:30:37 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pid.dll
[2011/02/19 19:30:37 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3d8thk.dll
[2011/02/19 19:30:37 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnaddr.dll
[2011/02/19 19:30:36 | 001,294,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsound3d.dll
[2011/02/19 19:30:36 | 000,602,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dx7vb.dll
[2011/02/19 19:30:36 | 000,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsound.dll
[2011/02/19 19:30:36 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpwsockx.dll
[2011/02/19 19:30:35 | 000,648,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dinput.dll
[2011/02/19 19:30:35 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dplayx.dll
[2011/02/19 19:30:35 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpmodemx.dll
[2011/02/19 19:30:35 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dplaysvr.exe
[2011/02/19 19:30:34 | 000,797,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3dim700.dll
[2011/02/19 19:30:34 | 000,292,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ddraw.dll
[2011/02/19 19:30:34 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ddrawex.dll
[2011/02/16 15:44:53 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_7.dll
[2011/02/16 15:44:53 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_5.dll
[2011/02/16 15:44:52 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_43.dll
[2011/02/16 15:44:52 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_7.dll
[2011/02/16 15:44:51 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dcsx_43.dll
[2011/02/16 15:44:51 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx11_43.dll
[2011/02/16 15:44:50 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_43.dll
[2011/02/16 15:44:47 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_43.dll
[2011/02/16 15:20:11 | 000,000,000 | ---D | C] -- C:\Program Files\Left 4 Dead
[2011/02/15 14:28:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011/02/15 14:22:01 | 000,000,000 | ---D | C] -- C:\Program Files\SystemRequirementsLab
[2011/02/15 14:21:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\SystemRequirementsLab
[2011/02/15 13:32:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Steam
[2011/02/15 13:10:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Valve
[2011/02/13 20:55:02 | 000,000,000 | ---D | C] -- C:\Porject 7 v2.2
[2011/02/12 20:52:10 | 000,000,000 | ---D | C] -- C:\Program Files\Valve
[2011/02/11 16:15:50 | 000,000,000 | ---D | C] -- C:\ValveHacks CSS
[2011/02/11 12:26:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Counter-Strike Source 2010
[2007/04/04 18:48:34 | 001,673,576 | ---- | C] (Microsoft Corporation) -- C:\Program Files\dsetup32.dll
[2007/04/04 18:48:34 | 000,503,144 | ---- | C] (Microsoft Corporation) -- C:\Program Files\DXSETUP.exe
[2007/04/04 18:48:32 | 000,077,160 | ---- | C] (Microsoft Corporation) -- C:\Program Files\DSETUP.dll
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/03/12 15:29:16 | 000,000,494 | ---- | M] () -- C:\WINDOWS\tasks\Quick Heal AntiMalware Scan.job
[2011/03/12 14:17:26 | 000,198,612 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2011/03/12 14:12:42 | 000,000,266 | ---- | M] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2011/03/12 14:12:40 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/03/12 14:10:06 | 000,578,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\user32.dll
[2011/03/12 13:40:50 | 000,000,203 | -HS- | M] () -- C:\boot.ini
[2011/03/12 13:33:28 | 000,000,436 | ---- | M] () -- C:\WINDOWS\tasks\At1.job
[2011/03/11 21:01:30 | 000,000,109 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\RECBot_Accounts.ini
[2011/03/11 19:30:02 | 000,000,358 | ---- | M] () -- C:\WINDOWS\tasks\StartupSlowFix Schedule.job
[2011/03/11 14:55:54 | 000,000,116 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\RSBot_Accounts.ini
[2011/03/11 13:33:12 | 000,000,117 | ---- | M] () -- C:\Documents and Settings\Administrator\jagex_runescape_preferences2.dat
[2011/03/11 13:32:50 | 000,000,046 | ---- | M] () -- C:\Documents and Settings\Administrator\jagex_runescape_preferences.dat
[2011/03/11 13:32:18 | 000,000,023 | ---- | M] () -- C:\Documents and Settings\Administrator\jagexappletviewer.preferences
[2011/03/11 11:14:48 | 000,055,808 | ---- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/03/11 11:08:10 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011/03/10 19:08:54 | 000,000,958 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-57989841-1004336348-839522115-500Core.job
[2011/03/09 16:13:12 | 000,504,616 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/03/09 16:13:12 | 000,088,336 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/03/09 16:05:16 | 000,061,208 | ---- | M] () -- C:\WINDOWS\System32\MPEG4E-uninstall.exe
[2011/03/08 11:29:30 | 000,000,985 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\WinX Free PSP Video Converter.lnk
[2011/03/08 10:19:04 | 000,000,613 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Prototype by TPTB.lnk
[2011/03/08 10:07:08 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011/03/05 21:57:34 | 000,000,070 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\RSBuddy_HBF.ini
[2011/03/05 21:56:58 | 000,000,003 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\RSBuddy Login.ini
[2011/03/05 21:36:42 | 000,000,754 | ---- | M] () -- C:\WINDOWS\WORDPAD.INI
[2011/03/05 17:20:42 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2011/03/04 22:38:08 | 000,270,192 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/03/04 18:44:50 | 000,006,305 | ---- | M] () -- C:\WINDOWS\regact.dat
[2011/03/04 17:06:46 | 000,005,632 | ---- | M] () -- C:\WINDOWS\System32\BReWErS.dll
[2011/03/04 14:44:56 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2011/03/04 14:43:32 | 000,000,136 | ---- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\fusioncache.dat
[2011/03/04 14:43:08 | 000,001,630 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\GameSpy Comrade.lnk
[2011/03/03 17:04:58 | 003,850,661 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Linkin Park---Simpsons Remix One Doh Closer.mp3
[2011/03/03 06:04:42 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/03/02 18:22:12 | 000,002,248 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Google Chrome.lnk
[2011/03/02 18:22:12 | 000,002,226 | ---- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2011/02/27 16:08:08 | 000,110,592 | ---- | M] (Apple Inc.) -- C:\WINDOWS\System32\dns-sd.exe
[2011/02/27 16:05:00 | 000,061,952 | ---- | M] (Windows ® Server 2003 DDK provider) -- C:\WINDOWS\System32\HdAShCut.exe
[2011/02/27 16:03:58 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\spdwnwxp.exe
[2011/02/27 15:59:46 | 001,658,880 | ---- | M] () -- C:\WINDOWS\System32\nwiz.exe
[2011/02/27 15:58:42 | 001,347,584 | ---- | M] () -- C:\WINDOWS\System32\nvdspsch.exe
[2011/02/27 15:58:42 | 000,143,360 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcolor.exe
[2011/02/27 15:58:40 | 000,450,560 | ---- | M] () -- C:\WINDOWS\System32\nvappbar.exe
[2011/02/27 15:58:40 | 000,438,272 | ---- | M] () -- C:\WINDOWS\System32\keystone.exe
[2011/02/27 15:57:40 | 000,454,656 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvudisp.exe
[2011/02/27 15:57:38 | 000,356,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvunrm.exe
[2011/02/27 15:56:32 | 000,356,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvusmb.exe
[2011/02/27 15:55:58 | 000,001,892 | ---- | M] () -- C:\WINDOWS\System32\ealregsnapshot1.reg
[2011/02/27 15:55:24 | 000,454,656 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\NVUNINST.EXE
[2011/02/27 15:54:16 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\comsdupd.exe
[2011/02/27 15:40:08 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\migpwd.exe
[2011/02/27 15:28:56 | 000,974,848 | ---- | M] (Nero AG) -- C:\WINDOWS\UNRecode.exe
[2011/02/27 15:28:56 | 000,974,848 | ---- | M] (Nero AG) -- C:\WINDOWS\UNNeroShowTime.exe
[2011/02/27 15:28:56 | 000,974,848 | ---- | M] (Nero AG) -- C:\WINDOWS\UNNeroMediaHome.exe
[2011/02/27 15:27:56 | 000,974,848 | ---- | M] (Nero AG) -- C:\WINDOWS\UNNeroVision.exe
[2011/02/27 15:27:52 | 000,283,648 | ---- | M] (Stirling Technologies, Inc.) -- C:\WINDOWS\uninst.exe
[2011/02/27 11:27:02 | 000,000,041 | ---- | M] () -- C:\WINDOWS\wininit.ini
[2011/02/27 11:02:24 | 000,798,720 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcplui.exe
[2011/02/27 10:23:46 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.QH
[2011/02/27 10:14:38 | 000,262,144 | ---- | M] (Creative Labs) -- C:\WINDOWS\System32\wrap_oal.dll
[2011/02/27 10:14:38 | 000,086,016 | ---- | M] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\System32\OpenAL32.dll
[2011/02/24 12:45:42 | 000,082,988 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\passport3.jpg
[2011/02/24 12:39:46 | 000,029,837 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\passport2.jpg
[2011/02/24 12:39:24 | 000,143,458 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\passport1.jpg
[2011/02/24 10:24:46 | 000,150,274 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\passport.jpg
[2011/02/18 22:02:24 | 000,000,758 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Left 4 Dead.lnk
[2011/02/17 18:36:36 | 000,001,195 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\left 4 dead 2.lnk
[2011/02/16 15:27:30 | 000,000,094 | ---- | M] () -- C:\Documents and Settings\Administrator\default.pls
[2011/02/15 08:39:30 | 000,002,491 | ---- | M] () -- C:\Documents and Settings\Administrator\.11.024000987.024000987.axisweb.3.2.25
[2011/02/11 12:26:28 | 000,001,017 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\Counter Strike Source 2010.lnk
[2011/02/10 18:03:48 | 000,001,633 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader 9.lnk
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/03/11 21:01:28 | 000,000,109 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\RECBot_Accounts.ini
[2011/03/09 16:05:14 | 000,061,208 | ---- | C] () -- C:\WINDOWS\System32\MPEG4E-uninstall.exe
[2011/03/08 11:29:29 | 000,000,985 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\WinX Free PSP Video Converter.lnk
[2011/03/08 10:19:02 | 000,000,613 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Prototype by TPTB.lnk
[2011/03/05 21:57:12 | 000,000,070 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\RSBuddy_HBF.ini
[2011/03/05 21:56:56 | 000,000,003 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\RSBuddy Login.ini
[2011/03/05 21:36:40 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2011/03/05 17:33:02 | 000,000,436 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
[2011/03/05 17:20:41 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
[2011/03/05 17:20:41 | 000,000,502 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Opera.lnk
[2011/03/04 22:33:18 | 000,000,266 | ---- | C] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2011/03/04 17:04:33 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\BReWErS.dll
[2011/03/04 14:43:31 | 000,000,136 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\fusioncache.dat
[2011/03/04 14:43:06 | 000,001,630 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\GameSpy Comrade.lnk
[2011/02/27 15:55:57 | 000,001,892 | ---- | C] () -- C:\WINDOWS\System32\ealregsnapshot1.reg
[2011/02/27 10:23:34 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.QH
[2011/02/27 10:09:23 | 000,000,041 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2011/02/24 12:45:41 | 000,082,988 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\passport3.jpg
[2011/02/24 12:39:44 | 000,029,837 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\passport2.jpg
[2011/02/24 12:39:23 | 000,143,458 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\passport1.jpg
[2011/02/24 10:24:45 | 000,150,274 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\passport.jpg
[2011/02/19 19:30:47 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\psisrndr.ax
[2011/02/19 19:30:47 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisrndr.ax
[2011/02/19 19:30:46 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2011/02/19 19:30:46 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisdecd.dll
[2011/02/19 19:30:46 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\msdvbnp.ax
[2011/02/19 19:30:46 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdvbnp.ax
[2011/02/19 19:30:44 | 001,798,144 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedit.dll
[2011/02/19 19:30:44 | 000,733,184 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedwipes.dll
[2011/02/19 19:30:43 | 001,962,496 | ---- | C] () -- C:\WINDOWS\System32\dllcache\quartz.dll
[2011/02/19 19:30:43 | 000,470,528 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qdvd.dll
[2011/02/19 19:30:43 | 000,316,928 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qdv.dll
[2011/02/19 19:30:43 | 000,257,024 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qcap.dll
[2011/02/19 19:30:43 | 000,136,192 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mpg2splt.ax
[2011/02/19 19:30:43 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdmo.dll
[2011/02/19 19:30:42 | 000,132,608 | ---- | C] () -- C:\WINDOWS\System32\dllcache\devenum.dll
[2011/02/19 19:30:42 | 000,064,512 | ---- | C] () -- C:\WINDOWS\System32\dllcache\amstream.dll
[2011/02/19 19:30:42 | 000,034,304 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mciqtz32.dll
[2011/02/18 18:21:23 | 000,000,358 | ---- | C] () -- C:\WINDOWS\tasks\StartupSlowFix Schedule.job
[2011/02/18 18:18:35 | 003,850,661 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Linkin Park---Simpsons Remix One Doh Closer.mp3
[2011/02/17 18:35:51 | 000,001,195 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\left 4 dead 2.lnk
[2011/02/17 17:36:28 | 000,000,758 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Left 4 Dead.lnk
[2011/02/11 16:13:49 | 000,001,283 | ---- | C] () -- C:\Settings.ini
[2011/02/11 12:26:26 | 000,001,017 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\Counter Strike Source 2010.lnk
[2011/01/22 21:13:29 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/12/31 21:38:23 | 000,000,050 | ---- | C] () -- C:\WINDOWS\MegaManager.INI
[2010/12/25 12:55:01 | 000,000,238 | ---- | C] () -- C:\WINDOWS\mafosav.INI
[2010/12/23 22:00:46 | 000,000,110 | ---- | C] () -- C:\WINDOWS\GMouse.ini
[2010/12/22 19:29:37 | 000,006,305 | ---- | C] () -- C:\WINDOWS\regact.dat
[2010/12/20 19:30:48 | 000,000,151 | ---- | C] () -- C:\WINDOWS\PhotoSnapViewer.INI
[2010/11/28 18:28:02 | 000,446,592 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/11/26 20:50:44 | 000,062,855 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\SQLite3.dll
[2010/10/27 16:14:17 | 000,000,020 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\ArbiAuth.ini
[2010/10/26 19:39:08 | 000,000,116 | ---- | C] () -- C:\Documents and Settings\Administrator\Application Data\RSBot_Accounts.ini
[2010/10/13 17:47:48 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\mf.dll
[2010/09/24 03:53:14 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010/09/15 07:00:50 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2010/09/15 07:00:49 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2010/09/15 07:00:48 | 000,790,528 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2010/09/15 07:00:48 | 000,134,144 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010/09/15 07:00:47 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2010/09/14 18:36:48 | 000,055,808 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/09/14 18:22:11 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/09/14 18:10:07 | 000,003,636 | R--- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
[2010/09/14 18:09:35 | 000,025,053 | ---- | C] () -- C:\WINDOWS\Ascd_log.ini
[2010/09/14 18:09:21 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2010/09/14 18:09:09 | 000,024,892 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2010/09/14 18:09:04 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2010/09/14 18:08:24 | 000,000,000 | ---- | C] () -- C:\WINDOWS\sensor.INI
[2009/04/22 00:19:06 | 000,172,173 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2009/01/16 19:26:46 | 001,015,808 | ---- | C] () -- C:\WINDOWS\System32\MPEG4Evfw.dll
[2009/01/01 01:50:45 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009/01/01 01:45:54 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/01/01 01:41:07 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009/01/01 01:38:02 | 000,270,192 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2008/08/02 09:50:00 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2008/08/02 09:50:00 | 001,658,880 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2008/08/02 09:50:00 | 001,499,136 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2008/08/02 09:50:00 | 001,347,584 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2008/08/02 09:50:00 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2008/08/02 09:50:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2008/08/02 09:50:00 | 000,450,560 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2008/08/02 09:50:00 | 000,438,272 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2008/08/02 09:50:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2008/05/04 17:39:34 | 000,002,560 | ---- | C] () -- C:\WINDOWS\System32\ViaClassCoInstaller.dll
[2007/04/04 19:04:38 | 000,702,212 | ---- | C] () -- C:\Program Files\APR2007_d3dx10_33_x64.cab
[2007/04/04 19:04:38 | 000,100,417 | ---- | C] () -- C:\Program Files\APR2007_xinput_x64.cab
[2007/04/04 19:04:38 | 000,056,902 | ---- | C] () -- C:\Program Files\APR2007_xinput_x86.cab
[2007/04/04 19:04:36 | 001,610,958 | ---- | C] () -- C:\Program Files\APR2007_d3dx9_33_x64.cab
[2007/04/04 19:04:36 | 000,699,465 | ---- | C] () -- C:\Program Files\APR2007_d3dx10_33_x86.cab
[2007/04/04 19:04:34 | 001,609,639 | ---- | C] () -- C:\Program Files\APR2007_d3dx9_33_x86.cab
[2007/04/04 19:04:34 | 000,199,366 | ---- | C] () -- C:\Program Files\APR2007_XACT_x64.cab
[2007/04/04 19:04:34 | 000,154,825 | ---- | C] () -- C:\Program Files\APR2007_XACT_x86.cab
[2007/04/04 19:04:32 | 000,045,305 | ---- | C] () -- C:\Program Files\dxdllreg_x86.cab
[2007/04/04 18:48:34 | 000,085,881 | ---- | C] () -- C:\Program Files\dxupdate.cab
[2007/04/04 18:48:32 | 001,575,336 | ---- | C] () -- C:\Program Files\DEC2006_d3dx9_32_x86.cab
[2007/04/04 18:48:32 | 001,572,114 | ---- | C] () -- C:\Program Files\DEC2006_d3dx9_32_x64.cab
[2007/04/04 18:48:32 | 001,413,862 | ---- | C] () -- C:\Program Files\OCT2006_d3dx9_31_x64.cab
[2007/04/04 18:48:32 | 001,363,684 | ---- | C] () -- C:\Program Files\Feb2006_d3dx9_29_x64.cab
[2007/04/04 18:48:32 | 001,336,890 | ---- | C] () -- C:\Program Files\Jun2005_d3dx9_26_x64.cab
[2007/04/04 18:48:32 | 001,248,387 | ---- | C] () -- C:\Program Files\Feb2005_d3dx9_24_x64.cab
[2007/04/04 18:48:32 | 001,128,177 | ---- | C] () -- C:\Program Files\OCT2006_d3dx9_31_x86.cab
[2007/04/04 18:48:32 | 001,085,608 | ---- | C] () -- C:\Program Files\Feb2006_d3dx9_29_x86.cab
[2007/04/04 18:48:32 | 001,080,344 | ---- | C] () -- C:\Program Files\Dec2005_d3dx9_28_x86.cab
[2007/04/04 18:48:32 | 001,065,813 | ---- | C] () -- C:\Program Files\Jun2005_d3dx9_26_x86.cab
[2007/04/04 18:48:32 | 001,014,113 | ---- | C] () -- C:\Program Files\Feb2005_d3dx9_24_x86.cab
[2007/04/04 18:48:32 | 000,213,767 | ---- | C] () -- C:\Program Files\DEC2006_d3dx10_00_x64.cab
[2007/04/04 18:48:32 | 000,198,275 | ---- | C] () -- C:\Program Files\FEB2007_XACT_x64.cab
[2007/04/04 18:48:32 | 000,193,435 | ---- | C] () -- C:\Program Files\DEC2006_XACT_x64.cab
[2007/04/04 18:48:32 | 000,192,680 | ---- | C] () -- C:\Program Files\DEC2006_d3dx10_00_x86.cab
[2007/04/04 18:48:32 | 000,183,321 | ---- | C] () -- C:\Program Files\OCT2006_XACT_x64.cab
[2007/04/04 18:48:32 | 000,181,745 | ---- | C] () -- C:\Program Files\JUN2006_XACT_x64.cab
[2007/04/04 18:48:32 | 000,179,247 | ---- | C] () -- C:\Program Files\Feb2006_XACT_x64.cab
[2007/04/04 18:48:32 | 000,151,583 | ---- | C] () -- C:\Program Files\FEB2007_XACT_x86.cab
[2007/04/04 18:48:32 | 000,146,559 | ---- | C] () -- C:\Program Files\DEC2006_XACT_x86.cab
[2007/04/04 18:48:32 | 000,138,977 | ---- | C] () -- C:\Program Files\OCT2006_XACT_x86.cab
[2007/04/04 18:48:32 | 000,134,631 | ---- | C] () -- C:\Program Files\JUN2006_XACT_x86.cab
[2007/04/04 18:48:32 | 000,133,297 | ---- | C] () -- C:\Program Files\Feb2006_XACT_x86.cab
[2007/04/04 18:48:32 | 000,086,925 | ---- | C] () -- C:\Program Files\Oct2005_xinput_x64.cab
[2007/04/04 18:48:32 | 000,046,247 | ---- | C] () -- C:\Program Files\Oct2005_xinput_x86.cab
[2007/04/04 18:48:30 | 013,265,040 | ---- | C] () -- C:\Program Files\dxnt.cab
[2007/04/04 18:48:30 | 004,163,518 | ---- | C] () -- C:\Program Files\Apr2006_MDX1_x86_Archive.cab
[2007/04/04 18:48:30 | 001,398,718 | ---- | C] () -- C:\Program Files\Apr2006_d3dx9_30_x64.cab
[2007/04/04 18:48:30 | 001,358,864 | ---- | C] () -- C:\Program Files\Dec2005_d3dx9_28_x64.cab
[2007/04/04 18:48:30 | 001,351,430 | ---- | C] () -- C:\Program Files\Aug2005_d3dx9_27_x64.cab
[2007/04/04 18:48:30 | 001,348,242 | ---- | C] () -- C:\Program Files\Apr2005_d3dx9_25_x64.cab
[2007/04/04 18:48:30 | 001,116,109 | ---- | C] () -- C:\Program Files\Apr2006_d3dx9_30_x86.cab
[2007/04/04 18:48:30 | 001,079,850 | ---- | C] () -- C:\Program Files\Apr2005_d3dx9_25_x86.cab
[2007/04/04 18:48:30 | 001,078,532 | ---- | C] () -- C:\Program Files\Aug2005_d3dx9_27_x86.cab
[2007/04/04 18:48:30 | 000,917,318 | ---- | C] () -- C:\Program Files\Apr2006_MDX1_x86.cab
[2007/04/04 18:48:30 | 000,183,863 | ---- | C] () -- C:\Program Files\AUG2006_XACT_x64.cab
[2007/04/04 18:48:30 | 000,180,021 | ---- | C] () -- C:\Program Files\Apr2006_XACT_x64.cab
[2007/04/04 18:48:30 | 000,138,195 | ---- | C] () -- C:\Program Files\AUG2006_XACT_x86.cab
[2007/04/04 18:48:30 | 000,133,991 | ---- | C] () -- C:\Program Files\Apr2006_XACT_x86.cab
[2007/04/04 18:48:30 | 000,088,102 | ---- | C] () -- C:\Program Files\AUG2006_xinput_x64.cab
[2007/04/04 18:48:30 | 000,087,989 | ---- | C] () -- C:\Program Files\Apr2006_xinput_x64.cab
[2007/04/04 18:48:30 | 000,047,018 | ---- | C] () -- C:\Program Files\AUG2006_xinput_x86.cab
[2007/04/04 18:48:30 | 000,046,898 | ---- | C] () -- C:\Program Files\Apr2006_xinput_x86.cab
[2007/04/04 18:48:28 | 001,156,363 | ---- | C] () -- C:\Program Files\BDANT.cab
[2007/04/04 18:48:28 | 000,976,020 | ---- | C] () -- C:\Program Files\BDAXP.cab
[2004/08/07 00:17:40 | 000,504,616 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/07 00:17:40 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/08/07 00:17:39 | 000,088,336 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/07 00:17:39 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/08/07 00:17:35 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2004/08/07 00:17:34 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004/08/07 00:17:32 | 001,659,648 | ---- | C] () -- C:\WINDOWS\System32\uicjarve.dat
[2004/08/07 00:17:32 | 000,633,600 | ---- | C] () -- C:\WINDOWS\System32\zkfksueq.dat
[2004/08/07 00:17:32 | 000,152,320 | ---- | C] () -- C:\WINDOWS\System32\rbgdceca.dat
[2004/08/07 00:17:32 | 000,152,320 | ---- | C] () -- C:\WINDOWS\System32\okxuyhof.dat
[2004/08/07 00:17:32 | 000,050,432 | ---- | C] () -- C:\WINDOWS\System32\tkhifcbj.dat
[2004/08/07 00:17:32 | 000,047,360 | ---- | C] () -- C:\WINDOWS\System32\eoupeubd.dat
[2004/08/07 00:17:32 | 000,039,680 | ---- | C] () -- C:\WINDOWS\System32\kbqcbdar.dat
[2004/08/07 00:17:32 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\jpmyyuaz.dat
[2004/08/07 00:17:30 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/08/07 00:17:08 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/08/07 00:17:07 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/08/07 00:16:26 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/08/04 05:07:22 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2004/08/02 18:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat

< End of report >
  • 0

#3
Silent Hunter

Silent Hunter

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
BUMP
  • 0

#4
Silent Hunter

Silent Hunter

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
Bump
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP