cwjme Posted June 14, 2010 ID:267525 Share Posted June 14, 2010 Infected with this horrible malware for the second time this year. Was able to successfully remove it with your help the first time. I was able to run Malwarebytes and some files were removed, but after the reboot I was no longer able to run it. Tried downloading renamed .exe file but couldn't save it to the Malwarebytes directory to run it. System restore not working.Here is my HijackThis logfile:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 5:17:34 PM, on 6/14/2010Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.17055)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Avira\AntiVir Desktop\sched.exeC:\Program Files\Avira\AntiVir Desktop\avguard.exeC:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeC:\Program Files\Bonjour\mDNSResponder.exeC:\Program Files\Java\jre6\bin\jqs.exeC:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exeC:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exeC:\Program Files\Avira\AntiVir Desktop\avshadow.exeC:\WINDOWS\system32\java.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\RTHDCPL.EXEC:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exeC:\Program Files\Avira\AntiVir Desktop\avgnt.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://members.suscom-maine.net/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:1720O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dllO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: (no name) - {e28e0583-70fc-42a9-9767-93aa8ad06cf5} - (no file)O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllO3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dllO3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXEO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [DRPU Pc Data manager] "C:\Program Files\DRPU PC Data Manager\apcdm.exe" "hd"O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUNO4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exeO4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorunO4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /minO4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exeO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottimeO4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exeO4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscriptO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"O4 - HKCU\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exeO4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User '?')O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" (User '?')O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe (User '?')O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exeO8 - Extra context menu item: + Offline &Explorer: Download the link - file://C:\Documents and Settings\Chris\Desktop\Misc\Programs\Offline Explorer Pro\Offline Explorer Enterprise\Add_UrlO.htmO8 - Extra context menu item: + Offline E&xplorer: Download the current page - file://C:\Documents and Settings\Chris\Desktop\Misc\Programs\Offline Explorer Pro\Offline Explorer Enterprise\Add_AllO.htmO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.htmlO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLLO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO15 - Trusted Zone: *.llbean.comO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1237904923229O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} (JuniperSetupControlXP Class) - https://portal.llbean.com/dana-cached/setup...perSetupSP1.cabO16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://juniper.net/dana-cached/sc/JuniperSetupClient.cabO23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exeO23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeO23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exeO23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exeO23 - Service: Linksys Updater (LinksysUpdater) - Unknown owner - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exeO23 - Service: Pure Networks Platform Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exeO23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exeO23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe--End of file - 8243 bytes Link to post Share on other sites More sharing options...
Elise Posted June 15, 2010 ID:267776 Share Posted June 15, 2010 Hello , And My name is Elise and I'll be glad to help you with your computer problems.I will be working on your malware issues, this may or may not solve other issues you may have with your machine.Please note that whatever repairs we make, are for fixing your computer problems only and by no means should be used on another computer.The cleaning process is not instant. Logs can take some time to research, so please be patient with me. I know that you need your computer working as quickly as possible, and I will work hard to help see that happen. Please reply using the Add/Reply button in the lower right hand corner of your screen. Do not start a new topic. The logs that you post should be pasted directly into the reply. Only attach them if requested or if they do not fit into the post.Unfortunately, if I do not hear back from you within 5 days, I will be forced to close your topic. If you still need help after I have closed your topic, send me or a moderator a personal message with the address of the thread or feel free to create a new one.You may want to keep the link to this topic in your favorites. Alternatively, you can click the button at the top bar of this topic and Track this Topic, where you can choose email notifications. -----------------------------------------------------------If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.If you have already posted a log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.We need to see some information about what is happening in your machine. Please perform the following scan:Please download OTL from one of the following mirrors:This is THE Mirror[*]Save it to your desktop.[*]Double click on the icon on your desktop.[*]Click the "Scan All Users" checkbox.[*]Push the button.[*]Two reports will open, copy and paste them in a reply here:OTListIt.txt <-- Will be openedExtra.txt <-- Will be minimizedPlease download GMER from one of the following locations and save it to your desktop:Main MirrorThis version will download a randomly named file (Recommended)Zipped MirrorThis version will download a zip file you will need to extract first. If you use this mirror, please extract the zip file to your desktop.Disconnect from the Internet and close all running programs.Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.Double-click on the randomly named GMER file (i.e. n7gmo46c.exe) and allow the gmer.sys driver to load if asked.Note: If you downloaded the zipped version, extract the file to its own folder such as C:\gmer and then double-click on gmer.exe.GMER will open to the Rootkit/Malware tab and perform an automatic quick scan when first run. (do not use the computer while the scan is in progress)If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.Now click the Scan button. If you see a rootkit warning window, click OK.When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.Click the Copy button and paste the results into your next reply.Exit GMER and re-enable all active protection when done.-- If you encounter any problems, try running GMER in Safe Mode.-------------------------------------------------------------In the meantime please, do NOT install any new programs or update anything unless told to do so while we are fixing your problemIf you still need help, please include the following in your next replyA detailed description of your problemsA new OTL log (don't forget extra.txt)GMER log Link to post Share on other sites More sharing options...
cwjme Posted June 15, 2010 Author ID:268194 Share Posted June 15, 2010 After I posted the original message and log lastnight, I was able to run Spybot, which got rid of some problems. I haven't had the Internet Security pop-ups since then, but I still can't use Microsoft Outlook, my speakers aren't working, I can't drag files or choose where to save them, system restore and Malwarebytes don't work and while there is a taskbar at the bottom of my screen (there wasn't until just a little while ago), open applications don't show on it and I have to use task manager to move between them.New HijackThis Log:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 3:02:47 PM, on 6/15/2010Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.17055)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Avira\AntiVir Desktop\sched.exeC:\Program Files\Avira\AntiVir Desktop\avguard.exeC:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeC:\Program Files\Bonjour\mDNSResponder.exeC:\Program Files\Java\jre6\bin\jqs.exeC:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exeC:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exeC:\Program Files\Avira\AntiVir Desktop\avshadow.exeC:\WINDOWS\system32\java.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\RTHDCPL.EXEC:\Program Files\Avira\AntiVir Desktop\avgnt.exeC:\WINDOWS\system32\ctfmon.exeC:\Documents and Settings\Chris\Application Data\Juniper Networks\Setup Client\JuniperSetupClient.exeC:\WINDOWS\system32\taskmgr.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Documents and Settings\Chris\Application Data\Juniper Networks\Host Checker\dsHostChecker.exeC:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://members.suscom-maine.net/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:1720O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dllO2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: (no name) - {e28e0583-70fc-42a9-9767-93aa8ad06cf5} - (no file)O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllO3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dllO3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dllO4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXEO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [DRPU Pc Data manager] "C:\Program Files\DRPU PC Data Manager\apcdm.exe" "hd"O4 - HKLM\..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUNO4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exeO4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorunO4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /minO4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exeO4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottimeO4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"O4 - HKLM\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exeO4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscriptO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"O4 - HKCU\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exeO4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User '?')O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" (User '?')O4 - HKUS\S-1-5-21-448539723-1202660629-682003330-1004\..\Run: [yisuhjwki] c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe (User '?')O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exeO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.htmlO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLLO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO15 - Trusted Zone: *.llbean.comO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1237904923229O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} (JuniperSetupControlXP Class) - https://portal.llbean.com/dana-cached/setup...perSetupSP1.cabO16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} (JuniperSetupClientControl Class) - https://juniper.net/dana-cached/sc/JuniperSetupClient.cabO23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exeO23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exeO23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeO23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeO23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exeO23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exeO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeO23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exeO23 - Service: Linksys Updater (LinksysUpdater) - Unknown owner - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exeO23 - Service: Pure Networks Platform Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exeO23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exeO23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe--End of file - 8127 bytesOTL logfile created on: 6/15/2010 3:06:54 PM - Run 3OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Chris\My Documents\DownloadsWindows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstationInternet Explorer (Version = 7.0.5730.13)Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 81.00% Memory free5.00 Gb Paging File | 5.00 Gb Available in Paging File | 91.00% Paging File freePaging file location(s): C:\pagefile.sys 2046 4092 [binary data]%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program FilesDrive C: | 586.36 Gb Total Space | 472.38 Gb Free Space | 80.56% Space Free | Partition Type: NTFSD: Drive not present or media not loadedE: Drive not present or media not loadedF: Drive not present or media not loadedG: Drive not present or media not loadedDrive H: | 9.77 Gb Total Space | 4.74 Gb Free Space | 48.57% Space Free | Partition Type: NTFSI: Drive not present or media not loadedDrive J: | 6.67 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFSDrive K: | 1.86 Gb Total Space | 0.14 Gb Free Space | 7.29% Space Free | Partition Type: FATComputer Name: HOMECurrent User Name: ChrisLogged in as Administrator.Current Boot Mode: NormalScan Mode: All usersCompany Name Whitelist: OffSkip Microsoft Files: OffFile Age = 30 DaysOutput = Minimal========== Processes (SafeList) ==========PRC - C:\Program Files\Trend Micro\HijackThis\HijackThis.exe (Trend Micro Inc.)PRC - C:\Documents and Settings\Chris\My Documents\Downloads\OTL.exe (OldTimer Tools)PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)PRC - C:\WINDOWS\system32\java.exe (Sun Microsystems, Inc.)PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)PRC - C:\Documents and Settings\Chris\Application Data\Juniper Networks\Host Checker\dsHostChecker.exe (Juniper Networks")PRC - C:\Documents and Settings\Chris\Application Data\Juniper Networks\Setup Client\JuniperSetupClient.exe (Juniper Networks)PRC - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe ()PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)========== Modules (SafeList) ==========MOD - C:\Documents and Settings\Chris\My Documents\Downloads\OTL.exe (OldTimer Tools)MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)========== Win32 Services (SafeList) ==========SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)SRV - (LinksysUpdater) -- C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe ()SRV - (nmservice) -- C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe (Pure Networks, Inc.)SRV - (Capture Device Service) -- C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe (InterVideo Inc.)SRV - (UleadBurningHelper) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)========== Driver Services (SafeList) ==========DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)DRV - (avgntflt) -- C:\WINDOWS\system32\drivers\avgntflt.sys (Avira GmbH)DRV - (avgio) -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys (Avira GmbH)DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH)DRV - (3xHybrid) -- C:\WINDOWS\system32\drivers\3xHybrid.sys (NXP Semiconductors Germany GmbH)DRV - (MPE) -- C:\WINDOWS\system32\drivers\MPE.sys (Microsoft Corporation)DRV - (usbaudio) USB Audio Driver (WDM) -- C:\WINDOWS\system32\drivers\USBAUDIO.sys (Microsoft Corporation)DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows ® Server 2003 DDK provider)DRV - (pnarp) -- C:\WINDOWS\system32\drivers\pnarp.sys (Pure Networks, Inc.)DRV - (purendis) -- C:\WINDOWS\system32\drivers\purendis.sys (Pure Networks, Inc.)DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\WINDOWS\system32\drivers\RtkHDAud.sys (Realtek Semiconductor Corp.)DRV - (HSF_DPV) -- C:\WINDOWS\system32\drivers\HSF_DPV.sys (Conexant Systems, Inc.)DRV - (HSFHWBS2) -- C:\WINDOWS\system32\drivers\HSFHWBS2.sys (Conexant Systems, Inc.)DRV - (winachsf) -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)DRV - (ialm) -- C:\WINDOWS\system32\drivers\igxpmp32.sys (Intel Corporation)DRV - (e1express) Intel® -- C:\WINDOWS\system32\drivers\e1e5132.sys (Intel Corporation)DRV - (ASPI32) -- C:\WINDOWS\system32\drivers\aspi32.sys (Adaptec)DRV - (WudfPf) -- C:\WINDOWS\system32\DRIVERS\WudfPf.sys ()DRV - (BrScnUsb) -- C:\WINDOWS\system32\drivers\BrScnUsb.sys (Brother Industries Ltd.)DRV - (sonypvs1) -- C:\WINDOWS\system32\drivers\sonypvs1.sys (Sony Corporation)DRV - (OMCI) -- C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS (Dell Computer Corporation)========== Standard Registry (SafeList) ==================== Internet Explorer ==========IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htmIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ieIE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://members.suscom-maine.net/IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>IE - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:1720========== FireFox ==========FF - prefs.js..network.proxy.http: "127.0.0.1"FF - prefs.js..network.proxy.http_port: 1720FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/05/11 10:52:14 | 000,000,000 | ---D | M]FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/05/04 23:30:15 | 000,000,000 | ---D | M][2009/04/11 20:34:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Extensions[2009/04/11 20:34:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Extensions\mozswing@mozswing.org[2010/06/11 18:45:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions[2010/04/29 21:04:37 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}[2010/04/27 08:18:54 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{43c35458-c907-439b-bcfd-07d373834689}[2010/04/27 08:30:19 | 000,000,000 | ---D | M] (Boost for Facebook) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{47624dda-b77e-4feb-820a-e4f077d5d4ca}[2010/05/06 20:26:34 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}[2010/04/29 21:04:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\extensions\facepad@lazyrussian.com[2010/06/14 15:07:54 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions[2009/07/13 20:45:13 | 001,152,488 | ---- | M] () -- C:\Program Files\Mozilla Firefox\plugins\NPFxViewer.dllO1 HOSTS File: ([2010/03/29 07:20:57 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hostsO1 - Hosts: 127.0.0.1 localhostO2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll (Google Inc.)O2 - BHO: (no name) - {e28e0583-70fc-42a9-9767-93aa8ad06cf5} - No CLSID value found.O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)O3 - HKLM\..\Toolbar: (Ask Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)O3 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)O3 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\..\Toolbar\WebBrowser: (Ask Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)O4 - HKLM..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe (Apple Inc.)O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)O4 - HKLM..\Run: [brMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe ()O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.)O4 - HKLM..\Run: [DRPU Pc Data manager] C:\Program Files\DRPU PC Data Manager\apcdm.exe File not foundO4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)O4 - HKLM..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe (Brother Industories, Ltd.)O4 - HKLM..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe File not foundO4 - HKLM..\Run: [yisuhjwki] c:\Documents and Settings\Chris\Local Settings\Application Data\lwixgb\nssljwo.exe (Qrgip)O4 - HKU\S-1-5-21-448539723-1202660629-682003330-1004..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)O4 - HKU\S-1-5-21-448539723-1202660629-682003330-1004..\Run: [yisuhjwki] c:\Documents and Settings\Chris\Local Settings\Application Data\lwixgb\nssljwo.exe (Qrgip)O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe (Avanquest Software )O4 - Startup: C:\Documents and Settings\Brian\Start Menu\Programs\Startup\LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe (Lime Wire, LLC)O4 - Startup: C:\Documents and Settings\Steven\Start Menu\Programs\Startup\LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe (Lime Wire, LLC)O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main presentO6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel presentO7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel presentO7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel presentO7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145O7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel presentO7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323O7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863O7 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll (Google Inc.)O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)O15 - HKU\S-1-5-21-448539723-1202660629-682003330-1004\..Trusted Domains: llbean.com ([]* in Trusted sites)O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdat...b?1237904923229 (MUWebControl Class)O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_19)O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flash...r/ultrashim.cab (Reg Error: Key error.)O16 - DPF: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_19)O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_19)O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (Reg Error: Value error.)O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} https://portal.llbean.com/dana-cached/setup...perSetupSP1.cab (JuniperSetupControlXP Class)O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab (JuniperSetupClientControl Class)O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 207.5.171.1 207.5.144.254O18 - Protocol\Handler\pure-go {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\Platform\puresp3.dll (Pure Networks, Inc.)O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)O24 - Desktop WallPaper: C:\Documents and Settings\Chris\Local Settings\Application Data\Microsoft\Wallpaper1.bmpO24 - Desktop BackupWallPaper: C:\Documents and Settings\Chris\Local Settings\Application Data\Microsoft\Wallpaper1.bmpO32 - HKLM CDRom: AutoRun - 1O32 - AutoRun File - [2008/11/12 23:44:19 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]O32 - AutoRun File - [2008/05/06 08:26:23 | 000,000,309 | R--- | M] () - J:\autorun.inf -- [ CDFS ]O32 - AutoRun File - [2010/05/03 20:03:32 | 000,000,165 | RHS- | M] () - K:\AutoRun.inf -- [ FAT ]O33 - MountPoints2\{e06ffe62-3853-11df-9605-001d099d3531}\Shell - "" = AutoRunO33 - MountPoints2\{e06ffe62-3853-11df-9605-001d099d3531}\Shell\AutoRun - "" = Auto&PlayO33 - MountPoints2\{e06ffe62-3853-11df-9605-001d099d3531}\Shell\AutoRun\command - "" = J:\LaunchU3.exe -- [2007/10/23 03:45:39 | 001,336,632 | R--- | M] ()O33 - MountPoints2\J\Shell - "" = AutoRunO33 - MountPoints2\J\Shell\AutoRun - "" = Auto&PlayO33 - MountPoints2\J\Shell\AutoRun\command - "" = J:\LaunchU3.exe -- [2007/10/23 03:45:39 | 001,336,632 | R--- | M] ()O34 - HKLM BootExecute: (autocheck autochk *) - File not foundO35 - HKLM\..comfile [open] -- "%1" %*O35 - HKLM\..exefile [open] -- "%1" %*O37 - HKLM\...com [@ = comfile] -- "%1" %*O37 - HKLM\...exe [@ = exefile] -- "%1" %*========== Files/Folders - Created Within 30 Days ==========[2010/06/15 07:14:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\MBF[2010/06/13 22:04:06 | 000,000,000 | ---D | C] -- C:\Avenger[2010/06/13 21:21:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Macromedia[2010/06/13 21:21:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Adobe[2010/06/13 21:13:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData[2010/06/13 21:08:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Local Settings\Application Data\lwixgb[2010/06/12 21:18:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\TT[2010/06/11 07:42:09 | 000,000,000 | ---D | C] -- C:\download[2010/06/05 09:52:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\MV[2010/05/25 21:47:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\Lewiston[2010/05/25 08:21:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\Desktop\eBay[2010/05/18 07:19:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Chris\dwhelper[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ][3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]========== Files - Modified Within 30 Days ==========[2010/06/15 15:02:37 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\HijackThis.lnk[2010/06/15 14:43:10 | 000,002,521 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\Microsoft Office Outlook 2003.lnk[2010/06/15 13:23:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat[2010/06/15 13:05:57 | 017,563,648 | -H-- | M] () -- C:\Documents and Settings\Chris\ntuser.dat[2010/06/15 13:05:57 | 000,000,278 | -HS- | M] () -- C:\Documents and Settings\Chris\ntuser.ini[2010/06/13 22:03:38 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT[2010/06/13 21:55:00 | 000,000,982 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job[2010/06/13 21:50:00 | 000,000,886 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job[2010/06/13 16:55:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job[2010/06/13 04:50:00 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job[2010/06/11 10:28:31 | 000,124,928 | ---- | M] () -- C:\Documents and Settings\Chris\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini[2010/06/10 18:27:45 | 000,435,590 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat[2010/06/10 18:27:45 | 000,068,360 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat[2010/06/10 18:27:44 | 000,510,124 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI[2010/06/10 03:25:29 | 000,364,912 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT[2010/06/10 03:09:03 | 000,000,603 | ---- | M] () -- C:\WINDOWS\win.ini[2010/06/10 03:08:12 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK[2010/06/08 20:16:29 | 000,024,064 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\Yardsale 061210.doc[2010/05/31 07:18:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job[2010/05/26 06:19:22 | 000,019,456 | ---- | M] () -- C:\Documents and Settings\Chris\Desktop\eBay Hummel.xls[5 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ][3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]========== Files Created - No Company Name ==========[2010/06/15 15:02:37 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\Chris\Desktop\HijackThis.lnk[2010/06/08 09:46:08 | 000,024,064 | ---- | C] () -- C:\Documents and Settings\Chris\Desktop\Yardsale 061210.doc[2010/05/17 19:51:32 | 000,019,456 | ---- | C] () -- C:\Documents and Settings\Chris\Desktop\eBay Hummel.xls[2010/04/16 22:19:03 | 000,044,544 | ---- | C] () -- C:\WINDOWS\System32\GIF89.DLL[2010/04/16 22:18:57 | 000,484,352 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll[2010/04/13 13:00:34 | 000,000,028 | ---- | C] () -- C:\WINDOWS\pdf995.ini[2010/04/13 13:00:09 | 000,000,142 | ---- | C] () -- C:\WINDOWS\wpd99.drv[2010/04/13 13:00:08 | 000,051,716 | ---- | C] () -- C:\WINDOWS\System32\pdf995mon.dll[2010/04/13 12:13:18 | 000,106,496 | ---- | C] () -- C:\WINDOWS\System32\BrMuSNMP.dll[2010/02/22 21:36:03 | 000,000,000 | ---- | C] () -- C:\WINDOWS\pcfriend.INI[2009/12/28 22:15:51 | 000,009,760 | R--- | C] () -- C:\WINDOWS\System32\34CoInstaller.dll[2009/12/28 22:15:46 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\PsisDecd.dll[2009/12/28 18:29:55 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI[2009/11/10 10:00:52 | 000,000,848 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys[2009/10/27 15:02:02 | 000,000,103 | ---- | C] () -- C:\WINDOWS\pro.INI[2009/04/25 12:16:52 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\OctaneARM.dll[2009/03/24 10:25:24 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI[2009/03/24 07:55:44 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI[2008/12/30 21:19:20 | 000,210,456 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll[2008/12/30 21:19:20 | 000,206,360 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll[2008/12/30 21:19:20 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll[2008/12/30 21:19:20 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll[2008/12/30 21:19:20 | 000,194,072 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll[2008/12/30 21:19:20 | 000,026,136 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll[2008/12/26 18:56:53 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll[2008/12/26 18:56:53 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini[2008/12/26 18:56:52 | 000,815,104 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll[2008/12/26 18:56:52 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll[2008/12/26 18:56:51 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll[2008/12/26 18:56:51 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest[2008/11/15 14:35:35 | 000,000,419 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI[2008/11/15 14:35:35 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI[2008/11/15 14:32:06 | 000,000,851 | ---- | C] () -- C:\WINDOWS\Brpfx04a.ini[2008/11/15 14:32:06 | 000,000,153 | ---- | C] () -- C:\WINDOWS\brpcfx.ini[2008/11/15 14:30:47 | 000,027,019 | ---- | C] () -- C:\WINDOWS\maxlink.ini[2008/11/13 19:11:27 | 000,003,654 | ---- | C] () -- C:\WINDOWS\System32\drivers\Sonyhcp.dll[2008/11/12 23:52:55 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4820.dll[2006/09/28 19:55:50 | 000,077,568 | ---- | C] () -- C:\WINDOWS\System32\drivers\WudfPf.sys[2003/01/07 15:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI[2002/03/16 20:00:00 | 000,007,420 | ---- | C] () -- C:\WINDOWS\UA000035.DLL[2002/03/04 11:16:34 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Jpeg32.dll[1998/10/11 01:07:38 | 000,088,576 | ---- | C] () -- C:\WINDOWS\System32\Iticheck.dll< End of report >Can't find an Extra.txt file (nothing appears on my taskbar).GMER ran for several hours but then froze and I couldn't save the report. I'll try it again in sfae mode. Link to post Share on other sites More sharing options...
Elise Posted June 16, 2010 ID:268350 Share Posted June 16, 2010 Hello again,Good to hear things are running a litle better, however, I still see some active malware in your OTL log. Before starting to clean that up, see if you can finish GMER. If not, try to run it with the Sections option only. Link to post Share on other sites More sharing options...
cwjme Posted June 16, 2010 Author ID:268748 Share Posted June 16, 2010 Hi Elise,Tried running GMER once more with everything selected, with the same result - it froze while saving the log file. Ran it with just "Sections" and got the message "GMER hasn't found any system modification." Saved log to desktop and it was empty.Thanks for the suggestion.Chris Link to post Share on other sites More sharing options...
Elise Posted June 17, 2010 ID:268938 Share Posted June 17, 2010 Hi Chris,Not a problem, GMER is known for its unstability, so lets skip it for now.COMBOFIX---------------Please download ComboFix from one of these locations:BleepingcomputerForoSpywareDisable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. (Click on this link to see a list of programs that should be disabled. The list is not all inclusive.)Double click on Combofix.exe and follow the prompts.As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.**Please note: If the Microsoft Windows Recovery Console is already installed, or if you are running Vista, ComboFix will continue it's malware removal procedures.Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:Click on Yes, to continue scanning for malware.When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply. Link to post Share on other sites More sharing options...
cwjme Posted June 17, 2010 Author ID:269169 Share Posted June 17, 2010 Here you go...ComboFix 10-06-16.03 - Chris 06/17/2010 5:54.7.2 - x86Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exe.((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))).c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exec:\documents and settings\Chris\Recent\Thumbs.dbc:\windows\system32\Thumbs.dbc:\windows\system32\win.com.((((((((((((((((((((((((( Files Created from 2010-05-17 to 2010-06-17 ))))))))))))))))))))))))))))))).2010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download2010-05-18 11:19 . 2010-06-17 00:07 -------- d-----w- c:\documents and settings\Chris\dwhelper.(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))).2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T152010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll2010-04-18 19:26 . 2010-04-17 02:18 -------- d-----w- c:\program files\Free Easy Burner2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat.------- Sigcheck -------[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll.((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))..*Note* empty entries & legit default entries are not shown REGEDIT4[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952][HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnkbackup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]"DisableNotifications"= 1 (0x1)[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\system32\\sessmgr.exe"="c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"="c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="c:\\Program Files\\AIM6\\aim6.exe"="c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"="c:\\Program Files\\LimeWire\\LimeWire.exe"="c:\\Program Files\\Bonjour\\mDNSResponder.exe"="c:\\Program Files\\iTunes\\iTunes.exe"=[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]"67:UDP"= 67:UDP:DHCP Discovery Service"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]R2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368].Contents of the 'Scheduled Tasks' folder2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]..------- Supplementary Scan -------.uStart Page = hxxp://members.suscom-maine.net/uInternet Settings,ProxyServer = http=127.0.0.1:1720uInternet Settings,ProxyOverride = <local>IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.htmlTrusted Zone: llbean.comDPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cabFF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dllFF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dllFF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dllFF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dllFF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\---- FIREFOX POLICIES ----c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);.- - - - ORPHANS REMOVED - - - -BHO-{e28e0583-70fc-42a9-9767-93aa8ad06cf5} - (no file)HKCU-Run-yisuhjwki - c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exeHKLM-Run-SunJavaUpdateSched - c:\program files\Java\jre6\bin\jusched.exeHKLM-Run-DRPU Pc Data manager - c:\program files\DRPU PC Data Manager\apcdm.exeHKLM-Run-yisuhjwki - c:\documents and settings\chris\local settings\application data\lwixgb\nssljwo.exe**************************************************************************catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.netRootkit scan 2010-06-17 05:58Windows 5.1.2600 Service Pack 3 NTFSscanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfullyhidden files: 0**************************************************************************.--------------------- DLLs Loaded Under Running Processes ---------------------- - - - - - - > 'winlogon.exe'(700)c:\windows\system32\igfxdev.dll.Completion time: 2010-06-17 06:04:22ComboFix-quarantined-files.txt 2010-06-17 10:04Pre-Run: 507,130,470,400 bytes freePost-Run: 507,431,559,168 bytes free- - End Of File - - D41C3A8913E0E45B503B7A323CBBD9F5 Link to post Share on other sites More sharing options...
Elise Posted June 17, 2010 ID:269190 Share Posted June 17, 2010 Hello again,Please download Dial-A-Fix from one of the following mirrors:Primary MirrorSecondary Mirror[*]Extract the zip file to your desktop.[*]Double click Dial-a-Fix.exe to start the program. Note - you might see an error message regarding Internet Explorer. Just ignore this and continue.[*]Press the green double checkmark box (Looks like this: )[*]UNcheck Empty Temp Folders, as well as Adjust Time/Date in the prep section. The prep section should then look like this:[*]Click on go[*]Exit/Close Dial-A-FixNote - this is an old tool and will likely throw a few errors.CF-SCRIPT-------------We need to execute a CF-script.Close any open browsers.Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix. Click Start > Run and in the box that opens type notepad and press enter. Copy/paste the text in the codebox below into it:DDS::uInternet Settings,ProxyServer = http=127.0.0.1:1720uInternet Settings,ProxyOverride = <local>Save this as CFScript.txt, in the same location as ComboFix.exeRefering to the picture above, drag CFScript into ComboFix.exeWhen finished, it shall produce a log for you at C:\ComboFix.txt which I will require in your next reply. Link to post Share on other sites More sharing options...
cwjme Posted June 18, 2010 Author ID:269366 Share Posted June 18, 2010 I was able to run Dial-A-Fix. I manually created the CFScript.txt since I can't copy and paste, but I'm also unable to drag/drop files/folders, so I can't insert it into ComboFix.Suggestions? Link to post Share on other sites More sharing options...
Elise Posted June 18, 2010 ID:269534 Share Posted June 18, 2010 I am so sorry, I completely forgot about that.If CFScript.txt is on the desktop, do the following to run it:Click Start > Run, type the following text into the runbox and press enter.combofix "%userprofile%\desktop\cfscript.txt" Link to post Share on other sites More sharing options...
cwjme Posted June 18, 2010 Author ID:269570 Share Posted June 18, 2010 No need to apologize. I forget, too, until I try to drag/drop.Here is the log.ComboFix 10-06-16.03 - Chris 06/18/2010 5:54.8.2 - x86Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exeCommand switches used :: c:\documents and settings\Chris\desktop\cfscript.txt.((((((((((((((((((((((((( Files Created from 2010-05-18 to 2010-06-18 ))))))))))))))))))))))))))))))).2010-06-18 00:09 . 2010-06-18 10:02 -------- d-----w- c:\windows\system32\CatRoot22010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download.(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))).2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T152010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat.------- Sigcheck -------[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll.((((((((((((((((((((((((((((( SnapShot@2010-06-17_09.58.40 ))))))))))))))))))))))))))))))))))))))))).+ 2010-06-18 10:01 . 2010-06-18 10:01 16384 c:\windows\temp\Perflib_Perfdata_60c.dat.((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))..*Note* empty entries & legit default entries are not shown REGEDIT4[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952][HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnkbackup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]"DisableNotifications"= 1 (0x1)[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\system32\\sessmgr.exe"="c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"="c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="c:\\Program Files\\AIM6\\aim6.exe"="c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"="c:\\Program Files\\LimeWire\\LimeWire.exe"="c:\\Program Files\\Bonjour\\mDNSResponder.exe"="c:\\Program Files\\iTunes\\iTunes.exe"=[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]"67:UDP"= 67:UDP:DHCP Discovery Service"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]S2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368].Contents of the 'Scheduled Tasks' folder2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]..------- Supplementary Scan -------.uStart Page = hxxp://members.suscom-maine.net/uInternet Settings,ProxyOverride = <local>IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.htmlTrusted Zone: llbean.comDPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cabFF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dllFF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dllFF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dllFF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dllFF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\---- FIREFOX POLICIES ----c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);.**************************************************************************catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.netRootkit scan 2010-06-18 06:13Windows 5.1.2600 Service Pack 3 NTFSscanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfullyhidden files: 0**************************************************************************.--------------------- DLLs Loaded Under Running Processes ---------------------- - - - - - - > 'explorer.exe'(1120)c:\windows\system32\WININET.dll.------------------------ Other Running Processes ------------------------.c:\program files\Avira\AntiVir Desktop\avguard.exec:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exec:\program files\Bonjour\mDNSResponder.exec:\program files\Java\jre6\bin\jqs.exec:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exec:\program files\Avira\AntiVir Desktop\avshadow.exec:\windows\system32\java.exec:\windows\RTHDCPL.EXE.**************************************************************************.Completion time: 2010-06-18 06:18:54 - machine was rebootedComboFix-quarantined-files.txt 2010-06-18 10:18ComboFix2.txt 2010-06-17 10:04Pre-Run: 507,396,599,808 bytes freePost-Run: 507,322,814,464 bytes free- - End Of File - - 3FB2436699649EB05852D98AFC8CD718 Link to post Share on other sites More sharing options...
Elise Posted June 18, 2010 ID:269581 Share Posted June 18, 2010 Please click Start > Run, type sfc /scannow in the runbox and press enter.Let the System File Scanner run unhindered. Note - you might be prompted for your XP CD.When done, please rerun combofix (normal run). Link to post Share on other sites More sharing options...
cwjme Posted June 18, 2010 Author ID:269943 Share Posted June 18, 2010 Log posted in 2 sections due to size of file:ComboFix 10-06-16.03 - Chris 06/18/2010 17:10:36.9.2 - x86Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exe.((((((((((((((((((((((((( Files Created from 2010-05-18 to 2010-06-18 ))))))))))))))))))))))))))))))).2010-06-18 16:31 . 2008-04-14 09:42 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll2010-06-18 16:31 . 2008-04-14 09:42 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll2010-06-18 16:31 . 2001-08-18 02:36 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll2010-06-18 16:31 . 2001-08-18 02:37 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe2010-06-18 16:31 . 2001-08-18 02:37 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe2010-06-18 16:31 . 2001-08-18 02:37 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe2010-06-18 16:31 . 2001-08-17 16:11 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys2010-06-18 16:31 . 2008-04-14 02:04 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys2010-06-18 16:31 . 2008-04-14 09:42 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll2010-06-18 16:31 . 2008-04-14 02:04 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys2010-06-18 16:29 . 2008-04-14 09:42 11325 -c--a-w- c:\windows\system32\dllcache\vchnt5.dll2010-06-18 16:28 . 2001-08-17 16:51 166784 -c--a-w- c:\windows\system32\dllcache\tridxpm.sys2010-06-18 16:27 . 2001-08-17 18:07 32640 -c--a-w- c:\windows\system32\dllcache\symc8xx.sys2010-06-18 16:26 . 2001-08-17 17:53 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys2010-06-18 16:25 . 2001-07-21 18:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys2010-06-18 16:24 . 2001-08-18 02:36 79872 -c--a-w- c:\windows\system32\dllcache\rwia430.dll2010-06-18 16:23 . 2001-08-18 02:36 35328 -c--a-w- c:\windows\system32\dllcache\psisload.dll2010-06-18 16:22 . 2001-08-18 02:36 116736 -c--a-w- c:\windows\system32\dllcache\ovcodec2.dll2010-06-18 16:21 . 2001-08-18 02:36 59104 -c--a-w- c:\windows\system32\dllcache\n9i128v2.dll2010-06-18 16:20 . 2001-08-17 18:56 235648 -c--a-w- c:\windows\system32\dllcache\mgaud.dll2010-06-18 16:19 . 2001-08-17 18:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll2010-06-18 16:18 . 2008-04-14 04:11 8576 -c--a-w- c:\windows\system32\dllcache\i2omgmt.sys2010-06-18 16:17 . 2001-08-17 18:02 8576 -c--a-w- c:\windows\system32\dllcache\hidgame.sys2010-06-18 16:16 . 2001-08-17 17:28 347550 -c--a-w- c:\windows\system32\dllcache\es56tpi.sys2010-06-18 16:15 . 2001-08-18 02:36 110621 -c--a-w- c:\windows\system32\dllcache\digirlpt.dll2010-06-18 16:14 . 2008-04-14 09:41 121856 -c--a-w- c:\windows\system32\dllcache\camext30.dll2010-06-18 16:13 . 2001-08-17 17:47 6272 -c--a-w- c:\windows\system32\dllcache\apmbatt.sys2010-06-18 00:09 . 2010-06-18 21:09 -------- d-----w- c:\windows\system32\CatRoot22010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download.(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))).2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T152010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat.------- Sigcheck -------[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\kbdclass.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll. Link to post Share on other sites More sharing options...
cwjme Posted June 18, 2010 Author ID:269946 Share Posted June 18, 2010 Part 2.+ 2010-06-18 21:07 . 2010-06-18 21:07 16384 c:\windows\temp\Perflib_Perfdata_5fc.dat+ 2008-04-14 05:42 . 2008-04-14 09:51 52736 c:\windows\system32\dllcache\wzcsapi.dll+ 2010-06-18 16:30 . 2001-08-17 16:12 34890 c:\windows\system32\dllcache\wlandrv2.sys+ 2010-06-18 16:30 . 2001-08-18 02:36 53760 c:\windows\system32\dllcache\wiamsmud.dll+ 2010-06-18 16:30 . 2001-08-18 02:36 87040 c:\windows\system32\dllcache\wiafbdrv.dll+ 2008-11-13 03:45 . 2002-09-03 17:11 31232 c:\windows\system32\dllcache\weitekp9.sys- 2008-11-13 03:45 . 2004-08-12 14:09 31232 c:\windows\system32\dllcache\weitekp9.sys+ 2008-11-13 03:45 . 2002-09-03 17:11 41600 c:\windows\system32\dllcache\weitekp9.dll- 2008-11-13 03:45 . 2004-08-12 14:09 41600 c:\windows\system32\dllcache\weitekp9.dll+ 2010-06-18 16:30 . 2008-04-14 02:04 23615 c:\windows\system32\dllcache\wch7xxnt.sys+ 2010-06-18 16:30 . 2008-04-14 04:15 31744 c:\windows\system32\dllcache\wceusbsh.sys+ 2010-06-18 16:30 . 2001-08-17 16:10 35871 c:\windows\system32\dllcache\wbfirdma.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 25471 c:\windows\system32\dllcache\watv10nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 22271 c:\windows\system32\dllcache\watv06nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 33599 c:\windows\system32\dllcache\watv04nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 19551 c:\windows\system32\dllcache\watv02nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 29311 c:\windows\system32\dllcache\watv01nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 11935 c:\windows\system32\dllcache\wadv11nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 11871 c:\windows\system32\dllcache\wadv09nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 11295 c:\windows\system32\dllcache\wadv08nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 11807 c:\windows\system32\dllcache\wadv07nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 11775 c:\windows\system32\dllcache\wadv05nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 12127 c:\windows\system32\dllcache\wadv02nt.sys+ 2010-06-18 16:30 . 2008-04-14 02:04 12415 c:\windows\system32\dllcache\wadv01nt.sys+ 2010-06-18 16:30 . 2008-04-14 04:13 14208 c:\windows\system32\dllcache\wacompen.sys+ 2010-06-18 16:30 . 2001-08-17 16:13 16925 c:\windows\system32\dllcache\w940nd.sys+ 2010-06-18 16:30 . 2001-08-17 16:13 19016 c:\windows\system32\dllcache\w926nd.sys+ 2010-06-18 16:30 . 2001-08-17 16:13 19528 c:\windows\system32\dllcache\w840nd.sys+ 2008-11-13 03:45 . 2002-09-03 17:10 48256 c:\windows\system32\dllcache\w32.dll- 2008-11-13 03:45 . 2004-08-12 14:08 48256 c:\windows\system32\dllcache\w32.dll+ 2010-06-18 16:30 . 2001-08-17 17:28 64605 c:\windows\system32\dllcache\vvoice.sys+ 2010-06-18 16:30 . 2001-08-17 17:49 24576 c:\windows\system32\dllcache\viairda.sys+ 2010-06-18 16:30 . 2008-04-14 04:06 42240 c:\windows\system32\dllcache\viaagp.sys+ 2008-04-14 04:15 . 2008-04-14 04:15 26368 c:\windows\system32\dllcache\usbstor.sys+ 2010-06-18 16:29 . 2008-04-14 04:15 26112 c:\windows\system32\dllcache\usbser.sys+ 2010-06-18 16:29 . 2008-04-14 04:15 17152 c:\windows\system32\dllcache\usbohci.sys+ 2010-06-18 16:29 . 2008-04-14 04:26 12800 c:\windows\system32\dllcache\usb8023x.sys+ 2010-06-18 16:29 . 2008-04-14 02:05 32384 c:\windows\system32\dllcache\usb101et.sys+ 2010-06-18 16:29 . 2001-08-18 02:36 94720 c:\windows\system32\dllcache\umaxud32.dll+ 2010-06-18 16:29 . 2001-08-18 02:36 28160 c:\windows\system32\dllcache\umaxu40.dll+ 2010-06-18 16:29 . 2001-08-18 02:36 26624 c:\windows\system32\dllcache\umaxu22.dll+ 2010-06-18 16:29 . 2001-08-18 02:36 69632 c:\windows\system32\dllcache\umaxu12.dll+ 2010-06-18 16:29 . 2001-08-18 02:36 50688 c:\windows\system32\dllcache\umaxscan.dll+ 2010-06-18 16:29 . 2001-08-17 17:58 22912 c:\windows\system32\dllcache\umaxpcls.sys+ 2010-06-18 16:29 . 2001-08-18 02:36 50176 c:\windows\system32\dllcache\umaxp60.dll+ 2010-06-18 16:29 . 2001-08-18 02:36 47616 c:\windows\system32\dllcache\umaxcam.dll+ 2010-06-18 16:29 . 2001-08-17 17:52 36736 c:\windows\system32\dllcache\ultra.sys+ 2010-06-18 16:29 . 2008-04-14 04:06 44672 c:\windows\system32\dllcache\uagp35.sys+ 2010-06-18 16:29 . 2001-08-17 17:48 11520 c:\windows\system32\dllcache\twotrack.sys- 2008-11-13 03:45 . 2004-08-12 14:07 14336 c:\windows\system32\dllcache\tsprof.exe+ 2008-11-13 03:45 . 2002-09-03 17:07 14336 c:\windows\system32\dllcache\tsprof.exe+ 2010-06-18 16:28 . 2001-08-17 16:12 34375 c:\windows\system32\dllcache\tpro4.sys+ 2010-06-18 16:28 . 2001-08-18 02:35 42496 c:\windows\system32\dllcache\tp4res.dll+ 2010-06-18 16:28 . 2008-04-14 09:42 82944 c:\windows\system32\dllcache\tp4mon.exe+ 2010-06-18 16:28 . 2001-08-18 02:36 31744 c:\windows\system32\dllcache\tp4.dll+ 2010-06-18 16:28 . 2001-08-17 16:10 28232 c:\windows\system32\dllcache\tos4mo.sys- 2008-11-13 03:45 . 2008-04-14 02:13 44032 c:\windows\system32\dllcache\tintlphr.exe+ 2008-11-13 03:45 . 2002-09-03 16:26 44032 c:\windows\system32\dllcache\tintlphr.exe+ 2010-06-18 16:28 . 2001-08-17 18:56 81408 c:\windows\system32\dllcache\tgiul50.dll+ 2008-11-13 03:41 . 2008-04-14 10:43 40840 c:\windows\system32\dllcache\termdd.sys+ 2008-11-13 03:45 . 2002-09-03 17:06 19464 c:\windows\system32\dllcache\tdspx.sys- 2008-11-13 03:45 . 2004-08-12 14:07 19464 c:\windows\system32\dllcache\tdspx.sys+ 2010-06-18 16:28 . 2001-08-17 16:13 17129 c:\windows\system32\dllcache\tdkcd31.sys+ 2010-06-18 16:28 . 2001-08-17 16:13 37961 c:\windows\system32\dllcache\tdk100b.sys+ 2008-11-13 03:45 . 2002-09-03 17:06 21896 c:\windows\system32\dllcache\tdipx.sys- 2008-11-13 03:45 . 2004-08-12 14:07 21896 c:\windows\system32\dllcache\tdipx.sys+ 2008-11-13 03:45 . 2002-09-03 17:06 13192 c:\windows\system32\dllcache\tdasync.sys- 2008-11-13 03:45 . 2004-08-12 14:07 13192 c:\windows\system32\dllcache\tdasync.sys+ 2010-06-18 16:28 . 2001-08-17 17:49 30464 c:\windows\system32\dllcache\tbatm155.sys+ 2010-06-18 16:28 . 2001-08-17 16:50 36640 c:\windows\system32\dllcache\t2r4mini.sys+ 2010-06-18 16:27 . 2001-08-17 18:07 16256 c:\windows\system32\dllcache\symc810.sys+ 2010-06-18 16:27 . 2001-08-17 18:07 30688 c:\windows\system32\dllcache\sym_u3.sys+ 2010-06-18 16:27 . 2001-08-17 18:07 28384 c:\windows\system32\dllcache\sym_hi.sys+ 2010-06-18 16:27 . 2001-08-18 02:36 94293 c:\windows\system32\dllcache\sxports.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 10240 c:\windows\system32\dllcache\swpidflt.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 10240 c:\windows\system32\dllcache\swpdflt2.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 53760 c:\windows\system32\dllcache\sw_wheel.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 41472 c:\windows\system32\dllcache\sw_effct.dll+ 2008-11-12 22:36 . 2008-04-14 05:42 74752 c:\windows\system32\dllcache\storprop.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 53248 c:\windows\system32\dllcache\stlncoin.dll+ 2010-06-18 16:27 . 2001-08-17 17:51 16896 c:\windows\system32\dllcache\stcusb.sys+ 2010-06-18 16:27 . 2001-08-17 16:11 48736 c:\windows\system32\dllcache\srwlnd5.sys+ 2010-06-18 16:27 . 2001-08-18 02:36 99328 c:\windows\system32\dllcache\srusd.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 24660 c:\windows\system32\dllcache\spxupchk.dll+ 2010-06-18 16:27 . 2001-08-17 17:51 61824 c:\windows\system32\dllcache\speed.sys+ 2010-06-18 16:27 . 2001-08-17 18:07 19072 c:\windows\system32\dllcache\sparrow.sys+ 2010-06-18 16:27 . 2001-08-17 16:51 37040 c:\windows\system32\dllcache\sonypi.sys+ 2010-06-18 16:27 . 2001-08-17 16:51 20752 c:\windows\system32\dllcache\sonync.sys- 2008-11-13 03:45 . 2004-08-12 14:05 10240 c:\windows\system32\dllcache\snmpstup.dll+ 2008-11-13 03:45 . 2002-09-03 17:03 10240 c:\windows\system32\dllcache\snmpstup.dll+ 2010-06-18 16:26 . 2001-08-17 16:51 58368 c:\windows\system32\dllcache\smiminib.sys- 2008-11-13 03:45 . 2004-08-12 14:05 15872 c:\windows\system32\dllcache\smierrsm.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 15872 c:\windows\system32\dllcache\smierrsm.dll+ 2010-06-18 16:26 . 2001-08-17 16:12 25034 c:\windows\system32\dllcache\smcpwr2n.sys+ 2010-06-18 16:26 . 2001-08-17 16:10 35913 c:\windows\system32\dllcache\smcirda.sys+ 2010-06-18 16:26 . 2001-08-17 16:12 24576 c:\windows\system32\dllcache\smc8000n.sys+ 2010-06-18 16:26 . 2008-04-14 04:06 16000 c:\windows\system32\dllcache\smbbatt.sys- 2008-11-13 03:45 . 2004-08-12 14:05 31744 c:\windows\system32\dllcache\smb6w.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 31744 c:\windows\system32\dllcache\smb6w.dll+ 2010-06-18 16:26 . 2001-08-18 02:36 45568 c:\windows\system32\dllcache\smb3w.dll+ 2010-06-18 16:26 . 2001-08-18 02:36 33792 c:\windows\system32\dllcache\smb0w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 31744 c:\windows\system32\dllcache\sma3w.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 31744 c:\windows\system32\dllcache\sma3w.dll+ 2010-06-18 16:26 . 2001-08-18 02:36 28672 c:\windows\system32\dllcache\sma0w.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 38912 c:\windows\system32\dllcache\sm9aw.dll- 2008-11-13 03:45 . 2004-08-12 14:05 38912 c:\windows\system32\dllcache\sm9aw.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 26624 c:\windows\system32\dllcache\sm93w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 26624 c:\windows\system32\dllcache\sm93w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 26624 c:\windows\system32\dllcache\sm92w.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 26624 c:\windows\system32\dllcache\sm92w.dll+ 2010-06-18 16:26 . 2001-08-18 02:36 28160 c:\windows\system32\dllcache\sm91w.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 26112 c:\windows\system32\dllcache\sm90w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm90w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm8dw.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 26112 c:\windows\system32\dllcache\sm8dw.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 29184 c:\windows\system32\dllcache\sm8cw.dll- 2008-11-13 03:45 . 2004-08-12 14:05 29184 c:\windows\system32\dllcache\sm8cw.dll- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm8aw.dll+ 2008-11-13 03:45 . 2002-09-03 17:01 26112 c:\windows\system32\dllcache\sm8aw.dll- 2008-11-13 03:45 . 2004-08-12 14:05 26112 c:\windows\system32\dllcache\sm89w.dll+ 2008-11-13 03:45 . 2002-09-03 17:01 26112 c:\windows\system32\dllcache\sm89w.dll+ 2008-11-13 03:45 . 2002-09-03 17:01 30208 c:\windows\system32\dllcache\sm87w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 30208 c:\windows\system32\dllcache\sm87w.dll+ 2008-11-13 03:45 . 2002-09-03 17:01 30208 c:\windows\system32\dllcache\sm81w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 30208 c:\windows\system32\dllcache\sm81w.dll+ 2008-11-13 03:45 . 2002-09-03 17:01 25088 c:\windows\system32\dllcache\sm59w.dll- 2008-11-13 03:45 . 2004-08-12 14:05 25088 c:\windows\system32\dllcache\sm59w.dll+ 2010-06-18 16:26 . 2008-04-14 03:53 13240 c:\windows\system32\dllcache\slwdmsup.sys+ 2010-06-18 16:26 . 2008-04-14 09:42 73796 c:\windows\system32\dllcache\slserv.exe+ 2010-06-18 16:26 . 2008-04-14 09:42 32866 c:\windows\system32\dllcache\slrundll.exe+ 2010-06-18 16:26 . 2008-04-14 03:53 95424 c:\windows\system32\dllcache\slnthal.sys+ 2010-06-18 16:26 . 2008-04-14 09:42 73832 c:\windows\system32\dllcache\slcoinst.dll+ 2010-06-18 16:26 . 2008-04-14 02:05 63547 c:\windows\system32\dllcache\sla30nd5.sys+ 2010-06-18 16:26 . 2001-08-17 16:12 91294 c:\windows\system32\dllcache\skfpwin.sys+ 2010-06-18 16:26 . 2001-08-17 16:12 94698 c:\windows\system32\dllcache\sk98xwin.sys+ 2010-06-18 16:26 . 2001-08-17 16:50 50432 c:\windows\system32\dllcache\sisv.sys+ 2010-06-18 16:26 . 2008-04-14 02:05 32768 c:\windows\system32\dllcache\sisnic.sys+ 2010-06-18 16:26 . 2008-04-14 04:06 40960 c:\windows\system32\dllcache\sisagp.sys+ 2010-06-18 16:26 . 2001-08-17 16:50 68608 c:\windows\system32\dllcache\sis6306p.sys+ 2008-11-13 03:45 . 2002-09-03 16:59 18944 c:\windows\system32\dllcache\simptcp.dll- 2008-11-13 03:45 . 2004-08-12 14:05 18944 c:\windows\system32\dllcache\simptcp.dll+ 2010-06-18 16:25 . 2001-08-17 16:51 98080 c:\windows\system32\dllcache\sgiulnt5.sys+ 2010-06-18 16:25 . 2001-08-17 16:19 36480 c:\windows\system32\dllcache\sfmanm.sys+ 2008-04-14 04:10 . 2008-04-14 04:10 11392 c:\windows\system32\dllcache\sfloppy.sys+ 2010-06-18 16:25 . 2001-08-17 17:48 17664 c:\windows\system32\dllcache\sermouse.sys+ 2008-04-14 04:45 . 2008-04-14 04:45 64512 c:\windows\system32\dllcache\serial.sys+ 2010-06-18 16:25 . 2008-04-14 04:15 11520 c:\windows\system32\dllcache\scsiscan.sys+ 2010-06-18 16:25 . 2001-08-17 17:52 11648 c:\windows\system32\dllcache\scsiprnt.sys+ 2010-06-18 16:25 . 2001-08-17 17:51 17280 c:\windows\system32\dllcache\scr111.sys+ 2010-06-18 16:25 . 2001-08-17 17:51 16640 c:\windows\system32\dllcache\scmstcs.sys+ 2010-06-18 16:25 . 2001-08-17 17:51 23936 c:\windows\system32\dllcache\sccmusbm.sys+ 2010-06-18 16:25 . 2001-08-17 17:51 23936 c:\windows\system32\dllcache\sccmn50m.sys+ 2010-06-18 16:25 . 2008-04-14 04:10 43904 c:\windows\system32\dllcache\sbp2port.sys+ 2010-06-18 16:25 . 2001-08-17 16:50 75392 c:\windows\system32\dllcache\s3savmxm.sys+ 2010-06-18 16:25 . 2001-08-17 16:50 77824 c:\windows\system32\dllcache\s3sav4m.sys+ 2010-06-18 16:25 . 2001-08-17 16:50 61504 c:\windows\system32\dllcache\s3sav3dm.sys+ 2010-06-18 16:25 . 2001-08-18 02:36 62496 c:\windows\system32\dllcache\s3mtrio.dll+ 2010-06-18 16:25 . 2001-08-17 16:50 41216 c:\windows\system32\dllcache\s3mt3d.sys+ 2010-06-18 16:25 . 2001-08-17 17:57 65664 c:\windows\system32\dllcache\s3legacy.sys+ 2010-06-18 16:13 . 2001-08-17 18:56 66048 c:\windows\system32\dllcache\s3legacy.dll+ 2010-06-18 16:25 . 2001-08-18 02:36 82432 c:\windows\system32\dllcache\rwia450.dll- 2008-11-13 03:45 . 2004-08-12 14:04 79872 c:\windows\system32\dllcache\rwia330.dll+ 2008-11-13 03:45 . 2002-09-03 16:57 79872 c:\windows\system32\dllcache\rwia330.dll- 2008-11-13 03:45 . 2004-08-12 14:04 79872 c:\windows\system32\dllcache\rwia001.dll+ 2008-11-13 03:45 . 2002-09-03 16:57 79872 c:\windows\system32\dllcache\rwia001.dll+ 2010-06-18 16:24 . 2008-04-14 09:42 29696 c:\windows\system32\dllcache\rw450ext.dll+ 2010-06-18 16:24 . 2008-04-14 09:42 27648 c:\windows\system32\dllcache\rw430ext.dll+ 2010-06-18 16:24 . 2008-04-14 02:05 20992 c:\windows\system32\dllcache\rtl8139.sys+ 2010-06-18 16:24 . 2001-08-17 16:12 19017 c:\windows\system32\dllcache\rtl8029.sys+ 2010-06-18 16:24 . 2001-08-17 16:19 30720 c:\windows\system32\dllcache\rthwcls.sys+ 2010-06-18 16:24 . 2008-04-14 04:10 79104 c:\windows\system32\dllcache\rocket.sys+ 2010-06-18 16:24 . 2008-04-14 04:26 30592 c:\windows\system32\dllcache\rndismpx.sys+ 2010-06-18 16:24 . 2001-08-17 16:12 37563 c:\windows\system32\dllcache\rlnet5.sys+ 2010-06-18 16:24 . 2008-04-14 04:16 59136 c:\windows\system32\dllcache\rfcomm.sys+ 2010-06-18 16:24 . 2001-08-18 02:36 86097 c:\windows\system32\dllcache\reslog32.dll+ 2008-11-13 03:45 . 2002-09-03 16:56 14848 c:\windows\system32\dllcache\register.exe- 2008-11-13 03:45 . 2004-08-12 14:04 14848 c:\windows\system32\dllcache\register.exe+ 2008-11-12 22:38 . 2008-04-14 00:10 57600 c:\windows\system32\dllcache\redbook.sys+ 2010-06-18 16:24 . 2008-04-14 03:53 13776 c:\windows\system32\dllcache\recagent.sys+ 2010-06-18 16:24 . 2001-08-17 17:51 19584 c:\windows\system32\dllcache\rasirda.sys+ 2010-06-18 16:24 . 2001-08-18 02:36 41472 c:\windows\system32\dllcache\qvusd.dll+ 2008-11-13 03:45 . 2002-09-03 16:53 16384 c:\windows\system32\dllcache\quser.exe- 2008-11-13 03:45 . 2004-08-12 14:03 16384 c:\windows\system32\dllcache\quser.exe+ 2010-06-18 16:24 . 2001-08-17 17:52 49024 c:\windows\system32\dllcache\ql1280.sys+ 2010-06-18 16:24 . 2001-08-17 17:52 40448 c:\windows\system32\dllcache\ql1240.sys+ 2010-06-18 16:24 . 2001-08-17 17:52 45312 c:\windows\system32\dllcache\ql12160.sys+ 2010-06-18 16:24 . 2001-08-17 17:52 33152 c:\windows\system32\dllcache\ql10wnt.sys+ 2010-06-18 16:24 . 2001-08-17 17:52 40320 c:\windows\system32\dllcache\ql1080.sys+ 2010-06-18 16:23 . 2001-08-17 17:51 16128 c:\windows\system32\dllcache\pscr.sys+ 2010-06-18 16:23 . 2008-04-14 04:11 17664 c:\windows\system32\dllcache\ppa3.sys+ 2010-06-18 16:23 . 2001-08-17 17:53 17792 c:\windows\system32\dllcache\ppa.sys+ 2008-11-13 03:45 . 2002-09-03 16:52 11264 c:\windows\system32\dllcache\pmxmcro.dll- 2008-11-13 03:45 . 2004-08-12 14:03 11264 c:\windows\system32\dllcache\pmxmcro.dll+ 2008-04-14 05:42 . 2008-04-14 09:51 15360 c:\windows\system32\dllcache\pjlmon.dll+ 2010-06-18 16:23 . 2001-08-17 18:07 19840 c:\windows\system32\dllcache\philtune.sys+ 2010-06-18 16:23 . 2001-08-17 18:04 92416 c:\windows\system32\dllcache\phildec.sys+ 2010-06-18 16:23 . 2001-08-17 18:04 75776 c:\windows\system32\dllcache\philcam1.sys+ 2010-06-18 16:23 . 2001-08-18 02:36 16384 c:\windows\system32\dllcache\philcam1.dll+ 2010-06-18 16:23 . 2008-04-14 04:14 28032 c:\windows\system32\dllcache\perm3.sys+ 2010-06-18 16:23 . 2008-04-14 04:14 27904 c:\windows\system32\dllcache\perm2.sys+ 2010-06-18 16:23 . 2001-08-17 18:07 27296 c:\windows\system32\dllcache\perc2.sys+ 2010-06-18 16:23 . 2001-08-18 02:36 86016 c:\windows\system32\dllcache\pctspk.exe+ 2010-06-18 16:23 . 2001-08-17 16:11 35328 c:\windows\system32\dllcache\pcntpci5.sys+ 2010-06-18 16:23 . 2001-08-17 16:11 29769 c:\windows\system32\dllcache\pcntn5m.sys+ 2010-06-18 16:23 . 2001-08-17 16:11 30282 c:\windows\system32\dllcache\pcntn5hl.sys+ 2010-06-18 16:23 . 2001-08-17 16:12 26153 c:\windows\system32\dllcache\pcmlm56.sys+ 2010-06-18 16:23 . 2008-04-14 02:05 29502 c:\windows\system32\dllcache\pca200e.sys+ 2010-06-18 16:23 . 2001-08-17 16:12 30495 c:\windows\system32\dllcache\pc100nds.sys+ 2008-04-14 00:10 . 2008-04-14 09:51 80128 c:\windows\system32\dllcache\parport.sys- 2008-11-13 03:45 . 2004-08-12 13:58 14336 c:\windows\system32\dllcache\padrs412.dll+ 2008-11-13 03:45 . 2002-09-03 16:25 14336 c:\windows\system32\dllcache\padrs412.dll+ 2008-11-13 03:45 . 2002-09-03 16:25 36927 c:\windows\system32\dllcache\padrs411.dll- 2008-11-13 03:45 . 2004-08-12 13:58 36927 c:\windows\system32\dllcache\padrs411.dll+ 2010-06-18 16:23 . 2001-08-18 02:36 41984 c:\windows\system32\dllcache\ovui2rc.dll+ 2010-06-18 16:23 . 2001-08-18 02:36 44544 c:\windows\system32\dllcache\ovui2.dll+ 2010-06-18 16:23 . 2001-08-17 18:05 25216 c:\windows\system32\dllcache\ovsound2.sys+ 2010-06-18 16:23 . 2001-08-18 02:36 39424 c:\windows\system32\dllcache\ovcoms.exe+ 2010-06-18 16:23 . 2001-08-18 02:36 20480 c:\windows\system32\dllcache\ovcomc.dll+ 2010-06-18 16:22 . 2001-08-17 18:05 31872 c:\windows\system32\dllcache\ovce.sys+ 2010-06-18 16:22 . 2001-08-17 18:05 28032 c:\windows\system32\dllcache\ovcd.sys+ 2010-06-18 16:22 . 2001-08-17 18:05 48000 c:\windows\system32\dllcache\ovcam2.sys+ 2010-06-18 16:22 . 2001-08-17 18:05 25088 c:\windows\system32\dllcache\ovca.sys+ 2010-06-18 16:22 . 2001-08-17 17:28 54186 c:\windows\system32\dllcache\otcsercb.sys+ 2010-06-18 16:22 . 2001-08-17 16:12 43689 c:\windows\system32\dllcache\otceth5.sys+ 2010-06-18 16:22 . 2001-08-17 16:12 27209 c:\windows\system32\dllcache\otc06x5.sys+ 2010-06-18 16:22 . 2001-08-17 16:20 54528 c:\windows\system32\dllcache\opl3sax.sys+ 2010-06-18 16:22 . 2001-08-17 16:49 51552 c:\windows\system32\dllcache\ntgrip.sys+ 2010-06-18 16:22 . 2008-04-14 04:24 28672 c:\windows\system32\dllcache\nscirda.sys- 2008-11-12 22:36 . 2008-04-14 09:42 69120 c:\windows\system32\dllcache\notepad.exe+ 2008-04-14 09:42 . 2008-04-14 09:42 69120 c:\windows\system32\dllcache\notepad.exe+ 2010-06-18 16:22 . 2001-08-17 16:20 87040 c:\windows\system32\dllcache\nm6wdm.sys+ 2010-06-18 16:22 . 2001-08-17 16:12 32840 c:\windows\system32\dllcache\ngrpci.sys+ 2010-06-18 16:22 . 2001-08-17 16:11 65278 c:\windows\system32\dllcache\netflx3.sys+ 2010-06-18 16:22 . 2001-08-17 16:50 39264 c:\windows\system32\dllcache\neo20xx.sys+ 2010-06-18 16:22 . 2001-08-18 02:36 60480 c:\windows\system32\dllcache\neo20xx.dll+ 2010-06-18 16:22 . 2001-08-17 17:49 15872 c:\windows\system32\dllcache\ne2000.sys+ 2008-04-14 00:26 . 2008-04-14 09:51 14592 c:\windows\system32\dllcache\ndisuio.sys+ 2010-06-18 16:22 . 2001-08-17 18:56 91488 c:\windows\system32\dllcache\n9i3disp.dll+ 2010-06-18 16:22 . 2001-08-17 16:50 27936 c:\windows\system32\dllcache\n9i3d.sys+ 2010-06-18 16:22 . 2001-08-17 16:50 33088 c:\windows\system32\dllcache\n9i128v2.sys+ 2010-06-18 16:21 . 2001-08-17 16:50 13664 c:\windows\system32\dllcache\n9i128.sys+ 2010-06-18 16:21 . 2001-08-17 18:56 35392 c:\windows\system32\dllcache\n9i128.dll+ 2010-06-18 16:21 . 2001-08-17 16:11 52255 c:\windows\system32\dllcache\n1000nt5.sys+ 2010-06-18 16:21 . 2001-08-17 17:50 75520 c:\windows\system32\dllcache\mxport.sys+ 2010-06-18 16:21 . 2001-08-17 17:49 19968 c:\windows\system32\dllcache\mxnic.sys+ 2010-06-18 16:21 . 2001-08-18 02:36 19968 c:\windows\system32\dllcache\mxicfg.dll+ 2010-06-18 16:21 . 2001-08-17 17:50 21888 c:\windows\system32\dllcache\mxcard.sys+ 2010-06-18 16:21 . 2008-04-14 04:13 12672 c:\windows\system32\dllcache\mutohpen.sys+ 2010-06-18 16:21 . 2008-04-14 04:16 49024 c:\windows\system32\dllcache\mstape.sys+ 2008-04-14 00:06 . 2008-04-14 09:51 15488 c:\windows\system32\dllcache\mssmbios.sys+ 2010-06-18 16:21 . 2001-08-17 17:48 12416 c:\windows\system32\dllcache\msriffwv.sys+ 2010-06-18 16:21 . 2008-04-14 04:24 22016 c:\windows\system32\dllcache\msircomm.sys+ 2008-11-13 03:45 . 2002-09-03 16:25 98304 c:\windows\system32\dllcache\msir3jp.dll- 2008-11-13 03:45 . 2004-08-12 13:58 98304 c:\windows\system32\dllcache\msir3jp.dll+ 2010-06-18 16:21 . 2001-08-17 18:02 35200 c:\windows\system32\dllcache\msgame.sys+ 2010-06-18 16:21 . 2008-04-14 04:16 51200 c:\windows\system32\dllcache\msdv.sys+ 2010-06-18 16:21 . 2001-08-17 17:52 17280 c:\windows\system32\dllcache\mraid35x.sys+ 2001-08-17 13:48 . 2004-08-12 13:57 12160 c:\windows\system32\dllcache\mouhid.sys+ 2008-04-14 00:09 . 2008-04-14 09:51 23040 c:\windows\system32\dllcache\mouclass.sys+ 2010-06-18 16:21 . 2001-08-17 17:57 16128 c:\windows\system32\dllcache\modemcsa.sys+ 2008-04-14 00:30 . 2008-04-14 09:51 30080 c:\windows\system32\dllcache\modem.sys+ 2004-08-12 13:59 . 2002-09-03 16:41 34304 c:\windows\system32\dllcache\migisol.exe- 2004-08-12 13:59 . 2004-08-12 13:59 34304 c:\windows\system32\dllcache\migisol.exe- 2008-11-13 03:45 . 2004-08-12 13:59 92416 c:\windows\system32\dllcache\mga.sys+ 2008-11-13 03:45 . 2002-09-03 16:41 92416 c:\windows\system32\dllcache\mga.sys+ 2008-11-13 03:45 . 2002-09-03 16:41 92032 c:\windows\system32\dllcache\mga.dll- 2008-11-13 03:45 . 2004-08-12 13:59 92032 c:\windows\system32\dllcache\mga.dll+ 2010-06-18 16:20 . 2008-04-14 04:11 26112 c:\windows\system32\dllcache\memstpci.sys+ 2010-06-18 16:20 . 2001-08-18 02:36 47616 c:\windows\system32\dllcache\memgrp.dll+ 2010-06-18 16:20 . 2001-08-17 16:19 48768 c:\windows\system32\dllcache\maestro.sys+ 2010-06-18 16:20 . 2001-08-18 02:36 58880 c:\windows\system32\dllcache\m3092dc.dll+ 2010-06-18 16:20 . 2001-08-18 02:36 58368 c:\windows\system32\dllcache\m3091dc.dll+ 2010-06-18 16:20 . 2001-08-17 16:49 22848 c:\windows\system32\dllcache\lwusbhid.sys+ 2010-06-18 16:20 . 2008-04-14 02:09 20864 c:\windows\system32\dllcache\lwadihid.sys+ 2010-06-18 16:20 . 2001-08-17 16:12 70730 c:\windows\system32\dllcache\lne100tx.sys+ 2010-06-18 16:20 . 2001-08-17 16:12 20573 c:\windows\system32\dllcache\lne100.sys+ 2010-06-18 16:20 . 2001-08-17 16:11 25065 c:\windows\system32\dllcache\lmndis3.sys+ 2010-06-18 16:20 . 2001-08-17 17:51 15744 c:\windows\system32\dllcache\lit220p.sys+ 2010-06-18 16:20 . 2008-04-14 04:10 34688 c:\windows\system32\dllcache\lbrtfdc.sys+ 2010-06-18 16:20 . 2001-08-17 16:12 26442 c:\windows\system32\dllcache\lanepic5.sys+ 2010-06-18 16:20 . 2001-08-17 16:12 19016 c:\windows\system32\dllcache\ktc111.sys+ 2010-06-18 16:20 . 2001-08-18 02:36 37376 c:\windows\system32\dllcache\kousd.dll- 2008-11-13 03:45 . 2004-08-12 13:58 70656 c:\windows\system32\dllcache\korwbrkr.dll+ 2008-11-13 03:45 . 2002-09-03 16:25 70656 c:\windows\system32\dllcache\korwbrkr.dll+ 2010-06-18 16:20 . 2008-04-14 09:41 48640 c:\windows\system32\dllcache\kdsui.dll+ 2008-04-14 04:09 . 2008-04-14 04:09 14592 c:\windows\system32\dllcache\kbdhid.sys- 2008-11-13 03:44 . 2004-08-12 13:58 18432 c:\windows\system32\dllcache\jupiw.dll+ 2008-11-13 03:44 . 2002-09-03 16:37 18432 c:\windows\system32\dllcache\jupiw.dll+ 2010-06-18 16:19 . 2001-08-17 17:49 26624 c:\windows\system32\dllcache\irstusb.sys+ 2010-06-18 16:19 . 2001-08-17 17:51 18688 c:\windows\system32\dllcache\irsir.sys+ 2010-06-18 16:19 . 2008-04-14 09:41 28160 c:\windows\system32\dllcache\irmon.dll+ 2010-06-18 16:19 . 2001-08-17 17:49 23552 c:\windows\system32\dllcache\irmk7.sys+ 2010-06-18 16:19 . 2008-04-14 04:24 88192 c:\windows\system32\dllcache\irda.sys+ 2010-06-18 16:19 . 2001-08-17 16:12 45632 c:\windows\system32\dllcache\ip5515.sys+ 2010-06-18 16:19 . 2001-08-18 02:36 90200 c:\windows\system32\dllcache\io8ports.dll+ 2010-06-18 16:19 . 2001-08-17 17:50 38784 c:\windows\system32\dllcache\io8.sys+ 2008-04-14 04:01 . 2008-04-14 04:01 36352 c:\windows\system32\dllcache\intelppm.sys+ 2010-06-18 16:19 . 2001-08-17 17:47 13056 c:\windows\system32\dllcache\inport.sys+ 2010-06-18 16:19 . 2001-08-17 17:52 16000 c:\windows\system32\dllcache\ini910u.sys- 2008-11-13 03:44 . 2008-04-14 02:13 59392 c:\windows\system32\dllcache\imscinst.exe+ 2008-11-13 03:44 . 2002-09-03 16:25 59392 c:\windows\system32\dllcache\imscinst.exe+ 2008-11-13 03:44 . 2002-09-03 16:25 59904 c:\windows\system32\dllcache\imkrinst.exe- 2008-11-13 03:44 . 2004-08-12 13:58 59904 c:\windows\system32\dllcache\imkrinst.exe+ 2008-11-13 03:44 . 2002-09-03 16:25 45109 c:\windows\system32\dllcache\imjpuex.exe- 2008-11-13 03:44 . 2004-08-12 13:58 45109 c:\windows\system32\dllcache\imjpuex.exe+ 2008-11-13 03:44 . 2002-09-03 16:24 57398 c:\windows\system32\dllcache\imjpdadm.exe- 2008-11-13 03:44 . 2004-08-12 13:58 57398 c:\windows\system32\dllcache\imjpdadm.exe- 2008-11-13 03:44 . 2004-08-12 13:58 44032 c:\windows\system32\dllcache\imekrmig.exe+ 2008-11-13 03:44 . 2002-09-03 16:24 44032 c:\windows\system32\dllcache\imekrmig.exe+ 2008-04-14 04:11 . 2008-04-14 04:11 42112 c:\windows\system32\dllcache\imapi.sys+ 2010-06-18 16:19 . 2001-08-18 02:36 20480 c:\windows\system32\dllcache\icam5ext.dll+ 2010-06-18 16:19 . 2001-08-18 02:36 45056 c:\windows\system32\dllcache\icam5com.dll+ 2010-06-18 16:19 . 2001-08-18 02:36 61952 c:\windows\system32\dllcache\icam4ext.dll+ 2010-06-18 16:19 . 2001-08-18 02:36 91136 c:\windows\system32\dllcache\icam4com.dll+ 2010-06-18 16:19 . 2001-08-18 02:36 26624 c:\windows\system32\dllcache\icam3ext.dll+ 2010-06-18 16:19 . 2001-08-17 18:06 38528 c:\windows\system32\dllcache\ibmvcap.sys+ 2010-06-18 16:19 . 2001-08-17 16:11 28700 c:\windows\system32\dllcache\ibmexmp.sys+ 2008-04-14 04:48 . 2008-04-14 04:48 52480 c:\windows\system32\dllcache\i8042prt.sys+ 2010-06-18 16:19 . 2001-08-17 16:49 58592 c:\windows\system32\dllcache\i740nt5.sys+ 2010-06-18 16:19 . 2008-04-14 04:11 18560 c:\windows\system32\dllcache\i2omp.sys+ 2010-06-18 16:18 . 2008-04-14 09:41 32285 c:\windows\system32\dllcache\hsfcisp2.dll+ 2010-06-18 16:18 . 2001-08-17 17:28 50751 c:\windows\system32\dllcache\hsf_tone.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 73279 c:\windows\system32\dllcache\hsf_spkp.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 44863 c:\windows\system32\dllcache\hsf_soar.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 57471 c:\windows\system32\dllcache\hsf_samp.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 67167 c:\windows\system32\dllcache\hsf_bsc2.sys+ 2010-06-18 16:18 . 2001-08-18 02:36 19456 c:\windows\system32\dllcache\hr1w.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 13312 c:\windows\system32\dllcache\hpsjmcro.dll+ 2010-06-18 16:18 . 2001-08-17 18:07 25952 c:\windows\system32\dllcache\hpn.sys+ 2010-06-18 16:18 . 2001-08-18 02:36 32768 c:\windows\system32\dllcache\hpgtmcro.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 68608 c:\windows\system32\dllcache\hpgt53tk.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 31232 c:\windows\system32\dllcache\hpgt42tk.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 93696 c:\windows\system32\dllcache\hpgt42.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 48128 c:\windows\system32\dllcache\hpgt33tk.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 89088 c:\windows\system32\dllcache\hpgt33.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 83968 c:\windows\system32\dllcache\hpgt21.dll+ 2008-04-14 04:15 . 2008-04-14 04:15 10368 c:\windows\system32\dllcache\hidusb.sys+ 2010-06-18 16:18 . 2008-04-14 09:41 21504 c:\windows\system32\dllcache\hidserv.dll+ 2008-04-14 04:15 . 2008-04-14 04:15 24960 c:\windows\system32\dllcache\hidparse.sys+ 2010-06-18 16:18 . 2008-04-14 04:15 19200 c:\windows\system32\dllcache\hidir.sys+ 2008-04-14 04:15 . 2008-04-14 04:15 36864 c:\windows\system32\dllcache\hidclass.sys+ 2010-06-18 16:17 . 2008-04-14 04:16 25600 c:\windows\system32\dllcache\hidbth.sys+ 2010-06-18 16:17 . 2008-04-14 04:06 20352 c:\windows\system32\dllcache\hidbatt.sys+ 2008-04-14 05:41 . 2008-04-14 09:51 20992 c:\windows\system32\dllcache\hid.dll+ 2008-11-13 03:44 . 2002-09-03 16:24 36864 c:\windows\system32\dllcache\hanjadic.dll- 2008-11-13 03:44 . 2004-08-12 13:58 36864 c:\windows\system32\dllcache\hanjadic.dll+ 2010-06-18 16:17 . 2008-04-14 04:10 28288 c:\windows\system32\dllcache\grserial.sys+ 2010-06-18 16:17 . 2001-08-17 17:51 82304 c:\windows\system32\dllcache\grclass.sys+ 2010-06-18 16:17 . 2001-08-17 17:51 17408 c:\windows\system32\dllcache\gpr400.sys+ 2010-06-18 16:17 . 2008-04-14 04:15 59136 c:\windows\system32\dllcache\gckernel.sys+ 2010-06-18 16:17 . 2008-04-14 04:15 10624 c:\windows\system32\dllcache\gameenum.sys+ 2010-06-18 16:17 . 2008-04-14 04:06 46464 c:\windows\system32\dllcache\gagp30kx.sys- 2008-11-13 03:44 . 2004-08-12 13:57 11264 c:\windows\system32\dllcache\fxssend.exe+ 2008-11-13 03:44 . 2002-09-03 16:33 11264 c:\windows\system32\dllcache\fxssend.exe+ 2008-11-13 03:44 . 2002-09-03 16:33 31744 c:\windows\system32\dllcache\fxsroute.dll- 2008-11-13 03:44 . 2004-08-12 13:57 31744 c:\windows\system32\dllcache\fxsroute.dll+ 2010-06-18 16:17 . 2001-08-18 02:36 92160 c:\windows\system32\dllcache\fuusd.dll- 2008-11-13 03:44 . 2003-03-24 21:52 94208 c:\windows\system32\dllcache\fpencode.dll+ 2008-11-13 03:44 . 2002-05-14 16:08 94208 c:\windows\system32\dllcache\fpencode.dll+ 2008-11-13 03:44 . 2002-05-14 16:08 14608 c:\windows\system32\dllcache\fp98sadm.exe- 2008-11-13 03:44 . 2003-03-24 21:52 14608 c:\windows\system32\dllcache\fp98sadm.exe+ 2010-06-18 16:17 . 2008-04-14 02:05 34173 c:\windows\system32\dllcache\forehe.sys+ 2010-06-18 16:17 . 2001-08-18 02:36 71680 c:\windows\system32\dllcache\fnfilter.dll+ 2008-04-14 04:10 . 2008-04-14 04:10 20480 c:\windows\system32\dllcache\flpydisk.sys- 2008-11-13 03:44 . 2004-08-12 13:57 14848 c:\windows\system32\dllcache\flattemp.exe+ 2008-11-13 03:44 . 2002-09-03 16:33 14848 c:\windows\system32\dllcache\flattemp.exe+ 2010-06-18 16:17 . 2001-08-17 16:13 27165 c:\windows\system32\dllcache\fetnd5.sys+ 2010-06-18 16:17 . 2001-08-17 16:10 22090 c:\windows\system32\dllcache\fem556n5.sys+ 2008-04-14 04:10 . 2008-04-14 04:10 27392 c:\windows\system32\dllcache\fdc.sys+ 2010-06-18 16:17 . 2001-08-17 16:12 24618 c:\windows\system32\dllcache\fa410nd5.sys+ 2010-06-18 16:17 . 2001-08-17 16:12 16074 c:\windows\system32\dllcache\fa312nd5.sys+ 2010-06-18 16:17 . 2001-08-17 16:11 11850 c:\windows\system32\dllcache\f3ab18xj.sys+ 2010-06-18 16:17 . 2001-08-17 16:11 12362 c:\windows\system32\dllcache\f3ab18xi.sys- 2008-11-13 03:45 . 2001-08-18 03:36 12288 c:\windows\system32\dllcache\EXCH_smtpctrs.dll+ 2008-11-13 03:45 . 2001-08-18 02:36 12288 c:\windows\system32\dllcache\EXCH_smtpctrs.dll+ 2008-11-13 03:45 . 2001-08-18 02:36 26112 c:\windows\system32\dllcache\EXCH_seos.dll- 2008-11-13 03:45 . 2001-08-18 03:36 26112 c:\windows\system32\dllcache\EXCH_seos.dll- 2008-11-13 03:45 . 2001-08-18 03:36 57856 c:\windows\system32\dllcache\EXCH_scripto.dll+ 2008-11-13 03:45 . 2001-08-18 02:36 57856 c:\windows\system32\dllcache\EXCH_scripto.dll+ 2008-11-13 03:45 . 2001-08-18 02:36 23040 c:\windows\system32\dllcache\EXCH_regtrace.exe- 2008-11-13 03:45 . 2001-08-18 03:36 23040 c:\windows\system32\dllcache\EXCH_regtrace.exe+ 2008-11-13 03:45 . 2001-08-18 02:36 38912 c:\windows\system32\dllcache\EXCH_ntfsdrv.dll- 2008-11-13 03:45 . 2001-08-18 03:36 38912 c:\windows\system32\dllcache\EXCH_ntfsdrv.dll- 2008-11-13 03:45 . 2001-08-18 03:36 65536 c:\windows\system32\dllcache\EXCH_mailmsg.dll+ 2008-11-13 03:45 . 2001-08-18 02:36 65536 c:\windows\system32\dllcache\EXCH_mailmsg.dll+ 2008-11-13 03:44 . 2001-08-18 02:36 43520 c:\windows\system32\dllcache\EXCH_fcachdll.dll- 2008-11-13 03:44 . 2001-08-18 03:36 43520 c:\windows\system32\dllcache\EXCH_fcachdll.dll+ 2008-11-13 03:44 . 2001-08-18 02:36 45056 c:\windows\system32\dllcache\EXCH_aqadmin.dll- 2008-11-13 03:44 . 2001-08-18 03:36 45056 c:\windows\system32\dllcache\EXCH_aqadmin.dll+ 2010-06-18 16:17 . 2001-08-17 16:12 16998 c:\windows\system32\dllcache\ex10.sys+ 2008-11-13 03:44 . 2002-09-03 16:32 25856 c:\windows\system32\dllcache\et4000.sys- 2008-11-13 03:44 . 2004-08-12 13:57 25856 c:\windows\system32\dllcache\et4000.sys- 2008-11-13 03:44 . 2004-08-12 13:57 45056 c:\windows\system32\dllcache\esunid.dll+ 2008-11-13 03:44 . 2002-09-03 16:32 45056 c:\windows\system32\dllcache\esunid.dll+ 2010-06-18 16:17 . 2001-08-18 02:36 45568 c:\windows\system32\dllcache\esunib.dll+ 2010-06-18 16:17 . 2001-08-18 02:36 45568 c:\windows\system32\dllcache\esuni.dll+ 2008-11-13 03:44 . 2002-09-03 16:32 57856 c:\windows\system32\dllcache\esuimgd.dll- 2008-11-13 03:44 . 2004-08-12 13:57 57856 c:\windows\system32\dllcache\esuimgd.dll+ 2010-06-18 16:17 . 2001-08-18 02:36 34816 c:\windows\system32\dllcache\esuimg.dll+ 2008-11-13 03:44 . 2002-09-03 16:32 31744 c:\windows\system32\dllcache\esucmd.dll- 2008-11-13 03:44 . 2004-08-12 13:57 31744 c:\windows\system32\dllcache\esucmd.dll+ 2010-06-18 16:17 . 2001-08-18 02:36 43008 c:\windows\system32\dllcache\esucm.dll+ 2010-06-18 16:17 . 2001-08-17 16:19 63360 c:\windows\system32\dllcache\ess.sys+ 2010-06-18 16:16 . 2001-08-17 16:19 72192 c:\windows\system32\dllcache\es1969.sys+ 2010-06-18 16:16 . 2001-08-17 16:19 40704 c:\windows\system32\dllcache\es1371mp.sys+ 2010-06-18 16:16 . 2001-08-17 16:19 37120 c:\windows\system32\dllcache\es1370mp.sys+ 2010-06-18 16:16 . 2001-08-18 02:36 61952 c:\windows\system32\dllcache\eqnloop.exe+ 2010-06-18 16:16 . 2001-08-18 02:36 51200 c:\windows\system32\dllcache\eqnlogr.exe+ 2010-06-18 16:16 . 2001-08-18 02:36 53248 c:\windows\system32\dllcache\eqndiag.exe+ 2010-06-18 16:16 . 2001-08-17 16:12 18503 c:\windows\system32\dllcache\epro4.sys+ 2010-06-18 16:16 . 2001-08-17 16:10 19996 c:\windows\system32\dllcache\em556n4.sys+ 2010-06-18 16:16 . 2001-08-17 16:10 25159 c:\windows\system32\dllcache\elnk3.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 70174 c:\windows\system32\dllcache\el98xn5.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 66591 c:\windows\system32\dllcache\el90xbc5.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 77386 c:\windows\system32\dllcache\el656nd5.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 69194 c:\windows\system32\dllcache\el656cd5.sys+ 2010-06-18 16:16 . 2001-08-17 16:10 26141 c:\windows\system32\dllcache\el589nd5.sys+ 2010-06-18 16:16 . 2001-08-17 16:10 69692 c:\windows\system32\dllcache\el575nd5.sys+ 2010-06-18 16:16 . 2001-08-17 16:10 24653 c:\windows\system32\dllcache\el574nd4.sys+ 2010-06-18 16:16 . 2001-08-17 16:10 55999 c:\windows\system32\dllcache\el556nd5.sys+ 2010-06-18 16:16 . 2001-08-17 16:10 44103 c:\windows\system32\dllcache\el515.sys+ 2010-06-18 16:16 . 2001-08-17 16:12 19594 c:\windows\system32\dllcache\e100isa4.sys+ 2010-06-18 16:16 . 2001-08-17 16:12 50719 c:\windows\system32\dllcache\e1000nt5.sys+ 2008-04-14 04:08 . 2008-04-14 04:08 71168 c:\windows\system32\dllcache\dxg.sys+ 2010-06-18 16:16 . 2001-08-17 18:07 20192 c:\windows\system32\dllcache\dpti2o.sys+ 2010-06-18 16:16 . 2001-08-17 16:12 28062 c:\windows\system32\dllcache\dp83820.sys+ 2010-06-18 16:16 . 2001-08-17 17:47 23808 c:\windows\system32\dllcache\dot4usb.sys+ 2010-06-18 16:16 . 2001-08-17 17:47 12928 c:\windows\system32\dllcache\dot4prt.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 29696 c:\windows\system32\dllcache\dm9pci5.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 26698 c:\windows\system32\dllcache\dlh5xnd5.sys+ 2010-06-18 16:16 . 2001-08-18 02:36 29768 c:\windows\system32\dllcache\divasu.dll+ 2010-06-18 16:16 . 2001-08-18 02:36 37962 c:\windows\system32\dllcache\divaprop.dll+ 2010-06-18 16:16 . 2001-08-18 02:36 38985 c:\windows\system32\dllcache\disrvsu.dll+ 2010-06-18 16:16 . 2001-08-18 02:36 31305 c:\windows\system32\dllcache\disrvpp.dll+ 2010-06-18 16:16 . 2001-08-17 16:13 91305 c:\windows\system32\dllcache\dimaint.sys+ 2010-06-18 16:16 . 2001-08-17 16:17 42432 c:\windows\system32\dllcache\digirlpt.sys+ 2010-06-18 16:15 . 2001-08-17 16:14 21606 c:\windows\system32\dllcache\digiisdn.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 41046 c:\windows\system32\dllcache\digiisdn.dll+ 2010-06-18 16:15 . 2001-08-17 16:17 90525 c:\windows\system32\dllcache\digifep5.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 37735 c:\windows\system32\dllcache\digiasyn.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 65622 c:\windows\system32\dllcache\digiasyn.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 32256 c:\windows\system32\dllcache\diapi2NT.dll+ 2010-06-18 16:15 . 2001-08-17 16:17 29531 c:\windows\system32\dllcache\dgapci.sys+ 2010-06-18 16:15 . 2001-08-17 16:11 24649 c:\windows\system32\dllcache\dfe650d.sys+ 2010-06-18 16:15 . 2001-08-17 16:11 24648 c:\windows\system32\dllcache\dfe650.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 24064 c:\windows\system32\dllcache\devldr32.exe+ 2010-06-18 16:15 . 2001-08-17 16:11 20928 c:\windows\system32\dllcache\defpa.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 86016 c:\windows\system32\dllcache\dc240usd.dll+ 2010-06-18 16:15 . 2001-08-17 16:12 63208 c:\windows\system32\dllcache\dc21x4.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 80896 c:\windows\system32\dllcache\dc210usd.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 25600 c:\windows\system32\dllcache\dc210_32.dll+ 2010-06-18 16:15 . 2001-08-17 17:52 14720 c:\windows\system32\dllcache\dac960nt.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 27648 c:\windows\system32\dllcache\cyzports.dll+ 2010-06-18 16:15 . 2001-08-17 17:50 49792 c:\windows\system32\dllcache\cyzport.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 27136 c:\windows\system32\dllcache\cyzcoins.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 27648 c:\windows\system32\dllcache\cyyports.dll+ 2010-06-18 16:15 . 2001-08-17 17:50 50176 c:\windows\system32\dllcache\cyyport.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 28672 c:\windows\system32\dllcache\cyycoins.dll+ 2010-06-18 16:15 . 2001-08-17 17:50 14848 c:\windows\system32\dllcache\cyclom-y.sys+ 2010-06-18 16:15 . 2001-08-17 17:50 17152 c:\windows\system32\dllcache\cyclad-z.sys+ 2010-06-18 16:15 . 2008-04-14 02:06 48640 c:\windows\system32\dllcache\cwrwdm.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 93952 c:\windows\system32\dllcache\cwcwdm.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 72832 c:\windows\system32\dllcache\cwbwdm.sys+ 2008-11-13 03:42 . 2008-04-14 09:41 33792 c:\windows\system32\dllcache\custsat.dll- 2008-11-13 03:42 . 2007-08-13 22:54 33792 c:\windows\system32\dllcache\custsat.dll+ 2010-06-18 16:15 . 2001-08-17 16:19 96256 c:\windows\system32\dllcache\ctlsb16.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 42112 c:\windows\system32\dllcache\crtaud.sys+ 2008-11-13 03:44 . 2002-09-03 16:29 18944 c:\windows\system32\dllcache\cprofile.exe- 2008-11-13 03:44 . 2004-08-12 13:56 18944 c:\windows\system32\dllcache\cprofile.exe+ 2010-06-18 16:15 . 2001-08-17 16:11 60970 c:\windows\system32\dllcache\cpqtrnd5.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 21533 c:\windows\system32\dllcache\cpqndis5.sys+ 2010-06-18 16:15 . 2001-08-17 17:52 14976 c:\windows\system32\dllcache\cpqarray.sys+ 2010-06-18 16:15 . 2008-04-14 04:06 10240 c:\windows\system32\dllcache\compbatt.sys+ 2010-06-18 16:15 . 2001-08-17 16:11 39936 c:\windows\system32\dllcache\cnxt1803.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 44032 c:\windows\system32\dllcache\cnusd.dll+ 2008-04-14 05:41 . 2008-04-14 09:51 47104 c:\windows\system32\dllcache\cnbjmon.dll+ 2010-06-18 16:15 . 2001-08-17 17:51 20736 c:\windows\system32\dllcache\cmbp0wdm.sys+ 2010-06-18 16:15 . 2008-04-14 04:06 13952 c:\windows\system32\dllcache\cmbatt.sys+ 2010-06-18 16:15 . 2001-08-17 17:57 45696 c:\windows\system32\dllcache\cirrus.sys+ 2010-06-18 16:15 . 2001-08-17 18:56 91264 c:\windows\system32\dllcache\cirrus.dll- 2008-11-13 03:44 . 2004-08-12 13:56 14336 c:\windows\system32\dllcache\chgusr.exe+ 2008-11-13 03:44 . 2002-09-03 16:28 14336 c:\windows\system32\dllcache\chgusr.exe- 2008-11-13 03:44 . 2004-08-12 13:56 15872 c:\windows\system32\dllcache\chgport.exe+ 2008-11-13 03:44 . 2002-09-03 16:28 15872 c:\windows\system32\dllcache\chgport.exe- 2008-11-13 03:44 . 2004-08-12 13:56 13312 c:\windows\system32\dllcache\chglogon.exe+ 2008-11-13 03:44 . 2002-09-03 16:28 13312 c:\windows\system32\dllcache\chglogon.exe+ 2010-06-18 16:15 . 2008-04-14 09:41 15423 c:\windows\system32\dllcache\ch7xxnt5.dll+ 2010-06-18 16:15 . 2001-08-17 16:13 49182 c:\windows\system32\dllcache\cem56n5.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 22044 c:\windows\system32\dllcache\cem33n5.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 22044 c:\windows\system32\dllcache\cem28n5.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 27164 c:\windows\system32\dllcache\ce3n5.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 21530 c:\windows\system32\dllcache\ce2n5.sys+ 2008-04-14 04:10 . 2010-03-24 23:52 62976 c:\windows\system32\dllcache\cdrom.sys+ 2001-08-17 13:52 . 2004-08-12 13:57 18688 c:\windows\system32\dllcache\cdaudio.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 46108 c:\windows\system32\dllcache\cben5.sys+ 2010-06-18 16:15 . 2001-08-17 16:12 39680 c:\windows\system32\dllcache\cb325.sys+ 2010-06-18 16:15 . 2001-08-17 16:12 37916 c:\windows\system32\dllcache\cb102.sys- 2008-11-13 03:44 . 2004-08-12 13:55 54528 c:\windows\system32\dllcache\cap7146.sys+ 2008-11-13 03:44 . 2002-09-03 16:28 54528 c:\windows\system32\dllcache\cap7146.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 74240 c:\windows\system32\dllcache\camexo20.dll+ 2010-06-18 16:14 . 2001-08-17 17:51 13824 c:\windows\system32\dllcache\bulltlp3.sys+ 2010-06-18 16:14 . 2008-04-14 04:16 18944 c:\windows\system32\dllcache\bthusb.sys+ 2010-06-18 16:14 . 2008-04-14 04:16 36480 c:\windows\system32\dllcache\bthprint.sys+ 2010-06-18 16:14 . 2008-04-14 04:16 37888 c:\windows\system32\dllcache\bthmodem.sys+ 2010-06-18 16:14 . 2008-04-14 04:16 17024 c:\windows\system32\dllcache\bthenum.sys+ 2010-06-18 16:14 . 2001-08-17 16:11 31529 c:\windows\system32\dllcache\brzwlan.sys+ 2010-06-18 16:14 . 2001-08-17 17:12 10368 c:\windows\system32\dllcache\brusbscn.sys+ 2010-06-18 16:14 . 2001-08-17 17:12 11008 c:\windows\system32\dllcache\brusbmdm.sys+ 2010-06-18 16:14 . 2001-08-17 17:12 60416 c:\windows\system32\dllcache\brserwdm.sys+ 2010-06-18 16:14 . 2001-08-17 17:12 39552 c:\windows\system32\dllcache\brparwdm.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 41472 c:\windows\system32\dllcache\brmfusb.dll+ 2010-06-18 16:14 . 2001-08-18 02:36 32256 c:\windows\system32\dllcache\brmfrsmg.exe+ 2010-06-18 16:14 . 2001-08-18 02:36 29696 c:\windows\system32\dllcache\brmflpt.dll+ 2010-06-18 16:14 . 2001-08-18 02:36 81408 c:\windows\system32\dllcache\brmfcwia.dll+ 2010-06-18 16:14 . 2001-08-18 02:36 15360 c:\windows\system32\dllcache\brmfbidi.dll+ 2010-06-18 16:14 . 2001-08-17 17:12 12160 c:\windows\system32\dllcache\brfiltlo.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 12800 c:\windows\system32\dllcache\brevif.dll+ 2010-06-18 16:14 . 2001-08-18 02:36 19456 c:\windows\system32\dllcache\brbidiif.dll+ 2010-06-18 16:14 . 2001-08-17 16:11 26568 c:\windows\system32\dllcache\bcm4e5.sys+ 2010-06-18 16:14 . 2001-08-17 16:11 54271 c:\windows\system32\dllcache\bcm42xx5.sys+ 2010-06-18 16:14 . 2001-08-17 16:11 66557 c:\windows\system32\dllcache\bcm42u.sys+ 2010-06-18 16:14 . 2008-04-14 04:06 14208 c:\windows\system32\dllcache\battc.sys+ 2010-06-18 16:14 . 2001-08-17 16:48 36128 c:\windows\system32\dllcache\banshee.sys+ 2010-06-18 16:14 . 2001-08-17 16:11 96640 c:\windows\system32\dllcache\b57xp32.sys+ 2010-06-18 16:14 . 2001-08-17 16:13 89952 c:\windows\system32\dllcache\b1cbase.sys+ 2010-06-18 16:14 . 2001-08-17 16:19 36992 c:\windows\system32\dllcache\aztw2320.sys+ 2010-06-18 16:14 . 2001-08-17 16:13 37568 c:\windows\system32\dllcache\avmwan.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 87552 c:\windows\system32\dllcache\avmcoxp.dll+ 2010-06-18 16:14 . 2008-04-14 04:16 13696 c:\windows\system32\dllcache\avcstrm.sys+ 2010-06-18 16:14 . 2001-08-17 18:01 36096 c:\windows\system32\dllcache\avcaudio.sys+ 2010-06-18 16:14 . 2008-04-14 04:16 38912 c:\windows\system32\dllcache\avc.sys+ 2010-06-18 16:14 . 2008-04-14 09:41 17279 c:\windows\system32\dllcache\atv10nt5.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 14143 c:\windows\system32\dllcache\atv06nt5.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 25471 c:\windows\system32\dllcache\atv04nt5.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 11359 c:\windows\system32\dllcache\atv02nt5.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 21183 c:\windows\system32\dllcache\atv01nt5.dll+ 2010-06-18 16:14 . 2001-08-17 16:49 23552 c:\windows\system32\dllcache\atixbar.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 26624 c:\windows\system32\dllcache\ativxbar.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 19456 c:\windows\system32\dllcache\ativttxx.sys+ 2010-06-18 16:14 . 2008-04-14 09:41 32768 c:\windows\system32\dllcache\ativtmxx.dll+ 2010-06-18 16:14 . 2001-08-17 16:49 17152 c:\windows\system32\dllcache\atitvsnd.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 17152 c:\windows\system32\dllcache\atitunep.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 26880 c:\windows\system32\dllcache\atirtsnd.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 49920 c:\windows\system32\dllcache\atirtcap.sys+ 2010-06-18 16:14 . 2001-08-17 16:48 70528 c:\windows\system32\dllcache\atiragem.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 10240 c:\windows\system32\dllcache\atipcxxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 63488 c:\windows\system32\dllcache\atinxsxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 31744 c:\windows\system32\dllcache\atinxbxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 73216 c:\windows\system32\dllcache\atintuxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 13824 c:\windows\system32\dllcache\atinttxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 28672 c:\windows\system32\dllcache\atinsnxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 52224 c:\windows\system32\dllcache\atinraxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 14336 c:\windows\system32\dllcache\atinpdxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 13824 c:\windows\system32\dllcache\atinmdxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 57856 c:\windows\system32\dllcache\atinbtxx.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 75136 c:\windows\system32\dllcache\atimpae.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 37376 c:\windows\system32\dllcache\atievxx.exe+ 2010-06-18 16:14 . 2001-08-17 16:49 46464 c:\windows\system32\dllcache\atibt829.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 34735 c:\windows\system32\dllcache\ati1xsxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 29455 c:\windows\system32\dllcache\ati1xbxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 36463 c:\windows\system32\dllcache\ati1tuxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 21343 c:\windows\system32\dllcache\ati1ttxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 26367 c:\windows\system32\dllcache\ati1snxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 63663 c:\windows\system32\dllcache\ati1rvxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 30671 c:\windows\system32\dllcache\ati1raxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 12047 c:\windows\system32\dllcache\ati1pdxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 11615 c:\windows\system32\dllcache\ati1mdxx.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 56623 c:\windows\system32\dllcache\ati1btxx.sys+ 2010-06-18 16:14 . 2001-08-17 17:57 77568 c:\windows\system32\dllcache\ati.sys+ 2010-06-18 16:14 . 2001-08-17 18:55 96128 c:\windows\system32\dllcache\ati.dll+ 2010-06-18 16:14 . 2001-08-17 16:12 97354 c:\windows\system32\dllcache\aspndis3.sys+ 2010-06-18 16:14 . 2001-08-17 17:51 14848 c:\windows\system32\dllcache\asc3550.sys+ 2010-06-18 16:14 . 2001-08-17 17:52 22400 c:\windows\system32\dllcache\asc3350p.sys+ 2010-06-18 16:14 . 2001-08-17 17:52 26496 c:\windows\system32\dllcache\asc.sys+ 2010-06-18 16:13 . 2008-04-14 02:05 36224 c:\windows\system32\dllcache\an983.sys+ 2010-06-18 16:13 . 2001-08-17 17:52 12032 c:\windows\system32\dllcache\amsint.sys+ 2010-06-18 16:13 . 2008-04-14 04:06 43008 c:\windows\system32\dllcache\amdagp.sys+ 2010-06-18 16:13 . 2001-08-17 16:11 16969 c:\windows\system32\dllcache\amb8002.sys+ 2010-06-18 16:13 . 2008-04-14 04:06 42752 c:\windows\system32\dllcache\alim1541.sys+ 2010-06-18 16:13 . 2001-08-17 17:49 26624 c:\windows\system32\dllcache\alifir.sys+ 2010-06-18 16:13 . 2001-08-17 16:11 27678 c:\windows\system32\dllcache\ali5261.sys+ 2010-06-18 16:13 . 2001-08-17 18:07 56960 c:\windows\system32\dllcache\aic78xx.sys+ 2010-06-18 16:13 . 2001-08-17 18:07 55168 c:\windows\system32\dllcache\aic78u2.sys+ 2010-06-18 16:13 . 2001-08-17 17:52 12800 c:\windows\system32\dllcache\aha154x.sys+ 2010-06-18 16:13 . 2008-04-14 04:06 44928 c:\windows\system32\dllcache\agpcpq.sys+ 2010-06-18 16:13 . 2008-04-14 04:06 42368 c:\windows\system32\dllcache\agp440.sys+ 2010-06-18 16:13 . 2001-08-17 16:11 46112 c:\windows\system32\dllcache\adptsf50.sys+ 2010-06-18 16:13 . 2008-04-14 02:06 10880 c:\windows\system32\dllcache\admjoy.sys+ 2010-06-18 16:13 . 2001-08-17 16:11 20160 c:\windows\system32\dllcache\adm8511.sys+ 2010-06-18 16:13 . 2001-08-18 02:36 61440 c:\windows\system32\dllcache\acerscad.dll+ 2010-06-18 16:13 . 2008-04-14 02:06 84480 c:\windows\system32\dllcache\ac97via.sys+ 2010-06-18 16:13 . 2001-08-17 16:20 96256 c:\windows\system32\dllcache\ac97intc.sys+ 2010-06-18 16:13 . 2001-08-17 17:52 23552 c:\windows\system32\dllcache\abp480n5.sys+ 2010-06-18 16:13 . 2001-08-18 02:36 98304 c:\windows\system32\dllcache\a3d.dll+ 2010-06-18 16:13 . 2001-08-17 18:55 38400 c:\windows\system32\dllcache\8514a.dll+ 2010-06-18 16:13 . 2008-04-14 04:16 48128 c:\windows\system32\dllcache\61883.sys+ 2010-06-18 16:13 . 2008-04-14 04:10 12288 c:\windows\system32\dllcache\4mmdat.sys+ 2010-06-18 16:13 . 2001-08-17 18:06 11264 c:\windows\system32\dllcache\1394vdbg.sys+ 2010-06-18 16:30 . 2008-04-14 04:06 8832 c:\windows\system32\dllcache\wmiacpi.sys+ 2010-06-18 16:30 . 2008-04-14 04:10 5376 c:\windows\system32\dllcache\viaide.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 7556 c:\windows\system32\dllcache\usroslba.sys+ 2004-08-12 14:08 . 2004-08-12 14:08 4736 c:\windows\system32\dllcache\usbd.sys+ 2010-06-18 16:28 . 2001-08-17 17:51 4992 c:\windows\system32\dllcache\toside.sys+ 2010-06-18 16:28 . 2001-08-17 17:52 7040 c:\windows\system32\dllcache\tandqic.sys+ 2010-06-18 16:27 . 2001-08-17 18:02 3968 c:\windows\system32\dllcache\swusbflt.sys+ 2008-04-14 00:09 . 2008-04-14 09:51 4352 c:\windows\system32\dllcache\swenum.sys+ 2010-06-18 16:27 . 2001-08-17 17:56 7552 c:\windows\system32\dllcache\sonypvu1.sys+ 2010-06-18 16:27 . 2001-08-17 17:53 9600 c:\windows\system32\dllcache\sonymc.sys+ 2010-06-18 16:27 . 2008-04-14 04:10 7552 c:\windows\system32\dllcache\sonyait.sys- 2008-11-13 03:45 . 2004-08-12 14:05 5632 c:\windows\system32\dllcache\smimsgif.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 5632 c:\windows\system32\dllcache\smimsgif.dll- 2008-11-13 03:45 . 2004-08-12 14:05 5632 c:\windows\system32\dllcache\smierrsy.dll+ 2008-11-13 03:45 . 2002-09-03 17:02 5632 c:\windows\system32\dllcache\smierrsy.dll+ 2010-06-18 16:26 . 2001-08-17 17:57 6784 c:\windows\system32\dllcache\smbhc.sys+ 2010-06-18 16:26 . 2008-04-14 04:06 6912 c:\windows\system32\dllcache\smbclass.sys+ 2010-06-18 16:26 . 2008-04-14 04:06 5888 c:\windows\system32\dllcache\smbali.sys+ 2010-06-18 16:26 . 2008-04-14 09:42 3901 c:\windows\system32\dllcache\siint5.dll+ 2010-06-18 16:25 . 2001-08-17 17:53 6784 c:\windows\system32\dllcache\serscan.sys+ 2010-06-18 16:25 . 2001-08-17 17:53 6912 c:\windows\system32\dllcache\seaddsmc.sys+ 2010-06-18 16:24 . 2001-08-18 02:36 9216 c:\windows\system32\dllcache\rsmgrstr.dll+ 2010-06-18 16:24 . 2001-08-17 16:19 3840 c:\windows\system32\dllcache\rpfun.sys+ 2010-06-18 16:24 . 2001-08-17 17:53 3328 c:\windows\system32\dllcache\qv2kux.sys+ 2008-11-13 03:45 . 2002-09-03 16:53 9728 c:\windows\system32\dllcache\query.exe- 2008-11-13 03:45 . 2004-08-12 14:03 9728 c:\windows\system32\dllcache\query.exe+ 2010-06-18 16:24 . 2008-04-14 04:10 6016 c:\windows\system32\dllcache\qic157.sys+ 2010-06-18 16:24 . 2001-08-18 02:36 5632 c:\windows\system32\dllcache\ptpusb.dll+ 2010-06-18 16:23 . 2008-04-14 04:10 8832 c:\windows\system32\dllcache\powerfil.sys+ 2010-06-18 16:23 . 2001-08-17 17:53 7168 c:\windows\system32\dllcache\pnrmc.sys- 2008-11-13 03:45 . 2004-08-12 14:03 6144 c:\windows\system32\dllcache\pmxgl.dll+ 2008-11-13 03:45 . 2002-09-03 16:52 6144 c:\windows\system32\dllcache\pmxgl.dll+ 2010-06-18 16:23 . 2001-08-17 18:07 5504 c:\windows\system32\dllcache\perc2hib.sys+ 2010-06-18 16:22 . 2001-08-17 17:47 9344 c:\windows\system32\dllcache\ntapm.sys+ 2010-06-18 16:22 . 2001-08-17 17:53 7552 c:\windows\system32\dllcache\nsmmc.sys+ 2010-06-18 16:21 . 2001-08-18 02:36 7168 c:\windows\system32\dllcache\mxport.dll+ 2010-06-18 16:21 . 2001-08-17 18:00 2944 c:\windows\system32\dllcache\msmpu401.sys+ 2010-06-18 16:21 . 2001-08-17 17:48 6016 c:\windows\system32\dllcache\msfsio.sys+ 2010-06-18 16:21 . 2001-08-17 17:52 6528 c:\windows\system32\dllcache\miniqic.sys+ 2010-06-18 16:20 . 2001-08-17 17:58 8320 c:\windows\system32\dllcache\memcard.sys+ 2010-06-18 16:20 . 2001-08-17 17:52 7424 c:\windows\system32\dllcache\mammoth.sys+ 2010-06-18 16:20 . 2008-04-14 04:10 7040 c:\windows\system32\dllcache\ltotape.sys+ 2010-06-18 16:20 . 2001-08-17 17:53 4992 c:\windows\system32\dllcache\loop.sys- 2008-11-13 03:45 . 2004-08-12 13:58 7680 c:\windows\system32\dllcache\kbdnecnt.dll+ 2008-11-13 03:45 . 2002-09-03 16:38 7680 c:\windows\system32\dllcache\kbdnecnt.dll- 2008-11-13 03:45 . 2004-08-12 13:58 9216 c:\windows\system32\dllcache\kbdnecat.dll+ 2008-11-13 03:45 . 2002-09-03 16:38 9216 c:\windows\system32\dllcache\kbdnecat.dll- 2008-11-13 03:45 . 2004-08-12 13:58 7168 c:\windows\system32\dllcache\kbdnec95.dll+ 2008-11-13 03:45 . 2002-09-03 16:38 7168 c:\windows\system32\dllcache\kbdnec95.dll+ 2010-06-18 16:20 . 2001-08-18 02:36 8192 c:\windows\system32\dllcache\kbdkor.dll+ 2010-06-18 16:20 . 2001-08-18 02:36 8704 c:\windows\system32\dllcache\kbdjpn.dll+ 2010-06-18 16:20 . 2008-04-14 09:39 6144 c:\windows\system32\dllcache\kbd106.dll+ 2010-06-18 16:20 . 2001-08-17 18:55 5632 c:\windows\system32\dllcache\kbd103.dll+ 2010-06-18 16:19 . 2001-08-17 18:55 6144 c:\windows\system32\dllcache\kbd101b.dll- 2008-11-13 03:44 . 2004-08-12 13:58 6144 c:\windows\system32\dllcache\kbd101a.dll+ 2008-11-13 03:44 . 2002-09-03 16:37 6144 c:\windows\system32\dllcache\kbd101a.dll+ 2010-06-18 16:19 . 2008-04-14 04:10 5504 c:\windows\system32\dllcache\intelide.sys+ 2010-06-18 16:19 . 2001-08-18 02:34 9216 c:\windows\system32\dllcache\ibmsgnet.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 9759 c:\windows\system32\dllcache\hsf_inst.dll+ 2010-06-18 16:18 . 2001-08-17 17:52 5760 c:\windows\system32\dllcache\hpt4qic.sys+ 2010-06-18 16:18 . 2001-08-17 18:02 2688 c:\windows\system32\dllcache\hidswvd.sys- 2008-11-13 03:45 . 2001-08-18 03:36 7168 c:\windows\system32\dllcache\EXCH_snprfdll.dll+ 2008-11-13 03:45 . 2001-08-18 02:36 7168 c:\windows\system32\dllcache\EXCH_snprfdll.dll- 2008-11-13 03:44 . 2001-08-18 03:36 5632 c:\windows\system32\dllcache\EXCH_adsiisex.dll+ 2008-11-13 03:44 . 2001-08-18 02:36 5632 c:\windows\system32\dllcache\EXCH_adsiisex.dll+ 2010-06-18 16:17 . 2001-08-17 17:52 7040 c:\windows\system32\dllcache\exabyte2.sys+ 2010-06-18 16:16 . 2001-08-17 17:53 7296 c:\windows\system32\dllcache\elmsmc.sys+ 2010-06-18 16:16 . 2001-08-17 17:47 8704 c:\windows\system32\dllcache\dot4scan.sys+ 2010-06-18 16:16 . 2008-04-14 04:10 8320 c:\windows\system32\dllcache\dlttape.sys+ 2010-06-18 16:16 . 2001-08-18 02:36 6216 c:\windows\system32\dllcache\divaci.dll+ 2010-06-18 16:16 . 2001-08-18 02:36 6729 c:\windows\system32\dllcache\disrvci.dll+ 2010-06-18 16:15 . 2001-08-17 17:52 7424 c:\windows\system32\dllcache\ddsmc.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 3584 c:\windows\system32\dllcache\cwcosnt5.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 3072 c:\windows\system32\dllcache\cwbmidi.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 3072 c:\windows\system32\dllcache\cwbase.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 4096 c:\windows\system32\dllcache\ctwdm32.dll+ 2010-06-18 16:15 . 2001-08-17 16:19 3712 c:\windows\system32\dllcache\ctljystk.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 6912 c:\windows\system32\dllcache\ctlfacem.sys+ 2010-06-18 16:15 . 2001-08-17 17:51 6656 c:\windows\system32\dllcache\cmdide.sys+ 2010-06-18 16:15 . 2008-04-14 04:11 8192 c:\windows\system32\dllcache\changer.sys- 2008-11-13 03:44 . 2004-08-12 13:56 9728 c:\windows\system32\dllcache\change.exe+ 2008-11-13 03:44 . 2002-09-03 16:28 9728 c:\windows\system32\dllcache\change.exe+ 2010-06-18 16:15 . 2001-08-17 17:52 7680 c:\windows\system32\dllcache\cd20xrnt.sys+ 2008-11-13 03:44 . 2002-09-03 16:30 6656 c:\windows\system32\dllcache\c_is2022.dll- 2008-11-13 03:44 . 2004-08-12 13:56 6656 c:\windows\system32\dllcache\c_is2022.dll+ 2010-06-18 16:14 . 2001-08-18 02:36 9728 c:\windows\system32\dllcache\brserif.dll+ 2010-06-18 16:14 . 2001-08-18 02:36 5120 c:\windows\system32\dllcache\brscnrsm.dll+ 2010-06-18 16:14 . 2001-08-17 17:12 3168 c:\windows\system32\dllcache\brparimg.sys+ 2010-06-18 16:14 . 2001-08-17 17:12 3968 c:\windows\system32\dllcache\brfiltup.sys+ 2010-06-18 16:14 . 2001-08-17 17:12 2944 c:\windows\system32\dllcache\brfilt.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 9728 c:\windows\system32\dllcache\brcoinst.dll+ 2008-11-12 22:39 . 2001-08-17 13:59 3072 c:\windows\system32\dllcache\audstub.sys+ 2010-06-18 16:14 . 2001-08-17 16:49 9472 c:\windows\system32\dllcache\ativmdcd.sys+ 2010-06-18 16:13 . 2001-08-17 17:51 5248 c:\windows\system32\dllcache\aliide.sys+ 2010-06-18 16:13 . 2008-04-14 09:41 3775 c:\windows\system32\dllcache\adv11nt5.dll+ 2010-06-18 16:13 . 2008-04-14 09:41 3711 c:\windows\system32\dllcache\adv09nt5.dll+ 2010-06-18 16:13 . 2008-04-14 09:41 3135 c:\windows\system32\dllcache\adv08nt5.dll+ 2010-06-18 16:13 . 2008-04-14 09:41 3647 c:\windows\system32\dllcache\adv07nt5.dll+ 2010-06-18 16:13 . 2008-04-14 09:41 3615 c:\windows\system32\dllcache\adv05nt5.dll+ 2010-06-18 16:13 . 2008-04-14 09:41 3967 c:\windows\system32\dllcache\adv02nt5.dll+ 2010-06-18 16:13 . 2008-04-14 09:41 4255 c:\windows\system32\dllcache\adv01nt5.dll+ 2010-06-18 16:13 . 2001-08-17 17:53 7424 c:\windows\system32\dllcache\adicvls.sys+ 2008-04-14 05:42 . 2008-04-14 09:51 483840 c:\windows\system32\dllcache\wzcsvc.dll+ 2010-06-18 16:30 . 2008-04-14 02:05 154624 c:\windows\system32\dllcache\wlluc48.sys+ 2008-04-14 09:42 . 2008-04-14 09:42 146432 c:\windows\system32\dllcache\winspool.drv- 2008-11-12 22:36 . 2008-04-14 09:42 146432 c:\windows\system32\dllcache\winspool.drv+ 2010-06-18 16:30 . 2001-08-17 17:28 771581 c:\windows\system32\dllcache\winacisa.sys+ 2010-06-18 16:30 . 2001-08-17 17:28 701386 c:\windows\system32\dllcache\wdhaalba.sys+ 2010-06-18 16:30 . 2001-08-17 17:28 397502 c:\windows\system32\dllcache\vpctcom.sys+ 2010-06-18 16:30 . 2001-08-17 17:28 604253 c:\windows\system32\dllcache\vmodem.sys+ 2010-06-18 16:30 . 2001-08-17 16:14 249402 c:\windows\system32\dllcache\vinwm.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 687999 c:\windows\system32\dllcache\usrwdxjs.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 765884 c:\windows\system32\dllcache\usrti.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 113762 c:\windows\system32\dllcache\usrpda.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 224802 c:\windows\system32\dllcache\usr1807a.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 794399 c:\windows\system32\dllcache\usr1806v.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 793598 c:\windows\system32\dllcache\usr1806.sys+ 2010-06-18 16:29 . 2001-08-17 17:28 794654 c:\windows\system32\dllcache\usr1801.sys+ 2010-06-18 16:29 . 2008-04-14 04:16 121984 c:\windows\system32\dllcache\usbvideo.sys+ 2010-06-18 16:29 . 2001-08-18 02:36 211968 c:\windows\system32\dllcache\um54scan.dll+ 2010-06-18 16:29 . 2001-08-18 02:36 216064 c:\windows\system32\dllcache\um34scan.dll+ 2010-06-18 16:28 . 2001-08-18 02:36 525568 c:\windows\system32\dllcache\tridxp.dll+ 2010-06-18 16:28 . 2001-08-17 16:51 159232 c:\windows\system32\dllcache\tridkbm.sys+ 2010-06-18 16:28 . 2001-08-17 18:56 440576 c:\windows\system32\dllcache\tridkb.dll+ 2010-06-18 16:28 . 2001-08-17 16:51 222336 c:\windows\system32\dllcache\trid3dm.sys+ 2010-06-18 16:28 . 2001-08-17 18:56 315520 c:\windows\system32\dllcache\trid3d.dll+ 2010-06-18 16:28 . 2001-08-17 18:02 230912 c:\windows\system32\dllcache\tosdvd03.sys+ 2010-06-18 16:28 . 2001-08-17 18:01 241664 c:\windows\system32\dllcache\tosdvd02.sys+ 2010-06-18 16:28 . 2001-08-17 16:14 123995 c:\windows\system32\dllcache\tjisdn.sys- 2008-11-13 03:45 . 2008-04-14 02:13 455168 c:\windows\system32\dllcache\tintsetp.exe+ 2008-11-13 03:45 . 2002-09-03 16:26 455168 c:\windows\system32\dllcache\tintsetp.exe+ 2010-06-18 16:28 . 2001-08-17 16:51 138528 c:\windows\system32\dllcache\tgiulnt5.sys+ 2010-06-18 16:28 . 2008-04-14 04:10 149376 c:\windows\system32\dllcache\tffsport.sys+ 2010-06-18 16:28 . 2001-08-17 18:56 172768 c:\windows\system32\dllcache\t2r4disp.dll+ 2010-06-18 16:27 . 2001-08-17 17:50 103936 c:\windows\system32\dllcache\sx.sys+ 2010-06-18 16:27 . 2001-08-18 02:36 155648 c:\windows\system32\dllcache\stlnprop.dll+ 2010-06-18 16:27 . 2001-08-17 16:18 285760 c:\windows\system32\dllcache\stlnata.sys- 2008-11-13 03:45 . 2004-08-12 14:06 101376 c:\windows\system32\dllcache\srusbusd.dll+ 2008-11-13 03:45 . 2002-09-03 17:04 101376 c:\windows\system32\dllcache\srusbusd.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 106584 c:\windows\system32\dllcache\spdports.dll+ 2010-06-18 16:27 . 2001-08-18 02:36 114688 c:\windows\system32\dllcache\sonypi.dll+ 2008-11-13 03:45 . 2002-09-03 16:26 143422 c:\windows\system32\dllcache\softkey.dll- 2008-11-13 03:45 . 2004-08-12 13:58 143422 c:\windows\system32\dllcache\softkey.dll+ 2010-06-18 16:26 . 2001-08-17 18:56 147200 c:\windows\system32\dllcache\smidispb.dll+ 2010-06-18 16:26 . 2008-04-14 03:53 404990 c:\windows\system32\dllcache\slntamr.sys+ 2010-06-18 16:26 . 2008-04-14 03:53 129535 c:\windows\system32\dllcache\slnt7554.sys+ 2010-06-18 16:26 . 2008-04-14 09:42 188508 c:\windows\system32\dllcache\slgen.dll+ 2010-06-18 16:26 . 2008-04-14 09:42 286792 c:\windows\system32\dllcache\slextspk.dll+ 2010-06-18 16:26 . 2001-08-17 18:56 157696 c:\windows\system32\dllcache\sisv256.dll+ 2010-06-18 16:26 . 2001-08-18 02:36 238592 c:\windows\system32\dllcache\sisgrv.dll+ 2010-06-18 16:26 . 2001-08-17 16:50 104064 c:\windows\system32\dllcache\sisgrp.sys+ 2010-06-18 16:26 . 2001-08-17 18:56 150144 c:\windows\system32\dllcache\sis6306v.dll+ 2010-06-18 16:26 . 2001-08-17 18:56 252032 c:\windows\system32\dllcache\sis300iv.dll+ 2010-06-18 16:26 . 2001-08-17 16:50 101760 c:\windows\system32\dllcache\sis300ip.sys+ 2010-06-18 16:26 . 2001-07-21 18:29 161568 c:\windows\system32\dllcache\sgsmusb.sys+ 2010-06-18 16:25 . 2001-08-18 02:36 386560 c:\windows\system32\dllcache\sgiul50.dll+ 2010-06-18 16:25 . 2001-08-18 02:36 495616 c:\windows\system32\dllcache\sblfx.dll+ 2010-06-18 16:25 . 2001-08-17 18:56 245632 c:\windows\system32\dllcache\s3savmx.dll+ 2010-06-18 16:25 . 2001-08-17 18:56 198400 c:\windows\system32\dllcache\s3sav4.dll+ 2010-06-18 16:25 . 2001-08-17 18:56 179264 c:\windows\system32\dllcache\s3sav3d.dll+ 2010-06-18 16:25 . 2001-08-17 18:56 210496 c:\windows\system32\dllcache\s3mvirge.dll+ 2010-06-18 16:25 . 2001-08-17 18:56 182272 c:\windows\system32\dllcache\s3mt3d.dll+ 2010-06-18 16:25 . 2001-08-17 16:50 166720 c:\windows\system32\dllcache\s3m.sys+ 2010-06-18 16:25 . 2008-04-14 02:04 166912 c:\windows\system32\dllcache\s3gnbm.sys+ 2010-06-18 16:25 . 2008-04-14 09:42 397056 c:\windows\system32\dllcache\s3gnb.dll+ 2010-06-18 16:24 . 2001-08-17 17:28 714762 c:\windows\system32\dllcache\r2mdmkxx.sys+ 2010-06-18 16:24 . 2001-08-17 17:28 899146 c:\windows\system32\dllcache\r2mdkxga.sys+ 2010-06-18 16:24 . 2001-08-17 17:28 130942 c:\windows\system32\dllcache\ptserlv.sys+ 2010-06-18 16:24 . 2001-08-17 17:28 112574 c:\windows\system32\dllcache\ptserlp.sys+ 2010-06-18 16:24 . 2001-08-17 17:28 128286 c:\windows\system32\dllcache\ptserli.sys+ 2010-06-18 16:24 . 2008-04-14 09:42 159232 c:\windows\system32\dllcache\ptpusd.dll- 2008-11-13 03:45 . 2004-08-12 14:03 131584 c:\windows\system32\dllcache\pmxviceo.dll+ 2008-11-13 03:45 . 2002-09-03 16:52 131584 c:\windows\system32\dllcache\pmxviceo.dll+ 2010-06-18 16:23 . 2001-08-18 02:36 121344 c:\windows\system32\dllcache\phvfwext.dll+ 2010-06-18 16:23 . 2001-08-17 18:04 173696 c:\windows\system32\dllcache\philcam2.sys+ 2010-06-18 16:23 . 2008-04-14 09:40 259328 c:\windows\system32\dllcache\perm3dd.dll+ 2010-06-18 16:23 . 2008-04-14 09:40 211584 c:\windows\system32\dllcache\perm2dll.dll+ 2010-06-18 16:23 . 2008-04-14 01:42 169984 c:\windows\system32\dllcache\pcx500.sys+ 2010-06-18 16:23 . 2001-08-17 18:05 351616 c:\windows\system32\dllcache\ovcodek2.sys+ 2010-06-18 16:22 . 2001-08-17 16:50 198144 c:\windows\system32\dllcache\nv3.sys+ 2010-06-18 16:22 . 2001-08-18 02:36 123776 c:\windows\system32\dllcache\nv3.dll+ 2010-06-18 16:22 . 2008-04-14 03:53 180360 c:\windows\system32\dllcache\ntmtlfax.sys+ 2010-06-18 16:22 . 2001-08-17 16:20 126080 c:\windows\system32\dllcache\nm5a2wdm.sys+ 2010-06-18 16:22 . 2008-04-14 02:05 132695 c:\windows\system32\dllcache\netwlan5.sys+ 2010-06-18 16:21 . 2001-08-17 16:11 128000 c:\windows\system32\dllcache\n100325.sys+ 2008-11-13 03:45 . 2002-09-03 16:25 229439 c:\windows\system32\dllcache\multibox.dll- 2008-11-13 03:45 . 2004-08-12 13:58 229439 c:\windows\system32\dllcache\multibox.dll+ 2010-06-18 16:21 . 2001-08-17 16:50 103296 c:\windows\system32\dllcache\mtxvideo.sys+ 2010-06-18 16:21 . 2008-04-14 02:04 452736 c:\windows\system32\dllcache\mtxparhm.sys+ 2010-06-18 16:21 . 2008-04-14 03:53 126686 c:\windows\system32\dllcache\mtlmnt5.sys- 2008-11-14 11:48 . 2010-02-24 13:11 455680 c:\windows\system32\dllcache\mrxsmb.sys+ 2008-04-14 04:47 . 2010-02-24 13:11 455680 c:\windows\system32\dllcache\mrxsmb.sys+ 2010-06-18 16:21 . 2001-08-17 16:50 320384 c:\windows\system32\dllcache\mgaum.sys+ 2010-06-18 16:20 . 2001-08-17 16:12 164586 c:\windows\system32\dllcache\mdgndis5.sys+ 2010-06-18 16:20 . 2001-08-17 17:28 797500 c:\windows\system32\dllcache\ltsmt.sys+ 2010-06-18 16:20 . 2001-08-17 17:28 802683 c:\windows\system32\dllcache\ltsm.sys+ 2010-06-18 16:20 . 2008-04-14 03:53 420992 c:\windows\system32\dllcache\ltmdmntt.sys+ 2010-06-18 16:20 . 2001-08-17 17:28 576746 c:\windows\system32\dllcache\ltmdmntl.sys+ 2010-06-18 16:20 . 2008-04-14 03:53 606684 c:\windows\system32\dllcache\ltmdmnt.sys+ 2010-06-18 16:20 . 2001-08-17 17:28 727786 c:\windows\system32\dllcache\ltck000c.sys+ 2010-06-18 16:20 . 2008-04-14 09:41 253952 c:\windows\system32\dllcache\kdsusd.dll+ 2010-06-18 16:19 . 2008-04-14 09:42 151552 c:\windows\system32\dllcache\irftp.exe- 2008-11-13 03:44 . 2004-08-12 13:58 471102 c:\windows\system32\dllcache\imskdic.dll+ 2008-11-13 03:44 . 2002-09-03 16:25 471102 c:\windows\system32\dllcache\imskdic.dll- 2008-11-13 03:44 . 2004-08-12 13:58 311359 c:\windows\system32\dllcache\imepadsv.exe+ 2008-11-13 03:44 . 2002-09-03 16:24 311359 c:\windows\system32\dllcache\imepadsv.exe- 2008-11-13 03:44 . 2004-08-12 13:58 102463 c:\windows\system32\dllcache\imepadsm.dll+ 2008-11-13 03:44 . 2002-09-03 16:24 102463 c:\windows\system32\dllcache\imepadsm.dll+ 2010-06-18 16:19 . 2001-08-18 02:36 372824 c:\windows\system32\dllcache\iconf32.dll+ 2010-06-18 16:19 . 2001-08-17 18:06 100992 c:\windows\system32\dllcache\icam5usb.sys+ 2010-06-18 16:19 . 2001-08-17 18:06 154496 c:\windows\system32\dllcache\icam4usb.sys+ 2010-06-18 16:19 . 2001-08-17 18:05 141056 c:\windows\system32\dllcache\icam3.sys+ 2010-06-18 16:19 . 2001-08-17 16:12 109085 c:\windows\system32\dllcache\ibmtrp.sys+ 2010-06-18 16:19 . 2001-08-17 16:12 100936 c:\windows\system32\dllcache\ibmtok.sys+ 2010-06-18 16:19 . 2008-04-14 02:04 161020 c:\windows\system32\dllcache\i81xnt5.sys+ 2010-06-18 16:19 . 2008-04-14 09:41 702845 c:\windows\system32\dllcache\i81xdnt5.dll+ 2010-06-18 16:19 . 2001-08-17 18:56 353184 c:\windows\system32\dllcache\i740dnt5.dll+ 2008-04-14 04:23 . 2009-10-20 16:20 265728 c:\windows\system32\dllcache\http.sys- 2009-10-20 16:20 . 2009-10-20 16:20 265728 c:\windows\system32\dllcache\http.sys+ 2010-06-18 16:18 . 2008-04-14 03:53 685056 c:\windows\system32\dllcache\hsfcxts2.sys+ 2010-06-18 16:18 . 2008-04-14 03:53 220032 c:\windows\system32\dllcache\hsfbs2s2.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 488383 c:\windows\system32\dllcache\hsf_v124.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 542879 c:\windows\system32\dllcache\hsf_msft.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 391199 c:\windows\system32\dllcache\hsf_k56k.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 115807 c:\windows\system32\dllcache\hsf_fsks.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 199711 c:\windows\system32\dllcache\hsf_faxx.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 289887 c:\windows\system32\dllcache\hsf_fall.sys+ 2010-06-18 16:18 . 2001-08-17 17:28 150239 c:\windows\system32\dllcache\hsf_amos.sys+ 2010-06-18 16:18 . 2001-08-18 02:36 324608 c:\windows\system32\dllcache\hpojwia.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 165888 c:\windows\system32\dllcache\hpgt53.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 126976 c:\windows\system32\dllcache\hpgt34tk.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 101376 c:\windows\system32\dllcache\hpgt34.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 123392 c:\windows\system32\dllcache\hpgt21tk.dll+ 2010-06-18 16:18 . 2001-08-18 02:36 119296 c:\windows\system32\dllcache\hpdigwia.dll+ 2010-06-18 16:17 . 2001-08-17 17:28 907456 c:\windows\system32\dllcache\hcf_msft.sys+ 2010-06-18 16:17 . 2001-08-17 16:49 322432 c:\windows\system32\dllcache\g400m.sys+ 2010-06-18 16:17 . 2001-08-17 16:49 320384 c:\windows\system32\dllcache\g200m.sys+ 2010-06-18 16:17 . 2001-08-17 18:56 470144 c:\windows\system32\dllcache\g200d.dll+ 2010-06-18 16:17 . 2001-08-17 16:15 454912 c:\windows\system32\dllcache\fxusbase.sys+ 2008-11-13 03:44 . 2002-09-03 16:33 132608 c:\windows\system32\dllcache\fxsclntr.dll- 2008-11-13 03:44 . 2004-08-12 13:57 132608 c:\windows\system32\dllcache\fxsclntr.dll- 2008-11-13 03:44 . 2004-08-12 13:57 111104 c:\windows\system32\dllcache\fxscfgwz.dll+ 2008-11-13 03:44 . 2002-09-03 16:33 111104 c:\windows\system32\dllcache\fxscfgwz.dll+ 2010-06-18 16:17 . 2001-08-17 16:15 455296 c:\windows\system32\dllcache\fusbbase.sys+ 2010-06-18 16:17 . 2001-08-17 16:15 455680 c:\windows\system32\dllcache\fus2base.sys+ 2010-06-18 16:17 . 2001-08-17 16:15 442240 c:\windows\system32\dllcache\fpnpbase.sys+ 2010-06-18 16:17 . 2001-08-17 16:14 441728 c:\windows\system32\dllcache\fpcmbase.sys+ 2010-06-18 16:17 . 2001-08-17 16:14 444416 c:\windows\system32\dllcache\fpcibase.sys- 2008-11-13 03:44 . 2003-03-24 21:52 109328 c:\windows\system32\dllcache\fp98swin.exe+ 2008-11-13 03:44 . 2002-05-14 16:08 109328 c:\windows\system32\dllcache\fp98swin.exe+ 2010-06-18 16:17 . 2008-04-14 02:06 137088 c:\windows\system32\dllcache\essm2e.sys+ 2010-06-18 16:16 . 2001-08-17 17:28 594238 c:\windows\system32\dllcache\es56hpi.sys+ 2010-06-18 16:16 . 2001-08-17 17:28 595647 c:\windows\system32\dllcache\es56cvmp.sys+ 2010-06-18 16:16 . 2001-08-17 16:19 174464 c:\windows\system32\dllcache\es198x.sys+ 2010-06-18 16:16 . 2001-08-17 16:17 629952 c:\windows\system32\dllcache\eqn.sys+ 2010-06-18 16:16 . 2001-08-17 17:50 114944 c:\windows\system32\dllcache\epstw2k.sys+ 2010-06-18 16:16 . 2001-08-17 17:50 144896 c:\windows\system32\dllcache\epcfw2k.sys+ 2010-06-18 16:16 . 2001-08-17 16:19 283904 c:\windows\system32\dllcache\emu10k1m.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 171520 c:\windows\system32\dllcache\el99xn51.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 455199 c:\windows\system32\dllcache\el985n51.sys+ 2010-06-18 16:16 . 2001-08-17 16:11 153631 c:\windows\system32\dllcache\el90xnd5.sys+ 2010-06-18 16:16 . 2001-08-17 17:28 241206 c:\windows\system32\dllcache\el656se5.sys+ 2010-06-18 16:16 . 2001-08-17 17:28 634134 c:\windows\system32\dllcache\el656ct5.sys+ 2008-11-13 03:44 . 2002-09-03 16:32 514587 c:\windows\system32\dllcache\edb500.dll- 2008-11-13 03:44 . 2004-08-12 13:57 514587 c:\windows\system32\dllcache\edb500.dll+ 2010-06-18 16:16 . 2001-08-17 16:12 117760 c:\windows\system32\dllcache\e100b325.sys+ 2010-06-18 16:16 . 2001-08-17 16:20 334208 c:\windows\system32\dllcache\ds1wdm.sys+ 2010-06-18 16:16 . 2008-04-14 04:09 206976 c:\windows\system32\dllcache\dot4.sys+ 2010-06-18 16:16 . 2001-08-17 16:14 952007 c:\windows\system32\dllcache\diwan.sys+ 2010-06-18 16:16 . 2001-08-18 02:36 236060 c:\windows\system32\dllcache\ditrace.exe+ 2010-06-18 16:16 . 2001-08-18 02:36 614429 c:\windows\system32\dllcache\digiview.exe+ 2010-06-18 16:15 . 2001-08-18 02:36 102484 c:\windows\system32\dllcache\digiinf.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 159828 c:\windows\system32\dllcache\digihlc.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 229462 c:\windows\system32\dllcache\digifwrk.dll+ 2010-06-18 16:15 . 2001-08-17 16:13 103044 c:\windows\system32\dllcache\digidxb.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 131156 c:\windows\system32\dllcache\digidbp.dll+ 2010-06-18 16:14 . 2001-08-17 16:13 164923 c:\windows\system32\dllcache\diapi2.sys+ 2010-06-18 16:15 . 2001-08-18 02:36 419357 c:\windows\system32\dllcache\dgconfig.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 256512 c:\windows\system32\dllcache\devcon32.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 110592 c:\windows\system32\dllcache\dc260usd.dll+ 2010-06-18 16:15 . 2001-08-17 17:52 179584 c:\windows\system32\dllcache\dac2w2k.sys+ 2010-06-18 16:15 . 2001-08-17 16:12 117760 c:\windows\system32\dllcache\d100ib5.sys+ 2010-06-18 16:15 . 2001-08-17 16:19 111872 c:\windows\system32\dllcache\cwcspud.sys+ 2010-06-18 16:15 . 2008-04-14 09:41 249856 c:\windows\system32\dllcache\ctmasetp.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 175104 c:\windows\system32\dllcache\csamsp.dll+ 2010-06-18 16:15 . 2001-08-18 02:36 216064 c:\windows\system32\dllcache\cpscan.dll+ 2010-06-18 16:15 . 2001-08-17 17:57 248064 c:\windows\system32\dllcache\cl546xm.sys+ 2010-06-18 16:15 . 2001-08-17 18:56 170880 c:\windows\system32\dllcache\cl546x.dll+ 2010-06-18 16:15 . 2001-08-17 18:56 111232 c:\windows\system32\dllcache\cl5465.dll+ 2010-06-18 16:15 . 2001-08-17 18:02 272640 c:\windows\system32\dllcache\cinemclc.sys+ 2010-06-18 16:15 . 2001-08-17 16:13 980034 c:\windows\system32\dllcache\cicap.sys- 2008-11-13 03:44 . 2004-08-12 13:58 838144 c:\windows\system32\dllcache\chtbrkr.dll+ 2008-11-13 03:44 . 2002-09-03 16:24 838144 c:\windows\system32\dllcache\chtbrkr.dll+ 2010-06-18 16:15 . 2001-08-17 17:28 714698 c:\windows\system32\dllcache\cbmdmkxx.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 236032 c:\windows\system32\dllcache\camext20.dll+ 2010-06-18 16:14 . 2001-08-17 18:04 171264 c:\windows\system32\dllcache\camdrv30.sys+ 2010-06-18 16:14 . 2001-08-17 18:04 223232 c:\windows\system32\dllcache\camdrv21.sys+ 2010-06-18 16:14 . 2001-08-17 18:05 314752 c:\windows\system32\dllcache\camdro21.sys+ 2010-06-18 16:14 . 2008-04-14 04:21 101120 c:\windows\system32\dllcache\bthpan.sys+ 2010-06-18 16:14 . 2001-08-18 02:36 102400 c:\windows\system32\dllcache\binlsvc.dll+ 2010-06-18 16:14 . 2001-08-17 17:28 871388 c:\windows\system32\dllcache\bcmdm.sys+ 2010-06-18 16:14 . 2001-08-17 18:56 342336 c:\windows\system32\dllcache\banshee.dll+ 2010-06-18 16:14 . 2001-08-18 02:36 144384 c:\windows\system32\dllcache\avmenum.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 516768 c:\windows\system32\dllcache\ativvaxx.dll+ 2010-06-18 16:14 . 2001-08-17 18:56 104832 c:\windows\system32\dllcache\atiraged.dll+ 2010-06-18 16:14 . 2008-04-14 02:04 104960 c:\windows\system32\dllcache\atinrvxx.sys+ 2010-06-18 16:14 . 2001-08-17 16:48 281600 c:\windows\system32\dllcache\atimtai.sys+ 2010-06-18 16:14 . 2001-08-17 16:48 289664 c:\windows\system32\dllcache\atimpab.sys+ 2010-06-18 16:14 . 2001-08-17 18:56 268160 c:\windows\system32\dllcache\atidvai.dll+ 2010-06-18 16:14 . 2001-08-17 18:56 137216 c:\windows\system32\dllcache\atidrae.dll+ 2010-06-18 16:14 . 2001-08-17 18:55 382592 c:\windows\system32\dllcache\atidrab.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 870784 c:\windows\system32\dllcache\ati3d1ag.dll+ 2010-06-18 16:14 . 2008-04-14 02:04 701440 c:\windows\system32\dllcache\ati2mtag.sys+ 2010-06-18 16:14 . 2008-04-14 02:04 327040 c:\windows\system32\dllcache\ati2mtaa.sys+ 2010-06-18 16:14 . 2008-04-14 09:41 201728 c:\windows\system32\dllcache\ati2dvag.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 377984 c:\windows\system32\dllcache\ati2dvaa.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 229376 c:\windows\system32\dllcache\ati2cqag.dll+ 2010-06-18 16:13 . 2001-08-17 18:07 101888 c:\windows\system32\dllcache\adpu160m.sys+ 2010-06-18 16:13 . 2001-08-17 16:19 747392 c:\windows\system32\dllcache\adm8830.sys+ 2010-06-18 16:13 . 2001-08-17 16:19 553984 c:\windows\system32\dllcache\adm8820.sys+ 2010-06-18 16:13 . 2001-08-17 16:19 584448 c:\windows\system32\dllcache\adm8810.sys+ 2010-06-18 16:13 . 2001-08-17 16:20 297728 c:\windows\system32\dllcache\ac97sis.sys+ 2010-06-18 16:13 . 2008-04-14 02:06 231552 c:\windows\system32\dllcache\ac97ali.sys+ 2010-06-18 16:13 . 2001-08-18 02:36 462848 c:\windows\system32\dllcache\a3dapi.dll+ 2010-06-18 16:13 . 2001-08-17 16:48 148352 c:\windows\system32\dllcache\3dfxvsm.sys+ 2010-06-18 16:13 . 2001-08-17 18:55 689216 c:\windows\system32\dllcache\3dfxvs.dll+ 2010-06-18 16:13 . 2001-08-17 17:28 762780 c:\windows\system32\dllcache\3cwmcru.sys+ 2010-06-18 16:22 . 2008-04-14 02:04 1897408 c:\windows\system32\dllcache\nv4_mini.sys+ 2010-06-18 16:22 . 2008-04-14 09:42 4274816 c:\windows\system32\dllcache\nv4_disp.dll- 2008-11-13 23:14 . 2010-02-16 13:25 2024448 c:\windows\system32\dllcache\ntkrpamp.exe+ 2008-04-14 00:01 . 2010-02-16 13:25 2024448 c:\windows\system32\dllcache\ntkrpamp.exe- 2008-11-13 23:14 . 2010-02-16 14:08 2146304 c:\windows\system32\dllcache\ntkrnlmp.exe+ 2008-04-14 04:54 . 2010-02-16 14:08 2146304 c:\windows\system32\dllcache\ntkrnlmp.exe+ 2010-06-18 16:21 . 2008-04-14 09:42 1737856 c:\windows\system32\dllcache\mtxparhd.dll+ 2010-06-18 16:21 . 2008-04-14 03:53 1309184 c:\windows\system32\dllcache\mtlstrm.sys+ 2008-11-13 03:41 . 2009-06-10 13:19 2066432 c:\windows\system32\dllcache\lhmstscx.dll+ 2010-06-18 16:18 . 2008-04-14 03:53 1041536 c:\windows\system32\dllcache\hsfdpsp2.sys+ 2010-06-18 16:17 . 2001-08-17 18:56 1733120 c:\windows\system32\dllcache\g400d.dll- 2008-11-13 03:44 . 2004-08-12 13:58 1677824 c:\windows\system32\dllcache\chsbrkr.dll+ 2008-11-13 03:44 . 2002-09-03 16:24 1677824 c:\windows\system32\dllcache\chsbrkr.dll+ 2010-06-18 16:14 . 2008-04-14 09:41 1888992 c:\windows\system32\dllcache\ati3duag.dll- 2008-11-13 03:44 . 2004-08-12 13:58 10129408 c:\windows\system32\dllcache\hwxkor.dll+ 2008-11-13 03:44 . 2002-09-03 16:24 10129408 c:\windows\system32\dllcache\hwxkor.dll- 2008-11-13 03:44 . 2004-08-12 13:58 10096640 c:\windows\system32\dllcache\hwxcht.dll+ 2008-11-13 03:44 . 2002-09-03 16:24 10096640 c:\windows\system32\dllcache\hwxcht.dll. Link to post Share on other sites More sharing options...
cwjme Posted June 18, 2010 Author ID:269948 Share Posted June 18, 2010 Part 3-- Snapshot reset to current date --.((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))..*Note* empty entries & legit default entries are not shown REGEDIT4[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952][HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnkbackup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]"DisableNotifications"= 1 (0x1)[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\system32\\sessmgr.exe"="c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"="c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="c:\\Program Files\\AIM6\\aim6.exe"="c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"="c:\\Program Files\\LimeWire\\LimeWire.exe"="c:\\Program Files\\Bonjour\\mDNSResponder.exe"="c:\\Program Files\\iTunes\\iTunes.exe"=[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]"67:UDP"= 67:UDP:DHCP Discovery Service"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]R2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368].Contents of the 'Scheduled Tasks' folder2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]..------- Supplementary Scan -------.uStart Page = hxxp://members.suscom-maine.net/uInternet Settings,ProxyOverride = <local>IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.htmlTrusted Zone: llbean.comDPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cabFF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dllFF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dllFF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dllFF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dllFF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\---- FIREFOX POLICIES ----c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);.**************************************************************************catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.netRootkit scan 2010-06-18 17:17Windows 5.1.2600 Service Pack 3 NTFSscanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfullyhidden files: 0**************************************************************************.--------------------- DLLs Loaded Under Running Processes ---------------------- - - - - - - > 'explorer.exe'(1244)c:\windows\system32\WININET.dll.Completion time: 2010-06-18 17:23:07ComboFix-quarantined-files.txt 2010-06-18 21:23ComboFix2.txt 2010-06-18 10:18ComboFix3.txt 2010-06-17 10:04Pre-Run: 506,589,327,360 bytes freePost-Run: 506,575,863,808 bytes free- - End Of File - - 5E3BF19F15C3E8BB178647355D6AB3E7 Link to post Share on other sites More sharing options...
Elise Posted June 19, 2010 ID:270204 Share Posted June 19, 2010 It appears there was some kind of bug in Combofix that caused some weird entries to show up. Please delete your old copy and download a new one. Now run Combofix once again (this time the log will not be so long). Link to post Share on other sites More sharing options...
cwjme Posted June 19, 2010 Author ID:270317 Share Posted June 19, 2010 Deleted, downloaded and ran again.ComboFix 10-06-18.03 - Chris 06/19/2010 7:55.10.2 - x86Running from: c:\documents and settings\Chris\My Documents\Downloads\ComboFix.exe.((((((((((((((((((((((((( Files Created from 2010-05-19 to 2010-06-19 ))))))))))))))))))))))))))))))).2010-06-18 16:31 . 2008-04-14 09:42 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll2010-06-18 16:31 . 2008-04-14 09:42 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll2010-06-18 16:31 . 2001-08-18 02:36 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll2010-06-18 16:31 . 2001-08-18 02:37 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe2010-06-18 16:31 . 2001-08-18 02:37 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe2010-06-18 16:31 . 2001-08-18 02:37 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe2010-06-18 16:31 . 2001-08-17 16:11 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys2010-06-18 16:31 . 2008-04-14 02:04 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys2010-06-18 16:31 . 2008-04-14 09:42 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll2010-06-18 16:31 . 2008-04-14 02:04 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys2010-06-18 16:29 . 2008-04-14 09:42 11325 -c--a-w- c:\windows\system32\dllcache\vchnt5.dll2010-06-18 16:28 . 2001-08-17 16:51 166784 -c--a-w- c:\windows\system32\dllcache\tridxpm.sys2010-06-18 16:27 . 2001-08-17 18:07 32640 -c--a-w- c:\windows\system32\dllcache\symc8xx.sys2010-06-18 16:26 . 2001-08-17 17:53 7040 -c--a-w- c:\windows\system32\dllcache\snyaitmc.sys2010-06-18 16:25 . 2001-07-21 18:29 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys2010-06-18 16:24 . 2001-08-18 02:36 79872 -c--a-w- c:\windows\system32\dllcache\rwia430.dll2010-06-18 16:23 . 2001-08-18 02:36 35328 -c--a-w- c:\windows\system32\dllcache\psisload.dll2010-06-18 16:22 . 2001-08-18 02:36 116736 -c--a-w- c:\windows\system32\dllcache\ovcodec2.dll2010-06-18 16:21 . 2001-08-18 02:36 59104 -c--a-w- c:\windows\system32\dllcache\n9i128v2.dll2010-06-18 16:20 . 2001-08-17 18:56 235648 -c--a-w- c:\windows\system32\dllcache\mgaud.dll2010-06-18 16:19 . 2001-08-17 18:55 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll2010-06-18 16:18 . 2008-04-14 04:11 8576 -c--a-w- c:\windows\system32\dllcache\i2omgmt.sys2010-06-18 16:17 . 2001-08-17 18:02 8576 -c--a-w- c:\windows\system32\dllcache\hidgame.sys2010-06-18 16:16 . 2001-08-17 17:28 347550 -c--a-w- c:\windows\system32\dllcache\es56tpi.sys2010-06-18 16:15 . 2001-08-18 02:36 110621 -c--a-w- c:\windows\system32\dllcache\digirlpt.dll2010-06-18 16:14 . 2008-04-14 09:41 121856 -c--a-w- c:\windows\system32\dllcache\camext30.dll2010-06-18 16:13 . 2001-08-17 17:47 6272 -c--a-w- c:\windows\system32\dllcache\apmbatt.sys2010-06-18 00:09 . 2010-06-19 11:54 -------- d-----w- c:\windows\system32\CatRoot22010-06-14 01:13 . 2010-06-14 01:23 -------- d-----w- c:\windows\system32\NtmsData2010-06-14 01:08 . 2010-06-17 09:58 -------- d-----w- c:\documents and settings\Chris\Local Settings\Application Data\lwixgb2010-06-11 11:42 . 2010-06-13 02:48 -------- d-----w- C:\download.(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))).2010-06-16 16:27 . 2008-11-20 23:59 -------- d-----w- c:\documents and settings\Brian\Application Data\LimeWire2010-06-15 17:35 . 2008-11-13 04:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Juniper Networks2010-06-14 20:47 . 2010-01-12 17:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware2010-06-14 20:37 . 2008-12-27 00:22 -------- d-----w- c:\documents and settings\Steven\Application Data\LimeWire2010-06-13 02:56 . 2008-11-21 02:57 -------- d-----w- c:\documents and settings\Chris\Application Data\Offline Explorer2010-06-05 00:40 . 2009-10-25 01:29 -------- d-----w- c:\program files\Microsoft Silverlight2010-06-01 13:57 . 2008-11-30 22:09 -------- d-----w- c:\documents and settings\Chris\Application Data\FxFotoDB2010-05-16 05:15 . 2009-11-10 14:00 848 --sha-w- c:\windows\system32\KGyGaAvL.sys2010-05-11 02:09 . 2010-05-11 02:09 -------- d-----w- c:\program files\FLV Player2010-05-07 00:30 . 2010-05-06 02:26 -------- d-----w- c:\program files\Hulu Downloader2010-05-07 00:20 . 2010-05-07 00:20 -------- d-----w- c:\documents and settings\Chris\Application Data\GrabPro2010-05-07 00:03 . 2010-05-06 23:52 -------- d-----w- c:\documents and settings\Chris\Application Data\Orbit2010-05-06 02:17 . 2010-05-06 02:17 -------- d-----w- c:\documents and settings\Chris\Application Data\Moyea2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iTunes2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}2010-05-05 03:32 . 2010-05-05 03:32 -------- d-----w- c:\program files\iPod2010-05-05 03:32 . 2008-12-13 21:09 -------- d-----w- c:\program files\Common Files\Apple2010-05-05 03:30 . 2010-05-05 03:29 -------- d-----w- c:\program files\QuickTime2010-05-05 03:27 . 2010-05-05 03:27 -------- d-----w- c:\program files\Bonjour2010-05-05 03:23 . 2010-05-05 03:23 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.1.12\SetupAdmin.exe2010-05-05 03:20 . 2010-05-05 03:20 -------- d-----w- c:\program files\Safari2010-05-05 03:16 . 2010-05-05 03:16 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe2010-05-04 17:20 . 2008-04-14 09:42 832512 ----a-w- c:\windows\system32\wininet.dll2010-05-04 17:20 . 2008-04-14 09:41 78336 ----a-w- c:\windows\system32\ieencode.dll2010-05-04 17:20 . 2008-04-14 09:41 17408 ----a-w- c:\windows\system32\corpol.dll2010-05-02 05:22 . 2008-04-14 05:00 1851264 ----a-w- c:\windows\system32\win32k.sys2010-05-01 16:16 . 2010-05-01 16:16 -------- d-----w- c:\documents and settings\Chris\Application Data\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\program files\Avira2010-05-01 16:14 . 2010-05-01 16:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira2010-04-29 19:39 . 2010-01-12 17:08 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys2010-04-29 19:39 . 2010-01-12 17:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Common Files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 -------- d-----w- c:\program files\Nikon2010-04-27 14:06 . 2010-04-20 17:38 0 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdu.DAT2010-04-27 14:03 . 2010-04-17 00:48 -------- d-----w- c:\program files\ophcrack2010-04-26 02:01 . 2009-01-10 02:14 1324 ----a-w- c:\windows\system32\d3d9caps.dat2010-04-20 17:39 . 2010-04-20 17:39 20 ---h--w- c:\documents and settings\All Users\Application Data\PKP_DLdw.DAT2010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Ultima_T152010-04-20 17:39 . 2010-04-20 17:38 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp2010-04-20 17:38 . 2008-11-17 00:33 106496 ----a-w- c:\windows\system32\ATL71.DLL2010-04-20 05:30 . 2008-04-14 09:39 285696 ----a-w- c:\windows\system32\atmfd.dll2010-04-18 13:14 . 2010-04-18 13:14 666112 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\pmv306hw-1003220-0-main.dll2010-04-18 13:14 . 2010-04-18 13:14 319488 ----a-w- c:\documents and settings\Chris\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe2010-04-16 12:33 . 2009-12-12 03:02 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll2010-04-16 12:33 . 2008-12-25 16:32 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys2010-04-13 17:00 . 2010-04-13 17:00 51716 ----a-w- c:\windows\system32\pdf995mon.dll2010-04-13 17:00 . 2010-04-13 17:00 249856 ----a-w- c:\windows\system32\pdfmona.dll2010-04-13 16:56 . 2010-04-13 16:56 4425432 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\ME26012701cupd.exe2010-04-13 16:56 . 2010-04-13 16:55 21180296 ----a-w- c:\documents and settings\All Users\Application Data\TaxCut\2009\Update\US65016901cupd.exe2010-04-13 16:29 . 2008-11-15 18:29 57 ----a-w- c:\documents and settings\All Users\Application Data\Brother\BrLog\BrCollectDir\BR_cat.bat2010-04-13 16:14 . 2008-11-15 18:32 50 -c--a-w- c:\windows\system32\bridf06a.dat2010-04-08 17:20 . 2010-04-08 17:20 91424 ----a-w- c:\windows\system32\dnssd.dll2010-04-08 17:20 . 2010-04-08 17:20 107808 ----a-w- c:\windows\system32\dns-sd.exe2010-04-03 18:30 . 2010-04-03 18:30 152576 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\jre1.6.0_16\lzma.dll2010-04-01 23:13 . 2010-04-01 23:13 503808 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcp71.dll2010-04-01 23:13 . 2010-04-01 23:13 499712 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\jmc.dll2010-04-01 23:13 . 2010-04-01 23:13 348160 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-42c8c512-n\msvcr71.dll2010-04-01 23:13 . 2010-04-01 23:13 61440 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-sse.dll2010-04-01 23:13 . 2010-04-01 23:13 12800 ----a-w- c:\documents and settings\Brian\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-165c06bd-n\decora-d3d.dll2010-03-30 02:26 . 2010-03-30 02:26 162656 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTP_8.0.50727.762.exe2010-03-30 02:25 . 2010-03-30 02:24 172032 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Host Checker\policy_53\dsVDeskPackage.dll2010-03-30 02:24 . 2010-03-30 02:24 292704 ----a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup Client\x86_Microsoft.VC80.CRTR_8.0.50727.762.exe2010-03-30 02:24 . 2008-11-13 04:16 37464 -c--a-w- c:\documents and settings\Chris\Application Data\Juniper Networks\Setup\uninstall.exe2010-03-30 02:24 . 2010-03-30 02:24 503808 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcp71.dll2010-03-30 02:24 . 2010-03-30 02:24 499712 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\jmc.dll2010-03-30 02:24 . 2010-03-30 02:24 348160 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-7ab73243-n\msvcr71.dll2010-03-30 02:24 . 2010-03-30 02:24 61440 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-sse.dll2010-03-30 02:24 . 2010-03-30 02:24 12800 ----a-w- c:\documents and settings\Chris\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-48df5b1a-n\decora-d3d.dll2010-03-29 13:59 . 2010-04-29 20:00 52224 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll2010-03-29 13:59 . 2010-04-29 20:00 101376 ----a-w- c:\documents and settings\Steven\Application Data\Mozilla\Firefox\Profiles\o60v458m.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll2010-03-24 23:52 . 2008-04-14 04:10 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys2010-03-24 18:17 . 2010-03-24 08:04 952768 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeARM.exe2010-03-24 18:17 . 2010-03-24 08:04 70584 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AdobeExtractFiles.dll2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\ReaderUpdater.exe2010-03-24 18:17 . 2010-03-24 08:04 326056 ----a-w- c:\documents and settings\All Users\Application Data\Adobe\Reader\9.3\ARM\1770\AcrobatUpdater.exe2010-03-22 03:55 . 2010-03-22 03:55 552 ----a-w- c:\windows\system32\d3d8caps.dat.------- Sigcheck -------[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\atapi.sys[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys[-] 2004-08-12 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\kbdclass.sys[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys[-] 2004-08-12 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys[-] 2008-04-14 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll[-] 2008-04-14 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\browser.dll[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe[-] 2008-04-14 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll[-] 2008-04-14 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll[-] 2008-04-14 09:41 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll[-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll[-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll[-] 2008-04-14 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\mshtml.dll[-] 2010-05-04 . F247F7AC6713066D4C71721BDC73FC2E . 3600384 . . [7.00.6000.17063] . . c:\windows\system32\dllcache\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll[-] 2010-05-04 . C466BDCDFAE6F6EFD618F34BA90B1923 . 3603456 . . [7.00.6000.21264] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\mshtml.dll[-] 2010-03-11 . 94359CD5BB6AC1CC08088F4A4091FF1E . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll[-] 2010-03-11 . 9289EBB759293A1381AB0C326A115AEC . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\mshtml.dll[-] 2010-01-05 . 3B8259EF10C0F1425395981E40ED0EAA . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll[-] 2010-01-05 . 1673677DBD70142DB1294F1B6FC3323E . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll[-] 2009-10-29 . 89A9658515A18E673034369E043FAB01 . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll[-] 2009-10-29 . 8B48737260C273C9B0DACA84EA1CCDBD . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll[-] 2009-10-21 . 36145D2D908FB8A24772F04842366918 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll[-] 2009-10-21 . E6453EE08B283419171889786D057A75 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll[-] 2009-08-29 . E52A845DCE011D56B12B8F3F4606F956 . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll[-] 2009-08-29 . EDAD55105DDD067AE3906011F297267C . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll[-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll[-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll[-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll[-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll[-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll[-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll[-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll[-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\mshtml.dll[-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll[-] 2008-12-12 . C828AA1C5469E72251F3D367005E589F . 3067904 . . [6.00.2900.5726] . . c:\windows\ie7\mshtml.dll[-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll[-] 2008-10-16 . B846C2DE341CF32B42AD297437233742 . 3067904 . . [6.00.2900.5694] . . c:\windows\$NtUninstallKB960714$\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll[-] 2008-08-27 . 1AD035E04A7068EC2820B055A3131ED8 . 3593216 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll[-] 2008-08-26 . 25CC085720EE3617FD1F8AB9E2F7CAB2 . 3594752 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\mshtml.dll[-] 2008-08-20 . 507BDA42F7DB8209C0F0B3556A043491 . 3067904 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\mshtml.dll[-] 2008-08-20 . BD45470B132A0F98596277323D9F2E5A . 3067904 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\mshtml.dll[-] 2008-04-14 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\mshtml.dll[-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\mshtml.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll[-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll[-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll[-] 2008-04-14 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll[-] 2008-04-14 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntoskrnl.exe[-] 2010-02-17 . D41C3CBAD0E1C0728D1CDFD541F60CFA . 2189952 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntoskrnl.exe[-] 2010-02-16 . 048DB3459FAB4CA741DCC84E1F374D65 . 2146304 . . [5.1.2600.5938] . . c:\windows\system32\ntoskrnl.exe[-] 2010-02-16 . E1F653A542449D54FA2D27463D99B6B6 . 2190080 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe[-] 2009-12-09 . 05BE3D9A71972223AFF6A3C823BA51B1 . 2189312 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe[-] 2009-12-08 . 9696C553F994340CD6AA5C5A724C3A19 . 2145280 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntoskrnl.exe[-] 2009-08-04 . 78FCC97CD878D4CF5B5D2158A5A7CF92 . 2145280 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe[-] 2009-08-04 . FDE779EA1A564EBFE16F4E0F82B61BAD . 2189312 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe[-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe[-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe[-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe[-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe[-] 2008-04-14 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3gdr\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\wininet.dll[-] 2010-05-04 . 83306356DE710DA87ED91A6AF6233214 . 832512 . . [7.00.6000.17055] . . c:\windows\system32\dllcache\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll[-] 2010-05-04 . 506B3DCB9C26070072E3047C6910F844 . 841216 . . [7.00.6000.21256] . . c:\windows\SoftwareDistribution\Download\da350b0b03b15d30eb758fde8c0df67a\sp3qfe\wininet.dll[-] 2010-03-11 . B6AB2EB1DA4BB29079B84AC842520670 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll[-] 2010-03-11 . 7F6A9D2F3CAA7780AAFD478BF3411462 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ERDNT\cache\wininet.dll[-] 2010-01-05 . 21E7890F1EC89BEF0AF7C08D730AE317 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll[-] 2010-01-05 . E7B99465DE2EDCF29784B7600BF6FAE8 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll[-] 2009-10-29 . 7C599DEC022BEF6E3C9F4DB4FC164E8B . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll[-] 2009-10-29 . CA5CB4F174592090FBECFEAD9B51BB90 . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll[-] 2009-08-29 . DB111200015F08DDDB8857E11C6A80E3 . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll[-] 2009-08-29 . A5885AF9BFBD942B828E6020AD326517 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll[-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll[-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll[-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll[-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll[-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll[-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2QFE\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll[-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\SoftwareDistribution\Download\2e4e820fa4f0714d84e95e04fd4b348e\SP2GDR\wininet.dll[-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll[-] 2008-10-16 . 1576318BF08D28CC61D1278114AD8D5B . 666112 . . [6.00.2900.5694] . . c:\windows\ie7\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll[-] 2008-08-26 . 77C192FE56A70D7FA0247BA0A6201C32 . 827904 . . [7.00.6000.20900] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2QFE\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll[-] 2008-08-26 . EF8EBA98145BFA44E80D17A3B3453300 . 826368 . . [7.00.6000.16735] . . c:\windows\SoftwareDistribution\Download\5d9d48823dca01f9929a959c29f5edc4\SP2GDR\wininet.dll[-] 2008-08-20 . 9AF5F25124FBDC36E2B510729CBA2674 . 666112 . . [6.00.2900.5659] . . c:\windows\$NtUninstallKB958215$\wininet.dll[-] 2008-08-20 . 94418F53D2612C26DBADC04DAFBC197C . 666624 . . [6.00.2900.5659] . . c:\windows\$hf_mig$\KB956390\SP3QFE\wininet.dll[-] 2008-04-14 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB956390$\wininet.dll[-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB956390-IE7\wininet.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll[-] 2008-04-14 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\dllcache\acpiec.sys[-] 2004-08-12 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys[-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll[-] 2008-04-14 09:41 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\dllcache\mfc40u.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll[-] 2008-04-14 09:42 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll[-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll[-] 2005-01-28 18:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe[-] 2010-02-16 . E8B8801DE921912EBDEEFC76662F7EAD . 2024448 . . [5.1.2600.5938] . . c:\windows\system32\ntkrnlpa.exe[-] 2010-02-16 . A046C627EC20456E2959B7BD628E1FD0 . 2066816 . . [5.1.2600.5938] . . c:\windows\system32\dllcache\ntkrnlpa.exe[-] 2010-02-16 . DED8B5A89B085284634502E9D75AC78C . 2066944 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe[-] 2009-12-09 . FFDCE1EEA79C678C40237D4E031E5B51 . 2066176 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe[-] 2009-12-08 . 089F1E207B067A4DDEB2EEC37BBB1AA7 . 2023936 . . [5.1.2600.5913] . . c:\windows\ERDNT\cache\ntkrnlpa.exe[-] 2009-08-04 . 363B2BBEE0AEDC9E5433616D0AD0236A . 2066176 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe[-] 2009-08-04 . 32B1A971183EC22DD91EEDA61C499E7C . 2023936 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe[-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe[-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe[-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe[-] 2008-04-14 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll[-] 2008-04-14 09:42 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll[-] 2008-04-14 09:42 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll.((((((((((((((((((((((((((((( SnapShot_2010-06-18_21.17.59 ))))))))))))))))))))))))))))))))))))))))).+ 2010-06-19 11:52 . 2010-06-19 11:52 16384 c:\windows\temp\Perflib_Perfdata_600.dat.((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))..*Note* empty entries & legit default entries are not shown REGEDIT4[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-08-26 279944][HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}][HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}][HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-06-11 39408][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 16859648]"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-03-28 622592]"SetDefPrt"="c:\program files\Brother\Brmfl06a\BrStDvPt.exe" [2005-01-26 49152]"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-04-10 61440]"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2010-04-13 47392]"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-04-28 142120]"Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-04-29 1090952][HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Scheduler for OEM.lnk]path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Scheduler for OEM.lnkbackup=c:\windows\pss\Scheduler for OEM.lnkCommon Startup[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]2009-12-22 05:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]2006-03-28 20:48 622592 ----a-r- c:\program files\Brother\Brmfcmon\brmfcwnd.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]2006-04-10 19:58 61440 ----a-w- c:\program files\Brother\ControlCenter3\brctrcen.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]2010-03-18 01:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]2009-06-11 10:16 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\googletoolbarnotifier.exe[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]"DisableNotifications"= 1 (0x1)[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\system32\\sessmgr.exe"="c:\\Documents and Settings\\Chris\\Application Data\\Juniper Networks\\Juniper Terminal Services Client\\dsTermServ.exe"="c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"="c:\\Program Files\\AIM6\\aim6.exe"="c:\\Program Files\\K-Lite Codec Pack\\Filters\\ac3config.exe"="c:\\Program Files\\LimeWire\\LimeWire.exe"="c:\\Program Files\\Bonjour\\mDNSResponder.exe"="c:\\Program Files\\iTunes\\iTunes.exe"=[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]"67:UDP"= 67:UDP:DHCP Discovery Service"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]R2 LinksysUpdater;Linksys Updater;c:\program files\Linksys\Linksys Updater\bin\LinksysUpdater.exe [2008-04-18 204800]S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-02-24 135336]S3 3xHybrid;SAA713x TV Card Service;c:\windows\system32\DRIVERS\3xHybrid.sys [2008-06-17 906368].Contents of the 'Scheduled Tasks' folder2010-05-31 c:\windows\Tasks\AppleSoftwareUpdate.job- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job- c:\program files\Google\Update\GoogleUpdate.exe [2010-02-09 15:35]2010-06-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007Core.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]2010-06-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1202660629-682003330-1007UA.job- c:\documents and settings\Steven\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-06-18 00:40]..------- Supplementary Scan -------.uStart Page = hxxp://members.suscom-maine.net/uInternet Settings,ProxyOverride = <local>IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.htmlTrusted Zone: llbean.comDPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cabFF - ProfilePath - c:\documents and settings\Chris\Application Data\Mozilla\Firefox\Profiles\65yumn1j.default\FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dllFF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dllFF - plugin: c:\program files\Mozilla Firefox\plugins\NPFxViewer.dllFF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dllFF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\---- FIREFOX POLICIES ----c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);.**************************************************************************scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfullyhidden files: **************************************************************************.--------------------- DLLs Loaded Under Running Processes ---------------------- - - - - - - > 'explorer.exe'(1380)c:\windows\system32\WININET.dll.Completion time: 2010-06-19 08:06:57ComboFix-quarantined-files.txt 2010-06-19 12:06ComboFix2.txt 2010-06-18 21:23ComboFix3.txt 2010-06-18 10:18ComboFix4.txt 2010-06-17 10:04Pre-Run: 506,574,610,432 bytes freePost-Run: 506,561,716,224 bytes free- - End Of File - - 822D9EFB0B5E2B70F668598D0560DD27 Link to post Share on other sites More sharing options...
Elise Posted June 19, 2010 ID:270423 Share Posted June 19, 2010 At this point, beside the copy/paste issue, what other problems do you still have? Link to post Share on other sites More sharing options...
cwjme Posted June 19, 2010 Author ID:270430 Share Posted June 19, 2010 >>Every time I reboot I get an error about a Malwarebytes file after I log into my profile.>>I also get an error message during reboot before I get to the log in screen, but can't remember what it says. Do you need that?>>I can't view images.>>I can't use Outlook>>Sound doesn't work >>There's no taskbar/start button at the bottom of the screen (I have to run everything through Task Manager)>>I can't save files to other locations >>System Restore doesn't work>>Other users can log in to their screens. When they try to, my desktop flashes for a second and then goes back to the log in screen.That's all that I can think of at the moment. Link to post Share on other sites More sharing options...
cwjme Posted June 19, 2010 Author ID:270462 Share Posted June 19, 2010 Error on reboot:svchost.exe Application error - The instruction at "0x7c91b21a" referenced memory at "0x00000010." The memory could not be "written."Malwarebytes error:Failed to load control'vbalGrid' from vbalgrid6.ocx. Your version of vbalsgrid6.ocx may be outdated. Link to post Share on other sites More sharing options...
Elise Posted June 19, 2010 ID:270486 Share Posted June 19, 2010 Hello againOTL-----Please download OTL from one of the following mirrors:This is THE Mirror[*]Save it to your desktop.[*]Double click on the icon on your desktop.[*]Copy and Paste the following code into the textbox. Do not include the word "Code"c:\avenger\*.*/md5startsvchost.exe/md5stop[*]Push [*]A report will open. Copy and Paste that report in your next reply. Link to post Share on other sites More sharing options...
cwjme Posted June 19, 2010 Author ID:270602 Share Posted June 19, 2010 OTL logfile created on: 6/19/2010 6:45:37 PM - Run 4OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Chris\My Documents\DownloadsWindows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstationInternet Explorer (Version = 7.0.5730.13)Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 84.00% Memory free5.00 Gb Paging File | 5.00 Gb Available in Paging File | 93.00% Paging File freePaging file location(s): C:\pagefile.sys 2046 4092 [binary data]%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program FilesDrive C: | 586.36 Gb Total Space | 471.99 Gb Free Space | 80.50% Space Free | Partition Type: NTFSD: Drive not present or media not loadedE: Drive not present or media not loadedF: Drive not present or media not loadedG: Drive not present or media not loadedDrive H: | 9.77 Gb Total Space | 4.74 Gb Free Space | 48.57% Space Free | Partition Type: NTFSI: Drive not present or media not loadedComputer Name: HOMECurrent User Name: ChrisLogged in as Administrator.Current Boot Mode: NormalScan Mode: Current userCompany Name Whitelist: OffSkip Microsoft Files: OffFile Age = 30 DaysOutput = Minimal========== Processes (SafeList) ==========PRC - C:\Documents and Settings\Chris\My Documents\Downloads\OTL(2).exe (OldTimer Tools)PRC - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)PRC - C:\WINDOWS\system32\java.exe (Sun Microsystems, Inc.)PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)PRC - C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe ()PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)========== Modules (SafeList) ==========MOD - C:\Documents and Settings\Chris\My Documents\Downloads\OTL(2).exe (OldTimer Tools)MOD - C:\WINDOWS\system32\msscript.ocx (Microsoft Corporation)========== Win32 Services (SafeList) ==========SRV - (Apple Mobile Device) -- C:\Program
Recommended Posts