This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Need help removing malware

7 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

I can't update malwarebytes, and search links from google open in a new window and go to undirected sites. THanks for your help! DDS (Ver_09-06-26.01) - NTFSx86 Run by [removed] at 22:36:57.42 on Fri 06/04/2010 Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_14 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.511.152 [GMT -5:00] AV: Data Protection *On-access scanning enabled* (Outdated) {28e00e3b-806e-4533-925c-f4c3d79514b9} AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7} ============== Running Processes =============== E:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe E:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe E:\WINDOWS\system32\spoolsv.exe E:\Program Files\Avira\AntiVir Desktop\avgnt.exe E:\WINDOWS\system32\ctfmon.exe E:\Program Files\Avira\AntiVir Desktop\sched.exe svchost.exe E:\Program Files\Avira\AntiVir Desktop\avguard.exe E:\Program Files\Avira\AntiVir Desktop\avshadow.exe E:\WINDOWS\system32\WISPTIS.EXE E:\WINDOWS\explorer.exe E:\Program Files\Mozilla Firefox\firefox.exe E:\Documents and Settings\Josh\Desktop\dds.scr ============== Pseudo HJT Report =============== uInternet Settings,ProxyServer = http=127.0.0.1:5555 uInternet Settings,ProxyOverride = TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - e:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll TB: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File uRun: [ctfmon.exe] e:\windows\system32\ctfmon.exe mRun: [CTStartup] e:\program files\creative\splash screen\CTEaxSpl.EXE /run mRun: [Malwarebytes Anti-Malware (reboot)] "e:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript mRun: [avgnt] "e:\program files\avira\antivir desktop\avgnt.exe" /min mPolicies-explorer: = dPolicies-explorer: NoSetActiveDesktop = 1 (0x1) dPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - e:\program files\messenger\msmsgs.exe IE: {44226DFF-747E-4edc-B30C-78752E50CD0C} - {44226DFF-747E-4edc-B30C-78752E50CD0C} - e:\program files\ati multimedia\tv\EXPLBAR.DLL IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - e:\progra~1\micros~1\office11\REFIEBAR.DLL DPF: DirectAnimation Java Classes - file://e:\windows\java\classes\dajava.cab DPF: Microsoft XML Parser for Java - file://e:\windows\java\classes\xmldso.cab DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1243688024609 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab TCP: NameServer = 93.188.164.136,93.188.166.233 TCP: {2E310283-E4F3-4B69-BA20-C595D6C305FA} = 93.188.164.136,93.188.166.233 SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - e:\windows\system32\WPDShServiceObj.dll ================= FIREFOX =================== FF - ProfilePath - e:\docume~1\josh\applic~1\mozilla\firefox\profiles\s7blcxuv.default\ FF - plugin: e:\program files\viewpoint\viewpoint media player\npViewpoint.dll FF - HiddenExtension: Java Console: No Registry Reference - e:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} FF - HiddenExtension: Java Console: No Registry Reference - e:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} ============= SERVICES / DRIVERS =============== R1 avgio;avgio;e:\program files\avira\antivir desktop\avgio.sys [2010-5-27 11608] R2 AntiVirSchedulerService;Avira AntiVir Scheduler;e:\program files\avira\antivir desktop\sched.exe [2010-5-27 135336] R2 AntiVirService;Avira AntiVir Guard;e:\program files\avira\antivir desktop\avguard.exe [2010-5-27 267432] R2 avgntflt;avgntflt;e:\windows\system32\drivers\avgntflt.sys [2010-5-27 60936] R2 pxrts;pxrts;e:\windows\system32\drivers\pxrts.sys [2010-5-23 57248] S0 vjydvg;vjydvg;e:\windows\system32\drivers\vjydvg.sys [2010-5-20 0] S1 sypgsvdi;sypgsvdi;\??\e:\windows\system32\drivers\sypgsvdi.sys –> e:\windows\system32\drivers\sypgsvdi.sys [?] S2 CINEMSUP;Software Cinemaster NT4.0 Driver;e:\windows\system32\drivers\cinemsup.sys –> e:\windows\system32\drivers\CINEMSUP.SYS [?] =============== Created Last 30 ================ 2010-05-27 18:30 –d—– e:\docume~1\josh\applic~1\Avira 2010-05-27 18:20 –d—– e:\windows\system32\NtmsData 2010-05-27 18:17 60,936 a——- e:\windows\system32\drivers\avgntflt.sys 2010-05-27 18:17 –d—– e:\program files\Avira 2010-05-27 18:17 –d—– e:\docume~1\alluse~1\applic~1\Avira 2010-05-27 17:40 –d—– e:\windows\system32\MpEngineStore 2010-05-23 23:04 –d—– e:\docume~1\alluse~1\applic~1\SecTaskMan 2010-05-23 22:47 57,248 a——- e:\windows\system32\drivers\pxrts.sys 2010-05-23 22:47 –d—– e:\docume~1\alluse~1\applic~1\PrevxCSI 2010-05-21 09:32 47 a——- e:\windows\wininit.ini 2010-05-20 23:41 2,684 a——- e:\windows\lsrslt.ini 2010-05-20 20:41 –dsh— e:\docume~1\josh\applic~1\SystemProc 2010-05-20 20:41 0 a——- e:\windows\system32\drivers\vjydvg.sys 2010-05-20 20:25 40,960 a—h— e:\windows\system32\ipv6smui.dll 2010-05-20 20:25 12 a——- e:\docume~1\josh\applic~1\kyvgsz.dat ==================== Find3M ==================== 2010-03-11 07:38 832,512 a——- e:\windows\system32\wininet.dll 2010-03-11 07:38 78,336 ——– e:\windows\system32\ieencode.dll 2010-03-11 07:38 17,408 a——- e:\windows\system32\corpol.dll 2010-03-09 06:09 430,080 a——- e:\windows\system32\vbscript.dll 2009-10-18 09:50 19,029 a——- e:\docume~1\alluse~1\applic~1\fyjahavi.dat 2009-10-14 08:35 15,958 a——- e:\program files\common files\ugebij.db ============= FINISH: 22:37:22.81 ===============
Posted Image


DO NOT use any TOOLS such as Combofix or HijackThis fixes without supervision.

Doing so could make your pc inoperatible and could require a full reinstall of your OS, losing all your programs and data.


Vista and Windows 7 users:
1. These tools MUST be run from the executable. (.exe) every time you run them
2. With Admin Rights (Right click, choose "Run as Administrator")


Stay with this topic until I give you the all clean post.

You might want to print these instructions out.



Please download GooredFix from one of the locations below and save it to your Desktop
Download Mirror #1
Download Mirror #2
  • Ensure all Firefox windows are closed.
  • To run the tool, double-click it (XP), or right-click and select Run As Administrator (Vista).
  • When prompted to run the scan, click Yes.
  • It doesn't take long to run, once it is finished move onto the next step



Download TDSSKiller and save it to your Desktop.

  • Make sure all other windows are closed and to let it run uninterrupted.
  • Extract the file and run it.
  • Reboot your machine and see if the infection is gone
Download ComboFix from one of these locations:

Link 1
Link 2 If using this link, Right Click and select Save As.


* IMPORTANT !!! Save ComboFix.exe to your Desktop


  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. Note: If you are having difficulty properly disabling your protective programs, or are unsure as to what programs need to be disabled, please refer to the information available through this link : Protective Programs

  • Double click on ComboFix.exe & follow the prompts.

    Notes: Combofix will run without the Recovery Console installed. Skip the Recovery Console part if you're running Vista or Windows 7.

    Note: If you have SP3, use the SP2 package.
    If Vista or Windows 7, skip the Recovery Console part

  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.


[external image: Posted Image]



Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

[external image: Posted Image]


Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt using Copy / Paste in your next reply.


Notes:

1.Do not mouse-click Combofix's window while it is running. That may cause it to stall.
2. ComboFix may reset a number of Internet Explorer's settings, including making I-E the default browser.
3. Combofix prevents autorun of ALL CD, floppy and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you – please tell your helper.
4. CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.

Give it atleast 20-30 minutes to finish if needed.

Please do not attach the scan results from Combofx. Use copy/paste.

Also please describe how your computer behaves at the moment.
There is definitely still problems with my computer. While I can now update malwarebytes, there is still spyware and pop ups when I search the web.

ComboFix 10-06-05.01 - Josh 06/05/2010 21:47:53.2.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.511.293 [GMT -5:00]
Running from: e:\documents and settings\[removed]\Desktop\ComboFix.exe
AV: AntiVir Desktop *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

e:\documents and settings\Administrator\Application Data\020000005bd91778922C.manifest
e:\documents and settings\Administrator\Application Data\020000005bd91778922O.manifest
e:\documents and settings\Administrator\Application Data\020000005bd91778922P.manifest
e:\documents and settings\Administrator\Application Data\020000005bd91778922S.manifest
e:\documents and settings\Josh\Application Data\020000005bd91778922C.manifest
e:\documents and settings\Josh\Application Data\020000005bd91778922O.manifest
e:\documents and settings\Josh\Application Data\020000005bd91778922P.manifest
e:\documents and settings\Josh\Application Data\020000005bd91778922S.manifest
e:\documents and settings\Josh\Application Data\SystemProc
e:\documents and settings\Josh\Start Menu\Antimalware Doctor.lnk
e:\windows\system32\atriprxx.ara
e:\windows\system32\atriprxx.chs
e:\windows\system32\atriprxx.cht
e:\windows\system32\atriprxx.csy
e:\windows\system32\atriprxx.dan
e:\windows\system32\atriprxx.deu
e:\windows\system32\atriprxx.ell
e:\windows\system32\atriprxx.enu
e:\windows\system32\atriprxx.esp
e:\windows\system32\atriprxx.fin
e:\windows\system32\atriprxx.fra
e:\windows\system32\atriprxx.heb
e:\windows\system32\atriprxx.hun
e:\windows\system32\atriprxx.ita
e:\windows\system32\atriprxx.jpn
e:\windows\system32\atriprxx.kor
e:\windows\system32\atriprxx.nld
e:\windows\system32\atriprxx.nor
e:\windows\system32\atriprxx.plk
e:\windows\system32\atriprxx.ptb
e:\windows\system32\atriprxx.rus
e:\windows\system32\atriprxx.sve
e:\windows\system32\atriprxx.tha
e:\windows\system32\atriprxx.trk
e:\windows\system32\driVERs\vjydvg.sys
e:\windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

——-\Legacy_6TO4
——-\Service_6to4
——-\Legacy_vjydvg
——-\Service_vjydvg


((((((((((((((((((((((((( Files Created from 2010-05-06 to 2010-06-06 )))))))))))))))))))))))))))))))
.

2010-05-27 23:30 . 2010-05-27 23:30 ——– d—–w- e:\documents and settings\Josh\Application Data\Avira
2010-05-27 23:20 . 2010-06-01 05:28 ——– d—–w- e:\windows\system32\NtmsData
2010-05-27 23:17 . 2010-03-01 15:05 124784 —-a-w- e:\windows\system32\drivers\avipbb.sys
2010-05-27 23:17 . 2010-02-16 19:24 60936 —-a-w- e:\windows\system32\drivers\avgntflt.sys
2010-05-27 23:17 . 2009-05-11 17:49 45416 —-a-w- e:\windows\system32\drivers\avgntdd.sys
2010-05-27 23:17 . 2009-05-11 17:49 22360 —-a-w- e:\windows\system32\drivers\avgntmgr.sys
2010-05-27 23:17 . 2010-05-27 23:17 ——– d—–w- e:\program files\Avira
2010-05-27 23:17 . 2010-05-27 23:17 ——– d—–w- e:\documents and settings\All Users\Application Data\Avira
2010-05-27 22:40 . 2010-05-27 22:58 ——– d—–w- e:\windows\system32\MpEngineStore
2010-05-24 03:47 . 2010-05-24 03:47 57248 —-a-w- e:\windows\system32\drivers\pxrts.sys
2010-05-24 03:47 . 2010-05-24 03:47 ——– d—–w- e:\documents and settings\All Users\Application Data\PrevxCSI
2010-05-21 05:50 . 2010-05-21 05:50 ——– d—–w- e:\documents and settings\Josh\Local Settings\Application Data\Threat Expert
2010-05-21 05:49 . 2010-05-27 23:23 ——– d—a-w- e:\documents and settings\All Users\Application Data\TEMP
2010-05-21 01:41 . 2010-05-28 00:42 ——– d—–w- e:\documents and settings\Josh\Local Settings\Application Data\wbutpifpl
2010-05-21 01:25 . 2010-05-21 01:25 40960 —ha-w- e:\windows\system32\ipv6smui.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-06 02:54 . 2009-05-30 13:05 24 —-a-w- e:\windows\system32\DVCStateBkp-{00000002-00000000-00000002-00001102-00000004-00511102}.dat
2010-06-06 02:54 . 2009-05-30 13:05 24 —-a-w- e:\windows\system32\DVCState-{00000002-00000000-00000002-00001102-00000004-00511102}.dat
2010-05-27 23:24 . 2010-05-24 04:04 ——– d—–w- e:\documents and settings\All Users\Application Data\SecTaskMan
2010-05-24 04:04 . 2010-05-24 04:04 3257 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_DDE7F2BCF1D91C3409CFF425AE1E271A.dll
2010-05-24 04:04 . 2010-05-24 04:04 1360 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_FCC9536AD5129D34386674D932F1A227.dll
2010-05-24 04:04 . 2010-05-24 04:04 1251 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_D20352A90C039D93DBF6126ECE614057.dll
2010-05-24 04:04 . 2010-05-24 04:04 907 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_b25099274a207264182f8181add555d0.dll
2010-05-24 04:04 . 2010-05-24 04:04 6926 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_9040110900063D11C8EF10054038389C.dll
2010-05-24 04:04 . 2010-05-24 04:04 655 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_C122D834B5B5B4E47BDB8A56215E6B1C.dll
2010-05-24 04:04 . 2010-05-24 04:04 36 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_85500AD96656C48478CB6105CB6F4064.dll
2010-05-24 04:04 . 2010-05-24 04:04 389 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_8111590C52767DB4A98A70C89127A9FD.dll
2010-05-24 04:04 . 2010-05-24 04:04 27 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_4EA42A62D9304AC4784BF238120631FF.dll
2010-05-24 04:04 . 2010-05-24 04:04 2493 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_68AB67CA330100007706000000000010.dll
2010-05-24 04:04 . 2010-05-24 04:04 154 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_59E4214C16056774D8D53E9D137C871E.dll
2010-05-24 04:04 . 2010-05-24 04:04 108 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_0B79C053C7D38EE4AB9A00CB3B5D2472.dll
2010-05-21 01:25 . 2010-05-21 01:25 12 —-a-w- e:\documents and settings\Josh\Application Data\kyvgsz.dat
2010-03-11 12:38 . 2006-06-23 16:33 832512 —-a-w- e:\windows\system32\wininet.dll
2010-03-11 12:38 . 2004-08-04 07:56 78336 ——w- e:\windows\system32\ieencode.dll
2010-03-11 12:38 . 2002-08-29 12:00 17408 —-a-w- e:\windows\system32\corpol.dll
2010-03-09 11:09 . 2002-08-29 12:00 430080 —-a-w- e:\windows\system32\vbscript.dll
2009-10-14 13:35 . 2009-10-14 13:35 15958 —-a-w- e:\program files\Common Files\ugebij.db
2009-07-18 19:52 . 2009-07-18 19:52 193544 –sha-w- e:\windows\system32\feviliru.exe
2009-07-18 19:52 . 2009-07-18 19:52 1084450 –sha-w- e:\windows\system32\nosadepu.exe
2009-07-14 13:36 . 2009-07-14 13:36 191496 –sha-w- e:\windows\system32\tenugizu.exe
.

((((((((((((((((((((((((((((( SnapShot@2009-10-18_20.33.07 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-12 05:02 . 2009-07-12 05:02 51008 e:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_f0ccd4aa\vcomp90.dll
+ 2007-11-07 07:19 . 2007-11-07 07:19 54272 e:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_ecc42bd1\vcomp90.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 59728 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90rus.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 42832 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90kor.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 43344 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90jpn.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 61264 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90ita.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 62800 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90fra.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 61760 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esp.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 61776 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esn.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 53568 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90enu.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 63296 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90deu.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 36688 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90cht.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 35648 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90chs.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 62976 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90rus.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 46080 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90kor.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 46592 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90jpn.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 64512 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90ita.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 66048 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90fra.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 65024 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esp.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 65024 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esn.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 56832 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90enu.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 66560 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90deu.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 39936 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90cht.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 38912 e:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90chs.dll
+ 2009-07-12 05:05 . 2009-07-12 05:05 59904 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll
+ 2009-07-12 05:05 . 2009-07-12 05:05 59904 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 59904 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90u.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 59904 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90.dll
+ 2010-06-06 02:55 . 2010-06-06 02:55 16384 e:\windows\temp\Perflib_Perfdata_7a4.dat
+ 2009-05-30 12:54 . 2009-08-07 01:24 44768 e:\windows\system32\wups2.dll
+ 2009-05-30 12:54 . 2009-08-07 01:24 35552 e:\windows\system32\wups.dll
+ 2009-05-29 23:44 . 2009-08-07 01:24 53472 e:\windows\system32\wuauclt.exe
+ 2002-08-29 12:00 . 2009-06-25 08:25 54272 e:\windows\system32\wdigest.dll
+ 2008-10-22 09:47 . 2010-01-23 08:11 46080 e:\windows\system32\tzchange.exe
- 2008-10-22 09:47 . 2009-07-14 11:03 46080 e:\windows\system32\tzchange.exe
+ 2004-08-04 07:56 . 2009-10-21 05:38 75776 e:\windows\system32\strmfilt.dll
- 2004-08-04 07:56 . 2008-04-14 00:12 75776 e:\windows\system32\strmfilt.dll
+ 2009-06-14 03:38 . 2009-05-26 11:40 17272 e:\windows\system32\spmsg.dll
+ 2009-11-15 00:39 . 2009-08-07 01:24 44768 e:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.4.7600.226\wups2.dll
+ 2009-11-15 00:39 . 2009-08-07 01:24 35552 e:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.4.7600.226\wups.dll
+ 2002-08-29 12:00 . 2009-06-25 08:25 56832 e:\windows\system32\secur32.dll
- 2002-08-29 12:00 . 2009-02-03 19:59 56832 e:\windows\system32\secur32.dll
- 2002-08-29 12:00 . 2008-04-14 00:12 79872 e:\windows\system32\raschap.dll
+ 2002-08-29 12:00 . 2009-10-12 13:38 79872 e:\windows\system32\raschap.dll
- 2005-04-27 15:53 . 2009-06-29 16:12 44544 e:\windows\system32\pngfilt.dll
+ 2005-04-27 15:53 . 2010-03-11 12:38 44544 e:\windows\system32\pngfilt.dll
- 2002-08-29 12:00 . 2009-10-07 01:12 53812 e:\windows\system32\perfc009.dat
+ 2002-08-29 12:00 . 2010-03-16 03:15 53812 e:\windows\system32\perfc009.dat
+ 2001-08-17 22:36 . 2009-11-27 17:11 17920 e:\windows\system32\msyuv.dll
+ 2002-08-29 12:00 . 2009-11-27 16:07 28672 e:\windows\system32\msvidc32.dll
- 2002-08-29 12:00 . 2008-04-14 00:12 11264 e:\windows\system32\msrle32.dll
+ 2002-08-29 12:00 . 2009-11-27 16:07 11264 e:\windows\system32\msrle32.dll
+ 2007-08-13 23:54 . 2010-03-11 12:38 52224 e:\windows\system32\msfeedsbs.dll
- 2007-08-13 23:54 . 2009-06-29 16:12 52224 e:\windows\system32\msfeedsbs.dll
+ 2002-08-29 12:00 . 2009-09-04 21:03 58880 e:\windows\system32\msasn1.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 27648 e:\windows\system32\jsproxy.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 27648 e:\windows\system32\jsproxy.dll
+ 2001-08-17 22:36 . 2009-11-27 16:07 48128 e:\windows\system32\iyuv_32.dll
- 2007-08-13 23:39 . 2009-06-29 11:07 13824 e:\windows\system32\ieudinit.exe
+ 2007-08-13 23:39 . 2010-03-10 13:18 13824 e:\windows\system32\ieudinit.exe
- 2002-08-29 12:00 . 2009-06-29 16:12 44544 e:\windows\system32\iernonce.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 44544 e:\windows\system32\iernonce.dll
+ 2002-08-29 12:00 . 2010-03-10 13:18 70656 e:\windows\system32\ie4uinit.exe
- 2002-08-29 12:00 . 2009-06-29 11:07 70656 e:\windows\system32\ie4uinit.exe
- 2007-08-13 23:36 . 2009-06-29 16:12 63488 e:\windows\system32\icardie.dll
+ 2007-08-13 23:36 . 2010-03-11 12:38 63488 e:\windows\system32\icardie.dll
+ 2004-08-04 07:56 . 2009-10-21 05:38 25088 e:\windows\system32\httpapi.dll
+ 2002-08-29 12:00 . 2009-10-15 16:28 81920 e:\windows\system32\fontsub.dll
- 2002-08-29 12:00 . 2009-06-16 14:36 81920 e:\windows\system32\fontsub.dll
+ 2010-05-27 23:17 . 2009-05-11 15:12 28520 e:\windows\system32\drivers\ssmdrv.sys
+ 2002-08-29 12:00 . 2009-06-24 11:18 92928 e:\windows\system32\drivers\ksecdd.sys
+ 2009-05-30 12:54 . 2009-08-07 01:24 35552 e:\windows\system32\dllcache\wups.dll
+ 2009-05-29 23:44 . 2009-08-07 01:24 53472 e:\windows\system32\dllcache\wuauclt.exe
+ 2009-06-25 08:25 . 2009-06-25 08:25 54272 e:\windows\system32\dllcache\wdigest.dll
+ 2009-10-21 05:38 . 2009-10-21 05:38 75776 e:\windows\system32\dllcache\strmfilt.dll
+ 2009-02-03 19:59 . 2009-06-25 08:25 56832 e:\windows\system32\dllcache\secur32.dll
- 2009-02-03 19:59 . 2009-02-03 19:59 56832 e:\windows\system32\dllcache\secur32.dll
+ 2009-10-12 13:38 . 2009-10-12 13:38 79872 e:\windows\system32\dllcache\raschap.dll
- 2007-08-13 23:36 . 2009-06-29 16:12 44544 e:\windows\system32\dllcache\pngfilt.dll
+ 2007-08-13 23:36 . 2010-03-11 12:38 44544 e:\windows\system32\dllcache\pngfilt.dll
+ 2009-11-27 17:11 . 2009-11-27 17:11 17920 e:\windows\system32\dllcache\msyuv.dll
+ 2002-08-29 12:00 . 2009-11-27 16:07 28672 e:\windows\system32\dllcache\msvidc32.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 11264 e:\windows\system32\dllcache\msrle32.dll
+ 2009-07-30 13:58 . 2010-03-11 12:38 52224 e:\windows\system32\dllcache\msfeedsbs.dll
- 2009-07-30 13:58 . 2009-06-29 16:12 52224 e:\windows\system32\dllcache\msfeedsbs.dll
+ 2009-09-04 21:03 . 2009-09-04 21:03 58880 e:\windows\system32\dllcache\msasn1.dll
+ 2009-06-24 11:18 . 2009-06-24 11:18 92928 e:\windows\system32\dllcache\ksecdd.sys
+ 2007-08-13 23:54 . 2010-03-11 12:38 27648 e:\windows\system32\dllcache\jsproxy.dll
- 2007-08-13 23:54 . 2009-06-29 16:12 27648 e:\windows\system32\dllcache\jsproxy.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 48128 e:\windows\system32\dllcache\iyuv_32.dll
- 2009-07-30 13:58 . 2009-06-29 11:07 13824 e:\windows\system32\dllcache\ieudinit.exe
+ 2009-07-30 13:58 . 2010-03-10 13:18 13824 e:\windows\system32\dllcache\ieudinit.exe
- 2007-08-13 23:39 . 2009-06-29 16:12 44544 e:\windows\system32\dllcache\iernonce.dll
+ 2007-08-13 23:39 . 2010-03-11 12:38 44544 e:\windows\system32\dllcache\iernonce.dll
- 2009-02-20 08:10 . 2009-06-29 16:12 78336 e:\windows\system32\dllcache\ieencode.dll
+ 2009-02-20 08:10 . 2010-03-11 12:38 78336 e:\windows\system32\dllcache\ieencode.dll
+ 2007-08-13 23:39 . 2010-03-10 13:18 70656 e:\windows\system32\dllcache\ie4uinit.exe
- 2007-08-13 23:39 . 2009-06-29 11:07 70656 e:\windows\system32\dllcache\ie4uinit.exe
+ 2009-07-30 13:58 . 2010-03-11 12:38 63488 e:\windows\system32\dllcache\icardie.dll
- 2009-07-30 13:58 . 2009-06-29 16:12 63488 e:\windows\system32\dllcache\icardie.dll
+ 2009-10-21 05:38 . 2009-10-21 05:38 25088 e:\windows\system32\dllcache\httpapi.dll
- 2009-06-16 14:36 . 2009-06-16 14:36 81920 e:\windows\system32\dllcache\fontsub.dll
+ 2009-06-16 14:36 . 2009-10-15 16:28 81920 e:\windows\system32\dllcache\fontsub.dll
+ 2009-12-14 07:08 . 2009-12-14 07:08 33280 e:\windows\system32\dllcache\csrsrv.dll
- 2007-08-13 23:42 . 2009-06-29 16:12 17408 e:\windows\system32\dllcache\corpol.dll
+ 2007-08-13 23:42 . 2010-03-11 12:38 17408 e:\windows\system32\dllcache\corpol.dll
+ 2002-08-29 12:00 . 2009-08-07 01:24 96480 e:\windows\system32\dllcache\cdm.dll
+ 2010-01-13 14:01 . 2010-01-13 14:01 86016 e:\windows\system32\dllcache\cabview.dll
+ 2009-06-10 14:13 . 2009-11-27 16:07 84992 e:\windows\system32\dllcache\avifil32.dll
- 2009-06-10 14:13 . 2009-06-10 14:13 84992 e:\windows\system32\dllcache\avifil32.dll
+ 2002-08-29 12:00 . 2008-04-14 00:12 44544 e:\windows\system32\dllcache\alg.exe
+ 2002-08-29 12:00 . 2009-12-14 07:08 33280 e:\windows\system32\csrsrv.dll
+ 2002-08-29 12:00 . 2009-08-07 01:24 96480 e:\windows\system32\cdm.dll
+ 2002-08-29 12:00 . 2010-01-13 14:01 86016 e:\windows\system32\cabview.dll
+ 2002-08-29 12:00 . 2009-11-27 16:07 84992 e:\windows\system32\avifil32.dll
- 2002-08-29 12:00 . 2009-06-10 14:13 84992 e:\windows\system32\avifil32.dll
+ 2009-06-25 00:56 . 2009-06-25 00:56 73728 e:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
+ 2008-05-28 05:49 . 2008-05-28 05:49 77824 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2007-04-14 01:58 . 2007-04-14 01:58 77824 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2008-05-28 05:49 . 2008-05-28 05:49 86016 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
- 2007-04-14 01:57 . 2007-04-14 01:57 86016 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2008-05-28 05:49 . 2008-05-28 05:49 81920 e:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2007-04-14 01:57 . 2007-04-14 01:57 81920 e:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2007-04-14 02:30 . 2007-04-14 02:30 32768 e:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2008-05-28 06:30 . 2008-05-28 06:30 32768 e:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2010-02-01 01:31 . 2010-02-01 01:31 49152 e:\windows\Installer\{C0951118-6725-4BD7-9AA8-078C19729ADF}\_7781F6A.exe
+ 2010-03-31 08:00 . 2010-01-05 10:00 44544 e:\windows\ie7updates\KB980182-IE7\pngfilt.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 52224 e:\windows\ie7updates\KB980182-IE7\msfeedsbs.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 27648 e:\windows\ie7updates\KB980182-IE7\jsproxy.dll
+ 2010-03-31 08:00 . 2009-12-31 15:33 13824 e:\windows\ie7updates\KB980182-IE7\ieudinit.exe
+ 2010-03-31 08:00 . 2010-01-05 10:00 44544 e:\windows\ie7updates\KB980182-IE7\iernonce.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 78336 e:\windows\ie7updates\KB980182-IE7\ieencode.dll
+ 2010-03-31 08:00 . 2009-12-31 15:33 70656 e:\windows\ie7updates\KB980182-IE7\ie4uinit.exe
+ 2010-03-31 08:00 . 2010-01-05 10:00 63488 e:\windows\ie7updates\KB980182-IE7\icardie.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 17408 e:\windows\ie7updates\KB980182-IE7\corpol.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 44544 e:\windows\ie7updates\KB978207-IE7\pngfilt.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 52224 e:\windows\ie7updates\KB978207-IE7\msfeedsbs.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 27648 e:\windows\ie7updates\KB978207-IE7\jsproxy.dll
+ 2010-01-28 09:00 . 2009-10-28 14:36 13824 e:\windows\ie7updates\KB978207-IE7\ieudinit.exe
+ 2010-01-28 09:00 . 2009-10-29 07:46 44544 e:\windows\ie7updates\KB978207-IE7\iernonce.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 78336 e:\windows\ie7updates\KB978207-IE7\ieencode.dll
+ 2010-01-28 09:00 . 2009-10-28 14:36 70656 e:\windows\ie7updates\KB978207-IE7\ie4uinit.exe
+ 2010-01-28 09:00 . 2009-10-29 07:46 63488 e:\windows\ie7updates\KB978207-IE7\icardie.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 17408 e:\windows\ie7updates\KB978207-IE7\corpol.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 44544 e:\windows\ie7updates\KB976325-IE7\pngfilt.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 52224 e:\windows\ie7updates\KB976325-IE7\msfeedsbs.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 27648 e:\windows\ie7updates\KB976325-IE7\jsproxy.dll
+ 2009-12-11 09:02 . 2009-08-28 10:28 13824 e:\windows\ie7updates\KB976325-IE7\ieudinit.exe
+ 2009-12-11 09:02 . 2009-08-29 07:36 44544 e:\windows\ie7updates\KB976325-IE7\iernonce.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 78336 e:\windows\ie7updates\KB976325-IE7\ieencode.dll
+ 2009-12-11 09:02 . 2009-08-28 10:28 70656 e:\windows\ie7updates\KB976325-IE7\ie4uinit.exe
+ 2009-12-11 09:02 . 2009-08-29 07:36 63488 e:\windows\ie7updates\KB976325-IE7\icardie.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 17408 e:\windows\ie7updates\KB976325-IE7\corpol.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 44544 e:\windows\ie7updates\KB974455-IE7\pngfilt.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 52224 e:\windows\ie7updates\KB974455-IE7\msfeedsbs.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 27648 e:\windows\ie7updates\KB974455-IE7\jsproxy.dll
+ 2009-10-18 21:56 . 2009-06-29 11:07 13824 e:\windows\ie7updates\KB974455-IE7\ieudinit.exe
+ 2009-10-18 21:56 . 2009-06-29 16:12 44544 e:\windows\ie7updates\KB974455-IE7\iernonce.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 78336 e:\windows\ie7updates\KB974455-IE7\ieencode.dll
+ 2009-10-18 21:56 . 2009-06-29 11:07 70656 e:\windows\ie7updates\KB974455-IE7\ie4uinit.exe
+ 2009-10-18 21:56 . 2009-06-29 16:12 63488 e:\windows\ie7updates\KB974455-IE7\icardie.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 17408 e:\windows\ie7updates\KB974455-IE7\corpol.dll
+ 2009-11-27 17:11 . 2009-11-27 17:11 17920 e:\windows\Driver Cache\i386\msyuv.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 48128 e:\windows\Driver Cache\i386\iyuv_32.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 90112 e:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_5a9c9a7b\System.Drawing.Design.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 61440 e:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_9b2873ef\CustomMarshalers.dll
+ 2010-04-15 05:14 . 2008-04-14 00:11 84480 e:\windows\$NtUninstallKB979309$\cabview.dll
+ 2010-02-24 06:01 . 2009-10-28 15:07 46080 e:\windows\$NtUninstallKB979306$\tzchange.exe
+ 2010-02-24 06:01 . 2010-01-23 10:40 16896 e:\windows\$NtUninstallKB979306$\spuninst\tzchange.dll
+ 2010-02-17 09:01 . 2008-04-14 00:11 32256 e:\windows\$NtUninstallKB978037$\csrsrv.dll
+ 2010-02-17 09:01 . 2002-08-29 12:00 25600 e:\windows\$NtUninstallKB977914$\msvidc32.dll
+ 2010-02-17 09:01 . 2008-04-14 00:12 11264 e:\windows\$NtUninstallKB977914$\msrle32.dll
+ 2010-02-17 09:01 . 2008-04-14 00:11 47616 e:\windows\$NtUninstallKB977914$\iyuv_32.dll
+ 2010-02-17 09:01 . 2009-06-10 14:13 84992 e:\windows\$NtUninstallKB977914$\avifil32.dll
+ 2009-11-26 09:01 . 2009-07-14 11:03 46080 e:\windows\$NtUninstallKB976098-v2$\tzchange.exe
+ 2009-11-26 09:01 . 2009-10-29 02:03 16896 e:\windows\$NtUninstallKB976098-v2$\spuninst\tzchange.dll
+ 2010-02-17 09:01 . 2008-04-14 00:12 16896 e:\windows\$NtUninstallKB975560$\msyuv.dll
+ 2009-10-18 21:56 . 2008-04-14 00:11 57344 e:\windows\$NtUninstallKB974571$\msasn1.dll
+ 2009-12-11 09:02 . 2008-04-14 00:12 79872 e:\windows\$NtUninstallKB974318$\raschap.dll
+ 2010-01-13 09:02 . 2009-06-16 14:36 81920 e:\windows\$NtUninstallKB972270$\fontsub.dll
+ 2009-12-11 09:02 . 2008-04-14 00:12 75776 e:\windows\$NtUninstallKB970430$\strmfilt.dll
+ 2009-12-11 09:02 . 2008-04-14 00:11 24576 e:\windows\$NtUninstallKB970430$\httpapi.dll
+ 2009-10-18 21:55 . 2008-04-14 00:12 49152 e:\windows\$NtUninstallKB968389$\wdigest.dll
+ 2009-10-18 21:55 . 2009-02-03 19:59 56832 e:\windows\$NtUninstallKB968389$\secur32.dll
+ 2009-10-18 21:55 . 2008-04-13 18:31 92288 e:\windows\$NtUninstallKB968389$\ksecdd.sys
+ 2010-04-15 05:14 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB981349\update\spcustom.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB981349\spmsg.dll
+ 2010-04-15 05:16 . 2009-05-26 09:01 26488 e:\windows\$hf_mig$\KB980232\update\spcustom.dll
+ 2010-04-15 05:16 . 2009-05-26 09:01 17272 e:\windows\$hf_mig$\KB980232\spmsg.dll
+ 2010-03-31 08:00 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB980182-IE7\update\spcustom.dll
+ 2010-03-31 08:00 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB980182-IE7\spmsg.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 44544 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\pngfilt.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 52224 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\msfeedsbs.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 27648 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\jsproxy.dll
+ 2010-03-10 14:05 . 2010-03-10 14:05 13824 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieudinit.exe
+ 2010-03-11 11:49 . 2010-03-11 11:49 44544 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\iernonce.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 78336 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieencode.dll
+ 2010-03-10 14:05 . 2010-03-10 14:05 70656 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ie4uinit.exe
+ 2010-03-11 11:49 . 2010-03-11 11:49 63488 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\icardie.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 17408 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\corpol.dll
+ 2010-04-15 05:16 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB979683\update\spcustom.dll
+ 2010-04-15 04:54 . 2010-03-05 14:54 16896 e:\windows\$hf_mig$\KB979683\update\mpsyschk.dll
+ 2010-04-15 05:16 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB979683\spmsg.dll
+ 2010-04-15 05:14 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB979309\update\spcustom.dll
+ 2010-04-15 05:14 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB979309\spmsg.dll
+ 2010-01-13 13:48 . 2010-01-13 13:48 86016 e:\windows\$hf_mig$\KB979309\SP3QFE\cabview.dll
+ 2010-02-17 09:00 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB978706\update\spcustom.dll
+ 2010-02-17 09:00 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB978706\spmsg.dll
+ 2010-04-15 05:14 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB978601\update\spcustom.dll
+ 2010-04-15 05:14 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB978601\spmsg.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB978338\update\spcustom.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB978338\spmsg.dll
+ 2010-02-17 09:03 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB978262\update\spcustom.dll
+ 2010-02-17 09:03 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB978262\spmsg.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB978251\update\spcustom.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB978251\spmsg.dll
+ 2010-01-28 09:01 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB978207-IE7\update\spcustom.dll
+ 2010-01-28 09:01 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB978207-IE7\spmsg.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 44544 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\pngfilt.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 52224 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\msfeedsbs.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 27648 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\jsproxy.dll
+ 2010-01-01 06:55 . 2010-01-01 06:55 13824 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieudinit.exe
+ 2010-01-05 09:57 . 2010-01-05 09:57 44544 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iernonce.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 78336 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieencode.dll
+ 2010-01-01 06:55 . 2010-01-01 06:55 70656 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ie4uinit.exe
+ 2010-01-05 09:57 . 2010-01-05 09:57 63488 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\icardie.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 17408 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\corpol.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB978037\update\spcustom.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB978037\spmsg.dll
+ 2009-12-14 07:10 . 2009-12-14 07:10 33280 e:\windows\$hf_mig$\KB978037\SP3QFE\csrsrv.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB977914\update\spcustom.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB977914\spmsg.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 28672 e:\windows\$hf_mig$\KB977914\SP3QFE\msvidc32.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 11264 e:\windows\$hf_mig$\KB977914\SP3QFE\msrle32.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 48128 e:\windows\$hf_mig$\KB977914\SP3QFE\iyuv_32.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 84992 e:\windows\$hf_mig$\KB977914\SP3QFE\avifil32.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB977816\update\spcustom.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB977816\spmsg.dll
+ 2010-03-12 02:12 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB977165-v2\update\spcustom.dll
+ 2010-03-12 01:54 . 2010-02-24 15:25 16896 e:\windows\$hf_mig$\KB977165-v2\update\mpsyschk.dll
+ 2010-03-12 02:12 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB977165-v2\spmsg.dll
+ 2009-11-03 04:13 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB976749-IE7\update\spcustom.dll
+ 2009-11-03 04:13 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB976749-IE7\spmsg.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB976325-IE7\update\spcustom.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB976325-IE7\spmsg.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 44544 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\pngfilt.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 52224 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\msfeedsbs.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 27648 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\jsproxy.dll
+ 2009-10-28 14:05 . 2009-10-28 14:05 13824 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieudinit.exe
+ 2009-10-29 07:45 . 2009-10-29 07:45 44544 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iernonce.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 78336 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieencode.dll
+ 2009-10-28 14:05 . 2009-10-28 14:05 70656 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ie4uinit.exe
+ 2009-10-29 07:45 . 2009-10-29 07:45 63488 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\icardie.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 17408 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\corpol.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB975713\update\spcustom.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB975713\spmsg.dll
+ 2010-03-12 02:11 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB975561\update\spcustom.dll
+ 2010-03-12 02:11 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB975561\spmsg.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB975560\update\spcustom.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB975560\spmsg.dll
+ 2009-11-27 17:23 . 2009-11-27 17:23 17920 e:\windows\$hf_mig$\KB975560\SP3QFE\msyuv.dll
+ 2009-10-18 21:55 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB975467\update\spcustom.dll
+ 2009-10-18 21:55 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB975467\spmsg.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB975025\update\spcustom.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB975025\spmsg.dll
+ 2009-10-18 21:56 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB974571\update\spcustom.dll
+ 2009-10-18 21:56 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB974571\spmsg.dll
+ 2009-09-04 20:57 . 2009-09-04 20:57 58880 e:\windows\$hf_mig$\KB974571\SP3QFE\msasn1.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB974455-IE7\update\spcustom.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB974455-IE7\spmsg.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 44544 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\pngfilt.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 52224 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\msfeedsbs.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 27648 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\jsproxy.dll
+ 2009-08-28 10:01 . 2009-08-28 10:01 13824 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieudinit.exe
+ 2009-08-29 07:31 . 2009-08-29 07:31 44544 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\iernonce.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 78336 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieencode.dll
+ 2009-08-28 10:01 . 2009-08-28 10:01 70656 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ie4uinit.exe
+ 2009-08-29 07:31 . 2009-08-29 07:31 63488 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\icardie.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 17408 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\corpol.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB974392\update\spcustom.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB974392\spmsg.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB974318\update\spcustom.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB974318\spmsg.dll
+ 2009-10-12 13:28 . 2009-10-12 13:28 79872 e:\windows\$hf_mig$\KB974318\SP3QFE\raschap.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB974112\update\spcustom.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB974112\spmsg.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB973904\update\spcustom.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB973904\spmsg.dll
+ 2009-11-26 09:00 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB973687\update\spcustom.dll
+ 2009-11-26 09:00 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB973687\spmsg.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB973525\update\spcustom.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB973525\spmsg.dll
+ 2010-01-13 09:02 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB972270\update\spcustom.dll
+ 2010-01-13 09:02 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB972270\spmsg.dll
+ 2010-01-13 02:32 . 2009-10-15 16:39 81920 e:\windows\$hf_mig$\KB972270\SP3QFE\fontsub.dll
+ 2009-12-11 09:02 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB971737\update\spcustom.dll
+ 2009-12-11 09:02 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB971737\spmsg.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB971486\update\spcustom.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB971486\spmsg.dll
+ 2010-02-17 09:03 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB971468\update\spcustom.dll
+ 2010-02-17 09:03 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB971468\spmsg.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB970430\update\spcustom.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB970430\spmsg.dll
+ 2009-10-21 05:40 . 2009-10-21 05:40 75776 e:\windows\$hf_mig$\KB970430\SP3QFE\strmfilt.dll
+ 2009-10-21 05:40 . 2009-10-21 05:40 25088 e:\windows\$hf_mig$\KB970430\SP3QFE\httpapi.dll
+ 2009-11-15 01:02 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB969947\update\spcustom.dll
+ 2009-11-15 01:02 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB969947\spmsg.dll
+ 2009-10-18 21:57 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB969059\update\spcustom.dll
+ 2009-10-18 21:57 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB969059\spmsg.dll
+ 2009-10-18 21:55 . 2008-07-08 13:02 26488 e:\windows\$hf_mig$\KB968389\update\spcustom.dll
+ 2009-10-18 21:55 . 2008-07-08 13:02 17272 e:\windows\$hf_mig$\KB968389\spmsg.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 54272 e:\windows\$hf_mig$\KB968389\SP3QFE\wdigest.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 56832 e:\windows\$hf_mig$\KB968389\SP3QFE\secur32.dll
+ 2009-06-24 10:28 . 2009-06-24 10:28 92928 e:\windows\$hf_mig$\KB968389\SP3QFE\ksecdd.sys
+ 2010-01-13 09:02 . 2009-05-26 11:40 26488 e:\windows\$hf_mig$\KB955759\update\spcustom.dll
+ 2010-01-13 09:02 . 2009-05-26 11:40 17272 e:\windows\$hf_mig$\KB955759\spmsg.dll
+ 2001-08-17 22:36 . 2009-11-27 16:07 8704 e:\windows\system32\tsbyuv.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 8704 e:\windows\system32\dllcache\tsbyuv.dll
+ 2009-11-27 16:07 . 2009-11-27 16:07 8704 e:\windows\Driver Cache\i386\tsbyuv.dll
+ 2010-02-17 09:01 . 2002-08-29 12:00 8192 e:\windows\$NtUninstallKB977914$\tsbyuv.dll
+ 2009-11-27 16:28 . 2009-11-27 16:28 8704 e:\windows\$hf_mig$\KB977914\SP3QFE\tsbyuv.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 653120 e:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 569664 e:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
+ 2009-07-12 05:05 . 2009-07-12 05:05 225280 e:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcm90.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 159032 e:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_353599c2\atl90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 161784 e:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_d01483b2\atl90.dll
+ 2008-10-16 19:12 . 2009-08-07 01:24 209632 e:\windows\system32\wuweb.dll
+ 2009-05-30 12:54 . 2009-08-07 01:24 327896 e:\windows\system32\wucltui.dll
+ 2009-05-30 12:54 . 2009-08-07 01:23 575704 e:\windows\system32\wuapi.dll
+ 2009-05-30 00:26 . 2009-04-02 04:02 604160 e:\windows\system32\wmspdmod.dll
+ 2002-08-29 12:00 . 2009-12-24 06:59 177664 e:\windows\system32\wintrust.dll
+ 2009-05-30 12:56 . 2009-08-25 09:17 354816 e:\windows\system32\winhttp.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 233472 e:\windows\system32\webcheck.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 233472 e:\windows\system32\webcheck.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 105984 e:\windows\system32\url.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 105984 e:\windows\system32\url.dll
- 2002-08-29 12:00 . 2009-06-16 14:36 119808 e:\windows\system32\t2embed.dll
+ 2002-08-29 12:00 . 2009-10-15 16:28 119808 e:\windows\system32\t2embed.dll
- 2002-08-29 12:00 . 2008-10-03 10:02 247326 e:\windows\system32\strmdll.dll
+ 2002-08-29 12:00 . 2009-08-26 08:00 247326 e:\windows\system32\strmdll.dll
- 2005-09-01 01:49 . 2008-04-14 00:12 474112 e:\windows\system32\shlwapi.dll
+ 2005-09-01 01:49 . 2009-12-08 09:23 474112 e:\windows\system32\shlwapi.dll
+ 2002-08-29 12:00 . 2009-06-25 08:25 147456 e:\windows\system32\schannel.dll
+ 2002-08-29 12:00 . 2009-10-12 13:38 149504 e:\windows\system32\rastls.dll
+ 2002-08-29 12:00 . 2010-03-16 03:15 383584 e:\windows\system32\perfh009.dat
- 2002-08-29 12:00 . 2009-10-07 01:12 383584 e:\windows\system32\perfh009.dat
+ 2002-08-29 12:00 . 2010-03-11 12:38 102912 e:\windows\system32\occache.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 102912 e:\windows\system32\occache.dll
+ 2006-05-14 09:13 . 2009-10-13 10:30 270336 e:\windows\system32\oakley.dll
- 2006-05-14 09:13 . 2008-04-14 00:12 270336 e:\windows\system32\oakley.dll
+ 2002-01-05 09:37 . 2002-01-05 09:37 344064 e:\windows\system32\msvcr70.dll
+ 2002-01-05 09:40 . 2002-01-05 09:40 487424 e:\windows\system32\msvcp70.dll
+ 2002-08-29 12:00 . 2009-09-11 14:18 136192 e:\windows\system32\msv1_0.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 671232 e:\windows\system32\mstime.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 671232 e:\windows\system32\mstime.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 193024 e:\windows\system32\msrating.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 193024 e:\windows\system32\msrating.dll
- 2009-05-29 23:44 . 2008-04-14 00:12 343040 e:\windows\system32\mspaint.exe
+ 2009-05-29 23:44 . 2009-12-16 18:43 343040 e:\windows\system32\mspaint.exe
- 2002-08-29 12:00 . 2009-06-29 16:12 477696 e:\windows\system32\mshtmled.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 477696 e:\windows\system32\mshtmled.dll
+ 2007-08-13 23:54 . 2010-03-11 12:38 459264 e:\windows\system32\msfeeds.dll
- 2007-08-13 23:54 . 2009-06-29 16:12 459264 e:\windows\system32\msfeeds.dll
+ 2002-08-29 12:00 . 2009-06-25 08:25 730112 e:\windows\system32\lsasrv.dll
+ 2005-06-15 17:50 . 2009-06-25 08:25 301568 e:\windows\system32\kerberos.dll
+ 2009-05-29 23:46 . 2010-01-29 15:01 691712 e:\windows\system32\inetcomm.dll
- 2009-05-29 23:46 . 2008-04-11 19:04 691712 e:\windows\system32\inetcomm.dll
- 2007-08-13 23:34 . 2009-06-29 16:12 268288 e:\windows\system32\iertutil.dll
+ 2007-08-13 23:34 . 2010-03-11 12:38 268288 e:\windows\system32\iertutil.dll
+ 2006-02-24 20:24 . 2010-03-11 12:38 192512 e:\windows\system32\iepeers.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 385024 e:\windows\system32\iedkcs32.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 385024 e:\windows\system32\iedkcs32.dll
- 2007-07-11 17:27 . 2009-06-29 16:12 380928 e:\windows\system32\ieapfltr.dll
+ 2007-07-11 17:27 . 2010-03-11 12:38 380928 e:\windows\system32\ieapfltr.dll
- 2002-08-29 12:00 . 2009-06-29 08:33 161792 e:\windows\system32\ieakui.dll
+ 2002-08-29 12:00 . 2010-02-23 05:18 161792 e:\windows\system32\ieakui.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 230400 e:\windows\system32\ieaksie.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 230400 e:\windows\system32\ieaksie.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 153088 e:\windows\system32\ieakeng.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 153088 e:\windows\system32\ieakeng.dll
+ 2009-05-29 18:01 . 2009-11-16 13:19 190592 e:\windows\system32\FNTCACHE.DAT
- 2009-05-29 18:01 . 2009-06-14 14:47 190592 e:\windows\system32\FNTCACHE.DAT
- 2004-08-04 07:56 . 2009-06-29 16:12 133120 e:\windows\system32\extmgr.dll
+ 2004-08-04 07:56 . 2010-03-11 12:38 133120 e:\windows\system32\extmgr.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 214528 e:\windows\system32\dxtrans.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 214528 e:\windows\system32\dxtrans.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 347136 e:\windows\system32\dxtmsft.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 347136 e:\windows\system32\dxtmsft.dll
+ 2002-08-29 12:00 . 2010-02-11 12:02 226880 e:\windows\system32\drivers\tcpip6.sys
+ 2002-08-29 12:00 . 2009-12-31 16:50 353792 e:\windows\system32\drivers\srv.sys
+ 2002-08-29 12:00 . 2010-02-24 13:11 455680 e:\windows\system32\drivers\mrxsmb.sys
+ 2004-08-04 06:00 . 2009-10-20 16:20 265728 e:\windows\system32\drivers\http.sys
+ 2008-10-16 19:12 . 2009-08-07 01:24 209632 e:\windows\system32\dllcache\wuweb.dll
+ 2009-05-30 12:54 . 2009-08-07 01:24 327896 e:\windows\system32\dllcache\wucltui.dll
+ 2009-05-30 12:54 . 2009-08-07 01:23 575704 e:\windows\system32\dllcache\wuapi.dll
+ 2009-06-01 13:42 . 2009-04-02 04:02 604160 e:\windows\system32\dllcache\wmspdmod.dll
+ 2009-12-24 06:59 . 2009-12-24 06:59 177664 e:\windows\system32\dllcache\wintrust.dll
+ 2009-02-20 08:10 . 2010-03-11 12:38 832512 e:\windows\system32\dllcache\wininet.dll
+ 2008-12-16 12:30 . 2009-08-25 09:17 354816 e:\windows\system32\dllcache\winhttp.dll
+ 2007-08-13 23:54 . 2010-03-11 12:38 233472 e:\windows\system32\dllcache\webcheck.dll
- 2007-08-13 23:54 . 2009-06-29 16:12 233472 e:\windows\system32\dllcache\webcheck.dll
- 2008-05-09 10:53 . 2008-05-09 10:53 430080 e:\windows\system32\dllcache\vbscript.dll
+ 2008-05-09 10:53 . 2010-03-09 11:09 430080 e:\windows\system32\dllcache\vbscript.dll
+ 2007-08-13 23:44 . 2010-03-11 12:38 105984 e:\windows\system32\dllcache\url.dll
- 2007-08-13 23:44 . 2009-06-29 16:12 105984 e:\windows\system32\dllcache\url.dll
+ 2008-06-20 11:08 . 2010-02-11 12:02 226880 e:\windows\system32\dllcache\tcpip6.sys
- 2009-06-16 14:36 . 2009-06-16 14:36 119808 e:\windows\system32\dllcache\t2embed.dll
+ 2009-06-16 14:36 . 2009-10-15 16:28 119808 e:\windows\system32\dllcache\t2embed.dll
- 2009-06-01 12:52 . 2008-10-03 10:02 247326 e:\windows\system32\dllcache\strmdll.dll
+ 2009-06-01 12:52 . 2009-08-26 08:00 247326 e:\windows\system32\dllcache\strmdll.dll
+ 2009-06-01 12:53 . 2009-12-31 16:50 353792 e:\windows\system32\dllcache\srv.sys
- 2006-09-23 18:12 . 2006-09-23 18:12 474112 e:\windows\system32\dllcache\shlwapi.dll
+ 2006-09-23 18:12 . 2009-12-08 09:23 474112 e:\windows\system32\dllcache\shlwapi.dll
+ 2008-12-05 06:54 . 2009-06-25 08:25 147456 e:\windows\system32\dllcache\schannel.dll
+ 2009-10-12 13:38 . 2009-10-12 13:38 149504 e:\windows\system32\dllcache\rastls.dll
+ 2007-08-13 23:44 . 2010-03-11 12:38 102912 e:\windows\system32\dllcache\occache.dll
- 2007-08-13 23:44 . 2009-06-29 16:12 102912 e:\windows\system32\dllcache\occache.dll
+ 2009-10-13 10:30 . 2009-10-13 10:30 270336 e:\windows\system32\dllcache\oakley.dll
+ 2009-06-25 08:25 . 2009-09-11 14:18 136192 e:\windows\system32\dllcache\msv1_0.dll
+ 2007-08-13 23:54 . 2010-03-11 12:38 671232 e:\windows\system32\dllcache\mstime.dll
- 2007-08-13 23:54 . 2009-06-29 16:12 671232 e:\windows\system32\dllcache\mstime.dll
+ 2007-08-13 23:44 . 2010-03-11 12:38 193024 e:\windows\system32\dllcache\msrating.dll
- 2007-08-13 23:44 . 2009-06-29 16:12 193024 e:\windows\system32\dllcache\msrating.dll
+ 2009-12-16 18:43 . 2009-12-16 18:43 343040 e:\windows\system32\dllcache\mspaint.exe
+ 2007-08-13 23:54 . 2010-03-11 12:38 477696 e:\windows\system32\dllcache\mshtmled.dll
- 2007-08-13 23:54 . 2009-06-29 16:12 477696 e:\windows\system32\dllcache\mshtmled.dll
- 2009-07-30 13:58 . 2009-06-29 16:12 459264 e:\windows\system32\dllcache\msfeeds.dll
+ 2009-07-30 13:58 . 2010-03-11 12:38 459264 e:\windows\system32\dllcache\msfeeds.dll
+ 2009-06-01 12:55 . 2010-02-24 13:11 455680 e:\windows\system32\dllcache\mrxsmb.sys
+ 2009-06-01 12:56 . 2009-06-25 08:25 730112 e:\windows\system32\dllcache\lsasrv.dll
+ 2009-06-25 08:25 . 2009-06-25 08:25 301568 e:\windows\system32\dllcache\kerberos.dll
- 2009-06-01 12:53 . 2008-04-11 19:04 691712 e:\windows\system32\dllcache\inetcomm.dll
+ 2009-06-01 12:53 . 2010-01-29 15:01 691712 e:\windows\system32\dllcache\inetcomm.dll
+ 2007-08-13 23:43 . 2010-02-23 05:20 634648 e:\windows\system32\dllcache\iexplore.exe
+ 2009-07-30 13:58 . 2010-03-11 12:38 268288 e:\windows\system32\dllcache\iertutil.dll
- 2009-07-30 13:58 . 2009-06-29 16:12 268288 e:\windows\system32\dllcache\iertutil.dll
+ 2007-08-13 23:54 . 2010-03-11 12:38 192512 e:\windows\system32\dllcache\iepeers.dll
+ 2007-08-13 23:39 . 2010-03-11 12:38 385024 e:\windows\system32\dllcache\iedkcs32.dll
- 2007-08-13 23:39 . 2009-06-29 16:12 385024 e:\windows\system32\dllcache\iedkcs32.dll
- 2009-07-30 13:58 . 2009-06-29 16:12 380928 e:\windows\system32\dllcache\ieapfltr.dll
+ 2009-07-30 13:58 . 2010-03-11 12:38 380928 e:\windows\system32\dllcache\ieapfltr.dll
+ 2002-08-29 12:00 . 2010-02-23 05:18 161792 e:\windows\system32\dllcache\ieakui.dll
- 2002-08-29 12:00 . 2009-06-29 08:33 161792 e:\windows\system32\dllcache\ieakui.dll
- 2007-08-13 23:39 . 2009-06-29 16:12 230400 e:\windows\system32\dllcache\ieaksie.dll
+ 2007-08-13 23:39 . 2010-03-11 12:38 230400 e:\windows\system32\dllcache\ieaksie.dll
+ 2007-08-13 23:39 . 2010-03-11 12:38 153088 e:\windows\system32\dllcache\ieakeng.dll
- 2007-08-13 23:39 . 2009-06-29 16:12 153088 e:\windows\system32\dllcache\ieakeng.dll
+ 2009-10-20 16:20 . 2009-10-20 16:20 265728 e:\windows\system32\dllcache\http.sys
- 2007-08-13 23:54 . 2009-06-29 16:12 133120 e:\windows\system32\dllcache\extmgr.dll
+ 2007-08-13 23:54 . 2010-03-11 12:38 133120 e:\windows\system32\dllcache\extmgr.dll
+ 2007-08-13 23:35 . 2010-03-11 12:38 214528 e:\windows\system32\dllcache\dxtrans.dll
- 2007-08-13 23:35 . 2009-06-29 16:12 214528 e:\windows\system32\dllcache\dxtrans.dll
- 2007-08-13 23:35 . 2009-06-29 16:12 347136 e:\windows\system32\dllcache\dxtmsft.dll
+ 2007-08-13 23:35 . 2010-03-11 12:38 347136 e:\windows\system32\dllcache\dxtmsft.dll
+ 2009-05-30 00:21 . 2008-04-13 16:39 142592 e:\windows\system32\dllcache\aec.sys
- 2007-08-13 23:39 . 2009-06-29 16:12 124928 e:\windows\system32\dllcache\advpack.dll
+ 2007-08-13 23:39 . 2010-03-11 12:38 124928 e:\windows\system32\dllcache\advpack.dll
+ 2010-01-13 02:32 . 2009-11-21 15:51 471552 e:\windows\system32\dllcache\aclayers.dll
+ 2010-02-12 04:33 . 2010-02-12 04:33 100864 e:\windows\system32\dllcache\6to4svc.dll
+ 2002-08-29 12:00 . 2010-03-11 12:38 124928 e:\windows\system32\advpack.dll
- 2002-08-29 12:00 . 2009-06-29 16:12 124928 e:\windows\system32\advpack.dll
+ 2006-08-16 12:14 . 2010-02-12 04:33 100864 e:\windows\system32\6to4svc.dll
+ 2008-05-28 05:49 . 2008-05-28 05:49 102400 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2007-04-14 01:58 . 2007-04-14 01:58 102400 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2007-04-14 01:56 . 2007-04-14 01:56 315392 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2008-05-28 05:48 . 2008-05-28 05:48 315392 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2007-04-14 02:30 . 2007-04-14 02:30 258048 e:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2008-05-28 06:30 . 2008-05-28 06:30 258048 e:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2010-05-21 05:50 . 2010-05-21 05:50 228352 e:\windows\Installer\71d13.msi
+ 2010-05-27 23:17 . 2010-05-27 23:17 219648 e:\windows\Installer\105859.msi
+ 2010-03-31 08:00 . 2010-01-05 10:00 832512 e:\windows\ie7updates\KB980182-IE7\wininet.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 233472 e:\windows\ie7updates\KB980182-IE7\webcheck.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 105984 e:\windows\ie7updates\KB980182-IE7\url.dll
+ 2010-03-31 08:00 . 2009-05-26 11:40 382840 e:\windows\ie7updates\KB980182-IE7\spuninst\updspapi.dll
+ 2010-03-31 08:00 . 2009-05-26 11:40 231288 e:\windows\ie7updates\KB980182-IE7\spuninst\spuninst.exe
+ 2010-03-31 08:00 . 2010-01-05 10:00 102912 e:\windows\ie7updates\KB980182-IE7\occache.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 671232 e:\windows\ie7updates\KB980182-IE7\mstime.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 193024 e:\windows\ie7updates\KB980182-IE7\msrating.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 477696 e:\windows\ie7updates\KB980182-IE7\mshtmled.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 459264 e:\windows\ie7updates\KB980182-IE7\msfeeds.dll
+ 2010-03-31 08:00 . 2009-12-18 13:05 634648 e:\windows\ie7updates\KB980182-IE7\iexplore.exe
+ 2010-03-31 08:00 . 2010-01-05 10:00 268288 e:\windows\ie7updates\KB980182-IE7\iertutil.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 192512 e:\windows\ie7updates\KB980182-IE7\iepeers.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 385024 e:\windows\ie7updates\KB980182-IE7\iedkcs32.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 380928 e:\windows\ie7updates\KB980182-IE7\ieapfltr.dll
+ 2010-03-31 08:00 . 2009-12-18 13:04 161792 e:\windows\ie7updates\KB980182-IE7\ieakui.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 230400 e:\windows\ie7updates\KB980182-IE7\ieaksie.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 153088 e:\windows\ie7updates\KB980182-IE7\ieakeng.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 133120 e:\windows\ie7updates\KB980182-IE7\extmgr.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 214528 e:\windows\ie7updates\KB980182-IE7\dxtrans.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 347136 e:\windows\ie7updates\KB980182-IE7\dxtmsft.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 124928 e:\windows\ie7updates\KB980182-IE7\advpack.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 832512 e:\windows\ie7updates\KB978207-IE7\wininet.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 233472 e:\windows\ie7updates\KB978207-IE7\webcheck.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 105984 e:\windows\ie7updates\KB978207-IE7\url.dll
+ 2010-01-28 09:01 . 2009-05-26 11:40 382840 e:\windows\ie7updates\KB978207-IE7\spuninst\updspapi.dll
+ 2010-01-28 09:01 . 2009-05-26 11:40 231288 e:\windows\ie7updates\KB978207-IE7\spuninst\spuninst.exe
+ 2010-01-28 09:00 . 2009-10-29 07:46 102912 e:\windows\ie7updates\KB978207-IE7\occache.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 671232 e:\windows\ie7updates\KB978207-IE7\mstime.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 193024 e:\windows\ie7updates\KB978207-IE7\msrating.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 477696 e:\windows\ie7updates\KB978207-IE7\mshtmled.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 459264 e:\windows\ie7updates\KB978207-IE7\msfeeds.dll
+ 2010-01-28 09:00 . 2009-10-28 06:54 634632 e:\windows\ie7updates\KB978207-IE7\iexplore.exe
+ 2010-01-28 09:00 . 2009-10-29 07:46 268288 e:\windows\ie7updates\KB978207-IE7\iertutil.dll
+ 2010-01-28 09:00 . 2007-08-13 23:54 191488 e:\windows\ie7updates\KB978207-IE7\iepeers.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 385024 e:\windows\ie7updates\KB978207-IE7\iedkcs32.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 380928 e:\windows\ie7updates\KB978207-IE7\ieapfltr.dll
+ 2010-01-28 09:00 . 2009-10-28 06:52 161792 e:\windows\ie7updates\KB978207-IE7\ieakui.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 230400 e:\windows\ie7updates\KB978207-IE7\ieaksie.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 153088 e:\windows\ie7updates\KB978207-IE7\ieakeng.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 133120 e:\windows\ie7updates\KB978207-IE7\extmgr.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 214528 e:\windows\ie7updates\KB978207-IE7\dxtrans.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 347136 e:\windows\ie7updates\KB978207-IE7\dxtmsft.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 124928 e:\windows\ie7updates\KB978207-IE7\advpack.dll
+ 2009-11-03 04:13 . 2009-05-26 11:40 382840 e:\windows\ie7updates\KB976749-IE7\spuninst\updspapi.dll
+ 2009-11-03 04:13 . 2009-05-26 11:40 231288 e:\windows\ie7updates\KB976749-IE7\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2009-08-29 07:36 832512 e:\windows\ie7updates\KB976325-IE7\wininet.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 233472 e:\windows\ie7updates\KB976325-IE7\webcheck.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 105984 e:\windows\ie7updates\KB976325-IE7\url.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\ie7updates\KB976325-IE7\spuninst\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\ie7updates\KB976325-IE7\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2009-08-29 07:36 102912 e:\windows\ie7updates\KB976325-IE7\occache.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 671232 e:\windows\ie7updates\KB976325-IE7\mstime.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 193024 e:\windows\ie7updates\KB976325-IE7\msrating.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 477696 e:\windows\ie7updates\KB976325-IE7\mshtmled.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 459264 e:\windows\ie7updates\KB976325-IE7\msfeeds.dll
+ 2009-12-11 09:02 . 2009-08-27 05:18 634648 e:\windows\ie7updates\KB976325-IE7\iexplore.exe
+ 2009-12-11 09:02 . 2009-08-29 07:36 268288 e:\windows\ie7updates\KB976325-IE7\iertutil.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 385024 e:\windows\ie7updates\KB976325-IE7\iedkcs32.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 380928 e:\windows\ie7updates\KB976325-IE7\ieapfltr.dll
+ 2009-12-11 09:02 . 2009-08-27 05:18 161792 e:\windows\ie7updates\KB976325-IE7\ieakui.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 230400 e:\windows\ie7updates\KB976325-IE7\ieaksie.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 153088 e:\windows\ie7updates\KB976325-IE7\ieakeng.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 133120 e:\windows\ie7updates\KB976325-IE7\extmgr.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 214528 e:\windows\ie7updates\KB976325-IE7\dxtrans.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 347136 e:\windows\ie7updates\KB976325-IE7\dxtmsft.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 124928 e:\windows\ie7updates\KB976325-IE7\advpack.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 827392 e:\windows\ie7updates\KB974455-IE7\wininet.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 233472 e:\windows\ie7updates\KB974455-IE7\webcheck.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 105984 e:\windows\ie7updates\KB974455-IE7\url.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\ie7updates\KB974455-IE7\spuninst\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 231288 e:\windows\ie7updates\KB974455-IE7\spuninst\spuninst.exe
+ 2009-10-18 21:56 . 2009-06-29 16:12 102912 e:\windows\ie7updates\KB974455-IE7\occache.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 671232 e:\windows\ie7updates\KB974455-IE7\mstime.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 193024 e:\windows\ie7updates\KB974455-IE7\msrating.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 477696 e:\windows\ie7updates\KB974455-IE7\mshtmled.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 459264 e:\windows\ie7updates\KB974455-IE7\msfeeds.dll
+ 2009-10-18 21:56 . 2009-06-29 08:35 634632 e:\windows\ie7updates\KB974455-IE7\iexplore.exe
+ 2009-10-18 21:56 . 2009-06-29 16:12 268288 e:\windows\ie7updates\KB974455-IE7\iertutil.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 385024 e:\windows\ie7updates\KB974455-IE7\iedkcs32.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 380928 e:\windows\ie7updates\KB974455-IE7\ieapfltr.dll
+ 2009-10-18 21:56 . 2009-06-29 08:33 161792 e:\windows\ie7updates\KB974455-IE7\ieakui.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 230400 e:\windows\ie7updates\KB974455-IE7\ieaksie.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 153088 e:\windows\ie7updates\KB974455-IE7\ieakeng.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 133120 e:\windows\ie7updates\KB974455-IE7\extmgr.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 214528 e:\windows\ie7updates\KB974455-IE7\dxtrans.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 347136 e:\windows\ie7updates\KB974455-IE7\dxtmsft.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 124928 e:\windows\ie7updates\KB974455-IE7\advpack.dll
+ 2009-06-01 12:55 . 2010-02-24 13:11 455680 e:\windows\Driver Cache\i386\mrxsmb.sys
+ 2009-10-20 16:20 . 2009-10-20 16:20 265728 e:\windows\Driver Cache\i386\http.sys
+ 2009-10-18 21:56 . 2009-10-18 21:56 835584 e:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_49be8bb5\System.Drawing.dll
+ 2002-08-29 12:00 . 2009-11-21 15:51 471552 e:\windows\AppPatch\aclayers.dll
+ 2010-04-15 05:14 . 2008-05-09 10:53 430080 e:\windows\$NtUninstallKB981349$\vbscript.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB981349$\spuninst\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB981349$\spuninst\spuninst.exe
+ 2010-04-15 05:16 . 2009-05-26 09:01 382840 e:\windows\$NtUninstallKB980232$\spuninst\updspapi.dll
+ 2010-04-15 05:16 . 2009-05-26 09:01 231288 e:\windows\$NtUninstallKB980232$\spuninst\spuninst.exe
+ 2010-04-15 05:16 . 2009-12-04 18:22 455424 e:\windows\$NtUninstallKB980232$\mrxsmb.sys
+ 2010-04-15 05:16 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB979683$\spuninst\updspapi.dll
+ 2010-04-15 05:16 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB979683$\spuninst\spuninst.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB979309$\spuninst\updspapi.dll
+ 2010-04-15 05:14 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB979309$\spuninst\spuninst.exe
+ 2010-02-24 06:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB979306$\spuninst\updspapi.dll
+ 2010-02-24 06:01 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB979306$\spuninst\spuninst.exe
+ 2010-02-17 09:00 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB978706$\spuninst\updspapi.dll
+ 2010-02-17 09:00 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB978706$\spuninst\spuninst.exe
+ 2010-02-17 09:00 . 2008-04-14 00:12 343040 e:\windows\$NtUninstallKB978706$\mspaint.exe
+ 2010-04-15 05:14 . 2008-04-14 00:12 176640 e:\windows\$NtUninstallKB978601$\wintrust.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB978601$\spuninst\updspapi.dll
+ 2010-04-15 05:14 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB978601$\spuninst\spuninst.exe
+ 2010-04-15 05:14 . 2008-06-20 11:08 225856 e:\windows\$NtUninstallKB978338$\tcpip6.sys
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB978338$\spuninst\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB978338$\spuninst\spuninst.exe
+ 2010-04-15 05:14 . 2008-04-14 00:11 100352 e:\windows\$NtUninstallKB978338$\6to4svc.dll
+ 2010-02-17 09:03 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB978262$\spuninst\updspapi.dll
+ 2010-02-17 09:03 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB978262$\spuninst\spuninst.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB978251$\spuninst\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB978251$\spuninst\spuninst.exe
+ 2010-02-17 09:01 . 2008-10-24 11:21 455296 e:\windows\$NtUninstallKB978251$\mrxsmb.sys
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB978037$\spuninst\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB978037$\spuninst\spuninst.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB977914$\spuninst\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB977914$\spuninst\spuninst.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB977816$\spuninst\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB977816$\spuninst\spuninst.exe
+ 2010-03-12 02:12 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB977165-v2$\spuninst\updspapi.dll
+ 2010-03-12 02:12 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB977165-v2$\spuninst\spuninst.exe
+ 2009-11-26 09:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB976098-v2$\spuninst\updspapi.dll
+ 2009-11-26 09:01 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB976098-v2$\spuninst\spuninst.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB975713$\spuninst\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB975713$\spuninst\spuninst.exe
+ 2010-02-17 09:01 . 2008-04-14 00:12 474112 e:\windows\$NtUninstallKB975713$\shlwapi.dll
+ 2010-03-12 02:11 . 2009-05-26 23:10 382840 e:\windows\$NtUninstallKB975561$\spuninst\updspapi.dll
+ 2010-03-12 02:11 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB975561$\spuninst\spuninst.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB975560$\spuninst\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB975560$\spuninst\spuninst.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB975467$\spuninst\updspapi.dll
+ 2009-10-18 21:55 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB975467$\spuninst\spuninst.exe
+ 2009-10-18 21:55 . 2009-06-25 08:25 136192 e:\windows\$NtUninstallKB975467$\msv1_0.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB975025$\spuninst\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB975025$\spuninst\spuninst.exe
+ 2009-10-18 21:56 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB974571$\spuninst\updspapi.dll
+ 2009-10-18 21:56 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB974571$\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB974392$\spuninst\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB974392$\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2008-04-14 00:12 270336 e:\windows\$NtUninstallKB974392$\oakley.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB974318$\spuninst\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB974318$\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2008-04-14 00:12 150016 e:\windows\$NtUninstallKB974318$\rastls.dll
+ 2009-10-18 21:57 . 2008-10-03 10:02 247326 e:\windows\$NtUninstallKB974112$\strmdll.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB974112$\spuninst\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB974112$\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB973904$\spuninst\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB973904$\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2003-07-15 03:51 116288 e:\windows\$NtUninstallKB973904$\msconv97.dll
+ 2009-11-26 09:00 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB973687$\spuninst\updspapi.dll
+ 2009-11-26 09:00 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB973687$\spuninst\spuninst.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB973525$\spuninst\updspapi.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB973525$\spuninst\spuninst.exe
+ 2010-01-13 09:02 . 2009-06-16 14:36 119808 e:\windows\$NtUninstallKB972270$\t2embed.dll
+ 2010-01-13 09:02 . 2008-07-08 13:02 382840 e:\windows\$NtUninstallKB972270$\spuninst\updspapi.dll
+ 2010-01-13 09:02 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB972270$\spuninst\spuninst.exe
+ 2009-12-11 09:01 . 2008-12-16 12:30 354304 e:\windows\$NtUninstallKB971737$\winhttp.dll
+ 2009-12-11 09:01 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB971737$\spuninst\updspapi.dll
+ 2009-12-11 09:01 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB971737$\spuninst\spuninst.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB971486$\spuninst\updspapi.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB971486$\spuninst\spuninst.exe
+ 2010-02-17 09:03 . 2008-12-11 10:57 333952 e:\windows\$NtUninstallKB971468$\srv.sys
+ 2010-02-17 09:03 . 2008-07-08 13:02 382840 e:\windows\$NtUninstallKB971468$\spuninst\updspapi.dll
+ 2010-02-17 09:03 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB971468$\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB970430$\spuninst\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB970430$\spuninst\spuninst.exe
+ 2009-12-11 09:02 . 2008-04-13 18:53 264832 e:\windows\$NtUninstallKB970430$\http.sys
+ 2009-11-15 01:02 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB969947$\spuninst\updspapi.dll
+ 2009-11-15 01:02 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB969947$\spuninst\spuninst.exe
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB969059$\spuninst\updspapi.dll
+ 2009-10-18 21:57 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB969059$\spuninst\spuninst.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB968389$\spuninst\updspapi.dll
+ 2009-10-18 21:55 . 2008-07-08 13:02 231288 e:\windows\$NtUninstallKB968389$\spuninst\spuninst.exe
+ 2009-10-18 21:55 . 2008-12-05 06:54 144896 e:\windows\$NtUninstallKB968389$\schannel.dll
+ 2009-10-18 21:55 . 2008-04-14 00:12 132608 e:\windows\$NtUninstallKB968389$\msv1_0.dll
+ 2009-10-18 21:55 . 2009-02-09 12:10 729088 e:\windows\$NtUninstallKB968389$\lsasrv.dll
+ 2009-10-18 21:55 . 2008-04-14 00:11 299520 e:\windows\$NtUninstallKB968389$\kerberos.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$NtUninstallKB958869$\spuninst\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB958869$\spuninst\spuninst.exe
+ 2010-01-13 09:02 . 2009-05-26 23:10 382840 e:\windows\$NtUninstallKB955759$\spuninst\updspapi.dll
+ 2010-01-13 09:02 . 2009-05-26 11:40 231288 e:\windows\$NtUninstallKB955759$\spuninst\spuninst.exe
+ 2010-01-13 09:02 . 2008-04-14 00:11 451072 e:\windows\$NtUninstallKB955759$\aclayers.dll
+ 2009-10-18 21:57 . 2006-10-19 02:47 603648 e:\windows\$NtUninstallKB954155_WM9$\wmspdmod.dll
+ 2009-10-18 21:57 . 2007-07-27 15:41 382840 e:\windows\$NtUninstallKB954155_WM9$\spuninst\updspapi.dll
+ 2009-10-18 21:57 . 2007-07-27 15:41 231288 e:\windows\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB981349\update\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB981349\update\update.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB981349\spuninst.exe
+ 2010-03-09 11:06 . 2010-03-09 11:06 430080 e:\windows\$hf_mig$\KB981349\SP3QFE\vbscript.dll
+ 2010-04-15 05:16 . 2009-05-26 09:01 382840 e:\windows\$hf_mig$\KB980232\update\updspapi.dll
+ 2010-04-15 05:16 . 2009-05-26 09:01 755576 e:\windows\$hf_mig$\KB980232\update\update.exe
+ 2010-04-15 05:16 . 2009-05-26 09:01 231288 e:\windows\$hf_mig$\KB980232\spuninst.exe
+ 2010-04-15 04:53 . 2010-02-24 11:57 457216 e:\windows\$hf_mig$\KB980232\SP3QFE\mrxsmb.sys
+ 2010-03-31 08:00 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB980182-IE7\update\updspapi.dll
+ 2010-03-31 08:00 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB980182-IE7\update\update.exe
+ 2010-03-31 08:00 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB980182-IE7\spuninst.exe
+ 2010-03-11 11:49 . 2010-03-11 11:49 841216 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 233472 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\webcheck.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 105984 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\url.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 102912 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\occache.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 671232 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mstime.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 193024 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\msrating.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 477696 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtmled.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 459264 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\msfeeds.dll
+ 2010-02-23 05:19 . 2010-02-23 05:19 634648 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\iexplore.exe
+ 2010-03-11 11:49 . 2010-03-11 11:49 268288 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\iertutil.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 193024 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\iepeers.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 388608 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\iedkcs32.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 380928 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieapfltr.dll
+ 2010-02-23 05:18 . 2010-02-23 05:18 161792 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieakui.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 230400 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieaksie.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 153088 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieakeng.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 132608 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\extmgr.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 214528 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\dxtrans.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 347136 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\dxtmsft.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 124928 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\advpack.dll
+ 2010-04-15 05:16 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB979683\update\updspapi.dll
+ 2010-04-15 05:16 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB979683\update\update.exe
+ 2010-04-15 05:16 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB979683\spuninst.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB979309\update\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB979309\update\update.exe
+ 2010-04-15 05:14 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB979309\spuninst.exe
+ 2010-02-17 09:00 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB978706\update\updspapi.dll
+ 2010-02-17 09:00 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB978706\update\update.exe
+ 2010-02-17 09:00 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB978706\spuninst.exe
+ 2009-12-16 18:27 . 2009-12-16 18:27 343040 e:\windows\$hf_mig$\KB978706\SP3QFE\mspaint.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB978601\update\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB978601\update\update.exe
+ 2010-04-15 05:14 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB978601\spuninst.exe
+ 2009-12-24 06:42 . 2009-12-24 06:42 178176 e:\windows\$hf_mig$\KB978601\SP3QFE\wintrust.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB978338\update\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB978338\update\update.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB978338\spuninst.exe
+ 2010-02-11 11:36 . 2010-02-11 11:36 226880 e:\windows\$hf_mig$\KB978338\SP3QFE\tcpip6.sys
+ 2010-02-12 04:27 . 2010-02-12 04:27 100864 e:\windows\$hf_mig$\KB978338\SP3QFE\6to4svc.dll
+ 2010-02-17 09:03 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB978262\update\updspapi.dll
+ 2010-02-17 09:03 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB978262\update\update.exe
+ 2010-02-17 09:03 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB978262\spuninst.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB978251\update\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB978251\update\update.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB978251\spuninst.exe
+ 2010-02-16 23:49 . 2009-12-04 17:25 456832 e:\windows\$hf_mig$\KB978251\SP3QFE\mrxsmb.sys
+ 2010-01-28 09:01 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB978207-IE7\update\updspapi.dll
+ 2010-01-28 09:01 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB978207-IE7\update\update.exe
+ 2010-01-28 09:01 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB978207-IE7\spuninst.exe
+ 2010-01-05 09:57 . 2010-01-05 09:57 841216 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 233472 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\webcheck.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 105984 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\url.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 102912 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\occache.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 671232 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mstime.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 193024 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\msrating.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 477696 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtmled.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 459264 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\msfeeds.dll
+ 2009-12-18 07:00 . 2009-12-18 07:00 634632 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iexplore.exe
+ 2010-01-05 09:57 . 2010-01-05 09:57 268288 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iertutil.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 193024 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iepeers.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 388608 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\iedkcs32.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 380928 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieapfltr.dll
+ 2009-12-18 06:58 . 2009-12-18 06:58 161792 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieakui.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 230400 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieaksie.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 153088 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieakeng.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 132608 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\extmgr.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 214528 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\dxtrans.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 347136 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\dxtmsft.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 124928 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\advpack.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB978037\update\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB978037\update\update.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB978037\spuninst.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB977914\update\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB977914\update\update.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB977914\spuninst.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB977816\update\updspapi.dll
+ 2010-04-15 05:14 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB977816\update\update.exe
+ 2010-04-15 05:14 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB977816\spuninst.exe
+ 2010-03-12 02:12 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB977165-v2\update\updspapi.dll
+ 2010-03-12 02:12 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB977165-v2\update\update.exe
+ 2010-03-12 02:12 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB977165-v2\spuninst.exe
+ 2009-11-03 04:13 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB976749-IE7\update\updspapi.dll
+ 2009-11-03 04:13 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB976749-IE7\update\update.exe
+ 2009-11-03 04:13 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB976749-IE7\spuninst.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB976325-IE7\update\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB976325-IE7\update\update.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB976325-IE7\spuninst.exe
+ 2009-10-29 07:45 . 2009-10-29 07:45 841216 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 233472 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\webcheck.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 105984 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\url.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 102912 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\occache.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 671232 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mstime.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 193024 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\msrating.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 477696 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtmled.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 459264 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\msfeeds.dll
+ 2009-10-28 06:54 . 2009-10-28 06:54 634632 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iexplore.exe
+ 2009-10-29 07:45 . 2009-10-29 07:45 268288 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iertutil.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 388608 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\iedkcs32.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 380928 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieapfltr.dll
+ 2009-10-28 06:52 . 2009-10-28 06:52 161792 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieakui.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 230400 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieaksie.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 153088 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieakeng.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 132608 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\extmgr.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 214528 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\dxtrans.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 347136 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\dxtmsft.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 124928 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\advpack.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB975713\update\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB975713\update\update.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB975713\spuninst.exe
+ 2009-12-08 09:01 . 2009-12-08 09:01 474112 e:\windows\$hf_mig$\KB975713\SP3QFE\shlwapi.dll
+ 2010-03-12 02:11 . 2009-05-26 23:10 382840 e:\windows\$hf_mig$\KB975561\update\updspapi.dll
+ 2010-03-12 02:11 . 2008-07-08 13:02 755576 e:\windows\$hf_mig$\KB975561\update\update.exe
+ 2010-03-12 02:11 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB975561\spuninst.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB975560\update\updspapi.dll
+ 2010-02-17 09:01 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB975560\update\update.exe
+ 2010-02-17 09:01 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB975560\spuninst.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB975467\update\updspapi.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB975467\update\update.exe
+ 2009-10-18 21:55 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB975467\spuninst.exe
+ 2009-09-11 14:13 . 2009-09-11 14:13 136704 e:\windows\$hf_mig$\KB975467\SP3QFE\msv1_0.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB975025\update\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB975025\update\update.exe
+ 2009-10-18 21:57 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB975025\spuninst.exe
+ 2009-10-18 21:56 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB974571\update\updspapi.dll
+ 2009-10-18 21:56 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB974571\update\update.exe
+ 2009-10-18 21:56 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB974571\spuninst.exe
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB974455-IE7\update\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB974455-IE7\update\update.exe
+ 2009-10-18 21:57 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB974455-IE7\spuninst.exe
+ 2009-08-29 07:31 . 2009-08-29 07:31 840704 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 233472 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\webcheck.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 105984 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\url.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 102912 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\occache.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 671232 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mstime.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 193024 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\msrating.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 477696 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtmled.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 459264 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\msfeeds.dll
+ 2009-08-27 05:18 . 2009-08-27 05:18 634648 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\iexplore.exe
+ 2009-08-29 07:31 . 2009-08-29 07:31 268288 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\iertutil.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 388608 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\iedkcs32.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 380928 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieapfltr.dll
+ 2009-08-27 05:18 . 2009-08-27 05:18 161792 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieakui.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 230400 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieaksie.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 153088 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieakeng.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 132608 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\extmgr.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 214528 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\dxtrans.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 347136 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\dxtmsft.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 124928 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\advpack.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB974392\update\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB974392\update\update.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB974392\spuninst.exe
+ 2009-10-13 10:38 . 2009-10-13 10:38 270336 e:\windows\$hf_mig$\KB974392\SP3QFE\oakley.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB974318\update\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB974318\update\update.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB974318\spuninst.exe
+ 2009-10-12 13:28 . 2009-10-12 13:28 150016 e:\windows\$hf_mig$\KB974318\SP3QFE\rastls.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB974112\update\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB974112\update\update.exe
+ 2009-10-18 21:57 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB974112\spuninst.exe
+ 2009-08-26 08:03 . 2009-08-26 08:03 247326 e:\windows\$hf_mig$\KB974112\SP3QFE\strmdll.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB973904\update\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB973904\update\update.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB973904\spuninst.exe
+ 2009-12-11 04:40 . 2009-07-29 14:01 119648 e:\windows\$hf_mig$\KB973904\SP3QFE\msconv97.dll
+ 2009-11-26 09:00 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB973687\update\updspapi.dll
+ 2009-11-26 09:00 . 2008-07-08 13:02 755576 e:\windows\$hf_mig$\KB973687\update\update.exe
+ 2009-11-26 09:00 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB973687\spuninst.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB973525\update\updspapi.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB973525\update\update.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB973525\spuninst.exe
+ 2010-01-13 09:02 . 2008-07-08 13:02 382840 e:\windows\$hf_mig$\KB972270\update\updspapi.dll
+ 2010-01-13 09:02 . 2008-07-08 13:02 755576 e:\windows\$hf_mig$\KB972270\update\update.exe
+ 2010-01-13 09:02 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB972270\spuninst.exe
+ 2010-01-13 02:32 . 2009-10-15 16:39 119808 e:\windows\$hf_mig$\KB972270\SP3QFE\t2embed.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB971737\update\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB971737\update\update.exe
+ 2009-12-11 09:01 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB971737\spuninst.exe
+ 2009-08-25 09:27 . 2009-08-25 09:27 354816 e:\windows\$hf_mig$\KB971737\SP3QFE\winhttp.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB971486\update\updspapi.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB971486\update\update.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB971486\spuninst.exe
+ 2010-02-17 09:03 . 2008-07-08 13:02 382840 e:\windows\$hf_mig$\KB971468\update\updspapi.dll
+ 2010-02-17 09:03 . 2008-07-08 13:02 755576 e:\windows\$hf_mig$\KB971468\update\update.exe
+ 2010-02-17 09:03 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB971468\spuninst.exe
+ 2010-02-16 23:49 . 2010-01-01 07:58 353792 e:\windows\$hf_mig$\KB971468\SP3QFE\srv.sys
+ 2009-12-11 09:02 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB970430\update\updspapi.dll
+ 2009-12-11 09:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB970430\update\update.exe
+ 2009-12-11 09:02 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB970430\spuninst.exe
+ 2009-10-20 15:21 . 2009-10-20 15:21 265728 e:\windows\$hf_mig$\KB970430\SP3QFE\http.sys
+ 2009-11-15 01:02 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB969947\update\updspapi.dll
+ 2009-11-15 01:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB969947\update\update.exe
+ 2009-11-15 01:02 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB969947\spuninst.exe
+ 2009-10-18 21:57 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB969059\update\updspapi.dll
+ 2009-10-18 21:57 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB969059\update\update.exe
+ 2009-10-18 21:57 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB969059\spuninst.exe
+ 2009-10-18 21:55 . 2009-05-26 11:40 382840 e:\windows\$hf_mig$\KB968389\update\updspapi.dll
+ 2009-10-18 21:55 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB968389\update\update.exe
+ 2009-10-18 21:55 . 2008-07-08 13:02 231288 e:\windows\$hf_mig$\KB968389\spuninst.exe
+ 2009-06-25 08:41 . 2009-06-25 08:41 147456 e:\windows\$hf_mig$\KB968389\SP3QFE\schannel.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 136704 e:\windows\$hf_mig$\KB968389\SP3QFE\msv1_0.dll
+ 2009-06-26 09:41 . 2009-06-26 09:41 730112 e:\windows\$hf_mig$\KB968389\SP3QFE\lsasrv.dll
+ 2009-06-25 08:41 . 2009-06-25 08:41 301568 e:\windows\$hf_mig$\KB968389\SP3QFE\kerberos.dll
+ 2010-01-13 09:02 . 2009-05-26 23:10 382840 e:\windows\$hf_mig$\KB955759\update\updspapi.dll
+ 2010-01-13 09:02 . 2009-05-26 11:40 755576 e:\windows\$hf_mig$\KB955759\update\update.exe
+ 2010-01-13 09:02 . 2009-05-26 11:40 231288 e:\windows\$hf_mig$\KB955759\spuninst.exe
+ 2010-01-13 02:32 . 2009-11-21 15:40 471552 e:\windows\$hf_mig$\KB955759\SP3QFE\aclayers.dll
+ 2009-10-18 20:34 . 2009-08-13 13:55 1748992 e:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 3780424 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
+ 2009-07-12 05:02 . 2009-07-12 05:02 3765048 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 3783672 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90u.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 3768312 e:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90.dll
+ 2009-05-29 23:44 . 2009-08-07 01:23 1929952 e:\windows\system32\wuaueng.dll
+ 2002-08-29 12:00 . 2009-08-14 13:21 1850624 e:\windows\system32\win32k.sys
+ 2006-08-31 01:42 . 2010-03-11 12:38 1168384 e:\windows\system32\urlmon.dll
+ 2006-06-22 05:19 . 2009-07-17 16:22 1435648 e:\windows\system32\query.dll
- 2006-06-22 05:19 . 2008-04-14 00:12 1435648 e:\windows\system32\query.dll
+ 2002-08-29 12:00 . 2009-11-27 17:11 1291776 e:\windows\system32\quartz.dll
+ 2002-08-29 12:00 . 2010-02-17 14:10 2189952 e:\windows\system32\ntoskrnl.exe
+ 2002-08-29 01:04 . 2010-02-16 13:25 2066816 e:\windows\system32\ntkrnlpa.exe
+ 2009-06-01 13:41 . 2009-07-31 16:05 1372672 e:\windows\system32\msxml6.dll
+ 2006-09-13 05:09 . 2009-07-31 04:35 1172480 e:\windows\system32\msxml3.dll
+ 2006-06-30 15:28 . 2010-03-11 12:38 3599872 e:\windows\system32\mshtml.dll
+ 2007-08-13 23:54 . 2010-03-11 12:38 6067200 e:\windows\system32\ieframe.dll
- 2007-08-13 23:54 . 2009-07-19 13:32 6067200 e:\windows\system32\ieframe.dll
+ 2009-05-29 23:44 . 2009-08-07 01:23 1929952 e:\windows\system32\dllcache\wuaueng.dll
+ 2009-02-09 11:13 . 2009-08-14 13:21 1850624 e:\windows\system32\dllcache\win32k.sys
+ 2009-02-20 08:10 . 2010-03-11 12:38 1168384 e:\windows\system32\dllcache\urlmon.dll
+ 2009-07-17 16:22 . 2009-07-17 16:22 1435648 e:\windows\system32\dllcache\query.dll
+ 2008-12-20 22:14 . 2009-11-27 17:11 1291776 e:\windows\system32\dllcache\quartz.dll
+ 2009-06-01 12:56 . 2010-02-17 14:10 2189952 e:\windows\system32\dllcache\ntoskrnl.exe
+ 2009-06-01 12:56 . 2010-02-16 13:25 2024448 e:\windows\system32\dllcache\ntkrpamp.exe
+ 2009-02-08 00:02 . 2010-02-16 13:25 2066816 e:\windows\system32\dllcache\ntkrnlpa.exe
+ 2009-06-01 12:56 . 2010-02-16 14:08 2146304 e:\windows\system32\dllcache\ntkrnlmp.exe
+ 2009-06-01 13:41 . 2009-07-31 16:05 1372672 e:\windows\system32\dllcache\msxml6.dll
+ 2002-08-29 12:00 . 2009-07-31 04:35 1172480 e:\windows\system32\dllcache\msxml3.dll
+ 2009-08-11 23:04 . 2010-01-29 15:01 1315328 e:\windows\system32\dllcache\msoe.dll
- 2009-08-11 23:04 . 2009-07-10 13:27 1315328 e:\windows\system32\dllcache\msoe.dll
+ 2009-02-20 08:11 . 2010-03-11 12:38 3599872 e:\windows\system32\dllcache\mshtml.dll
+ 2010-03-12 01:55 . 2009-10-23 15:28 3558912 e:\windows\system32\dllcache\moviemk.exe
- 2009-07-30 13:58 . 2009-07-19 13:32 6067200 e:\windows\system32\dllcache\ieframe.dll
+ 2009-07-30 13:58 . 2010-03-11 12:38 6067200 e:\windows\system32\dllcache\ieframe.dll
- 2007-04-14 02:35 . 2007-04-14 02:35 1265664 e:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2008-05-28 06:35 . 2008-05-28 06:35 1265664 e:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2008-05-28 06:35 . 2008-05-28 06:35 1232896 e:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2007-04-14 02:35 . 2007-04-14 02:35 1232896 e:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2008-05-28 05:48 . 2008-05-28 05:48 2514944 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
- 2007-04-14 01:57 . 2007-04-14 01:57 2514944 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
- 2007-04-14 01:57 . 2007-04-14 01:57 2523136 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2008-05-28 05:48 . 2008-05-28 05:48 2523136 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
- 2007-04-14 01:50 . 2007-04-14 01:50 2142208 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2008-05-28 05:43 . 2008-05-28 05:43 2142208 e:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2009-06-12 21:37 . 2010-06-03 03:20 3817984 e:\windows\Installer\2e35f40.msi
- 2009-06-12 21:37 . 2009-10-18 14:55 3817984 e:\windows\Installer\2e35f40.msi
+ 2010-02-01 01:31 . 2010-02-01 01:31 1797120 e:\windows\Installer\162d1a.msi
+ 2010-03-31 08:00 . 2010-01-05 10:00 1168384 e:\windows\ie7updates\KB980182-IE7\urlmon.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 3599360 e:\windows\ie7updates\KB980182-IE7\mshtml.dll
+ 2010-03-31 08:00 . 2010-01-05 10:00 6067200 e:\windows\ie7updates\KB980182-IE7\ieframe.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 1168384 e:\windows\ie7updates\KB978207-IE7\urlmon.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 3598336 e:\windows\ie7updates\KB978207-IE7\mshtml.dll
+ 2010-01-28 09:00 . 2009-10-29 07:46 6067200 e:\windows\ie7updates\KB978207-IE7\ieframe.dll
+ 2009-11-03 04:13 . 2009-08-29 07:36 3598336 e:\windows\ie7updates\KB976749-IE7\mshtml.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 1168384 e:\windows\ie7updates\KB976325-IE7\urlmon.dll
+ 2009-12-11 09:02 . 2009-10-21 04:08 3598336 e:\windows\ie7updates\KB976325-IE7\mshtml.dll
+ 2009-12-11 09:02 . 2009-08-29 07:36 6067200 e:\windows\ie7updates\KB976325-IE7\ieframe.dll
+ 2009-10-18 21:56 . 2009-06-29 16:12 1159680 e:\windows\ie7updates\KB974455-IE7\urlmon.dll
+ 2009-10-18 21:56 . 2009-07-20 00:03 3597824 e:\windows\ie7updates\KB974455-IE7\mshtml.dll
+ 2009-10-18 21:56 . 2009-07-19 13:32 6067200 e:\windows\ie7updates\KB974455-IE7\ieframe.dll
+ 2009-06-01 12:56 . 2010-02-17 14:10 2189952 e:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2009-06-01 12:56 . 2010-02-16 13:25 2024448 e:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2009-02-08 00:02 . 2010-02-16 13:25 2066816 e:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2009-06-01 12:56 . 2010-02-16 14:08 2146304 e:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2009-10-18 21:56 . 2009-10-18 21:56 1966080 e:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_eeb4f746\System.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 2088960 e:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_3d5f3b37\System.Xml.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 3018752 e:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_9be2527b\System.Windows.Forms.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 1470464 e:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_ee9a627e\System.Design.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 3391488 e:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_ef1eb271\mscorlib.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 1232896 e:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
- 2009-10-08 08:01 . 2009-10-08 08:01 1232896 e:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2009-10-18 21:56 . 2009-10-18 21:56 1265664 e:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2009-10-08 08:01 . 2009-10-08 08:01 1265664 e:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2010-04-15 05:16 . 2009-12-08 19:27 2189184 e:\windows\$NtUninstallKB979683$\ntoskrnl.exe
+ 2010-04-15 05:16 . 2009-12-08 18:43 2023936 e:\windows\$NtUninstallKB979683$\ntkrpamp.exe
+ 2010-04-15 05:16 . 2009-12-08 18:43 2066048 e:\windows\$NtUninstallKB979683$\ntkrnlpa.exe
+ 2010-04-15 05:16 . 2009-12-08 19:26 2145280 e:\windows\$NtUninstallKB979683$\ntkrnlmp.exe
+ 2010-03-12 02:12 . 2009-08-05 01:44 2189184 e:\windows\$NtUninstallKB977165-v2$\ntoskrnl.exe
+ 2010-03-12 02:12 . 2009-08-04 14:20 2023936 e:\windows\$NtUninstallKB977165-v2$\ntkrpamp.exe
+ 2010-03-12 02:12 . 2009-08-04 14:20 2066048 e:\windows\$NtUninstallKB977165-v2$\ntkrnlpa.exe
+ 2010-03-12 02:12 . 2009-08-04 15:13 2145280 e:\windows\$NtUninstallKB977165-v2$\ntkrnlmp.exe
+ 2010-03-12 02:11 . 2008-04-14 00:12 3558912 e:\windows\$NtUninstallKB975561$\moviemk.exe
+ 2010-02-17 09:01 . 2009-06-03 19:09 1291264 e:\windows\$NtUninstallKB975560$\quartz.dll
+ 2009-11-26 09:00 . 2008-09-10 01:14 1307648 e:\windows\$NtUninstallKB973687$\msxml6.dll
+ 2009-11-26 09:00 . 2008-09-04 17:15 1106944 e:\windows\$NtUninstallKB973687$\msxml3.dll
+ 2009-10-18 21:55 . 2009-02-06 11:08 2189056 e:\windows\$NtUninstallKB971486$\ntoskrnl.exe
+ 2009-10-18 21:55 . 2009-02-06 10:32 2023936 e:\windows\$NtUninstallKB971486$\ntkrpamp.exe
+ 2009-10-18 21:55 . 2009-02-08 00:02 2066048 e:\windows\$NtUninstallKB971486$\ntkrnlpa.exe
+ 2009-10-18 21:55 . 2009-02-06 11:06 2145280 e:\windows\$NtUninstallKB971486$\ntkrnlmp.exe
+ 2009-11-15 01:02 . 2009-04-17 12:26 1847168 e:\windows\$NtUninstallKB969947$\win32k.sys
+ 2009-10-18 21:57 . 2008-04-14 00:12 1435648 e:\windows\$NtUninstallKB969059$\query.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 1171968 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\urlmon.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 3602944 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll
+ 2010-03-11 11:49 . 2010-03-11 11:49 6070784 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieframe.dll
+ 2010-03-30 22:18 . 2009-06-29 08:33 2452872 e:\windows\$hf_mig$\KB980182-IE7\SP3QFE\ieapfltr.dat
+ 2010-04-15 04:54 . 2010-02-16 12:52 2190080 e:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe
+ 2010-04-15 04:54 . 2010-02-16 12:12 2024448 e:\windows\$hf_mig$\KB979683\SP3QFE\ntkrpamp.exe
+ 2010-04-15 04:54 . 2010-02-16 12:12 2066944 e:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe
+ 2010-04-15 04:54 . 2010-02-16 12:50 2146304 e:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlmp.exe
+ 2010-01-05 09:57 . 2010-01-05 09:57 1170944 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\urlmon.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 3602944 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll
+ 2010-01-05 09:57 . 2010-01-05 09:57 6071296 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieframe.dll
+ 2010-01-28 01:50 . 2009-06-29 08:33 2452872 e:\windows\$hf_mig$\KB978207-IE7\SP3QFE\ieapfltr.dat
+ 2009-12-09 19:22 . 2009-12-09 19:22 2189312 e:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntoskrnl.exe
+ 2010-03-12 01:54 . 2009-12-08 17:40 2023936 e:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrpamp.exe
+ 2009-12-09 18:40 . 2009-12-09 18:40 2066176 e:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlpa.exe
+ 2010-03-12 01:54 . 2009-12-08 18:20 2145280 e:\windows\$hf_mig$\KB977165-v2\SP3QFE\ntkrnlmp.exe
+ 2009-10-21 03:59 . 2009-10-21 03:59 3602432 e:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 1170944 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\urlmon.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 3602432 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll
+ 2009-10-29 07:45 . 2009-10-29 07:45 6070784 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieframe.dll
+ 2009-12-11 04:42 . 2009-06-29 08:33 2452872 e:\windows\$hf_mig$\KB976325-IE7\SP3QFE\ieapfltr.dat
+ 2010-03-12 01:55 . 2009-10-23 14:53 3558912 e:\windows\$hf_mig$\KB975561\SP3QFE\moviemk.exe
+ 2009-11-27 17:23 . 2009-11-27 17:23 1291776 e:\windows\$hf_mig$\KB975560\SP3QFE\quartz.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 1170944 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\urlmon.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 3600384 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll
+ 2009-08-29 07:31 . 2009-08-29 07:31 6070784 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieframe.dll
+ 2009-10-18 20:35 . 2009-06-29 08:33 2452872 e:\windows\$hf_mig$\KB974455-IE7\SP3QFE\ieapfltr.dat
+ 2009-11-25 23:06 . 2009-07-31 04:24 1447424 e:\windows\$hf_mig$\KB973687\SP3QFE\msxml6.dll
+ 2009-11-25 23:06 . 2009-07-31 04:24 1172480 e:\windows\$hf_mig$\KB973687\SP3QFE\msxml3.dll
+ 2009-10-18 20:32 . 2009-08-04 13:56 2189312 e:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe
+ 2009-10-18 20:32 . 2009-08-04 13:17 2023936 e:\windows\$hf_mig$\KB971486\SP3QFE\ntkrpamp.exe
+ 2009-08-04 23:47 . 2009-08-04 23:47 2066176 e:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe
+ 2009-10-18 20:32 . 2009-08-04 13:54 2145280 e:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlmp.exe
+ 2009-08-14 12:19 . 2009-08-14 12:19 1859712 e:\windows\$hf_mig$\KB969947\SP3QFE\win32k.sys
+ 2009-07-17 16:01 . 2009-07-17 16:01 1435648 e:\windows\$hf_mig$\KB969059\SP3QFE\query.dll
+ 2009-10-23 12:39 . 2010-04-30 18:51 32058312 e:\windows\system32\MRT.exe
+ 2009-08-11 02:08 . 2009-08-11 02:08 11315712 e:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp
+ 2009-08-10 19:09 . 2009-08-10 19:09 17254912 e:\windows\Installer\b4602.msp
.
– Snapshot reset to current date –
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTStartup"="e:\program files\Creative\Splash Screen\CTEaxSpl.EXE" [2001-12-20 28672]
"Malwarebytes Anti-Malware (reboot)"="e:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2009-09-10 1312080]
"avgnt"="e:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSetActiveDesktop"= 1 (0x1)
"NoActiveDesktopChanges"= 1 (0x1)

[HKLM\~\startupfolder\E:^Documents and Settings^All Users^Start Menu^Programs^Startup^Acrobat Assistant.lnk]
path=e:\documents and settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk
backup=e:\windows\pss\Acrobat Assistant.lnkCommon Startup

[HKLM\~\startupfolder\E:^Documents and Settings^All Users^Start Menu^Programs^Startup^Belkin Wireless USB Utility.lnk]
path=e:\documents and settings\All Users\Start Menu\Programs\Startup\Belkin Wireless USB Utility.lnk
backup=e:\windows\pss\Belkin Wireless USB Utility.lnkCommon Startup

[HKLM\~\startupfolder\E:^Documents and Settings^Josh^Start Menu^Programs^Startup^Antimalware Doctor.lnk]
path=e:\documents and settings\Josh\Start Menu\Programs\Startup\Antimalware Doctor.lnk
backup=e:\windows\pss\Antimalware Doctor.lnkStartup

[HKLM\~\startupfolder\E:^Documents and Settings^Josh^Start Menu^Programs^Startup^scandisk.dll]
path=e:\documents and settings\Josh\Start Menu\Programs\Startup\scandisk.dll
backup=e:\windows\pss\scandisk.dllStartup

[HKLM\~\startupfolder\E:^Documents and Settings^Josh^Start Menu^Programs^Startup^scandisk.lnk]
path=e:\documents and settings\Josh\Start Menu\Programs\Startup\scandisk.lnk
backup=e:\windows\pss\scandisk.lnkStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATI Launchpad]
2002-05-02 14:57 98304 ——w- e:\program files\ATI Multimedia\main\LaunchPd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]
2002-08-01 17:42 290816 —-a-w- e:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 00:12 15360 ——w- e:\windows\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Jet Detection]
2001-10-04 06:00 28672 —-a-w- e:\program files\Creative\SBAudigy\Program\ADGJDet.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2008-04-14 00:12 1695232 ——w- e:\program files\Messenger\msmsgs.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2009-05-21 16:34 148888 —-a-w- e:\program files\Java\jre6\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TaskBar]
2001-09-20 06:00 122880 —-a-w- e:\program files\Creative\SBAudigy\TaskBar\CTLTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TaskTray]
2001-06-29 06:00 163840 —-a-w- e:\program files\Creative\SBAudigy\TaskBar\CTLTray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
2000-05-11 06:00 90112 ——w- e:\windows\Updreg.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WINDVDPatch]
2002-02-07 18:01 40960 —-a-w- e:\windows\system32\CTHELPER.EXE

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager\appcertdlls]
autostat REG_SZ e:\windows\system32\ipv6smui.dll

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"e:\\Program Files\\AIM6\\aim6.exe"=
"e:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"e:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"e:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"=
"e:\\Program Files\\Messenger\\msmsgs.exe"=
"e:\\WINDOWS\\system32\\spoolsv.exe"=

R2 AntiVirSchedulerService;Avira AntiVir Scheduler;e:\program files\Avira\AntiVir Desktop\sched.exe [5/27/2010 6:17 PM 135336]
R2 pxrts;pxrts;e:\windows\system32\drivers\pxrts.sys [5/23/2010 10:47 PM 57248]
S1 sypgsvdi;sypgsvdi;\??\e:\windows\system32\drivers\sypgsvdi.sys –> e:\windows\system32\drivers\sypgsvdi.sys [?]
.
Contents of the 'Scheduled Tasks' folder
.
.
——- Supplementary Scan ——-
.
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uInternet Settings,ProxyOverride =
DPF: DirectAnimation Java Classes - file://e:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://e:\windows\Java\classes\xmldso.cab
FF - ProfilePath - e:\documents and settings\Josh\Application Data\Mozilla\Firefox\Profiles\s7blcxuv.default\
.
- - - - ORPHANS REMOVED - - - -

Notify-b05983c7922 - (no file)
MSConfigStartUp-90441321 - e:\documents and settings\All Users\Application Data\90441321\90441321.exe
MSConfigStartUp-Antivirus Pro 2010 - e:\program files\AntivirusPro_2010\AntivirusPro_2010.exe
MSConfigStartUp-asam - e:\documents and settings\Josh\Local Settings\Application Data\asam.exe
MSConfigStartUp-braviax - e:\windows\system32\braviax.exe
MSConfigStartUp-calc - e:\windows\system32\calc.dll
MSConfigStartUp-Data Protection - e:\program files\Data Protection\datprot.exe
MSConfigStartUp-gotnewupdate000 - e:\documents and settings\Josh\Application Data\F0947276E0A06CC54717159FC3E34C6B\gotnewupdate000.exe
MSConfigStartUp-hsfe8owijfisjhgs7ye39gjsoighsd7y3eu - e:\docume~1\Josh\LOCALS~1\Temp\m9w8eb.exe
MSConfigStartUp-hsfg9w8gujsokgahi8gysgnsdgefshyjy - e:\docume~1\Josh\LOCALS~1\Temp\avp.exe
MSConfigStartUp-ISTray - e:\program files\Spyware Doctor\pctsTray.exe
MSConfigStartUp-M5T8QL3YW3 - e:\docume~1\Josh\LOCALS~1\Temp\Bql.exe
MSConfigStartUp-mcexecwin - e:\docume~1\Josh\LOCALS~1\Temp\cka9e8yw2c.dll
MSConfigStartUp-mscdexnt - e:\docume~1\Josh\LOCALS~1\Temp\mscdexnt.exe
MSConfigStartUp-mserv - e:\documents and settings\Josh\Application Data\svcst.exe
MSConfigStartUp-penxoavp - e:\documents and settings\Josh\Local Settings\Application Data\wbutpifpl\fxgwkuktssd.exe
MSConfigStartUp-ragesaneg - e:\windows\system32\wiwifezi.dll
MSConfigStartUp-svchost - e:\documents and settings\Josh\Application Data\svcst.exe
MSConfigStartUp-winupdate - e:\windows\system32\winupdate.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-06-05 21:56
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes …

scanning hidden autostart entries …

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
CTStartup = e:\program files\Creative\Splash Screen\CTEaxSpl.EXE /run???h??????s?????\?w? ?w???????w???w4???????.??w4???????4???TA?s4???&????:3?????\??? ??? ???\???\???????????5?B~e?B~\???\????????q`??????C@?\???\??????s&???\??????s\???x:3?A??sx:3??C@?x???`|?w\?????@

scanning hidden files …

scan completed successfully
hidden files: 0

**************************************************************************
.
——————— LOCKED REGISTRY KEYS ———————

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Reinstall\:õwjY*]
"DisplayName"="\09"
"DeviceDesc"="\09"
"ProviderName"=""
"MFG"="?"
"ReinstallString"="2002, 6.13.10.6143"
"DeviceInstanceIds"=multi:"\00"
.
——————— DLLs Loaded Under Running Processes ———————

- - - - - - - > 'explorer.exe'(3676)
e:\windows\system32\WININET.dll
e:\windows\system32\ieframe.dll
e:\windows\system32\WPDShServiceObj.dll
e:\windows\system32\PortableDeviceTypes.dll
e:\windows\system32\PortableDeviceApi.dll
.
———————— Other Running Processes ————————
.
e:\program files\Avira\AntiVir Desktop\avguard.exe
e:\program files\Java\jre6\bin\jqs.exe
e:\program files\Avira\AntiVir Desktop\avshadow.exe
.
**************************************************************************
.
Completion time: 2010-06-05 22:00:58 - machine was rebooted
ComboFix-quarantined-files.txt 2010-06-06 03:00
ComboFix2.txt 2009-10-18 20:35

Pre-Run: 12,622,675,968 bytes free
Post-Run: 12,659,961,856 bytes free

- - End Of File - - 68C8D83051602530CAEAF9D818D0B9C4
Copy/paste the text in the Codebox below into notepad:

Here's how to do that:
Click Start > Run type Notepad click OK.
This will open an empty notepad file:

Take your mouse, and place your cursor at the beginning of the text in the box below, then click and hold the left mouse button, while pulling your mouse over the text. This should highlight the text. Now release the left mouse button. Now, with the cursor over the highlighted text, right click the mouse for options, and select 'copy'. Now over the empty Notepad box, right click your mouse again, and select 'paste' and you will have copied and pasted the text.

File::
e:\documents and settings\Josh\Application Data\kyvgsz.dat
e:\program files\Common Files\ugebij.db
e:\windows\system32\feviliru.exe
e:\windows\system32\nosadepu.exe
e:\windows\system32\tenugizu.exe
e:\windows\system32\ipv6smui.dll
e:\windows\system32\drivers\sypgsvdi.sys


Driver::
sypgsvdi

Registry::
[-HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager\appcertdlls]

Save this file to your desktop, Save this as "CFScript"

Here's how to do that:
1.Click File;
2.Click Save As… Change the directory to your desktop;
3.Change the Save as type to "All Files";
4.Type in the file name: CFScript
5.Click Save …


[external image: Posted Image]

Drag CFScript.txt into ComboFix.exe


Then post the results log using Copy / Paste


Also please describe how your computer behaves at the moment.
The system is performing better, however, there is still some rements of spyware. I can now update Malwarebytes, but search engines still have popups.

Thanks for the help.

ComboFix 10-06-05.03 - Josh 06/06/2010 9:45.3.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.511.290 [GMT -5:00]
Running from: e:\documents and settings\[removed]\Desktop\ComboFix.exe
Command switches used :: e:\documents and settings\Josh\Desktop\CFScript.txt
AV: AntiVir Desktop *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
* Created a new restore point

FILE ::
"e:\documents and settings\Josh\Application Data\kyvgsz.dat"
"e:\program files\Common Files\ugebij.db"
"e:\windows\system32\drivers\sypgsvdi.sys"
"e:\windows\system32\feviliru.exe"
"e:\windows\system32\ipv6smui.dll"
"e:\windows\system32\nosadepu.exe"
"e:\windows\system32\tenugizu.exe"
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

e:\documents and settings\Josh\Application Data\kyvgsz.dat
e:\program files\Common Files\ugebij.db
e:\windows\system32\feviliru.exe
e:\windows\system32\ipv6smui.dll
e:\windows\system32\nosadepu.exe
e:\windows\system32\tenugizu.exe

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

——-\Service_sypgsvdi


((((((((((((((((((((((((( Files Created from 2010-05-06 to 2010-06-06 )))))))))))))))))))))))))))))))
.

2010-05-27 23:30 . 2010-05-27 23:30 ——– d—–w- e:\documents and settings\Josh\Application Data\Avira
2010-05-27 23:20 . 2010-06-01 05:28 ——– d—–w- e:\windows\system32\NtmsData
2010-05-27 23:17 . 2010-03-01 15:05 124784 —-a-w- e:\windows\system32\drivers\avipbb.sys
2010-05-27 23:17 . 2010-02-16 19:24 60936 —-a-w- e:\windows\system32\drivers\avgntflt.sys
2010-05-27 23:17 . 2009-05-11 17:49 45416 —-a-w- e:\windows\system32\drivers\avgntdd.sys
2010-05-27 23:17 . 2009-05-11 17:49 22360 —-a-w- e:\windows\system32\drivers\avgntmgr.sys
2010-05-27 23:17 . 2010-05-27 23:17 ——– d—–w- e:\program files\Avira
2010-05-27 23:17 . 2010-05-27 23:17 ——– d—–w- e:\documents and settings\All Users\Application Data\Avira
2010-05-27 22:40 . 2010-05-27 22:58 ——– d—–w- e:\windows\system32\MpEngineStore
2010-05-24 03:47 . 2010-05-24 03:47 57248 —-a-w- e:\windows\system32\drivers\pxrts.sys
2010-05-24 03:47 . 2010-05-24 03:47 ——– d—–w- e:\documents and settings\All Users\Application Data\PrevxCSI
2010-05-21 05:50 . 2010-05-21 05:50 ——– d—–w- e:\documents and settings\Josh\Local Settings\Application Data\Threat Expert
2010-05-21 05:49 . 2010-05-27 23:23 ——– d—a-w- e:\documents and settings\All Users\Application Data\TEMP
2010-05-21 01:41 . 2010-05-28 00:42 ——– d—–w- e:\documents and settings\Josh\Local Settings\Application Data\wbutpifpl

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-06 14:51 . 2009-05-30 13:05 24 —-a-w- e:\windows\system32\DVCStateBkp-{00000002-00000000-00000002-00001102-00000004-00511102}.dat
2010-06-06 14:51 . 2009-05-30 13:05 24 —-a-w- e:\windows\system32\DVCState-{00000002-00000000-00000002-00001102-00000004-00511102}.dat
2010-06-06 03:05 . 2009-10-18 19:09 ——– d—–w- e:\program files\Malwarebytes' Anti-Malware
2010-05-27 23:24 . 2010-05-24 04:04 ——– d—–w- e:\documents and settings\All Users\Application Data\SecTaskMan
2010-05-24 04:04 . 2010-05-24 04:04 3257 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_DDE7F2BCF1D91C3409CFF425AE1E271A.dll
2010-05-24 04:04 . 2010-05-24 04:04 1360 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_FCC9536AD5129D34386674D932F1A227.dll
2010-05-24 04:04 . 2010-05-24 04:04 1251 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_D20352A90C039D93DBF6126ECE614057.dll
2010-05-24 04:04 . 2010-05-24 04:04 907 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_b25099274a207264182f8181add555d0.dll
2010-05-24 04:04 . 2010-05-24 04:04 6926 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_9040110900063D11C8EF10054038389C.dll
2010-05-24 04:04 . 2010-05-24 04:04 655 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_C122D834B5B5B4E47BDB8A56215E6B1C.dll
2010-05-24 04:04 . 2010-05-24 04:04 36 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_85500AD96656C48478CB6105CB6F4064.dll
2010-05-24 04:04 . 2010-05-24 04:04 389 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_8111590C52767DB4A98A70C89127A9FD.dll
2010-05-24 04:04 . 2010-05-24 04:04 27 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_4EA42A62D9304AC4784BF238120631FF.dll
2010-05-24 04:04 . 2010-05-24 04:04 2493 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_68AB67CA330100007706000000000010.dll
2010-05-24 04:04 . 2010-05-24 04:04 154 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_59E4214C16056774D8D53E9D137C871E.dll
2010-05-24 04:04 . 2010-05-24 04:04 108 —-a-w- e:\documents and settings\All Users\Application Data\SecTaskMan\icn_0B79C053C7D38EE4AB9A00CB3B5D2472.dll
2010-04-29 20:39 . 2009-10-18 20:03 38224 —-a-w- e:\windows\system32\drivers\mbamswissarmy.sys
2010-04-29 20:39 . 2009-10-18 20:03 20952 —-a-w- e:\windows\system32\drivers\mbam.sys
2010-03-11 12:38 . 2006-06-23 16:33 832512 —-a-w- e:\windows\system32\wininet.dll
2010-03-11 12:38 . 2004-08-04 07:56 78336 ——w- e:\windows\system32\ieencode.dll
2010-03-11 12:38 . 2002-08-29 12:00 17408 —-a-w- e:\windows\system32\corpol.dll
2010-03-09 11:09 . 2002-08-29 12:00 430080 —-a-w- e:\windows\system32\vbscript.dll
.

((((((((((((((((((((((((((((( SnapShot_2010-06-06_02.56.29 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-06-06 14:52 . 2010-06-06 14:52 16384 e:\windows\temp\Perflib_Perfdata_798.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTStartup"="e:\program files\Creative\Splash Screen\CTEaxSpl.EXE" [2001-12-20 28672]
"avgnt"="e:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSetActiveDesktop"= 1 (0x1)
"NoActiveDesktopChanges"= 1 (0x1)

[HKLM\~\startupfolder\E:^Documents and Settings^All Users^Start Menu^Programs^Startup^Acrobat Assistant.lnk]
path=e:\documents and settings\All Users\Start Menu\Programs\Startup\Acrobat Assistant.lnk
backup=e:\windows\pss\Acrobat Assistant.lnkCommon Startup

[HKLM\~\startupfolder\E:^Documents and Settings^All Users^Start Menu^Programs^Startup^Belkin Wireless USB Utility.lnk]
path=e:\documents and settings\All Users\Start Menu\Programs\Startup\Belkin Wireless USB Utility.lnk
backup=e:\windows\pss\Belkin Wireless USB Utility.lnkCommon Startup

[HKLM\~\startupfolder\E:^Documents and Settings^Josh^Start Menu^Programs^Startup^Antimalware Doctor.lnk]
path=e:\documents and settings\Josh\Start Menu\Programs\Startup\Antimalware Doctor.lnk
backup=e:\windows\pss\Antimalware Doctor.lnkStartup

[HKLM\~\startupfolder\E:^Documents and Settings^Josh^Start Menu^Programs^Startup^scandisk.dll]
path=e:\documents and settings\Josh\Start Menu\Programs\Startup\scandisk.dll
backup=e:\windows\pss\scandisk.dllStartup

[HKLM\~\startupfolder\E:^Documents and Settings^Josh^Start Menu^Programs^Startup^scandisk.lnk]
path=e:\documents and settings\Josh\Start Menu\Programs\Startup\scandisk.lnk
backup=e:\windows\pss\scandisk.lnkStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATI Launchpad]
2002-05-02 14:57 98304 ——w- e:\program files\ATI Multimedia\main\LaunchPd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]
2002-08-01 17:42 290816 —-a-w- e:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 00:12 15360 ——w- e:\windows\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Jet Detection]
2001-10-04 06:00 28672 —-a-w- e:\program files\Creative\SBAudigy\Program\ADGJDet.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2008-04-14 00:12 1695232 ——w- e:\program files\Messenger\msmsgs.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2009-05-21 16:34 148888 —-a-w- e:\program files\Java\jre6\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TaskBar]
2001-09-20 06:00 122880 —-a-w- e:\program files\Creative\SBAudigy\TaskBar\CTLTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TaskTray]
2001-06-29 06:00 163840 —-a-w- e:\program files\Creative\SBAudigy\TaskBar\CTLTray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
2000-05-11 06:00 90112 ——w- e:\windows\Updreg.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WINDVDPatch]
2002-02-07 18:01 40960 —-a-w- e:\windows\system32\CTHELPER.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"e:\\Program Files\\AIM6\\aim6.exe"=
"e:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"e:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"e:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"=
"e:\\Program Files\\Messenger\\msmsgs.exe"=
"e:\\WINDOWS\\system32\\spoolsv.exe"=

R2 AntiVirSchedulerService;Avira AntiVir Scheduler;e:\program files\Avira\AntiVir Desktop\sched.exe [5/27/2010 6:17 PM 135336]
R2 pxrts;pxrts;e:\windows\system32\drivers\pxrts.sys [5/23/2010 10:47 PM 57248]
.
.
——- Supplementary Scan ——-
.
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uInternet Settings,ProxyOverride =
DPF: DirectAnimation Java Classes - file://e:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://e:\windows\Java\classes\xmldso.cab
FF - ProfilePath - e:\documents and settings\Josh\Application Data\Mozilla\Firefox\Profiles\s7blcxuv.default\
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-06-06 09:53
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes …

scanning hidden autostart entries …

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
CTStartup = e:\program files\Creative\Splash Screen\CTEaxSpl.EXE /run???h??????s?????\?w? ?w???????w???w4???????.??w4???????4???TA?s4????????:3?????\??? ??? ???\???\???????????5?B~e?B~\???\????????|`??????C@?\???\??????s????\??????s\???x:3?A??sx:3??C@?x???`|?w\?????@

scanning hidden files …

scan completed successfully
hidden files: 0

**************************************************************************
.
——————— LOCKED REGISTRY KEYS ———————

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Reinstall\:õwjY*]
"DisplayName"="\09"
"DeviceDesc"="\09"
"ProviderName"=""
"MFG"="?"
"ReinstallString"="2002, 6.13.10.6143"
"DeviceInstanceIds"=multi:"\00"
.
——————— DLLs Loaded Under Running Processes ———————

- - - - - - - > 'explorer.exe'(3156)
e:\windows\system32\WININET.dll
e:\windows\system32\ieframe.dll
e:\windows\system32\WPDShServiceObj.dll
e:\windows\system32\PortableDeviceTypes.dll
e:\windows\system32\PortableDeviceApi.dll
.
———————— Other Running Processes ————————
.
e:\program files\Avira\AntiVir Desktop\avguard.exe
e:\program files\Java\jre6\bin\jqs.exe
e:\program files\Avira\AntiVir Desktop\avshadow.exe
.
**************************************************************************
.
Completion time: 2010-06-06 09:57:38 - machine was rebooted
ComboFix-quarantined-files.txt 2010-06-06 14:57
ComboFix2.txt 2010-06-06 03:00
ComboFix3.txt 2009-10-18 20:35

Pre-Run: 13,634,883,584 bytes free
Post-Run: 13,615,517,696 bytes free

- - End Of File - - AC9809B7738BD12D17211584FCB7A695
Do you have a toolbar with a popup blocker active? IE has its own or Google Toolbar
I do have the google toolbar installed - just installed it. I ran malwarebytes, and the log is below. This is what happens currently. I goto google.com, enter a search. Google comes back with search results, and I try to click on one of them. IE then opens a new window, and redirects to a SPAM site, not the URL that google says it should go to. Thanks for the help! Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Database version: 4172 Windows 5.1.2600 Service Pack 3 Internet Explorer 7.0.5730.13 6/6/2010 11:02:51 AM mbam-log-2010-06-06 (11-02-51).txt Scan type: Full scan (C:\|E:\|) Objects scanned: 209390 Time elapsed: 55 minute(s), 58 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 1 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: E:\WINDOWS\addins\addins (Trojan.Agent) -> Quarantined and deleted successfully. Files Infected: (No malicious items detected)
Please download GooredFix from one of the locations below and save it to your Desktop
Download Mirror #1
Download Mirror #2
  • Ensure all Firefox windows are closed.
  • To run the tool, double-click it (XP), or right-click and select Run As Administrator (Vista).
  • When prompted to run the scan, click Yes.
  • It doesn't take long to run, once it is finished move onto the next step



Download TDSSKiller and save it to your Desktop.

  • Make sure all other windows are closed and to let it run uninterrupted.
  • Extract the file and run it.
  • Reboot your machine and see if the infection is gone
Download HijackThis .
  • Save HijackThis.exe to your desktop.
  • Doubleclick on the HijackThis.exe icon on your desktop.
  • By default it will install to C:\Program Files\Trend Micro\HijackThis .
  • Click on Install.
  • It will create a HijackThis icon on the desktop.
  • Once installed, it will launch Hijackthis.
  • Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
  • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
  • DO NOT use the AnalyseThis button, its findings are dangerous if misinterpreted.
  • DO NOT have Hijackthis fix anything yet. Most of what it finds will be harmless or even required.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:32:45 AM, on 6/6/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
E:\Program Files\Avira\AntiVir Desktop\sched.exe
E:\Program Files\Avira\AntiVir Desktop\avguard.exe
E:\Program Files\Avira\AntiVir Desktop\avshadow.exe
E:\Program Files\Avira\AntiVir Desktop\avgnt.exe
E:\WINDOWS\system32\wuauclt.exe
E:\WINDOWS\explorer.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
E:\WINDOWS\system32\taskmgr.exe
E:\Documents and Settings\Josh\Desktop\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5555
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - E:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - E:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - E:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - E:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [CTStartup] E:\Program Files\Creative\Splash Screen\CTEaxSpl.EXE /run
O4 - HKLM\..\Run: [avgnt] "E:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "E:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O8 - Extra context menu item: Google Sidewiki… - res://E:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - E:\Program Files\ATI Multimedia\TV\EXPLBAR.DLL
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/…b?1243688024609
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\System32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - E:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - E:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ATI Smart - Unknown owner - E:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - E:\WINDOWS\System32\CTsvcCDA.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - E:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: WMDM PMSP Service - Unknown owner - E:\WINDOWS\System32\MsPMSPSv.exe (file missing)

–
End of file - 4635 bytes
Run hijackthis. Hit None of the above, Click Do a System Scan Only. Put a checkmark/tick in the box on the left side on these:

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5555
O8 - Extra context menu item: Google Sidewiki… - res://E:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html

Close ALL windows and browsers except HijackThis and click "Fix checked"


Reboot and "copy/paste" a new HijackThis log file into this thread.

Also please describe how your computer behaves at the moment.
Computer still performing the same way; here's the new log file. Thanks!

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:59:49 AM, on 6/6/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\Explorer.EXE
E:\WINDOWS\system32\spoolsv.exe
E:\Program Files\Avira\AntiVir Desktop\sched.exe
E:\Program Files\Avira\AntiVir Desktop\avguard.exe
E:\Program Files\Avira\AntiVir Desktop\avshadow.exe
E:\Program Files\Java\jre6\bin\jqs.exe
E:\Program Files\Avira\AntiVir Desktop\avgnt.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
E:\WINDOWS\system32\wuauclt.exe
E:\Documents and Settings\Josh\Desktop\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - E:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - E:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - E:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - E:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [CTStartup] E:\Program Files\Creative\Splash Screen\CTEaxSpl.EXE /run
O4 - HKLM\..\Run: [avgnt] "E:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "E:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - E:\Program Files\ATI Multimedia\TV\EXPLBAR.DLL
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/…b?1243688024609
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\System32\browseui.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - E:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - E:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ATI Smart - Unknown owner - E:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - E:\WINDOWS\System32\CTsvcCDA.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - E:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: WMDM PMSP Service - Unknown owner - E:\WINDOWS\System32\MsPMSPSv.exe (file missing)

–
End of file - 4365 bytes

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI