This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Found Trojan! [Solved]

16 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

HJT log shows #17 listed, Nameserver 192.168.2.1 which is to my Belkin wireless Router… unsure: Never had this listed in my HJT log before….. :PC not acting normal. Trojan was quarantined.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:00:59 AM, on 07/30/2012
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\WINDOWS\arservice.exe
C:\Program Files\DirecTV\DirecTV\Kernel\DMP\CLDTVHNService.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Macrium\Reflect\ReflectService.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\HP\KBD\KBD.EXE
C:\program files\real\realplayer\update\realsched.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe
C:\Program Files\Microsoft\BingBar\7.1.361.0\SeaPort.exe
C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files\Microsoft\BingBar\7.1.361.0\BingExt.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\webhelper.dll
O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files\WOT\WOT.dll
O2 - BHO: (no name) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - (no file)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll
O3 - Toolbar: Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - "C:\Program Files\Microsoft\BingBar\7.1.361.0\BingExt.dll" (file missing)
O3 - Toolbar: Foxit PDF Creator Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\program files\real\realplayer\update\realsched.exe" -osboot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: AutorunsDisabled
O4 - Startup: WKCALREM.LNK = C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/4.0.1.0…xControl_32.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} -
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownlo…sreqlab_nvd.cab
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} (OnlineScanner Control) - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {7D2FB79E-E58C-4DB5-A36F-AC1C73967F4D} (Qualys BrowserCheck) - https://browsercheck.qualys.com/qbc_ax.cab
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} -
O16 - DPF: {A4639D2F-774E-11D3-A490-00C04F6843FB} -
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} (SABScanProcesses Class) - http://www.superadblocker.com/activex/sabspx.cab
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} -
O16 - DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} -
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} -
O16 - DPF: {CB50428B-657F-47DF-9B32-671F82AA73F7} (Photodex Presenter AX control) - http://www.photodex.com/pxplay.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shock…ash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{5C327A0F-6F4B-4E51-A037-21D6A1FF9E0F}: NameServer = 192.168.2.1
O18 - Protocol: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files\WOT\WOT.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: CLDTVHNService - Unknown owner - C:\Program Files\DirecTV\DirecTV\Kernel\DMP\CLDTVHNService.exe
O23 - Service: Google Desktop Manager 5.9.1005.12335 (GoogleDesktopManager-051210-111108) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate1c9316637dc9d00) (gupdate1c9316637dc9d00) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McciCMService - Alcatel-Lucent - C:\Program Files\Common Files\Motive\McciCMService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Macrium Reflect Image Mounting Service (ReflectService.exe) - Unknown owner - C:\Program Files\Macrium\Reflect\ReflectService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: User Profile Hive Cleanup (UPHClean) - Windows ® Codename Longhorn DDK provider - C:\Program Files\UPHClean\uphclean.exe

–
End of file - 9136 bytes
Hi Lewg,

:welcome:

My name is Tomk. I would be glad to take a look at your log and help you with solving any malware problems. Logs can take a while to research, so please be patient and I'd be grateful if you would note the following:

  • I will be working on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for the issues on this machine.
  • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
  • It's often worth reading through these instructions and printing them for ease of reference.
  • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
  • Please reply to this thread. Do not start a new topic.

Nothing obvious showing. Let's get a better view of things.

Please download DDS by sUBs from one of the following links and save it to your desktop.
    • DDS.scr
    • DDS.pif
  • Disable any script blocking protection (How to Disable your Security Programs)
  • Double click DDS icon to run the tool (may take up to 3 minutes to run)
  • When done, DDS.txt will open.
  • After a few moments, attach.txt will open in a second window.
  • Save both reports to your desktop.
—————————————————
  • Post the contents of the DDS.txt report in your next reply
  • Attach the Attach.txt report to your post by scroling down to the Attachments area and then clicking Browse. Browse to where you saved the file, and click Open and the click UPLOAD.
. DDS (Ver_2011-08-26.01) - NTFSx86 Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.1.0 Run by [removed] at 15:31:14 on 2012-08-01 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.958.316 [GMT -4:00] . AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095} . ============== Running Processes =============== . C:\WINDOWS\system32\svchost.exe -k DcomLaunch svchost.exe c:\Program Files\Microsoft Security Client\MsMpEng.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe C:\WINDOWS\system32\spoolsv.exe svchost.exe C:\Program Files\SUPERAntiSpyware\SASCORE.EXE C:\WINDOWS\arservice.exe C:\Program Files\DirecTV\DirecTV\Kernel\DMP\CLDTVHNService.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\Program Files\Common Files\Motive\McciCMService.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\HPZipm12.exe C:\Program Files\Macrium\Reflect\ReflectService.exe svchost.exe C:\WINDOWS\system32\svchost.exe -k imgsvc C:\Program Files\UPHClean\uphclean.exe C:\WINDOWS\system32\dllhost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Microsoft Security Client\msseces.exe C:\HP\KBD\KBD.EXE C:\program files\real\realplayer\update\realsched.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe C:\Program Files\Microsoft\BingBar\7.1.361.0\SeaPort.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe . ============== Pseudo HJT Report =============== . uSearchMigratedDefaultURL = uStart Page = hxxp://msn.com/ uInternet Connection Wizard,ShellNext = iexplore uURLSearchHooks: UrlSearchHook Class: {00000000-6e41-4fd3-8538-502f5495e5fc} - c:\program files\ask.com\GenericAskToolbar.dll BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: Bing Bar Helper: {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - c:\program files\microsoft\bingbar\7.1.361.0\BingExt.dll BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll BHO: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No File BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll BHO: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - No File BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\googletoolbar3.dll BHO: hpWebHelper Class: {aaae832a-5fff-4661-9c8f-369692d1dcb9} - c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\plugin\webhelper.dll BHO: WOT Helper: {c920e44a-7f78-4e64-bdd7-a57026e7feb7} - c:\program files\wot\WOT.dll BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - No File BHO: Foxit PDF Creator Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre7\bin\jp2ssv.dll TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar3.dll TB: WOT: {71576546-354d-41c9-aae8-31f2ec22bf0d} - c:\program files\wot\WOT.dll TB: Bing Bar: {eec0f710-38b5-4aba-99bf-ec87564a4e13} - "c:\program files\microsoft\bingbar\7.1.361.0\BingExt.dll" TB: Foxit PDF Creator Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey mRun: [KBD] c:\hp\kbd\KBD.EXE mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot StartupFolder: c:\docume~1\compaq~1\startm~1\programs\startup\wkcalrem.lnk - c:\program files\common files\microsoft shared\works shared\WkCalRem.exe StartupFolder: c:\docume~1\compaq~1\startm~1\programs\startup\autoru~1\erunta~1.lnk - c:\program files\erunt\AUTOBACK.EXE StartupFolder: c:\documents and settings\compaq_administrator\start menu\programs\startup\autorunsdisabled\wkcalrem.lnk.disabled StartupFolder: c:\documents and settings\compaq_administrator\start menu\programs\startup\autorunsdisabled\wordweb.lnk.disabled uPolicies-explorer: EditLevel = 0 (0x0) uPolicies-explorer: NoCommonGroups = 0 (0x0) IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab DPF: {7D2FB79E-E58C-4DB5-A36F-AC1C73967F4D} - hxxps://browsercheck.qualys.com/qbc_ax.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} DPF: {A4639D2F-774E-11D3-A490-00C04F6843FB} DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} - hxxp://www.superadblocker.com/activex/sabspx.cab DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab DPF: {CB50428B-657F-47DF-9B32-671F82AA73F7} - hxxp://www.photodex.com/pxplay.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab TCP: Interfaces\{5C327A0F-6F4B-4E51-A037-21D6A1FF9E0F} : NameServer = 192.168.2.1 TCP: Interfaces\{892900FC-9814-4488-99C0-81491C1EE93D} : DhcpNameServer = [removed] [removed] [removed] [removed] TCP: Interfaces\{DE6A30FD-221E-48A6-B77C-0C5CE0CB4B3E} : DhcpNameServer = 192.168.1.254 192.168.1.254 Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - c:\program files\hp\hpcoretech\comp\hpuiprot.dll Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - c:\program files\wot\WOT.dll Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL Hosts: 127.0.0.1 www.spywareinfo.com . ================= FIREFOX =================== . FF - ProfilePath - c:\documents and settings\compaq_administrator\application data\mozilla\firefox\profiles\788pfasp.default\ FF - prefs.js: browser.search.selectedEngine - Ask.com FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FXTV5&o=101703&locale=en_US&apn_uid=c80c9f65-1bd6-4acb-a5fc-5a70e42c30cd&apn_ptnrs=F3&apn_sauid=9A9D072F-5CE4-480B-9B9E-87D6253EB727&apn_dtid=YYYYYYYYUS&&q= FF - prefs.js: network.proxy.type - 0 FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll FF - plugin: c:\documents and settings\compaq_administrator\application data\mozilla\plugins\npPxPlay.dll FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll FF - plugin: c:\program files\foxit software\foxit reader\plugins\npFoxitReaderPlugin.dll FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll FF - plugin: c:\program files\google\update\1.3.21.115\npGoogleUpdate3.dll FF - plugin: c:\program files\java\jre7\bin\new_plugin\npdeployJava1.dll FF - plugin: c:\program files\java\jre7\bin\new_plugin\npjp2.dll FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll FF - plugin: c:\program files\mozilla firefox\plugins\npCouponPrinter.dll FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll FF - plugin: c:\program files\mozilla firefox\plugins\npMozCouponPrinter.dll FF - plugin: c:\program files\mozilla firefox\plugins\nprpplugin.dll FF - plugin: c:\program files\real\realplayer\netscape6\nprpplugin.dll . —- FIREFOX POLICIES —- FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109221 FF - user.js: extensions.BabylonToolbar_i.babExt - FF - user.js: extensions.BabylonToolbar_i.srcExt - ss FF - user.js: extensions.BabylonToolbar_i.id - 5415158c0000000000000017319e0782 FF - user.js: extensions.BabylonToolbar_i.hardId - 5415158c0000000000000017319e0782 FF - user.js: extensions.BabylonToolbar_i.instlDay - 15454 FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:32:19 FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar FF - user.js: extensions.BabylonToolbar_i.aflt - babsst FF - user.js: extensions.BabylonToolbar_i.smplGrp - none FF - user.js: extensions.BabylonToolbar_i.tlbrId - base FF - user.js: extensions.BabylonToolbar_i.instlRef - sst . ============= SERVICES / DRIVERS =============== . R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2011-4-18 171064] R0 pssnap;Paramount Software Snapshot Filter;c:\windows\system32\drivers\pssnap.sys [2012-5-25 16064] R1 MpKsl01da5ca2;MpKsl01da5ca2;c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{b7bd1acc-5ce5-4f7a-89aa-4e772d3c8f7a}\MpKsl01da5ca2.sys [2012-8-1 29904] R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880] R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664] R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-8-11 116608] R2 CLDTVHNService;CLDTVHNService;c:\program files\directv\directv\kernel\dmp\CLDTVHNService.exe [2009-9-17 75048] R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328] R2 ntk_dtv;ntk_dtv;c:\program files\directv\directv\kernel\dmp\ntk_dtv.sys [2009-9-17 119792] R2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\macrium\reflect\ReflectService.exe [2012-5-25 224960] R3 BBUpdate;BBUpdate;c:\program files\microsoft\bingbar\7.1.361.0\SeaPort.EXE [2012-2-10 240408] RUnknown MpKslf4f5475f;MpKslf4f5475f; [x] S2 BBSvc;BingBar Service;c:\program files\microsoft\bingbar\7.1.361.0\BBSvc.EXE [2012-2-10 193816] S2 gupdate1c9316637dc9d00;Google Update Service (gupdate1c9316637dc9d00);c:\program files\google\update\GoogleUpdate.exe [2008-10-18 133104] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-5-13 250056] S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [2011-12-2 23456] S3 esgiguard;esgiguard;\??\c:\program files\enigma software group\spyhunter\esgiguard.sys –> c:\program files\enigma software group\spyhunter\esgiguard.sys [?] S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335;c:\program files\google\google desktop search\GoogleDesktop.exe [2007-8-15 30192] S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2008-10-18 133104] S3 mbamchameleon;mbamchameleon;c:\windows\system32\drivers\mbamchameleon.sys [2012-5-8 32072] S3 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-2-8 34064] S3 PCD5SRVC{8A863ACB-F5F6CC6A-05010003};PCD5SRVC{8A863ACB-F5F6CC6A-05010003} - PCDR Kernel Mode Service Helper Driver;c:\progra~1\pc-doc~1\PCD5SRVC.pkms [2006-2-7 21120] S3 PSMounter;Macrium Reflect Image Explorer Service;c:\windows\system32\drivers\psmounter.sys [2012-5-25 53952] . =============== Created Last 30 ================ . 2012-08-01 19:05:40 29904 —-a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{b7bd1acc-5ce5-4f7a-89aa-4e772d3c8f7a}\MpKsl01da5ca2.sys 2012-08-01 19:01:05 29904 —-a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{b7bd1acc-5ce5-4f7a-89aa-4e772d3c8f7a}\MpKslf4f5475f.sys 2012-08-01 12:17:35 6891424 —-a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{b7bd1acc-5ce5-4f7a-89aa-4e772d3c8f7a}\mpengine.dll 2012-07-30 20:47:12 6891424 ——w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll 2012-07-29 01:02:41 ——– d—–w- c:\windows\system32\wbem\repository\FS 2012-07-29 01:02:41 ——– d—–w- c:\windows\system32\wbem\Repository 2012-07-29 01:01:32 ——– d—–w- c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP 2012-07-16 12:00:12 ——– d—–w- c:\documents and settings\compaq_administrator\application data\RealNetworks 2012-07-14 15:41:23 ——– d—–w- c:\documents and settings\compaq_administrator\application data\Overlook 2012-07-14 15:40:07 ——– d—–w- c:\program files\WinPcap 2012-07-14 15:40:03 ——– d—–w- c:\documents and settings\all users\application data\Overlook 2012-07-14 15:40:00 ——– d—–w- c:\program files\Overlook Fing 2.1 . ==================== Find3M ==================== . 2012-07-21 14:18:31 70344 —-a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-07-21 14:18:31 426184 —-a-w- c:\windows\system32\FlashPlayerApp.exe 2012-07-03 17:46:44 22344 —-a-w- c:\windows\system32\drivers\mbam.sys 2012-06-14 13:14:30 499712 —-a-w- c:\windows\system32\msvcp71.dll 2012-06-14 13:14:30 348160 —-a-w- c:\windows\system32\msvcr71.dll 2012-06-13 13:19:59 1866112 —-a-w- c:\windows\system32\win32k.sys 2012-06-05 15:50:25 1372672 —-a-w- c:\windows\system32\msxml6.dll 2012-06-05 15:50:25 1172480 —-a-w- c:\windows\system32\msxml3.dll 2012-06-04 04:32:08 152576 —-a-w- c:\windows\system32\schannel.dll 2012-06-02 19:19:44 22040 —-a-w- c:\windows\system32\wucltui.dll.mui 2012-06-02 19:19:38 219160 —-a-w- c:\windows\system32\wuaucpl.cpl 2012-06-02 19:19:38 15384 —-a-w- c:\windows\system32\wuaucpl.cpl.mui 2012-06-02 19:19:34 15384 —-a-w- c:\windows\system32\wuapi.dll.mui 2012-06-02 19:19:30 17944 —-a-w- c:\windows\system32\wuaueng.dll.mui 2012-06-02 19:18:58 275696 —-a-w- c:\windows\system32\mucltui.dll 2012-06-02 19:18:58 214256 —-a-w- c:\windows\system32\muweb.dll 2012-06-02 19:18:58 17136 —-a-w- c:\windows\system32\mucltui.dll.mui 2012-05-31 13:22:09 599040 —-a-w- c:\windows\system32\crypt32.dll 2012-05-25 13:52:47 12992 —-a-w- c:\windows\system32\drivers\PSVolAcc.sys 2012-05-25 13:52:37 16064 —-a-w- c:\windows\system32\drivers\pssnap.sys 2012-05-25 13:52:31 53952 —-a-w- c:\windows\system32\drivers\psmounter.sys 2012-05-16 15:08:26 916992 —-a-w- c:\windows\system32\wininet.dll 2012-05-11 14:42:33 43520 ——w- c:\windows\system32\licmgr10.dll 2012-05-11 14:42:33 1469440 ——w- c:\windows\system32\inetcpl.cpl 2012-05-11 11:38:02 385024 ——w- c:\windows\system32\html.iec 2012-05-09 03:01:25 32072 —-a-w- c:\windows\system32\drivers\mbamchameleon.sys 2012-05-04 13:12:30 2192640 —-a-w- c:\windows\system32\ntoskrnl.exe 2012-05-04 12:32:19 2069120 —-a-w- c:\windows\system32\ntkrnlpa.exe . ============= FINISH: 15:32:42.07 ===============

Attachments:

Let's give this a try:

Download ComboFix:

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

* IMPORTANT !!! Save ComboFix.exe to your Desktop


  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link –> http://forums.whatthetech.com/How_Disable_…ams_t96260.html

  • Double click on ComboFix.exe & follow the prompts.

  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.

  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.


[external image: Posted Image]



Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

[external image: Posted Image]


Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply.


Notes:

1. Do not mouse-click Combofix's window while it is running. That may cause it to stall.
2. Do not "re-run" Combofix. If you have a problem, reply back for further instructions.
3. ComboFix may reset a number of Internet Explorer's settings, including making I-E the default browser.
4. Combofix prevents autorun of ALL CD, floppy and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you – please tell your helper.
5. CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
ComboFix 12-07-31.03 - Compaq_Administrator 08/01/2012 19:02:33.8.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.958.554 [GMT -4:00]
Running from: c:\documents and settings\[removed]\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\default_user_class.dat.LOG
c:\windows\system32\URTTemp
c:\windows\system32\URTTemp\fusion.dll
c:\windows\system32\URTTemp\mscoree.dll
c:\windows\system32\URTTemp\mscoree.dll.local
c:\windows\system32\URTTemp\mscorsn.dll
c:\windows\system32\URTTemp\mscorwks.dll
c:\windows\system32\URTTemp\msvcr71.dll
c:\windows\system32\URTTemp\regtlib.exe
.
.
((((((((((((((((((((((((( Files Created from 2012-07-01 to 2012-08-01 )))))))))))))))))))))))))))))))
.
.
2012-08-01 22:56 . 2012-08-01 22:56 29904 —-a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{2148F167-775A-45CE-A7C3-728D199972D1}\MpKsld81531af.sys
2012-08-01 22:52 . 2012-08-01 22:52 29904 —-a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{2148F167-775A-45CE-A7C3-728D199972D1}\MpKsl3d1b509f.sys
2012-08-01 19:34 . 2012-06-29 08:44 6891424 —-a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{2148F167-775A-45CE-A7C3-728D199972D1}\mpengine.dll
2012-07-30 20:47 . 2012-06-29 08:44 6891424 —-a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-07-29 01:02 . 2012-07-29 01:02 ——– d—–w- c:\windows\system32\wbem\Repository
2012-07-29 01:01 . 2012-07-29 01:01 ——– d—–w- c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP
2012-07-16 12:00 . 2012-07-16 12:00 ——– d—–w- c:\documents and settings\Compaq_Administrator\Application Data\RealNetworks
2012-07-14 15:41 . 2012-07-14 15:41 ——– d—–w- c:\documents and settings\Compaq_Administrator\Application Data\Overlook
2012-07-14 15:40 . 2012-07-14 15:40 ——– d—–w- c:\program files\WinPcap
2012-07-14 15:40 . 2012-07-14 15:40 ——– d—–w- c:\documents and settings\All Users\Application Data\Overlook
2012-07-14 15:40 . 2012-07-14 15:40 ——– d—–w- c:\program files\Overlook Fing 2.1
2012-07-07 02:40 . 2012-07-07 02:40 ——– d—–w- c:\windows\system32\config\systemprofile\Application Data\Foxit Software
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-21 14:18 . 2012-05-13 16:45 426184 —-a-w- c:\windows\system32\FlashPlayerApp.exe
2012-07-21 14:18 . 2011-07-09 13:27 70344 —-a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-07-03 17:46 . 2008-05-31 18:04 22344 —-a-w- c:\windows\system32\drivers\mbam.sys
2012-06-14 13:14 . 2003-03-19 00:14 499712 —-a-w- c:\windows\system32\msvcp71.dll
2012-06-14 13:14 . 2003-02-21 08:42 348160 —-a-w- c:\windows\system32\msvcr71.dll
2012-06-13 13:19 . 2004-08-09 21:00 1866112 —-a-w- c:\windows\system32\win32k.sys
2012-06-10 16:01 . 2012-06-10 16:01 181064 —-a-w- c:\windows\PSEXESVC.EXE
2012-06-05 15:50 . 2009-08-19 22:07 1372672 —-a-w- c:\windows\system32\msxml6.dll
2012-06-05 15:50 . 2004-08-09 21:00 1172480 —-a-w- c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2004-08-09 21:00 152576 —-a-w- c:\windows\system32\schannel.dll
2012-06-02 19:19 . 2007-05-23 02:46 22040 —-a-w- c:\windows\system32\wucltui.dll.mui
2012-06-02 19:19 . 2007-05-23 02:46 15384 —-a-w- c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 19:19 . 2004-08-09 21:00 329240 —-a-w- c:\windows\system32\wucltui.dll
2012-06-02 19:19 . 2004-08-09 21:00 219160 —-a-w- c:\windows\system32\wuaucpl.cpl
2012-06-02 19:19 . 2004-08-09 21:00 210968 —-a-w- c:\windows\system32\wuweb.dll
2012-06-02 19:19 . 2007-05-23 02:46 15384 —-a-w- c:\windows\system32\wuapi.dll.mui
2012-06-02 19:19 . 2005-05-26 08:16 45080 -c–a-w- c:\windows\system32\wups2.dll
2012-06-02 19:19 . 2004-08-09 21:00 97304 —-a-w- c:\windows\system32\cdm.dll
2012-06-02 19:19 . 2004-08-09 21:00 53784 —-a-w- c:\windows\system32\wuauclt.exe
2012-06-02 19:19 . 2004-08-09 21:00 35864 -c–a-w- c:\windows\system32\wups.dll
2012-06-02 19:19 . 2007-05-23 02:46 17944 —-a-w- c:\windows\system32\wuaueng.dll.mui
2012-06-02 19:19 . 2004-08-09 21:00 577048 —-a-w- c:\windows\system32\wuapi.dll
2012-06-02 19:19 . 2004-08-09 21:00 1933848 —-a-w- c:\windows\system32\wuaueng.dll
2012-06-02 19:18 . 2011-03-09 10:34 275696 —-a-w- c:\windows\system32\mucltui.dll
2012-06-02 19:18 . 2011-03-09 10:34 214256 —-a-w- c:\windows\system32\muweb.dll
2012-06-02 19:18 . 2011-03-09 10:34 17136 —-a-w- c:\windows\system32\mucltui.dll.mui
2012-05-31 13:22 . 2004-08-09 21:00 599040 —-a-w- c:\windows\system32\crypt32.dll
2012-05-25 13:52 . 2012-05-25 14:49 12992 —-a-w- c:\windows\system32\drivers\PSVolAcc.sys
2012-05-25 13:52 . 2012-05-25 14:49 16064 —-a-w- c:\windows\system32\drivers\pssnap.sys
2012-05-25 13:52 . 2012-05-25 14:49 53952 —-a-w- c:\windows\system32\drivers\psmounter.sys
2012-05-16 15:08 . 2004-08-09 21:00 916992 —-a-w- c:\windows\system32\wininet.dll
2012-05-11 14:42 . 2004-08-09 21:00 43520 ——w- c:\windows\system32\licmgr10.dll
2012-05-11 14:42 . 2004-08-09 21:00 1469440 ——w- c:\windows\system32\inetcpl.cpl
2012-05-11 11:38 . 2004-08-09 21:00 385024 ——w- c:\windows\system32\html.iec
2012-05-09 03:01 . 2012-05-09 00:32 32072 —-a-w- c:\windows\system32\drivers\mbamchameleon.sys
2012-05-04 13:12 . 2004-08-10 04:00 2192640 —-a-w- c:\windows\system32\ntoskrnl.exe
2012-05-04 12:32 . 2004-08-10 04:00 2069120 —-a-w- c:\windows\system32\ntkrnlpa.exe
2011-12-21 07:24 . 2011-12-31 19:27 121816 ——w- c:\program files\mozilla firefox\components\browsercomps.dll
2011-09-12 17:33 . 2011-09-12 17:33 119808 ——w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-02-23_17.06.37 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-12 02:14 . 2009-07-12 02:14 67072 c:\windows\WinSxS\amd64_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d7860533\mfcm90u.dll
+ 2009-07-12 02:14 . 2009-07-12 02:14 67072 c:\windows\WinSxS\amd64_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d7860533\mfcm90.dll
+ 2006-09-28 22:56 . 2006-09-28 22:56 55808 c:\windows\system32\WudfSvc.dll
+ 2006-09-29 00:13 . 2006-09-29 00:13 95344 c:\windows\system32\WUDFCoinstaller.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 38400 c:\windows\system32\wpdshextres.dll
+ 2009-01-30 21:21 . 2009-01-30 21:21 17408 c:\windows\system32\wpdshextautoplay.exe
+ 2004-08-09 21:00 . 2009-01-31 00:35 63488 c:\windows\system32\wpdmtpus.dll
+ 2004-08-09 21:00 . 2009-01-31 00:35 35840 c:\windows\system32\wpdconns.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 99840 c:\windows\system32\wmpshell.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 37376 c:\windows\system32\wmdmps.dll
- 2004-08-09 21:00 . 2005-08-04 01:29 37376 c:\windows\system32\WMDMPS.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 33792 c:\windows\system32\wmdmlog.dll
+ 2009-02-08 11:12 . 2009-02-08 11:12 68224 c:\windows\system32\WanPacket.dll
+ 2007-07-13 14:44 . 2007-07-13 14:44 69632 c:\windows\system32\vuins32.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 41320 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\hpvplui04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 41320 c:\windows\system32\spool\drivers\w32x86\3\hpvplui04.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 41320 c:\windows\system32\spool\drivers\w32x86\3\hpvplui04.dll
+ 2012-07-07 02:40 . 2012-07-07 02:40 38344 c:\windows\system32\spool\drivers\w32x86\3\FXC_ProxyProcess.exe
+ 2012-06-10 20:55 . 2010-07-05 13:15 17272 c:\windows\system32\spmsg.dll
+ 2012-06-21 04:53 . 2012-06-02 19:19 45080 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.6.7600.256\wups2.dll
+ 2012-06-21 04:53 . 2012-06-02 19:19 35864 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.6.7600.256\wups.dll
+ 2009-02-08 11:12 . 2009-02-08 11:12 53299 c:\windows\system32\pthreadVC.dll
- 2005-08-30 21:07 . 2012-02-23 08:01 78716 c:\windows\system32\perfc009.dat
+ 2005-08-30 21:07 . 2012-06-14 07:03 78716 c:\windows\system32\perfc009.dat
+ 2009-02-08 11:12 . 2009-02-08 11:12 88696 c:\windows\system32\Packet.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 27136 c:\windows\system32\mspmsnsv.dll
- 2009-07-03 10:05 . 1998-07-06 05:00 23552 c:\windows\system32\MSMPIDE.DLL
+ 2012-02-25 16:48 . 1998-07-06 06:00 23552 c:\windows\system32\MSMPIDE.DLL
+ 2004-08-09 21:00 . 2012-05-11 14:42 67072 c:\windows\system32\mshtmled.dll
- 2006-10-27 20:09 . 2011-12-17 19:46 55296 c:\windows\system32\msfeedsbs.dll
+ 2006-10-27 20:09 . 2012-05-11 14:42 55296 c:\windows\system32\msfeedsbs.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 11264 c:\windows\system32\LAPRXY.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 25600 c:\windows\system32\jsproxy.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 25600 c:\windows\system32\jsproxy.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 41320 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpvplui04.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 41320 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpvplui04.dll
+ 2012-06-10 22:38 . 2012-04-18 14:05 15720 c:\windows\system32\DRVSTORE\grmnusb_D8D97429CBED2222DA552E1CB4914A2C2D94D11D\I386\grmnusb.sys
+ 2012-06-10 22:38 . 2012-04-18 14:05 25448 c:\windows\system32\DRVSTORE\grmnusb_D8D97429CBED2222DA552E1CB4914A2C2D94D11D\I386\grmngen.sys
+ 2006-09-28 23:00 . 2006-09-28 23:00 82944 c:\windows\system32\drivers\WudfRd.sys
+ 2006-09-28 22:55 . 2006-09-28 22:55 77568 c:\windows\system32\drivers\WudfPf.sys
+ 2004-08-09 21:00 . 2009-01-30 21:20 38528 c:\windows\system32\drivers\wpdusb.sys
+ 2009-02-08 11:12 . 2009-02-08 11:12 34064 c:\windows\system32\drivers\npf.sys
+ 2007-06-19 16:38 . 2012-04-18 14:05 15720 c:\windows\system32\drivers\grmnusb.sys
+ 2007-06-19 16:38 . 2012-04-18 14:05 25448 c:\windows\system32\drivers\grmngen.sys
+ 2007-07-13 14:44 . 2007-07-13 14:44 43008 c:\windows\system32\drivers\dlkfet5b.sys
- 2011-11-24 20:47 . 2011-12-17 19:46 12800 c:\windows\system32\dllcache\xpshims.dll
+ 2011-11-24 20:47 . 2012-05-11 14:42 12800 c:\windows\system32\dllcache\xpshims.dll
+ 2004-08-09 21:00 . 2012-06-02 19:19 35864 c:\windows\system32\dllcache\wups.dll
+ 2004-08-09 21:00 . 2012-06-02 19:19 53784 c:\windows\system32\dllcache\wuauclt.exe
+ 2004-08-09 21:00 . 2009-01-31 00:34 99840 c:\windows\system32\dllcache\wmpshell.dll
+ 2004-08-09 21:00 . 2009-01-31 00:30 64512 c:\windows\system32\dllcache\wmplayer.exe
+ 2004-08-09 21:00 . 2009-01-31 00:34 96256 c:\windows\system32\dllcache\wmpband.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 37376 c:\windows\system32\dllcache\wmdmps.dll
- 2004-08-09 21:00 . 2005-08-04 01:29 37376 c:\windows\system32\dllcache\wmdmps.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 33792 c:\windows\system32\dllcache\wmdmlog.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 27136 c:\windows\system32\dllcache\mspmsnsv.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 67072 c:\windows\system32\dllcache\mshtmled.dll
+ 2007-05-10 00:07 . 2012-05-11 14:42 55296 c:\windows\system32\dllcache\msfeedsbs.dll
- 2007-05-10 00:07 . 2011-12-17 19:46 55296 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 43520 c:\windows\system32\dllcache\licmgr10.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 43520 c:\windows\system32\dllcache\licmgr10.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 11264 c:\windows\system32\dllcache\LAPRXY.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 25600 c:\windows\system32\dllcache\jsproxy.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2004-08-09 21:00 . 2012-06-02 19:19 97304 c:\windows\system32\dllcache\cdm.dll
+ 2012-07-28 18:46 . 2012-08-01 22:55 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2005-08-30 13:51 . 2012-08-01 22:55 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2005-08-30 13:51 . 2012-02-23 05:11 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2012-02-24 05:14 . 2012-08-01 22:55 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
- 2011-12-19 05:28 . 2012-02-23 05:11 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2009-06-25 00:56 . 2009-06-25 00:56 73728 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
+ 2011-12-25 16:07 . 2011-12-25 16:07 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2011-12-25 03:55 . 2011-12-25 03:55 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2003-02-21 00:09 . 2003-02-21 00:09 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2011-12-25 03:55 . 2011-12-25 03:55 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
- 2003-02-21 00:09 . 2003-02-21 00:09 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2011-12-25 03:55 . 2011-12-25 03:55 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2004-07-15 05:32 . 2004-07-15 05:32 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2004-07-15 06:49 . 2004-07-15 06:49 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2011-12-25 04:49 . 2011-12-25 04:49 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2011-12-25 04:49 . 2011-12-25 04:49 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
- 2003-02-21 00:19 . 2003-02-21 00:19 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2002-01-29 00:47 . 2012-04-26 12:28 12288 c:\windows\Microsoft.NET\Framework\v1.0.3705\zh-CHT\System.Drawing.Resources.dll
+ 2002-01-29 00:47 . 2012-04-26 12:21 12288 c:\windows\Microsoft.NET\Framework\v1.0.3705\zh-CHS\System.Drawing.Resources.dll
- 2004-08-03 21:12 . 2011-07-05 19:46 86016 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorld.dll
+ 2004-08-03 21:12 . 2012-01-13 21:03 86016 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorld.dll
+ 2004-08-03 21:12 . 2012-01-13 21:03 73728 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorie.dll
- 2004-08-03 21:12 . 2011-07-05 19:46 73728 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorie.dll
+ 2002-01-29 00:46 . 2012-04-26 12:27 13824 c:\windows\Microsoft.NET\Framework\v1.0.3705\ko\System.Drawing.Resources.dll
- 2002-01-25 06:02 . 2002-01-25 06:02 24576 c:\windows\Microsoft.NET\Framework\v1.0.3705\JA\System.Drawing.Resources.dll
+ 2002-01-25 06:02 . 2012-04-26 12:29 24576 c:\windows\Microsoft.NET\Framework\v1.0.3705\JA\System.Drawing.Resources.dll
+ 2002-02-18 12:30 . 2012-04-26 12:29 13312 c:\windows\Microsoft.NET\Framework\v1.0.3705\it\System.Drawing.Resources.dll
+ 2002-02-18 14:05 . 2012-04-26 12:30 13824 c:\windows\Microsoft.NET\Framework\v1.0.3705\fr\System.Drawing.Resources.dll
+ 2002-02-14 05:15 . 2012-04-26 12:21 13312 c:\windows\Microsoft.NET\Framework\v1.0.3705\es\System.Drawing.Resources.dll
+ 2002-02-22 21:27 . 2012-04-26 12:27 13312 c:\windows\Microsoft.NET\Framework\v1.0.3705\DE\System.Drawing.Resources.dll
+ 2004-08-03 21:11 . 2012-01-13 21:54 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_wp.exe
- 2004-08-03 21:11 . 2011-07-06 13:57 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_wp.exe
+ 2002-06-21 16:31 . 2012-01-13 21:54 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_state.exe
- 2002-06-21 16:31 . 2011-07-06 13:57 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_state.exe
+ 2012-07-13 00:26 . 2012-07-13 00:26 22016 c:\windows\Installer\8deac90.msi
+ 2012-06-14 13:15 . 2012-06-14 13:15 18944 c:\windows\Installer\14d52f9.msi
+ 2012-06-14 13:14 . 2012-06-14 13:14 92672 c:\windows\Installer\14d52ec.msi
+ 2012-05-11 07:04 . 2012-05-11 07:04 49936 c:\windows\Installer\{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe
- 2011-12-13 23:06 . 2011-12-13 23:06 49936 c:\windows\Installer\{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe
- 2011-10-17 16:04 . 2012-02-16 08:02 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2011-10-17 16:04 . 2012-05-13 16:47 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2012-06-13 00:48 . 2012-06-13 00:48 70552 c:\windows\Installer\{0564C76B-8E1F-4157-8654-B0F9F308BEE9}\SCLite_Icon.exe
- 2011-10-17 16:02 . 2011-10-17 16:02 70552 c:\windows\Installer\{0564C76B-8E1F-4157-8654-B0F9F308BEE9}\SCLite_Icon.exe
+ 2009-02-26 18:06 . 2009-02-26 18:06 16712 c:\windows\Installer\$PatchCache$\Managed\00002159FA0090400000000000F01FEC\12.0.6612\PXBPROXY.DLL
+ 2009-02-26 18:06 . 2009-02-26 18:06 68488 c:\windows\Installer\$PatchCache$\Managed\00002159FA0090400000000000F01FEC\12.0.6612\PXBCOM.EXE
+ 2012-06-13 07:01 . 2012-03-01 11:01 12800 c:\windows\ie8updates\KB2699988-IE8\xpshims.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 66560 c:\windows\ie8updates\KB2699988-IE8\mshtmled.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 55296 c:\windows\ie8updates\KB2699988-IE8\msfeedsbs.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 43520 c:\windows\ie8updates\KB2699988-IE8\licmgr10.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 25600 c:\windows\ie8updates\KB2699988-IE8\jsproxy.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 12800 c:\windows\ie8updates\KB2675157-IE8\xpshims.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 66560 c:\windows\ie8updates\KB2675157-IE8\mshtmled.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 55296 c:\windows\ie8updates\KB2675157-IE8\msfeedsbs.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 43520 c:\windows\ie8updates\KB2675157-IE8\licmgr10.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 25600 c:\windows\ie8updates\KB2675157-IE8\jsproxy.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 90112 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_cbe18bc7\System.Drawing.Design.dll
+ 2012-06-14 07:05 . 2012-06-14 07:05 90112 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_b54cdf0f\System.Drawing.Design.dll
+ 2012-04-12 07:05 . 2012-04-12 07:05 90112 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_a902538c\System.Drawing.Design.dll
+ 2012-02-24 02:22 . 2012-02-24 02:22 61440 c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_41ba4075\CustomMarshalers.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 90112 c:\windows\assembly\NativeImages1_v1.0.3705\System.Drawing.Design\1.0.3300.0__b03f5f7f11d50a3a_abafaf0a\System.Drawing.Design.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 90112 c:\windows\assembly\NativeImages1_v1.0.3705\System.Drawing.Design\1.0.3300.0__b03f5f7f11d50a3a_78021299\System.Drawing.Design.dll
+ 2012-05-11 07:09 . 2012-05-11 07:09 61440 c:\windows\assembly\NativeImages1_v1.0.3705\CustomMarshalers\1.0.3300.0__b03f5f7f11d50a3a_08743f2c\CustomMarshalers.dll
+ 2012-05-11 07:11 . 2012-05-11 07:11 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\f121ccced1aa14badb316d8d9be5154d\UIAutomationProvider.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\316e223f2ab8c69cd6a5a06de21650ec\System.Windows.Presentation.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\3b34fc2c8c94ffe21f75168980b69dfe\System.Web.DynamicData.Design.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\34c988dea48c291b4e648941207e83fb\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\7bb7e51275fa19f8b4894c772bdb1e10\System.AddIn.Contract.ni.dll
+ 2012-05-11 07:09 . 2012-05-11 07:09 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\53931181e5a5e194da82605613cda6af\PresentationCFFRasterizer.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\f2be3ad4cda6853d7959a84cec0414c5\Microsoft.Vsa.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 15872 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\f00a18225430e7531135589688d650a1\Microsoft.VisualC.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\8fab9cd28bbc860a34feec119512664d\Microsoft.Build.Framework.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\0eac132c7c36f1c100ae23c956b379e7\Microsoft.Build.Framework.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 73728 c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\655fbbea99e5714fefc2be26f03f8fdc\DriversHQ.DriverDetective.ExceptionLogging.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\d66bc03eb7eae89b4dde2d09eda1414f\dfsvc.ni.exe
+ 2012-05-11 07:18 . 2012-05-11 07:18 25600 c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\016444dfc5f7e3d11c776f2fbc7a4594\Accessibility.ni.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-02-24 02:20 . 2012-02-24 02:20 81920 c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 12288 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_zh-CHT_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 12288 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_zh-CHS_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 13824 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_ko_b03f5f7f11d50a3a\System.Drawing.Resources.dll
- 2005-08-30 20:58 . 2005-08-30 20:58 24576 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_ja_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 24576 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_ja_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 13312 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_it_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 13824 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_fr_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 13312 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_es_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 13312 c:\windows\assembly\GAC\System.Drawing.resources\1.0.3300.0_de_b03f5f7f11d50a3a\System.Drawing.Resources.dll
+ 2012-06-09 12:23 . 2012-06-09 12:23 27499 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCall.dll
+ 2012-06-10 20:51 . 2006-09-28 23:01 58368 c:\windows\$NtUninstallWudf01000$\spuninst\WudfCustom.dll
+ 2012-06-10 20:54 . 2004-08-09 21:00 81920 c:\windows\$NtUninstallwmp11$\wmpshell.dll
+ 2012-06-10 20:54 . 2005-06-24 01:09 73728 c:\windows\$NtUninstallwmp11$\wmplayer.exe
+ 2012-06-10 20:54 . 2004-08-09 21:00 28672 c:\windows\$NtUninstallwmp11$\wmpenc.exe
+ 2012-06-10 20:54 . 2004-08-09 21:00 77824 c:\windows\$NtUninstallwmp11$\wmpband.dll
+ 2012-06-10 20:52 . 2006-03-03 12:33 18944 c:\windows\$NtUninstallWMFDist11$\wpdusb.sys
+ 2012-06-10 20:52 . 2006-03-03 12:33 66560 c:\windows\$NtUninstallWMFDist11$\wpdmtpus.dll
+ 2012-06-10 20:52 . 2006-03-03 12:32 61952 c:\windows\$NtUninstallWMFDist11$\wpdconns.dll
+ 2012-06-10 20:52 . 2006-03-03 12:33 38912 c:\windows\$NtUninstallWMFDist11$\wpd_ci.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 37376 c:\windows\$NtUninstallWMFDist11$\wmdmps.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 29184 c:\windows\$NtUninstallWMFDist11$\wmdmlog.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 38912 c:\windows\$NtUninstallWMFDist11$\wdfmgr.exe
+ 2012-06-10 20:52 . 2005-08-04 01:29 15872 c:\windows\$NtUninstallWMFDist11$\wdfapi.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 47104 c:\windows\$NtUninstallWMFDist11$\uwdf.exe
+ 2012-06-10 20:52 . 2009-02-03 00:01 13312 c:\windows\$NtUninstallWMFDist11$\spuninst\wpdinstallutil.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 25088 c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll
+ 2012-06-10 20:52 . 2008-06-11 07:47 96768 c:\windows\$NtUninstallWMFDist11$\logagent.exe
+ 2012-04-12 07:05 . 2002-02-18 12:30 12800 c:\windows\$NtUninstallKB2656378$\system.drawing.resources.dll
+ 2012-05-11 07:09 . 2011-07-05 19:46 86016 c:\windows\$NtUninstallKB2604042$\mscorld.dll
+ 2012-05-11 07:09 . 2011-07-05 19:46 73728 c:\windows\$NtUninstallKB2604042$\mscorie.dll
+ 2012-05-11 07:09 . 2011-07-06 13:57 32768 c:\windows\$NtUninstallKB2604042$\aspnet_wp.exe
+ 2012-05-11 07:09 . 2011-07-06 13:57 32768 c:\windows\$NtUninstallKB2604042$\aspnet_state.exe
+ 2012-06-10 07:01 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2718704\update\spcustom.dll
+ 2012-06-10 07:01 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2718704\spmsg.dll
+ 2012-06-14 07:01 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2709162\update\spcustom.dll
+ 2012-06-14 07:01 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2709162\spmsg.dll
+ 2012-06-14 07:05 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2707511\update\spcustom.dll
+ 2012-06-14 02:40 . 2012-05-05 03:16 16896 c:\windows\$hf_mig$\KB2707511\update\mpsyschk.dll
+ 2012-06-14 07:05 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2707511\spmsg.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2699988-IE8\update\spcustom.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2699988-IE8\spmsg.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 12800 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\xpshims.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 67072 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\mshtmled.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 55296 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\msfeedsbs.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 43520 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\licmgr10.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 25600 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\jsproxy.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2695962\update\spcustom.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2695962\spmsg.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2686509\update\spcustom.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2686509\spmsg.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2685939\update\spcustom.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2685939\spmsg.dll
+ 2012-05-11 07:02 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2676562\update\spcustom.dll
+ 2012-05-10 11:25 . 2012-04-11 13:53 16896 c:\windows\$hf_mig$\KB2676562\update\mpsyschk.dll
+ 2012-05-11 07:02 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2676562\spmsg.dll
+ 2012-04-12 07:06 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2675157-IE8\update\spcustom.dll
+ 2012-04-12 07:06 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2675157-IE8\spmsg.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 12800 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\xpshims.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 66560 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\mshtmled.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 55296 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\msfeedsbs.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 43520 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\licmgr10.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 25600 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\jsproxy.dll
+ 2012-04-12 07:01 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2653956\update\spcustom.dll
+ 2012-04-12 07:01 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2653956\spmsg.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2647518\update\spcustom.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2647518\spmsg.dll
+ 2012-03-14 07:02 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2641653\update\spcustom.dll
+ 2012-03-14 07:02 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2641653\spmsg.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 26488 c:\windows\$hf_mig$\KB2621440\update\spcustom.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 17272 c:\windows\$hf_mig$\KB2621440\spmsg.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2004-08-09 21:00 . 2009-01-31 00:35 4096 c:\windows\system32\wmvdmoe2.dll
+ 2004-08-09 21:00 . 2009-01-31 00:35 4096 c:\windows\system32\wmvdmod.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 4096 c:\windows\system32\WMVADVE.DLL
+ 2004-08-09 21:00 . 2009-01-31 00:34 4096 c:\windows\system32\WMVADVD.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 4096 c:\windows\system32\wmsdmoe2.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 4096 c:\windows\system32\wmsdmod.dll
+ 2004-08-09 21:00 . 2009-02-03 00:01 8704 c:\windows\system32\wdfmgr.exe
+ 2004-08-09 21:00 . 2009-01-31 00:34 4096 c:\windows\system32\wdfapi.dll
+ 2004-08-09 21:00 . 2009-02-03 00:01 8704 c:\windows\system32\uwdf.exe
- 2006-05-05 03:07 . 2006-05-05 03:07 5632 c:\windows\system32\pndx5032.dll
+ 2012-06-14 13:14 . 2012-06-14 13:14 5632 c:\windows\system32\pndx5032.dll
+ 2012-06-14 13:14 . 2012-06-14 13:14 6656 c:\windows\system32\pndx5016.dll
- 2006-05-05 03:07 . 2006-05-05 03:07 6656 c:\windows\system32\pndx5016.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 4096 c:\windows\system32\MPG4DMOD.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 4096 c:\windows\system32\MP4SDMOD.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 4096 c:\windows\system32\MP43DMOD.dll
+ 2004-08-09 21:00 . 2009-01-31 00:35 4096 c:\windows\system32\dllcache\wmvdmoe2.dll
+ 2004-08-09 21:00 . 2009-01-31 00:35 4096 c:\windows\system32\dllcache\wmvdmod.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 4096 c:\windows\system32\dllcache\wmsdmoe2.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 4096 c:\windows\system32\dllcache\wmsdmod.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 4096 c:\windows\system32\dllcache\MPG4DMOD.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 4096 c:\windows\system32\dllcache\MP4SDMOD.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 4096 c:\windows\system32\dllcache\MP43DMOD.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 7168 c:\windows\system32\dllcache\asferror.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 7168 c:\windows\system32\asferror.dll
- 2004-07-19 17:54 . 2011-07-12 22:05 8192 c:\windows\Microsoft.NET\Framework\v1.0.3705\IEExec.exe
+ 2004-07-19 17:54 . 2012-01-17 05:19 8192 c:\windows\Microsoft.NET\Framework\v1.0.3705\IEExec.exe
+ 2012-06-12 20:48 . 2012-06-12 20:48 9662 c:\windows\Installer\{2D6A5BD9-FE4B-49CD-8D96-2C4746302A82}\ARPPRODUCTICON.exe
- 2012-02-16 08:04 . 2012-02-16 08:04 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2012-06-10 20:54 . 2004-08-09 21:00 8192 c:\windows\$NtUninstallwmp11$\asferror.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 6656 c:\windows\$NtUninstallWMFDist11$\laprxy.dll
+ 2012-05-11 07:09 . 2011-07-12 22:05 8192 c:\windows\$NtUninstallKB2604042$\ieexec.exe
+ 2012-05-10 11:14 . 2012-04-19 11:26 8192 c:\windows\$hf_mig$\KB2686509\update\kblChecker.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2008-07-29 12:05 . 2008-07-29 12:05 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcr90.dll
+ 2008-07-29 12:05 . 2008-07-29 12:05 572928 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcp90.dll
+ 2008-07-29 07:54 . 2008-07-29 07:54 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcm90.dll
+ 2009-07-12 02:11 . 2009-07-12 02:11 624448 c:\windows\WinSxS\amd64_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_069f922e\msvcr90.dll
+ 2009-07-12 02:11 . 2009-07-12 02:11 853312 c:\windows\WinSxS\amd64_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_069f922e\msvcp90.dll
+ 2009-07-12 02:14 . 2009-07-12 02:14 245760 c:\windows\WinSxS\amd64_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_069f922e\msvcm90.dll
+ 2012-04-06 03:13 . 2012-04-06 03:13 299080 c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2006-09-28 22:56 . 2006-09-28 22:56 316416 c:\windows\system32\WUDFx.dll
+ 2006-09-28 22:56 . 2006-09-28 22:56 165376 c:\windows\system32\WudfPlatform.dll
+ 2006-09-28 22:56 . 2006-09-28 22:56 146432 c:\windows\system32\WudfHost.exe
+ 2004-08-09 21:00 . 2009-01-31 00:35 356352 c:\windows\system32\wpdsp.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 133632 c:\windows\system32\WPDShServiceObj.dll
+ 2004-08-09 21:00 . 2009-01-31 00:35 154624 c:\windows\system32\wpdmtp.dll
+ 2004-08-09 21:00 . 2009-01-31 00:35 629760 c:\windows\system32\wpd_ci.dll
+ 2009-02-08 11:12 . 2009-02-08 11:12 240248 c:\windows\system32\wpcap.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 656896 c:\windows\system32\WMVXENCD.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 767488 c:\windows\system32\WMVSENCD.dll
+ 2004-08-09 21:00 . 2009-04-02 03:02 604160 c:\windows\system32\wmspdmod.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 204288 c:\windows\system32\wmpsrcwp.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 130048 c:\windows\system32\wmpps.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 613376 c:\windows\system32\wmpmde.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 295936 c:\windows\system32\wmpeffects.dll
+ 2004-08-09 21:00 . 2009-07-14 03:43 286208 c:\windows\system32\wmpdxm.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 211456 c:\windows\system32\wmpasf.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 938496 c:\windows\system32\WMNetMgr.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 157184 c:\windows\system32\wmidx.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 227328 c:\windows\system32\wmerror.dll
+ 2005-08-04 01:29 . 2009-01-31 00:34 535040 c:\windows\system32\wmdrmsdk.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 348672 c:\windows\system32\wmdrmnet.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 429056 c:\windows\system32\wmdrmdev.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 222208 c:\windows\system32\WMASF.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 757248 c:\windows\system32\WMADMOD.dll
+ 2004-08-09 21:00 . 2012-02-29 14:10 177664 c:\windows\system32\wintrust.dll
- 2004-08-09 21:00 . 2009-12-24 06:59 177664 c:\windows\system32\wintrust.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 105984 c:\windows\system32\url.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 105984 c:\windows\system32\url.dll
+ 2012-05-10 15:00 . 2011-03-18 15:03 340992 c:\windows\system32\sqlite36_engine.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 761344 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\unires.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 740864 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\unidrvui.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 372736 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\unidrv.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 220520 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\hpvplres04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 459112 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\hpvpldrv04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 267112 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\hpinksts9311LM.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 232296 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\hpinksts9311.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 509288 c:\windows\system32\spool\drivers\w32x86\hpdeskjet_3050_j610_a5c2\hpfime51.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 220520 c:\windows\system32\spool\drivers\w32x86\3\hpvplres04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 220520 c:\windows\system32\spool\drivers\w32x86\3\hpvplres04.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 459112 c:\windows\system32\spool\drivers\w32x86\3\hpvpldrv04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 459112 c:\windows\system32\spool\drivers\w32x86\3\hpvpldrv04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 267112 c:\windows\system32\spool\drivers\w32x86\3\hpinksts9311LM.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 267112 c:\windows\system32\spool\drivers\w32x86\3\hpinksts9311LM.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 232296 c:\windows\system32\spool\drivers\w32x86\3\hpinksts9311.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 232296 c:\windows\system32\spool\drivers\w32x86\3\hpinksts9311.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 509288 c:\windows\system32\spool\drivers\w32x86\3\hpfime51.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 509288 c:\windows\system32\spool\drivers\w32x86\3\hpfime51.dll
+ 2012-06-14 13:14 . 2012-06-14 13:14 198832 c:\windows\system32\rmoc3260.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 211456 c:\windows\system32\qasf.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 199168 c:\windows\system32\PortableDeviceWMDRM.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 132096 c:\windows\system32\PortableDeviceWiaCompat.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 166912 c:\windows\system32\PortableDeviceTypes.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 101888 c:\windows\system32\PortableDeviceClassExtension.dll
+ 2009-01-31 00:34 . 2009-01-31 00:34 254976 c:\windows\system32\PortableDeviceApi.dll
+ 2006-05-05 03:07 . 2012-06-14 13:14 272896 c:\windows\system32\pncrt.dll
- 2005-08-30 21:07 . 2012-02-23 08:01 458446 c:\windows\system32\perfh009.dat
+ 2005-08-30 21:07 . 2012-06-14 07:03 458446 c:\windows\system32\perfh009.dat
+ 2012-02-25 16:48 . 2001-10-28 22:42 116224 c:\windows\system32\pdfcmnnt.dll
- 2009-07-03 10:05 . 2001-10-28 21:42 116224 c:\windows\system32\pdfcmnnt.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 206848 c:\windows\system32\occache.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 206848 c:\windows\system32\occache.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 321536 c:\windows\system32\mswmdm.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 611840 c:\windows\system32\mstime.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 611840 c:\windows\system32\mstime.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 414720 c:\windows\system32\msscp.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 175616 c:\windows\system32\mspmsp.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 179712 c:\windows\system32\msnetobj.dll
+ 2006-10-27 20:09 . 2012-05-11 14:42 629760 c:\windows\system32\msfeeds.dll
+ 2006-10-02 19:28 . 2006-10-02 19:28 312128 c:\windows\system32\msdelta.dll
+ 2012-03-12 13:23 . 2008-04-14 10:42 169984 c:\windows\system32\msconfig.exe
+ 2009-01-31 00:33 . 2009-01-31 00:33 259072 c:\windows\system32\MPG4DECD.dll
+ 2009-01-31 00:33 . 2010-03-30 16:24 317440 c:\windows\system32\mp4sdecd.dll
+ 2009-01-31 00:33 . 2009-01-31 00:33 259072 c:\windows\system32\MP43DECD.dll
+ 2005-08-04 01:29 . 2009-01-31 00:33 212992 c:\windows\system32\MFPLAT.dll
+ 2012-07-21 14:18 . 2012-07-21 14:18 686280 c:\windows\system32\Macromed\Flash\FlashUtil32_11_3_300_265_ActiveX.exe
+ 2012-07-21 14:18 . 2012-07-21 14:18 465096 c:\windows\system32\Macromed\Flash\FlashUtil32_11_3_300_265_ActiveX.dll
+ 2012-05-13 16:45 . 2012-07-21 14:18 250056 c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
+ 2004-08-09 21:00 . 2009-01-30 21:37 100864 c:\windows\system32\logagent.exe
+ 2004-08-10 04:00 . 2012-02-29 14:10 148480 c:\windows\system32\imagehlp.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 184320 c:\windows\system32\iepeers.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 184320 c:\windows\system32\iepeers.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 387584 c:\windows\system32\iedkcs32.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 387584 c:\windows\system32\iedkcs32.dll
+ 2004-08-09 21:00 . 2012-05-11 11:38 174080 c:\windows\system32\ie4uinit.exe
- 2004-08-09 21:00 . 2011-12-16 12:23 174080 c:\windows\system32\ie4uinit.exe
- 2011-10-17 16:02 . 2010-11-17 01:11 267112 c:\windows\system32\hpinksts9311LM.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 267112 c:\windows\system32\hpinksts9311LM.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 232296 c:\windows\system32\hpinksts9311.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 232296 c:\windows\system32\hpinksts9311.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 213864 c:\windows\system32\hpinkcoi9311.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 213864 c:\windows\system32\hpinkcoi9311.dll
+ 2012-06-13 00:48 . 2010-11-17 01:10 527208 c:\windows\system32\HPDiscoPM9311.dll
- 2011-10-17 16:02 . 2010-11-17 01:10 527208 c:\windows\system32\HPDiscoPM9311.dll
- 2005-08-30 21:05 . 2012-02-17 18:01 322728 c:\windows\system32\FNTCACHE.DAT
+ 2005-08-30 21:05 . 2012-07-11 07:06 322728 c:\windows\system32\FNTCACHE.DAT
+ 2012-06-13 00:48 . 2010-11-17 01:11 761344 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\unires.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 761344 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\unires.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 740864 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\unidrvui.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 740864 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\unidrvui.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 372736 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\unidrv.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 372736 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\unidrv.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 220520 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpvplres04.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 220520 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpvplres04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 459112 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpvpldrv04.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 459112 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpvpldrv04.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 267112 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpinksts9311LM.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 267112 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpinksts9311LM.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 232296 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpinksts9311.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 232296 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpinksts9311.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 213864 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpinkcoi9311.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 213864 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpinkcoi9311.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 509288 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpfime51.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 509288 c:\windows\system32\DRVSTORE\hpvpl04_08BD41513F8F3D9F619799704F5957A862BD9349\i386\hpfime51.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 991744 c:\windows\system32\drmv2clt.dll
+ 2005-08-04 01:29 . 2009-01-30 21:23 249856 c:\windows\system32\drmupgds.exe
+ 2009-01-31 00:35 . 2009-01-31 00:35 671232 c:\windows\system32\drivers\UMDF\wpdmtpdr.dll
+ 2004-08-09 21:00 . 2012-05-02 13:46 139656 c:\windows\system32\drivers\rdpwd.sys
- 2004-08-09 21:00 . 2011-06-24 14:10 139656 c:\windows\system32\drivers\rdpwd.sys
+ 2011-04-18 17:18 . 2012-03-21 00:44 171064 c:\windows\system32\drivers\MpFilter.sys
+ 2004-08-09 21:00 . 2012-06-02 19:19 210968 c:\windows\system32\dllcache\wuweb.dll
+ 2004-08-09 21:00 . 2012-06-02 19:19 329240 c:\windows\system32\dllcache\wucltui.dll
+ 2004-08-09 21:00 . 2012-06-02 19:19 577048 c:\windows\system32\dllcache\wuapi.dll
+ 2004-08-09 21:00 . 2009-04-02 03:02 604160 c:\windows\system32\dllcache\wmspdmod.dll
+ 2004-08-09 21:00 . 2009-07-14 03:43 286208 c:\windows\system32\dllcache\wmpdxm.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 211456 c:\windows\system32\dllcache\wmpasf.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 938496 c:\windows\system32\dllcache\WMNetMgr.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 157184 c:\windows\system32\dllcache\wmidx.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 227328 c:\windows\system32\dllcache\wmerror.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 222208 c:\windows\system32\dllcache\WMASF.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 757248 c:\windows\system32\dllcache\WMADMOD.dll
+ 2004-08-09 21:00 . 2012-02-29 14:10 177664 c:\windows\system32\dllcache\wintrust.dll
- 2004-08-09 21:00 . 2009-12-24 06:59 177664 c:\windows\system32\dllcache\wintrust.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 916992 c:\windows\system32\dllcache\wininet.dll
+ 2004-08-09 21:00 . 2012-05-16 15:08 916992 c:\windows\system32\dllcache\wininet.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 105984 c:\windows\system32\dllcache\url.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 105984 c:\windows\system32\dllcache\url.dll
+ 2004-08-09 21:00 . 2009-01-30 21:40 317440 c:\windows\system32\dllcache\unregmp2.exe
+ 2004-08-09 21:00 . 2012-06-04 04:32 152576 c:\windows\system32\dllcache\schannel.dll
+ 2004-08-09 21:00 . 2012-05-02 13:46 139656 c:\windows\system32\dllcache\rdpwd.sys
- 2004-08-09 21:00 . 2011-06-24 14:10 139656 c:\windows\system32\dllcache\rdpwd.sys
+ 2004-08-09 21:00 . 2009-01-31 00:34 211456 c:\windows\system32\dllcache\qasf.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 206848 c:\windows\system32\dllcache\occache.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 206848 c:\windows\system32\dllcache\occache.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 321536 c:\windows\system32\dllcache\mswmdm.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 611840 c:\windows\system32\dllcache\mstime.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 611840 c:\windows\system32\dllcache\mstime.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 414720 c:\windows\system32\dllcache\msscp.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 175616 c:\windows\system32\dllcache\mspmsp.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 179712 c:\windows\system32\dllcache\msnetobj.dll
+ 2007-05-10 00:07 . 2012-05-11 14:42 629760 c:\windows\system32\dllcache\msfeeds.dll
- 2004-08-09 21:00 . 2010-11-09 14:52 536576 c:\windows\system32\dllcache\msado15.dll
+ 2004-08-09 21:00 . 2012-05-28 18:16 536576 c:\windows\system32\dllcache\msado15.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 243712 c:\windows\system32\dllcache\mpvis.dll
+ 2010-03-30 16:24 . 2010-03-30 16:24 317440 c:\windows\system32\dllcache\mp4sdecd.dll
+ 2004-08-09 21:00 . 2009-01-30 21:37 100864 c:\windows\system32\dllcache\logagent.exe
+ 2012-06-12 22:18 . 2012-05-11 14:42 521728 c:\windows\system32\dllcache\jsdbgui.dll
+ 2004-08-10 04:00 . 2012-02-29 14:10 148480 c:\windows\system32\dllcache\imagehlp.dll
- 2011-11-24 20:47 . 2011-12-17 19:46 247808 c:\windows\system32\dllcache\ieproxy.dll
+ 2011-11-24 20:47 . 2012-05-11 14:42 247808 c:\windows\system32\dllcache\ieproxy.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 184320 c:\windows\system32\dllcache\iepeers.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 184320 c:\windows\system32\dllcache\iepeers.dll
- 2011-11-24 20:47 . 2011-12-17 19:46 743424 c:\windows\system32\dllcache\iedvtool.dll
+ 2011-11-24 20:47 . 2012-05-11 14:42 743424 c:\windows\system32\dllcache\iedvtool.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 387584 c:\windows\system32\dllcache\iedkcs32.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 387584 c:\windows\system32\dllcache\iedkcs32.dll
- 2004-08-09 21:00 . 2011-12-16 12:23 174080 c:\windows\system32\dllcache\ie4uinit.exe
+ 2004-08-09 21:00 . 2012-05-11 11:38 174080 c:\windows\system32\dllcache\ie4uinit.exe
+ 2004-08-09 21:00 . 2009-01-31 00:33 991744 c:\windows\system32\dllcache\drmv2clt.dll
+ 2004-08-09 21:00 . 2012-05-31 13:22 599040 c:\windows\system32\dllcache\crypt32.dll
- 2004-08-09 21:00 . 2011-09-28 07:06 599040 c:\windows\system32\dllcache\crypt32.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 229376 c:\windows\system32\dllcache\cewmdm.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 542720 c:\windows\system32\dllcache\blackbox.dll
+ 2007-07-13 14:44 . 2007-07-13 14:44 337320 c:\windows\system32\difxapi.dll
+ 2012-05-10 15:00 . 2011-03-18 15:07 501248 c:\windows\system32\dhRichClient3.dll
+ 2004-08-09 21:00 . 2011-09-28 07:06 599040 c:\windows\system32\crypt32(3)(2).dll
+ 2012-04-01 13:10 . 2012-04-11 07:00 262144 c:\windows\system32\config\systemprofile\IETldCache\index.dat
+ 2004-08-09 21:00 . 2009-01-31 00:33 229376 c:\windows\system32\cewmdm.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 542720 c:\windows\system32\blackbox.dll
+ 2004-08-09 21:00 . 2009-01-31 00:33 276992 c:\windows\system32\audiodev.dll
+ 2012-05-10 15:00 . 2011-03-18 15:03 340992 c:\windows\sqlite36_engine.dll
+ 2012-04-06 03:52 . 2012-04-06 03:52 131168 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2012-04-21 11:15 . 2012-04-21 11:15 630784 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2011-12-25 07:50 . 2011-12-25 07:50 389888 c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2011-12-25 07:50 . 2011-12-25 07:50 364816 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2011-12-25 07:50 . 2011-12-25 07:50 989968 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2012-04-25 21:45 . 2012-04-25 21:45 471040 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2011-12-25 03:55 . 2011-12-25 03:55 102400 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2004-07-15 05:33 . 2004-07-15 05:33 102400 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2004-07-15 05:25 . 2004-07-15 05:25 315392 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2011-12-25 03:53 . 2011-12-25 03:53 315392 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2004-07-15 06:49 . 2004-07-15 06:49 258048 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2011-12-25 04:49 . 2011-12-25 04:49 258048 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2004-07-19 17:54 . 2004-07-19 17:54 462848 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Drawing.dll
+ 2004-07-19 17:54 . 2012-04-26 12:27 462848 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Drawing.dll
+ 2004-07-19 17:54 . 2012-01-13 20:59 303104 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorjit.dll
- 2004-07-19 17:54 . 2011-07-05 19:44 303104 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorjit.dll
+ 2004-08-03 21:11 . 2012-01-13 21:54 200704 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_isapi.dll
- 2004-08-03 21:11 . 2011-07-06 13:57 200704 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_isapi.dll
+ 2012-04-11 13:39 . 2012-04-11 13:39 447488 c:\windows\Installer\d3746f0.msi
+ 2012-05-01 07:00 . 2012-05-01 07:00 301056 c:\windows\Installer\8f752a0.msi
+ 2011-12-22 20:50 . 2011-12-22 20:50 256000 c:\windows\Installer\43fb20e.msp
+ 2012-02-03 03:56 . 2012-02-03 03:56 963584 c:\windows\Installer\1639207.msp
+ 2012-04-22 01:55 . 2012-04-22 01:55 980480 c:\windows\Installer\162ef10.msp
+ 2012-06-19 12:00 . 2012-06-19 12:00 102400 c:\windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}\ARPPRODUCTICON.exe
+ 2012-05-01 07:01 . 2012-05-01 07:01 109563 c:\windows\Installer\{0F842B77-56EA-4AAF-8295-81A022350B5E}\SCEP.exe
+ 2012-05-01 07:01 . 2012-05-01 07:01 123352 c:\windows\Installer\{0F842B77-56EA-4AAF-8295-81A022350B5E}\MSE.exe
+ 2012-05-01 07:01 . 2012-05-01 07:01 109563 c:\windows\Installer\{0F842B77-56EA-4AAF-8295-81A022350B5E}\INTUNE.exe
+ 2012-05-01 07:01 . 2012-05-01 07:01 109563 c:\windows\Installer\{0F842B77-56EA-4AAF-8295-81A022350B5E}\FEP.exe
+ 2012-05-01 07:01 . 2012-05-01 07:01 109563 c:\windows\Installer\{0F842B77-56EA-4AAF-8295-81A022350B5E}\EPP.exe
+ 2004-08-09 21:00 . 2009-01-30 21:40 317440 c:\windows\inf\unregmp2.exe
+ 2012-06-13 07:01 . 2012-03-01 11:01 916992 c:\windows\ie8updates\KB2699988-IE8\wininet.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 105984 c:\windows\ie8updates\KB2699988-IE8\url.dll
+ 2012-06-13 07:01 . 2010-07-05 13:16 382840 c:\windows\ie8updates\KB2699988-IE8\spuninst\updspapi.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 231288 c:\windows\ie8updates\KB2699988-IE8\spuninst\spuninst.exe
+ 2012-06-13 07:01 . 2012-03-01 11:01 206848 c:\windows\ie8updates\KB2699988-IE8\occache.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 611840 c:\windows\ie8updates\KB2699988-IE8\mstime.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 602112 c:\windows\ie8updates\KB2699988-IE8\msfeeds.dll
+ 2012-06-13 07:01 . 2009-03-08 09:35 521216 c:\windows\ie8updates\KB2699988-IE8\jsdbgui.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 247808 c:\windows\ie8updates\KB2699988-IE8\ieproxy.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 184320 c:\windows\ie8updates\KB2699988-IE8\iepeers.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 743424 c:\windows\ie8updates\KB2699988-IE8\iedvtool.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 387584 c:\windows\ie8updates\KB2699988-IE8\iedkcs32.dll
+ 2012-06-13 07:01 . 2012-02-29 12:17 174080 c:\windows\ie8updates\KB2699988-IE8\ie4uinit.exe
+ 2012-04-12 07:06 . 2011-12-17 19:46 916992 c:\windows\ie8updates\KB2675157-IE8\wininet.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 105984 c:\windows\ie8updates\KB2675157-IE8\url.dll
+ 2012-04-12 07:06 . 2010-07-05 13:16 382840 c:\windows\ie8updates\KB2675157-IE8\spuninst\updspapi.dll
+ 2012-04-12 07:06 . 2010-07-05 13:15 231288 c:\windows\ie8updates\KB2675157-IE8\spuninst\spuninst.exe
+ 2012-04-12 07:06 . 2011-12-17 19:46 206848 c:\windows\ie8updates\KB2675157-IE8\occache.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 611840 c:\windows\ie8updates\KB2675157-IE8\mstime.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 602112 c:\windows\ie8updates\KB2675157-IE8\msfeeds.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 247808 c:\windows\ie8updates\KB2675157-IE8\ieproxy.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 184320 c:\windows\ie8updates\KB2675157-IE8\iepeers.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 743424 c:\windows\ie8updates\KB2675157-IE8\iedvtool.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 387584 c:\windows\ie8updates\KB2675157-IE8\iedkcs32.dll
+ 2012-04-12 07:06 . 2011-12-16 12:23 174080 c:\windows\ie8updates\KB2675157-IE8\ie4uinit.exe
+ 2012-02-24 17:14 . 2012-02-24 17:14 204800 c:\windows\ERDNT\02-24-2012\Users\00000002\UsrClass.dat
+ 2012-02-24 17:14 . 2005-10-20 16:02 163328 c:\windows\ERDNT\02-24-2012\ERDNT.EXE
+ 2011-12-07 14:23 . 2011-12-07 14:23 374152 c:\windows\Downloaded Program Files\qbc_sa.dll
+ 2011-12-07 14:23 . 2011-12-07 14:23 226696 c:\windows\Downloaded Program Files\qbc_ax.dll
+ 2012-04-12 07:06 . 2012-04-12 07:06 843776 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_f69e0d92\System.Drawing.dll
+ 2012-06-14 07:05 . 2012-06-14 07:05 843776 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_f4ad2bf2\System.Drawing.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 835584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_bfe133c7\System.Drawing.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 192512 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_ff1da9cb\System.Drawing.Design.dll
+ 2012-04-12 07:06 . 2012-04-12 07:06 192512 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_968237b8\System.Drawing.Design.dll
+ 2012-06-14 07:06 . 2012-06-14 07:06 192512 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_2e08957e\System.Drawing.Design.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 118784 c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_2a2605c6\CustomMarshalers.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 851968 c:\windows\assembly\NativeImages1_v1.0.3705\System.Drawing\1.0.3300.0__b03f5f7f11d50a3a_a5334342\System.Drawing.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 851968 c:\windows\assembly\NativeImages1_v1.0.3705\System.Drawing\1.0.3300.0__b03f5f7f11d50a3a_2f81686a\System.Drawing.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\XPBurnComponent\b412e064a383e0ca090e2c0111f816dd\XPBurnComponent.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\ac4fc3032c19946f9b2729468888206d\WsatConfig.ni.exe
+ 2012-06-14 07:06 . 2012-06-14 07:06 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\86e11a59f02b2dda27ec2e7cba351744\WindowsFormsIntegration.ni.dll
+ 2012-05-11 07:11 . 2012-05-11 07:11 187904 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\be27ab5913cec2b292a019c2a13ec701\UIAutomationTypes.ni.dll
+ 2012-05-11 07:11 . 2012-05-11 07:11 447488 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\04e5e2be34a70ee7f4c87550238095a0\UIAutomationClient.ni.dll
+ 2012-05-11 07:21 . 2012-05-11 07:21 400896 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\1c13b08593e99d6f5bef49ae7939c78b\System.Xml.Linq.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\698c2093d7ac57af935b399d1c0b1790\System.Web.Routing.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\6c7765c10516d375e9ddedad2dbab848\System.Web.RegularExpressions.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 859648 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\75248baf640115daeb0e580f1c5ff98b\System.Web.Extensions.Design.ni.dll
+ 2012-06-13 21:59 . 2012-06-13 21:59 328704 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\40c3b61ac38613e2b4b0f196e86185eb\System.Web.Entity.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 301056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\39cc9a830f7f08fd9f397be452fd78b0\System.Web.Entity.Design.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\88b1fd4792e7b698b788594d8e5e3c09\System.Web.DynamicData.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\6333d22a2ea347432d46c40d93194c68\System.Web.Abstractions.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 627200 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\41f6f6dd0c8427d4a8e6fd3915505a6b\System.Transactions.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\8b84bb74d7724e147a642a1d5358feb7\System.ServiceProcess.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 679936 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\129b15861e200613ff78ae15581f9093\System.Security.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 311296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a644ec04e18202b60f9d828bc207972b\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 771584 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\92d58f840f549f9bd880783d43db7e3c\System.Runtime.Remoting.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 621056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\4a9eb43005a041959ddc5c7e586ab746\System.Net.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 998400 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\9080c8e8e7b6dfb502c1328673d636f8\System.Management.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 330752 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\3182a049ba953010dec649cf290a9e90\System.Management.Instrumentation.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\8991f21d4b3676bf6f779110db8d4ac9\System.IO.Log.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\cd9c60a35d4958e94d2e3dd2f778e2e9\System.IdentityModel.Selectors.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 280064 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\29bce0113d611084a9329349e33528ac\System.EnterpriseServices.Wrapper.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 627712 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\29bce0113d611084a9329349e33528ac\System.EnterpriseServices.ni.dll
+ 2012-06-14 07:05 . 2012-06-14 07:05 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\96a3fc1f74a00b618b70bd1701600408\System.Drawing.Design.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\ca484772955bc4db03b5dcb611c09423\System.DirectoryServices.Protocols.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 881152 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\8ba5e68dddfd3279a8469d39eded48f3\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 354816 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\a0109fce606a3110a5e7f9a4773f517e\System.Data.Services.Design.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 939008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\3a68d0441f509ffa6f8f0fb9cfcc5780\System.Data.Services.Client.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 756736 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\04440b3dd5d822da4973a525ee04b05d\System.Data.Entity.Design.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\7bbb5d9e3b161b4d4b968e590442d3ae\System.Data.DataSetExtensions.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 971264 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\3d5b7368bde0f65aa15d9f46b498cc89\System.Configuration.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\badd66e1d2b8416e9bb868ad059203c6\System.Configuration.Install.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 634368 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\931a2bece4668863db4f852401c828cf\System.AddIn.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\6762f1ee780fa9c0b4ef66b285c64844\SMSvcHost.ni.exe
+ 2012-05-11 07:18 . 2012-05-11 07:18 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\660c4d6dd69ef22bc05587e1998cd135\SMDiagnostics.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 320512 c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\47ed5bc9f42ea0054ce9acfde5e640b8\ServiceModelReg.ni.exe
+ 2012-05-11 07:10 . 2012-05-11 07:10 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\a4706b850df9a3483f2fc439b6abe616\PresentationFramework.Royale.ni.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8b873631a0855fb6aa0ad25f1d9de7fe\PresentationFramework.Luna.ni.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7416fe825e6e49a87fa8ff60c8971813\PresentationFramework.Classic.ni.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\186c27fbd7b38b5551889274f6fa2ccd\PresentationFramework.Aero.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\5a121969a115d11b6256eb960c145686\MSBuild.ni.exe
+ 2012-05-11 07:18 . 2012-05-11 07:18 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\97c613d3899b320a6765793bdf490272\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 148480 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Practices#\f8ea9095fc70e5c204367303343b1875\Microsoft.Practices.EnterpriseLibrary.Security.Cryptography.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 304128 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Practices#\6499b4383bf1b350ced3501ffb3a438e\Microsoft.Practices.ObjectBuilder.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 309248 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Practices#\3832614c1d3d6329ec6d54e189e03944\Microsoft.Practices.EnterpriseLibrary.Common.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\dec22fb7d6b8929a41380e5359741a07\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\1009b31c86a1b798fffa9e0127cec29c\Microsoft.Build.Utilities.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\21d88631ef629715d3eecdd08e62e0b8\Microsoft.Build.Engine.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\a0f38c6478cca8297fb160291346c1c9\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 229376 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Applicati#\b3cddebafe2163379a1bd02cccd29f24\Microsoft.ApplicationBlocks.Updater.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\Interop.WUApiLib\a9c7d3e1f312570dc67bb6d8dc93b1b1\Interop.WUApiLib.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 378368 c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\a3b42fbe8eb92f9d00c82ee7b392a9e8\DriversHQ.DriverDetective.Client.Communication.ni.dll
+ 2012-06-13 21:58 . 2012-06-13 21:58 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\487d532a59d9d2e8fa9288be13c686ea\DriversHQ.DriverDetective.Common.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\bb26dd100d656605c576881a1a823667\CustomMarshalers.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\9869c02d18825fdd32e64135a3e7246b\ComSvcConfig.ni.exe
+ 2012-06-14 07:14 . 2012-06-14 07:14 842240 c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\c0045c1c7c29c7e7cc7bd60001b729a7\AspNetMMCExt.ni.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 630784 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2009-08-07 04:31 . 2009-08-07 04:31 163840 c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
+ 2012-05-11 07:07 . 2012-05-11 07:07 163840 c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2012-05-11 07:03 . 2012-05-11 07:03 532480 c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2012-06-14 07:02 . 2012-06-14 07:02 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2009-08-07 04:30 . 2009-08-07 04:30 368640 c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-05-11 07:03 . 2012-05-11 07:03 368640 c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2012-06-14 07:04 . 2012-06-14 07:04 471040 c:\windows\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 462848 c:\windows\assembly\GAC\System.Drawing\1.0.3300.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2011-03-07 20:39 . 2011-03-07 20:39 462848 c:\windows\assembly\GAC\System.Drawing\1.0.3300.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-06-09 12:23 . 2012-06-09 12:23 180482 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCalla21.exe
+ 2012-06-09 12:23 . 2012-06-09 12:23 175992 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCalla20.dll
+ 2012-06-09 12:23 . 2012-06-09 12:23 176035 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCalla2.dll
+ 2012-06-09 12:23 . 2012-06-09 12:23 176035 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCalla19.dll
+ 2012-06-09 12:23 . 2012-06-09 12:23 179526 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCalla18.exe
+ 2012-06-09 12:23 . 2012-06-09 12:23 176545 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCalla17.dll
+ 2012-06-09 12:23 . 2012-06-09 12:23 179526 c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP\WiseCustomCalla.dll
+ 2012-06-10 20:51 . 2006-09-16 05:05 379184 c:\windows\$NtUninstallWudf01000$\spuninst\updspapi.dll
+ 2012-06-10 20:51 . 2006-09-16 05:05 221488 c:\windows\$NtUninstallWudf01000$\spuninst\spuninst.exe
+ 2012-06-10 20:54 . 2004-08-09 21:00 174080 c:\windows\$NtUninstallwmp11$\wmpsrcwp.dll
+ 2012-06-10 20:54 . 2009-07-13 14:08 286720 c:\windows\$NtUninstallwmp11$\wmpdxm.dll
+ 2012-06-10 20:54 . 2004-08-09 21:00 131072 c:\windows\$NtUninstallwmp11$\wmpasf.dll
+ 2012-06-10 20:54 . 2004-08-09 21:00 118784 c:\windows\$NtUninstallwmp11$\wmlaunch.exe
+ 2012-06-10 20:54 . 2004-08-09 21:00 189440 c:\windows\$NtUninstallwmp11$\wmerror.dll
+ 2012-06-10 20:54 . 2004-08-09 21:00 192512 c:\windows\$NtUninstallwmp11$\unregmp2.exe
+ 2012-06-10 20:54 . 2008-02-13 16:52 371424 c:\windows\$NtUninstallwmp11$\spuninst\updspapi.dll
+ 2012-06-10 20:54 . 2008-02-13 16:52 213216 c:\windows\$NtUninstallwmp11$\spuninst\spuninst.exe
+ 2012-06-10 20:54 . 2006-10-02 18:30 819200 c:\windows\$NtUninstallwmp11$\setup_wm.exe
+ 2012-06-10 20:54 . 2004-08-09 21:00 356352 c:\windows\$NtUninstallwmp11$\mpvis.dll
+ 2012-06-10 20:52 . 2006-03-03 12:33 329728 c:\windows\$NtUninstallWMFDist11$\wpdsp.dll
+ 2012-06-10 20:52 . 2006-03-03 12:33 114176 c:\windows\$NtUninstallWMFDist11$\wpdmtp.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 826368 c:\windows\$NtUninstallWMFDist11$\wmvdmod.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 940544 c:\windows\$NtUninstallWMFDist11$\wmspdmoe.dll
+ 2012-06-10 20:52 . 2009-04-10 05:01 413544 c:\windows\$NtUninstallWMFDist11$\wmspdmod.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 819200 c:\windows\$NtUninstallWMFDist11$\wmsetsdk.exe
+ 2012-06-10 20:52 . 2005-08-04 01:29 771584 c:\windows\$NtUninstallWMFDist11$\wmsdmod.dll
+ 2012-06-10 20:52 . 2008-06-11 07:58 988672 c:\windows\$NtUninstallWMFDist11$\wmnetmgr.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 150016 c:\windows\$NtUninstallWMFDist11$\wmidx.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 180224 c:\windows\$NtUninstallWMFDist11$\wmdrmsdk.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 290816 c:\windows\$NtUninstallWMFDist11$\wmdrmnet.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 344064 c:\windows\$NtUninstallWMFDist11$\wmdrmdev.dll
+ 2012-06-10 20:52 . 2007-10-27 22:39 228864 c:\windows\$NtUninstallWMFDist11$\wmasf.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 716288 c:\windows\$NtUninstallWMFDist11$\wmadmoe.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 359936 c:\windows\$NtUninstallWMFDist11$\wmadmod.dll
+ 2012-06-10 20:52 . 2008-02-13 16:52 371424 c:\windows\$NtUninstallWMFDist11$\spuninst\updspapi.dll
+ 2012-06-10 20:52 . 2008-02-13 16:52 213216 c:\windows\$NtUninstallWMFDist11$\spuninst\spuninst.exe
+ 2012-06-10 20:52 . 2005-08-04 01:29 221184 c:\windows\$NtUninstallWMFDist11$\qasf.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 315904 c:\windows\$NtUninstallWMFDist11$\mswmdm.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 353520 c:\windows\$NtUninstallWMFDist11$\msscp.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 173568 c:\windows\$NtUninstallWMFDist11$\mspmsp.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 115200 c:\windows\$NtUninstallWMFDist11$\msnetobj.dll
+ 2012-06-10 20:52 . 2008-04-14 10:41 240640 c:\windows\$NtUninstallWMFDist11$\mpg4dmod.dll
+ 2012-06-10 20:52 . 2010-04-05 16:54 384512 c:\windows\$NtUninstallWMFDist11$\mp4sdmod.dll
+ 2012-06-10 20:52 . 2004-08-09 21:00 310272 c:\windows\$NtUninstallWMFDist11$\mp43dmod.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 106496 c:\windows\$NtUninstallWMFDist11$\mfplat.dll
+ 2012-06-10 20:52 . 2006-03-03 12:26 581632 c:\windows\$NtUninstallWMFDist11$\drmv2clt.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 178936 c:\windows\$NtUninstallWMFDist11$\drmupgds.exe
+ 2012-06-10 20:52 . 2005-08-04 01:29 207872 c:\windows\$NtUninstallWMFDist11$\cewmdm.dll
+ 2012-06-10 20:52 . 2006-03-03 12:26 429056 c:\windows\$NtUninstallWMFDist11$\blackbox.dll
+ 2012-06-10 20:52 . 2004-08-09 21:00 480768 c:\windows\$NtUninstallWMFDist11$\audiodev.dll
+ 2012-06-10 20:55 . 2006-09-25 21:58 379184 c:\windows\$NtUninstallMSCompPackV1$\spuninst\updspapi.dll
+ 2012-06-10 20:55 . 2006-09-25 21:58 221488 c:\windows\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe
+ 2012-06-11 07:00 . 2009-01-31 00:34 283648 c:\windows\$NtUninstallKB973540_WM9$\wmpdxm.dll
+ 2012-06-11 07:00 . 2007-07-27 14:41 382840 c:\windows\$NtUninstallKB973540_WM9$\spuninst\updspapi.dll
+ 2012-06-11 07:00 . 2007-07-27 14:41 231288 c:\windows\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe
+ 2012-06-10 07:01 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2718704$\spuninst\updspapi.dll
+ 2012-06-10 07:01 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2718704$\spuninst\spuninst.exe
+ 2012-06-10 07:01 . 2011-09-28 07:06 599040 c:\windows\$NtUninstallKB2718704$\crypt32.dll
+ 2012-06-14 07:01 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2709162$\spuninst\updspapi.dll
+ 2012-06-14 07:01 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2709162$\spuninst\spuninst.exe
+ 2012-06-14 07:05 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2707511$\spuninst\updspapi.dll
+ 2012-06-14 07:05 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2707511$\spuninst\spuninst.exe
+ 2012-05-11 07:04 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2695962$\spuninst\updspapi.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2695962$\spuninst\spuninst.exe
+ 2012-05-11 07:04 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2686509$\spuninst\updspapi.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2686509$\spuninst\spuninst.exe
+ 2012-06-13 07:01 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2685939$\spuninst\updspapi.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2685939$\spuninst\spuninst.exe
+ 2012-06-13 07:01 . 2012-01-09 16:20 139784 c:\windows\$NtUninstallKB2685939$\rdpwd.sys
+ 2012-05-11 07:02 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2676562$\spuninst\updspapi.dll
+ 2012-05-11 07:02 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2676562$\spuninst\spuninst.exe
+ 2012-05-11 07:09 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2659262$\spuninst\updspapi.dll
+ 2012-05-11 07:09 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2659262$\spuninst\spuninst.exe
+ 2012-04-12 07:05 . 2004-07-19 17:54 462848 c:\windows\$NtUninstallKB2656378$\system.drawing.dll
+ 2012-04-12 07:05 . 2009-04-13 16:42 371424 c:\windows\$NtUninstallKB2656378$\spuninst\updspapi.dll
+ 2012-04-12 07:05 . 2009-04-13 16:42 213216 c:\windows\$NtUninstallKB2656378$\spuninst\spuninst.exe
+ 2012-04-12 07:01 . 2009-12-24 06:59 177664 c:\windows\$NtUninstallKB2653956$\wintrust.dll
+ 2012-04-12 07:01 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2653956$\spuninst\updspapi.dll
+ 2012-04-12 07:01 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2653956$\spuninst\spuninst.exe
+ 2012-04-12 07:01 . 2008-04-14 10:41 144384 c:\windows\$NtUninstallKB2653956$\imagehlp.dll
+ 2012-03-14 07:01 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2647518$\spuninst\updspapi.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2647518$\spuninst\spuninst.exe
+ 2012-03-14 07:02 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2641653$\spuninst\updspapi.dll
+ 2012-03-14 07:02 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2641653$\spuninst\spuninst.exe
+ 2012-03-14 07:01 . 2010-07-05 13:16 382840 c:\windows\$NtUninstallKB2621440$\spuninst\updspapi.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 231288 c:\windows\$NtUninstallKB2621440$\spuninst\spuninst.exe
+ 2012-03-14 07:01 . 2011-06-24 14:10 139656 c:\windows\$NtUninstallKB2621440$\rdpwd.sys
+ 2012-05-11 07:09 . 2009-04-13 16:42 371424 c:\windows\$NtUninstallKB2604042$\spuninst\updspapi.dll
+ 2012-05-11 07:09 . 2009-04-13 16:42 213216 c:\windows\$NtUninstallKB2604042$\spuninst\spuninst.exe
+ 2012-05-11 07:09 . 2011-07-05 19:44 303104 c:\windows\$NtUninstallKB2604042$\mscorjit.dll
+ 2012-05-11 07:09 . 2011-07-06 13:57 200704 c:\windows\$NtUninstallKB2604042$\aspnet_isapi.dll
+ 2012-06-10 07:01 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2718704\update\updspapi.dll
+ 2012-06-10 07:01 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2718704\update\update.exe
+ 2012-06-10 07:01 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2718704\spuninst.exe
+ 2012-05-31 13:19 . 2012-05-31 13:19 599552 c:\windows\$hf_mig$\KB2718704\SP3QFE\crypt32.dll
+ 2012-06-14 07:01 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2709162\update\updspapi.dll
+ 2012-06-14 07:01 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2709162\update\update.exe
+ 2012-06-14 07:01 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2709162\spuninst.exe
+ 2012-06-14 07:05 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2707511\update\updspapi.dll
+ 2012-06-14 07:05 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2707511\update\update.exe
+ 2012-06-14 07:05 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2707511\spuninst.exe
+ 2012-06-13 07:01 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2699988-IE8\update\updspapi.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2699988-IE8\update\update.exe
+ 2012-06-13 07:01 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2699988-IE8\spuninst.exe
+ 2012-06-12 22:18 . 2012-05-16 15:06 920064 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\wininet.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 105984 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\url.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 206848 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\occache.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 611840 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\mstime.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 630272 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\msfeeds.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 522240 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\jsdbgui.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 247808 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\ieproxy.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 184320 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\iepeers.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 743424 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\iedvtool.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 387584 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\iedkcs32.dll
+ 2012-06-12 22:18 . 2012-05-11 12:13 174080 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\ie4uinit.exe
+ 2012-05-11 07:04 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2695962\update\updspapi.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2695962\update\update.exe
+ 2012-05-11 07:04 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2695962\spuninst.exe
+ 2012-05-11 07:04 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2686509\update\updspapi.dll
+ 2012-05-11 07:04 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2686509\update\update.exe
+ 2012-05-11 07:04 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2686509\spuninst.exe
+ 2012-06-13 07:01 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2685939\update\updspapi.dll
+ 2012-06-13 07:01 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2685939\update\update.exe
+ 2012-06-13 07:01 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2685939\spuninst.exe
+ 2012-06-12 22:16 . 2012-05-02 13:45 139656 c:\windows\$hf_mig$\KB2685939\SP3QFE\rdpwd.sys
+ 2012-05-11 07:02 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2676562\update\updspapi.dll
+ 2012-05-11 07:02 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2676562\update\update.exe
+ 2012-05-11 07:02 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2676562\spuninst.exe
+ 2012-04-12 07:06 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2675157-IE8\update\updspapi.dll
+ 2012-04-12 07:06 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2675157-IE8\update\update.exe
+ 2012-04-12 07:06 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2675157-IE8\spuninst.exe
+ 2012-04-12 05:49 . 2012-03-01 10:58 919552 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\wininet.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 105984 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\url.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 206848 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\occache.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 611840 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\mstime.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 602112 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\msfeeds.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 247808 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\ieproxy.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 184320 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\iepeers.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 743424 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\iedvtool.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 387584 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\iedkcs32.dll
+ 2012-04-12 05:49 . 2012-02-29 12:30 174080 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\ie4uinit.exe
+ 2012-04-12 07:01 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2653956\update\updspapi.dll
+ 2012-04-12 07:01 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2653956\update\update.exe
+ 2012-04-12 07:01 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2653956\spuninst.exe
+ 2012-02-29 14:08 . 2012-02-29 14:08 178176 c:\windows\$hf_mig$\KB2653956\SP3QFE\wintrust.dll
+ 2012-02-29 14:08 . 2012-02-29 14:08 148480 c:\windows\$hf_mig$\KB2653956\SP3QFE\imagehlp.dll
+ 2012-03-14 07:01 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2647518\update\updspapi.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2647518\update\update.exe
+ 2012-03-14 07:01 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2647518\spuninst.exe
+ 2012-03-14 07:02 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2641653\update\updspapi.dll
+ 2012-03-14 07:02 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2641653\update\update.exe
+ 2012-03-14 07:02 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2641653\spuninst.exe
+ 2012-03-14 07:01 . 2010-07-05 13:16 382840 c:\windows\$hf_mig$\KB2621440\update\updspapi.dll
+ 2012-03-14 07:01 . 2010-07-05 13:15 755576 c:\windows\$hf_mig$\KB2621440\update\update.exe
+ 2012-03-14 07:01 . 2010-07-05 13:15 231288 c:\windows\$hf_mig$\KB2621440\spuninst.exe
+ 2012-03-14 01:23 . 2012-01-09 16:19 139784 c:\windows\$hf_mig$\KB2621440\SP3QFE\rdpwd.sys
+ 2012-05-10 11:14 . 2012-02-09 15:43 1748992 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\GdiPlus.dll
+ 2009-07-12 02:11 . 2009-07-12 02:11 5102400 c:\windows\WinSxS\amd64_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d7860533\mfc90u.dll
+ 2009-07-12 02:11 . 2009-07-12 02:11 5083448 c:\windows\WinSxS\amd64_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d7860533\mfc90.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 2603008 c:\windows\system32\WpdShext.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 1382912 c:\windows\system32\WMVSDECD.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 1575424 c:\windows\system32\WMVENCOD.dll
+ 2009-01-31 00:35 . 2009-01-31 00:35 1543680 c:\windows\system32\WMVDECOD.dll
+ 2004-08-09 21:00 . 2010-04-06 08:52 2462720 c:\windows\system32\WMVCore.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 1329152 c:\windows\system32\WMSPDMOE.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 8231936 c:\windows\system32\wmploc.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 1661952 c:\windows\system32\wmpencen.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 1117696 c:\windows\system32\WMADMOE.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 1212416 c:\windows\system32\urlmon.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 1212416 c:\windows\system32\urlmon.dll
+ 2012-07-07 02:40 . 2012-07-07 02:40 2562560 c:\windows\system32\spool\drivers\w32x86\tbvpr_ui.dll
+ 2012-07-07 02:40 . 2012-07-07 02:40 3226112 c:\windows\system32\spool\drivers\w32x86\tbvpr_drv.dll
+ 2012-07-07 02:40 . 2012-07-07 02:40 2562560 c:\windows\system32\spool\drivers\w32x86\3\tbvpr_ui.dll
+ 2012-07-07 02:40 . 2012-07-07 02:40 3226112 c:\windows\system32\spool\drivers\w32x86\3\tbvpr_drv.dll
+ 2012-07-07 02:40 . 2012-07-07 02:40 1509768 c:\windows\system32\spool\drivers\w32x86\3\fpdfcjk.bin
+ 2004-08-09 21:00 . 2012-06-08 14:26 8462848 c:\windows\system32\shell32.dll
+ 2006-11-05 03:50 . 2012-07-29 01:03 2716436 c:\windows\system32\Restore\rstrlog.dat
+ 2000-11-08 20:02 . 2009-07-14 09:15 1386496 c:\windows\system32\msvbvm60.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 6007808 c:\windows\system32\mshtml.dll
+ 2006-06-19 20:19 . 2009-06-25 17:20 1485176 c:\windows\system32\LegitCheckControl.DLL
+ 2006-10-17 17:57 . 2012-05-11 14:42 2000384 c:\windows\system32\iertutil.dll
- 2006-10-17 17:57 . 2011-12-17 19:46 2000384 c:\windows\system32\iertutil.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 1792872 c:\windows\system32\HPScanMiniDrv_DJ3050_J610.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 1792872 c:\windows\system32\HPScanMiniDrv_DJ3050_J610.dll
+ 2012-06-13 00:48 . 2010-11-17 01:11 1792872 c:\windows\system32\DRVSTORE\HPScanMini_3ECC9953B4D336B45E886B076559B37430B50F14\drivers\scanner\x32\HPScanMiniDrv_DJ3050_J610.dll
- 2011-10-17 16:02 . 2010-11-17 01:11 1792872 c:\windows\system32\DRVSTORE\HPScanMini_3ECC9953B4D336B45E886B076559B37430B50F14\drivers\scanner\x32\HPScanMiniDrv_DJ3050_J610.dll
+ 2004-08-09 21:00 . 2012-06-02 19:19 1933848 c:\windows\system32\dllcache\wuaueng.dll
+ 2004-08-09 21:00 . 2010-04-06 08:52 2462720 c:\windows\system32\dllcache\WMVCore.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 1329152 c:\windows\system32\dllcache\WMSPDMOE.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 8231936 c:\windows\system32\dllcache\wmploc.dll
+ 2004-08-09 21:00 . 2009-01-31 00:34 1117696 c:\windows\system32\dllcache\WMADMOE.dll
+ 2004-08-09 21:00 . 2012-06-13 13:19 1866112 c:\windows\system32\dllcache\win32k.sys
+ 2004-08-09 21:00 . 2012-05-11 14:42 1212416 c:\windows\system32\dllcache\urlmon.dll
- 2004-08-09 21:00 . 2011-12-17 19:46 1212416 c:\windows\system32\dllcache\urlmon.dll
+ 2004-08-09 21:00 . 2012-06-08 14:26 8462848 c:\windows\system32\dllcache\shell32.dll
+ 2004-08-09 21:00 . 2009-01-30 21:40 1669632 c:\windows\system32\dllcache\setup_wm.exe
+ 2004-08-10 04:00 . 2012-05-04 13:12 2192640 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2009-04-16 19:17 . 2012-05-04 12:32 2026496 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2004-08-10 04:00 . 2012-05-04 12:32 2069120 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2009-04-16 19:18 . 2012-05-04 13:16 2148352 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2009-08-19 22:07 . 2012-06-05 15:50 1372672 c:\windows\system32\dllcache\msxml6.dll
- 2009-08-19 22:07 . 2009-07-31 15:05 1372672 c:\windows\system32\dllcache\msxml6.dll
- 2004-08-09 21:00 . 2010-06-14 07:41 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2004-08-09 21:00 . 2012-06-05 15:50 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2004-08-09 21:00 . 2012-05-11 14:42 6007808 c:\windows\system32\dllcache\mshtml.dll
+ 2007-05-10 00:07 . 2012-05-11 14:42 2000384 c:\windows\system32\dllcache\iertutil.dll
- 2007-05-10 00:07 . 2011-12-17 19:46 2000384 c:\windows\system32\dllcache\iertutil.dll
- 2011-03-25 10:15 . 2011-03-25 10:15 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2012-03-20 09:23 . 2012-03-20 09:23 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2011-12-25 07:50 . 2011-12-25 07:50 3186688 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
- 2011-10-26 08:39 . 2011-10-26 08:39 3186688 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
- 2008-07-25 15:17 . 2008-07-25 15:17 5062656 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2012-03-20 09:23 . 2012-03-20 09:23 5062656 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2011-12-25 07:50 . 2011-12-25 07:50 5913360 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2011-12-25 07:50 . 2011-12-25 07:50 4550656 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
- 2011-07-07 09:18 . 2011-07-07 09:18 4550656 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2012-04-26 06:32 . 2012-04-26 06:32 6385664 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2656370\M2656370Uninstall.msp
+ 2011-12-25 16:07 . 2011-12-25 16:07 2064384 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2011-12-25 16:06 . 2011-12-25 16:06 1269760 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2011-12-25 16:06 . 2011-12-25 16:06 1232896 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2011-12-25 03:54 . 2011-12-25 03:54 2514944 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2011-12-25 03:53 . 2011-12-25 03:53 2527232 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2011-12-25 16:06 . 2011-12-25 16:06 2142208 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2004-07-19 17:54 . 2012-01-17 05:19 2002944 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Windows.Forms.dll
- 2004-07-19 17:54 . 2004-07-19 17:54 2002944 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Windows.Forms.dll
- 2004-07-19 17:54 . 2011-07-12 22:04 1200128 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Web.dll
+ 2004-07-19 17:54 . 2012-01-17 05:20 1200128 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Web.dll
- 2004-07-19 17:54 . 2007-12-17 22:29 1179648 c:\windows\Microsoft.NET\Framework\v1.0.3705\system.dll
+ 2004-07-19 17:54 . 2012-01-17 05:19 1179648 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.dll
- 2004-07-19 17:54 . 2011-07-05 19:45 2281472 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorwks.dll
+ 2004-07-19 17:54 . 2012-01-13 20:59 2281472 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorwks.dll
+ 2004-07-19 17:54 . 2012-01-13 20:59 2273280 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorsvr.dll
+ 2004-07-19 17:54 . 2012-01-17 05:19 1998848 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorlib.dll
- 2004-07-19 17:54 . 2011-07-12 22:05 1998848 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorlib.dll
+ 2012-03-21 21:00 . 2012-03-21 21:00 8482816 c:\windows\Installer\reflect_setupv5.0.4354-x86-00.msi
+ 2012-05-01 07:01 . 2012-05-01 07:01 1826304 c:\windows\Installer\8f752d2.msi
+ 2012-06-13 00:48 . 2012-06-13 00:48 2744320 c:\windows\Installer\80d4d1.msi
+ 2012-06-10 22:39 . 2012-06-10 22:39 1723904 c:\windows\Installer\56792e.msi
+ 2012-06-10 22:38 . 2012-06-10 22:38 1431552 c:\windows\Installer\567921.msi
+ 2012-04-05 02:38 . 2012-04-05 02:38 3620864 c:\windows\Installer\43fb1f6.msp
+ 2012-06-19 12:00 . 2012-06-19 12:01 2288128 c:\windows\Installer\418e1a4.msi
+ 2012-06-12 20:48 . 2012-06-12 20:48 1214464 c:\windows\Installer\30a5b.msi
+ 2012-04-25 23:32 . 2012-04-25 23:32 7069184 c:\windows\Installer\2029ab8.msp
+ 2012-03-21 03:57 . 2012-03-21 03:57 6188544 c:\windows\Installer\2029aad.msp
+ 2012-06-14 13:50 . 2012-06-14 13:50 9474048 c:\windows\Installer\16e7b65.msi
+ 2012-06-14 13:48 . 2012-06-14 13:48 1530368 c:\windows\Installer\16e7ad3.msi
+ 2012-01-31 00:46 . 2012-01-31 00:46 7069184 c:\windows\Installer\1639211.msp
+ 2012-03-21 21:02 . 2012-03-21 21:02 2794496 c:\windows\Installer\10e3397e.msi
+ 2011-06-06 16:55 . 2011-06-06 16:55 1189004 c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B744AA0100000010\10.1.0\JSByteCodeWin.bin
+ 2011-07-07 06:58 . 2011-07-07 06:58 1616240 c:\windows\Installer\$PatchCache$\Managed\00002159FA0090400000000000F01FEC\12.0.6612\OGL.DLL
+ 2012-06-13 07:01 . 2012-03-01 11:01 1212416 c:\windows\ie8updates\KB2699988-IE8\urlmon.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 5978624 c:\windows\ie8updates\KB2699988-IE8\mshtml.dll
+ 2012-06-13 07:01 . 2012-03-01 11:01 2000384 c:\windows\ie8updates\KB2699988-IE8\iertutil.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 1212416 c:\windows\ie8updates\KB2675157-IE8\urlmon.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 5979136 c:\windows\ie8updates\KB2675157-IE8\mshtml.dll
+ 2012-04-12 07:06 . 2011-12-17 19:46 2000384 c:\windows\ie8updates\KB2675157-IE8\iertutil.dll
+ 2009-04-16 19:18 . 2012-05-04 13:12 2192640 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2009-04-16 19:17 . 2012-05-04 12:32 2026496 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2009-02-07 23:02 . 2012-05-04 12:32 2069120 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2009-04-16 19:18 . 2012-05-04 13:16 2148352 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2012-02-24 02:23 . 2012-02-24 02:23 4792320 c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_bafb9aa6\System.dll
+ 2012-02-24 02:20 . 2012-02-24 02:20 1966080 c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_9d44cc24\System.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 2088960 c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_f8b7f0f9\System.Xml.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 5513216 c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_e72a54ca\System.Xml.dll
+ 2012-06-14 07:05 . 2012-06-14 07:05 3035136 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_f89ed326\System.Windows.Forms.dll
+ 2012-04-12 07:05 . 2012-04-12 07:05 3035136 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_92614ae5\System.Windows.Forms.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 7917568 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_7dcf6471\System.Windows.Forms.dll
+ 2012-04-12 07:06 . 2012-04-12 07:06 7917568 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_5b75afcb\System.Windows.Forms.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 3035136 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_555b6f63\System.Windows.Forms.dll
+ 2012-06-14 07:06 . 2012-06-14 07:06 7917568 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_4444e137\System.Windows.Forms.dll
+ 2012-06-14 07:06 . 2012-06-14 07:06 2252800 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_f34b6e4d\System.Drawing.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 2244608 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_8f4697f2\System.Drawing.dll
+ 2012-04-12 07:06 . 2012-04-12 07:06 2248704 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_2e0a27d2\System.Drawing.dll
+ 2012-06-14 07:05 . 2012-06-14 07:05 1470464 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_fc17eb6b\System.Design.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 3395584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_f9c58573\System.Design.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 1470464 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_eab214de\System.Design.dll
+ 2012-06-14 07:06 . 2012-06-14 07:06 3395584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_c80d5f04\System.Design.dll
+ 2012-04-12 07:05 . 2012-04-12 07:05 1470464 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_c1de3179\System.Design.dll
+ 2012-04-12 07:06 . 2012-04-12 07:06 3395584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_4cce0e6c\System.Design.dll
+ 2012-02-24 02:24 . 2012-02-24 02:24 8908800 c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_b7504bea\mscorlib.dll
+ 2012-02-24 02:23 . 2012-02-24 02:23 3391488 c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_3a25957f\mscorlib.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 1855488 c:\windows\assembly\NativeImages1_v1.0.3705\System\1.0.3300.0__b77a5c561934e089_3d95ec57\System.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 2027520 c:\windows\assembly\NativeImages1_v1.0.3705\System.Xml\1.0.3300.0__b77a5c561934e089_ad0534b4\System.Xml.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 2953216 c:\windows\assembly\NativeImages1_v1.0.3705\System.Windows.Forms\1.0.3300.0__b77a5c561934e089_f683bd36\System.Windows.Forms.dll
+ 2012-06-13 07:03 . 2012-06-13 07:03 2953216 c:\windows\assembly\NativeImages1_v1.0.3705\System.Windows.Forms\1.0.3300.0__b77a5c561934e089_4e05a6e9\System.Windows.Forms.dll
+ 2012-06-13 07:02 . 2012-06-13 07:02 1454080 c:\windows\assembly\NativeImages1_v1.0.3705\System.Design\1.0.3300.0__b03f5f7f11d50a3a_a7cccbec\System.Design.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 1454080 c:\windows\assembly\NativeImages1_v1.0.3705\System.Design\1.0.3300.0__b03f5f7f11d50a3a_47dff6e8\System.Design.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 3301376 c:\windows\assembly\NativeImages1_v1.0.3705\mscorlib\1.0.3300.0__b77a5c561934e089_fbb2d4a2\mscorlib.dll
+ 2012-05-11 07:09 . 2012-05-11 07:09 3325440 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\6d8bef0d008389874e55c0308f0c18e5\WindowsBase.ni.dll
+ 2012-05-11 07:11 . 2012-05-11 07:11 1049600 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\41a81b97625c113b591ed082c95276e2\UIAutomationClientsideProviders.ni.dll
+ 2012-05-11 07:08 . 2012-05-11 07:08 7953408 c:\windows\assembly\NativeImages_v2.0.50727_32\System\e4b5afc4da43b1c576f9322f9f2e1bfe\System.ni.dll
+ 2012-05-11 07:11 . 2012-05-11 07:11 5450752 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\3bba1b8b0b5ef0be238b011cc7a0575e\System.Xml.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 1356288 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\bd5bd406670d483b82bd51249eee59e3\System.WorkflowServices.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 1908224 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\77361ebe9ad8ff77cc9a8d7f8363eb05\System.Workflow.Runtime.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 4514304 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\1c12dfa7826b331b243b7b45daf9904d\System.Workflow.ComponentModel.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 2992640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\514bf0e69e2c9fc8509cd23236057356\System.Workflow.Activities.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\e70343406253e43964f9fe1f42cfbd7c\System.Web.Services.ni.dll
+ 2012-06-14 07:15 . 2012-06-14 07:15 2209280 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\77f8cde07b131839f1841be702837e8e\System.Web.Mobile.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 2405888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\242b168aaca18197eca371ec269e23ac\System.Web.Extensions.ni.dll
+ 2012-05-11 07:11 . 2012-05-11 07:11 1917440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\5efb50c91f3c5e49be2079f625d933b7\System.Speech.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 1706496 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\97d635f5c656ae43d94b55e67fc4ab50\System.ServiceModel.Web.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 2345472 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\505e12638acd6fdb22e1fd2d4c6fc232\System.Runtime.Serialization.ni.dll
+ 2012-06-13 21:42 . 2012-06-13 21:42 1035776 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\d380f1813e27c2a086e62f0218669d67\System.Printing.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 1070080 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\e09496ddb2bf6f3b69707924f2e6b5ff\System.IdentityModel.ni.dll
+ 2012-06-13 21:42 . 2012-06-13 21:42 1592320 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\d86f2038209a4cf0d0f5b30f6375c9b2\System.Drawing.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\b55887436d2cfbe1fb32dd18d554185b\System.DirectoryServices.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 1801216 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\7a53d68ad544f8e9edfdbd5a90a48fd3\System.Deployment.ni.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 6616576 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\12c6fe8d4dd78f9bddf847d3b2821c03\System.Data.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 2510336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\982b508698278c6ffb3d143bbe1e8bb8\System.Data.SqlXml.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 1328128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\2de7666b1cd0a1bc363726c9553dc39c\System.Data.Services.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 1115136 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\7afb1abdbb8ba32cf578ff8ea4e45d99\System.Data.OracleClient.ni.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 2516480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\44a5fc9e7c71b1fe1e2c79b03ecc3bc7\System.Data.Linq.ni.dll
+ 2012-05-11 07:20 . 2012-05-11 07:20 9924096 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\772c94f595cd87b7fa187d592ef46fcf\System.Data.Entity.ni.dll
+ 2012-05-11 07:10 . 2012-05-11 07:10 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\38d07a5ac34b99d94fd14f42e779f625\System.Core.ni.dll
+ 2012-06-13 21:42 . 2012-06-13 21:42 2146304 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\443dd7f0b84c3de54b1a72be655e307c\ReachFramework.ni.dll
+ 2012-06-14 07:04 . 2012-06-14 07:04 1657856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\48ddcafff1a5603fb3289e90330275c0\PresentationUI.ni.dll
+ 2012-05-11 07:09 . 2012-05-11 07:09 1451008 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\8c509044eea2ab22689ea43926b30108\PresentationBuildTasks.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 1712128 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\359fd69eb60e9844ffd497e92345178c\Microsoft.VisualBasic.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 1093120 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\42145ebf75f77cabad442f0801a81c64\Microsoft.Transactions.Bridge.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 2332160 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\cfe15312373b4668398404b5822bab7d\Microsoft.JScript.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\4e463dcf2a03c71913a61b44c32e2389\Microsoft.Build.Tasks.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\395b4a85c7941ac4dd9d1c6f5eb444c7\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-05-11 07:19 . 2012-05-11 07:19 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\5aa63a1cb41e3a5e1e8ed17072e60ec3\Microsoft.Build.Engine.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 4675584 c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\af640928c42df36889ef9d3053ca81bf\DriversHQ.DriverDetective.Client.ni.exe
+ 2012-06-14 07:14 . 2012-06-14 07:14 1132032 c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.Common\83087a68cbdcc4d85b34ba10de764267\DriversHQ.Common.ni.dll
- 2010-06-25 17:06 . 2010-06-25 17:06 1249280 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
+ 2012-05-11 07:03 . 2012-05-11 07:03 1249280 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 3186688 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 3186688 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-05-11 07:03 . 2012-05-11 07:03 5283840 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2012-06-14 07:02 . 2012-06-14 07:02 5246976 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2012-02-16 08:04 . 2012-02-16 08:04 5246976 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-05-11 07:03 . 2012-05-11 07:03 4214784 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2012-06-14 07:03 . 2012-06-14 07:03 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2012-02-16 08:05 . 2012-02-16 08:05 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-02-24 02:20 . 2012-02-24 02:20 1232896 c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
- 2011-03-07 20:39 . 2011-03-07 20:39 1179648 c:\windows\assembly\GAC\System\1.0.3300.0__b77a5c561934e089\System.dll
+ 2012-05-11 07:09 . 2012-05-11 07:09 1179648 c:\windows\assembly\GAC\System\1.0.3300.0__b77a5c561934e089\System.dll
+ 2012-02-24 02:20 . 2012-02-24 02:20 2064384 c:\windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
- 2011-03-07 20:39 . 2011-03-07 20:39 2002944 c:\windows\assembly\GAC\System.Windows.Forms\1.0.3300.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-05-11 07:09 . 2012-05-11 07:09 2002944 c:\windows\assembly\GAC\System.Windows.Forms\1.0.3300.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-02-24 02:20 . 2012-02-24 02:20 1269760 c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2011-10-13 15:39 . 2011-10-13 15:39 1200128 c:\windows\assembly\GAC\System.Web\1.0.3300.0__b03f5f7f11d50a3a\System.Web.dll
+ 2012-05-11 07:09 . 2012-05-11 07:09 1200128 c:\windows\assembly\GAC\System.Web\1.0.3300.0__b03f5f7f11d50a3a\System.Web.dll
+ 2012-06-10 20:54 . 2005-06-24 01:15 3371008 c:\windows\$NtUninstallwmp11$\wmploc.dll
+ 2012-06-10 20:54 . 2004-08-09 21:00 1582080 c:\windows\$NtUninstallwmp11$\wmpencen.dll
+ 2012-06-10 20:54 . 2010-08-25 12:23 5541888 c:\windows\$NtUninstallwmp11$\wmp.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 1003008 c:\windows\$NtUninstallWMFDist11$\wmvdmoe2.dll
+ 2012-06-10 20:52 . 2010-04-03 08:27 2334720 c:\windows\$NtUninstallWMFDist11$\wmvcore.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 1512448 c:\windows\$NtUninstallWMFDist11$\wmvadve.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 1216000 c:\windows\$NtUninstallWMFDist11$\wmvadvd.dll
+ 2012-06-10 20:52 . 2005-08-04 01:29 1119744 c:\windows\$NtUninstallWMFDist11$\wmsdmoe2.dll
+ 2012-06-14 07:01 . 2012-04-11 13:12 1862272 c:\windows\$NtUninstallKB2709162$\win32k.sys
+ 2012-06-14 07:05 . 2012-04-11 13:10 2192640 c:\windows\$NtUninstallKB2707511$\ntoskrnl.exe
+ 2012-06-14 07:05 . 2012-04-11 12:35 2026496 c:\windows\$NtUninstallKB2707511$\ntkrpamp.exe
+ 2012-06-14 07:05 . 2012-04-11 12:35 2069120 c:\windows\$NtUninstallKB2707511$\ntkrnlpa.exe
+ 2012-06-14 07:05 . 2012-04-11 13:14 2148352 c:\windows\$NtUninstallKB2707511$\ntkrnlmp.exe
+ 2012-05-11 07:02 . 2012-02-03 09:22 1860096 c:\windows\$NtUninstallKB2676562$\win32k.sys
+ 2012-05-11 07:02 . 2011-10-25 13:33 2192768 c:\windows\$NtUninstallKB2676562$\ntoskrnl.exe
+ 2012-05-11 07:02 . 2011-10-25 12:52 2027008 c:\windows\$NtUninstallKB2676562$\ntkrpamp.exe
+ 2012-05-11 07:02 . 2011-10-25 12:52 2069376 c:\windows\$NtUninstallKB2676562$\ntkrnlpa.exe
+ 2012-05-11 07:02 . 2011-10-25 13:37 2148864 c:\windows\$NtUninstallKB2676562$\ntkrnlmp.exe
+ 2012-03-14 07:02 . 2012-01-12 16:53 1859968 c:\windows\$NtUninstallKB2641653$\win32k.sys
+ 2012-05-11 07:09 . 2004-07-19 17:54 2002944 c:\windows\$NtUninstallKB2604042$\system.windows.forms.dll
+ 2012-05-11 07:09 . 2011-07-12 22:04 1200128 c:\windows\$NtUninstallKB2604042$\system.web.dll
+ 2012-05-11 07:09 . 2007-12-17 22:29 1179648 c:\windows\$NtUninstallKB2604042$\system.dll
+ 2012-05-11 07:09 . 2011-07-05 19:45 2281472 c:\windows\$NtUninstallKB2604042$\mscorwks.dll
+ 2012-05-11 07:09 . 2011-07-05 19:46 2408448 c:\windows\$NtUninstallKB2604042$\mscorsvr.dll
+ 2012-05-11 07:09 . 2011-07-12 22:05 1998848 c:\windows\$NtUninstallKB2604042$\mscorlib.dll
+ 2012-05-15 13:27 . 2012-05-15 13:27 1872128 c:\windows\$hf_mig$\KB2709162\SP3QFE\win32k.sys
+ 2012-05-04 13:20 . 2012-05-04 13:20 2192640 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntoskrnl.exe
+ 2012-05-04 12:41 . 2012-05-04 12:41 2026496 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrpamp.exe
+ 2012-05-04 12:41 . 2012-05-04 12:41 2069120 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrnlpa.exe
+ 2012-05-04 13:24 . 2012-05-04 13:24 2148352 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrnlmp.exe
+ 2012-06-12 22:18 . 2012-05-11 14:41 1214464 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\urlmon.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 6009344 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\mshtml.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 2001408 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\iertutil.dll
+ 2012-04-11 13:23 . 2012-04-11 13:23 1871360 c:\windows\$hf_mig$\KB2676562\SP3QFE\win32k.sys
+ 2012-04-11 13:22 . 2012-04-11 13:22 2192640 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntoskrnl.exe
+ 2012-04-11 12:42 . 2012-04-11 12:42 2026496 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrpamp.exe
+ 2012-04-11 12:42 . 2012-04-11 12:42 2069120 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrnlpa.exe
+ 2012-04-11 13:26 . 2012-04-11 13:26 2148352 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrnlmp.exe
+ 2012-04-12 05:49 . 2012-03-01 10:58 1214464 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\urlmon.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 5980672 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\mshtml.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 2001408 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\iertutil.dll
+ 2012-03-14 01:25 . 2012-02-03 09:26 1869184 c:\windows\$hf_mig$\KB2641653\SP3QFE\win32k.sys
+ 2004-08-09 21:00 . 2010-08-26 03:36 10841088 c:\windows\system32\wmp.dll
+ 2006-10-27 20:09 . 2012-05-12 00:12 11111424 c:\windows\system32\ieframe.dll
+ 2004-08-09 21:00 . 2010-08-26 03:36 10841088 c:\windows\system32\dllcache\wmp.dll
+ 2007-05-10 00:07 . 2012-05-12 00:12 11111424 c:\windows\system32\dllcache\ieframe.dll
+ 2011-12-26 22:02 . 2011-12-26 22:02 12482048 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2656353\M2656353Uninstall.msp
+ 2011-12-26 14:02 . 2011-12-26 14:02 19677184 c:\windows\Installer\7343d96.msp
+ 2012-05-13 16:47 . 2012-05-13 16:47 23771136 c:\windows\Installer\554df06.msp
+ 2012-04-06 06:12 . 2012-04-06 06:12 15709696 c:\windows\Installer\43fb217.msp
+ 2012-01-04 06:25 . 2012-01-04 06:25 17751552 c:\windows\Installer\43fb205.msp
+ 2012-04-06 07:13 . 2012-04-06 07:13 16527872 c:\windows\Installer\43fb1ec.msp
+ 2012-05-11 07:00 . 2012-05-11 07:00 20343808 c:\windows\Installer\43fb1df.msp
+ 2012-04-13 16:02 . 2012-04-13 16:02 16613376 c:\windows\Installer\3f56ad5.msp
+ 2011-09-15 22:37 . 2011-09-15 22:37 37148160 c:\windows\Installer\16c0fb1.msp
+ 2012-06-13 07:01 . 2012-03-02 10:01 11082752 c:\windows\ie8updates\KB2699988-IE8\ieframe.dll
+ 2012-04-12 07:06 . 2011-12-18 19:46 11082240 c:\windows\ie8updates\KB2675157-IE8\ieframe.dll
+ 2012-02-24 17:14 . 2012-02-24 17:14 20209664 c:\windows\ERDNT\02-24-2012\Users\00000001\ntuser.dat
+ 2012-06-14 07:05 . 2012-06-14 07:05 12433920 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\01abbadafaf265d9f4ac9bbb247acb98\System.Windows.Forms.ni.dll
+ 2012-06-14 07:14 . 2012-06-14 07:14 11817472 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\dbc413807cb7360b3e26ef3ca1d54f9a\System.Web.ni.dll
+ 2012-05-11 07:18 . 2012-05-11 07:18 17403904 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\bc254d2fa26664898ae21d45643bc194\System.ServiceModel.ni.dll
+ 2012-06-14 07:05 . 2012-06-14 07:05 10682368 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\f73a8455f384e90f6925309336fece24\System.Design.ni.dll
+ 2012-06-13 21:42 . 2012-06-13 21:42 14329856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\e4ecfaaf5417aceecb7fa8abddf06113\PresentationFramework.ni.dll
+ 2012-06-13 21:41 . 2012-06-13 21:41 12218368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\f33e2a4d9b385234406fa2d662f78875\PresentationCore.ni.dll
+ 2012-05-11 07:08 . 2012-05-11 07:08 11492352 c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\e337c89bc9f81b69d7237aa70e935900\mscorlib.ni.dll
+ 2012-06-11 07:00 . 2009-01-31 00:34 10838528 c:\windows\$NtUninstallKB973540_WM9$\wmp.dll
+ 2012-06-12 22:18 . 2012-05-11 14:41 11112960 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\ieframe.dll
+ 2012-04-12 05:49 . 2012-03-01 10:58 11085312 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\ieframe.dll
.
– Snapshot reset to current date –
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}]
2012-02-10 15:28 1307928 —-a-w- c:\program files\Microsoft\BingBar\7.1.361.0\BingExt.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 931200]
"KBD"="c:\hp\KBD\KBD.EXE" [2005-02-02 61440]
"TkBellExe"="c:\program files\real\realplayer\update\realsched.exe" [2012-06-14 296056]
.
c:\documents and settings\Administrator\Start Menu\Programs\Startup\
Pin.lnk.disabled [2005-8-17 572]
.
c:\documents and settings\Compaq_Administrator\Start Menu\Programs\Startup\
WKCALREM.LNK - c:\program files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe [2004-6-23 15360]
.
c:\documents and settings\Compaq_Administrator\Start Menu\Programs\Startup\AutorunsDisabled
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
wkcalrem.lnk.disabled [2007-9-12 938]
wordweb.lnk.disabled [2007-8-3 1601]
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"EditLevel"= 0 (0x0)
"NoCommonGroups"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ——w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WgaLogon]
[BU]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ SDEarlyDelete \??\0autocheck autochk *
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Driver]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Guard]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk.disabled]
backup=c:\windows\pss\Adobe Reader Speed Launch.lnk.disabledCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Compaq Connections.lnk.disabled]
backup=c:\windows\pss\Compaq Connections.lnk.disabledCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk.disabled]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.disabledCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"LiveUpdate Notice Service"=2 (0x2)
"LiveUpdate Notice Ex"=2 (0x2)
"LiveUpdate"=3 (0x3)
"ISPwdSvc"=3 (0x3)
"comHost"=3 (0x3)
"CLTNetCnService"=2 (0x2)
"Automatic LiveUpdate Scheduler"=2 (0x2)
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" /background
"ctfmon.exe"=c:\windows\system32\ctfmon.exe
"updateMgr"="c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9
"PCPal"=c:\program files\PCPal\PalAgnt.exe /startup
"swg"=c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
"AVG8_TRAY"=c:\progra~1\AVG\AVG8\avgtray.exe
"SmartRAM"=e:\advanced windowscare v2\MemCleaner.exe /m
"MediaGet2"=c:\documents and settings\Compaq_Administrator\Local Settings\Application Data\MediaGet2\mediaget.exe –minimized
"SUPERAntiSpyware"=c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
""=
"TkBellExe"="c:\program files\real\realplayer\update\realsched.exe" -osboot
"AlwaysReady Power Message APP"=ARPWRMSG.EXE
"DISCover"=c:\program files\DISC\DISCover.exe
"nwiz"=nwiz.exe /install
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
"ISUSPM Startup"=c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
"ehTray"=c:\windows\ehome\ehtray.exe
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"COMODO Firewall Pro"="c:\program files\COMODO\Firewall\cfp.exe" -h
"NvMediaCenter"=RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
"HPDJ Taskbar Utility"=c:\windows\system32\spool\drivers\w32x86\3\hpztsb09.exe
"HP Software Update"=c:\program files\Hp\HP Software Update\HPWuSchd2.exe
"Info Center"=c:\program files\PCPitstop\Info Center\InfoCenter.exe
"NvCplDaemon"=RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
"PC Pitstop PC Matic Reminder"=c:\program files\PCPitstop\PC Matic\Reminder-PCMatic.exe
"MSConfig"=c:\documents and settings\Compaq_Administrator\Desktop\Computer Tools\msconfig.exe /auto
"MSDMine"="c:\program files\Common Files\MSDMine\MSDMine.exe" /c
"SpyHunter Security Suite"=c:\program files\Enigma Software Group\SpyHunter\SpyHunter4.exe
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Compaq Connections\\5577497\\Program\\Compaq Connections.exe"=
"c:\\Program Files\\DirecTV\\DirecTV\\DIRECTV2PC™.exe"=
"c:\\Program Files\\DISC\\DISCover.exe"=
"c:\\Program Files\\DISC\\myFTP.exe"=
"c:\\Program Files\\DISC\\DiscStreamHub.exe"=
"c:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\WINDOWS\\system32\\fxsclnt.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\1ClickDownload\\1ClickDownloader.exe"=
"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
.
R0 pssnap;Paramount Software Snapshot Filter;c:\windows\system32\drivers\pssnap.sys [05/25/2012 10:49 AM 16064]
R1 MpKsld81531af;MpKsld81531af;c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{2148F167-775A-45CE-A7C3-728D199972D1}\MpKsld81531af.sys [08/01/2012 6:56 PM 29904]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [07/22/2011 12:27 PM 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [07/12/2011 5:55 PM 67664]
R2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCore.exe [08/11/2011 7:38 PM 116608]
R2 CLDTVHNService;CLDTVHNService;c:\program files\DirecTV\DirecTV\Kernel\DMP\CLDTVHNService.exe [09/17/2009 7:40 PM 75048]
R2 ntk_dtv;ntk_dtv;c:\program files\DirecTV\DirecTV\Kernel\DMP\ntk_dtv.sys [09/17/2009 7:40 PM 119792]
R2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\Macrium\Reflect\ReflectService.exe [05/25/2012 10:49 AM 224960]
R3 BBUpdate;BBUpdate;c:\program files\Microsoft\BingBar\7.1.361.0\SeaPort.EXE [02/10/2012 11:28 AM 240408]
S2 BBSvc;BingBar Service;c:\program files\Microsoft\BingBar\7.1.361.0\BBSvc.EXE [02/10/2012 11:28 AM 193816]
S2 gupdate1c9316637dc9d00;Google Update Service (gupdate1c9316637dc9d00);c:\program files\Google\Update\GoogleUpdate.exe [10/18/2008 5:12 PM 133104]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [05/13/2012 12:45 PM 250056]
S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [12/02/2011 1:36 PM 23456]
S3 esgiguard;esgiguard;\??\c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys –> c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys [?]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [08/15/2007 9:31 AM 30192]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [10/18/2008 5:12 PM 133104]
S3 mbamchameleon;mbamchameleon;c:\windows\system32\drivers\mbamchameleon.sys [05/08/2012 8:32 PM 32072]
S3 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [02/08/2009 7:12 AM 34064]
S3 PCD5SRVC{8A863ACB-F5F6CC6A-05010003};PCD5SRVC{8A863ACB-F5F6CC6A-05010003} - PCDR Kernel Mode Service Helper Driver;c:\progra~1\PC-DOC~1\PCD5SRVC.pkms [02/07/2006 9:38 PM 21120]
S3 PSMounter;Macrium Reflect Image Explorer Service;c:\windows\system32\drivers\psmounter.sys [05/25/2012 10:49 AM 53952]
.
— Other Services/Drivers In Memory —
.
*NewlyCreated* - MPKSLD81531AF
*Deregistered* - uphcleanhlp
.
Contents of the 'Scheduled Tasks' folder
.
2012-08-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-13 14:18]
.
2012-07-26 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 22:57]
.
2012-07-31 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2008-10-18 21:19]
.
2012-08-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2008-10-18 21:19]
.
2012-08-01 c:\windows\Tasks\Microsoft Antimalware Scheduled Scan.job
- c:\program files\Microsoft Security Client\MpCmdRun.exe [2012-03-26 21:03]
.
2012-07-22 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-3019693388-2064130007-760773113-1008.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-04-30 22:21]
.
2012-07-29 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-3019693388-2064130007-760773113-1008.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-04-30 22:21]
.
2007-11-22 c:\windows\Tasks\Spybot - Search & Destroy - Scheduled Task.job
- c:\program files\Spybot - Search & Destroy\SpybotSD.exe [2007-03-17 20:31]
.
2012-08-01 c:\windows\Tasks\User_Feed_Synchronization-{BC3AEFBE-E14D-4663-828F-914798DAD592}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 09:31]
.
.
——- Supplementary Scan ——-
.
uSearchMigratedDefaultURL =
uStart Page = hxxp://msn.com/
uInternet Connection Wizard,ShellNext = iexplore
TCP: Interfaces\{5C327A0F-6F4B-4E51-A037-21D6A1FF9E0F}: NameServer = 192.168.2.1
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB
FF - ProfilePath - c:\documents and settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\788pfasp.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FXTV5&o=101703&locale=en_US&apn_uid=c80c9f65-1bd6-4acb-a5fc-5a70e42c30cd&apn_ptnrs=F3&apn_sauid=9A9D072F-5CE4-480B-9B9E-87D6253EB727&apn_dtid=YYYYYYYYUS&&q=
FF - prefs.js: network.proxy.type - 0
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109221
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 5415158c0000000000000017319e0782
FF - user.js: extensions.BabylonToolbar_i.hardId - 5415158c0000000000000017319e0782
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15454
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:32
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
- - - - ORPHANS REMOVED - - - -
.
URLSearchHooks-{00000000-6E41-4FD3-8538-502F5495E5FC} - c:\program files\Ask.com\GenericAskToolbar.dll
BHO-{D4027C7F-154A-4066-A1AD-4243D8127440} - c:\program files\Ask.com\GenericAskToolbar.dll
Toolbar-{D4027C7F-154A-4066-A1AD-4243D8127440} - c:\program files\Ask.com\GenericAskToolbar.dll
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - c:\program files\Ask.com\GenericAskToolbar.dll
AddRemove-{79A765E1-C399-405B-85AF-466F52E918B0} - c:\program files\Ask.com\Updater\Updater.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-08-01 19:14
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes …
.
scanning hidden autostart entries …
.
scanning hidden files …
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet003\Services\PCD5SRVC{8A863ACB-F5F6CC6A-05010003}]
"ImagePath"="\??\c:\progra~1\PC-DOC~1\PCD5SRVC.pkms"
.
——————— LOCKED REGISTRY KEYS ———————
.
[HKEY_USERS\S-1-5-21-3019693388-2064130007-760773113-1008\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
[HKEY_USERS\S-1-5-21-3019693388-2064130007-760773113-1008\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{87876222-448B-BE11-B542-E1C2B75AF7EC}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Environment*]
"v5Licence0"="15-RB8K-AE6C-P8VF-F9PK-7517-A9TQ41W"
"Activated"="Y"
.
——————— DLLs Loaded Under Running Processes ———————
.
- - - - - - - > 'winlogon.exe'(760)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\WININET.dll
.
Completion time: 2012-08-01 19:19:37
ComboFix-quarantined-files.txt 2012-08-01 23:19
ComboFix2.txt 2012-02-23 17:10
.
Pre-Run: 194,968,072,192 bytes free
Post-Run: 194,985,861,120 bytes free
.
- - End Of File - - 7B4BBA85B4537C3BCC828D246F85BA21
Looking good.

I'd like to get an online scan now. It will take a long time.

While it is running, I'd like you to think about whether or not you really want or use the Babylon toolbar. Odds are it's going to get flagged as spyware or foistware (programs that get "pushed" on you and installed along with other programs). If you don't need it, we will take care of it along with anything else that pops in this scan.

Go here to run an online scanner from ESET.
  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activeX control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked and the Scan Archives option is ticked.
  • Click on Advanced Settings, ensure the options Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.
  • Click Scan
  • Wait for the scan to finish
  • When the scan completes, press the LIST OF THREATS FOUND button
  • Press EXPORT TO TEXT FILE , name the file ESETSCAN and save it to your desktop
  • Include the contents of this report in your next reply.
  • Press the BACK button.
  • Press Finish

Please let me know how things seem to be running now, and let me know about Babylon toolbar.
That's a good thing. :thumbup:

Please let me know how things seem to be running now, and let me know about Babylon toolbar.

Even though Babylon toolbar wasn't flagged… I'd remove it unless you use it.
I have no idea where the Babylon Toolbar came from…..I sometime use Mozilla Firefox browser…..maybe it came from that site…..Anyway I don't use it………As long as I don't have any malware or virus my machine must have a hardware problem…….Slow reaching the net, takes forever when on Outlook express d/loading a message…..Crazy PC……
COMBOFIX-Script

  • Please open Notepad (Start -> Run -> type notepad in the Open field -> OK) and copy and paste the text present inside the code box below:

    Firefox::
    FF - ProfilePath - c:\documents and settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\788pfasp.default\
    FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=FXTV5&o=101703&locale=en_US&apn_uid=c80c9f65-1bd6-4acb-a5fc-5a70e42c30cd&apn_ptnrs=F3&apn_sauid=9A9D072F-5CE4-480B-9B9E-87D6253EB727&apn_dtid=YYYYYYYYUS&&q=
    FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=109221
    FF - user.js: extensions.BabylonToolbar_i.babExt -
    FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
    FF - user.js: extensions.BabylonToolbar_i.id - 5415158c0000000000000017319e0782
    FF - user.js: extensions.BabylonToolbar_i.hardId - 5415158c0000000000000017319e0782
    FF - user.js: extensions.BabylonToolbar_i.instlDay - 15454
    FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
    FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
    FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:32
    FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
    FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
    FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
    FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
    FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
    FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
  • Save this as CFScript.txt and change the "Save as type" to "All Files" and place it on your desktop.

    [external image: Posted Image]
  • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before following the steps below. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
  • Referring to the screenshot above, drag CFScript.txt into ComboFix.exe.
  • ComboFix will now run a scan on your system. It may reboot your system when it finishes. This is normal.
  • When finished, it shall produce a log for you. Copy and paste the contents of the log in your next reply.
CAUTION: Do not mouse-click ComboFix's window while it is running. That may cause it to stall.
I move the text into the combofix icon and shortly when it began to run a window popped up saying a update was available…..I clicked to update and it started back running and completed the Log file below……Since the update I am not sure it covered all the problems my PC may have…….Maybe we should run again!

ComboFix 12-07-31.04 - Compaq_Administrator 08/02/2012 22:11:23.9.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.958.498 [GMT -4:00]
Running from: c:\documents and settings\[removed]\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Compaq_Administrator\Desktop\cfscript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
.
((((((((((((((((((((((((( Files Created from 2012-07-03 to 2012-08-03 )))))))))))))))))))))))))))))))
.
.
2012-08-03 02:08 . 2012-08-03 02:08 56200 —-a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{22E45215-2DD1-4C49-8E6B-69926BF57F2C}\offreg.dll
2012-08-02 23:18 . 2012-06-29 08:44 6891424 —-a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{22E45215-2DD1-4C49-8E6B-69926BF57F2C}\mpengine.dll
2012-08-02 18:55 . 2012-06-29 08:44 6891424 —-a-w- c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-07-29 01:02 . 2012-07-29 01:02 ——– d—–w- c:\windows\system32\wbem\Repository
2012-07-29 01:01 . 2012-07-29 01:01 ——– d—–w- c:\windows\4E0C6314A8B84026AC15084E8B63AFB5.TMP
2012-07-16 12:00 . 2012-07-16 12:00 ——– d—–w- c:\documents and settings\Compaq_Administrator\Application Data\RealNetworks
2012-07-14 15:41 . 2012-07-14 15:41 ——– d—–w- c:\documents and settings\Compaq_Administrator\Application Data\Overlook
2012-07-14 15:40 . 2012-07-14 15:40 ——– d—–w- c:\program files\WinPcap
2012-07-14 15:40 . 2012-07-14 15:40 ——– d—–w- c:\documents and settings\All Users\Application Data\Overlook
2012-07-14 15:40 . 2012-07-14 15:40 ——– d—–w- c:\program files\Overlook Fing 2.1
2012-07-07 02:40 . 2012-07-07 02:40 ——– d—–w- c:\windows\system32\config\systemprofile\Application Data\Foxit Software
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-21 14:18 . 2012-05-13 16:45 426184 —-a-w- c:\windows\system32\FlashPlayerApp.exe
2012-07-21 14:18 . 2011-07-09 13:27 70344 —-a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-07-03 17:46 . 2008-05-31 18:04 22344 —-a-w- c:\windows\system32\drivers\mbam.sys
2012-06-14 13:14 . 2003-03-19 00:14 499712 —-a-w- c:\windows\system32\msvcp71.dll
2012-06-14 13:14 . 2003-02-21 08:42 348160 —-a-w- c:\windows\system32\msvcr71.dll
2012-06-13 13:19 . 2004-08-09 21:00 1866112 —-a-w- c:\windows\system32\win32k.sys
2012-06-10 16:01 . 2012-06-10 16:01 181064 —-a-w- c:\windows\PSEXESVC.EXE
2012-06-05 15:50 . 2009-08-19 22:07 1372672 —-a-w- c:\windows\system32\msxml6.dll
2012-06-05 15:50 . 2004-08-09 21:00 1172480 —-a-w- c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2004-08-09 21:00 152576 —-a-w- c:\windows\system32\schannel.dll
2012-06-02 19:19 . 2007-05-23 02:46 22040 —-a-w- c:\windows\system32\wucltui.dll.mui
2012-06-02 19:19 . 2007-05-23 02:46 15384 —-a-w- c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 19:19 . 2004-08-09 21:00 329240 —-a-w- c:\windows\system32\wucltui.dll
2012-06-02 19:19 . 2004-08-09 21:00 219160 —-a-w- c:\windows\system32\wuaucpl.cpl
2012-06-02 19:19 . 2004-08-09 21:00 210968 —-a-w- c:\windows\system32\wuweb.dll
2012-06-02 19:19 . 2007-05-23 02:46 15384 —-a-w- c:\windows\system32\wuapi.dll.mui
2012-06-02 19:19 . 2005-05-26 08:16 45080 -c–a-w- c:\windows\system32\wups2.dll
2012-06-02 19:19 . 2004-08-09 21:00 97304 —-a-w- c:\windows\system32\cdm.dll
2012-06-02 19:19 . 2004-08-09 21:00 53784 —-a-w- c:\windows\system32\wuauclt.exe
2012-06-02 19:19 . 2004-08-09 21:00 35864 -c–a-w- c:\windows\system32\wups.dll
2012-06-02 19:19 . 2007-05-23 02:46 17944 —-a-w- c:\windows\system32\wuaueng.dll.mui
2012-06-02 19:19 . 2004-08-09 21:00 577048 —-a-w- c:\windows\system32\wuapi.dll
2012-06-02 19:19 . 2004-08-09 21:00 1933848 —-a-w- c:\windows\system32\wuaueng.dll
2012-06-02 19:18 . 2011-03-09 10:34 275696 —-a-w- c:\windows\system32\mucltui.dll
2012-06-02 19:18 . 2011-03-09 10:34 214256 —-a-w- c:\windows\system32\muweb.dll
2012-06-02 19:18 . 2011-03-09 10:34 17136 —-a-w- c:\windows\system32\mucltui.dll.mui
2012-05-31 13:22 . 2004-08-09 21:00 599040 —-a-w- c:\windows\system32\crypt32.dll
2012-05-25 13:52 . 2012-05-25 14:49 12992 —-a-w- c:\windows\system32\drivers\PSVolAcc.sys
2012-05-25 13:52 . 2012-05-25 14:49 16064 —-a-w- c:\windows\system32\drivers\pssnap.sys
2012-05-25 13:52 . 2012-05-25 14:49 53952 —-a-w- c:\windows\system32\drivers\psmounter.sys
2012-05-16 15:08 . 2004-08-09 21:00 916992 —-a-w- c:\windows\system32\wininet.dll
2012-05-11 14:42 . 2004-08-09 21:00 43520 ——w- c:\windows\system32\licmgr10.dll
2012-05-11 14:42 . 2004-08-09 21:00 1469440 ——w- c:\windows\system32\inetcpl.cpl
2012-05-11 11:38 . 2004-08-09 21:00 385024 ——w- c:\windows\system32\html.iec
2012-05-09 03:01 . 2012-05-09 00:32 32072 —-a-w- c:\windows\system32\drivers\mbamchameleon.sys
2011-12-21 07:24 . 2011-12-31 19:27 121816 ——w- c:\program files\mozilla firefox\components\browsercomps.dll
2011-09-12 17:33 . 2011-09-12 17:33 119808 ——w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
((((((((((((((((((((((((((((( SnapShot_2012-08-01_23.14.13 )))))))))))))))))))))))))))))))))))))))))
.
+ 2005-08-30 13:51 . 2012-08-02 23:04 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2005-08-30 13:51 . 2012-08-01 22:55 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2012-08-02 16:02 . 2012-08-02 23:04 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
- 2012-02-24 05:14 . 2012-08-01 22:55 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{1dad3af3-ef2f-4f64-ac4b-11789189fcb6}]
2012-02-10 15:28 1307928 —-a-w- c:\program files\Microsoft\BingBar\7.1.361.0\BingExt.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-03-26 931200]
"KBD"="c:\hp\KBD\KBD.EXE" [2005-02-02 61440]
.
c:\documents and settings\Administrator\Start Menu\Programs\Startup\
Pin.lnk.disabled [2005-8-17 572]
.
c:\documents and settings\Compaq_Administrator\Start Menu\Programs\Startup\
WKCALREM.LNK - c:\program files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe [2004-6-23 15360]
.
c:\documents and settings\Compaq_Administrator\Start Menu\Programs\Startup\AutorunsDisabled
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
wkcalrem.lnk.disabled [2007-9-12 938]
wordweb.lnk.disabled [2007-8-3 1601]
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"EditLevel"= 0 (0x0)
"NoCommonGroups"= 0 (0x0)
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54 551296 ——w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\WgaLogon]
[BU]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk /p \??\c:\0sdearlydelete \??\0autocheck autochk *
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Driver]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Guard]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk.disabled]
backup=c:\windows\pss\Adobe Reader Speed Launch.lnk.disabledCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Compaq Connections.lnk.disabled]
backup=c:\windows\pss\Compaq Connections.lnk.disabledCommon Startup
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk.disabled]
backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.disabledCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"LiveUpdate Notice Service"=2 (0x2)
"LiveUpdate Notice Ex"=2 (0x2)
"LiveUpdate"=3 (0x3)
"ISPwdSvc"=3 (0x3)
"comHost"=3 (0x3)
"CLTNetCnService"=2 (0x2)
"Automatic LiveUpdate Scheduler"=2 (0x2)
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" /background
"ctfmon.exe"=c:\windows\system32\ctfmon.exe
"updateMgr"="c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9
"PCPal"=c:\program files\PCPal\PalAgnt.exe /startup
"swg"=c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
"AVG8_TRAY"=c:\progra~1\AVG\AVG8\avgtray.exe
"SmartRAM"=e:\advanced windowscare v2\MemCleaner.exe /m
"MediaGet2"=c:\documents and settings\Compaq_Administrator\Local Settings\Application Data\MediaGet2\mediaget.exe –minimized
"SUPERAntiSpyware"=c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
""=
"TkBellExe"="c:\program files\real\realplayer\update\realsched.exe" -osboot
"AlwaysReady Power Message APP"=ARPWRMSG.EXE
"DISCover"=c:\program files\DISC\DISCover.exe
"nwiz"=nwiz.exe /install
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" -atboottime
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
"ISUSPM Startup"=c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
"ehTray"=c:\windows\ehome\ehtray.exe
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe"
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"COMODO Firewall Pro"="c:\program files\COMODO\Firewall\cfp.exe" -h
"NvMediaCenter"=RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
"HPDJ Taskbar Utility"=c:\windows\system32\spool\drivers\w32x86\3\hpztsb09.exe
"HP Software Update"=c:\program files\Hp\HP Software Update\HPWuSchd2.exe
"Info Center"=c:\program files\PCPitstop\Info Center\InfoCenter.exe
"NvCplDaemon"=RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
"PC Pitstop PC Matic Reminder"=c:\program files\PCPitstop\PC Matic\Reminder-PCMatic.exe
"MSConfig"=c:\documents and settings\Compaq_Administrator\Desktop\Computer Tools\msconfig.exe /auto
"MSDMine"="c:\program files\Common Files\MSDMine\MSDMine.exe" /c
"SpyHunter Security Suite"=c:\program files\Enigma Software Group\SpyHunter\SpyHunter4.exe
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Compaq Connections\\5577497\\Program\\Compaq Connections.exe"=
"c:\\Program Files\\DirecTV\\DirecTV\\DIRECTV2PC™.exe"=
"c:\\Program Files\\DISC\\DISCover.exe"=
"c:\\Program Files\\DISC\\myFTP.exe"=
"c:\\Program Files\\DISC\\DiscStreamHub.exe"=
"c:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\WINDOWS\\system32\\fxsclnt.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\1ClickDownload\\1ClickDownloader.exe"=
"c:\\Program Files\\Common Files\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
.
R0 pssnap;Paramount Software Snapshot Filter;c:\windows\system32\drivers\pssnap.sys [05/25/2012 10:49 AM 16064]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [07/22/2011 12:27 PM 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [07/12/2011 5:55 PM 67664]
R2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCore.exe [08/11/2011 7:38 PM 116608]
R2 CLDTVHNService;CLDTVHNService;c:\program files\DirecTV\DirecTV\Kernel\DMP\CLDTVHNService.exe [09/17/2009 7:40 PM 75048]
R2 ntk_dtv;ntk_dtv;c:\program files\DirecTV\DirecTV\Kernel\DMP\ntk_dtv.sys [09/17/2009 7:40 PM 119792]
R2 ReflectService.exe;Macrium Reflect Image Mounting Service;c:\program files\Macrium\Reflect\ReflectService.exe [05/25/2012 10:49 AM 224960]
R3 BBUpdate;BBUpdate;c:\program files\Microsoft\BingBar\7.1.361.0\SeaPort.EXE [02/10/2012 11:28 AM 240408]
S2 BBSvc;BingBar Service;c:\program files\Microsoft\BingBar\7.1.361.0\BBSvc.EXE [02/10/2012 11:28 AM 193816]
S2 gupdate1c9316637dc9d00;Google Update Service (gupdate1c9316637dc9d00);c:\program files\Google\Update\GoogleUpdate.exe [10/18/2008 5:12 PM 133104]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [05/13/2012 12:45 PM 250056]
S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [12/02/2011 1:36 PM 23456]
S3 esgiguard;esgiguard;\??\c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys –> c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys [?]
S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [08/15/2007 9:31 AM 30192]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [10/18/2008 5:12 PM 133104]
S3 mbamchameleon;mbamchameleon;c:\windows\system32\drivers\mbamchameleon.sys [05/08/2012 8:32 PM 32072]
S3 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [02/08/2009 7:12 AM 34064]
S3 PCD5SRVC{8A863ACB-F5F6CC6A-05010003};PCD5SRVC{8A863ACB-F5F6CC6A-05010003} - PCDR Kernel Mode Service Helper Driver;c:\progra~1\PC-DOC~1\PCD5SRVC.pkms [02/07/2006 9:38 PM 21120]
S3 PSMounter;Macrium Reflect Image Explorer Service;c:\windows\system32\drivers\psmounter.sys [05/25/2012 10:49 AM 53952]
.
— Other Services/Drivers In Memory —
.
*Deregistered* - uphcleanhlp
.
Contents of the 'Scheduled Tasks' folder
.
2012-08-03 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-13 14:18]
.
2012-08-02 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-01 22:57]
.
2012-08-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2008-10-18 21:19]
.
2012-08-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2008-10-18 21:19]
.
2012-08-02 c:\windows\Tasks\Microsoft Antimalware Scheduled Scan.job
- c:\program files\Microsoft Security Client\MpCmdRun.exe [2012-03-26 21:03]
.
2012-07-22 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-3019693388-2064130007-760773113-1008.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-04-30 22:21]
.
2012-07-29 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-3019693388-2064130007-760773113-1008.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-04-30 22:21]
.
2007-11-22 c:\windows\Tasks\Spybot - Search & Destroy - Scheduled Task.job
- c:\program files\Spybot - Search & Destroy\SpybotSD.exe [2007-03-17 20:31]
.
2012-08-03 c:\windows\Tasks\User_Feed_Synchronization-{BC3AEFBE-E14D-4663-828F-914798DAD592}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 09:31]
.
.
——- Supplementary Scan ——-
.
uSearchMigratedDefaultURL =
uStart Page = hxxp://msn.com/
uInternet Connection Wizard,ShellNext = iexplore
TCP: Interfaces\{5C327A0F-6F4B-4E51-A037-21D6A1FF9E0F}: NameServer = 192.168.2.1
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB
FF - ProfilePath - c:\documents and settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\788pfasp.default\
FF - prefs.js: browser.search.selectedEngine - Ask.com
FF - prefs.js: network.proxy.type - 0
.
- - - - ORPHANS REMOVED - - - -
.
BHO-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-08-02 22:23
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes …
.
scanning hidden autostart entries …
.
scanning hidden files …
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet003\Services\PCD5SRVC{8A863ACB-F5F6CC6A-05010003}]
"ImagePath"="\??\c:\progra~1\PC-DOC~1\PCD5SRVC.pkms"
.
——————— LOCKED REGISTRY KEYS ———————
.
[HKEY_USERS\S-1-5-21-3019693388-2064130007-760773113-1008\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
[HKEY_USERS\S-1-5-21-3019693388-2064130007-760773113-1008\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{87876222-448B-BE11-B542-E1C2B75AF7EC}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Environment*]
"v5Licence0"="15-RB8K-AE6C-P8VF-F9PK-7517-A9TQ41W"
"Activated"="Y"
.
——————— DLLs Loaded Under Running Processes ———————
.
- - - - - - - > 'winlogon.exe'(828)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\WININET.dll
.
- - - - - - - > 'explorer.exe'(3568)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Completion time: 2012-08-02 22:28:42
ComboFix-quarantined-files.txt 2012-08-03 02:28
ComboFix2.txt 2012-08-01 23:19
ComboFix3.txt 2012-02-23 17:10
.
Pre-Run: 194,802,401,280 bytes free
Post-Run: 194,911,129,600 bytes free
.
- - End Of File - - 2E59D5669550075ADFFF8CC3C63DD1AF
CF ran fine and did what is was supposed to. :thumbup:

Let's check some services:

Please download Farbar Service Scanner and run it on the computer with the issue.
  • Make sure "Include All Files" option remains checked.
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.
Didn't see option "Include All files" only thing checked was Internet Services…….. Farbar Service Scanner Version: 26-07-2012 Ran by [removed] (administrator) on 03-08-2012 at 13:46:11 Running from "C:\Documents and Settings\Compaq_Administrator\Desktop" Microsoft Windows XP Professional Service Pack 3 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo IP is accessible. Yahoo.com is accessible. File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\services.exe => MD5 is legit Extra List: ======= Gpc(6) IPSec(4) NetBT(5) PSched(7) Tcpip(3) 0x080000000400000001000000020000000300000008000000050000000600000007000000 IpSec Tag value is correct. **** End of log ****
Everything seems to be fine there. I don't know what is causing your slowness… but I do not believe it is malware. If you continue to have trouble, I suggest that you seek help from the Tech Team in the Browser, Internet and Email forum.

Meanwhile,Log looks good :D


Time for some housekeeping
  • Click START then RUN
  • Now type ComboFix /Uninstall in the runbox and click OK.
  • Note the space between the X and the U, it needs to be there.
  • [external image: Posted Image]
The above procedure will:
  • Implement some cleanup procedures.
  • Reset System Restore.

Now to remove most of the tools that we have used in fixing your machine:
  • Make sure you have an Internet Connection.
  • Download OTC to your desktop and run it
  • A list of tool components used in the cleanup of malware will be downloaded.
  • If your Firewall or Real Time protection attempts to block OTC to reach the Internet, please allow the application to do so.
  • Click Yes to begin the cleanup process and remove these components, including this application.
  • You will be asked to reboot the machine to finish the cleanup process. If you are asked to reboot the machine choose Yes.

Please re-enable any security that was disabled.


The following is my standard advice for the future. Use what you can and pat yourself on the back for what you're already doing.

Please take time to read Preventing Malware - Tools and Practices for Safe Computing. Very important information for your consideration is contained therein.

I would also suggest you read this:
So how did I get infected in the first place?
by Tony Klein


Also: "How to prevent malware"
by miekiemoes

Please respond back that you understand the above and let me know if you have any questions. Otherwise, this thread will be closed Resolved. :thumbup:
Uninstalled Combofix, but cannot reach geekstogo…..to d/load the OTC software……Also when I clicked the tab in my toolbar to open another page so I could type in the url, Babylon search page came up…..Didn't we dump it?

typing in this url a page comes up saying cannot reach the internet….. http://oldtimer.geekstogo.com/OTC.exe

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI