This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

unable to launch programs after trojan removal

10 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hello all, I hope you can help me as you have kindly done so in the past. My son, while surfing the net, clicked on a link which then attempted to launch "Win7 Antispyware", the popup windows described how my computer was infected with an assortment of viruses etc etc. I had seen this before and closed all the windows, but they kept coming back. When attempting to open Internet Explorer, this same windows would appear. I ran a virus scan with no result. I then ran Malwarebytes and removed 3 infections, being trojans. After a restart, I could not launch any programs, I was getting a prompt asking what program to use to launch the program I was trying to open, almost like a loop. Can you please help. I am running Windows 7. Thanks and regards, Kevin
Sorry Guys, Here are th log files I forgot.
Apparently though I cannot upload a HighjackThis file, I am not permitted to upload this type of file!

Here are the others.

OTL logfile created on: 6/06/2011 9:21:10 PM - Run 2
OTL by OldTimer - Version 3.2.23.0 Folder = C:\Users\Aaron 2\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000c09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy

3.99 Gb Total Physical Memory | 2.53 Gb Available Physical Memory | 63.40% Memory free
7.98 Gb Paging File | 5.97 Gb Available in Paging File | 74.80% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 244.14 Gb Total Space | 178.30 Gb Free Space | 73.03% Space Free | Partition Type: NTFS
Drive E: | 687.37 Gb Total Space | 605.45 Gb Free Space | 88.08% Space Free | Partition Type: NTFS

Computer Name: KEV2 | User Name: kevin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Aaron 2\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe (Nero AG)
PRC - C:\Program Files\BitDefender\BitDefender 2010\Antispam32\bdimguiaux.exe (BitDefender S.R.L.)
PRC - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe (DeviceVM, Inc.)
PRC - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (DeviceVM, Inc.)


========== Modules (SafeList) ==========

MOD - C:\Users\Aaron 2\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Program Files\BitDefender\BitDefender 2010\Active Virus Control\midas64-v2_74\midas32.dll (BitDefender S.R.L. Bucharest, ROMANIA)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV:64bit: - (LIVESRV) – C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe (BitDefender S.R.L.)
SRV:64bit: - (AMD External Events Utility) – C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (VSSERV) – C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe (BitDefender S.R.L.)
SRV:64bit: - (scan) – C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\scan.dll (S.C. BitDefender S.R.L)
SRV:64bit: - (Arrakis3) – C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe (BitDefender S.R.L. http://www.bitdefender.com)
SRV:64bit: - (WinDefend) – C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (clr_optimization_v4.0.30319_32) – C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (BCUService) – C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe (DeviceVM, Inc.)
SRV - (DAUpdaterSvc) – C:\Program Files (x86)\Dragon Age\bin_ship\daupdatersvc.service.exe (BioWare)
SRV - (clr_optimization_v2.0.50727_32) – C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (amdsata) – C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) – C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (HpSAMD) – C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) – C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (sptd) – C:\Windows\SysNative\drivers\sptd.sys ()
DRV:64bit: - (BdfNdisf) – C:\Windows\SysNative\drivers\BdfNdisf6.sys (BitDefender LLC)
DRV:64bit: - (bdfwfpf) – C:\Program Files\Common Files\BitDefender\BitDefender Firewall\bdfwfpf.sys (BitDefender LLC)
DRV:64bit: - (amdkmdag) – C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (amdkmdap) – C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (AtiHdmiService) – C:\Windows\SysNative\drivers\AtiHdmi.sys (ATI Technologies, Inc.)
DRV:64bit: - (bdfsfltr) – C:\Windows\SysNative\drivers\bdfsfltr.sys (BitDefender)
DRV:64bit: - (BDFM) – C:\Windows\SysNative\drivers\bdfm.sys (BitDefender S.R.L. Bucharest, ROMANIA)
DRV:64bit: - (BDVEDISK) – C:\Program Files\BitDefender\BitDefender 2010\bdvedisk.sys (BitDefender)
DRV:64bit: - (ElbyCDIO) – C:\Windows\SysNative\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV:64bit: - (pbfilter) – C:\Program Files\PeerBlock\pbfilter.sys ()
DRV:64bit: - (VIAHdAudAddService) – C:\Windows\SysNative\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV:64bit: - (VClone) – C:\Windows\SysNative\drivers\VClone.sys (Elaborate Bytes AG)
DRV:64bit: - (MTsensor) – C:\Windows\SysNative\drivers\ASACPI.sys ()
DRV:64bit: - (amdsbs) – C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) – C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) – C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (L1E) NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20) – C:\Windows\SysNative\drivers\L1E62x64.sys (Atheros Communications, Inc.)
DRV:64bit: - (Ntfs) – C:\Windows\SysNative\wbem\ntfs.mof ()
DRV:64bit: - (ebdrv) – C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) – C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) – C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) – C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (RTL8167) – C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )

========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.iinet.net.au/customers/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://ninemsn.com.au/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-au
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 66 75 86 66 5E 1A CB 01 [binary data]
IE - HKCU\..\URLSearchHook: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



O1 HOSTS File: ([2009/06/11 05:00:26 | 000,000,824 | —- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (FlashFXP Helper for Internet Explorer) - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\Program Files (x86)\FlashFXP\IEFlash.dll (IniCom Networks, Inc.)
O3:64bit: - HKLM\..\Toolbar: (BitDefender Toolbar) - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2010\IEToolbar.dll (BitDefender S.R.L.)
O3 - HKLM\..\Toolbar: (BitDefender Toolbar) - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2010\Antispam32\IEToolbar.dll (BitDefender S.R.L.)
O4:64bit: - HKLM..\Run: [BDAgent] C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe (BitDefender S.R.L.)
O4:64bit: - HKLM..\Run: [BitDefender Antiphishing Helper] C:\Program Files\BitDefender\BitDefender 2010\IEShow.exe (BitDefender S.R.L.)
O4:64bit: - HKLM..\Run: [BitDefender Antiphishing Helper 32] C:\Program Files\BitDefender\BitDefender 2010\Antispam32\IEShow.exe (BitDefender S.R.L.)
O4 - HKLM..\Run: [BCU] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (DeviceVM, Inc.)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [NBAgent] C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe (Nero AG)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10n_ActiveX.exe (Adobe Systems, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shoc…ash/swflash.cab (Shockwave Flash Object)
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{308b9631-8f25-11df-bf6c-e0cb4ed5d549}\Shell - "" = AutoRun
O33 - MountPoints2\{308b9631-8f25-11df-bf6c-e0cb4ed5d549}\Shell\AutoRun\command - "" = F:\autorun.exe -auto
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] – "%1" %*
O35:64bit: - HKLM\..exefile [open] – "%1" %*
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37:64bit: - HKLM\…com [@ = comfile] – "%1" %*
O37:64bit: - HKLM\…exe [@ = exefile] – "%1" %*
O37 - HKLM\…com [@ = comfile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*


Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.VP60 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\Windows\SysWOW64\vp6vfw.dll (On2.com)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2011/06/06 18:26:28 | 000,000,000 | —D | C] – C:\Windows\SysNative\SPReview
[2011/06/06 18:25:29 | 000,000,000 | —D | C] – C:\Windows\SysNative\EventProviders
[2011/06/06 18:24:26 | 001,942,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dfshim.dll
[2011/06/06 18:24:26 | 000,048,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netfxperf.dll
[2011/06/06 18:24:22 | 001,130,824 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dfshim.dll
[2011/06/06 18:24:20 | 003,715,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mstscax.dll
[2011/06/06 18:24:20 | 001,838,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10warp.dll
[2011/06/06 18:24:20 | 000,059,392 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2011/06/06 18:24:20 | 000,012,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2011/06/06 18:24:18 | 003,215,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mstscax.dll
[2011/06/06 18:24:16 | 001,171,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d3d10warp.dll
[2011/06/06 18:24:16 | 000,954,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc40.dll
[2011/06/06 18:24:16 | 000,954,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfc40u.dll
[2011/06/06 18:24:15 | 002,314,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tquery.dll
[2011/06/06 18:24:14 | 014,633,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmp.dll
[2011/06/06 18:24:14 | 003,205,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mmcndmgr.dll
[2011/06/06 18:24:14 | 002,223,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mssrch.dll
[2011/06/06 18:24:14 | 001,731,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ntdll.dll
[2011/06/06 18:24:13 | 004,120,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mf.dll
[2011/06/06 18:24:13 | 003,008,000 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\xpsservices.dll
[2011/06/06 18:24:13 | 000,488,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\secproc.dll
[2011/06/06 18:24:13 | 000,485,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\secproc_isv.dll
[2011/06/06 18:24:13 | 000,423,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\secproc_isv.dll
[2011/06/06 18:24:13 | 000,362,496 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RMActivate_isv.exe
[2011/06/06 18:24:13 | 000,359,424 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RMActivate.exe
[2011/06/06 18:24:12 | 002,086,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ole32.dll
[2011/06/06 18:24:12 | 001,219,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rpcrt4.dll
[2011/06/06 18:24:12 | 000,428,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\secproc.dll
[2011/06/06 18:24:12 | 000,327,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\RMActivate_isv.exe
[2011/06/06 18:24:12 | 000,322,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\RMActivate.exe
[2011/06/06 18:24:11 | 000,263,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spwizui.dll
[2011/06/06 18:24:10 | 003,207,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mf.dll
[2011/06/06 18:24:10 | 001,866,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ExplorerFrame.dll
[2011/06/06 18:24:10 | 001,753,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vssapi.dll
[2011/06/06 18:24:10 | 001,556,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RacEngn.dll
[2011/06/06 18:24:10 | 001,340,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\diagperf.dll
[2011/06/06 18:24:10 | 001,334,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\CertEnroll.dll
[2011/06/06 18:24:10 | 001,197,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskschd.dll
[2011/06/06 18:24:09 | 003,860,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\UIRibbon.dll
[2011/06/06 18:24:09 | 001,401,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mssrch.dll
[2011/06/06 18:24:09 | 001,326,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\NaturalLanguage6.dll
[2011/06/06 18:24:09 | 000,299,392 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mcupdate_GenuineIntel.dll
[2011/06/06 18:24:08 | 011,410,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmp.dll
[2011/06/06 18:24:08 | 003,027,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMVCORE.DLL
[2011/06/06 18:24:08 | 000,320,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PresentationHost.exe
[2011/06/06 18:24:08 | 000,295,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PresentationHost.exe
[2011/06/06 18:24:08 | 000,274,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdpdd.dll
[2011/06/06 18:24:08 | 000,109,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PresentationHostProxy.dll
[2011/06/06 18:24:08 | 000,099,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PresentationHostProxy.dll
[2011/06/06 18:24:07 | 003,957,760 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WinSAT.exe
[2011/06/06 18:24:07 | 001,975,296 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\CertEnroll.dll
[2011/06/06 18:24:07 | 001,888,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMVDECOD.DLL
[2011/06/06 18:24:07 | 001,548,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tquery.dll
[2011/06/06 18:24:07 | 000,598,016 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spinstall.exe
[2011/06/06 18:24:07 | 000,301,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spreview.exe
[2011/06/06 18:24:06 | 005,066,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\AuthFWSnapin.dll
[2011/06/06 18:24:06 | 005,066,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\AuthFWSnapin.dll
[2011/06/06 18:24:06 | 002,067,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d9.dll
[2011/06/06 18:24:06 | 001,161,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kernel32.dll
[2011/06/06 18:24:06 | 001,115,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\RacEngn.dll
[2011/06/06 18:24:06 | 000,867,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SearchFolder.dll
[2011/06/06 18:24:05 | 003,391,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dbgeng.dll
[2011/06/06 18:24:05 | 001,632,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dwmcore.dll
[2011/06/06 18:24:04 | 001,493,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ExplorerFrame.dll
[2011/06/06 18:24:04 | 001,456,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\crypt32.dll
[2011/06/06 18:24:04 | 001,447,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\lsasrv.dll
[2011/06/06 18:24:04 | 000,958,464 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\actxprxy.dll
[2011/06/06 18:24:04 | 000,750,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\TSWorkspace.dll
[2011/06/06 18:24:04 | 000,419,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KernelBase.dll
[2011/06/06 18:24:03 | 001,244,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\imapi2fs.dll
[2011/06/06 18:24:03 | 001,116,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mstsc.exe
[2011/06/06 18:24:03 | 000,787,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d11.dll
[2011/06/06 18:24:03 | 000,695,808 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netlogon.dll
[2011/06/06 18:24:03 | 000,244,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sqmapi.dll
[2011/06/06 18:24:02 | 001,900,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\setupapi.dll
[2011/06/06 18:24:02 | 001,828,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d3d9.dll
[2011/06/06 18:24:02 | 001,212,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\propsys.dll
[2011/06/06 18:24:02 | 000,505,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\taskschd.dll
[2011/06/06 18:24:01 | 001,927,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\authui.dll
[2011/06/06 18:24:01 | 001,281,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\werconcpl.dll
[2011/06/06 18:24:01 | 000,720,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\odbc32.dll
[2011/06/06 18:24:01 | 000,464,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskeng.exe
[2011/06/06 18:24:00 | 001,796,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\certmgr.dll
[2011/06/06 18:24:00 | 001,049,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mstsc.exe
[2011/06/06 18:24:00 | 001,008,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\user32.dll
[2011/06/06 18:24:00 | 000,861,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\oleaut32.dll
[2011/06/06 18:24:00 | 000,702,464 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msfeeds.dll
[2011/06/06 18:24:00 | 000,376,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\netio.sys
[2011/06/06 18:23:59 | 000,955,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\localspl.dll
[2011/06/06 18:23:59 | 000,758,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceApi.dll
[2011/06/06 18:23:59 | 000,395,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\webio.dll
[2011/06/06 18:23:59 | 000,381,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wer.dll
[2011/06/06 18:23:59 | 000,342,016 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\certcli.dll
[2011/06/06 18:23:59 | 000,299,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tsmf.dll
[2011/06/06 18:23:59 | 000,210,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ncsi.dll
[2011/06/06 18:23:59 | 000,146,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\scavengeui.dll
[2011/06/06 18:23:58 | 001,509,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msdtctm.dll
[2011/06/06 18:23:58 | 001,371,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dwmcore.dll
[2011/06/06 18:23:58 | 000,457,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msdrm.dll
[2011/06/06 18:23:58 | 000,448,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shlwapi.dll
[2011/06/06 18:23:57 | 002,652,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netshell.dll
[2011/06/06 18:23:57 | 000,573,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\odbc32.dll
[2011/06/06 18:23:57 | 000,519,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netcfgx.dll
[2011/06/06 18:23:57 | 000,295,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\framedynos.dll
[2011/06/06 18:23:57 | 000,061,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tcpmonui.dll
[2011/06/06 18:23:56 | 002,543,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wpdshext.dll
[2011/06/06 18:23:56 | 002,055,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Query.dll
[2011/06/06 18:23:56 | 001,572,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\quartz.dll
[2011/06/06 18:23:56 | 001,328,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\quartz.dll
[2011/06/06 18:23:56 | 000,897,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\azroles.dll
[2011/06/06 18:23:56 | 000,800,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\usp10.dll
[2011/06/06 18:23:56 | 000,658,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxgi.dll
[2011/06/06 18:23:56 | 000,599,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msfeeds.dll
[2011/06/06 18:23:56 | 000,597,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\TSWorkspace.dll
[2011/06/06 18:23:56 | 000,594,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\comdlg32.dll
[2011/06/06 18:23:56 | 000,481,280 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmpps.dll
[2011/06/06 18:23:56 | 000,390,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winlogon.exe
[2011/06/06 18:23:56 | 000,343,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\lsm.exe
[2011/06/06 18:23:56 | 000,342,016 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\apphelp.dll
[2011/06/06 18:23:56 | 000,321,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10_1core.dll
[2011/06/06 18:23:56 | 000,297,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ws2_32.dll
[2011/06/06 18:23:56 | 000,270,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tsmf.dll
[2011/06/06 18:23:56 | 000,266,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\QAGENT.DLL
[2011/06/06 18:23:56 | 000,091,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dot3api.dll
[2011/06/06 18:23:55 | 002,522,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dbgeng.dll
[2011/06/06 18:23:55 | 001,098,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Vault.dll
[2011/06/06 18:23:55 | 000,778,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mssvp.dll
[2011/06/06 18:23:55 | 000,758,784 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\samsrv.dll
[2011/06/06 18:23:55 | 000,751,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\win32spl.dll
[2011/06/06 18:23:55 | 000,653,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\lpksetup.exe
[2011/06/06 18:23:55 | 000,345,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cmd.exe
[2011/06/06 18:23:55 | 000,281,600 | —- | C] (Microsoft) – C:\Windows\SysNative\DShowRdpFilter.dll
[2011/06/06 18:23:54 | 002,151,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mmcndmgr.dll
[2011/06/06 18:23:54 | 001,808,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\pnidui.dll
[2011/06/06 18:23:54 | 001,619,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMVDECOD.DLL
[2011/06/06 18:23:54 | 001,363,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Query.dll
[2011/06/06 18:23:54 | 001,190,400 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WindowsCodecs.dll
[2011/06/06 18:23:54 | 000,584,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ipsmsnap.dll
[2011/06/06 18:23:54 | 000,582,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sxs.dll
[2011/06/06 18:23:54 | 000,522,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d3d11.dll
[2011/06/06 18:23:54 | 000,473,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskcomp.dll
[2011/06/06 18:23:54 | 000,406,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netcfgx.dll
[2011/06/06 18:23:54 | 000,381,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfds.dll
[2011/06/06 18:23:54 | 000,314,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\webio.dll
[2011/06/06 18:23:54 | 000,312,832 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Wldap32.dll
[2011/06/06 18:23:54 | 000,272,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mcbuilder.exe
[2011/06/06 18:23:54 | 000,252,928 | —- | C] (Microsoft) – C:\Windows\SysWow64\DShowRdpFilter.dll
[2011/06/06 18:23:54 | 000,235,008 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\hgprint.dll
[2011/06/06 18:23:54 | 000,206,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\upnp.dll
[2011/06/06 18:23:53 | 001,792,000 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\authui.dll
[2011/06/06 18:23:53 | 001,158,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\webservices.dll
[2011/06/06 18:23:53 | 000,933,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sqlsrv32.dll
[2011/06/06 18:23:53 | 000,732,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\imapi2fs.dll
[2011/06/06 18:23:53 | 000,345,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fveapi.dll
[2011/06/06 18:23:53 | 000,341,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msdrm.dll
[2011/06/06 18:23:53 | 000,252,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iepeers.dll
[2011/06/06 18:23:53 | 000,235,008 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winsta.dll
[2011/06/06 18:23:53 | 000,084,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dot3api.dll
[2011/06/06 18:23:53 | 000,049,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netfxperf.dll
[2011/06/06 18:23:52 | 001,712,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\xpsservices.dll
[2011/06/06 18:23:52 | 001,555,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\certmgr.dll
[2011/06/06 18:23:52 | 001,441,280 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wlanpref.dll
[2011/06/06 18:23:52 | 001,243,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMNetMgr.dll
[2011/06/06 18:23:52 | 001,009,152 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mcmde.dll
[2011/06/06 18:23:52 | 000,695,808 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuapi.dll
[2011/06/06 18:23:52 | 000,630,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\evr.dll
[2011/06/06 18:23:52 | 000,547,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PortableDeviceApi.dll
[2011/06/06 18:23:52 | 000,403,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\gdi32.dll
[2011/06/06 18:23:52 | 000,288,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MSNP.ax
[2011/06/06 18:23:52 | 000,285,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\schtasks.exe
[2011/06/06 18:23:52 | 000,263,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vpnike.dll
[2011/06/06 18:23:52 | 000,220,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wintrust.dll
[2011/06/06 18:23:52 | 000,220,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mcbuilder.exe
[2011/06/06 18:23:52 | 000,219,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d3d10_1core.dll
[2011/06/06 18:23:52 | 000,183,808 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\prncache.dll
[2011/06/06 18:23:52 | 000,109,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\userenv.dll
[2011/06/06 18:23:51 | 002,262,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SyncCenter.dll
[2011/06/06 18:23:51 | 002,072,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMPEncEn.dll
[2011/06/06 18:23:51 | 001,082,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sppobjs.dll
[2011/06/06 18:23:51 | 001,024,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmpmde.dll
[2011/06/06 18:23:51 | 000,605,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmpeffects.dll
[2011/06/06 18:23:51 | 000,412,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\aepdu.dll
[2011/06/06 18:23:51 | 000,409,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\photowiz.dll
[2011/06/06 18:23:51 | 000,302,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\cmd.exe
[2011/06/06 18:23:51 | 000,296,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\AudioSes.dll
[2011/06/06 18:23:51 | 000,279,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\framedyn.dll
[2011/06/06 18:23:50 | 000,551,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\localsec.dll
[2011/06/06 18:23:50 | 000,503,296 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\imapi2.dll
[2011/06/06 18:23:50 | 000,501,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WinSATAPI.dll
[2011/06/06 18:23:50 | 000,492,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\win32spl.dll
[2011/06/06 18:23:50 | 000,424,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\aeinv.dll
[2011/06/06 18:23:50 | 000,324,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netdiagfx.dll
[2011/06/06 18:23:50 | 000,298,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bcryptprimitives.dll
[2011/06/06 18:23:50 | 000,296,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfds.dll
[2011/06/06 18:23:50 | 000,257,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\stobject.dll
[2011/06/06 18:23:50 | 000,257,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfreadwrite.dll
[2011/06/06 18:23:50 | 000,206,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\framedynos.dll
[2011/06/06 18:23:50 | 000,197,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\credui.dll
[2011/06/06 18:23:50 | 000,171,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fde.dll
[2011/06/06 18:23:50 | 000,144,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cdd.dll
[2011/06/06 18:23:49 | 002,746,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\gameux.dll
[2011/06/06 18:23:49 | 000,762,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\azroles.dll
[2011/06/06 18:23:49 | 000,504,320 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\biocpl.dll
[2011/06/06 18:23:49 | 000,378,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msinfo32.exe
[2011/06/06 18:23:49 | 000,253,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tcpipcfg.dll
[2011/06/06 18:23:49 | 000,244,224 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spp.dll
[2011/06/06 18:23:49 | 000,223,232 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\QSHVHOST.DLL
[2011/06/06 18:23:49 | 000,166,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\inetpp.dll
[2011/06/06 18:23:49 | 000,165,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netid.dll
[2011/06/06 18:23:49 | 000,152,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ncsi.dll
[2011/06/06 18:23:49 | 000,100,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\davclnt.dll
[2011/06/06 18:23:48 | 003,211,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msi.dll
[2011/06/06 18:23:48 | 002,755,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\themeui.dll
[2011/06/06 18:23:48 | 001,050,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\printui.dll
[2011/06/06 18:23:48 | 000,934,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\FirewallControlPanel.dll
[2011/06/06 18:23:48 | 000,854,016 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dbghelp.dll
[2011/06/06 18:23:48 | 000,625,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mscms.dll
[2011/06/06 18:23:48 | 000,571,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mspbda.dll
[2011/06/06 18:23:48 | 000,552,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msdri.dll
[2011/06/06 18:23:48 | 000,508,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dxgi.dll
[2011/06/06 18:23:48 | 000,477,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PhotoScreensaver.scr
[2011/06/06 18:23:48 | 000,442,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\winspool.drv
[2011/06/06 18:23:48 | 000,405,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wisptis.exe
[2011/06/06 18:23:48 | 000,337,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\conhost.exe
[2011/06/06 18:23:48 | 000,307,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wusa.exe
[2011/06/06 18:23:48 | 000,303,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\scansetting.dll
[2011/06/06 18:23:48 | 000,229,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\XpsRasterService.dll
[2011/06/06 18:23:48 | 000,196,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mfreadwrite.dll
[2011/06/06 18:23:48 | 000,187,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rpchttp.dll
[2011/06/06 18:23:48 | 000,172,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wintrust.dll
[2011/06/06 18:23:48 | 000,168,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\credui.dll
[2011/06/06 18:23:48 | 000,145,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\IPHLPAPI.DLL
[2011/06/06 18:23:48 | 000,144,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\basecsp.dll
[2011/06/06 18:23:48 | 000,122,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\aitagent.exe
[2011/06/06 18:23:48 | 000,067,072 | —- | C] (Microsoft Corporation) – C:\Windows\splwow64.exe
[2011/06/06 18:23:47 | 001,031,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdpcore.dll
[2011/06/06 18:23:47 | 000,776,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\calc.exe
[2011/06/06 18:23:47 | 000,488,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\evr.dll
[2011/06/06 18:23:47 | 000,459,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DXP.dll
[2011/06/06 18:23:47 | 000,418,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sppwinob.dll
[2011/06/06 18:23:47 | 000,335,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WinSATAPI.dll
[2011/06/06 18:23:47 | 000,305,152 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\taskcomp.dll
[2011/06/06 18:23:47 | 000,207,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cfgmgr32.dll
[2011/06/06 18:23:47 | 000,186,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ocsetup.exe
[2011/06/06 18:23:47 | 000,161,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ocsetapi.dll
[2011/06/06 18:23:46 | 002,983,424 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\UIRibbon.dll
[2011/06/06 18:23:46 | 002,494,464 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netshell.dll
[2011/06/06 18:23:46 | 001,457,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DxpTaskSync.dll
[2011/06/06 18:23:46 | 001,160,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MSMPEG2ENC.DLL
[2011/06/06 18:23:46 | 000,850,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mmsys.cpl
[2011/06/06 18:23:46 | 000,780,008 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ci.dll
[2011/06/06 18:23:46 | 000,778,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sqlsrv32.dll
[2011/06/06 18:23:46 | 000,658,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PerfCenterCPL.dll
[2011/06/06 18:23:46 | 000,509,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ntshrui.dll
[2011/06/06 18:23:46 | 000,348,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\eapp3hst.dll
[2011/06/06 18:23:46 | 000,303,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\eapphost.dll
[2011/06/06 18:23:46 | 000,264,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\upnp.dll
[2011/06/06 18:23:46 | 000,263,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\hal.dll
[2011/06/06 18:23:46 | 000,232,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\scecli.dll
[2011/06/06 18:23:46 | 000,221,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mprapi.dll
[2011/06/06 18:23:46 | 000,176,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ie4uinit.exe
[2011/06/06 18:23:46 | 000,148,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\t2embed.dll
[2011/06/06 18:23:46 | 000,128,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dwmredir.dll
[2011/06/06 18:23:46 | 000,128,000 | —- | C] (Microsoft) – C:\Windows\SysNative\Robocopy.exe
[2011/06/06 18:23:46 | 000,112,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\thumbcache.dll
[2011/06/06 18:23:46 | 000,078,720 | —- | C] (Hewlett-Packard Company) – C:\Windows\SysNative\drivers\HpSAMD.sys
[2011/06/06 18:23:45 | 002,851,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\themeui.dll
[2011/06/06 18:23:45 | 002,341,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msi.dll
[2011/06/06 18:23:45 | 000,932,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\printui.dll
[2011/06/06 18:23:45 | 000,675,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DXPTaskRingtone.dll
[2011/06/06 18:23:45 | 000,429,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\puiobj.dll
[2011/06/06 18:23:45 | 000,352,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmpeffects.dll
[2011/06/06 18:23:45 | 000,235,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\onex.dll
[2011/06/06 18:23:45 | 000,179,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\Classpnp.sys
[2011/06/06 18:23:45 | 000,158,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\aaclient.dll
[2011/06/06 18:23:45 | 000,136,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sspicli.dll
[2011/06/06 18:23:45 | 000,116,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\prncache.dll
[2011/06/06 18:23:45 | 000,046,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msasn1.dll
[2011/06/06 18:23:44 | 002,504,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMVCORE.DLL
[2011/06/06 18:23:44 | 001,689,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netcenter.dll
[2011/06/06 18:23:44 | 001,363,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wdc.dll
[2011/06/06 18:23:44 | 001,120,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sdengin2.dll
[2011/06/06 18:23:44 | 000,799,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msftedit.dll
[2011/06/06 18:23:44 | 000,691,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\VAN.dll
[2011/06/06 18:23:44 | 000,483,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\StructuredQuery.dll
[2011/06/06 18:23:44 | 000,475,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wlangpui.dll
[2011/06/06 18:23:44 | 000,462,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wiadefui.dll
[2011/06/06 18:23:44 | 000,411,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wlangpui.dll
[2011/06/06 18:23:44 | 000,406,016 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\scesrv.dll
[2011/06/06 18:23:44 | 000,273,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SndVol.exe
[2011/06/06 18:23:44 | 000,246,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\scansetting.dll
[2011/06/06 18:23:44 | 000,243,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wow64.dll
[2011/06/06 18:23:44 | 000,239,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dskquoui.dll
[2011/06/06 18:23:44 | 000,213,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MMDevAPI.dll
[2011/06/06 18:23:44 | 000,142,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\net1.exe
[2011/06/06 18:23:44 | 000,139,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rpchttp.dll
[2011/06/06 18:23:44 | 000,131,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\aaclient.dll
[2011/06/06 18:23:44 | 000,095,232 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\regapi.dll
[2011/06/06 18:23:44 | 000,080,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\davclnt.dll
[2011/06/06 18:23:44 | 000,067,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\samcli.dll
[2011/06/06 18:23:44 | 000,063,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wscapi.dll
[2011/06/06 18:23:43 | 002,621,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wucltux.dll
[2011/06/06 18:23:43 | 002,311,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wpdshext.dll
[2011/06/06 18:23:43 | 002,146,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\SyncCenter.dll
[2011/06/06 18:23:43 | 001,750,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\pnidui.dll
[2011/06/06 18:23:43 | 000,782,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\webservices.dll
[2011/06/06 18:23:43 | 000,515,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\timedate.cpl
[2011/06/06 18:23:43 | 000,424,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rastls.dll
[2011/06/06 18:23:43 | 000,340,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\srchadmin.dll
[2011/06/06 18:23:43 | 000,248,832 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wksprt.exe
[2011/06/06 18:23:43 | 000,225,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netdiagfx.dll
[2011/06/06 18:23:43 | 000,167,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\QSHVHOST.DLL
[2011/06/06 18:23:43 | 000,124,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\fde.dll
[2011/06/06 18:23:43 | 000,112,000 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\consent.exe
[2011/06/06 18:23:43 | 000,109,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\t2embed.dll
[2011/06/06 18:23:43 | 000,107,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\QUTIL.DLL
[2011/06/06 18:23:43 | 000,088,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\setupcl.exe
[2011/06/06 18:23:43 | 000,069,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskhost.exe
[2011/06/06 18:23:42 | 000,830,464 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MSMPEG2ENC.DLL
[2011/06/06 18:23:42 | 000,826,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rdpcore.dll
[2011/06/06 18:23:42 | 000,726,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\appwiz.cpl
[2011/06/06 18:23:42 | 000,684,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\TabletPC.cpl
[2011/06/06 18:23:42 | 000,560,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wuapi.dll
[2011/06/06 18:23:42 | 000,332,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\hgcpl.dll
[2011/06/06 18:23:42 | 000,314,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\clusapi.dll
[2011/06/06 18:23:42 | 000,300,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msconfig.exe
[2011/06/06 18:23:42 | 000,215,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netiohlp.dll
[2011/06/06 18:23:42 | 000,166,784 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\basecsp.dll
[2011/06/06 18:23:42 | 000,156,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\winsta.dll
[2011/06/06 18:23:42 | 000,134,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WinSCard.dll
[2011/06/06 18:23:42 | 000,072,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fdeploy.dll
[2011/06/06 18:23:42 | 000,051,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wscapi.dll
[2011/06/06 18:23:42 | 000,050,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\lsmproxy.dll
[2011/06/06 18:23:42 | 000,041,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mimefilt.dll
[2011/06/06 18:23:41 | 002,576,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\gameux.dll
[2011/06/06 18:23:41 | 001,624,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMPEncEn.dll
[2011/06/06 18:23:41 | 001,538,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\inetcpl.cpl
[2011/06/06 18:23:41 | 000,726,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\AuxiliaryDisplayCpl.dll
[2011/06/06 18:23:41 | 000,633,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\riched20.dll
[2011/06/06 18:23:41 | 000,630,784 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\DXPTaskRingtone.dll
[2011/06/06 18:23:41 | 000,486,400 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\powercpl.dll
[2011/06/06 18:23:41 | 000,392,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\imapi2.dll
[2011/06/06 18:23:41 | 000,372,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mtxclu.dll
[2011/06/06 18:23:41 | 000,357,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sharemediacpl.dll
[2011/06/06 18:23:41 | 000,199,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\onex.dll
[2011/06/06 18:23:41 | 000,186,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\logoncli.dll
[2011/06/06 18:23:41 | 000,186,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iepeers.dll
[2011/06/06 18:23:41 | 000,118,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dnscmmc.dll
[2011/06/06 18:23:41 | 000,065,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RpcRtRemote.dll
[2011/06/06 18:23:41 | 000,040,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2011/06/06 18:23:40 | 002,250,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SensorsCpl.dll
[2011/06/06 18:23:40 | 002,193,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\themecpl.dll
[2011/06/06 18:23:40 | 001,264,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sdclt.exe
[2011/06/06 18:23:40 | 001,077,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Narrator.exe
[2011/06/06 18:23:40 | 000,793,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\autoconv.exe
[2011/06/06 18:23:40 | 000,777,728 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\autochk.exe
[2011/06/06 18:23:40 | 000,763,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\autofmt.exe
[2011/06/06 18:23:40 | 000,679,424 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\autoconv.exe
[2011/06/06 18:23:40 | 000,668,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\autochk.exe
[2011/06/06 18:23:40 | 000,666,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mssvp.dll
[2011/06/06 18:23:40 | 000,658,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\autofmt.exe
[2011/06/06 18:23:40 | 000,633,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\comctl32.dll
[2011/06/06 18:23:40 | 000,611,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wpd_ci.dll
[2011/06/06 18:23:40 | 000,455,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\nshipsec.dll
[2011/06/06 18:23:40 | 000,441,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\powercpl.dll
[2011/06/06 18:23:40 | 000,400,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ipsmsnap.dll
[2011/06/06 18:23:40 | 000,359,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\eudcedit.exe
[2011/06/06 18:23:40 | 000,355,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Faultrep.dll
[2011/06/06 18:23:40 | 000,303,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msinfo32.exe
[2011/06/06 18:23:40 | 000,301,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\srchadmin.dll
[2011/06/06 18:23:40 | 000,232,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sppcomapi.dll
[2011/06/06 18:23:40 | 000,222,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\eapphost.dll
[2011/06/06 18:23:40 | 000,202,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\framedyn.dll
[2011/06/06 18:23:40 | 000,195,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\AudioSes.dll
[2011/06/06 18:23:40 | 000,188,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netjoin.dll
[2011/06/06 18:23:40 | 000,181,760 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tcpipcfg.dll
[2011/06/06 18:23:40 | 000,179,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\schtasks.exe
[2011/06/06 18:23:40 | 000,168,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bcdsrv.dll
[2011/06/06 18:23:40 | 000,167,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msutb.dll
[2011/06/06 18:23:40 | 000,166,400 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netiohlp.dll
[2011/06/06 18:23:40 | 000,139,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cabview.dll
[2011/06/06 18:23:40 | 000,130,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shsetup.dll
[2011/06/06 18:23:40 | 000,126,464 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\audiodg.exe
[2011/06/06 18:23:40 | 000,116,224 | —- | C] (Windows ® Codename Longhorn DDK provider) – C:\Windows\SysNative\fms.dll
[2011/06/06 18:23:40 | 000,103,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\IPHLPAPI.DLL
[2011/06/06 18:23:40 | 000,090,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\nci.dll
[2011/06/06 18:23:40 | 000,072,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\regapi.dll
[2011/06/06 18:23:40 | 000,066,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\hbaapi.dll
[2011/06/06 18:23:40 | 000,057,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\licmgr10.dll
[2011/06/06 18:23:40 | 000,042,496 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mimefilt.dll
[2011/06/06 18:23:40 | 000,038,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vpnikeapi.dll
[2011/06/06 18:23:40 | 000,028,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\proquota.exe
[2011/06/06 18:23:39 | 001,466,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\inetcpl.cpl
[2011/06/06 18:23:39 | 001,227,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wdc.dll
[2011/06/06 18:23:39 | 001,066,496 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Display.dll
[2011/06/06 18:23:39 | 000,957,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mblctr.exe
[2011/06/06 18:23:39 | 000,905,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mmsys.cpl
[2011/06/06 18:23:39 | 000,861,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fontext.dll
[2011/06/06 18:23:39 | 000,749,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\batmeter.dll
[2011/06/06 18:23:39 | 000,665,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll
[2011/06/06 18:23:39 | 000,624,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\qedit.dll
[2011/06/06 18:23:39 | 000,478,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\timedate.cpl
[2011/06/06 18:23:39 | 000,414,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wlanui.dll
[2011/06/06 18:23:39 | 000,337,408 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msihnd.dll
[2011/06/06 18:23:39 | 000,222,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wwanconn.dll
[2011/06/06 18:23:39 | 000,211,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mprddm.dll
[2011/06/06 18:23:39 | 000,204,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MSNP.ax
[2011/06/06 18:23:39 | 000,171,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\QAGENT.DLL
[2011/06/06 18:23:39 | 000,171,392 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\scsiport.sys
[2011/06/06 18:23:39 | 000,156,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\prntvpt.dll
[2011/06/06 18:23:39 | 000,155,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mscorier.dll
[2011/06/06 18:23:39 | 000,154,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mscorier.dll
[2011/06/06 18:23:39 | 000,117,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netid.dll
[2011/06/06 18:23:39 | 000,076,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\hidclass.sys
[2011/06/06 18:23:38 | 002,217,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bootres.dll
[2011/06/06 18:23:38 | 001,400,320 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\DxpTaskSync.dll
[2011/06/06 18:23:38 | 001,326,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wlanpref.dll
[2011/06/06 18:23:38 | 001,202,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DiagCpl.dll
[2011/06/06 18:23:38 | 001,003,008 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMNetMgr.dll
[2011/06/06 18:23:38 | 000,933,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Vault.dll
[2011/06/06 18:23:38 | 000,812,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wpccpl.dll
[2011/06/06 18:23:38 | 000,625,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\usercpl.dll
[2011/06/06 18:23:38 | 000,433,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MCEWMDRMNDBootstrap.dll
[2011/06/06 18:23:38 | 000,372,224 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rastls.dll
[2011/06/06 18:23:38 | 000,346,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\untfs.dll
[2011/06/06 18:23:38 | 000,307,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\scesrv.dll
[2011/06/06 18:23:38 | 000,250,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ksproxy.ax
[2011/06/06 18:23:38 | 000,227,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\taskmgr.exe
[2011/06/06 18:23:38 | 000,225,280 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SndVolSSO.dll
[2011/06/06 18:23:38 | 000,223,232 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmpsrcwp.dll
[2011/06/06 18:23:38 | 000,211,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rasppp.dll
[2011/06/06 18:23:38 | 000,098,816 | —- | C] (Microsoft) – C:\Windows\SysWow64\Robocopy.exe
[2011/06/06 18:23:38 | 000,098,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WSTPager.ax
[2011/06/06 18:23:38 | 000,078,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\nci.dll
[2011/06/06 18:23:38 | 000,069,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dot3cfg.dll
[2011/06/06 18:23:38 | 000,052,224 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rtutils.dll
[2011/06/06 18:23:38 | 000,044,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\licmgr10.dll
[2011/06/06 18:23:37 | 001,040,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Display.dll
[2011/06/06 18:23:37 | 000,320,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mtxclu.dll
[2011/06/06 18:23:36 | 000,416,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\prnfldr.dll
[2011/06/06 18:23:36 | 000,352,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\termmgr.dll
[2011/06/06 18:23:36 | 000,324,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\puiobj.dll
[2011/06/06 18:23:36 | 000,300,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\pdh.dll
[2011/06/06 18:23:36 | 000,288,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\eudcedit.exe
[2011/06/06 18:23:36 | 000,279,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxdiagn.dll
[2011/06/06 18:23:36 | 000,257,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskmgr.exe
[2011/06/06 18:23:36 | 000,197,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mssphtb.dll
[2011/06/06 18:23:36 | 000,196,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shdocvw.dll
[2011/06/06 18:23:36 | 000,135,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\XpsRasterService.dll
[2011/06/06 18:23:36 | 000,078,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\hbaapi.dll
[2011/06/06 18:23:36 | 000,031,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\proquota.exe
[2011/06/06 18:23:35 | 003,745,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\accessibilitycpl.dll
[2011/06/06 18:23:35 | 002,202,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\SensorsCpl.dll
[2011/06/06 18:23:35 | 002,157,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\themecpl.dll
[2011/06/06 18:23:35 | 000,856,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\FirewallControlPanel.dll
[2011/06/06 18:23:35 | 000,649,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\appwiz.cpl
[2011/06/06 18:23:35 | 000,416,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wiadefui.dll
[2011/06/06 18:23:35 | 000,413,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PhotoScreensaver.scr
[2011/06/06 18:23:35 | 000,403,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\untfs.dll
[2011/06/06 18:23:35 | 000,366,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\zipfldr.dll
[2011/06/06 18:23:35 | 000,349,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\slui.exe
[2011/06/06 18:23:35 | 000,335,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msieftp.dll
[2011/06/06 18:23:35 | 000,312,832 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\hgcpl.dll
[2011/06/06 18:23:35 | 000,268,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MSAC3ENC.DLL
[2011/06/06 18:23:35 | 000,233,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\defaultlocationcpl.dll
[2011/06/06 18:23:35 | 000,216,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\FWPUCLNT.DLL
[2011/06/06 18:23:35 | 000,193,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sppcomapi.dll
[2011/06/06 18:23:35 | 000,176,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rasppp.dll
[2011/06/06 18:23:35 | 000,155,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\ataport.sys
[2011/06/06 18:23:35 | 000,149,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdpcorekmts.dll
[2011/06/06 18:23:35 | 000,132,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\cabview.dll
[2011/06/06 18:23:35 | 000,127,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\logoncli.dll
[2011/06/06 18:23:35 | 000,115,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WPDShServiceObj.dll
[2011/06/06 18:23:35 | 000,111,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\shsetup.dll
[2011/06/06 18:23:35 | 000,109,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dnscmmc.dll
[2011/06/06 18:23:34 | 002,146,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\networkmap.dll
[2011/06/06 18:23:34 | 001,644,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netcenter.dll
[2011/06/06 18:23:34 | 001,065,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cryptui.dll
[2011/06/06 18:23:34 | 000,898,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\OobeFldr.dll
[2011/06/06 18:23:34 | 000,828,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\fontext.dll
[2011/06/06 18:23:34 | 000,780,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ActionCenter.dll
[2011/06/06 18:23:34 | 000,769,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sud.dll
[2011/06/06 18:23:34 | 000,740,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\batmeter.dll
[2011/06/06 18:23:34 | 000,701,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dsuiext.dll
[2011/06/06 18:23:34 | 000,638,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\VAN.dll
[2011/06/06 18:23:34 | 000,600,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PerfCenterCPL.dll
[2011/06/06 18:23:34 | 000,600,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\usercpl.dll
[2011/06/06 18:23:34 | 000,514,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\qdvd.dll
[2011/06/06 18:23:34 | 000,509,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\qedit.dll
[2011/06/06 18:23:34 | 000,508,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DeviceCenter.dll
[2011/06/06 18:23:34 | 000,503,296 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\srcore.dll
[2011/06/06 18:23:34 | 000,481,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mscms.dll
[2011/06/06 18:23:34 | 000,472,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\azroleui.dll
[2011/06/06 18:23:34 | 000,429,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\localsec.dll
[2011/06/06 18:23:34 | 000,410,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wlanui.dll
[2011/06/06 18:23:34 | 000,373,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\intl.cpl
[2011/06/06 18:23:34 | 000,366,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\qdvd.dll
[2011/06/06 18:23:34 | 000,352,768 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\spwizeng.dll
[2011/06/06 18:23:34 | 000,346,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bcdedit.exe
[2011/06/06 18:23:34 | 000,345,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MediaMetadataHandler.dll
[2011/06/06 18:23:34 | 000,314,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\SndVol.exe
[2011/06/06 18:23:34 | 000,314,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\azroleui.dll
[2011/06/06 18:23:34 | 000,288,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2011/06/06 18:23:34 | 000,268,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mprddm.dll
[2011/06/06 18:23:34 | 000,243,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\taskbarcpl.dll
[2011/06/06 18:23:34 | 000,221,696 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\OnLineIDCpl.dll
[2011/06/06 18:23:34 | 000,220,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\SndVolSSO.dll
[2011/06/06 18:23:34 | 000,175,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\scecli.dll
[2011/06/06 18:23:34 | 000,172,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\twext.dll
[2011/06/06 18:23:34 | 000,154,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\uxlib.dll
[2011/06/06 18:23:34 | 000,146,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\recovery.dll
[2011/06/06 18:23:34 | 000,120,320 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\prntvpt.dll
[2011/06/06 18:23:34 | 000,108,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\psisrndr.ax
[2011/06/06 18:23:34 | 000,104,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Mpeg2Data.ax
[2011/06/06 18:23:34 | 000,095,232 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cca.dll
[2011/06/06 18:23:34 | 000,091,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\isoburn.exe
[2011/06/06 18:23:34 | 000,080,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mscories.dll
[2011/06/06 18:23:34 | 000,077,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdpwsx.dll
[2011/06/06 18:23:34 | 000,066,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\w32tm.exe
[2011/06/06 18:23:34 | 000,024,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sisbkup.dll
[2011/06/06 18:23:33 | 003,727,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\accessibilitycpl.dll
[2011/06/06 18:23:33 | 002,130,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\networkmap.dll
[2011/06/06 18:23:33 | 001,003,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\cryptui.dll
[2011/06/06 18:23:33 | 000,762,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sdcpl.dll
[2011/06/06 18:23:33 | 000,755,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sud.dll
[2011/06/06 18:23:33 | 000,744,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ActionCenter.dll
[2011/06/06 18:23:33 | 000,721,408 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bthprops.cpl
[2011/06/06 18:23:33 | 000,549,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ActionCenterCPL.dll
[2011/06/06 18:23:33 | 000,516,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\main.cpl
[2011/06/06 18:23:33 | 000,474,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sysmon.ocx
[2011/06/06 18:23:33 | 000,460,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\certcli.dll
[2011/06/06 18:23:33 | 000,451,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shwebsvc.dll
[2011/06/06 18:23:33 | 000,445,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spwizeng.dll
[2011/06/06 18:23:33 | 000,421,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\termmgr.dll
[2011/06/06 18:23:33 | 000,419,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\systemcpl.dll
[2011/06/06 18:23:33 | 000,414,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wlanmsm.dll
[2011/06/06 18:23:33 | 000,395,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\prnfldr.dll
[2011/06/06 18:23:33 | 000,389,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sysmon.ocx
[2011/06/06 18:23:33 | 000,327,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\zipfldr.dll
[2011/06/06 18:23:33 | 000,320,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Faultrep.dll
[2011/06/06 18:23:33 | 000,314,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wusa.exe
[2011/06/06 18:23:33 | 000,312,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MCEWMDRMNDBootstrap.dll
[2011/06/06 18:23:33 | 000,304,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\efscore.dll
[2011/06/06 18:23:33 | 000,301,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msieftp.dll
[2011/06/06 18:23:33 | 000,295,424 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\photowiz.dll
[2011/06/06 18:23:33 | 000,266,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MediaMetadataHandler.dll
[2011/06/06 18:23:33 | 000,240,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MFPlay.dll
[2011/06/06 18:23:33 | 000,238,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\recdisc.exe
[2011/06/06 18:23:33 | 000,226,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MSAC3ENC.DLL
[2011/06/06 18:23:33 | 000,218,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\OnLineIDCpl.dll
[2011/06/06 18:23:33 | 000,207,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sysclass.dll
[2011/06/06 18:23:33 | 000,200,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\syncui.dll
[2011/06/06 18:23:33 | 000,196,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\VBICodec.ax
[2011/06/06 18:23:33 | 000,193,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netplwiz.dll
[2011/06/06 18:23:33 | 000,186,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\adsldp.dll
[2011/06/06 18:23:33 | 000,185,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vdsutil.dll
[2011/06/06 18:23:33 | 000,161,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netjoin.dll
[2011/06/06 18:23:33 | 000,155,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\autoplay.dll
[2011/06/06 18:23:33 | 000,135,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\AuxiliaryDisplayServices.dll
[2011/06/06 18:23:33 | 000,097,280 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mshtmled.dll
[2011/06/06 18:23:33 | 000,066,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ncryptui.dll
[2011/06/06 18:23:33 | 000,066,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ksxbar.ax
[2011/06/06 18:23:33 | 000,059,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\fdeploy.dll
[2011/06/06 18:23:33 | 000,058,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tzutil.exe
[2011/06/06 18:23:33 | 000,045,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\httpapi.dll
[2011/06/06 18:23:33 | 000,029,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sspisrv.dll
[2011/06/06 18:23:32 | 000,859,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\OobeFldr.dll
[2011/06/06 18:23:32 | 000,781,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmdrmsdk.dll
[2011/06/06 18:23:32 | 000,738,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmpmde.dll
[2011/06/06 18:23:32 | 000,692,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\bthprops.cpl
[2011/06/06 18:23:32 | 000,656,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\nshwfp.dll
[2011/06/06 18:23:32 | 000,641,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msscp.dll
[2011/06/06 18:23:32 | 000,537,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ActionCenterCPL.dll
[2011/06/06 18:23:32 | 000,495,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drmmgrtn.dll
[2011/06/06 18:23:32 | 000,484,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\DeviceCenter.dll
[2011/06/06 18:23:32 | 000,446,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sqlcese30.dll
[2011/06/06 18:23:32 | 000,428,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\shwebsvc.dll
[2011/06/06 18:23:32 | 000,410,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\systemcpl.dll
[2011/06/06 18:23:32 | 000,345,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\intl.cpl
[2011/06/06 18:23:32 | 000,344,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ntprint.dll
[2011/06/06 18:23:32 | 000,333,824 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ssText3d.scr
[2011/06/06 18:23:32 | 000,321,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\unimdm.tsp
[2011/06/06 18:23:32 | 000,319,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\odbcjt32.dll
[2011/06/06 18:23:32 | 000,313,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ReAgent.dll
[2011/06/06 18:23:32 | 000,297,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ntprint.dll
[2011/06/06 18:23:32 | 000,296,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rstrui.exe
[2011/06/06 18:23:32 | 000,282,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iTVData.dll
[2011/06/06 18:23:32 | 000,281,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iprtrmgr.dll
[2011/06/06 18:23:32 | 000,279,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sethc.exe
[2011/06/06 18:23:32 | 000,271,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iprtrmgr.dll
[2011/06/06 18:23:32 | 000,255,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wavemsp.dll
[2011/06/06 18:23:32 | 000,225,280 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DevicePairingFolder.dll
[2011/06/06 18:23:32 | 000,220,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\defaultlocationcpl.dll
[2011/06/06 18:23:32 | 000,212,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\odbctrac.dll
[2011/06/06 18:23:32 | 000,205,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\efscore.dll
[2011/06/06 18:23:32 | 000,196,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dskquoui.dll
[2011/06/06 18:23:32 | 000,189,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2011/06/06 18:23:32 | 000,173,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\powercfg.cpl
[2011/06/06 18:23:32 | 000,163,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\odbccp32.dll
[2011/06/06 18:23:32 | 000,159,232 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\syncui.dll
[2011/06/06 18:23:32 | 000,152,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2011/06/06 18:23:32 | 000,148,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ifsutil.dll
[2011/06/06 18:23:32 | 000,146,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\autoplay.dll
[2011/06/06 18:23:32 | 000,139,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ieUnatt.exe
[2011/06/06 18:23:32 | 000,133,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\NAPHLPR.DLL
[2011/06/06 18:23:32 | 000,129,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ntlanman.dll
[2011/06/06 18:23:32 | 000,128,000 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\srvcli.dll
[2011/06/06 18:23:32 | 000,114,688 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iesysprep.dll
[2011/06/06 18:23:32 | 000,109,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\nslookup.exe
[2011/06/06 18:23:32 | 000,084,480 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\UserAccountControlSettings.dll
[2011/06/06 18:23:32 | 000,082,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dot3cfg.dll
[2011/06/06 18:23:32 | 000,069,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ntlanman.dll
[2011/06/06 18:23:32 | 000,068,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WSTPager.ax
[2011/06/06 18:23:32 | 000,068,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdpd3d.dll
[2011/06/06 18:23:32 | 000,053,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\acppage.dll
[2011/06/06 18:23:32 | 000,048,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wwanprotdim.dll
[2011/06/06 18:23:32 | 000,044,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tsgqec.dll
[2011/06/06 18:23:32 | 000,042,496 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ftp.exe
[2011/06/06 18:23:32 | 000,037,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rtutils.dll
[2011/06/06 18:23:32 | 000,028,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\secur32.dll
[2011/06/06 18:23:32 | 000,019,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sisbkup.dll
[2011/06/06 18:23:32 | 000,015,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\slwga.dll
[2011/06/06 18:23:31 | 001,672,704 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\networkexplorer.dll
[2011/06/06 18:23:31 | 001,133,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cdosys.dll
[2011/06/06 18:23:31 | 000,840,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\blackbox.dll
[2011/06/06 18:23:31 | 000,805,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\cdosys.dll
[2011/06/06 18:23:31 | 000,743,424 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\blackbox.dll
[2011/06/06 18:23:31 | 000,685,056 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dsuiext.dll
[2011/06/06 18:23:31 | 000,636,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmdrmdev.dll
[2011/06/06 18:23:31 | 000,606,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dfrgui.exe
[2011/06/06 18:23:31 | 000,594,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wvc.dll
[2011/06/06 18:23:31 | 000,592,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msftedit.dll
[2011/06/06 18:23:31 | 000,586,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dfrgui.exe
[2011/06/06 18:23:31 | 000,473,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\riched20.dll
[2011/06/06 18:23:31 | 000,444,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wvc.dll
[2011/06/06 18:23:31 | 000,428,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wlanmsm.dll
[2011/06/06 18:23:31 | 000,358,400 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmpdxm.dll
[2011/06/06 18:23:31 | 000,346,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\nshipsec.dll
[2011/06/06 18:23:31 | 000,333,824 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dot3ui.dll
[2011/06/06 18:23:31 | 000,293,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wsqmcons.exe
[2011/06/06 18:23:31 | 000,270,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\srrstr.dll
[2011/06/06 18:23:31 | 000,270,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sethc.exe
[2011/06/06 18:23:31 | 000,247,808 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ReAgent.dll
[2011/06/06 18:23:31 | 000,222,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wavemsp.dll
[2011/06/06 18:23:31 | 000,217,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WinSCard.dll
[2011/06/06 18:23:31 | 000,202,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\activeds.dll
[2011/06/06 18:23:31 | 000,197,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ocsetup.exe
[2011/06/06 18:23:31 | 000,193,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ksproxy.ax
[2011/06/06 18:23:31 | 000,182,272 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmpsrcwp.dll
[2011/06/06 18:23:31 | 000,178,688 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuwebv.dll
[2011/06/06 18:23:31 | 000,175,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netplwiz.dll
[2011/06/06 18:23:31 | 000,175,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bcdboot.exe
[2011/06/06 18:23:31 | 000,164,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wuwebv.dll
[2011/06/06 18:23:31 | 000,153,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\remotepg.dll
[2011/06/06 18:23:31 | 000,152,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\net1.exe
[2011/06/06 18:23:31 | 000,107,008 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\NAPHLPR.DLL
[2011/06/06 18:23:31 | 000,102,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kstvtune.ax
[2011/06/06 18:23:31 | 000,102,400 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sppnp.dll
[2011/06/06 18:23:31 | 000,101,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\migisol.dll
[2011/06/06 18:23:31 | 000,094,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cabinet.dll
[2011/06/06 18:23:31 | 000,093,696 | —- | C] (Windows ® Codename Longhorn DDK provider) – C:\Windows\SysWow64\fms.dll
[2011/06/06 18:23:31 | 000,086,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\isoburn.exe
[2011/06/06 18:23:31 | 000,071,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wkscli.dll
[2011/06/06 18:23:31 | 000,067,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wsnmp32.dll
[2011/06/06 18:23:31 | 000,048,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ftp.exe
[2011/06/06 18:23:31 | 000,047,616 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tzutil.exe
[2011/06/06 18:23:31 | 000,040,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wtsapi32.dll
[2011/06/06 18:23:31 | 000,034,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\httpapi.dll
[2011/06/06 18:23:31 | 000,026,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WerFaultSecure.exe
[2011/06/06 18:23:30 | 001,911,808 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\OpcServices.dll
[2011/06/06 18:23:30 | 001,087,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dbghelp.dll
[2011/06/06 18:23:30 | 000,899,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Bubbles.scr
[2011/06/06 18:23:30 | 000,623,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\FXSAPI.dll
[2011/06/06 18:23:30 | 000,616,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmdrmsdk.dll
[2011/06/06 18:23:30 | 000,573,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d3d10level9.dll
[2011/06/06 18:23:30 | 000,504,320 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msscp.dll
[2011/06/06 18:23:30 | 000,497,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\main.cpl
[2011/06/06 18:23:30 | 000,406,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wimgapi.dll
[2011/06/06 18:23:30 | 000,363,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\diskraid.exe
[2011/06/06 18:23:30 | 000,327,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wimserv.exe
[2011/06/06 18:23:30 | 000,294,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WindowsAnytimeUpgradeResults.exe
[2011/06/06 18:23:30 | 000,293,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ssText3d.scr
[2011/06/06 18:23:30 | 000,281,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\unimdm.tsp
[2011/06/06 18:23:30 | 000,276,480 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\diskraid.exe
[2011/06/06 18:23:30 | 000,258,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\dxgmms1.sys
[2011/06/06 18:23:30 | 000,254,464 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\qasf.dll
[2011/06/06 18:23:30 | 000,243,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\audiodev.dll
[2011/06/06 18:23:30 | 000,242,688 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Mystify.scr
[2011/06/06 18:23:30 | 000,241,664 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Ribbons.scr
[2011/06/06 18:23:30 | 000,230,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\clusapi.dll
[2011/06/06 18:23:30 | 000,222,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdpencom.dll
[2011/06/06 18:23:30 | 000,213,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ActionQueue.dll
[2011/06/06 18:23:30 | 000,211,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\DevicePairingFolder.dll
[2011/06/06 18:23:30 | 000,209,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mstask.dll
[2011/06/06 18:23:30 | 000,206,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\qasf.dll
[2011/06/06 18:23:30 | 000,206,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mfps.dll
[2011/06/06 18:23:30 | 000,195,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msrating.dll
[2011/06/06 18:23:30 | 000,190,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\qcap.dll
[2011/06/06 18:23:30 | 000,186,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rdpencom.dll
[2011/06/06 18:23:30 | 000,182,784 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WUDFPlatform.dll
[2011/06/06 18:23:30 | 000,180,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ifsutil.dll
[2011/06/06 18:23:30 | 000,172,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\perfmon.exe
[2011/06/06 18:23:30 | 000,157,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\perfmon.exe
[2011/06/06 18:23:30 | 000,153,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\occache.dll
[2011/06/06 18:23:30 | 000,146,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\remotepg.dll
[2011/06/06 18:23:30 | 000,146,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\twext.dll
[2011/06/06 18:23:30 | 000,132,608 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmpshell.dll
[2011/06/06 18:23:30 | 000,125,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\inseng.dll
[2011/06/06 18:23:30 | 000,120,320 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msvfw32.dll
[2011/06/06 18:23:30 | 000,118,784 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\uxlib.dll
[2011/06/06 18:23:30 | 000,113,152 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\setupugc.exe
[2011/06/06 18:23:30 | 000,098,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\nslookup.exe
[2011/06/06 18:23:30 | 000,091,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mapistub.dll
[2011/06/06 18:23:30 | 000,091,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mapi32.dll
[2011/06/06 18:23:30 | 000,084,480 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mciavi32.dll
[2011/06/06 18:23:30 | 000,073,728 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tlscsp.dll
[2011/06/06 18:23:30 | 000,073,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\unimdmat.dll
[2011/06/06 18:23:30 | 000,059,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\umb.dll
[2011/06/06 18:23:30 | 000,056,832 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\runonce.exe
[2011/06/06 18:23:30 | 000,051,200 | —- | C] (Twain Working Group) – C:\Windows\twain_32.dll
[2011/06/06 18:23:30 | 000,050,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\NAPCRYPT.DLL
[2011/06/06 18:23:30 | 000,045,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\acppage.dll
[2011/06/06 18:23:30 | 000,037,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iscsium.dll
[2011/06/06 18:23:30 | 000,034,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\imgutil.dll
[2011/06/06 18:23:30 | 000,031,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\AzSqlExt.dll
[2011/06/06 18:23:30 | 000,029,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netutils.dll
[2011/06/06 18:23:30 | 000,016,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\muifontsetup.dll
[2011/06/06 18:23:30 | 000,014,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\slwga.dll
[2011/06/06 18:23:30 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2011/06/06 18:23:29 | 001,232,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMADMOD.DLL
[2011/06/06 18:23:29 | 001,111,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\onexui.dll
[2011/06/06 18:23:29 | 000,666,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMVSDECD.DLL
[2011/06/06 18:23:29 | 000,489,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d3d10level9.dll
[2011/06/06 18:23:29 | 000,402,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\drmmgrtn.dll
[2011/06/06 18:23:29 | 000,395,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\nltest.exe
[2011/06/06 18:23:29 | 000,337,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\raschap.dll
[2011/06/06 18:23:29 | 000,318,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\raschap.dll
[2011/06/06 18:23:29 | 000,299,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmpdxm.dll
[2011/06/06 18:23:29 | 000,242,176 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\eapp3hst.dll
[2011/06/06 18:23:29 | 000,238,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mstask.dll
[2011/06/06 18:23:29 | 000,232,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bitsadmin.exe
[2011/06/06 18:23:29 | 000,219,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iTVData.dll
[2011/06/06 18:23:29 | 000,215,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wpdwcn.dll
[2011/06/06 18:23:29 | 000,210,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dxdiagn.dll
[2011/06/06 18:23:29 | 000,202,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\input.dll
[2011/06/06 18:23:29 | 000,198,144 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wpdwcn.dll
[2011/06/06 18:23:29 | 000,190,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vdsbas.dll
[2011/06/06 18:23:29 | 000,176,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MFPlay.dll
[2011/06/06 18:23:29 | 000,174,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ocsetapi.dll
[2011/06/06 18:23:29 | 000,160,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\vdsbas.dll
[2011/06/06 18:23:29 | 000,146,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MdSched.exe
[2011/06/06 18:23:29 | 000,146,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\rmcast.sys
[2011/06/06 18:23:29 | 000,135,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shacct.dll
[2011/06/06 18:23:29 | 000,133,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\Kswdmcap.ax
[2011/06/06 18:23:29 | 000,124,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wiavideo.dll
[2011/06/06 18:23:29 | 000,124,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\QSVRMGMT.DLL
[2011/06/06 18:23:29 | 000,122,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\odbccp32.dll
[2011/06/06 18:23:29 | 000,096,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\inseng.dll
[2011/06/06 18:23:29 | 000,095,232 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\logagent.exe
[2011/06/06 18:23:29 | 000,083,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2011/06/06 18:23:29 | 000,080,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\QUTIL.DLL
[2011/06/06 18:23:29 | 000,078,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\UserAccountControlSettings.dll
[2011/06/06 18:23:29 | 000,078,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\tabcal.exe
[2011/06/06 18:23:29 | 000,071,168 | —- | C] (Microsoft Corporation) – C:\Windows\bfsvc.exe
[2011/06/06 18:23:29 | 000,061,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vss_ps.dll
[2011/06/06 18:23:29 | 000,050,688 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\runonce.exe
[2011/06/06 18:23:29 | 000,048,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PrintIsolationProxy.dll
[2011/06/06 18:23:29 | 000,046,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\NAPCRYPT.DLL
[2011/06/06 18:23:29 | 000,046,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cscapi.dll
[2011/06/06 18:23:29 | 000,025,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\vpnikeapi.dll
[2011/06/06 18:23:29 | 000,017,408 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\syssetup.dll
[2011/06/06 18:23:28 | 001,160,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\OpcServices.dll
[2011/06/06 18:23:28 | 001,148,416 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\IMJP10.IME
[2011/06/06 18:23:28 | 000,978,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMSPDMOD.DLL
[2011/06/06 18:23:28 | 000,902,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMADMOD.DLL
[2011/06/06 18:23:28 | 000,878,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Bubbles.scr
[2011/06/06 18:23:28 | 000,541,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMVSDECD.DLL
[2011/06/06 18:23:28 | 000,527,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmdrmnet.dll
[2011/06/06 18:23:28 | 000,507,392 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmdrmdev.dll
[2011/06/06 18:23:28 | 000,435,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceStatus.dll
[2011/06/06 18:23:28 | 000,431,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WPDSp.dll
[2011/06/06 18:23:28 | 000,427,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PortableDeviceStatus.dll
[2011/06/06 18:23:28 | 000,392,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WMPhoto.dll
[2011/06/06 18:23:28 | 000,350,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WPDSp.dll
[2011/06/06 18:23:28 | 000,325,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msnetobj.dll
[2011/06/06 18:23:28 | 000,318,464 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMPhoto.dll
[2011/06/06 18:23:28 | 000,313,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dot3ui.dll
[2011/06/06 18:23:28 | 000,309,760 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sqlcese30.dll
[2011/06/06 18:23:28 | 000,288,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mssphtb.dll
[2011/06/06 18:23:28 | 000,250,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\qdv.dll
[2011/06/06 18:23:28 | 000,236,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\pdh.dll
[2011/06/06 18:23:28 | 000,224,256 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PortableDeviceSyncProvider.dll
[2011/06/06 18:23:28 | 000,221,184 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Mystify.scr
[2011/06/06 18:23:28 | 000,220,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Ribbons.scr
[2011/06/06 18:23:28 | 000,189,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sqmapi.dll
[2011/06/06 18:23:28 | 000,186,368 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\bitsadmin.exe
[2011/06/06 18:23:28 | 000,183,296 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PortableDeviceSyncProvider.dll
[2011/06/06 18:23:28 | 000,181,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\qcap.dll
[2011/06/06 18:23:28 | 000,163,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\odbctrac.dll
[2011/06/06 18:23:28 | 000,158,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mprapi.dll
[2011/06/06 18:23:28 | 000,153,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\VBICodec.ax
[2011/06/06 18:23:28 | 000,144,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\EhStorAPI.dll
[2011/06/06 18:23:28 | 000,142,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\powercfg.cpl
[2011/06/06 18:23:28 | 000,130,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\desk.cpl
[2011/06/06 18:23:28 | 000,121,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\secproc_ssp_isv.dll
[2011/06/06 18:23:28 | 000,121,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\secproc_ssp.dll
[2011/06/06 18:23:28 | 000,121,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fphc.dll
[2011/06/06 18:23:28 | 000,115,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dot3msm.dll
[2011/06/06 18:23:28 | 000,109,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wiavideo.dll
[2011/06/06 18:23:28 | 000,108,032 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\shacct.dll
[2011/06/06 18:23:28 | 000,107,008 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Kswdmcap.ax
[2011/06/06 18:23:28 | 000,105,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmpshell.dll
[2011/06/06 18:23:28 | 000,104,448 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\logman.exe
[2011/06/06 18:23:28 | 000,099,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\QSVRMGMT.DLL
[2011/06/06 18:23:28 | 000,098,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RegisterIEPKEYs.exe
[2011/06/06 18:23:28 | 000,098,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wudriver.dll
[2011/06/06 18:23:28 | 000,098,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\fphc.dll
[2011/06/06 18:23:28 | 000,091,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\avifil32.dll
[2011/06/06 18:23:28 | 000,089,088 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\amstream.dll
[2011/06/06 18:23:28 | 000,087,552 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wudriver.dll
[2011/06/06 18:23:28 | 000,084,480 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\kstvtune.ax
[2011/06/06 18:23:28 | 000,082,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\logman.exe
[2011/06/06 18:23:28 | 000,078,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spbcd.dll
[2011/06/06 18:23:28 | 000,077,824 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\olethk32.dll
[2011/06/06 18:23:28 | 000,076,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mapistub.dll
[2011/06/06 18:23:28 | 000,076,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mapi32.dll
[2011/06/06 18:23:28 | 000,072,704 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\Mpeg2Data.ax
[2011/06/06 18:23:28 | 000,067,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mshtmled.dll
[2011/06/06 18:23:28 | 000,063,488 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\takeown.exe
[2011/06/06 18:23:28 | 000,062,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PnPUnattend.exe
[2011/06/06 18:23:28 | 000,060,928 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ncryptui.dll
[2011/06/06 18:23:28 | 000,059,392 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\unimdmat.dll
[2011/06/06 18:23:28 | 000,052,224 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rdpd3d.dll
[2011/06/06 18:23:28 | 000,051,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\takeown.exe
[2011/06/06 18:23:28 | 000,036,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tsgqec.dll
[2011/06/06 18:23:28 | 000,031,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\utildll.dll
[2011/06/06 18:23:28 | 000,028,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iscsium.dll
[2011/06/06 18:23:28 | 000,027,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\HotStartUserAgent.dll
[2011/06/06 18:23:28 | 000,021,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\lsmproxy.dll
[2011/06/06 18:23:27 | 000,739,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WMSPDMOD.DLL
[2011/06/06 18:23:27 | 000,681,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WUDFx.dll
[2011/06/06 18:23:27 | 000,436,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmdrmnet.dll
[2011/06/06 18:23:27 | 000,306,688 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RMActivate_ssp.exe
[2011/06/06 18:23:27 | 000,305,152 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011/06/06 18:23:27 | 000,283,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\qdv.dll
[2011/06/06 18:23:27 | 000,265,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msnetobj.dll
[2011/06/06 18:23:27 | 000,226,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WUDFHost.exe
[2011/06/06 18:23:27 | 000,194,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\itircl.dll
[2011/06/06 18:23:27 | 000,176,128 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msorcl32.dll
[2011/06/06 18:23:27 | 000,166,400 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\diskpart.exe
[2011/06/06 18:23:27 | 000,155,136 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\imagehlp.dll
[2011/06/06 18:23:27 | 000,152,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\iscsicli.exe
[2011/06/06 18:23:27 | 000,144,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\iscsicli.exe
[2011/06/06 18:23:27 | 000,143,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mydocs.dll
[2011/06/06 18:23:27 | 000,136,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mydocs.dll
[2011/06/06 18:23:27 | 000,128,512 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\EhStorAPI.dll
[2011/06/06 18:23:27 | 000,128,000 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\desk.cpl
[2011/06/06 18:23:27 | 000,115,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\setupcln.dll
[2011/06/06 18:23:27 | 000,103,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dot3msm.dll
[2011/06/06 18:23:27 | 000,102,400 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mobsync.exe
[2011/06/06 18:23:27 | 000,100,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sppinst.dll
[2011/06/06 18:23:27 | 000,092,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cmstp.exe
[2011/06/06 18:23:27 | 000,084,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\cmstp.exe
[2011/06/06 18:23:27 | 000,079,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\QCLIPROV.DLL
[2011/06/06 18:23:27 | 000,075,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\psisrndr.ax
[2011/06/06 18:23:27 | 000,075,776 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MSDvbNP.ax
[2011/06/06 18:23:27 | 000,074,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fdProxy.dll
[2011/06/06 18:23:27 | 000,072,704 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\netapi32.dll
[2011/06/06 18:23:27 | 000,071,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\QCLIPROV.DLL
[2011/06/06 18:23:27 | 000,071,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\CertPolEng.dll
[2011/06/06 18:23:27 | 000,070,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MuiUnattend.exe
[2011/06/06 18:23:27 | 000,070,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\amstream.dll
[2011/06/06 18:23:27 | 000,066,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\cca.dll
[2011/06/06 18:23:27 | 000,061,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WavDest.dll
[2011/06/06 18:23:27 | 000,061,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\spbcd.dll
[2011/06/06 18:23:27 | 000,061,440 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\djoin.exe
[2011/06/06 18:23:27 | 000,058,880 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\browcli.dll
[2011/06/06 18:23:27 | 000,057,856 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\g711codc.ax
[2011/06/06 18:23:27 | 000,056,832 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\vfwwdm32.dll
[2011/06/06 18:23:27 | 000,051,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wsnmp32.dll
[2011/06/06 18:23:27 | 000,051,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\MultiDigiMon.exe
[2011/06/06 18:23:27 | 000,051,200 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuauclt.exe
[2011/06/06 18:23:27 | 000,047,104 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wkscli.dll
[2011/06/06 18:23:27 | 000,046,592 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\pdhui.dll
[2011/06/06 18:23:27 | 000,043,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\vbisurf.ax
[2011/06/06 18:23:27 | 000,043,008 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\relog.exe
[2011/06/06 18:23:27 | 000,037,888 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\relog.exe
[2011/06/06 18:23:27 | 000,037,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shimgvw.dll
[2011/06/06 18:23:27 | 000,035,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msdmo.dll
[2011/06/06 18:23:27 | 000,028,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\AzSqlExt.dll
[2011/06/06 18:23:27 | 000,025,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netiougc.exe
[2011/06/06 18:23:27 | 000,015,360 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\nrpsrv.dll
[2011/06/06 18:23:27 | 000,014,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\BWUnpairElevated.dll
[2011/06/06 18:23:27 | 000,013,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sscore.dll
[2011/06/06 18:23:26 | 001,027,584 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\IMJP10.IME
[2011/06/06 18:23:26 | 000,434,688 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\FXSTIFF.dll
[2011/06/06 18:23:26 | 000,158,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\itircl.dll
[2011/06/06 18:23:26 | 000,144,384 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmpps.dll
[2011/06/06 18:23:26 | 000,133,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\diskpart.exe
[2011/06/06 18:23:26 | 000,103,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\eappgnui.dll
[2011/06/06 18:23:26 | 000,085,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\secproc_ssp_isv.dll
[2011/06/06 18:23:26 | 000,085,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\secproc_ssp.dll
[2011/06/06 18:23:26 | 000,071,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\resutils.dll
[2011/06/06 18:23:26 | 000,071,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\findstr.exe
[2011/06/06 18:23:26 | 000,069,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rastapi.dll
[2011/06/06 18:23:26 | 000,065,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\CertPolEng.dll
[2011/06/06 18:23:26 | 000,048,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ksxbar.ax
[2011/06/06 18:23:26 | 000,041,472 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\mciqtz32.dll
[2011/06/06 18:23:26 | 000,036,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wuapp.exe
[2011/06/06 18:23:26 | 000,036,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\choice.exe
[2011/06/06 18:23:26 | 000,033,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wuapp.exe
[2011/06/06 18:23:26 | 000,028,672 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\WerFaultSecure.exe
[2011/06/06 18:23:26 | 000,024,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\netbtugc.exe
[2011/06/06 18:23:26 | 000,014,848 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\syssetup.dll
[2011/06/06 18:23:25 | 001,080,320 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\onexui.dll
[2011/06/06 18:23:25 | 000,280,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\RMActivate_ssp.exe
[2011/06/06 18:23:25 | 000,278,016 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2011/06/06 18:23:25 | 000,147,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\RDPENCDD.dll
[2011/06/06 18:23:25 | 000,145,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\sppc.dll
[2011/06/06 18:23:25 | 000,121,344 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sppc.dll
[2011/06/06 18:23:25 | 000,101,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mobsync.exe
[2011/06/06 18:23:25 | 000,094,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\eappgnui.dll
[2011/06/06 18:23:25 | 000,082,944 | —- | C] (Radius Inc.) – C:\Windows\SysWow64\iccvid.dll
[2011/06/06 18:23:25 | 000,079,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\manage-bde.exe
[2011/06/06 18:23:25 | 000,076,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\imagehlp.dll
[2011/06/06 18:23:25 | 000,073,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\cabinet.dll
[2011/06/06 18:23:25 | 000,069,632 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\tlscsp.dll
[2011/06/06 18:23:25 | 000,065,536 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\inetmib1.dll
[2011/06/06 18:23:25 | 000,062,976 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\findstr.exe
[2011/06/06 18:23:25 | 000,059,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\MSDvbNP.ax
[2011/06/06 18:23:25 | 000,053,248 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\odbcconf.dll
[2011/06/06 18:23:25 | 000,052,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\inetmib1.dll
[2011/06/06 18:23:25 | 000,051,712 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\repair-bde.exe
[2011/06/06 18:23:25 | 000,048,640 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\luainstall.dll
[2011/06/06 18:23:25 | 000,045,568 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\g711codc.ax
[2011/06/06 18:23:25 | 000,044,544 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\WUDFCoinstaller.dll
[2011/06/06 18:23:25 | 000,041,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\luainstall.dll
[2011/06/06 18:23:25 | 000,036,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wdiasqmmodule.dll
[2011/06/06 18:23:25 | 000,036,352 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\mciqtz32.dll
[2011/06/06 18:23:25 | 000,035,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\shimgvw.dll
[2011/06/06 18:23:25 | 000,034,304 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\unlodctr.exe
[2011/06/06 18:23:25 | 000,033,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\vbisurf.ax
[2011/06/06 18:23:25 | 000,033,792 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\profprov.dll
[2011/06/06 18:23:25 | 000,030,720 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msdmo.dll
[2011/06/06 18:23:25 | 000,024,064 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\schedcli.dll
[2011/06/06 18:23:25 | 000,022,016 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ReAgentc.exe
[2011/06/06 18:23:25 | 000,021,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\rdprefdrvapi.dll
[2011/06/06 18:23:25 | 000,019,968 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\spopk.dll
[2011/06/06 18:23:25 | 000,018,944 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spopk.dll
[2011/06/06 18:23:25 | 000,017,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\fixmapi.exe
[2011/06/06 18:23:25 | 000,013,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\muifontsetup.dll
[2011/06/06 18:23:24 | 001,164,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\UIRibbonRes.dll
[2011/06/06 18:23:24 | 001,164,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\UIRibbonRes.dll
[2011/06/06 18:23:24 | 000,482,816 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\html.iec
[2011/06/06 18:23:24 | 000,457,216 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\imkr80.ime
[2011/06/06 18:23:24 | 000,072,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\napdsnap.dll
[2011/06/06 18:23:24 | 000,068,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\napdsnap.dll
[2011/06/06 18:23:24 | 000,041,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\FXSMON.dll
[2011/06/06 18:23:24 | 000,041,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\browcli.dll
[2011/06/06 18:23:24 | 000,040,960 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\odbcconf.dll
[2011/06/06 18:23:24 | 000,037,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wups2.dll
[2011/06/06 18:23:24 | 000,036,864 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dsauth.dll
[2011/06/06 18:23:24 | 000,033,280 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wups.dll
[2011/06/06 18:23:24 | 000,031,744 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\usbrpm.sys
[2011/06/06 18:23:24 | 000,030,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dsauth.dll
[2011/06/06 18:23:24 | 000,030,208 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\cscdll.dll
[2011/06/06 18:23:24 | 000,028,160 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shgina.dll
[2011/06/06 18:23:24 | 000,027,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wups.dll
[2011/06/06 18:23:24 | 000,027,648 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\LogonUI.exe
[2011/06/06 18:23:24 | 000,026,624 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\tdi.sys
[2011/06/06 18:23:24 | 000,026,112 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wsdchngr.dll
[2011/06/06 18:23:24 | 000,025,600 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\elsTrans.dll
[2011/06/06 18:23:24 | 000,024,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\bitsperf.dll
[2011/06/06 18:23:24 | 000,023,040 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdprefdrvapi.dll
[2011/06/06 18:23:24 | 000,022,528 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\elsTrans.dll
[2011/06/06 18:23:24 | 000,021,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\TRAPI.dll
[2011/06/06 18:23:24 | 000,021,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\TRAPI.dll
[2011/06/06 18:23:24 | 000,019,456 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\bitsperf.dll
[2011/06/06 18:23:24 | 000,018,432 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\FXSUNATD.exe
[2011/06/06 18:23:24 | 000,017,408 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\schedcli.dll
[2011/06/06 18:23:24 | 000,017,408 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\perfts.dll
[2011/06/06 18:23:24 | 000,012,800 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msfeedssync.exe
[2011/06/06 18:23:24 | 000,012,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msfeedssync.exe
[2011/06/06 18:23:24 | 000,009,728 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\sscore.dll
[2011/06/06 18:23:23 | 000,430,080 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\imkr80.ime
[2011/06/06 18:23:23 | 000,386,048 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\html.iec
[2011/06/06 18:23:23 | 000,361,984 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wow64win.dll
[2011/06/06 18:23:23 | 000,032,896 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\USBCAMD2.sys
[2011/06/06 18:23:23 | 000,021,504 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wsdchngr.dll
[2011/06/06 18:23:23 | 000,020,992 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\shgina.dll
[2011/06/06 18:23:23 | 000,013,824 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wshirda.dll
[2011/06/06 18:23:23 | 000,013,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wow64cpu.dll
[2011/06/06 18:23:23 | 000,013,312 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\C_ISCII.DLL
[2011/06/06 18:23:23 | 000,011,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wshirda.dll
[2011/06/06 18:23:23 | 000,010,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\riched32.dll
[2011/06/06 18:23:23 | 000,010,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\rdpcfgex.dll
[2011/06/06 18:23:23 | 000,009,728 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spwmp.dll
[2011/06/06 18:23:23 | 000,008,704 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\riched32.dll
[2011/06/06 18:23:23 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\spwmp.dll
[2011/06/06 18:23:22 | 012,625,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmploc.DLL
[2011/06/06 18:23:22 | 012,625,408 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wmploc.DLL
[2011/06/06 18:23:22 | 000,011,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\shunimpl.dll
[2011/06/06 18:23:22 | 000,011,264 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\C_ISCII.DLL
[2011/06/06 18:23:22 | 000,010,752 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\shunimpl.dll
[2011/06/06 18:23:22 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDTUQ.DLL
[2011/06/06 18:23:22 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDTUF.DLL
[2011/06/06 18:23:22 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDSG.DLL
[2011/06/06 18:23:22 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\kbdlk41a.dll
[2011/06/06 18:23:22 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDGKL.DLL
[2011/06/06 18:23:22 | 000,008,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDCZ1.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDTUQ.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDTUF.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDSG.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDSF.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDPO.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDNEPR.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\kbdlk41a.dll
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDINTAM.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDINBEN.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDGR1.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDGR1.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDGKL.DLL
[2011/06/06 18:23:22 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDCZ1.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDUS.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDUGHR1.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDTURME.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDTAJIK.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDSF.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDPO.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDNEPR.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDMON.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDMAORI.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDLT1.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDINTEL.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDINTAM.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDINORI.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDINORI.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDINMAR.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDINMAR.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDINKAN.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDINKAN.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDINHIN.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDINBEN.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDBULG.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDBLR.DLL
[2011/06/06 18:23:22 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDBASH.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDUS.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDUGHR1.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDTURME.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDTAJIK.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDMON.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDMAORI.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDLT1.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDINTEL.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDGEO.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDGEO.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDBULG.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDBLR.DLL
[2011/06/06 18:23:22 | 000,006,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\KBDBASH.DLL
[2011/06/06 18:23:22 | 000,005,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\msdxm.ocx
[2011/06/06 18:23:22 | 000,005,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dxmasf.dll
[2011/06/06 18:23:22 | 000,004,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\msdxm.ocx
[2011/06/06 18:23:22 | 000,004,096 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dxmasf.dll
[2011/06/06 18:23:22 | 000,003,072 | -H– | C] (Microsoft Corporation) – C:\Windows\SysNative\api-ms-win-core-ums-l1-1-0.dll
[2011/06/06 18:23:21 | 000,069,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\nlsbres.dll
[2011/06/06 18:23:21 | 000,069,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\nlsbres.dll
[2011/06/06 18:23:21 | 000,052,736 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\BlbEvents.dll
[2011/06/06 18:23:21 | 000,035,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\pifmgr.dll
[2011/06/06 18:23:21 | 000,035,328 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\pifmgr.dll
[2011/06/06 18:23:21 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\spwizres.dll
[2011/06/06 18:23:21 | 000,007,680 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\spwizres.dll
[2011/06/06 18:23:21 | 000,007,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\KBDINHIN.DLL
[2011/06/06 18:23:21 | 000,003,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dpnaddr.dll
[2011/06/06 18:23:21 | 000,002,560 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dpnaddr.dll
[2011/06/06 18:23:14 | 000,209,920 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\PkgMgr.exe
[2011/06/06 18:23:14 | 000,189,952 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\wdscore.dll
[2011/06/06 18:23:06 | 000,323,072 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\drvstore.dll
[2011/06/06 18:23:06 | 000,257,024 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\dpx.dll
[2011/06/06 18:21:23 | 000,529,408 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wbemcomn.dll
[2011/06/06 18:21:23 | 000,524,288 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\wmicmiplugin.dll
[2011/06/06 18:21:16 | 000,933,376 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\SmiEngine.dll
[2011/06/06 18:21:11 | 000,199,168 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\PkgMgr.exe
[2011/06/06 18:20:50 | 000,422,912 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drvstore.dll
[2011/06/06 18:20:50 | 000,399,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\dpx.dll
[2011/06/06 18:06:40 | 001,544,192 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\DWrite.dll
[2011/06/06 18:06:40 | 000,902,656 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\d2d1.dll
[2011/06/06 18:06:40 | 000,739,840 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\d2d1.dll
[2011/05/25 10:39:01 | 000,027,520 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\Diskdump.sys
[2011/05/25 10:38:54 | 000,142,336 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\poqexec.exe
[2011/05/25 10:38:54 | 000,123,904 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\poqexec.exe
[2011/05/11 11:53:24 | 005,562,240 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\ntoskrnl.exe
[2011/05/11 11:53:23 | 003,967,872 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ntkrnlpa.exe
[2011/05/11 11:53:22 | 003,912,576 | —- | C] (Microsoft Corporation) – C:\Windows\SysWow64\ntoskrnl.exe
[2011/05/11 11:53:18 | 000,325,120 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\usbport.sys
[2011/05/11 11:53:17 | 000,007,936 | —- | C] (Microsoft Corporation) – C:\Windows\SysNative\drivers\usbd.sys

========== Files - Modified Within 30 Days ==========

[2011/06/06 19:37:14 | 000,014,832 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/06/06 19:37:14 | 000,014,832 | -H– | M] () – C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/06/06 19:27:34 | 000,726,316 | —- | M] () – C:\Windows\SysNative\PerfStringBackup.INI
[2011/06/06 19:27:34 | 000,628,024 | —- | M] () – C:\Windows\SysNative\perfh009.dat
[2011/06/06 19:27:34 | 000,110,208 | —- | M] () – C:\Windows\SysNative\perfc009.dat
[2011/06/06 19:21:09 | 000,067,584 | –S- | M] () – C:\Windows\bootstat.dat
[2011/06/06 19:21:01 | 3214,188,544 | -HS- | M] () – C:\hiberfil.sys
[2011/06/06 19:20:08 | 000,000,052 | —- | M] () – C:\Windows\SysNative\ashttpstats.csv
[2011/06/06 18:58:35 | 000,416,024 | —- | M] () – C:\Windows\SysNative\FNTCACHE.DAT
[2011/06/06 18:30:00 | 000,175,616 | —- | M] (Microsoft Corporation) – C:\Windows\SysNative\msclmd.dll
[2011/06/06 18:30:00 | 000,152,576 | —- | M] (Microsoft Corporation) – C:\Windows\SysWow64\msclmd.dll
[2011/06/06 17:03:03 | 000,001,145 | —- | M] () – C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/06/06 17:01:18 | 000,009,816 | -HS- | M] () – C:\ProgramData\5ds47mrmh86w0
[2011/05/29 09:11:30 | 000,039,984 | —- | M] (Malwarebytes Corporation) – C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011/05/29 09:11:20 | 000,025,912 | —- | M] (Malwarebytes Corporation) – C:\Windows\SysNative\drivers\mbam.sys

========== Files Created - No Company Name ==========

[2011/06/06 18:24:08 | 000,347,904 | —- | C] () – C:\Windows\SysNative\systemsf.ebd
[2011/06/06 18:23:25 | 000,010,429 | —- | C] () – C:\Windows\SysNative\ScavengeSpace.xml
[2011/06/06 18:23:20 | 000,105,559 | —- | C] () – C:\Windows\SysWow64\RacRules.xml
[2011/06/06 18:23:20 | 000,105,559 | —- | C] () – C:\Windows\SysNative\RacRules.xml
[2011/06/06 18:23:14 | 000,001,041 | —- | C] () – C:\Windows\SysWow64\tcpbidi.xml
[2011/06/06 15:48:40 | 000,009,816 | -HS- | C] () – C:\ProgramData\5ds47mrmh86w0
[2010/07/03 17:07:52 | 000,000,025 | —- | C] () – C:\Users\kevin\AppData\Roaming\bdfvconp.ini
[2010/06/29 11:22:07 | 000,000,000 | —- | C] () – C:\Windows\ativpsrm.bin
[2010/06/29 11:17:59 | 000,034,679 | —- | C] () – C:\Windows\Ascd_log.ini
[2010/06/29 11:16:27 | 000,001,769 | —- | C] () – C:\Windows\Language_trs.ini
[2010/06/29 11:16:25 | 000,026,949 | —- | C] () – C:\Windows\Ascd_tmp.ini
[2010/04/03 00:09:08 | 000,002,023 | —- | C] () – C:\Windows\SysWow64\atipblag.dat
[2009/07/14 13:38:36 | 000,067,584 | –S- | C] () – C:\Windows\bootstat.dat
[2009/07/14 10:35:51 | 000,000,741 | —- | C] () – C:\Windows\SysWow64\NOISE.DAT
[2009/07/14 10:34:42 | 000,215,943 | —- | C] () – C:\Windows\SysWow64\dssec.dat
[2009/07/14 08:10:29 | 000,043,131 | —- | C] () – C:\Windows\mib.bin
[2009/07/14 07:42:10 | 000,064,000 | —- | C] () – C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/14 05:03:59 | 000,364,544 | —- | C] () – C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/11 05:26:10 | 000,673,088 | —- | C] () – C:\Windows\SysWow64\mlang.dat
[2009/04/02 20:30:14 | 000,010,296 | —- | C] () – C:\Windows\SysWow64\drivers\ASUSHWIO.SYS
[2008/10/07 09:13:30 | 000,197,912 | —- | C] () – C:\Windows\SysWow64\physxcudart_20.dll
[2008/10/07 09:13:22 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelSwedish.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelSpanish.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelPortugese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelKorean.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelJapanese.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelGerman.dll
[2008/10/07 09:13:20 | 000,058,648 | —- | C] () – C:\Windows\SysWow64\AgCPanelFrench.dll

========== LOP Check ==========

[2011/04/14 22:19:23 | 000,000,000 | —D | M] – C:\Users\kevin\AppData\Roaming\Azureus
[2010/07/03 16:09:20 | 000,000,000 | —D | M] – C:\Users\kevin\AppData\Roaming\BitDefender
[2010/07/29 18:12:08 | 000,000,000 | —D | M] – C:\Users\kevin\AppData\Roaming\DAEMON Tools Lite
[2011/04/27 11:13:42 | 000,032,626 | —- | M] () – C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2011/05/14 12:20:22 | 000,019,644 | —- | M] () – C:\bdlog.txt
[2010/11/20 20:40:07 | 000,383,786 | RHS- | M] () – C:\bootmgr
[2010/06/11 00:25:22 | 000,008,192 | RHS- | M] () – C:\BOOTSECT.BAK
[2011/06/06 19:21:01 | 3214,188,544 | -HS- | M] () – C:\hiberfil.sys
[2011/06/06 19:21:07 | 4285,587,456 | -HS- | M] () – C:\pagefile.sys

< %systemroot%\Fonts\*.com >
[2009/07/14 13:32:31 | 000,026,040 | —- | M] () – C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2009/07/14 13:32:31 | 000,026,489 | —- | M] () – C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2009/07/14 13:32:31 | 000,029,779 | —- | M] () – C:\Windows\Fonts\GlobalSerif.CompositeFont
[2009/07/14 13:32:31 | 000,043,318 | —- | M] () – C:\Windows\Fonts\GlobalUserInterface.CompositeFont

< %systemroot%\Fonts\*.dll >

< %systemroot%\Fonts\*.ini >
[2009/06/11 04:49:50 | 000,000,065 | —- | M] () – C:\Windows\Fonts\desktop.ini

< %systemroot%\Fonts\*.ini2 >

< %systemroot%\Fonts\*.exe >

< %systemroot%\system32\spool\prtprocs\w32x86\*.* >

< %systemroot%\REPAIR\*.bak1 >

< %systemroot%\REPAIR\*.ini >

< %systemroot%\system32\*.jpg >

< %systemroot%\*.jpg >
[2007/01/05 14:03:26 | 000,145,980 | —- | M] () – C:\Windows\1280x1024.jpg
[2007/01/05 14:02:10 | 000,146,030 | —- | M] () – C:\Windows\1440x900.jpg
[2007/01/05 13:59:10 | 000,185,008 | —- | M] () – C:\Windows\1680x1050.jpg

< %systemroot%\*.png >
[2007/07/04 11:27:34 | 000,017,879 | R— | M] () – C:\Windows\oemlogo.png

< %systemroot%\*.scr >
[2010/04/17 00:04:40 | 000,306,032 | —- | M] (Microsoft Corporation) – C:\Windows\WLXPGSS.SCR

< %systemroot%\*._sy >

< %APPDATA%\Adobe\Update\*.* >

< %ALLUSERSPROFILE%\Favorites\*.* >

< %APPDATA%\Microsoft\*.* >

< %PROGRAMFILES%\*.* >
[2009/07/14 12:54:24 | 000,000,174 | -HS- | M] () – C:\Program Files (x86)\desktop.ini

< %APPDATA%\Update\*.* >

< %systemroot%\*. /mp /s >

< %systemroot%\System32\config\*.sav >

< %PROGRAMFILES%\bak. /s >

< %systemroot%\system32\bak. /s >

< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >

< %systemroot%\system32\config\systemprofile\*.dat /x >

< %systemroot%\*.config >

< %systemroot%\system32\*.db >

< %PROGRAMFILES%\Internet Explorer\*.dat >

< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >
[2010/07/03 11:18:22 | 000,000,221 | -HS- | M] () – C:\Users\kevin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini

< %USERPROFILE%\Desktop\*.exe >
[2010/07/07 19:16:00 | 004,614,113 | —- | M] (LIGHTNING UK!) – C:\Users\kevin\Desktop\SetupImgBurn_2.5.1.0.exe

< %PROGRAMFILES%\Common Files\*.* >

< %systemroot%\*.src >

< %systemroot%\install\*.* >

< %systemroot%\system32\DLL\*.* >

< %systemroot%\system32\HelpFiles\*.* >

< %systemroot%\system32\rundll\*.* >

< %systemroot%\winn32\*.* >

< %systemroot%\Java\*.* >

< %systemroot%\system32\test\*.* >

< %systemroot%\system32\Rundll32\*.* >

< %systemroot%\AppPatch\Custom\*.* >

< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >

< End of report >
Sorry again,
Here is my HighjackThis log - copied and pasted.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:17:31 PM, on 6/06/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Users\Aaron 2\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.iinet.net.au/customers/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~2\FlashFXP\IEFlash.dll
O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - "C:\Program Files\BitDefender\BitDefender 2010\Antispam32\IEToolbar.dll" (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1126716267-3827778198-1193308169-1005\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background (User 'Aaron 2')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc…ash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{E97D5F5C-62E6-4887-863E-707CE3A242E3}: NameServer = 192.168.1.254
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: BitDefender Arrakis Server (Arrakis3) - BitDefender S.R.L. http://www.bitdefender.com - C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender S.R.L. - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

–
End of file - 8134 bytes
Hello again, it seems as though only my sons account is affected. I cannot launch programs from his account, the other 3 accounts are ok. Thanks for your time, sorry to stuff you all around. Kevin
Hi kayaref,

:welcome:

My name is Tomk. I would be glad to take a look at your log and help you with solving any malware problems. Logs can take a while to research, so please be patient and I'd be grateful if you would note the following:

  • I will be working on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for the issues on this machine.
  • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
  • It's often worth reading through these instructions and printing them for ease of reference.
  • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
  • Please reply to this thread. Do not start a new topic.

Download ComboFix from one of these locations:

Link 1
Link 2

* IMPORTANT !!! Save ComboFix.exe to your Desktop


  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link –> http://forums.whatthetech.com/How_Disable_…ams_t96260.html

  • Double click on ComboFix.exe & follow the prompts.

  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.


[external image: Posted Image]



Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

[external image: Posted Image]


Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply.


Notes:

1. Do not mouse-click Combofix's window while it is running. That may cause it to stall.
2. Do not "re-run" Combofix. If you have a problem, reply back for further instructions.
3. ComboFix may reset a number of Internet Explorer's settings, including making I-E the default browser.
4. Combofix prevents autorun of ALL CD, floppy and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you – please tell your helper.
5. CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
Hi Tomk, Thank you for helping me. I followed your instructions. There were a couple of things: 1. I had to run Combofix as administrator as I would get a prompt in my sons account asking what program to use to run Combofix. 2. I disabled Bitdefender but the window popped up a couple of times while running Combofix. Thanks again Here is the log file:

Attachments:

kayaref,

Let's get an online scan.

ESET Online Scanner:

Note: You can use either Internet Explorer or Mozilla FireFox for this scan. You will however need to disable your current installed Anti-Virus, how to do so can be read here.

Vista users: You will need to to right-click on the either the IE or FF icon in the Start Menu or Quick Launch Bar on the Taskbar and select Run as Administrator from the context menu.

  • Please go here then click on: [external image: Posted Image]

    Note: If using Mozilla Firefox you will need to download esetsmartinstaller_enu.exe when prompted then double click on it to install.
    All of the below instructions are compatible with either Internet Explorer or Mozilla FireFox.

  • Select the option YES, I accept the Terms of Use then click on: [external image: Posted Image]
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is NOT checked, and the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Now click on: [external image: Posted Image]
  • The virus signature database… will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • When completed select Uninstall application on close if you so wish, make sure you copy the logfile first!
  • Now click on: [external image: Posted Image]
  • Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.

Note: Do not forget to re-enable your Anti-Virus application after running the above scan!
Hi Tomk, It took ages to do a scan. Please find attached log file. Before I started the scan from my sons account I tried to disable the screensaver but I was getting the following error: C:\Windows\System32\rundll32.exe could not be found. I was also getting this error before when trying to look at some settings in Control Panel. I still cannot launch any programs from my sons account. Anyway here is the Eset log file. Thanks for your time. ESETSmartInstaller@High as CAB hook log: OnlineScanner64.ocx - registred OK OnlineScanner.ocx - registred OK # version=7 # iexplore.exe=8.00.7600.16385 (win7_rtm.090713-1255) # OnlineScanner.ocx=1.0.0.6526 # api_version=3.0.2 # EOSSerial= # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2011-06-10 11:45:58 # local_time=2011-06-10 07:45:58 (+0800, W. Australia Standard Time) # country="Australia" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=512 16777215 100 0 0 0 0 0 # compatibility_mode=5893 16776573 100 94 0 59333083 0 0 # compatibility_mode=8192 67108863 100 0 486 486 0 0 # scanned=96981 # found=1 # cleaned=0 # scan_time=3145 C:\Users\Emma 2\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\47\42cc9baf-69b33d11 multiple threats (unable to clean) 00000000000000000000000000000000 I esets_scanner_update returned -1 esets_gle=53251 # version=7 # iexplore.exe=8.00.7600.16385 (win7_rtm.090713-1255) # OnlineScanner.ocx=1.0.0.6526 # api_version=3.0.2 # EOSSerial= # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2011-06-10 01:41:05 # local_time=2011-06-10 09:41:05 (+0800, W. Australia Standard Time) # country="Australia" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=512 16777215 100 0 0 0 0 0 # compatibility_mode=5893 16776573 100 94 0 59336377 0 0 # compatibility_mode=8192 67108863 100 0 3780 3780 0 0 # scanned=171173 # found=1 # cleaned=0 # scan_time=6758 C:\Users\Emma 2\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\47\42cc9baf-69b33d11 multiple threats (unable to clean) 00000000000000000000000000000000 I
Hi Tomk, I still cannot launch any applications from my sons account. I am getting the following error when trying to access apps from Control Panel (eg screensaver). C\:WINDOWS\SYSTEM32\RUNDLL32.EXE NOT FOUND. When trying to launch an application a dialog box pops up asking which program to use to open the application. This only seems to occur on my sons account, the other 3 seem to be ok. Regards, Kevin
kayaref, In windows 7, all tools must be ran as administrator. Can you produce an OTL logs in your sons account (you will need to run as administrator) If you can… then please click all under extra registry before clicking in Run Scan.
kayaref, There should have been two files. Did you happen to save the other one also? Also, you say you cannot launch any applications from your sons account… yet you are able to run ComboFix and OTL. Do you really mean there ae some specific applications that you cannot run?

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI