Jump to content

Internet Security Malware - 2nd Time


Recommended Posts

Infected with this horrible malware for the second time this year. Was able to successfully remove it with your help the first time.

I was able to run Malwarebytes and some files were removed, but after the reboot I was no longer able to run it. Tried downloading renamed .exe file but couldn't save it to the Malwarebytes directory to run it. System restore not working.

Here is my HijackThis logfile:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 5:17:34 PM, on 6/14/2010

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.17055)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Avira\AntiVir Desktop\sched.exe

C:\Program Files\Avira\AntiVir Desktop\avguard.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe

C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

C:\Program Files\Avira\AntiVir Desktop\avshadow.exe

C:\WINDOWS\system32\java.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\RTHDCPL.EXE

C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe

C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://members.suscom-maine.net/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:1720

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: (no name) - {e28e0583-70fc-42a9-9767-93aa8ad06cf5} - (no file)

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [DRPU Pc Data manager] "C:\Program Files\DRPU PC Data Manager\apcdm.exe" "hd"

O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN

O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe

O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe

O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

O4 - HKCU\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe

O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User '?')

O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" (User '?')

O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe (User '?')

O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe

O8 - Extra context menu item: + Offline &Explorer: Download the link - file://C:\Documents and Settings\Chris\Desktop\Misc\Programs\Offline Explorer Pro\Offline Explorer Enterprise\Add_UrlO.htm

O8 - Extra context menu item: + Offline E&xplorer: Download the current page - file://C:\Documents and Settings\Chris\Desktop\Misc\Programs\Offline Explorer Pro\Offline Explorer Enterprise\Add_AllO.htm

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O15 - Trusted Zone: *.llbean.com

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1237904923229

O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -

O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} (JuniperSetupControlXP Class) - https://portal.llbean.com/dana-cached/setup...perSetupSP1.cab

O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://juniper.net/dana-cached/sc/JuniperSetupClient.cab

O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: Linksys Updater (LinksysUpdater) - Unknown owner - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe

O23 - Service: Pure Networks Platform Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--

End of file - 8243 bytes

Link to post
Share on other sites

Hello ,

And :) My name is Elise and I'll be glad to help you with your computer problems.

I will be working on your malware issues, this may or may not solve other issues you may have with your machine.

Please note that whatever repairs we make, are for fixing your computer problems only and by no means should be used on another computer.

  • The cleaning process is not instant. Logs can take some time to research, so please be patient with me. I know that you need your computer working as quickly as possible, and I will work hard to help see that happen.
  • Please reply using the Add/Reply button in the lower right hand corner of your screen. Do not start a new topic.
  • The logs that you post should be pasted directly into the reply. Only attach them if requested or if they do not fit into the post.
  • Unfortunately, if I do not hear back from you within 5 days, I will be forced to close your topic. If you still need help after I have closed your topic, send me or a moderator a personal message with the address of the thread or feel free to create a new one.

You may want to keep the link to this topic in your favorites. Alternatively, you can click the button at the top bar of this topic and Track this Topic, where you can choose email notifications.

-----------------------------------------------------------

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

If you have already posted a log, please do so again, as your situation may have changed.

Use the 'Add Reply' and add the new log to this thread.

We need to see some information about what is happening in your machine. Please perform the following scan:

  • Please download OTL from one of the following mirrors:

    [*]Save it to your desktop.

    [*]Double click on the otlDesktopIcon.png icon on your desktop.

    [*]Click the "Scan All Users" checkbox.

    [*]Push the runscanbutton.png button.

    [*]Two reports will open, copy and paste them in a reply here:

    • OTListIt.txt <-- Will be opened
    • Extra.txt <-- Will be minimized

Please download GMER from one of the following locations and save it to your desktop:

  • Main Mirror
    This version will download a randomly named file (Recommended)
  • Zipped Mirror
    This version will download a zip file you will need to extract first. If you use this mirror, please extract the zip file to your desktop.

  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.
  • Double-click on the randomly named GMER file (i.e. n7gmo46c.exe) and allow the gmer.sys driver to load if asked.
  • Note: If you downloaded the zipped version, extract the file to its own folder such as C:\gmer and then double-click on gmer.exe.
    gmer_zip.gif
  • GMER will open to the Rootkit/Malware tab and perform an automatic quick scan when first run. (do not use the computer while the scan is in progress)
  • If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
  • Now click the Scan button. If you see a rootkit warning window, click OK.
  • When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
  • Click the Copy button and paste the results into your next reply.
  • Exit GMER and re-enable all active protection when done.

-- If you encounter any problems, try running GMER in Safe Mode.

-------------------------------------------------------------

In the meantime please, do NOT install any new programs or update anything unless told to do so while we are fixing your problem

If you still need help, please include the following in your next reply

  • A detailed description of your problems
  • A new OTL log (don't forget extra.txt)
  • GMER log

Link to post
Share on other sites

After I posted the original message and log lastnight, I was able to run Spybot, which got rid of some problems. I haven't had the Internet Security pop-ups since then, but I still can't use Microsoft Outlook, my speakers aren't working, I can't drag files or choose where to save them, system restore and Malwarebytes don't work and while there is a taskbar at the bottom of my screen (there wasn't until just a little while ago), open applications don't show on it and I have to use task manager to move between them.

New HijackThis Log:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 3:02:47 PM, on 6/15/2010

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.17055)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Avira\AntiVir Desktop\sched.exe

C:\Program Files\Avira\AntiVir Desktop\avguard.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe

C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

C:\Program Files\Avira\AntiVir Desktop\avshadow.exe

C:\WINDOWS\system32\java.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\RTHDCPL.EXE

C:\Program Files\Avira\AntiVir Desktop\avgnt.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Documents and Settings\Chris\Application Data\Juniper Networks\Setup Client\JuniperSetupClient.exe

C:\WINDOWS\system32\taskmgr.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Documents and Settings\Chris\Application Data\Juniper Networks\Host Checker\dsHostChecker.exe

C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://members.suscom-maine.net/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:1720

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: (no name) - {e28e0583-70fc-42a9-9767-93aa8ad06cf5} - (no file)

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [DRPU Pc Data manager] "C:\Program Files\DRPU PC Data Manager\apcdm.exe" "hd"

O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN

O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe

O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe

O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

O4 - HKCU\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe

O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User '?')

O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" (User '?')

O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe (User '?')

O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O15 - Trusted Zone: *.llbean.com

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1237904923229

O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -

O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} (JuniperSetupControlXP Class) - https://portal.llbean.com/dana-cached/setup...perSetupSP1.cab

O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://juniper.net/dana-cached/sc/JuniperSetupClient.cab

O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe

O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: Linksys Updater (LinksysUpdater) - Unknown owner - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe

O23 - Service: Pure Networks Platform Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--

End of file - 8127 bytes

OTL logfile created on: 6/15/2010 3:06:54 PM - Run 3

OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Chris\My Documents\Downloads

Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 7.0.5730.13)

Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 81.00% Memory free

5.00 Gb Paging File | 5.00 Gb Available in Paging File | 91.00% Paging File free

Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 586.36 Gb Total Space | 472.38 Gb Free Space | 80.56% Space Free | Partition Type: NTFS

D: Drive not present or media not loaded

E: Drive not present or media not loaded

F: Drive not present or media not loaded

G: Drive not present or media not loaded

Drive H: | 9.77 Gb Total Space | 4.74 Gb Free Space | 48.57% Space Free | Partition Type: NTFS

I: Drive not present or media not loaded

Drive J: | 6.67 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Drive K: | 1.86 Gb Total Space | 0.14 Gb Free Space | 7.29% Space Free | Partition Type: FAT

Computer Name: HOME

Current User Name: Chris

Logged in as Administrator.

Current Boot Mode: Normal

Scan Mode: All users

Company Name Whitelist: Off

Skip Microsoft Files: Off

File Age = 30 Days

Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Program Files\Trend Micro\HijackThis\HijackThis.exe (Trend Micro Inc.)

PRC - C:\Documents and Settings\Chris\My Documents\Downloads\OTL.exe (OldTimer Tools)

PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)

PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)

PRC - C:\WINDOWS\system32\java.exe (Sun Microsystems, Inc.)

PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)

PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)

PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)

PRC - C:\Documents and Settings\Chris\Application Data\Juniper Networks\Host Checker\dsHostChecker.exe (Juniper Networks")

PRC - C:\Documents and Settings\Chris\Application Data\Juniper Networks\Setup Client\JuniperSetupClient.exe (Juniper Networks)

PRC - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe ()

PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)

PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)

========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Chris\My Documents\Downloads\OTL.exe (OldTimer Tools)

MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)

========== Win32 Services (SafeList) ==========

SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)

SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)

SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)

SRV - (LinksysUpdater) -- C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe ()

SRV - (nmservice) -- C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe (Pure Networks, Inc.)

SRV - (Capture Device Service) -- C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (InterVideo Inc.)

SRV - (UleadBurningHelper) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)

========== Driver Services (SafeList) ==========

DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)

DRV - (avgntflt) -- C:\WINDOWS\system32\drivers\avgntflt.sys (Avira GmbH)

DRV - (avgio) -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys (Avira GmbH)

DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH)

DRV - (3xHybrid) -- C:\WINDOWS\system32\drivers\3xHybrid.sys (NXP Semiconductors Germany GmbH)

DRV - (MPE) -- C:\WINDOWS\system32\drivers\MPE.sys (Microsoft Corporation)

DRV - (usbaudio) USB Audio Driver (WDM) -- C:\WINDOWS\system32\drivers\USBAUDIO.sys (Microsoft Corporation)

DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows ® Server 2003 DDK provider)

DRV - (pnarp) -- C:\WINDOWS\system32\drivers\pnarp.sys (Pure Networks, Inc.)

DRV - (purendis) -- C:\WINDOWS\system32\drivers\purendis.sys (Pure Networks, Inc.)

DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)

DRV - (HSF_DPV) -- C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)

DRV - (HSFHWBS2) -- C:\WINDOWS\system32\drivers\HSFHWBS2.sys (Conexant Systems, Inc.)

DRV - (winachsf) -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)

DRV - (ialm) -- C:\WINDOWS\system32\drivers\igxpmp32.sys (Intel Corporation)

DRV - (e1express) Intel® -- C:\WINDOWS\system32\drivers\e1e5132.sys (Intel Corporation)

DRV - (ASPI32) -- C:\WINDOWS\system32\drivers\aspi32.sys (Adaptec)

DRV - (WudfPf) -- C:\WINDOWS\system32\DRIVERS\WudfPf.sys ()

DRV - (BrScnUsb) -- C:\WINDOWS\system32\drivers\BrScnUsb.sys (Brother Industries Ltd.)

DRV - (sonypvs1) -- C:\WINDOWS\system32\drivers\sonypvs1.sys (Sony Corporation)

DRV - (OMCI) -- C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS (Dell Computer Corporation)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie

IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://members.suscom-maine.net/

IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1

IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>

IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:1720

========== FireFox ==========

FF - prefs.js..network.proxy.http: "127.0.0.1"

FF - prefs.js..network.proxy.http_port: 1720

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/05/11 10:52:14 | 000,000,000 | ---D | M]

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/05/04 23:30:15 | 000,000,000 | ---D | M]

[2009/04/11 20:34:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Extensions

[2009/04/11 20:34:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Extensions\mozswing@mozswing.org

[2010/06/11 18:45:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions

[2010/04/29 21:04:37 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}

[2010/04/27 08:18:54 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{43c35458-c907-439b-bcfd-07d373834689}

[2010/04/27 08:30:19 | 000,000,000 | ---D | M] (Boost for Facebook) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{47624dda-b77e-4feb-820a-e4f077d5d4ca}

[2010/05/06 20:26:34 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

[2010/04/29 21:04:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\facepad@lazyrussian.com

[2010/06/14 15:07:54 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions

[2009/07/13 20:45:13 | 001,152,488 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\NPFxViewer.dll

O1 HOSTS File: ([2010/03/29 07:20:57 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll (Google Inc.)

O2 - BHO: (no name) - {e28e0583-70fc-42a9-9767-93aa8ad06cf5} - No CLSID value found.

O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O3 - HKLM\..\Toolbar: (Ask Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)

O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O3 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O3 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\..\Toolbar\WebBrowser: (Ask Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)

O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)

O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)

O4 - HKLM..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe ()

O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.)

O4 - HKLM..\Run: [DRPU Pc Data manager] C:\Program Files\DRPU PC Data Manager\apcdm.exe File not found

O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)

O4 - HKLM..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe (Brother Industories, Ltd.)

O4 - HKLM..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe File not found

O4 - HKLM..\Run: [yisuhjwki] c:\Documents and Settings\Chris\Local Settings\Application Data\lwixgb\nssljwo.exe (Qrgip)

O4 - HKU\S-1-5-21-448539723-1202660629-682003330-1004..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)

O4 - HKU\S-1-5-21-448539723-1202660629-682003330-1004..\Run: [yisuhjwki] c:\Documents and Settings\Chris\Local Settings\Application Data\lwixgb\nssljwo.exe (Qrgip)

O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe (Avanquest Software )

O4 - Startup: C:\Documents and Settings\Brian\Start Menu\Programs\Startup\LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe (Lime Wire, LLC)

O4 - Startup: C:\Documents and Settings\Steven\Start Menu\Programs\Startup\LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe (Lime Wire, LLC)

O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0

O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323

O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863

O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323

O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863

O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present

O7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323

O7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863

O7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0

O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll (Google Inc.)

O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)

O15 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\..Trusted Domains: llbean.com ([]* in Trusted sites)

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdat...b?1237904923229 (MUWebControl Class)

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_19)

O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash...r/ultrashim.cab (Reg Error: Key error.)

O16 - DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_19)

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_19)

O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (Reg Error: Value error.)

O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} https://portal.llbean.com/dana-cached/setup...perSetupSP1.cab (JuniperSetupControlXP Class)

O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab (JuniperSetupClientControl Class)

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 207.5.171.1 207.5.144.254

O18 - Protocol\Handler\pure-go {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\Platform\puresp3.dll (Pure Networks, Inc.)

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)

O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)

O24 - Desktop WallPaper: C:\Documents and Settings\Chris\Local Settings\Application Data\Microsoft\Wallpaper1.bmp

O24 - Desktop BackupWallPaper: C:\Documents and Settings\Chris\Local Settings\Application Data\Microsoft\Wallpaper1.bmp

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - [2008/11/12 23:44:19 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]

O32 - AutoRun File - [2008/05/06 08:26:23 | 000,000,309 | R--- | M] () - J:\autorun.inf -- [ CDFS ]

O32 - AutoRun File - [2010/05/03 20:03:32 | 000,000,165 | RHS- | M] () - K:\AutoRun.inf -- [ FAT ]

O33 - MountPoints2\{e06ffe62-3853-11df-9605-001d099d3531}\Shell - "" = AutoRun

O33 - MountPoints2\{e06ffe62-3853-11df-9605-001d099d3531}\Shell\AutoRun - "" = Auto&Play

O33 - MountPoints2\{e06ffe62-3853-11df-9605-001d099d3531}\Shell\AutoRun\command - "" = J:\LaunchU3.exe -- [2007/10/23 03:45:39 | 001,336,632 | R--- | M] ()

O33 - MountPoints2\J\Shell - "" = AutoRun

O33 - MountPoints2\J\Shell\AutoRun - "" = Auto&Play

O33 - MountPoints2\J\Shell\AutoRun\command - "" = J:\LaunchU3.exe -- [2007/10/23 03:45:39 | 001,336,632 | R--- | M] ()

O34 - HKLM BootExecute: (autocheck autochk *) - File not found

O35 - HKLM\..comfile [open] -- "%1" %*

O35 - HKLM\..exefile [open] -- "%1" %*

O37 - HKLM\...com [@ = comfile] -- "%1" %*

O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010/06/15 07:14:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\MBF

[2010/06/13 22:04:06 | 000,000,000 | ---D | C] -- C:\Avenger

[2010/06/13 21:21:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia

[2010/06/13 21:21:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe

[2010/06/13 21:13:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData

[2010/06/13 21:08:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Local Settings\Application Data\lwixgb

[2010/06/12 21:18:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\TT

[2010/06/11 07:42:09 | 000,000,000 | ---D | C] -- C:\download

[2010/06/05 09:52:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\MV

[2010/05/25 21:47:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\Lewiston

[2010/05/25 08:21:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\eBay

[2010/05/18 07:19:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\dwhelper

[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2010/06/15 15:02:37 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\HijackThis.lnk

[2010/06/15 14:43:10 | 000,002,521 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\Microsoft Office Outlook 2003.lnk

[2010/06/15 13:23:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat

[2010/06/15 13:05:57 | 017,563,648 | -H-- | M] () -- C:\Documents and Settings\Chris\ntuser.dat

[2010/06/15 13:05:57 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Chris\ntuser.ini

[2010/06/13 22:03:38 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT

[2010/06/13 21:55:00 | 000,000,982 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job

[2010/06/13 21:50:00 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

[2010/06/13 16:55:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job

[2010/06/13 04:50:00 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

[2010/06/11 10:28:31 | 000,124,928 | ---- | M] () -- C:\Documents and Settings\Chris\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2010/06/10 18:27:45 | 000,435,590 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat

[2010/06/10 18:27:45 | 000,068,360 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat

[2010/06/10 18:27:44 | 000,510,124 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI

[2010/06/10 03:25:29 | 000,364,912 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT

[2010/06/10 03:09:03 | 000,000,603 | ---- | M] () -- C:\WINDOWS\win.ini

[2010/06/10 03:08:12 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK

[2010/06/08 20:16:29 | 000,024,064 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\Yardsale 061210.doc

[2010/05/31 07:18:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job

[2010/05/26 06:19:22 | 000,019,456 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\eBay Hummel.xls

[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010/06/15 15:02:37 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\Chris\Desktop\HijackThis.lnk

[2010/06/08 09:46:08 | 000,024,064 | ---- | C] () -- C:\Documents and Settings\Chris\Desktop\Yardsale 061210.doc

[2010/05/17 19:51:32 | 000,019,456 | ---- | C] () -- C:\Documents and Settings\Chris\Desktop\eBay Hummel.xls

[2010/04/16 22:19:03 | 000,044,544 | ---- | C] () -- C:\WINDOWS\System32\GIF89.DLL

[2010/04/16 22:18:57 | 000,484,352 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll

[2010/04/13 13:00:34 | 000,000,028 | ---- | C] () -- C:\WINDOWS\pdf995.ini

[2010/04/13 13:00:09 | 000,000,142 | ---- | C] () -- C:\WINDOWS\wpd99.drv

[2010/04/13 13:00:08 | 000,051,716 | ---- | C] () -- C:\WINDOWS\System32\pdf995mon.dll

[2010/04/13 12:13:18 | 000,106,496 | ---- | C] () -- C:\WINDOWS\System32\BrMuSNMP.dll

[2010/02/22 21:36:03 | 000,000,000 | ---- | C] () -- C:\WINDOWS\pcfriend.INI

[2009/12/28 22:15:51 | 000,009,760 | R--- | C] () -- C:\WINDOWS\System32\34CoInstaller.dll

[2009/12/28 22:15:46 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\PsisDecd.dll

[2009/12/28 18:29:55 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI

[2009/11/10 10:00:52 | 000,000,848 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys

[2009/10/27 15:02:02 | 000,000,103 | ---- | C] () -- C:\WINDOWS\pro.INI

[2009/04/25 12:16:52 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\OctaneARM.dll

[2009/03/24 10:25:24 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI

[2009/03/24 07:55:44 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI

[2008/12/30 21:19:20 | 000,210,456 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll

[2008/12/30 21:19:20 | 000,206,360 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll

[2008/12/30 21:19:20 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll

[2008/12/30 21:19:20 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll

[2008/12/30 21:19:20 | 000,194,072 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll

[2008/12/30 21:19:20 | 000,026,136 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll

[2008/12/26 18:56:53 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll

[2008/12/26 18:56:53 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini

[2008/12/26 18:56:52 | 000,815,104 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll

[2008/12/26 18:56:52 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll

[2008/12/26 18:56:51 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll

[2008/12/26 18:56:51 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest

[2008/11/15 14:35:35 | 000,000,419 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI

[2008/11/15 14:35:35 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI

[2008/11/15 14:32:06 | 000,000,851 | ---- | C] () -- C:\WINDOWS\Brpfx04a.ini

[2008/11/15 14:32:06 | 000,000,153 | ---- | C] () -- C:\WINDOWS\brpcfx.ini

[2008/11/15 14:30:47 | 000,027,019 | ---- | C] () -- C:\WINDOWS\maxlink.ini

[2008/11/13 19:11:27 | 000,003,654 | ---- | C] () -- C:\WINDOWS\System32\drivers\Sonyhcp.dll

[2008/11/12 23:52:55 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4820.dll

[2006/09/28 19:55:50 | 000,077,568 | ---- | C] () -- C:\WINDOWS\System32\drivers\WudfPf.sys

[2003/01/07 15:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI

[2002/03/16 20:00:00 | 000,007,420 | ---- | C] () -- C:\WINDOWS\UA000035.DLL

[2002/03/04 11:16:34 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Jpeg32.dll

[1998/10/11 01:07:38 | 000,088,576 | ---- | C] () -- C:\WINDOWS\System32\Iticheck.dll

< End of report >

Can't find an Extra.txt file (nothing appears on my taskbar).

GMER ran for several hours but then froze and I couldn't save the report. I'll try it again in sfae mode.

Link to post
Share on other sites

Hello again,

Good to hear things are running a litle better, however, I still see some active malware in your OTL log.

Before starting to clean that up, see if you can finish GMER. If not, try to run it with the Sections option only.

Link to post
Share on other sites

Hi Elise,

Tried running GMER once more with everything selected, with the same result - it froze while saving the log file. Ran it with just "Sections" and got the message "GMER hasn't found any system modification." Saved log to desktop and it was empty.

Thanks for the suggestion.

Chris

Link to post
Share on other sites

Hi Chris,

Not a problem, GMER is known for its unstability, so lets skip it for now.

COMBOFIX

---------------

Please download ComboFix from one of these locations:

Bleepingcomputer
ForoSpyware

  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. (Click on this link to see a list of programs that should be disabled. The list is not all inclusive.)
  • Double click on Combofix.exe and follow the prompts.
  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, or if you are running Vista, ComboFix will continue it's malware removal procedures.

Query_RC.gif

Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

RC_successful.gif

Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply.

Link to post
Share on other sites

Here you go...

ComboFix 10-06-16.03 - Chris 06/17/2010 5:54.7.2 - x86

Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exe

.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

.

c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe

c:\documents and settings\Chris\Recent\Thumbs.db

c:\windows\system32\Thumbs.db

c:\windows\system32\win.com

.

((((((((((((((((((((((((( Files Created from 2010-05-17 to 2010-06-17 )))))))))))))))))))))))))))))))

.

2010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData

2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb

2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download

2010-05-18 11:19 . 2010-06-17 00:07 -------- d-----w- c:\documents and settings\Chris\dwhelper

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire

2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks

2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire

2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer

2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight

2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB

2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys

2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player

2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader

2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro

2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit

2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod

2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple

2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime

2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour

2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe

2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari

2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll

2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll

2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll

2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys

2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira

2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT

2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack

2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat

2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T15

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp

2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL

2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll

2010-04-18 19:26 . 2010-04-17 02:18 -------- d-----w- c:\program files\Free Easy Burner

2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll

2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe

2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll

2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys

2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll

2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll

2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe

2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe

2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat

2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat

2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll

2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe

2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll

2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll

2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll

2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll

2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll

2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll

2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe

2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll

2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe

2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe

2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll

2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll

2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll

2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll

2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll

2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll

2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll

2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys

2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe

2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe

2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat

.

------- Sigcheck -------

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys

[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys

[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll

[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll

[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe

[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe

[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll

[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll

[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll

[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll

[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll

[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll

[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll

[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll

[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll

[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll

[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll

[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll

[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll

[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll

[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll

[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll

[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll

[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll

[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll

[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll

[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll

[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll

[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll

[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll

[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll

[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll

[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll

[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll

[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll

[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe

[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe

[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe

[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe

[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe

[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe

[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe

[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe

[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe

[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe

[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll

[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll

[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll

[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll

[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll

[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll

[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll

[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll

[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll

[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll

[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll

[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll

[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll

[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll

[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll

[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll

[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll

[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll

[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe

[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe

[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe

[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe

[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe

[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe

[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe

[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe

[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]

"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]

"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]

"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]

"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]

"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]

"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]

"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952]

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]

path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnk

backup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]

2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]

2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]

2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]

2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

"DisableNotifications"= 1 (0x1)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"%windir%\\system32\\sessmgr.exe"=

"c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"=

"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=

"c:\\Program Files\\AIM6\\aim6.exe"=

"c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"=

"c:\\Program Files\\LimeWire\\LimeWire.exe"=

"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=

"c:\\Program Files\\iTunes\\iTunes.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

"67:UDP"= 67:UDP:DHCP Discovery Service

"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009

R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]

R2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]

S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]

S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368]

.

Contents of the 'Scheduled Tasks' folder

2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job

- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

.

.

------- Supplementary Scan -------

.

uStart Page = hxxp://members.suscom-maine.net/

uInternet Settings,ProxyServer = http=127.0.0.1:1720

uInternet Settings,ProxyOverride = <local>

IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html

Trusted Zone: llbean.com

DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab

FF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\

FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll

FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll

FF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dll

FF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dll

FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----

c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr

ef", true);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);

.

- - - - ORPHANS REMOVED - - - -

BHO-{e28e0583-70fc-42a9-9767-93aa8ad06cf5} - (no file)

HKCU-Run-yisuhjwki - c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe

HKLM-Run-SunJavaUpdateSched - c:\program files\Java\jre6\bin\jusched.exe

HKLM-Run-DRPU Pc Data manager - c:\program files\DRPU PC Data Manager\apcdm.exe

HKLM-Run-yisuhjwki - c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2010-06-17 05:58

Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully

hidden files: 0

**************************************************************************

.

--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(700)

c:\windows\system32\igfxdev.dll

.

Completion time: 2010-06-17 06:04:22

ComboFix-quarantined-files.txt 2010-06-17 10:04

Pre-Run: 507,130,470,400 bytes free

Post-Run: 507,431,559,168 bytes free

- - End Of File - - D41C3A8913E0E45B503B7A323CBBD9F5

Link to post
Share on other sites

Hello again,

  • Please download Dial-A-Fix from one of the following mirrors:

    [*]Extract the zip file to your desktop.

    [*]Double click Dial-a-Fix.exe to start the program. Note - you might see an error message regarding Internet Explorer. Just ignore this and continue.

    [*]Press the green double checkmark box (Looks like this: checkmark.png)

    [*]UNcheck Empty Temp Folders, as well as Adjust Time/Date in the prep section. The prep section should then look like this:

    toUncheck.png

    mainWindow.png

    [*]Click on go

    [*]Exit/Close Dial-A-Fix

Note - this is an old tool and will likely throw a few errors.

CF-SCRIPT

-------------

We need to execute a CF-script.

  • Close any open browsers.
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
  • Click Start > Run and in the box that opens type notepad and press enter. Copy/paste the text in the codebox below into it:

DDS::
uInternet Settings,ProxyServer = http=127.0.0.1:1720
uInternet Settings,ProxyOverride = <local>

Save this as CFScript.txt, in the same location as ComboFix.exe

CFScriptB-4.gif

Refering to the picture above, drag CFScript into ComboFix.exe

When finished, it shall produce a log for you at C:\ComboFix.txt which I will require in your next reply.

Link to post
Share on other sites

I am so sorry, I completely forgot about that.

If CFScript.txt is on the desktop, do the following to run it:

Click Start > Run, type the following text into the runbox and press enter.

combofix "%userprofile%\desktop\cfscript.txt"

Link to post
Share on other sites

No need to apologize. I forget, too, until I try to drag/drop.

Here is the log.

ComboFix 10-06-16.03 - Chris 06/18/2010 5:54.8.2 - x86

Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exe

Command switches used :: c:\documents and settings\Chris\desktop\cfscript.txt

.

((((((((((((((((((((((((( Files Created from 2010-05-18 to 2010-06-18 )))))))))))))))))))))))))))))))

.

2010-06-18 00:09 . 2010-06-18 10:02 -------- d-----w- c:\windows\system32\CatRoot2

2010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData

2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb

2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire

2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks

2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire

2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer

2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight

2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB

2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys

2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player

2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader

2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro

2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit

2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod

2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple

2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime

2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour

2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe

2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari

2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll

2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll

2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll

2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys

2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira

2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT

2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack

2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat

2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T15

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp

2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL

2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll

2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll

2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe

2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll

2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys

2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll

2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll

2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe

2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe

2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat

2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat

2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll

2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe

2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll

2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll

2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll

2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll

2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll

2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll

2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe

2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll

2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe

2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe

2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll

2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll

2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll

2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll

2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll

2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll

2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll

2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys

2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe

2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe

2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat

.

------- Sigcheck -------

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys

[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys

[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll

[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll

[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe

[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe

[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll

[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll

[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll

[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll

[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll

[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll

[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll

[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll

[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll

[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll

[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll

[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll

[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll

[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll

[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll

[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll

[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll

[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll

[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll

[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll

[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll

[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll

[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll

[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll

[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll

[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll

[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll

[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll

[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll

[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe

[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe

[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe

[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe

[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe

[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe

[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe

[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe

[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe

[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe

[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll

[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll

[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll

[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll

[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll

[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll

[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll

[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll

[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll

[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll

[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll

[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll

[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll

[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll

[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll

[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll

[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll

[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll

[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe

[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe

[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe

[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe

[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe

[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe

[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe

[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe

[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll

.

((((((((((((((((((((((((((((( SnapShot@2010-06-17_09.58.40 )))))))))))))))))))))))))))))))))))))))))

.

+ 2010-06-18 10:01 . 2010-06-18 10:01 16384 c:\windows\temp\Perflib_Perfdata_60c.dat

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]

"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]

"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]

"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]

"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]

"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]

"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]

"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952]

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]

path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnk

backup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]

2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]

2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]

2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]

2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

"DisableNotifications"= 1 (0x1)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"%windir%\\system32\\sessmgr.exe"=

"c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"=

"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=

"c:\\Program Files\\AIM6\\aim6.exe"=

"c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"=

"c:\\Program Files\\LimeWire\\LimeWire.exe"=

"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=

"c:\\Program Files\\iTunes\\iTunes.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

"67:UDP"= 67:UDP:DHCP Discovery Service

"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009

R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]

S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]

S2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]

S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368]

.

Contents of the 'Scheduled Tasks' folder

2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job

- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

.

.

------- Supplementary Scan -------

.

uStart Page = hxxp://members.suscom-maine.net/

uInternet Settings,ProxyOverride = <local>

IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html

Trusted Zone: llbean.com

DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab

FF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\

FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll

FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll

FF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dll

FF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dll

FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----

c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr

ef", true);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);

.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2010-06-18 06:13

Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully

hidden files: 0

**************************************************************************

.

--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(1120)

c:\windows\system32\WININET.dll

.

------------------------ Other Running Processes ------------------------

.

c:\program files\Avira\AntiVir Desktop\avguard.exe

c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

c:\program files\Bonjour\mDNSResponder.exe

c:\program files\Java\jre6\bin\jqs.exe

c:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

c:\program files\Avira\AntiVir Desktop\avshadow.exe

c:\windows\system32\java.exe

c:\windows\RTHDCPL.EXE

.

**************************************************************************

.

Completion time: 2010-06-18 06:18:54 - machine was rebooted

ComboFix-quarantined-files.txt 2010-06-18 10:18

ComboFix2.txt 2010-06-17 10:04

Pre-Run: 507,396,599,808 bytes free

Post-Run: 507,322,814,464 bytes free

- - End Of File - - 3FB2436699649EB05852D98AFC8CD718

Link to post
Share on other sites

Log posted in 2 sections due to size of file:

ComboFix 10-06-16.03 - Chris 06/18/2010 17:10:36.9.2 - x86

Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exe

.

((((((((((((((((((((((((( Files Created from 2010-05-18 to 2010-06-18 )))))))))))))))))))))))))))))))

.

2010-06-18 16:31 . 2008-04-14 09:42 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll

2010-06-18 16:31 . 2008-04-14 09:42 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll

2010-06-18 16:31 . 2001-08-18 02:36 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll

2010-06-18 16:31 . 2001-08-18 02:37 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe

2010-06-18 16:31 . 2001-08-18 02:37 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe

2010-06-18 16:31 . 2001-08-18 02:37 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe

2010-06-18 16:31 . 2001-08-17 16:11 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys

2010-06-18 16:31 . 2008-04-14 02:04 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys

2010-06-18 16:31 . 2008-04-14 09:42 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll

2010-06-18 16:31 . 2008-04-14 02:04 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys

2010-06-18 16:29 . 2008-04-14 09:42 11325 -c--a-w- c:\windows\system32\dllcache\vchnt5.dll

2010-06-18 16:28 . 2001-08-17 16:51 166784 -c--a-w- c:\windows\system32\dllcache\tridxpm.sys

2010-06-18 16:27 . 2001-08-17 18:07 32640 -c--a-w- c:\windows\system32\dllcache\symc8xx.sys

2010-06-18 16:26 . 2001-08-17 17:53 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys

2010-06-18 16:25 . 2001-07-21 18:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys

2010-06-18 16:24 . 2001-08-18 02:36 79872 -c--a-w- c:\windows\system32\dllcache\rwia430.dll

2010-06-18 16:23 . 2001-08-18 02:36 35328 -c--a-w- c:\windows\system32\dllcache\psisload.dll

2010-06-18 16:22 . 2001-08-18 02:36 116736 -c--a-w- c:\windows\system32\dllcache\ovcodec2.dll

2010-06-18 16:21 . 2001-08-18 02:36 59104 -c--a-w- c:\windows\system32\dllcache\n9i128v2.dll

2010-06-18 16:20 . 2001-08-17 18:56 235648 -c--a-w- c:\windows\system32\dllcache\mgaud.dll

2010-06-18 16:19 . 2001-08-17 18:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll

2010-06-18 16:18 . 2008-04-14 04:11 8576 -c--a-w- c:\windows\system32\dllcache\i2omgmt.sys

2010-06-18 16:17 . 2001-08-17 18:02 8576 -c--a-w- c:\windows\system32\dllcache\hidgame.sys

2010-06-18 16:16 . 2001-08-17 17:28 347550 -c--a-w- c:\windows\system32\dllcache\es56tpi.sys

2010-06-18 16:15 . 2001-08-18 02:36 110621 -c--a-w- c:\windows\system32\dllcache\digirlpt.dll

2010-06-18 16:14 . 2008-04-14 09:41 121856 -c--a-w- c:\windows\system32\dllcache\camext30.dll

2010-06-18 16:13 . 2001-08-17 17:47 6272 -c--a-w- c:\windows\system32\dllcache\apmbatt.sys

2010-06-18 00:09 . 2010-06-18 21:09 -------- d-----w- c:\windows\system32\CatRoot2

2010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData

2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb

2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire

2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks

2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire

2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer

2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight

2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB

2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys

2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player

2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader

2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro

2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit

2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod

2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple

2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime

2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour

2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe

2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari

2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll

2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll

2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll

2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys

2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira

2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT

2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack

2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat

2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T15

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp

2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL

2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll

2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll

2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe

2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll

2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys

2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll

2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll

2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe

2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe

2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat

2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat

2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll

2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe

2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll

2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll

2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll

2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll

2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll

2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll

2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe

2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll

2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe

2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe

2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll

2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll

2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll

2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll

2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll

2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll

2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll

2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys

2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe

2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe

2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat

.

------- Sigcheck -------

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\kbdclass.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys

[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys

[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll

[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll

[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe

[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe

[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll

[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll

[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll

[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll

[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll

[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll

[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll

[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll

[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll

[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll

[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll

[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll

[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll

[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll

[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll

[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll

[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll

[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll

[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll

[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll

[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll

[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll

[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll

[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll

[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll

[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll

[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll

[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll

[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll

[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe

[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe

[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe

[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe

[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe

[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe

[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe

[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe

[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe

[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe

[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll

[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll

[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll

[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll

[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll

[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll

[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll

[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll

[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll

[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll

[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll

[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll

[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll

[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll

[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll

[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll

[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll

[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll

[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe

[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe

[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe

[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe

[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe

[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe

[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe

[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe

[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll

.

Link to post
Share on other sites

Part 2

.

+ 2010-06-18 21:07 . 2010-06-18 21:07 16384 c:\windows\temp\Perflib_Perfdata_5fc.dat

+ 2008-04-14 05:42 . 2008-04-14 09:51 52736 c:\windows\system32\dllcache\wzcsapi.dll

+ 2010-06-18 16:30 . 2001-08-17 16:12 34890 c:\windows\system32\dllcache\wlandrv2.sys

+ 2010-06-18 16:30 . 2001-08-18 02:36 53760 c:\windows\system32\dllcache\wiamsmud.dll

+ 2010-06-18 16:30 . 2001-08-18 02:36 87040 c:\windows\system32\dllcache\wiafbdrv.dll

+ 2008-11-13 03:45 . 2002-09-03 17:11 31232 c:\windows\system32\dllcache\weitekp9.sys

- 2008-11-13 03:45 . 2004-08-12 14:09 31232 c:\windows\system32\dllcache\weitekp9.sys

+ 2008-11-13 03:45 . 2002-09-03 17:11 41600 c:\windows\system32\dllcache\weitekp9.dll

- 2008-11-13 03:45 . 2004-08-12 14:09 41600 c:\windows\system32\dllcache\weitekp9.dll

+ 2010-06-18 16:30 . 2008-04-14 02:04 23615 c:\windows\system32\dllcache\wch7xxnt.sys

+ 2010-06-18 16:30 . 2008-04-14 04:15 31744 c:\windows\system32\dllcache\wceusbsh.sys

+ 2010-06-18 16:30 . 2001-08-17 16:10 35871 c:\windows\system32\dllcache\wbfirdma.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 25471 c:\windows\system32\dllcache\watv10nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 22271 c:\windows\system32\dllcache\watv06nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 33599 c:\windows\system32\dllcache\watv04nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 19551 c:\windows\system32\dllcache\watv02nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 29311 c:\windows\system32\dllcache\watv01nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 11935 c:\windows\system32\dllcache\wadv11nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 11871 c:\windows\system32\dllcache\wadv09nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 11295 c:\windows\system32\dllcache\wadv08nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 11807 c:\windows\system32\dllcache\wadv07nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 11775 c:\windows\system32\dllcache\wadv05nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 12127 c:\windows\system32\dllcache\wadv02nt.sys

+ 2010-06-18 16:30 . 2008-04-14 02:04 12415 c:\windows\system32\dllcache\wadv01nt.sys

+ 2010-06-18 16:30 . 2008-04-14 04:13 14208 c:\windows\system32\dllcache\wacompen.sys

+ 2010-06-18 16:30 . 2001-08-17 16:13 16925 c:\windows\system32\dllcache\w940nd.sys

+ 2010-06-18 16:30 . 2001-08-17 16:13 19016 c:\windows\system32\dllcache\w926nd.sys

+ 2010-06-18 16:30 . 2001-08-17 16:13 19528 c:\windows\system32\dllcache\w840nd.sys

+ 2008-11-13 03:45 . 2002-09-03 17:10 48256 c:\windows\system32\dllcache\w32.dll

- 2008-11-13 03:45 . 2004-08-12 14:08 48256 c:\windows\system32\dllcache\w32.dll

+ 2010-06-18 16:30 . 2001-08-17 17:28 64605 c:\windows\system32\dllcache\vvoice.sys

+ 2010-06-18 16:30 . 2001-08-17 17:49 24576 c:\windows\system32\dllcache\viairda.sys

+ 2010-06-18 16:30 . 2008-04-14 04:06 42240 c:\windows\system32\dllcache\viaagp.sys

+ 2008-04-14 04:15 . 2008-04-14 04:15 26368 c:\windows\system32\dllcache\usbstor.sys

+ 2010-06-18 16:29 . 2008-04-14 04:15 26112 c:\windows\system32\dllcache\usbser.sys

+ 2010-06-18 16:29 . 2008-04-14 04:15 17152 c:\windows\system32\dllcache\usbohci.sys

+ 2010-06-18 16:29 . 2008-04-14 04:26 12800 c:\windows\system32\dllcache\usb8023x.sys

+ 2010-06-18 16:29 . 2008-04-14 02:05 32384 c:\windows\system32\dllcache\usb101et.sys

+ 2010-06-18 16:29 . 2001-08-18 02:36 94720 c:\windows\system32\dllcache\umaxud32.dll

+ 2010-06-18 16:29 . 2001-08-18 02:36 28160 c:\windows\system32\dllcache\umaxu40.dll

+ 2010-06-18 16:29 . 2001-08-18 02:36 26624 c:\windows\system32\dllcache\umaxu22.dll

+ 2010-06-18 16:29 . 2001-08-18 02:36 69632 c:\windows\system32\dllcache\umaxu12.dll

+ 2010-06-18 16:29 . 2001-08-18 02:36 50688 c:\windows\system32\dllcache\umaxscan.dll

+ 2010-06-18 16:29 . 2001-08-17 17:58 22912 c:\windows\system32\dllcache\umaxpcls.sys

+ 2010-06-18 16:29 . 2001-08-18 02:36 50176 c:\windows\system32\dllcache\umaxp60.dll

+ 2010-06-18 16:29 . 2001-08-18 02:36 47616 c:\windows\system32\dllcache\umaxcam.dll

+ 2010-06-18 16:29 . 2001-08-17 17:52 36736 c:\windows\system32\dllcache\ultra.sys

+ 2010-06-18 16:29 . 2008-04-14 04:06 44672 c:\windows\system32\dllcache\uagp35.sys

+ 2010-06-18 16:29 . 2001-08-17 17:48 11520 c:\windows\system32\dllcache\twotrack.sys

- 2008-11-13 03:45 . 2004-08-12 14:07 14336 c:\windows\system32\dllcache\tsprof.exe

+ 2008-11-13 03:45 . 2002-09-03 17:07 14336 c:\windows\system32\dllcache\tsprof.exe

+ 2010-06-18 16:28 . 2001-08-17 16:12 34375 c:\windows\system32\dllcache\tpro4.sys

+ 2010-06-18 16:28 . 2001-08-18 02:35 42496 c:\windows\system32\dllcache\tp4res.dll

+ 2010-06-18 16:28 . 2008-04-14 09:42 82944 c:\windows\system32\dllcache\tp4mon.exe

+ 2010-06-18 16:28 . 2001-08-18 02:36 31744 c:\windows\system32\dllcache\tp4.dll

+ 2010-06-18 16:28 . 2001-08-17 16:10 28232 c:\windows\system32\dllcache\tos4mo.sys

- 2008-11-13 03:45 . 2008-04-14 02:13 44032 c:\windows\system32\dllcache\tintlphr.exe

+ 2008-11-13 03:45 . 2002-09-03 16:26 44032 c:\windows\system32\dllcache\tintlphr.exe

+ 2010-06-18 16:28 . 2001-08-17 18:56 81408 c:\windows\system32\dllcache\tgiul50.dll

+ 2008-11-13 03:41 . 2008-04-14 10:43 40840 c:\windows\system32\dllcache\termdd.sys

+ 2008-11-13 03:45 . 2002-09-03 17:06 19464 c:\windows\system32\dllcache\tdspx.sys

- 2008-11-13 03:45 . 2004-08-12 14:07 19464 c:\windows\system32\dllcache\tdspx.sys

+ 2010-06-18 16:28 . 2001-08-17 16:13 17129 c:\windows\system32\dllcache\tdkcd31.sys

+ 2010-06-18 16:28 . 2001-08-17 16:13 37961 c:\windows\system32\dllcache\tdk100b.sys

+ 2008-11-13 03:45 . 2002-09-03 17:06 21896 c:\windows\system32\dllcache\tdipx.sys

- 2008-11-13 03:45 . 2004-08-12 14:07 21896 c:\windows\system32\dllcache\tdipx.sys

+ 2008-11-13 03:45 . 2002-09-03 17:06 13192 c:\windows\system32\dllcache\tdasync.sys

- 2008-11-13 03:45 . 2004-08-12 14:07 13192 c:\windows\system32\dllcache\tdasync.sys

+ 2010-06-18 16:28 . 2001-08-17 17:49 30464 c:\windows\system32\dllcache\tbatm155.sys

+ 2010-06-18 16:28 . 2001-08-17 16:50 36640 c:\windows\system32\dllcache\t2r4mini.sys

+ 2010-06-18 16:27 . 2001-08-17 18:07 16256 c:\windows\system32\dllcache\symc810.sys

+ 2010-06-18 16:27 . 2001-08-17 18:07 30688 c:\windows\system32\dllcache\sym_u3.sys

+ 2010-06-18 16:27 . 2001-08-17 18:07 28384 c:\windows\system32\dllcache\sym_hi.sys

+ 2010-06-18 16:27 . 2001-08-18 02:36 94293 c:\windows\system32\dllcache\sxports.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 10240 c:\windows\system32\dllcache\swpidflt.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 10240 c:\windows\system32\dllcache\swpdflt2.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 53760 c:\windows\system32\dllcache\sw_wheel.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 41472 c:\windows\system32\dllcache\sw_effct.dll

+ 2008-11-12 22:36 . 2008-04-14 05:42 74752 c:\windows\system32\dllcache\storprop.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 53248 c:\windows\system32\dllcache\stlncoin.dll

+ 2010-06-18 16:27 . 2001-08-17 17:51 16896 c:\windows\system32\dllcache\stcusb.sys

+ 2010-06-18 16:27 . 2001-08-17 16:11 48736 c:\windows\system32\dllcache\srwlnd5.sys

+ 2010-06-18 16:27 . 2001-08-18 02:36 99328 c:\windows\system32\dllcache\srusd.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 24660 c:\windows\system32\dllcache\spxupchk.dll

+ 2010-06-18 16:27 . 2001-08-17 17:51 61824 c:\windows\system32\dllcache\speed.sys

+ 2010-06-18 16:27 . 2001-08-17 18:07 19072 c:\windows\system32\dllcache\sparrow.sys

+ 2010-06-18 16:27 . 2001-08-17 16:51 37040 c:\windows\system32\dllcache\sonypi.sys

+ 2010-06-18 16:27 . 2001-08-17 16:51 20752 c:\windows\system32\dllcache\sonync.sys

- 2008-11-13 03:45 . 2004-08-12 14:05 10240 c:\windows\system32\dllcache\snmpstup.dll

+ 2008-11-13 03:45 . 2002-09-03 17:03 10240 c:\windows\system32\dllcache\snmpstup.dll

+ 2010-06-18 16:26 . 2001-08-17 16:51 58368 c:\windows\system32\dllcache\smiminib.sys

- 2008-11-13 03:45 . 2004-08-12 14:05 15872 c:\windows\system32\dllcache\smierrsm.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 15872 c:\windows\system32\dllcache\smierrsm.dll

+ 2010-06-18 16:26 . 2001-08-17 16:12 25034 c:\windows\system32\dllcache\smcpwr2n.sys

+ 2010-06-18 16:26 . 2001-08-17 16:10 35913 c:\windows\system32\dllcache\smcirda.sys

+ 2010-06-18 16:26 . 2001-08-17 16:12 24576 c:\windows\system32\dllcache\smc8000n.sys

+ 2010-06-18 16:26 . 2008-04-14 04:06 16000 c:\windows\system32\dllcache\smbbatt.sys

- 2008-11-13 03:45 . 2004-08-12 14:05 31744 c:\windows\system32\dllcache\smb6w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 31744 c:\windows\system32\dllcache\smb6w.dll

+ 2010-06-18 16:26 . 2001-08-18 02:36 45568 c:\windows\system32\dllcache\smb3w.dll

+ 2010-06-18 16:26 . 2001-08-18 02:36 33792 c:\windows\system32\dllcache\smb0w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 31744 c:\windows\system32\dllcache\sma3w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 31744 c:\windows\system32\dllcache\sma3w.dll

+ 2010-06-18 16:26 . 2001-08-18 02:36 28672 c:\windows\system32\dllcache\sma0w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 38912 c:\windows\system32\dllcache\sm9aw.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 38912 c:\windows\system32\dllcache\sm9aw.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 26624 c:\windows\system32\dllcache\sm93w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 26624 c:\windows\system32\dllcache\sm93w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 26624 c:\windows\system32\dllcache\sm92w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 26624 c:\windows\system32\dllcache\sm92w.dll

+ 2010-06-18 16:26 . 2001-08-18 02:36 28160 c:\windows\system32\dllcache\sm91w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 26112 c:\windows\system32\dllcache\sm90w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm90w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm8dw.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 26112 c:\windows\system32\dllcache\sm8dw.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 29184 c:\windows\system32\dllcache\sm8cw.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 29184 c:\windows\system32\dllcache\sm8cw.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm8aw.dll

+ 2008-11-13 03:45 . 2002-09-03 17:01 26112 c:\windows\system32\dllcache\sm8aw.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm89w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:01 26112 c:\windows\system32\dllcache\sm89w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:01 30208 c:\windows\system32\dllcache\sm87w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 30208 c:\windows\system32\dllcache\sm87w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:01 30208 c:\windows\system32\dllcache\sm81w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 30208 c:\windows\system32\dllcache\sm81w.dll

+ 2008-11-13 03:45 . 2002-09-03 17:01 25088 c:\windows\system32\dllcache\sm59w.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 25088 c:\windows\system32\dllcache\sm59w.dll

+ 2010-06-18 16:26 . 2008-04-14 03:53 13240 c:\windows\system32\dllcache\slwdmsup.sys

+ 2010-06-18 16:26 . 2008-04-14 09:42 73796 c:\windows\system32\dllcache\slserv.exe

+ 2010-06-18 16:26 . 2008-04-14 09:42 32866 c:\windows\system32\dllcache\slrundll.exe

+ 2010-06-18 16:26 . 2008-04-14 03:53 95424 c:\windows\system32\dllcache\slnthal.sys

+ 2010-06-18 16:26 . 2008-04-14 09:42 73832 c:\windows\system32\dllcache\slcoinst.dll

+ 2010-06-18 16:26 . 2008-04-14 02:05 63547 c:\windows\system32\dllcache\sla30nd5.sys

+ 2010-06-18 16:26 . 2001-08-17 16:12 91294 c:\windows\system32\dllcache\skfpwin.sys

+ 2010-06-18 16:26 . 2001-08-17 16:12 94698 c:\windows\system32\dllcache\sk98xwin.sys

+ 2010-06-18 16:26 . 2001-08-17 16:50 50432 c:\windows\system32\dllcache\sisv.sys

+ 2010-06-18 16:26 . 2008-04-14 02:05 32768 c:\windows\system32\dllcache\sisnic.sys

+ 2010-06-18 16:26 . 2008-04-14 04:06 40960 c:\windows\system32\dllcache\sisagp.sys

+ 2010-06-18 16:26 . 2001-08-17 16:50 68608 c:\windows\system32\dllcache\sis6306p.sys

+ 2008-11-13 03:45 . 2002-09-03 16:59 18944 c:\windows\system32\dllcache\simptcp.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 18944 c:\windows\system32\dllcache\simptcp.dll

+ 2010-06-18 16:25 . 2001-08-17 16:51 98080 c:\windows\system32\dllcache\sgiulnt5.sys

+ 2010-06-18 16:25 . 2001-08-17 16:19 36480 c:\windows\system32\dllcache\sfmanm.sys

+ 2008-04-14 04:10 . 2008-04-14 04:10 11392 c:\windows\system32\dllcache\sfloppy.sys

+ 2010-06-18 16:25 . 2001-08-17 17:48 17664 c:\windows\system32\dllcache\sermouse.sys

+ 2008-04-14 04:45 . 2008-04-14 04:45 64512 c:\windows\system32\dllcache\serial.sys

+ 2010-06-18 16:25 . 2008-04-14 04:15 11520 c:\windows\system32\dllcache\scsiscan.sys

+ 2010-06-18 16:25 . 2001-08-17 17:52 11648 c:\windows\system32\dllcache\scsiprnt.sys

+ 2010-06-18 16:25 . 2001-08-17 17:51 17280 c:\windows\system32\dllcache\scr111.sys

+ 2010-06-18 16:25 . 2001-08-17 17:51 16640 c:\windows\system32\dllcache\scmstcs.sys

+ 2010-06-18 16:25 . 2001-08-17 17:51 23936 c:\windows\system32\dllcache\sccmusbm.sys

+ 2010-06-18 16:25 . 2001-08-17 17:51 23936 c:\windows\system32\dllcache\sccmn50m.sys

+ 2010-06-18 16:25 . 2008-04-14 04:10 43904 c:\windows\system32\dllcache\sbp2port.sys

+ 2010-06-18 16:25 . 2001-08-17 16:50 75392 c:\windows\system32\dllcache\s3savmxm.sys

+ 2010-06-18 16:25 . 2001-08-17 16:50 77824 c:\windows\system32\dllcache\s3sav4m.sys

+ 2010-06-18 16:25 . 2001-08-17 16:50 61504 c:\windows\system32\dllcache\s3sav3dm.sys

+ 2010-06-18 16:25 . 2001-08-18 02:36 62496 c:\windows\system32\dllcache\s3mtrio.dll

+ 2010-06-18 16:25 . 2001-08-17 16:50 41216 c:\windows\system32\dllcache\s3mt3d.sys

+ 2010-06-18 16:25 . 2001-08-17 17:57 65664 c:\windows\system32\dllcache\s3legacy.sys

+ 2010-06-18 16:13 . 2001-08-17 18:56 66048 c:\windows\system32\dllcache\s3legacy.dll

+ 2010-06-18 16:25 . 2001-08-18 02:36 82432 c:\windows\system32\dllcache\rwia450.dll

- 2008-11-13 03:45 . 2004-08-12 14:04 79872 c:\windows\system32\dllcache\rwia330.dll

+ 2008-11-13 03:45 . 2002-09-03 16:57 79872 c:\windows\system32\dllcache\rwia330.dll

- 2008-11-13 03:45 . 2004-08-12 14:04 79872 c:\windows\system32\dllcache\rwia001.dll

+ 2008-11-13 03:45 . 2002-09-03 16:57 79872 c:\windows\system32\dllcache\rwia001.dll

+ 2010-06-18 16:24 . 2008-04-14 09:42 29696 c:\windows\system32\dllcache\rw450ext.dll

+ 2010-06-18 16:24 . 2008-04-14 09:42 27648 c:\windows\system32\dllcache\rw430ext.dll

+ 2010-06-18 16:24 . 2008-04-14 02:05 20992 c:\windows\system32\dllcache\rtl8139.sys

+ 2010-06-18 16:24 . 2001-08-17 16:12 19017 c:\windows\system32\dllcache\rtl8029.sys

+ 2010-06-18 16:24 . 2001-08-17 16:19 30720 c:\windows\system32\dllcache\rthwcls.sys

+ 2010-06-18 16:24 . 2008-04-14 04:10 79104 c:\windows\system32\dllcache\rocket.sys

+ 2010-06-18 16:24 . 2008-04-14 04:26 30592 c:\windows\system32\dllcache\rndismpx.sys

+ 2010-06-18 16:24 . 2001-08-17 16:12 37563 c:\windows\system32\dllcache\rlnet5.sys

+ 2010-06-18 16:24 . 2008-04-14 04:16 59136 c:\windows\system32\dllcache\rfcomm.sys

+ 2010-06-18 16:24 . 2001-08-18 02:36 86097 c:\windows\system32\dllcache\reslog32.dll

+ 2008-11-13 03:45 . 2002-09-03 16:56 14848 c:\windows\system32\dllcache\register.exe

- 2008-11-13 03:45 . 2004-08-12 14:04 14848 c:\windows\system32\dllcache\register.exe

+ 2008-11-12 22:38 . 2008-04-14 00:10 57600 c:\windows\system32\dllcache\redbook.sys

+ 2010-06-18 16:24 . 2008-04-14 03:53 13776 c:\windows\system32\dllcache\recagent.sys

+ 2010-06-18 16:24 . 2001-08-17 17:51 19584 c:\windows\system32\dllcache\rasirda.sys

+ 2010-06-18 16:24 . 2001-08-18 02:36 41472 c:\windows\system32\dllcache\qvusd.dll

+ 2008-11-13 03:45 . 2002-09-03 16:53 16384 c:\windows\system32\dllcache\quser.exe

- 2008-11-13 03:45 . 2004-08-12 14:03 16384 c:\windows\system32\dllcache\quser.exe

+ 2010-06-18 16:24 . 2001-08-17 17:52 49024 c:\windows\system32\dllcache\ql1280.sys

+ 2010-06-18 16:24 . 2001-08-17 17:52 40448 c:\windows\system32\dllcache\ql1240.sys

+ 2010-06-18 16:24 . 2001-08-17 17:52 45312 c:\windows\system32\dllcache\ql12160.sys

+ 2010-06-18 16:24 . 2001-08-17 17:52 33152 c:\windows\system32\dllcache\ql10wnt.sys

+ 2010-06-18 16:24 . 2001-08-17 17:52 40320 c:\windows\system32\dllcache\ql1080.sys

+ 2010-06-18 16:23 . 2001-08-17 17:51 16128 c:\windows\system32\dllcache\pscr.sys

+ 2010-06-18 16:23 . 2008-04-14 04:11 17664 c:\windows\system32\dllcache\ppa3.sys

+ 2010-06-18 16:23 . 2001-08-17 17:53 17792 c:\windows\system32\dllcache\ppa.sys

+ 2008-11-13 03:45 . 2002-09-03 16:52 11264 c:\windows\system32\dllcache\pmxmcro.dll

- 2008-11-13 03:45 . 2004-08-12 14:03 11264 c:\windows\system32\dllcache\pmxmcro.dll

+ 2008-04-14 05:42 . 2008-04-14 09:51 15360 c:\windows\system32\dllcache\pjlmon.dll

+ 2010-06-18 16:23 . 2001-08-17 18:07 19840 c:\windows\system32\dllcache\philtune.sys

+ 2010-06-18 16:23 . 2001-08-17 18:04 92416 c:\windows\system32\dllcache\phildec.sys

+ 2010-06-18 16:23 . 2001-08-17 18:04 75776 c:\windows\system32\dllcache\philcam1.sys

+ 2010-06-18 16:23 . 2001-08-18 02:36 16384 c:\windows\system32\dllcache\philcam1.dll

+ 2010-06-18 16:23 . 2008-04-14 04:14 28032 c:\windows\system32\dllcache\perm3.sys

+ 2010-06-18 16:23 . 2008-04-14 04:14 27904 c:\windows\system32\dllcache\perm2.sys

+ 2010-06-18 16:23 . 2001-08-17 18:07 27296 c:\windows\system32\dllcache\perc2.sys

+ 2010-06-18 16:23 . 2001-08-18 02:36 86016 c:\windows\system32\dllcache\pctspk.exe

+ 2010-06-18 16:23 . 2001-08-17 16:11 35328 c:\windows\system32\dllcache\pcntpci5.sys

+ 2010-06-18 16:23 . 2001-08-17 16:11 29769 c:\windows\system32\dllcache\pcntn5m.sys

+ 2010-06-18 16:23 . 2001-08-17 16:11 30282 c:\windows\system32\dllcache\pcntn5hl.sys

+ 2010-06-18 16:23 . 2001-08-17 16:12 26153 c:\windows\system32\dllcache\pcmlm56.sys

+ 2010-06-18 16:23 . 2008-04-14 02:05 29502 c:\windows\system32\dllcache\pca200e.sys

+ 2010-06-18 16:23 . 2001-08-17 16:12 30495 c:\windows\system32\dllcache\pc100nds.sys

+ 2008-04-14 00:10 . 2008-04-14 09:51 80128 c:\windows\system32\dllcache\parport.sys

- 2008-11-13 03:45 . 2004-08-12 13:58 14336 c:\windows\system32\dllcache\padrs412.dll

+ 2008-11-13 03:45 . 2002-09-03 16:25 14336 c:\windows\system32\dllcache\padrs412.dll

+ 2008-11-13 03:45 . 2002-09-03 16:25 36927 c:\windows\system32\dllcache\padrs411.dll

- 2008-11-13 03:45 . 2004-08-12 13:58 36927 c:\windows\system32\dllcache\padrs411.dll

+ 2010-06-18 16:23 . 2001-08-18 02:36 41984 c:\windows\system32\dllcache\ovui2rc.dll

+ 2010-06-18 16:23 . 2001-08-18 02:36 44544 c:\windows\system32\dllcache\ovui2.dll

+ 2010-06-18 16:23 . 2001-08-17 18:05 25216 c:\windows\system32\dllcache\ovsound2.sys

+ 2010-06-18 16:23 . 2001-08-18 02:36 39424 c:\windows\system32\dllcache\ovcoms.exe

+ 2010-06-18 16:23 . 2001-08-18 02:36 20480 c:\windows\system32\dllcache\ovcomc.dll

+ 2010-06-18 16:22 . 2001-08-17 18:05 31872 c:\windows\system32\dllcache\ovce.sys

+ 2010-06-18 16:22 . 2001-08-17 18:05 28032 c:\windows\system32\dllcache\ovcd.sys

+ 2010-06-18 16:22 . 2001-08-17 18:05 48000 c:\windows\system32\dllcache\ovcam2.sys

+ 2010-06-18 16:22 . 2001-08-17 18:05 25088 c:\windows\system32\dllcache\ovca.sys

+ 2010-06-18 16:22 . 2001-08-17 17:28 54186 c:\windows\system32\dllcache\otcsercb.sys

+ 2010-06-18 16:22 . 2001-08-17 16:12 43689 c:\windows\system32\dllcache\otceth5.sys

+ 2010-06-18 16:22 . 2001-08-17 16:12 27209 c:\windows\system32\dllcache\otc06x5.sys

+ 2010-06-18 16:22 . 2001-08-17 16:20 54528 c:\windows\system32\dllcache\opl3sax.sys

+ 2010-06-18 16:22 . 2001-08-17 16:49 51552 c:\windows\system32\dllcache\ntgrip.sys

+ 2010-06-18 16:22 . 2008-04-14 04:24 28672 c:\windows\system32\dllcache\nscirda.sys

- 2008-11-12 22:36 . 2008-04-14 09:42 69120 c:\windows\system32\dllcache\notepad.exe

+ 2008-04-14 09:42 . 2008-04-14 09:42 69120 c:\windows\system32\dllcache\notepad.exe

+ 2010-06-18 16:22 . 2001-08-17 16:20 87040 c:\windows\system32\dllcache\nm6wdm.sys

+ 2010-06-18 16:22 . 2001-08-17 16:12 32840 c:\windows\system32\dllcache\ngrpci.sys

+ 2010-06-18 16:22 . 2001-08-17 16:11 65278 c:\windows\system32\dllcache\netflx3.sys

+ 2010-06-18 16:22 . 2001-08-17 16:50 39264 c:\windows\system32\dllcache\neo20xx.sys

+ 2010-06-18 16:22 . 2001-08-18 02:36 60480 c:\windows\system32\dllcache\neo20xx.dll

+ 2010-06-18 16:22 . 2001-08-17 17:49 15872 c:\windows\system32\dllcache\ne2000.sys

+ 2008-04-14 00:26 . 2008-04-14 09:51 14592 c:\windows\system32\dllcache\ndisuio.sys

+ 2010-06-18 16:22 . 2001-08-17 18:56 91488 c:\windows\system32\dllcache\n9i3disp.dll

+ 2010-06-18 16:22 . 2001-08-17 16:50 27936 c:\windows\system32\dllcache\n9i3d.sys

+ 2010-06-18 16:22 . 2001-08-17 16:50 33088 c:\windows\system32\dllcache\n9i128v2.sys

+ 2010-06-18 16:21 . 2001-08-17 16:50 13664 c:\windows\system32\dllcache\n9i128.sys

+ 2010-06-18 16:21 . 2001-08-17 18:56 35392 c:\windows\system32\dllcache\n9i128.dll

+ 2010-06-18 16:21 . 2001-08-17 16:11 52255 c:\windows\system32\dllcache\n1000nt5.sys

+ 2010-06-18 16:21 . 2001-08-17 17:50 75520 c:\windows\system32\dllcache\mxport.sys

+ 2010-06-18 16:21 . 2001-08-17 17:49 19968 c:\windows\system32\dllcache\mxnic.sys

+ 2010-06-18 16:21 . 2001-08-18 02:36 19968 c:\windows\system32\dllcache\mxicfg.dll

+ 2010-06-18 16:21 . 2001-08-17 17:50 21888 c:\windows\system32\dllcache\mxcard.sys

+ 2010-06-18 16:21 . 2008-04-14 04:13 12672 c:\windows\system32\dllcache\mutohpen.sys

+ 2010-06-18 16:21 . 2008-04-14 04:16 49024 c:\windows\system32\dllcache\mstape.sys

+ 2008-04-14 00:06 . 2008-04-14 09:51 15488 c:\windows\system32\dllcache\mssmbios.sys

+ 2010-06-18 16:21 . 2001-08-17 17:48 12416 c:\windows\system32\dllcache\msriffwv.sys

+ 2010-06-18 16:21 . 2008-04-14 04:24 22016 c:\windows\system32\dllcache\msircomm.sys

+ 2008-11-13 03:45 . 2002-09-03 16:25 98304 c:\windows\system32\dllcache\msir3jp.dll

- 2008-11-13 03:45 . 2004-08-12 13:58 98304 c:\windows\system32\dllcache\msir3jp.dll

+ 2010-06-18 16:21 . 2001-08-17 18:02 35200 c:\windows\system32\dllcache\msgame.sys

+ 2010-06-18 16:21 . 2008-04-14 04:16 51200 c:\windows\system32\dllcache\msdv.sys

+ 2010-06-18 16:21 . 2001-08-17 17:52 17280 c:\windows\system32\dllcache\mraid35x.sys

+ 2001-08-17 13:48 . 2004-08-12 13:57 12160 c:\windows\system32\dllcache\mouhid.sys

+ 2008-04-14 00:09 . 2008-04-14 09:51 23040 c:\windows\system32\dllcache\mouclass.sys

+ 2010-06-18 16:21 . 2001-08-17 17:57 16128 c:\windows\system32\dllcache\modemcsa.sys

+ 2008-04-14 00:30 . 2008-04-14 09:51 30080 c:\windows\system32\dllcache\modem.sys

+ 2004-08-12 13:59 . 2002-09-03 16:41 34304 c:\windows\system32\dllcache\migisol.exe

- 2004-08-12 13:59 . 2004-08-12 13:59 34304 c:\windows\system32\dllcache\migisol.exe

- 2008-11-13 03:45 . 2004-08-12 13:59 92416 c:\windows\system32\dllcache\mga.sys

+ 2008-11-13 03:45 . 2002-09-03 16:41 92416 c:\windows\system32\dllcache\mga.sys

+ 2008-11-13 03:45 . 2002-09-03 16:41 92032 c:\windows\system32\dllcache\mga.dll

- 2008-11-13 03:45 . 2004-08-12 13:59 92032 c:\windows\system32\dllcache\mga.dll

+ 2010-06-18 16:20 . 2008-04-14 04:11 26112 c:\windows\system32\dllcache\memstpci.sys

+ 2010-06-18 16:20 . 2001-08-18 02:36 47616 c:\windows\system32\dllcache\memgrp.dll

+ 2010-06-18 16:20 . 2001-08-17 16:19 48768 c:\windows\system32\dllcache\maestro.sys

+ 2010-06-18 16:20 . 2001-08-18 02:36 58880 c:\windows\system32\dllcache\m3092dc.dll

+ 2010-06-18 16:20 . 2001-08-18 02:36 58368 c:\windows\system32\dllcache\m3091dc.dll

+ 2010-06-18 16:20 . 2001-08-17 16:49 22848 c:\windows\system32\dllcache\lwusbhid.sys

+ 2010-06-18 16:20 . 2008-04-14 02:09 20864 c:\windows\system32\dllcache\lwadihid.sys

+ 2010-06-18 16:20 . 2001-08-17 16:12 70730 c:\windows\system32\dllcache\lne100tx.sys

+ 2010-06-18 16:20 . 2001-08-17 16:12 20573 c:\windows\system32\dllcache\lne100.sys

+ 2010-06-18 16:20 . 2001-08-17 16:11 25065 c:\windows\system32\dllcache\lmndis3.sys

+ 2010-06-18 16:20 . 2001-08-17 17:51 15744 c:\windows\system32\dllcache\lit220p.sys

+ 2010-06-18 16:20 . 2008-04-14 04:10 34688 c:\windows\system32\dllcache\lbrtfdc.sys

+ 2010-06-18 16:20 . 2001-08-17 16:12 26442 c:\windows\system32\dllcache\lanepic5.sys

+ 2010-06-18 16:20 . 2001-08-17 16:12 19016 c:\windows\system32\dllcache\ktc111.sys

+ 2010-06-18 16:20 . 2001-08-18 02:36 37376 c:\windows\system32\dllcache\kousd.dll

- 2008-11-13 03:45 . 2004-08-12 13:58 70656 c:\windows\system32\dllcache\korwbrkr.dll

+ 2008-11-13 03:45 . 2002-09-03 16:25 70656 c:\windows\system32\dllcache\korwbrkr.dll

+ 2010-06-18 16:20 . 2008-04-14 09:41 48640 c:\windows\system32\dllcache\kdsui.dll

+ 2008-04-14 04:09 . 2008-04-14 04:09 14592 c:\windows\system32\dllcache\kbdhid.sys

- 2008-11-13 03:44 . 2004-08-12 13:58 18432 c:\windows\system32\dllcache\jupiw.dll

+ 2008-11-13 03:44 . 2002-09-03 16:37 18432 c:\windows\system32\dllcache\jupiw.dll

+ 2010-06-18 16:19 . 2001-08-17 17:49 26624 c:\windows\system32\dllcache\irstusb.sys

+ 2010-06-18 16:19 . 2001-08-17 17:51 18688 c:\windows\system32\dllcache\irsir.sys

+ 2010-06-18 16:19 . 2008-04-14 09:41 28160 c:\windows\system32\dllcache\irmon.dll

+ 2010-06-18 16:19 . 2001-08-17 17:49 23552 c:\windows\system32\dllcache\irmk7.sys

+ 2010-06-18 16:19 . 2008-04-14 04:24 88192 c:\windows\system32\dllcache\irda.sys

+ 2010-06-18 16:19 . 2001-08-17 16:12 45632 c:\windows\system32\dllcache\ip5515.sys

+ 2010-06-18 16:19 . 2001-08-18 02:36 90200 c:\windows\system32\dllcache\io8ports.dll

+ 2010-06-18 16:19 . 2001-08-17 17:50 38784 c:\windows\system32\dllcache\io8.sys

+ 2008-04-14 04:01 . 2008-04-14 04:01 36352 c:\windows\system32\dllcache\intelppm.sys

+ 2010-06-18 16:19 . 2001-08-17 17:47 13056 c:\windows\system32\dllcache\inport.sys

+ 2010-06-18 16:19 . 2001-08-17 17:52 16000 c:\windows\system32\dllcache\ini910u.sys

- 2008-11-13 03:44 . 2008-04-14 02:13 59392 c:\windows\system32\dllcache\imscinst.exe

+ 2008-11-13 03:44 . 2002-09-03 16:25 59392 c:\windows\system32\dllcache\imscinst.exe

+ 2008-11-13 03:44 . 2002-09-03 16:25 59904 c:\windows\system32\dllcache\imkrinst.exe

- 2008-11-13 03:44 . 2004-08-12 13:58 59904 c:\windows\system32\dllcache\imkrinst.exe

+ 2008-11-13 03:44 . 2002-09-03 16:25 45109 c:\windows\system32\dllcache\imjpuex.exe

- 2008-11-13 03:44 . 2004-08-12 13:58 45109 c:\windows\system32\dllcache\imjpuex.exe

+ 2008-11-13 03:44 . 2002-09-03 16:24 57398 c:\windows\system32\dllcache\imjpdadm.exe

- 2008-11-13 03:44 . 2004-08-12 13:58 57398 c:\windows\system32\dllcache\imjpdadm.exe

- 2008-11-13 03:44 . 2004-08-12 13:58 44032 c:\windows\system32\dllcache\imekrmig.exe

+ 2008-11-13 03:44 . 2002-09-03 16:24 44032 c:\windows\system32\dllcache\imekrmig.exe

+ 2008-04-14 04:11 . 2008-04-14 04:11 42112 c:\windows\system32\dllcache\imapi.sys

+ 2010-06-18 16:19 . 2001-08-18 02:36 20480 c:\windows\system32\dllcache\icam5ext.dll

+ 2010-06-18 16:19 . 2001-08-18 02:36 45056 c:\windows\system32\dllcache\icam5com.dll

+ 2010-06-18 16:19 . 2001-08-18 02:36 61952 c:\windows\system32\dllcache\icam4ext.dll

+ 2010-06-18 16:19 . 2001-08-18 02:36 91136 c:\windows\system32\dllcache\icam4com.dll

+ 2010-06-18 16:19 . 2001-08-18 02:36 26624 c:\windows\system32\dllcache\icam3ext.dll

+ 2010-06-18 16:19 . 2001-08-17 18:06 38528 c:\windows\system32\dllcache\ibmvcap.sys

+ 2010-06-18 16:19 . 2001-08-17 16:11 28700 c:\windows\system32\dllcache\ibmexmp.sys

+ 2008-04-14 04:48 . 2008-04-14 04:48 52480 c:\windows\system32\dllcache\i8042prt.sys

+ 2010-06-18 16:19 . 2001-08-17 16:49 58592 c:\windows\system32\dllcache\i740nt5.sys

+ 2010-06-18 16:19 . 2008-04-14 04:11 18560 c:\windows\system32\dllcache\i2omp.sys

+ 2010-06-18 16:18 . 2008-04-14 09:41 32285 c:\windows\system32\dllcache\hsfcisp2.dll

+ 2010-06-18 16:18 . 2001-08-17 17:28 50751 c:\windows\system32\dllcache\hsf_tone.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 73279 c:\windows\system32\dllcache\hsf_spkp.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 44863 c:\windows\system32\dllcache\hsf_soar.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 57471 c:\windows\system32\dllcache\hsf_samp.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 67167 c:\windows\system32\dllcache\hsf_bsc2.sys

+ 2010-06-18 16:18 . 2001-08-18 02:36 19456 c:\windows\system32\dllcache\hr1w.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 13312 c:\windows\system32\dllcache\hpsjmcro.dll

+ 2010-06-18 16:18 . 2001-08-17 18:07 25952 c:\windows\system32\dllcache\hpn.sys

+ 2010-06-18 16:18 . 2001-08-18 02:36 32768 c:\windows\system32\dllcache\hpgtmcro.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 68608 c:\windows\system32\dllcache\hpgt53tk.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 31232 c:\windows\system32\dllcache\hpgt42tk.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 93696 c:\windows\system32\dllcache\hpgt42.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 48128 c:\windows\system32\dllcache\hpgt33tk.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 89088 c:\windows\system32\dllcache\hpgt33.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 83968 c:\windows\system32\dllcache\hpgt21.dll

+ 2008-04-14 04:15 . 2008-04-14 04:15 10368 c:\windows\system32\dllcache\hidusb.sys

+ 2010-06-18 16:18 . 2008-04-14 09:41 21504 c:\windows\system32\dllcache\hidserv.dll

+ 2008-04-14 04:15 . 2008-04-14 04:15 24960 c:\windows\system32\dllcache\hidparse.sys

+ 2010-06-18 16:18 . 2008-04-14 04:15 19200 c:\windows\system32\dllcache\hidir.sys

+ 2008-04-14 04:15 . 2008-04-14 04:15 36864 c:\windows\system32\dllcache\hidclass.sys

+ 2010-06-18 16:17 . 2008-04-14 04:16 25600 c:\windows\system32\dllcache\hidbth.sys

+ 2010-06-18 16:17 . 2008-04-14 04:06 20352 c:\windows\system32\dllcache\hidbatt.sys

+ 2008-04-14 05:41 . 2008-04-14 09:51 20992 c:\windows\system32\dllcache\hid.dll

+ 2008-11-13 03:44 . 2002-09-03 16:24 36864 c:\windows\system32\dllcache\hanjadic.dll

- 2008-11-13 03:44 . 2004-08-12 13:58 36864 c:\windows\system32\dllcache\hanjadic.dll

+ 2010-06-18 16:17 . 2008-04-14 04:10 28288 c:\windows\system32\dllcache\grserial.sys

+ 2010-06-18 16:17 . 2001-08-17 17:51 82304 c:\windows\system32\dllcache\grclass.sys

+ 2010-06-18 16:17 . 2001-08-17 17:51 17408 c:\windows\system32\dllcache\gpr400.sys

+ 2010-06-18 16:17 . 2008-04-14 04:15 59136 c:\windows\system32\dllcache\gckernel.sys

+ 2010-06-18 16:17 . 2008-04-14 04:15 10624 c:\windows\system32\dllcache\gameenum.sys

+ 2010-06-18 16:17 . 2008-04-14 04:06 46464 c:\windows\system32\dllcache\gagp30kx.sys

- 2008-11-13 03:44 . 2004-08-12 13:57 11264 c:\windows\system32\dllcache\fxssend.exe

+ 2008-11-13 03:44 . 2002-09-03 16:33 11264 c:\windows\system32\dllcache\fxssend.exe

+ 2008-11-13 03:44 . 2002-09-03 16:33 31744 c:\windows\system32\dllcache\fxsroute.dll

- 2008-11-13 03:44 . 2004-08-12 13:57 31744 c:\windows\system32\dllcache\fxsroute.dll

+ 2010-06-18 16:17 . 2001-08-18 02:36 92160 c:\windows\system32\dllcache\fuusd.dll

- 2008-11-13 03:44 . 2003-03-24 21:52 94208 c:\windows\system32\dllcache\fpencode.dll

+ 2008-11-13 03:44 . 2002-05-14 16:08 94208 c:\windows\system32\dllcache\fpencode.dll

+ 2008-11-13 03:44 . 2002-05-14 16:08 14608 c:\windows\system32\dllcache\fp98sadm.exe

- 2008-11-13 03:44 . 2003-03-24 21:52 14608 c:\windows\system32\dllcache\fp98sadm.exe

+ 2010-06-18 16:17 . 2008-04-14 02:05 34173 c:\windows\system32\dllcache\forehe.sys

+ 2010-06-18 16:17 . 2001-08-18 02:36 71680 c:\windows\system32\dllcache\fnfilter.dll

+ 2008-04-14 04:10 . 2008-04-14 04:10 20480 c:\windows\system32\dllcache\flpydisk.sys

- 2008-11-13 03:44 . 2004-08-12 13:57 14848 c:\windows\system32\dllcache\flattemp.exe

+ 2008-11-13 03:44 . 2002-09-03 16:33 14848 c:\windows\system32\dllcache\flattemp.exe

+ 2010-06-18 16:17 . 2001-08-17 16:13 27165 c:\windows\system32\dllcache\fetnd5.sys

+ 2010-06-18 16:17 . 2001-08-17 16:10 22090 c:\windows\system32\dllcache\fem556n5.sys

+ 2008-04-14 04:10 . 2008-04-14 04:10 27392 c:\windows\system32\dllcache\fdc.sys

+ 2010-06-18 16:17 . 2001-08-17 16:12 24618 c:\windows\system32\dllcache\fa410nd5.sys

+ 2010-06-18 16:17 . 2001-08-17 16:12 16074 c:\windows\system32\dllcache\fa312nd5.sys

+ 2010-06-18 16:17 . 2001-08-17 16:11 11850 c:\windows\system32\dllcache\f3ab18xj.sys

+ 2010-06-18 16:17 . 2001-08-17 16:11 12362 c:\windows\system32\dllcache\f3ab18xi.sys

- 2008-11-13 03:45 . 2001-08-18 03:36 12288 c:\windows\system32\dllcache\EXCH_smtpctrs.dll

+ 2008-11-13 03:45 . 2001-08-18 02:36 12288 c:\windows\system32\dllcache\EXCH_smtpctrs.dll

+ 2008-11-13 03:45 . 2001-08-18 02:36 26112 c:\windows\system32\dllcache\EXCH_seos.dll

- 2008-11-13 03:45 . 2001-08-18 03:36 26112 c:\windows\system32\dllcache\EXCH_seos.dll

- 2008-11-13 03:45 . 2001-08-18 03:36 57856 c:\windows\system32\dllcache\EXCH_scripto.dll

+ 2008-11-13 03:45 . 2001-08-18 02:36 57856 c:\windows\system32\dllcache\EXCH_scripto.dll

+ 2008-11-13 03:45 . 2001-08-18 02:36 23040 c:\windows\system32\dllcache\EXCH_regtrace.exe

- 2008-11-13 03:45 . 2001-08-18 03:36 23040 c:\windows\system32\dllcache\EXCH_regtrace.exe

+ 2008-11-13 03:45 . 2001-08-18 02:36 38912 c:\windows\system32\dllcache\EXCH_ntfsdrv.dll

- 2008-11-13 03:45 . 2001-08-18 03:36 38912 c:\windows\system32\dllcache\EXCH_ntfsdrv.dll

- 2008-11-13 03:45 . 2001-08-18 03:36 65536 c:\windows\system32\dllcache\EXCH_mailmsg.dll

+ 2008-11-13 03:45 . 2001-08-18 02:36 65536 c:\windows\system32\dllcache\EXCH_mailmsg.dll

+ 2008-11-13 03:44 . 2001-08-18 02:36 43520 c:\windows\system32\dllcache\EXCH_fcachdll.dll

- 2008-11-13 03:44 . 2001-08-18 03:36 43520 c:\windows\system32\dllcache\EXCH_fcachdll.dll

+ 2008-11-13 03:44 . 2001-08-18 02:36 45056 c:\windows\system32\dllcache\EXCH_aqadmin.dll

- 2008-11-13 03:44 . 2001-08-18 03:36 45056 c:\windows\system32\dllcache\EXCH_aqadmin.dll

+ 2010-06-18 16:17 . 2001-08-17 16:12 16998 c:\windows\system32\dllcache\ex10.sys

+ 2008-11-13 03:44 . 2002-09-03 16:32 25856 c:\windows\system32\dllcache\et4000.sys

- 2008-11-13 03:44 . 2004-08-12 13:57 25856 c:\windows\system32\dllcache\et4000.sys

- 2008-11-13 03:44 . 2004-08-12 13:57 45056 c:\windows\system32\dllcache\esunid.dll

+ 2008-11-13 03:44 . 2002-09-03 16:32 45056 c:\windows\system32\dllcache\esunid.dll

+ 2010-06-18 16:17 . 2001-08-18 02:36 45568 c:\windows\system32\dllcache\esunib.dll

+ 2010-06-18 16:17 . 2001-08-18 02:36 45568 c:\windows\system32\dllcache\esuni.dll

+ 2008-11-13 03:44 . 2002-09-03 16:32 57856 c:\windows\system32\dllcache\esuimgd.dll

- 2008-11-13 03:44 . 2004-08-12 13:57 57856 c:\windows\system32\dllcache\esuimgd.dll

+ 2010-06-18 16:17 . 2001-08-18 02:36 34816 c:\windows\system32\dllcache\esuimg.dll

+ 2008-11-13 03:44 . 2002-09-03 16:32 31744 c:\windows\system32\dllcache\esucmd.dll

- 2008-11-13 03:44 . 2004-08-12 13:57 31744 c:\windows\system32\dllcache\esucmd.dll

+ 2010-06-18 16:17 . 2001-08-18 02:36 43008 c:\windows\system32\dllcache\esucm.dll

+ 2010-06-18 16:17 . 2001-08-17 16:19 63360 c:\windows\system32\dllcache\ess.sys

+ 2010-06-18 16:16 . 2001-08-17 16:19 72192 c:\windows\system32\dllcache\es1969.sys

+ 2010-06-18 16:16 . 2001-08-17 16:19 40704 c:\windows\system32\dllcache\es1371mp.sys

+ 2010-06-18 16:16 . 2001-08-17 16:19 37120 c:\windows\system32\dllcache\es1370mp.sys

+ 2010-06-18 16:16 . 2001-08-18 02:36 61952 c:\windows\system32\dllcache\eqnloop.exe

+ 2010-06-18 16:16 . 2001-08-18 02:36 51200 c:\windows\system32\dllcache\eqnlogr.exe

+ 2010-06-18 16:16 . 2001-08-18 02:36 53248 c:\windows\system32\dllcache\eqndiag.exe

+ 2010-06-18 16:16 . 2001-08-17 16:12 18503 c:\windows\system32\dllcache\epro4.sys

+ 2010-06-18 16:16 . 2001-08-17 16:10 19996 c:\windows\system32\dllcache\em556n4.sys

+ 2010-06-18 16:16 . 2001-08-17 16:10 25159 c:\windows\system32\dllcache\elnk3.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 70174 c:\windows\system32\dllcache\el98xn5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 66591 c:\windows\system32\dllcache\el90xbc5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 77386 c:\windows\system32\dllcache\el656nd5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 69194 c:\windows\system32\dllcache\el656cd5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:10 26141 c:\windows\system32\dllcache\el589nd5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:10 69692 c:\windows\system32\dllcache\el575nd5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:10 24653 c:\windows\system32\dllcache\el574nd4.sys

+ 2010-06-18 16:16 . 2001-08-17 16:10 55999 c:\windows\system32\dllcache\el556nd5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:10 44103 c:\windows\system32\dllcache\el515.sys

+ 2010-06-18 16:16 . 2001-08-17 16:12 19594 c:\windows\system32\dllcache\e100isa4.sys

+ 2010-06-18 16:16 . 2001-08-17 16:12 50719 c:\windows\system32\dllcache\e1000nt5.sys

+ 2008-04-14 04:08 . 2008-04-14 04:08 71168 c:\windows\system32\dllcache\dxg.sys

+ 2010-06-18 16:16 . 2001-08-17 18:07 20192 c:\windows\system32\dllcache\dpti2o.sys

+ 2010-06-18 16:16 . 2001-08-17 16:12 28062 c:\windows\system32\dllcache\dp83820.sys

+ 2010-06-18 16:16 . 2001-08-17 17:47 23808 c:\windows\system32\dllcache\dot4usb.sys

+ 2010-06-18 16:16 . 2001-08-17 17:47 12928 c:\windows\system32\dllcache\dot4prt.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 29696 c:\windows\system32\dllcache\dm9pci5.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 26698 c:\windows\system32\dllcache\dlh5xnd5.sys

+ 2010-06-18 16:16 . 2001-08-18 02:36 29768 c:\windows\system32\dllcache\divasu.dll

+ 2010-06-18 16:16 . 2001-08-18 02:36 37962 c:\windows\system32\dllcache\divaprop.dll

+ 2010-06-18 16:16 . 2001-08-18 02:36 38985 c:\windows\system32\dllcache\disrvsu.dll

+ 2010-06-18 16:16 . 2001-08-18 02:36 31305 c:\windows\system32\dllcache\disrvpp.dll

+ 2010-06-18 16:16 . 2001-08-17 16:13 91305 c:\windows\system32\dllcache\dimaint.sys

+ 2010-06-18 16:16 . 2001-08-17 16:17 42432 c:\windows\system32\dllcache\digirlpt.sys

+ 2010-06-18 16:15 . 2001-08-17 16:14 21606 c:\windows\system32\dllcache\digiisdn.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 41046 c:\windows\system32\dllcache\digiisdn.dll

+ 2010-06-18 16:15 . 2001-08-17 16:17 90525 c:\windows\system32\dllcache\digifep5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 37735 c:\windows\system32\dllcache\digiasyn.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 65622 c:\windows\system32\dllcache\digiasyn.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 32256 c:\windows\system32\dllcache\diapi2NT.dll

+ 2010-06-18 16:15 . 2001-08-17 16:17 29531 c:\windows\system32\dllcache\dgapci.sys

+ 2010-06-18 16:15 . 2001-08-17 16:11 24649 c:\windows\system32\dllcache\dfe650d.sys

+ 2010-06-18 16:15 . 2001-08-17 16:11 24648 c:\windows\system32\dllcache\dfe650.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 24064 c:\windows\system32\dllcache\devldr32.exe

+ 2010-06-18 16:15 . 2001-08-17 16:11 20928 c:\windows\system32\dllcache\defpa.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 86016 c:\windows\system32\dllcache\dc240usd.dll

+ 2010-06-18 16:15 . 2001-08-17 16:12 63208 c:\windows\system32\dllcache\dc21x4.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 80896 c:\windows\system32\dllcache\dc210usd.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 25600 c:\windows\system32\dllcache\dc210_32.dll

+ 2010-06-18 16:15 . 2001-08-17 17:52 14720 c:\windows\system32\dllcache\dac960nt.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 27648 c:\windows\system32\dllcache\cyzports.dll

+ 2010-06-18 16:15 . 2001-08-17 17:50 49792 c:\windows\system32\dllcache\cyzport.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 27136 c:\windows\system32\dllcache\cyzcoins.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 27648 c:\windows\system32\dllcache\cyyports.dll

+ 2010-06-18 16:15 . 2001-08-17 17:50 50176 c:\windows\system32\dllcache\cyyport.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 28672 c:\windows\system32\dllcache\cyycoins.dll

+ 2010-06-18 16:15 . 2001-08-17 17:50 14848 c:\windows\system32\dllcache\cyclom-y.sys

+ 2010-06-18 16:15 . 2001-08-17 17:50 17152 c:\windows\system32\dllcache\cyclad-z.sys

+ 2010-06-18 16:15 . 2008-04-14 02:06 48640 c:\windows\system32\dllcache\cwrwdm.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 93952 c:\windows\system32\dllcache\cwcwdm.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 72832 c:\windows\system32\dllcache\cwbwdm.sys

+ 2008-11-13 03:42 . 2008-04-14 09:41 33792 c:\windows\system32\dllcache\custsat.dll

- 2008-11-13 03:42 . 2007-08-13 22:54 33792 c:\windows\system32\dllcache\custsat.dll

+ 2010-06-18 16:15 . 2001-08-17 16:19 96256 c:\windows\system32\dllcache\ctlsb16.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 42112 c:\windows\system32\dllcache\crtaud.sys

+ 2008-11-13 03:44 . 2002-09-03 16:29 18944 c:\windows\system32\dllcache\cprofile.exe

- 2008-11-13 03:44 . 2004-08-12 13:56 18944 c:\windows\system32\dllcache\cprofile.exe

+ 2010-06-18 16:15 . 2001-08-17 16:11 60970 c:\windows\system32\dllcache\cpqtrnd5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 21533 c:\windows\system32\dllcache\cpqndis5.sys

+ 2010-06-18 16:15 . 2001-08-17 17:52 14976 c:\windows\system32\dllcache\cpqarray.sys

+ 2010-06-18 16:15 . 2008-04-14 04:06 10240 c:\windows\system32\dllcache\compbatt.sys

+ 2010-06-18 16:15 . 2001-08-17 16:11 39936 c:\windows\system32\dllcache\cnxt1803.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 44032 c:\windows\system32\dllcache\cnusd.dll

+ 2008-04-14 05:41 . 2008-04-14 09:51 47104 c:\windows\system32\dllcache\cnbjmon.dll

+ 2010-06-18 16:15 . 2001-08-17 17:51 20736 c:\windows\system32\dllcache\cmbp0wdm.sys

+ 2010-06-18 16:15 . 2008-04-14 04:06 13952 c:\windows\system32\dllcache\cmbatt.sys

+ 2010-06-18 16:15 . 2001-08-17 17:57 45696 c:\windows\system32\dllcache\cirrus.sys

+ 2010-06-18 16:15 . 2001-08-17 18:56 91264 c:\windows\system32\dllcache\cirrus.dll

- 2008-11-13 03:44 . 2004-08-12 13:56 14336 c:\windows\system32\dllcache\chgusr.exe

+ 2008-11-13 03:44 . 2002-09-03 16:28 14336 c:\windows\system32\dllcache\chgusr.exe

- 2008-11-13 03:44 . 2004-08-12 13:56 15872 c:\windows\system32\dllcache\chgport.exe

+ 2008-11-13 03:44 . 2002-09-03 16:28 15872 c:\windows\system32\dllcache\chgport.exe

- 2008-11-13 03:44 . 2004-08-12 13:56 13312 c:\windows\system32\dllcache\chglogon.exe

+ 2008-11-13 03:44 . 2002-09-03 16:28 13312 c:\windows\system32\dllcache\chglogon.exe

+ 2010-06-18 16:15 . 2008-04-14 09:41 15423 c:\windows\system32\dllcache\ch7xxnt5.dll

+ 2010-06-18 16:15 . 2001-08-17 16:13 49182 c:\windows\system32\dllcache\cem56n5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 22044 c:\windows\system32\dllcache\cem33n5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 22044 c:\windows\system32\dllcache\cem28n5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 27164 c:\windows\system32\dllcache\ce3n5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 21530 c:\windows\system32\dllcache\ce2n5.sys

+ 2008-04-14 04:10 . 2010-03-24 23:52 62976 c:\windows\system32\dllcache\cdrom.sys

+ 2001-08-17 13:52 . 2004-08-12 13:57 18688 c:\windows\system32\dllcache\cdaudio.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 46108 c:\windows\system32\dllcache\cben5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:12 39680 c:\windows\system32\dllcache\cb325.sys

+ 2010-06-18 16:15 . 2001-08-17 16:12 37916 c:\windows\system32\dllcache\cb102.sys

- 2008-11-13 03:44 . 2004-08-12 13:55 54528 c:\windows\system32\dllcache\cap7146.sys

+ 2008-11-13 03:44 . 2002-09-03 16:28 54528 c:\windows\system32\dllcache\cap7146.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 74240 c:\windows\system32\dllcache\camexo20.dll

+ 2010-06-18 16:14 . 2001-08-17 17:51 13824 c:\windows\system32\dllcache\bulltlp3.sys

+ 2010-06-18 16:14 . 2008-04-14 04:16 18944 c:\windows\system32\dllcache\bthusb.sys

+ 2010-06-18 16:14 . 2008-04-14 04:16 36480 c:\windows\system32\dllcache\bthprint.sys

+ 2010-06-18 16:14 . 2008-04-14 04:16 37888 c:\windows\system32\dllcache\bthmodem.sys

+ 2010-06-18 16:14 . 2008-04-14 04:16 17024 c:\windows\system32\dllcache\bthenum.sys

+ 2010-06-18 16:14 . 2001-08-17 16:11 31529 c:\windows\system32\dllcache\brzwlan.sys

+ 2010-06-18 16:14 . 2001-08-17 17:12 10368 c:\windows\system32\dllcache\brusbscn.sys

+ 2010-06-18 16:14 . 2001-08-17 17:12 11008 c:\windows\system32\dllcache\brusbmdm.sys

+ 2010-06-18 16:14 . 2001-08-17 17:12 60416 c:\windows\system32\dllcache\brserwdm.sys

+ 2010-06-18 16:14 . 2001-08-17 17:12 39552 c:\windows\system32\dllcache\brparwdm.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 41472 c:\windows\system32\dllcache\brmfusb.dll

+ 2010-06-18 16:14 . 2001-08-18 02:36 32256 c:\windows\system32\dllcache\brmfrsmg.exe

+ 2010-06-18 16:14 . 2001-08-18 02:36 29696 c:\windows\system32\dllcache\brmflpt.dll

+ 2010-06-18 16:14 . 2001-08-18 02:36 81408 c:\windows\system32\dllcache\brmfcwia.dll

+ 2010-06-18 16:14 . 2001-08-18 02:36 15360 c:\windows\system32\dllcache\brmfbidi.dll

+ 2010-06-18 16:14 . 2001-08-17 17:12 12160 c:\windows\system32\dllcache\brfiltlo.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 12800 c:\windows\system32\dllcache\brevif.dll

+ 2010-06-18 16:14 . 2001-08-18 02:36 19456 c:\windows\system32\dllcache\brbidiif.dll

+ 2010-06-18 16:14 . 2001-08-17 16:11 26568 c:\windows\system32\dllcache\bcm4e5.sys

+ 2010-06-18 16:14 . 2001-08-17 16:11 54271 c:\windows\system32\dllcache\bcm42xx5.sys

+ 2010-06-18 16:14 . 2001-08-17 16:11 66557 c:\windows\system32\dllcache\bcm42u.sys

+ 2010-06-18 16:14 . 2008-04-14 04:06 14208 c:\windows\system32\dllcache\battc.sys

+ 2010-06-18 16:14 . 2001-08-17 16:48 36128 c:\windows\system32\dllcache\banshee.sys

+ 2010-06-18 16:14 . 2001-08-17 16:11 96640 c:\windows\system32\dllcache\b57xp32.sys

+ 2010-06-18 16:14 . 2001-08-17 16:13 89952 c:\windows\system32\dllcache\b1cbase.sys

+ 2010-06-18 16:14 . 2001-08-17 16:19 36992 c:\windows\system32\dllcache\aztw2320.sys

+ 2010-06-18 16:14 . 2001-08-17 16:13 37568 c:\windows\system32\dllcache\avmwan.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 87552 c:\windows\system32\dllcache\avmcoxp.dll

+ 2010-06-18 16:14 . 2008-04-14 04:16 13696 c:\windows\system32\dllcache\avcstrm.sys

+ 2010-06-18 16:14 . 2001-08-17 18:01 36096 c:\windows\system32\dllcache\avcaudio.sys

+ 2010-06-18 16:14 . 2008-04-14 04:16 38912 c:\windows\system32\dllcache\avc.sys

+ 2010-06-18 16:14 . 2008-04-14 09:41 17279 c:\windows\system32\dllcache\atv10nt5.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 14143 c:\windows\system32\dllcache\atv06nt5.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 25471 c:\windows\system32\dllcache\atv04nt5.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 11359 c:\windows\system32\dllcache\atv02nt5.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 21183 c:\windows\system32\dllcache\atv01nt5.dll

+ 2010-06-18 16:14 . 2001-08-17 16:49 23552 c:\windows\system32\dllcache\atixbar.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 26624 c:\windows\system32\dllcache\ativxbar.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 19456 c:\windows\system32\dllcache\ativttxx.sys

+ 2010-06-18 16:14 . 2008-04-14 09:41 32768 c:\windows\system32\dllcache\ativtmxx.dll

+ 2010-06-18 16:14 . 2001-08-17 16:49 17152 c:\windows\system32\dllcache\atitvsnd.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 17152 c:\windows\system32\dllcache\atitunep.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 26880 c:\windows\system32\dllcache\atirtsnd.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 49920 c:\windows\system32\dllcache\atirtcap.sys

+ 2010-06-18 16:14 . 2001-08-17 16:48 70528 c:\windows\system32\dllcache\atiragem.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 10240 c:\windows\system32\dllcache\atipcxxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 63488 c:\windows\system32\dllcache\atinxsxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 31744 c:\windows\system32\dllcache\atinxbxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 73216 c:\windows\system32\dllcache\atintuxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 13824 c:\windows\system32\dllcache\atinttxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 28672 c:\windows\system32\dllcache\atinsnxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 52224 c:\windows\system32\dllcache\atinraxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 14336 c:\windows\system32\dllcache\atinpdxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 13824 c:\windows\system32\dllcache\atinmdxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 57856 c:\windows\system32\dllcache\atinbtxx.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 75136 c:\windows\system32\dllcache\atimpae.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 37376 c:\windows\system32\dllcache\atievxx.exe

+ 2010-06-18 16:14 . 2001-08-17 16:49 46464 c:\windows\system32\dllcache\atibt829.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 34735 c:\windows\system32\dllcache\ati1xsxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 29455 c:\windows\system32\dllcache\ati1xbxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 36463 c:\windows\system32\dllcache\ati1tuxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 21343 c:\windows\system32\dllcache\ati1ttxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 26367 c:\windows\system32\dllcache\ati1snxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 63663 c:\windows\system32\dllcache\ati1rvxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 30671 c:\windows\system32\dllcache\ati1raxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 12047 c:\windows\system32\dllcache\ati1pdxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 11615 c:\windows\system32\dllcache\ati1mdxx.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 56623 c:\windows\system32\dllcache\ati1btxx.sys

+ 2010-06-18 16:14 . 2001-08-17 17:57 77568 c:\windows\system32\dllcache\ati.sys

+ 2010-06-18 16:14 . 2001-08-17 18:55 96128 c:\windows\system32\dllcache\ati.dll

+ 2010-06-18 16:14 . 2001-08-17 16:12 97354 c:\windows\system32\dllcache\aspndis3.sys

+ 2010-06-18 16:14 . 2001-08-17 17:51 14848 c:\windows\system32\dllcache\asc3550.sys

+ 2010-06-18 16:14 . 2001-08-17 17:52 22400 c:\windows\system32\dllcache\asc3350p.sys

+ 2010-06-18 16:14 . 2001-08-17 17:52 26496 c:\windows\system32\dllcache\asc.sys

+ 2010-06-18 16:13 . 2008-04-14 02:05 36224 c:\windows\system32\dllcache\an983.sys

+ 2010-06-18 16:13 . 2001-08-17 17:52 12032 c:\windows\system32\dllcache\amsint.sys

+ 2010-06-18 16:13 . 2008-04-14 04:06 43008 c:\windows\system32\dllcache\amdagp.sys

+ 2010-06-18 16:13 . 2001-08-17 16:11 16969 c:\windows\system32\dllcache\amb8002.sys

+ 2010-06-18 16:13 . 2008-04-14 04:06 42752 c:\windows\system32\dllcache\alim1541.sys

+ 2010-06-18 16:13 . 2001-08-17 17:49 26624 c:\windows\system32\dllcache\alifir.sys

+ 2010-06-18 16:13 . 2001-08-17 16:11 27678 c:\windows\system32\dllcache\ali5261.sys

+ 2010-06-18 16:13 . 2001-08-17 18:07 56960 c:\windows\system32\dllcache\aic78xx.sys

+ 2010-06-18 16:13 . 2001-08-17 18:07 55168 c:\windows\system32\dllcache\aic78u2.sys

+ 2010-06-18 16:13 . 2001-08-17 17:52 12800 c:\windows\system32\dllcache\aha154x.sys

+ 2010-06-18 16:13 . 2008-04-14 04:06 44928 c:\windows\system32\dllcache\agpcpq.sys

+ 2010-06-18 16:13 . 2008-04-14 04:06 42368 c:\windows\system32\dllcache\agp440.sys

+ 2010-06-18 16:13 . 2001-08-17 16:11 46112 c:\windows\system32\dllcache\adptsf50.sys

+ 2010-06-18 16:13 . 2008-04-14 02:06 10880 c:\windows\system32\dllcache\admjoy.sys

+ 2010-06-18 16:13 . 2001-08-17 16:11 20160 c:\windows\system32\dllcache\adm8511.sys

+ 2010-06-18 16:13 . 2001-08-18 02:36 61440 c:\windows\system32\dllcache\acerscad.dll

+ 2010-06-18 16:13 . 2008-04-14 02:06 84480 c:\windows\system32\dllcache\ac97via.sys

+ 2010-06-18 16:13 . 2001-08-17 16:20 96256 c:\windows\system32\dllcache\ac97intc.sys

+ 2010-06-18 16:13 . 2001-08-17 17:52 23552 c:\windows\system32\dllcache\abp480n5.sys

+ 2010-06-18 16:13 . 2001-08-18 02:36 98304 c:\windows\system32\dllcache\a3d.dll

+ 2010-06-18 16:13 . 2001-08-17 18:55 38400 c:\windows\system32\dllcache\8514a.dll

+ 2010-06-18 16:13 . 2008-04-14 04:16 48128 c:\windows\system32\dllcache\61883.sys

+ 2010-06-18 16:13 . 2008-04-14 04:10 12288 c:\windows\system32\dllcache\4mmdat.sys

+ 2010-06-18 16:13 . 2001-08-17 18:06 11264 c:\windows\system32\dllcache\1394vdbg.sys

+ 2010-06-18 16:30 . 2008-04-14 04:06 8832 c:\windows\system32\dllcache\wmiacpi.sys

+ 2010-06-18 16:30 . 2008-04-14 04:10 5376 c:\windows\system32\dllcache\viaide.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 7556 c:\windows\system32\dllcache\usroslba.sys

+ 2004-08-12 14:08 . 2004-08-12 14:08 4736 c:\windows\system32\dllcache\usbd.sys

+ 2010-06-18 16:28 . 2001-08-17 17:51 4992 c:\windows\system32\dllcache\toside.sys

+ 2010-06-18 16:28 . 2001-08-17 17:52 7040 c:\windows\system32\dllcache\tandqic.sys

+ 2010-06-18 16:27 . 2001-08-17 18:02 3968 c:\windows\system32\dllcache\swusbflt.sys

+ 2008-04-14 00:09 . 2008-04-14 09:51 4352 c:\windows\system32\dllcache\swenum.sys

+ 2010-06-18 16:27 . 2001-08-17 17:56 7552 c:\windows\system32\dllcache\sonypvu1.sys

+ 2010-06-18 16:27 . 2001-08-17 17:53 9600 c:\windows\system32\dllcache\sonymc.sys

+ 2010-06-18 16:27 . 2008-04-14 04:10 7552 c:\windows\system32\dllcache\sonyait.sys

- 2008-11-13 03:45 . 2004-08-12 14:05 5632 c:\windows\system32\dllcache\smimsgif.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 5632 c:\windows\system32\dllcache\smimsgif.dll

- 2008-11-13 03:45 . 2004-08-12 14:05 5632 c:\windows\system32\dllcache\smierrsy.dll

+ 2008-11-13 03:45 . 2002-09-03 17:02 5632 c:\windows\system32\dllcache\smierrsy.dll

+ 2010-06-18 16:26 . 2001-08-17 17:57 6784 c:\windows\system32\dllcache\smbhc.sys

+ 2010-06-18 16:26 . 2008-04-14 04:06 6912 c:\windows\system32\dllcache\smbclass.sys

+ 2010-06-18 16:26 . 2008-04-14 04:06 5888 c:\windows\system32\dllcache\smbali.sys

+ 2010-06-18 16:26 . 2008-04-14 09:42 3901 c:\windows\system32\dllcache\siint5.dll

+ 2010-06-18 16:25 . 2001-08-17 17:53 6784 c:\windows\system32\dllcache\serscan.sys

+ 2010-06-18 16:25 . 2001-08-17 17:53 6912 c:\windows\system32\dllcache\seaddsmc.sys

+ 2010-06-18 16:24 . 2001-08-18 02:36 9216 c:\windows\system32\dllcache\rsmgrstr.dll

+ 2010-06-18 16:24 . 2001-08-17 16:19 3840 c:\windows\system32\dllcache\rpfun.sys

+ 2010-06-18 16:24 . 2001-08-17 17:53 3328 c:\windows\system32\dllcache\qv2kux.sys

+ 2008-11-13 03:45 . 2002-09-03 16:53 9728 c:\windows\system32\dllcache\query.exe

- 2008-11-13 03:45 . 2004-08-12 14:03 9728 c:\windows\system32\dllcache\query.exe

+ 2010-06-18 16:24 . 2008-04-14 04:10 6016 c:\windows\system32\dllcache\qic157.sys

+ 2010-06-18 16:24 . 2001-08-18 02:36 5632 c:\windows\system32\dllcache\ptpusb.dll

+ 2010-06-18 16:23 . 2008-04-14 04:10 8832 c:\windows\system32\dllcache\powerfil.sys

+ 2010-06-18 16:23 . 2001-08-17 17:53 7168 c:\windows\system32\dllcache\pnrmc.sys

- 2008-11-13 03:45 . 2004-08-12 14:03 6144 c:\windows\system32\dllcache\pmxgl.dll

+ 2008-11-13 03:45 . 2002-09-03 16:52 6144 c:\windows\system32\dllcache\pmxgl.dll

+ 2010-06-18 16:23 . 2001-08-17 18:07 5504 c:\windows\system32\dllcache\perc2hib.sys

+ 2010-06-18 16:22 . 2001-08-17 17:47 9344 c:\windows\system32\dllcache\ntapm.sys

+ 2010-06-18 16:22 . 2001-08-17 17:53 7552 c:\windows\system32\dllcache\nsmmc.sys

+ 2010-06-18 16:21 . 2001-08-18 02:36 7168 c:\windows\system32\dllcache\mxport.dll

+ 2010-06-18 16:21 . 2001-08-17 18:00 2944 c:\windows\system32\dllcache\msmpu401.sys

+ 2010-06-18 16:21 . 2001-08-17 17:48 6016 c:\windows\system32\dllcache\msfsio.sys

+ 2010-06-18 16:21 . 2001-08-17 17:52 6528 c:\windows\system32\dllcache\miniqic.sys

+ 2010-06-18 16:20 . 2001-08-17 17:58 8320 c:\windows\system32\dllcache\memcard.sys

+ 2010-06-18 16:20 . 2001-08-17 17:52 7424 c:\windows\system32\dllcache\mammoth.sys

+ 2010-06-18 16:20 . 2008-04-14 04:10 7040 c:\windows\system32\dllcache\ltotape.sys

+ 2010-06-18 16:20 . 2001-08-17 17:53 4992 c:\windows\system32\dllcache\loop.sys

- 2008-11-13 03:45 . 2004-08-12 13:58 7680 c:\windows\system32\dllcache\kbdnecnt.dll

+ 2008-11-13 03:45 . 2002-09-03 16:38 7680 c:\windows\system32\dllcache\kbdnecnt.dll

- 2008-11-13 03:45 . 2004-08-12 13:58 9216 c:\windows\system32\dllcache\kbdnecat.dll

+ 2008-11-13 03:45 . 2002-09-03 16:38 9216 c:\windows\system32\dllcache\kbdnecat.dll

- 2008-11-13 03:45 . 2004-08-12 13:58 7168 c:\windows\system32\dllcache\kbdnec95.dll

+ 2008-11-13 03:45 . 2002-09-03 16:38 7168 c:\windows\system32\dllcache\kbdnec95.dll

+ 2010-06-18 16:20 . 2001-08-18 02:36 8192 c:\windows\system32\dllcache\kbdkor.dll

+ 2010-06-18 16:20 . 2001-08-18 02:36 8704 c:\windows\system32\dllcache\kbdjpn.dll

+ 2010-06-18 16:20 . 2008-04-14 09:39 6144 c:\windows\system32\dllcache\kbd106.dll

+ 2010-06-18 16:20 . 2001-08-17 18:55 5632 c:\windows\system32\dllcache\kbd103.dll

+ 2010-06-18 16:19 . 2001-08-17 18:55 6144 c:\windows\system32\dllcache\kbd101b.dll

- 2008-11-13 03:44 . 2004-08-12 13:58 6144 c:\windows\system32\dllcache\kbd101a.dll

+ 2008-11-13 03:44 . 2002-09-03 16:37 6144 c:\windows\system32\dllcache\kbd101a.dll

+ 2010-06-18 16:19 . 2008-04-14 04:10 5504 c:\windows\system32\dllcache\intelide.sys

+ 2010-06-18 16:19 . 2001-08-18 02:34 9216 c:\windows\system32\dllcache\ibmsgnet.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 9759 c:\windows\system32\dllcache\hsf_inst.dll

+ 2010-06-18 16:18 . 2001-08-17 17:52 5760 c:\windows\system32\dllcache\hpt4qic.sys

+ 2010-06-18 16:18 . 2001-08-17 18:02 2688 c:\windows\system32\dllcache\hidswvd.sys

- 2008-11-13 03:45 . 2001-08-18 03:36 7168 c:\windows\system32\dllcache\EXCH_snprfdll.dll

+ 2008-11-13 03:45 . 2001-08-18 02:36 7168 c:\windows\system32\dllcache\EXCH_snprfdll.dll

- 2008-11-13 03:44 . 2001-08-18 03:36 5632 c:\windows\system32\dllcache\EXCH_adsiisex.dll

+ 2008-11-13 03:44 . 2001-08-18 02:36 5632 c:\windows\system32\dllcache\EXCH_adsiisex.dll

+ 2010-06-18 16:17 . 2001-08-17 17:52 7040 c:\windows\system32\dllcache\exabyte2.sys

+ 2010-06-18 16:16 . 2001-08-17 17:53 7296 c:\windows\system32\dllcache\elmsmc.sys

+ 2010-06-18 16:16 . 2001-08-17 17:47 8704 c:\windows\system32\dllcache\dot4scan.sys

+ 2010-06-18 16:16 . 2008-04-14 04:10 8320 c:\windows\system32\dllcache\dlttape.sys

+ 2010-06-18 16:16 . 2001-08-18 02:36 6216 c:\windows\system32\dllcache\divaci.dll

+ 2010-06-18 16:16 . 2001-08-18 02:36 6729 c:\windows\system32\dllcache\disrvci.dll

+ 2010-06-18 16:15 . 2001-08-17 17:52 7424 c:\windows\system32\dllcache\ddsmc.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 3584 c:\windows\system32\dllcache\cwcosnt5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 3072 c:\windows\system32\dllcache\cwbmidi.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 3072 c:\windows\system32\dllcache\cwbase.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 4096 c:\windows\system32\dllcache\ctwdm32.dll

+ 2010-06-18 16:15 . 2001-08-17 16:19 3712 c:\windows\system32\dllcache\ctljystk.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 6912 c:\windows\system32\dllcache\ctlfacem.sys

+ 2010-06-18 16:15 . 2001-08-17 17:51 6656 c:\windows\system32\dllcache\cmdide.sys

+ 2010-06-18 16:15 . 2008-04-14 04:11 8192 c:\windows\system32\dllcache\changer.sys

- 2008-11-13 03:44 . 2004-08-12 13:56 9728 c:\windows\system32\dllcache\change.exe

+ 2008-11-13 03:44 . 2002-09-03 16:28 9728 c:\windows\system32\dllcache\change.exe

+ 2010-06-18 16:15 . 2001-08-17 17:52 7680 c:\windows\system32\dllcache\cd20xrnt.sys

+ 2008-11-13 03:44 . 2002-09-03 16:30 6656 c:\windows\system32\dllcache\c_is2022.dll

- 2008-11-13 03:44 . 2004-08-12 13:56 6656 c:\windows\system32\dllcache\c_is2022.dll

+ 2010-06-18 16:14 . 2001-08-18 02:36 9728 c:\windows\system32\dllcache\brserif.dll

+ 2010-06-18 16:14 . 2001-08-18 02:36 5120 c:\windows\system32\dllcache\brscnrsm.dll

+ 2010-06-18 16:14 . 2001-08-17 17:12 3168 c:\windows\system32\dllcache\brparimg.sys

+ 2010-06-18 16:14 . 2001-08-17 17:12 3968 c:\windows\system32\dllcache\brfiltup.sys

+ 2010-06-18 16:14 . 2001-08-17 17:12 2944 c:\windows\system32\dllcache\brfilt.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 9728 c:\windows\system32\dllcache\brcoinst.dll

+ 2008-11-12 22:39 . 2001-08-17 13:59 3072 c:\windows\system32\dllcache\audstub.sys

+ 2010-06-18 16:14 . 2001-08-17 16:49 9472 c:\windows\system32\dllcache\ativmdcd.sys

+ 2010-06-18 16:13 . 2001-08-17 17:51 5248 c:\windows\system32\dllcache\aliide.sys

+ 2010-06-18 16:13 . 2008-04-14 09:41 3775 c:\windows\system32\dllcache\adv11nt5.dll

+ 2010-06-18 16:13 . 2008-04-14 09:41 3711 c:\windows\system32\dllcache\adv09nt5.dll

+ 2010-06-18 16:13 . 2008-04-14 09:41 3135 c:\windows\system32\dllcache\adv08nt5.dll

+ 2010-06-18 16:13 . 2008-04-14 09:41 3647 c:\windows\system32\dllcache\adv07nt5.dll

+ 2010-06-18 16:13 . 2008-04-14 09:41 3615 c:\windows\system32\dllcache\adv05nt5.dll

+ 2010-06-18 16:13 . 2008-04-14 09:41 3967 c:\windows\system32\dllcache\adv02nt5.dll

+ 2010-06-18 16:13 . 2008-04-14 09:41 4255 c:\windows\system32\dllcache\adv01nt5.dll

+ 2010-06-18 16:13 . 2001-08-17 17:53 7424 c:\windows\system32\dllcache\adicvls.sys

+ 2008-04-14 05:42 . 2008-04-14 09:51 483840 c:\windows\system32\dllcache\wzcsvc.dll

+ 2010-06-18 16:30 . 2008-04-14 02:05 154624 c:\windows\system32\dllcache\wlluc48.sys

+ 2008-04-14 09:42 . 2008-04-14 09:42 146432 c:\windows\system32\dllcache\winspool.drv

- 2008-11-12 22:36 . 2008-04-14 09:42 146432 c:\windows\system32\dllcache\winspool.drv

+ 2010-06-18 16:30 . 2001-08-17 17:28 771581 c:\windows\system32\dllcache\winacisa.sys

+ 2010-06-18 16:30 . 2001-08-17 17:28 701386 c:\windows\system32\dllcache\wdhaalba.sys

+ 2010-06-18 16:30 . 2001-08-17 17:28 397502 c:\windows\system32\dllcache\vpctcom.sys

+ 2010-06-18 16:30 . 2001-08-17 17:28 604253 c:\windows\system32\dllcache\vmodem.sys

+ 2010-06-18 16:30 . 2001-08-17 16:14 249402 c:\windows\system32\dllcache\vinwm.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 687999 c:\windows\system32\dllcache\usrwdxjs.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 765884 c:\windows\system32\dllcache\usrti.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 113762 c:\windows\system32\dllcache\usrpda.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 224802 c:\windows\system32\dllcache\usr1807a.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 794399 c:\windows\system32\dllcache\usr1806v.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 793598 c:\windows\system32\dllcache\usr1806.sys

+ 2010-06-18 16:29 . 2001-08-17 17:28 794654 c:\windows\system32\dllcache\usr1801.sys

+ 2010-06-18 16:29 . 2008-04-14 04:16 121984 c:\windows\system32\dllcache\usbvideo.sys

+ 2010-06-18 16:29 . 2001-08-18 02:36 211968 c:\windows\system32\dllcache\um54scan.dll

+ 2010-06-18 16:29 . 2001-08-18 02:36 216064 c:\windows\system32\dllcache\um34scan.dll

+ 2010-06-18 16:28 . 2001-08-18 02:36 525568 c:\windows\system32\dllcache\tridxp.dll

+ 2010-06-18 16:28 . 2001-08-17 16:51 159232 c:\windows\system32\dllcache\tridkbm.sys

+ 2010-06-18 16:28 . 2001-08-17 18:56 440576 c:\windows\system32\dllcache\tridkb.dll

+ 2010-06-18 16:28 . 2001-08-17 16:51 222336 c:\windows\system32\dllcache\trid3dm.sys

+ 2010-06-18 16:28 . 2001-08-17 18:56 315520 c:\windows\system32\dllcache\trid3d.dll

+ 2010-06-18 16:28 . 2001-08-17 18:02 230912 c:\windows\system32\dllcache\tosdvd03.sys

+ 2010-06-18 16:28 . 2001-08-17 18:01 241664 c:\windows\system32\dllcache\tosdvd02.sys

+ 2010-06-18 16:28 . 2001-08-17 16:14 123995 c:\windows\system32\dllcache\tjisdn.sys

- 2008-11-13 03:45 . 2008-04-14 02:13 455168 c:\windows\system32\dllcache\tintsetp.exe

+ 2008-11-13 03:45 . 2002-09-03 16:26 455168 c:\windows\system32\dllcache\tintsetp.exe

+ 2010-06-18 16:28 . 2001-08-17 16:51 138528 c:\windows\system32\dllcache\tgiulnt5.sys

+ 2010-06-18 16:28 . 2008-04-14 04:10 149376 c:\windows\system32\dllcache\tffsport.sys

+ 2010-06-18 16:28 . 2001-08-17 18:56 172768 c:\windows\system32\dllcache\t2r4disp.dll

+ 2010-06-18 16:27 . 2001-08-17 17:50 103936 c:\windows\system32\dllcache\sx.sys

+ 2010-06-18 16:27 . 2001-08-18 02:36 155648 c:\windows\system32\dllcache\stlnprop.dll

+ 2010-06-18 16:27 . 2001-08-17 16:18 285760 c:\windows\system32\dllcache\stlnata.sys

- 2008-11-13 03:45 . 2004-08-12 14:06 101376 c:\windows\system32\dllcache\srusbusd.dll

+ 2008-11-13 03:45 . 2002-09-03 17:04 101376 c:\windows\system32\dllcache\srusbusd.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 106584 c:\windows\system32\dllcache\spdports.dll

+ 2010-06-18 16:27 . 2001-08-18 02:36 114688 c:\windows\system32\dllcache\sonypi.dll

+ 2008-11-13 03:45 . 2002-09-03 16:26 143422 c:\windows\system32\dllcache\softkey.dll

- 2008-11-13 03:45 . 2004-08-12 13:58 143422 c:\windows\system32\dllcache\softkey.dll

+ 2010-06-18 16:26 . 2001-08-17 18:56 147200 c:\windows\system32\dllcache\smidispb.dll

+ 2010-06-18 16:26 . 2008-04-14 03:53 404990 c:\windows\system32\dllcache\slntamr.sys

+ 2010-06-18 16:26 . 2008-04-14 03:53 129535 c:\windows\system32\dllcache\slnt7554.sys

+ 2010-06-18 16:26 . 2008-04-14 09:42 188508 c:\windows\system32\dllcache\slgen.dll

+ 2010-06-18 16:26 . 2008-04-14 09:42 286792 c:\windows\system32\dllcache\slextspk.dll

+ 2010-06-18 16:26 . 2001-08-17 18:56 157696 c:\windows\system32\dllcache\sisv256.dll

+ 2010-06-18 16:26 . 2001-08-18 02:36 238592 c:\windows\system32\dllcache\sisgrv.dll

+ 2010-06-18 16:26 . 2001-08-17 16:50 104064 c:\windows\system32\dllcache\sisgrp.sys

+ 2010-06-18 16:26 . 2001-08-17 18:56 150144 c:\windows\system32\dllcache\sis6306v.dll

+ 2010-06-18 16:26 . 2001-08-17 18:56 252032 c:\windows\system32\dllcache\sis300iv.dll

+ 2010-06-18 16:26 . 2001-08-17 16:50 101760 c:\windows\system32\dllcache\sis300ip.sys

+ 2010-06-18 16:26 . 2001-07-21 18:29 161568 c:\windows\system32\dllcache\sgsmusb.sys

+ 2010-06-18 16:25 . 2001-08-18 02:36 386560 c:\windows\system32\dllcache\sgiul50.dll

+ 2010-06-18 16:25 . 2001-08-18 02:36 495616 c:\windows\system32\dllcache\sblfx.dll

+ 2010-06-18 16:25 . 2001-08-17 18:56 245632 c:\windows\system32\dllcache\s3savmx.dll

+ 2010-06-18 16:25 . 2001-08-17 18:56 198400 c:\windows\system32\dllcache\s3sav4.dll

+ 2010-06-18 16:25 . 2001-08-17 18:56 179264 c:\windows\system32\dllcache\s3sav3d.dll

+ 2010-06-18 16:25 . 2001-08-17 18:56 210496 c:\windows\system32\dllcache\s3mvirge.dll

+ 2010-06-18 16:25 . 2001-08-17 18:56 182272 c:\windows\system32\dllcache\s3mt3d.dll

+ 2010-06-18 16:25 . 2001-08-17 16:50 166720 c:\windows\system32\dllcache\s3m.sys

+ 2010-06-18 16:25 . 2008-04-14 02:04 166912 c:\windows\system32\dllcache\s3gnbm.sys

+ 2010-06-18 16:25 . 2008-04-14 09:42 397056 c:\windows\system32\dllcache\s3gnb.dll

+ 2010-06-18 16:24 . 2001-08-17 17:28 714762 c:\windows\system32\dllcache\r2mdmkxx.sys

+ 2010-06-18 16:24 . 2001-08-17 17:28 899146 c:\windows\system32\dllcache\r2mdkxga.sys

+ 2010-06-18 16:24 . 2001-08-17 17:28 130942 c:\windows\system32\dllcache\ptserlv.sys

+ 2010-06-18 16:24 . 2001-08-17 17:28 112574 c:\windows\system32\dllcache\ptserlp.sys

+ 2010-06-18 16:24 . 2001-08-17 17:28 128286 c:\windows\system32\dllcache\ptserli.sys

+ 2010-06-18 16:24 . 2008-04-14 09:42 159232 c:\windows\system32\dllcache\ptpusd.dll

- 2008-11-13 03:45 . 2004-08-12 14:03 131584 c:\windows\system32\dllcache\pmxviceo.dll

+ 2008-11-13 03:45 . 2002-09-03 16:52 131584 c:\windows\system32\dllcache\pmxviceo.dll

+ 2010-06-18 16:23 . 2001-08-18 02:36 121344 c:\windows\system32\dllcache\phvfwext.dll

+ 2010-06-18 16:23 . 2001-08-17 18:04 173696 c:\windows\system32\dllcache\philcam2.sys

+ 2010-06-18 16:23 . 2008-04-14 09:40 259328 c:\windows\system32\dllcache\perm3dd.dll

+ 2010-06-18 16:23 . 2008-04-14 09:40 211584 c:\windows\system32\dllcache\perm2dll.dll

+ 2010-06-18 16:23 . 2008-04-14 01:42 169984 c:\windows\system32\dllcache\pcx500.sys

+ 2010-06-18 16:23 . 2001-08-17 18:05 351616 c:\windows\system32\dllcache\ovcodek2.sys

+ 2010-06-18 16:22 . 2001-08-17 16:50 198144 c:\windows\system32\dllcache\nv3.sys

+ 2010-06-18 16:22 . 2001-08-18 02:36 123776 c:\windows\system32\dllcache\nv3.dll

+ 2010-06-18 16:22 . 2008-04-14 03:53 180360 c:\windows\system32\dllcache\ntmtlfax.sys

+ 2010-06-18 16:22 . 2001-08-17 16:20 126080 c:\windows\system32\dllcache\nm5a2wdm.sys

+ 2010-06-18 16:22 . 2008-04-14 02:05 132695 c:\windows\system32\dllcache\netwlan5.sys

+ 2010-06-18 16:21 . 2001-08-17 16:11 128000 c:\windows\system32\dllcache\n100325.sys

+ 2008-11-13 03:45 . 2002-09-03 16:25 229439 c:\windows\system32\dllcache\multibox.dll

- 2008-11-13 03:45 . 2004-08-12 13:58 229439 c:\windows\system32\dllcache\multibox.dll

+ 2010-06-18 16:21 . 2001-08-17 16:50 103296 c:\windows\system32\dllcache\mtxvideo.sys

+ 2010-06-18 16:21 . 2008-04-14 02:04 452736 c:\windows\system32\dllcache\mtxparhm.sys

+ 2010-06-18 16:21 . 2008-04-14 03:53 126686 c:\windows\system32\dllcache\mtlmnt5.sys

- 2008-11-14 11:48 . 2010-02-24 13:11 455680 c:\windows\system32\dllcache\mrxsmb.sys

+ 2008-04-14 04:47 . 2010-02-24 13:11 455680 c:\windows\system32\dllcache\mrxsmb.sys

+ 2010-06-18 16:21 . 2001-08-17 16:50 320384 c:\windows\system32\dllcache\mgaum.sys

+ 2010-06-18 16:20 . 2001-08-17 16:12 164586 c:\windows\system32\dllcache\mdgndis5.sys

+ 2010-06-18 16:20 . 2001-08-17 17:28 797500 c:\windows\system32\dllcache\ltsmt.sys

+ 2010-06-18 16:20 . 2001-08-17 17:28 802683 c:\windows\system32\dllcache\ltsm.sys

+ 2010-06-18 16:20 . 2008-04-14 03:53 420992 c:\windows\system32\dllcache\ltmdmntt.sys

+ 2010-06-18 16:20 . 2001-08-17 17:28 576746 c:\windows\system32\dllcache\ltmdmntl.sys

+ 2010-06-18 16:20 . 2008-04-14 03:53 606684 c:\windows\system32\dllcache\ltmdmnt.sys

+ 2010-06-18 16:20 . 2001-08-17 17:28 727786 c:\windows\system32\dllcache\ltck000c.sys

+ 2010-06-18 16:20 . 2008-04-14 09:41 253952 c:\windows\system32\dllcache\kdsusd.dll

+ 2010-06-18 16:19 . 2008-04-14 09:42 151552 c:\windows\system32\dllcache\irftp.exe

- 2008-11-13 03:44 . 2004-08-12 13:58 471102 c:\windows\system32\dllcache\imskdic.dll

+ 2008-11-13 03:44 . 2002-09-03 16:25 471102 c:\windows\system32\dllcache\imskdic.dll

- 2008-11-13 03:44 . 2004-08-12 13:58 311359 c:\windows\system32\dllcache\imepadsv.exe

+ 2008-11-13 03:44 . 2002-09-03 16:24 311359 c:\windows\system32\dllcache\imepadsv.exe

- 2008-11-13 03:44 . 2004-08-12 13:58 102463 c:\windows\system32\dllcache\imepadsm.dll

+ 2008-11-13 03:44 . 2002-09-03 16:24 102463 c:\windows\system32\dllcache\imepadsm.dll

+ 2010-06-18 16:19 . 2001-08-18 02:36 372824 c:\windows\system32\dllcache\iconf32.dll

+ 2010-06-18 16:19 . 2001-08-17 18:06 100992 c:\windows\system32\dllcache\icam5usb.sys

+ 2010-06-18 16:19 . 2001-08-17 18:06 154496 c:\windows\system32\dllcache\icam4usb.sys

+ 2010-06-18 16:19 . 2001-08-17 18:05 141056 c:\windows\system32\dllcache\icam3.sys

+ 2010-06-18 16:19 . 2001-08-17 16:12 109085 c:\windows\system32\dllcache\ibmtrp.sys

+ 2010-06-18 16:19 . 2001-08-17 16:12 100936 c:\windows\system32\dllcache\ibmtok.sys

+ 2010-06-18 16:19 . 2008-04-14 02:04 161020 c:\windows\system32\dllcache\i81xnt5.sys

+ 2010-06-18 16:19 . 2008-04-14 09:41 702845 c:\windows\system32\dllcache\i81xdnt5.dll

+ 2010-06-18 16:19 . 2001-08-17 18:56 353184 c:\windows\system32\dllcache\i740dnt5.dll

+ 2008-04-14 04:23 . 2009-10-20 16:20 265728 c:\windows\system32\dllcache\http.sys

- 2009-10-20 16:20 . 2009-10-20 16:20 265728 c:\windows\system32\dllcache\http.sys

+ 2010-06-18 16:18 . 2008-04-14 03:53 685056 c:\windows\system32\dllcache\hsfcxts2.sys

+ 2010-06-18 16:18 . 2008-04-14 03:53 220032 c:\windows\system32\dllcache\hsfbs2s2.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 488383 c:\windows\system32\dllcache\hsf_v124.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 542879 c:\windows\system32\dllcache\hsf_msft.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 391199 c:\windows\system32\dllcache\hsf_k56k.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 115807 c:\windows\system32\dllcache\hsf_fsks.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 199711 c:\windows\system32\dllcache\hsf_faxx.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 289887 c:\windows\system32\dllcache\hsf_fall.sys

+ 2010-06-18 16:18 . 2001-08-17 17:28 150239 c:\windows\system32\dllcache\hsf_amos.sys

+ 2010-06-18 16:18 . 2001-08-18 02:36 324608 c:\windows\system32\dllcache\hpojwia.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 165888 c:\windows\system32\dllcache\hpgt53.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 126976 c:\windows\system32\dllcache\hpgt34tk.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 101376 c:\windows\system32\dllcache\hpgt34.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 123392 c:\windows\system32\dllcache\hpgt21tk.dll

+ 2010-06-18 16:18 . 2001-08-18 02:36 119296 c:\windows\system32\dllcache\hpdigwia.dll

+ 2010-06-18 16:17 . 2001-08-17 17:28 907456 c:\windows\system32\dllcache\hcf_msft.sys

+ 2010-06-18 16:17 . 2001-08-17 16:49 322432 c:\windows\system32\dllcache\g400m.sys

+ 2010-06-18 16:17 . 2001-08-17 16:49 320384 c:\windows\system32\dllcache\g200m.sys

+ 2010-06-18 16:17 . 2001-08-17 18:56 470144 c:\windows\system32\dllcache\g200d.dll

+ 2010-06-18 16:17 . 2001-08-17 16:15 454912 c:\windows\system32\dllcache\fxusbase.sys

+ 2008-11-13 03:44 . 2002-09-03 16:33 132608 c:\windows\system32\dllcache\fxsclntr.dll

- 2008-11-13 03:44 . 2004-08-12 13:57 132608 c:\windows\system32\dllcache\fxsclntr.dll

- 2008-11-13 03:44 . 2004-08-12 13:57 111104 c:\windows\system32\dllcache\fxscfgwz.dll

+ 2008-11-13 03:44 . 2002-09-03 16:33 111104 c:\windows\system32\dllcache\fxscfgwz.dll

+ 2010-06-18 16:17 . 2001-08-17 16:15 455296 c:\windows\system32\dllcache\fusbbase.sys

+ 2010-06-18 16:17 . 2001-08-17 16:15 455680 c:\windows\system32\dllcache\fus2base.sys

+ 2010-06-18 16:17 . 2001-08-17 16:15 442240 c:\windows\system32\dllcache\fpnpbase.sys

+ 2010-06-18 16:17 . 2001-08-17 16:14 441728 c:\windows\system32\dllcache\fpcmbase.sys

+ 2010-06-18 16:17 . 2001-08-17 16:14 444416 c:\windows\system32\dllcache\fpcibase.sys

- 2008-11-13 03:44 . 2003-03-24 21:52 109328 c:\windows\system32\dllcache\fp98swin.exe

+ 2008-11-13 03:44 . 2002-05-14 16:08 109328 c:\windows\system32\dllcache\fp98swin.exe

+ 2010-06-18 16:17 . 2008-04-14 02:06 137088 c:\windows\system32\dllcache\essm2e.sys

+ 2010-06-18 16:16 . 2001-08-17 17:28 594238 c:\windows\system32\dllcache\es56hpi.sys

+ 2010-06-18 16:16 . 2001-08-17 17:28 595647 c:\windows\system32\dllcache\es56cvmp.sys

+ 2010-06-18 16:16 . 2001-08-17 16:19 174464 c:\windows\system32\dllcache\es198x.sys

+ 2010-06-18 16:16 . 2001-08-17 16:17 629952 c:\windows\system32\dllcache\eqn.sys

+ 2010-06-18 16:16 . 2001-08-17 17:50 114944 c:\windows\system32\dllcache\epstw2k.sys

+ 2010-06-18 16:16 . 2001-08-17 17:50 144896 c:\windows\system32\dllcache\epcfw2k.sys

+ 2010-06-18 16:16 . 2001-08-17 16:19 283904 c:\windows\system32\dllcache\emu10k1m.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 171520 c:\windows\system32\dllcache\el99xn51.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 455199 c:\windows\system32\dllcache\el985n51.sys

+ 2010-06-18 16:16 . 2001-08-17 16:11 153631 c:\windows\system32\dllcache\el90xnd5.sys

+ 2010-06-18 16:16 . 2001-08-17 17:28 241206 c:\windows\system32\dllcache\el656se5.sys

+ 2010-06-18 16:16 . 2001-08-17 17:28 634134 c:\windows\system32\dllcache\el656ct5.sys

+ 2008-11-13 03:44 . 2002-09-03 16:32 514587 c:\windows\system32\dllcache\edb500.dll

- 2008-11-13 03:44 . 2004-08-12 13:57 514587 c:\windows\system32\dllcache\edb500.dll

+ 2010-06-18 16:16 . 2001-08-17 16:12 117760 c:\windows\system32\dllcache\e100b325.sys

+ 2010-06-18 16:16 . 2001-08-17 16:20 334208 c:\windows\system32\dllcache\ds1wdm.sys

+ 2010-06-18 16:16 . 2008-04-14 04:09 206976 c:\windows\system32\dllcache\dot4.sys

+ 2010-06-18 16:16 . 2001-08-17 16:14 952007 c:\windows\system32\dllcache\diwan.sys

+ 2010-06-18 16:16 . 2001-08-18 02:36 236060 c:\windows\system32\dllcache\ditrace.exe

+ 2010-06-18 16:16 . 2001-08-18 02:36 614429 c:\windows\system32\dllcache\digiview.exe

+ 2010-06-18 16:15 . 2001-08-18 02:36 102484 c:\windows\system32\dllcache\digiinf.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 159828 c:\windows\system32\dllcache\digihlc.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 229462 c:\windows\system32\dllcache\digifwrk.dll

+ 2010-06-18 16:15 . 2001-08-17 16:13 103044 c:\windows\system32\dllcache\digidxb.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 131156 c:\windows\system32\dllcache\digidbp.dll

+ 2010-06-18 16:14 . 2001-08-17 16:13 164923 c:\windows\system32\dllcache\diapi2.sys

+ 2010-06-18 16:15 . 2001-08-18 02:36 419357 c:\windows\system32\dllcache\dgconfig.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 256512 c:\windows\system32\dllcache\devcon32.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 110592 c:\windows\system32\dllcache\dc260usd.dll

+ 2010-06-18 16:15 . 2001-08-17 17:52 179584 c:\windows\system32\dllcache\dac2w2k.sys

+ 2010-06-18 16:15 . 2001-08-17 16:12 117760 c:\windows\system32\dllcache\d100ib5.sys

+ 2010-06-18 16:15 . 2001-08-17 16:19 111872 c:\windows\system32\dllcache\cwcspud.sys

+ 2010-06-18 16:15 . 2008-04-14 09:41 249856 c:\windows\system32\dllcache\ctmasetp.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 175104 c:\windows\system32\dllcache\csamsp.dll

+ 2010-06-18 16:15 . 2001-08-18 02:36 216064 c:\windows\system32\dllcache\cpscan.dll

+ 2010-06-18 16:15 . 2001-08-17 17:57 248064 c:\windows\system32\dllcache\cl546xm.sys

+ 2010-06-18 16:15 . 2001-08-17 18:56 170880 c:\windows\system32\dllcache\cl546x.dll

+ 2010-06-18 16:15 . 2001-08-17 18:56 111232 c:\windows\system32\dllcache\cl5465.dll

+ 2010-06-18 16:15 . 2001-08-17 18:02 272640 c:\windows\system32\dllcache\cinemclc.sys

+ 2010-06-18 16:15 . 2001-08-17 16:13 980034 c:\windows\system32\dllcache\cicap.sys

- 2008-11-13 03:44 . 2004-08-12 13:58 838144 c:\windows\system32\dllcache\chtbrkr.dll

+ 2008-11-13 03:44 . 2002-09-03 16:24 838144 c:\windows\system32\dllcache\chtbrkr.dll

+ 2010-06-18 16:15 . 2001-08-17 17:28 714698 c:\windows\system32\dllcache\cbmdmkxx.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 236032 c:\windows\system32\dllcache\camext20.dll

+ 2010-06-18 16:14 . 2001-08-17 18:04 171264 c:\windows\system32\dllcache\camdrv30.sys

+ 2010-06-18 16:14 . 2001-08-17 18:04 223232 c:\windows\system32\dllcache\camdrv21.sys

+ 2010-06-18 16:14 . 2001-08-17 18:05 314752 c:\windows\system32\dllcache\camdro21.sys

+ 2010-06-18 16:14 . 2008-04-14 04:21 101120 c:\windows\system32\dllcache\bthpan.sys

+ 2010-06-18 16:14 . 2001-08-18 02:36 102400 c:\windows\system32\dllcache\binlsvc.dll

+ 2010-06-18 16:14 . 2001-08-17 17:28 871388 c:\windows\system32\dllcache\bcmdm.sys

+ 2010-06-18 16:14 . 2001-08-17 18:56 342336 c:\windows\system32\dllcache\banshee.dll

+ 2010-06-18 16:14 . 2001-08-18 02:36 144384 c:\windows\system32\dllcache\avmenum.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 516768 c:\windows\system32\dllcache\ativvaxx.dll

+ 2010-06-18 16:14 . 2001-08-17 18:56 104832 c:\windows\system32\dllcache\atiraged.dll

+ 2010-06-18 16:14 . 2008-04-14 02:04 104960 c:\windows\system32\dllcache\atinrvxx.sys

+ 2010-06-18 16:14 . 2001-08-17 16:48 281600 c:\windows\system32\dllcache\atimtai.sys

+ 2010-06-18 16:14 . 2001-08-17 16:48 289664 c:\windows\system32\dllcache\atimpab.sys

+ 2010-06-18 16:14 . 2001-08-17 18:56 268160 c:\windows\system32\dllcache\atidvai.dll

+ 2010-06-18 16:14 . 2001-08-17 18:56 137216 c:\windows\system32\dllcache\atidrae.dll

+ 2010-06-18 16:14 . 2001-08-17 18:55 382592 c:\windows\system32\dllcache\atidrab.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 870784 c:\windows\system32\dllcache\ati3d1ag.dll

+ 2010-06-18 16:14 . 2008-04-14 02:04 701440 c:\windows\system32\dllcache\ati2mtag.sys

+ 2010-06-18 16:14 . 2008-04-14 02:04 327040 c:\windows\system32\dllcache\ati2mtaa.sys

+ 2010-06-18 16:14 . 2008-04-14 09:41 201728 c:\windows\system32\dllcache\ati2dvag.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 377984 c:\windows\system32\dllcache\ati2dvaa.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 229376 c:\windows\system32\dllcache\ati2cqag.dll

+ 2010-06-18 16:13 . 2001-08-17 18:07 101888 c:\windows\system32\dllcache\adpu160m.sys

+ 2010-06-18 16:13 . 2001-08-17 16:19 747392 c:\windows\system32\dllcache\adm8830.sys

+ 2010-06-18 16:13 . 2001-08-17 16:19 553984 c:\windows\system32\dllcache\adm8820.sys

+ 2010-06-18 16:13 . 2001-08-17 16:19 584448 c:\windows\system32\dllcache\adm8810.sys

+ 2010-06-18 16:13 . 2001-08-17 16:20 297728 c:\windows\system32\dllcache\ac97sis.sys

+ 2010-06-18 16:13 . 2008-04-14 02:06 231552 c:\windows\system32\dllcache\ac97ali.sys

+ 2010-06-18 16:13 . 2001-08-18 02:36 462848 c:\windows\system32\dllcache\a3dapi.dll

+ 2010-06-18 16:13 . 2001-08-17 16:48 148352 c:\windows\system32\dllcache\3dfxvsm.sys

+ 2010-06-18 16:13 . 2001-08-17 18:55 689216 c:\windows\system32\dllcache\3dfxvs.dll

+ 2010-06-18 16:13 . 2001-08-17 17:28 762780 c:\windows\system32\dllcache\3cwmcru.sys

+ 2010-06-18 16:22 . 2008-04-14 02:04 1897408 c:\windows\system32\dllcache\nv4_mini.sys

+ 2010-06-18 16:22 . 2008-04-14 09:42 4274816 c:\windows\system32\dllcache\nv4_disp.dll

- 2008-11-13 23:14 . 2010-02-16 13:25 2024448 c:\windows\system32\dllcache\ntkrpamp.exe

+ 2008-04-14 00:01 . 2010-02-16 13:25 2024448 c:\windows\system32\dllcache\ntkrpamp.exe

- 2008-11-13 23:14 . 2010-02-16 14:08 2146304 c:\windows\system32\dllcache\ntkrnlmp.exe

+ 2008-04-14 04:54 . 2010-02-16 14:08 2146304 c:\windows\system32\dllcache\ntkrnlmp.exe

+ 2010-06-18 16:21 . 2008-04-14 09:42 1737856 c:\windows\system32\dllcache\mtxparhd.dll

+ 2010-06-18 16:21 . 2008-04-14 03:53 1309184 c:\windows\system32\dllcache\mtlstrm.sys

+ 2008-11-13 03:41 . 2009-06-10 13:19 2066432 c:\windows\system32\dllcache\lhmstscx.dll

+ 2010-06-18 16:18 . 2008-04-14 03:53 1041536 c:\windows\system32\dllcache\hsfdpsp2.sys

+ 2010-06-18 16:17 . 2001-08-17 18:56 1733120 c:\windows\system32\dllcache\g400d.dll

- 2008-11-13 03:44 . 2004-08-12 13:58 1677824 c:\windows\system32\dllcache\chsbrkr.dll

+ 2008-11-13 03:44 . 2002-09-03 16:24 1677824 c:\windows\system32\dllcache\chsbrkr.dll

+ 2010-06-18 16:14 . 2008-04-14 09:41 1888992 c:\windows\system32\dllcache\ati3duag.dll

- 2008-11-13 03:44 . 2004-08-12 13:58 10129408 c:\windows\system32\dllcache\hwxkor.dll

+ 2008-11-13 03:44 . 2002-09-03 16:24 10129408 c:\windows\system32\dllcache\hwxkor.dll

- 2008-11-13 03:44 . 2004-08-12 13:58 10096640 c:\windows\system32\dllcache\hwxcht.dll

+ 2008-11-13 03:44 . 2002-09-03 16:24 10096640 c:\windows\system32\dllcache\hwxcht.dll

.

Link to post
Share on other sites

Part 3

-- Snapshot reset to current date --

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]

"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]

"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]

"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]

"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]

"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]

"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]

"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952]

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]

path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnk

backup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]

2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]

2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]

2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]

2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

"DisableNotifications"= 1 (0x1)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"%windir%\\system32\\sessmgr.exe"=

"c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"=

"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=

"c:\\Program Files\\AIM6\\aim6.exe"=

"c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"=

"c:\\Program Files\\LimeWire\\LimeWire.exe"=

"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=

"c:\\Program Files\\iTunes\\iTunes.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

"67:UDP"= 67:UDP:DHCP Discovery Service

"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009

R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]

R2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]

S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]

S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368]

.

Contents of the 'Scheduled Tasks' folder

2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job

- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

.

.

------- Supplementary Scan -------

.

uStart Page = hxxp://members.suscom-maine.net/

uInternet Settings,ProxyOverride = <local>

IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html

Trusted Zone: llbean.com

DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab

FF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\

FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll

FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll

FF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dll

FF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dll

FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----

c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr

ef", true);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);

.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2010-06-18 17:17

Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully

hidden files: 0

**************************************************************************

.

--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(1244)

c:\windows\system32\WININET.dll

.

Completion time: 2010-06-18 17:23:07

ComboFix-quarantined-files.txt 2010-06-18 21:23

ComboFix2.txt 2010-06-18 10:18

ComboFix3.txt 2010-06-17 10:04

Pre-Run: 506,589,327,360 bytes free

Post-Run: 506,575,863,808 bytes free

- - End Of File - - 5E3BF19F15C3E8BB178647355D6AB3E7

Link to post
Share on other sites

Deleted, downloaded and ran again.

ComboFix 10-06-18.03 - Chris 06/19/2010 7:55.10.2 - x86

Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exe

.

((((((((((((((((((((((((( Files Created from 2010-05-19 to 2010-06-19 )))))))))))))))))))))))))))))))

.

2010-06-18 16:31 . 2008-04-14 09:42 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll

2010-06-18 16:31 . 2008-04-14 09:42 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll

2010-06-18 16:31 . 2001-08-18 02:36 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll

2010-06-18 16:31 . 2001-08-18 02:37 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe

2010-06-18 16:31 . 2001-08-18 02:37 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe

2010-06-18 16:31 . 2001-08-18 02:37 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe

2010-06-18 16:31 . 2001-08-17 16:11 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys

2010-06-18 16:31 . 2008-04-14 02:04 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys

2010-06-18 16:31 . 2008-04-14 09:42 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll

2010-06-18 16:31 . 2008-04-14 02:04 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys

2010-06-18 16:29 . 2008-04-14 09:42 11325 -c--a-w- c:\windows\system32\dllcache\vchnt5.dll

2010-06-18 16:28 . 2001-08-17 16:51 166784 -c--a-w- c:\windows\system32\dllcache\tridxpm.sys

2010-06-18 16:27 . 2001-08-17 18:07 32640 -c--a-w- c:\windows\system32\dllcache\symc8xx.sys

2010-06-18 16:26 . 2001-08-17 17:53 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys

2010-06-18 16:25 . 2001-07-21 18:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys

2010-06-18 16:24 . 2001-08-18 02:36 79872 -c--a-w- c:\windows\system32\dllcache\rwia430.dll

2010-06-18 16:23 . 2001-08-18 02:36 35328 -c--a-w- c:\windows\system32\dllcache\psisload.dll

2010-06-18 16:22 . 2001-08-18 02:36 116736 -c--a-w- c:\windows\system32\dllcache\ovcodec2.dll

2010-06-18 16:21 . 2001-08-18 02:36 59104 -c--a-w- c:\windows\system32\dllcache\n9i128v2.dll

2010-06-18 16:20 . 2001-08-17 18:56 235648 -c--a-w- c:\windows\system32\dllcache\mgaud.dll

2010-06-18 16:19 . 2001-08-17 18:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll

2010-06-18 16:18 . 2008-04-14 04:11 8576 -c--a-w- c:\windows\system32\dllcache\i2omgmt.sys

2010-06-18 16:17 . 2001-08-17 18:02 8576 -c--a-w- c:\windows\system32\dllcache\hidgame.sys

2010-06-18 16:16 . 2001-08-17 17:28 347550 -c--a-w- c:\windows\system32\dllcache\es56tpi.sys

2010-06-18 16:15 . 2001-08-18 02:36 110621 -c--a-w- c:\windows\system32\dllcache\digirlpt.dll

2010-06-18 16:14 . 2008-04-14 09:41 121856 -c--a-w- c:\windows\system32\dllcache\camext30.dll

2010-06-18 16:13 . 2001-08-17 17:47 6272 -c--a-w- c:\windows\system32\dllcache\apmbatt.sys

2010-06-18 00:09 . 2010-06-19 11:54 -------- d-----w- c:\windows\system32\CatRoot2

2010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData

2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb

2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire

2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks

2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire

2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer

2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight

2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB

2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys

2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player

2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader

2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro

2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit

2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}

2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod

2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple

2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime

2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour

2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe

2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari

2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe

2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll

2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll

2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll

2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys

2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira

2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira

2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon

2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT

2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack

2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat

2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T15

2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp

2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL

2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll

2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll

2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe

2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll

2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys

2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll

2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll

2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe

2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe

2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat

2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat

2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll

2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe

2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll

2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll

2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll

2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll

2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll

2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll

2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe

2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll

2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe

2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe

2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll

2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll

2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll

2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll

2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll

2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll

2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll

2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys

2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe

2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe

2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe

2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat

.

------- Sigcheck -------

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys

[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys

[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys

[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\kbdclass.sys

[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys

[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys

[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys

[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys

[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys

[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys

[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll

[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe

[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll

[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll

[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll

[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll

[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll

[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe

[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe

[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe

[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe

[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe

[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll

[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll

[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll

[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll

[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll

[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll

[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll

[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll

[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll

[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll

[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll

[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll

[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll

[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll

[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll

[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll

[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll

[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll

[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll

[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll

[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll

[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll

[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll

[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll

[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll

[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll

[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll

[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll

[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll

[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll

[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll

[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll

[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll

[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll

[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll

[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll

[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll

[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll

[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll

[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll

[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll

[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll

[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll

[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll

[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll

[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll

[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe

[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe

[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe

[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe

[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe

[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe

[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe

[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe

[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe

[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe

[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe

[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe

[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll

[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll

[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll

[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe

[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll

[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll

[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe

[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll

[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll

[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll

[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll

[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll

[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll

[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll

[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll

[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll

[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll

[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll

[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll

[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll

[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll

[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll

[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll

[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll

[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll

[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll

[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll

[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll

[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll

[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll

[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll

[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll

[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll

[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll

[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe

[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll

[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe

[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll

[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll

[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll

[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe

[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll

[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll

[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll

[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll

[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll

[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys

[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys

[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys

[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll

[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll

[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll

[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll

[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll

[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe

[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe

[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe

[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe

[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe

[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe

[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe

[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe

[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe

[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe

[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe

[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll

[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll

[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll

[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll

[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll

[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll

[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll

[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll

.

((((((((((((((((((((((((((((( SnapShot_2010-06-18_21.17.59 )))))))))))))))))))))))))))))))))))))))))

.

+ 2010-06-19 11:52 . 2010-06-19 11:52 16384 c:\windows\temp\Perflib_Perfdata_600.dat

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]

"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944]

[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]

[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]

"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]

"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]

"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]

"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]

"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]

"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]

"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]

"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952]

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]

path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnk

backup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]

2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]

2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]

2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]

2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]

2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

"DisableNotifications"= 1 (0x1)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"%windir%\\system32\\sessmgr.exe"=

"c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"=

"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=

"c:\\Program Files\\AIM6\\aim6.exe"=

"c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"=

"c:\\Program Files\\LimeWire\\LimeWire.exe"=

"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=

"c:\\Program Files\\iTunes\\iTunes.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

"67:UDP"= 67:UDP:DHCP Discovery Service

"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009

R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]

R2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]

S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]

S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368]

.

Contents of the 'Scheduled Tasks' folder

2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job

- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]

2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job

- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]

.

.

------- Supplementary Scan -------

.

uStart Page = hxxp://members.suscom-maine.net/

uInternet Settings,ProxyOverride = <local>

IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html

Trusted Zone: llbean.com

DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab

FF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\

FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll

FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll

FF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dll

FF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dll

FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----

c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);

c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr

ef", true);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);

c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");

c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);

.

**************************************************************************

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully

hidden files:

**************************************************************************

.

--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(1380)

c:\windows\system32\WININET.dll

.

Completion time: 2010-06-19 08:06:57

ComboFix-quarantined-files.txt 2010-06-19 12:06

ComboFix2.txt 2010-06-18 21:23

ComboFix3.txt 2010-06-18 10:18

ComboFix4.txt 2010-06-17 10:04

Pre-Run: 506,574,610,432 bytes free

Post-Run: 506,561,716,224 bytes free

- - End Of File - - 822D9EFB0B5E2B70F668598D0560DD27

Link to post
Share on other sites

>>Every time I reboot I get an error about a Malwarebytes file after I log into my profile.

>>I also get an error message during reboot before I get to the log in screen, but can't remember what it says. Do you need that?

>>I can't view images.

>>I can't use Outlook

>>Sound doesn't work

>>There's no taskbar/start button at the bottom of the screen (I have to run everything through Task Manager)

>>I can't save files to other locations

>>System Restore doesn't work

>>Other users can log in to their screens. When they try to, my desktop flashes for a second and then goes back to the log in screen.

That's all that I can think of at the moment.

Link to post
Share on other sites

Error on reboot:

svchost.exe Application error - The instruction at "0x7c91b21a" referenced memory at "0x00000010." The memory could not be "written."

Malwarebytes error:

Failed to load control'vbalGrid' from vbalgrid6.ocx.

Your version of vbalsgrid6.ocx may be outdated.

Link to post
Share on other sites

Hello again

OTL

-----

  1. Please download OTL from one of the following mirrors:

[*]Save it to your desktop.

[*]Double click on the otlDesktopIcon.png icon on your desktop.

[*]Copy and Paste the following code into the customFix.png textbox. Do not include the word "Code"

c:\avenger\*.*
/md5start
svchost.exe
/md5stop

[*]Push runscanbutton.png

[*]A report will open. Copy and Paste that report in your next reply.

Link to post
Share on other sites

OTL logfile created on: 6/19/2010 6:45:37 PM - Run 4

OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Chris\My Documents\Downloads

Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 7.0.5730.13)

Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 84.00% Memory free

5.00 Gb Paging File | 5.00 Gb Available in Paging File | 93.00% Paging File free

Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 586.36 Gb Total Space | 471.99 Gb Free Space | 80.50% Space Free | Partition Type: NTFS

D: Drive not present or media not loaded

E: Drive not present or media not loaded

F: Drive not present or media not loaded

G: Drive not present or media not loaded

Drive H: | 9.77 Gb Total Space | 4.74 Gb Free Space | 48.57% Space Free | Partition Type: NTFS

I: Drive not present or media not loaded

Computer Name: HOME

Current User Name: Chris

Logged in as Administrator.

Current Boot Mode: Normal

Scan Mode: Current user

Company Name Whitelist: Off

Skip Microsoft Files: Off

File Age = 30 Days

Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Chris\My Documents\Downloads\OTL(2).exe (OldTimer Tools)

PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)

PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)

PRC - C:\WINDOWS\system32\java.exe (Sun Microsystems, Inc.)

PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)

PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)

PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)

PRC - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe ()

PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)

PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)

========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Chris\My Documents\Downloads\OTL(2).exe (OldTimer Tools)

MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)

========== Win32 Services (SafeList) ==========

SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)

SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)

SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)

SRV - (LinksysUpdater) -- C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe ()

SRV - (nmservice) -- C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe (Pure Networks, Inc.)

SRV - (Capture Device Service) -- C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (InterVideo Inc.)

SRV - (UleadBurningHelper) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)

========== Driver Services (SafeList) ==========

DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)

DRV - (avgntflt) -- C:\WINDOWS\system32\drivers\avgntflt.sys (Avira GmbH)

DRV - (avgio) -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys (Avira GmbH)

DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH)

DRV - (3xHybrid) -- C:\WINDOWS\system32\drivers\3xHybrid.sys (NXP Semiconductors Germany GmbH)

DRV - (MPE) -- C:\WINDOWS\system32\drivers\MPE.sys (Microsoft Corporation)

DRV - (usbaudio) USB Audio Driver (WDM) -- C:\WINDOWS\system32\drivers\USBAUDIO.sys (Microsoft Corporation)

DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows ® Server 2003 DDK provider)

DRV - (pnarp) -- C:\WINDOWS\system32\drivers\pnarp.sys (Pure Networks, Inc.)

DRV - (purendis) -- C:\WINDOWS\system32\drivers\purendis.sys (Pure Networks, Inc.)

DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)

DRV - (HSF_DPV) -- C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)

DRV - (HSFHWBS2) -- C:\WINDOWS\system32\drivers\HSFHWBS2.sys (Conexant Systems, Inc.)

DRV - (winachsf) -- C:\WINDOWS\system32\drive