This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Resolved] Slow Notebook

4 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Here's the story: The lcd screen on the laptop cracked, so i took it to a repair shop. After waiting for about I week, I got it back and it was repaired. However, I've noticed that my laptop was slow…really slow. It took a while for me to get into the log in screen after turning on the laptop. Then after logging in, it took about another minute or two for my screen to show up, with icons. Anyways, here's the HJT log.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:49:15 AM, on 9/12/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16711)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…n&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…n&pf=laptop
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O13 - Gopher Prefix:
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\r3hook.dll,C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxdiCATSCustConnectService - Lexmark International, Inc. - C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxdiserv.exe
O23 - Service: lxdi_device - - C:\Windows\system32\lxdicoms.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

–
End of file - 6397 bytes

http://forums.whatthetech.com/Hello_D_t955…tml#entry487306
Hello Mjolnir

Welcome to the Whatthetech Malware Removal Forum, sorry about the delay, but the amount of people posting with infected computers is through the roof and sometimes we can't get to logs as fast as we would like to.


Open HijackThis > Do a System Scan Only, close your browser and all open windows including this one, the only program or window you should have open is HijackThis, check the following entries and click on Fix Checked.

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =




You need to enable windows to show all files and folders, instructions Here

This file may be related to HP, but lets make sure
Go to VirusTotal and submit this file for analysis, just use the browse feature and then Send File, you will get a report back, post the report into this thread for me to see.

C:\Windows\SMINST\launcher.exe <—This file


Post the Virustotal log and a new HJT log please
Thank you for the reply.
Here is the virustotal log:

File launcher.exe received on 10.07.2008 04:20:38 (CET)
Current status: finished
Result: 2/35 (5.71%)
Compact Compact
Print results Print results
Antivirus Version Last Update Result
AhnLab-V3 2008.10.3.2 2008.10.06 -
AntiVir 7.8.1.34 2008.10.06 -
Authentium 5.1.0.4 2008.10.07 -
Avast 4.8.1248.0 2008.10.06 -
AVG 8.0.0.161 2008.10.06 -
BitDefender 7.2 2008.10.07 -
CAT-QuickHeal 9.50 2008.10.06 -
ClamAV 0.93.1 2008.10.07 -
DrWeb 4.44.0.09170 2008.10.06 -
eSafe 7.0.17.0 2008.10.07 -
eTrust-Vet 31.6.6132 2008.10.06 -
Ewido 4.0 2008.10.06 -
F-Prot 4.4.4.56 2008.10.06 -
F-Secure 8.0.14332.0 2008.10.07 -
Fortinet 3.113.0.0 2008.10.07 -
GData 19 2008.10.07 -
Ikarus T3.1.1.34.0 2008.10.07 -
K7AntiVirus 7.10.486 2008.10.06 -
Kaspersky 7.0.0.125 2008.10.06 -
McAfee 5398 2008.10.04 -
Microsoft 1.4005 2008.10.07 -
Norman 5.80.02 2008.10.06 -
Panda 9.0.0.4 2008.10.06 -
PCTools 4.4.2.0 2008.10.06 -
Prevx1 V2 2008.10.07 -
Rising 20.65.02.00 2008.10.06 -
SecureWeb-Gateway 6.7.6 2008.10.06 -
Sophos 4.34.0 2008.10.07 -
Sunbelt 3.1.1707.1 2008.10.07 -
Symantec 10 2008.10.07 -
TheHacker [removed].102 2008.10.07 -
TrendMicro 8.700.0.1004 2008.10.06 -
VBA32 3.12.8.6 2008.10.07 suspected of Win32.BrokenEmbeddedSignature (paranoid heuristics)
ViRobot 2008.10.6.1408 2008.10.06 Trojan.Win32.Agent.44168
VirusBuster 4.5.11.0 2008.10.06 -
Additional information
File size: 44128 bytes
MD5…: 50ecaa360582260acc5e1495cc34a22e
SHA1..: 49ac00e85310e4ca0004dcfd89d49b8f864f42c7
SHA256: f9d3eb40b802b7092b34b636b89258934420cda7daaa1497312fcd11b5a91490
SHA512: 76c29d4bf3593098ce941bf1f898645c02fafdd7c599905fee17d5cd3b084f61
85657c97f7b5e50f537cd34f3ebeca6015322279af693d3b87c03fcee818250b
PEiD..: -
TrID..: File type identification
Win64 Executable Generic (80.9%)
Win32 Executable Generic (8.0%)
Win32 Dynamic Link Library (generic) (7.1%)
Generic Win/DOS Executable (1.8%)
DOS Executable Generic (1.8%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x404858
timedatestamp…..: 0x454f2771 (Mon Nov 06 12:15:45 2006)
machinetype…….: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x41c9 0x5000 5.38 5c5a7f6e4e9784110db25bddcc6dee3c
.rdata 0x6000 0x1458 0x2000 3.03 ae638035d8f027226689b7c38288aca2
.data 0x8000 0xb30 0x1000 2.60 90612eb9fcc7c59a48e1552b7ea3bb65
.rsrc 0x9000 0x3b0 0x1000 0.96 3b4d5d544aab5d57e8e6f20740ea399c

( 7 imports )
> MFC42u.DLL: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
> msvcrt.dll: __p__commode, _adjust_fdiv, __setusermatherr, _initterm, __getmainargs, _acmdln, exit, _cexit, _XcptFilter, _exit, __p__fmode, __1type_info@@UAE@XZ, _onexit, __dllonexit, __set_app_type, _ltow, __CxxFrameHandler, wcscmp, wcslen, _terminate@@YAXXZ, _controlfp, _c_exit, _except_handler3, _wgetenv, _wcsicmp
> KERNEL32.dll: CreateFileW, DeleteFileW, SetFileAttributesW, SetLastError, FormatMessageW, GetLastError, GlobalFree, GlobalUnlock, GetPrivateProfileStringW, GlobalAlloc, GetModuleFileNameW, GetVersionExW, GetModuleHandleA, GetStartupInfoA, GetPrivateProfileIntW, GetCurrentDirectoryW, GlobalLock, GetExitCodeProcess, CloseHandle, WaitForSingleObject, CreateProcessW
> USER32.dll: wvsprintfW
> ADVAPI32.dll: RegSetValueExW, RegCloseKey, RegOpenKeyW
> VERSION.dll: VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
> SHLWAPI.dll: PathStripPathW

( 0 exports )
ThreatExpert info: http://www.threatexpert.com/report.aspx?md…c5e1495cc34a22e

The HJT log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:28:58 PM, on 10/6/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a;…n&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\r3hook.dll,C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxdiCATSCustConnectService - Lexmark International, Inc. - C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxdiserv.exe
O23 - Service: lxdi_device - - C:\Windows\system32\lxdicoms.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

–
End of file - 6095 bytes
Good Morning,

Been doing some reading about Launcher.exe and along with the VirusTotal report I believe its ok. The rest of your HJT log looks fine also.

Please run this free online virus scanner from ESET
  • Note: You will need to use Internet explorer for this scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activex control to install
  • Click Start
  • Make sure that the option Remove found threats is ticked, and the option Scan unwanted applications is checked
  • Click Scan
  • Wait for the scan to finish
  • Use notepad to open the logfile located at C:\Program Files\EsetOnlineScanner\log.txt
  • Copy and paste that log as a reply to this topic
There appears to be a problem. :smack: When I clicked on start, the following message shows up: Error: Cannot initialize OnlineScanner. Administrator rights required. The thing is, I am on the one and only administrator account.
Here ya go, had to look this up as some scans and programs won't run on Vista Q7: Does the ESET Online Scanner work in Microsoft Windows Vista? A7: Yes, the ESET Online Scanner work in Windows Vista, provided you first start Internet Explorer as an Administrator. To do so, right-click on the Internet Explorer icon in the Start Menu and select "Run as administrator" from the popup context menu.
Here is the logfile from the online scanner. # version=4 # OnlineScanner.ocx=1.0.0.56 # OnlineScannerDLLA.dll=1, 0, 0, 51 # OnlineScannerDLLW.dll=1, 0, 0, 51 # OnlineScannerUninstaller.exe=1, 0, 0, 49 # vers_standard_module=3501 (20081007) # vers_arch_module=1.064 (20080214) # vers_adv_heur_module=1.066 (20070917) # EOSSerial=025b57a03e569341bbceda4603bb22f6 # end=finished # remove_checked=true # unwanted_checked=true # utc_time=2008-10-07 06:22:23 # local_time=2008-10-07 11:22:23 (-0800, Pacific Daylight Time) # country="United States" # osver=6.0.6001 NT Service Pack 1 # scanned=394195 # found=0 # scan_time=5580
Hello,

I believe your system is clean, nothing showing up on the scans. There is another we can run that will show me all the info on your system, if nothing shows up there than I would say this is some sort of hardware or software conflict and if so I can direct you to some windows support sites for help.

This will run on Vista, after you download it you may have to right click and run as administrator

  • Download random's system information tool (RSIT) by random/random from here and save it to your desktop.
  • Double click on RSIT.exe to run RSIT.
  • Click Continue at the disclaimer screen.
  • Once it has finished, two logs will open. Please post the contents of both log.txt (<info.txt (<
Here are the logs. (note: I editied the user name with xxxxxxxx for privacy)

Log.txt :

Logfile of random's system information tool 1.04 (written by random/random)
Run by [removed] at 2008-10-07 19:17:02
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 106 GB (73%) free of 144 GB
Total RAM: 958 MB (18% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:17:30 PM, on 10/7/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\xxxxxxxx\Downloads\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\xxxxxxxx.exe
C:\Windows\system32\DllHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…n&pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/OnlineScanner.cab
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\r3hook.dll,C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxdiCATSCustConnectService - Lexmark International, Inc. - C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxdiserv.exe
O23 - Service: lxdi_device - - C:\Windows\system32\lxdicoms.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

–
End of file - 6422 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-28 1045800]
"QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2007-03-28 176128]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2007-02-13 159744]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe [2007-06-28 218376]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-02-28 90191]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-02-28 7770112]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-02-28 81920]
"HP Health Check Scheduler"=[ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe []
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-07 44128]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"Aim6"= []
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2006-10-16 1197648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FaxCenterServer]
C:\Program Files\\Lexmark Fax Solutions\fm3032.exe [2007-05-07 312240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxdiamon]
C:\Program Files\Lexmark 3500-4500 Series\lxdiamon.exe [2007-03-05 20480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxdimon.exe]
C:\Program Files\Lexmark 3500-4500 Series\lxdimon.exe [2007-05-07 435120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\Windows\system32\NvCpl.dll [2007-02-28 7770112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2007-06-29 286720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WAWifiMessage]
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-10 317128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\KASPER~1\KASPER~1.0\r3hook.dll,C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\Windows\system32\klogon.dll [2007-06-28 206088]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\EarthLink TotalAccess\TaskPanl.exe"="C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{407d2ce5-492d-11dc-b33e-001b244d0f23}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\copy.exe


======List of files/folders created in the last 1 months======

2008-10-07 19:17:02 —-D—- C:\rsit
2008-10-07 09:45:58 —-D—- C:\Program Files\EsetOnlineScanner
2008-10-07 09:33:08 —-D—- C:\Program Files\Panda Security
2008-10-06 21:58:20 —-D—- C:\Temp
2008-10-01 23:14:04 —-SHD—- C:\Config.Msi
2008-09-18 08:13:09 —-A—- C:\Windows\system32\msshooks.dll
2008-09-18 08:13:07 —-A—- C:\Windows\system32\msscb.dll
2008-09-18 08:13:06 —-A—- C:\Windows\system32\SearchFilterHost.exe
2008-09-18 08:13:06 —-A—- C:\Windows\system32\propdefs.dll
2008-09-18 08:13:06 —-A—- C:\Windows\system32\msstrc.dll
2008-09-18 08:13:06 —-A—- C:\Windows\system32\mssprxy.dll
2008-09-18 08:13:06 —-A—- C:\Windows\system32\mssitlb.dll
2008-09-18 08:13:06 —-A—- C:\Windows\system32\msshsq.dll
2008-09-18 08:13:05 —-A—- C:\Windows\system32\thawbrkr.dll
2008-09-18 08:13:05 —-A—- C:\Windows\system32\srchadmin.dll
2008-09-18 08:13:05 —-A—- C:\Windows\system32\propsys.dll
2008-09-18 08:13:05 —-A—- C:\Windows\system32\korwbrkr.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\xmlfilter.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\wsepno.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\rtffilt.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\offfilt.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\nlhtml.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\msscntrs.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\mimefilt.dll
2008-09-18 08:13:04 —-A—- C:\Windows\system32\chsbrkr.dll
2008-09-18 08:13:03 —-A—- C:\Windows\system32\tquery.dll
2008-09-18 08:13:03 —-A—- C:\Windows\system32\SearchProtocolHost.exe
2008-09-18 08:13:03 —-A—- C:\Windows\system32\SearchIndexer.exe
2008-09-18 08:13:03 —-A—- C:\Windows\system32\mssvp.dll
2008-09-18 08:13:03 —-A—- C:\Windows\system32\mssrch.dll
2008-09-18 08:13:03 —-A—- C:\Windows\system32\mssphtb.dll
2008-09-18 08:13:03 —-A—- C:\Windows\system32\mssph.dll
2008-09-18 08:13:03 —-A—- C:\Windows\system32\chtbrkr.dll
2008-09-18 08:05:58 —-A—- C:\Windows\system32\rpcrt4.dll
2008-09-18 08:05:57 —-A—- C:\Windows\system32\ntoskrnl.exe
2008-09-18 08:05:57 —-A—- C:\Windows\system32\ntkrnlpa.exe
2008-09-18 08:05:56 —-A—- C:\Windows\system32\pacerprf.dll
2008-09-18 08:05:51 —-A—- C:\Windows\system32\emdmgmt.dll
2008-09-18 08:05:51 —-A—- C:\Windows\system32\dataclen.dll
2008-09-18 08:05:51 —-A—- C:\Windows\system32\cdd.dll
2008-09-18 08:05:49 —-A—- C:\Windows\system32\wshext.dll
2008-09-18 08:05:49 —-A—- C:\Windows\system32\wscript.exe
2008-09-18 08:05:49 —-A—- C:\Windows\system32\vbscript.dll
2008-09-18 08:05:49 —-A—- C:\Windows\system32\scrrun.dll
2008-09-18 08:05:49 —-A—- C:\Windows\system32\scrobj.dll
2008-09-18 08:05:49 —-A—- C:\Windows\system32\jscript.dll
2008-09-18 08:05:49 —-A—- C:\Windows\system32\cscript.exe
2008-09-17 18:58:41 —-D—- C:\PerfLogs
2008-09-17 18:23:16 —-A—- C:\Windows\system32\onex.dll
2008-09-17 18:23:15 —-A—- C:\Windows\system32\SLsvc.exe
2008-09-17 18:23:02 —-A—- C:\Windows\system32\PSHED.DLL
2008-09-17 18:23:01 —-A—- C:\Windows\system32\imagesp1.dll
2008-09-17 18:22:57 —-A—- C:\Windows\system32\dfsr.exe
2008-09-17 18:22:56 —-A—- C:\Windows\system32\sstpsvc.dll
2008-09-17 18:22:56 —-A—- C:\Windows\system32\pidgenx.dll
2008-09-17 18:22:55 —-A—- C:\Windows\system32\mstscax.dll
2008-09-17 18:22:54 —-A—- C:\Windows\system32\WsmSvc.dll
2008-09-17 18:22:54 —-A—- C:\Windows\system32\winrscmd.dll
2008-09-17 18:22:53 —-A—- C:\Windows\system32\sysmain.dll
2008-09-17 18:22:53 —-A—- C:\Windows\system32\RMActivate.exe
2008-09-17 18:22:52 —-A—- C:\Windows\system32\vssapi.dll
2008-09-17 18:22:51 —-A—- C:\Windows\system32\VSSVC.exe
2008-09-17 18:22:51 —-A—- C:\Windows\system32\secproc.dll
2008-09-17 18:22:51 —-A—- C:\Windows\system32\RMActivate_isv.exe
2008-09-17 18:22:51 —-A—- C:\Windows\system32\PresentationNative_v0300.dll
2008-09-17 18:22:50 —-A—- C:\Windows\system32\iesetup.dll
2008-09-17 18:22:48 —-A—- C:\Windows\system32\secproc_isv.dll
2008-09-17 18:22:46 —-A—- C:\Windows\system32\drmv2clt.dll
2008-09-17 18:22:45 —-A—- C:\Windows\system32\xpssvcs.dll
2008-09-17 18:22:45 —-A—- C:\Windows\system32\icardres.dll
2008-09-17 18:22:45 —-A—- C:\Windows\system32\icardagt.exe
2008-09-17 18:22:45 —-A—- C:\Windows\system32\blackbox.dll
2008-09-17 18:22:43 —-A—- C:\Windows\system32\RMActivate_ssp.exe
2008-09-17 18:22:43 —-A—- C:\Windows\system32\RacEngn.dll
2008-09-17 18:22:42 —-A—- C:\Windows\system32\spwizimg.dll
2008-09-17 18:22:42 —-A—- C:\Windows\system32\RMActivate_ssp_isv.exe
2008-09-17 18:22:42 —-A—- C:\Windows\system32\rdpencom.dll
2008-09-17 18:22:42 —-A—- C:\Windows\system32\MSMPEG2VDEC.DLL
2008-09-17 18:22:41 —-A—- C:\Windows\system32\msxml3.dll
2008-09-17 18:22:41 —-A—- C:\Windows\system32\lpremove.exe
2008-09-17 18:22:41 —-A—- C:\Windows\bfsvc.exe
2008-09-17 18:22:40 —-A—- C:\Windows\system32\ntdll.dll
2008-09-17 18:22:40 —-A—- C:\Windows\system32\msxml6.dll
2008-09-17 18:22:40 —-A—- C:\Windows\system32\msjet40.dll
2008-09-17 18:22:39 —-A—- C:\Windows\system32\qmgr.dll
2008-09-17 18:22:39 —-A—- C:\Windows\system32\lsasrv.dll
2008-09-17 18:22:39 —-A—- C:\Windows\system32\localspl.dll
2008-09-17 18:22:39 —-A—- C:\Windows\system32\IKEEXT.DLL
2008-09-17 18:22:38 —-A—- C:\Windows\system32\wevtsvc.dll
2008-09-17 18:22:38 —-A—- C:\Windows\system32\wcncsvc.dll
2008-09-17 18:22:38 —-A—- C:\Windows\system32\recdisc.exe
2008-09-17 18:22:38 —-A—- C:\Windows\system32\mscoree.dll
2008-09-17 18:22:38 —-A—- C:\Windows\system32\kernel32.dll
2008-09-17 18:22:37 —-A—- C:\Windows\system32\TsWpfWrp.exe
2008-09-17 18:22:36 —-A—- C:\Windows\system32\vds.exe
2008-09-17 18:22:36 —-A—- C:\Windows\system32\CompMgmtLauncher.exe
2008-09-17 18:22:35 —-A—- C:\Windows\system32\wmp.dll
2008-09-17 18:22:34 —-A—- C:\Windows\system32\wcnwiz.dll
2008-09-17 18:22:34 —-A—- C:\Windows\system32\SMBHelperClass.dll
2008-09-17 18:22:34 —-A—- C:\Windows\system32\msvbvm60.dll
2008-09-17 18:22:34 —-A—- C:\Windows\system32\mstsc.exe
2008-09-17 18:22:30 —-A—- C:\Windows\system32\msdtctm.dll
2008-09-17 18:22:30 —-A—- C:\Windows\system32\mf.dll
2008-09-17 18:22:29 —-A—- C:\Windows\system32\termsrv.dll
2008-09-17 18:22:29 —-A—- C:\Windows\system32\kerberos.dll
2008-09-17 18:22:29 —-A—- C:\Windows\system32\IMJP10K.DLL
2008-09-17 18:22:29 —-A—- C:\Windows\system32\advapi32.dll
2008-09-17 18:22:28 —-A—- C:\Windows\system32\mmcndmgr.dll
2008-09-17 18:22:27 —-A—- C:\Windows\system32\MSMPEG2ADEC.DLL
2008-09-17 18:22:27 —-A—- C:\Windows\system32\MPSSVC.dll
2008-09-17 18:22:27 —-A—- C:\Windows\system32\CertEnroll.dll
2008-09-17 18:22:26 —-A—- C:\Windows\system32\xolehlp.dll
2008-09-17 18:22:26 —-A—- C:\Windows\system32\Query.dll
2008-09-17 18:22:26 —-A—- C:\Windows\system32\ole32.dll
2008-09-17 18:22:26 —-A—- C:\Windows\system32\msdtcprx.dll
2008-09-17 18:22:25 —-A—- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2008-09-17 18:22:25 —-A—- C:\Windows\system32\netlogon.dll
2008-09-17 18:22:24 —-A—- C:\Windows\system32\SSShim.dll
2008-09-17 18:22:24 —-A—- C:\Windows\system32\msvcrt.dll
2008-09-17 18:22:24 —-A—- C:\Windows\system32\mcupdate_GenuineIntel.dll
2008-09-17 18:22:23 —-A—- C:\Windows\system32\schedsvc.dll
2008-09-17 18:22:23 —-A—- C:\Windows\system32\nlmgp.dll
2008-09-17 18:22:23 —-A—- C:\Windows\system32\IasMigPlugin.dll
2008-09-17 18:22:23 —-A—- C:\Windows\system32\DfsShlEx.dll
2008-09-17 18:22:22 —-A—- C:\Windows\system32\user32.dll
2008-09-17 18:22:22 —-A—- C:\Windows\system32\shlwapi.dll
2008-09-17 18:22:22 —-A—- C:\Windows\system32\sdclt.exe
2008-09-17 18:22:22 —-A—- C:\Windows\system32\printfilterpipelinesvc.exe
2008-09-17 18:22:22 —-A—- C:\Windows\system32\milcore.dll
2008-09-17 18:22:21 —-A—- C:\Windows\system32\WSDApi.dll
2008-09-17 18:22:21 —-A—- C:\Windows\system32\wer.dll
2008-09-17 18:22:21 —-A—- C:\Windows\system32\vdsdyn.dll
2008-09-17 18:22:21 —-A—- C:\Windows\system32\d3d9.dll
2008-09-17 18:22:21 —-A—- C:\Windows\system32\clusapi.dll
2008-09-17 18:22:20 —-A—- C:\Windows\system32\winrsmgr.dll
2008-09-17 18:22:20 —-A—- C:\Windows\system32\QAGENTRT.DLL
2008-09-17 18:22:20 —-A—- C:\Windows\system32\mmc.exe
2008-09-17 18:22:20 —-A—- C:\Windows\system32\diagperf.dll
2008-09-17 18:22:19 —-A—- C:\Windows\system32\mtxclu.dll
2008-09-17 18:22:18 —-A—- C:\Windows\system32\vdsbas.dll
2008-09-17 18:22:18 —-A—- C:\Windows\system32\swprv.dll
2008-09-17 18:22:18 —-A—- C:\Windows\system32\SLC.dll
2008-09-17 18:22:18 —-A—- C:\Windows\system32\msi.dll
2008-09-17 18:22:18 —-A—- C:\Windows\system32\comctl32.dll
2008-09-17 18:22:17 —-A—- C:\Windows\system32\MSVidCtl.dll
2008-09-17 18:22:16 —-A—- C:\Windows\system32\XPSSHHDR.dll
2008-09-17 18:22:16 —-A—- C:\Windows\system32\msdtckrm.dll
2008-09-17 18:22:16 —-A—- C:\Windows\system32\gpsvc.dll
2008-09-17 18:22:15 —-A—- C:\Windows\system32\sbe.dll
2008-09-17 18:22:15 —-A—- C:\Windows\system32\samsrv.dll
2008-09-17 18:22:15 —-A—- C:\Windows\system32\mfc42u.dll
2008-09-17 18:22:15 —-A—- C:\Windows\system32\FWPUCLNT.DLL
2008-09-17 18:22:15 —-A—- C:\Windows\system32\esent.dll
2008-09-17 18:22:14 —-A—- C:\Windows\system32\wecutil.exe
2008-09-17 18:22:14 —-A—- C:\Windows\system32\usp10.dll
2008-09-17 18:22:14 —-A—- C:\Windows\system32\sdengin2.dll
2008-09-17 18:22:14 —-A—- C:\Windows\system32\mfc42.dll
2008-09-17 18:22:14 —-A—- C:\Windows\system32\gacinstall.dll
2008-09-17 18:22:14 —-A—- C:\Windows\system32\cmipnpinstall.dll
2008-09-17 18:22:14 —-A—- C:\Windows\system32\cmicryptinstall.dll
2008-09-17 18:22:13 —-A—- C:\Windows\system32\crypt32.dll
2008-09-17 18:22:13 —-A—- C:\Windows\system32\comsvcs.dll
2008-09-17 18:22:12 —-A—- C:\Windows\system32\WSManMigrationPlugin.dll
2008-09-17 18:22:12 —-A—- C:\Windows\system32\mswsock.dll
2008-09-17 18:22:12 —-A—- C:\Windows\system32\certutil.exe
2008-09-17 18:22:12 —-A—- C:\Windows\explorer.exe
2008-09-17 18:22:11 —-A—- C:\Windows\system32\wmdrmsdk.dll
2008-09-17 18:22:11 —-A—- C:\Windows\system32\oleaut32.dll
2008-09-17 18:22:11 —-A—- C:\Windows\system32\FirewallAPI.dll
2008-09-17 18:22:10 —-A—- C:\Windows\system32\wecsvc.dll
2008-09-17 18:22:10 —-A—- C:\Windows\system32\sqlceqp30.dll
2008-09-17 18:22:10 —-A—- C:\Windows\system32\setupapi.dll
2008-09-17 18:22:10 —-A—- C:\Windows\system32\sdohlp.dll
2008-09-17 18:22:10 —-A—- C:\Windows\system32\lsm.exe
2008-09-17 18:22:10 —-A—- C:\Windows\system32\bcrypt.dll
2008-09-17 18:22:09 —-A—- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2008-09-17 18:22:08 —-A—- C:\Windows\system32\schannel.dll
2008-09-17 18:22:08 —-A—- C:\Windows\system32\msv1_0.dll
2008-09-17 18:22:08 —-A—- C:\Windows\system32\iphlpsvc.dll
2008-09-17 18:22:07 —-A—- C:\Windows\system32\netapi32.dll
2008-09-17 18:22:07 —-A—- C:\Windows\system32\eapp3hst.dll
2008-09-17 18:22:06 —-A—- C:\Windows\system32\wmpmde.dll
2008-09-17 18:22:06 —-A—- C:\Windows\system32\thumbcache.dll
2008-09-17 18:22:06 —-A—- C:\Windows\system32\p2psvc.dll
2008-09-17 18:22:06 —-A—- C:\Windows\system32\mcmde.dll
2008-09-17 18:22:01 —-A—- C:\Windows\system32\riched20.dll
2008-09-17 18:22:01 —-A—- C:\Windows\system32\autofmt.exe
2008-09-17 18:22:01 —-A—- C:\Windows\system32\autoconv.exe
2008-09-17 18:22:01 —-A—- C:\Windows\system32\autochk.exe
2008-09-17 18:22:00 —-A—- C:\Windows\system32\vdsutil.dll
2008-09-17 18:22:00 —-A—- C:\Windows\system32\d3d10_1.dll
2008-09-17 18:21:59 —-A—- C:\Windows\system32\WinSAT.exe
2008-09-17 18:21:59 —-A—- C:\Windows\system32\imapi2fs.dll
2008-09-17 18:21:58 —-A—- C:\Windows\system32\authui.dll
2008-09-17 18:21:58 —-A—- C:\Windows\system32\authfwcfg.dll
2008-09-17 18:21:57 —-A—- C:\Windows\system32\browseui.dll
2008-09-17 18:21:56 —-A—- C:\Windows\system32\wevtapi.dll
2008-09-17 18:21:56 —-A—- C:\Windows\system32\d3d10_1core.dll
2008-09-17 18:21:55 —-A—- C:\Windows\system32\dmvdsitf.dll
2008-09-17 18:21:55 —-A—- C:\Windows\system32\comuid.dll
2008-09-17 18:21:55 —-A—- C:\Windows\system32\comdlg32.dll
2008-09-17 18:21:54 —-A—- C:\Windows\system32\WSDMon.dll
2008-09-17 18:21:54 —-A—- C:\Windows\system32\mscories.dll
2008-09-17 18:21:54 —-A—- C:\Windows\system32\eapphost.dll
2008-09-17 18:21:52 —-A—- C:\Windows\system32\wevtfwd.dll
2008-09-17 18:21:52 —-A—- C:\Windows\system32\uexfat.dll
2008-09-17 18:21:52 —-A—- C:\Windows\system32\rasmans.dll
2008-09-17 18:21:52 —-A—- C:\Windows\system32\eappcfg.dll
2008-09-17 18:21:51 —-A—- C:\Windows\system32\untfs.dll
2008-09-17 18:21:51 —-A—- C:\Windows\system32\sqlcese30.dll
2008-09-17 18:21:51 —-A—- C:\Windows\system32\pcaui.dll
2008-09-17 18:21:51 —-A—- C:\Windows\system32\iassam.dll
2008-09-17 18:21:51 —-A—- C:\Windows\system32\DfrgNtfs.exe
2008-09-17 18:21:50 —-A—- C:\Windows\system32\wlansvc.dll
2008-09-17 18:21:50 —-A—- C:\Windows\system32\whealogr.dll
2008-09-17 18:21:49 —-A—- C:\Windows\system32\dot3svc.dll
2008-09-17 18:21:47 —-A—- C:\Windows\system32\rdpwsx.dll
2008-09-17 18:21:47 —-A—- C:\Windows\system32\mssha.dll
2008-09-17 18:21:46 —-A—- C:\Windows\system32\zipfldr.dll
2008-09-17 18:21:46 —-A—- C:\Windows\system32\winhttp.dll
2008-09-17 18:21:46 —-A—- C:\Windows\system32\msdrm.dll
2008-09-17 18:21:46 —-A—- C:\Windows\system32\evr.dll
2008-09-17 18:21:46 —-A—- C:\Windows\system32\dfrgui.exe
2008-09-17 18:21:45 —-A—- C:\Windows\system32\WsmAuto.dll
2008-09-17 18:21:45 —-A—- C:\Windows\system32\rpcss.dll
2008-09-17 18:21:45 —-A—- C:\Windows\system32\rasppp.dll
2008-09-17 18:21:45 —-A—- C:\Windows\system32\nlasvc.dll
2008-09-17 18:21:45 —-A—- C:\Windows\system32\ncrypt.dll
2008-09-17 18:21:45 —-A—- C:\Windows\system32\BFE.DLL
2008-09-17 18:21:44 —-A—- C:\Windows\system32\WMVCORE.DLL
2008-09-17 18:21:44 —-A—- C:\Windows\system32\wmdrmdev.dll
2008-09-17 18:21:44 —-A—- C:\Windows\system32\msrepl40.dll
2008-09-17 18:21:44 —-A—- C:\Windows\system32\ddraw.dll
2008-09-17 18:21:44 —-A—- C:\Windows\system32\audiosrv.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\WsmWmiPl.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\win32spl.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\WebClnt.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\themecpl.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\rastls.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\printui.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\objsel.dll
2008-09-17 18:21:43 —-A—- C:\Windows\system32\dhcpcsvc6.dll
2008-09-17 18:21:42 —-A—- C:\Windows\system32\QAGENT.DLL
2008-09-17 18:21:42 —-A—- C:\Windows\system32\iasnap.dll
2008-09-17 18:21:42 —-A—- C:\Windows\system32\dbghelp.dll
2008-09-17 18:21:41 —-A—- C:\Windows\system32\w32time.dll
2008-09-17 18:21:41 —-A—- C:\Windows\system32\sqlsrv32.dll
2008-09-17 18:21:41 —-A—- C:\Windows\system32\PresentationHost.exe
2008-09-17 18:21:41 —-A—- C:\Windows\system32\icm32.dll
2008-09-17 18:21:40 —-A—- C:\Windows\system32\wmdrmnet.dll
2008-09-17 18:21:40 —-A—- C:\Windows\system32\WerFaultSecure.exe
2008-09-17 18:21:40 —-A—- C:\Windows\system32\spoolss.dll
2008-09-17 18:21:40 —-A—- C:\Windows\system32\ncryptui.dll
2008-09-17 18:21:40 —-A—- C:\Windows\system32\iprtrmgr.dll
2008-09-17 18:21:40 —-A—- C:\Windows\system32\azroles.dll
2008-09-17 18:21:39 —-A—- C:\Windows\system32\msctf.dll
2008-09-17 18:21:39 —-A—- C:\Windows\system32\infocardapi.dll
2008-09-17 18:21:39 —-A—- C:\Windows\system32\basecsp.dll
2008-09-17 18:21:38 —-A—- C:\Windows\system32\wlangpui.dll
2008-09-17 18:21:38 —-A—- C:\Windows\system32\winsrv.dll
2008-09-17 18:21:38 —-A—- C:\Windows\system32\taskschd.dll
2008-09-17 18:21:38 —-A—- C:\Windows\system32\mstlsapi.dll
2008-09-17 18:21:38 —-A—- C:\Windows\system32\bcdedit.exe
2008-09-17 18:21:37 —-A—- C:\Windows\system32\scksp.dll
2008-09-17 18:21:37 —-A—- C:\Windows\system32\netprofm.dll
2008-09-17 18:21:37 —-A—- C:\Windows\system32\AudioEng.dll
2008-09-17 18:21:36 —-A—- C:\Windows\system32\winsta.dll
2008-09-17 18:21:36 —-A—- C:\Windows\system32\dbgeng.dll
2008-09-17 18:21:33 —-A—- C:\Windows\system32\taskcomp.dll
2008-09-17 18:21:33 —-A—- C:\Windows\system32\rsaenh.dll
2008-09-17 18:21:33 —-A—- C:\Windows\system32\netcfgx.dll
2008-09-17 18:21:32 —-A—- C:\Windows\system32\winlogon.exe
2008-09-17 18:21:32 —-A—- C:\Windows\system32\wercon.exe
2008-09-17 18:21:32 —-A—- C:\Windows\system32\sqmapi.dll
2008-09-17 18:21:32 —-A—- C:\Windows\system32\lpksetup.exe
2008-09-17 18:21:32 —-A—- C:\Windows\system32\dfshim.dll
2008-09-17 18:21:32 —-A—- C:\Windows\system32\cdosys.dll
2008-09-17 18:21:31 —-A—- C:\Windows\system32\wlansec.dll
2008-09-17 18:21:31 —-A—- C:\Windows\system32\msdtcuiu.dll
2008-09-17 18:21:31 —-A—- C:\Windows\system32\mprddm.dll
2008-09-17 18:21:31 —-A—- C:\Windows\system32\certcli.dll
2008-09-17 18:21:31 —-A—- C:\Windows\system32\apds.dll
2008-09-17 18:21:30 —-A—- C:\Windows\system32\tsgqec.dll
2008-09-17 18:21:30 —-A—- C:\Windows\system32\iasrad.dll
2008-09-17 18:21:30 —-A—- C:\Windows\system32\eapsvc.dll
2008-09-17 18:21:30 —-A—- C:\Windows\system32\AUDIOKSE.dll
2008-09-17 18:21:30 —-A—- C:\Windows\system32\aaclient.dll
2008-09-17 18:21:29 —-A—- C:\Windows\system32\Wldap32.dll
2008-09-17 18:21:29 —-A—- C:\Windows\system32\uDWM.dll
2008-09-17 18:21:29 —-A—- C:\Windows\system32\shdocvw.dll
2008-09-17 18:21:29 —-A—- C:\Windows\system32\certmgr.dll
2008-09-17 18:21:29 —-A—- C:\Windows\system32\bcdsrv.dll
2008-09-17 18:21:28 —-A—- C:\Windows\system32\msidcrl30.dll
2008-09-17 18:21:28 —-A—- C:\Windows\system32\dnsapi.dll
2008-09-17 18:21:27 —-A—- C:\Windows\system32\WMVDECOD.DLL
2008-09-17 18:21:27 —-A—- C:\Windows\system32\umpnpmgr.dll
2008-09-17 18:21:27 —-A—- C:\Windows\system32\pla.dll
2008-09-17 18:21:26 —-A—- C:\Windows\system32\wmicmiplugin.dll
2008-09-17 18:21:26 —-A—- C:\Windows\system32\netshell.dll
2008-09-17 18:21:26 —-A—- C:\Windows\system32\dxgi.dll
2008-09-17 18:21:26 —-A—- C:\Windows\system32\dot3gpui.dll
2008-09-17 18:21:25 —-A—- C:\Windows\system32\ntprint.dll
2008-09-17 18:21:24 —-A—- C:\Windows\system32\winmm.dll
2008-09-17 18:21:24 —-A—- C:\Windows\system32\shsvcs.dll
2008-09-17 18:21:24 —-A—- C:\Windows\system32\MMDevAPI.dll
2008-09-17 18:21:24 —-A—- C:\Windows\system32\cryptnet.dll
2008-09-17 18:21:24 —-A—- C:\Windows\system32\comsnap.dll
2008-09-17 18:21:23 —-A—- C:\Windows\system32\wscsvc.dll
2008-09-17 18:21:23 —-A—- C:\Windows\system32\synceng.dll
2008-09-17 18:21:23 —-A—- C:\Windows\system32\services.exe
2008-09-17 18:21:23 —-A—- C:\Windows\system32\cmifw.dll
2008-09-17 18:21:22 —-A—- C:\Windows\system32\wscisvif.dll
2008-09-17 18:21:22 —-A—- C:\Windows\system32\taskeng.exe
2008-09-17 18:21:22 —-A—- C:\Windows\system32\pnidui.dll
2008-09-17 18:21:22 —-A—- C:\Windows\system32\msconfig.exe
2008-09-17 18:21:21 —-A—- C:\Windows\system32\WMVSDECD.DLL
2008-09-17 18:21:21 —-A—- C:\Windows\system32\msjtes40.dll
2008-09-17 18:21:21 —-A—- C:\Windows\system32\imapi2.dll
2008-09-17 18:21:21 —-A—- C:\Windows\system32\iassdo.dll
2008-09-17 18:21:21 —-A—- C:\Windows\system32\cipher.exe
2008-09-17 18:21:20 —-A—- C:\Windows\system32\wersvc.dll
2008-09-17 18:21:20 —-A—- C:\Windows\system32\uxtheme.dll
2008-09-17 18:21:20 —-A—- C:\Windows\system32\tdh.dll
2008-09-17 18:21:20 —-A—- C:\Windows\system32\SessEnv.dll
2008-09-17 18:21:20 —-A—- C:\Windows\system32\rasapi32.dll
2008-09-17 18:21:20 —-A—- C:\Windows\system32\dot3api.dll
2008-09-17 18:21:20 —-A—- C:\Windows\system32\dmdskmgr.dll
2008-09-17 18:21:20 —-A—- C:\Windows\system32\cmd.exe
2008-09-17 18:21:19 —-A—- C:\Windows\system32\wkssvc.dll
2008-09-17 18:21:19 —-A—- C:\Windows\system32\qdvd.dll
2008-09-17 18:21:19 —-A—- C:\Windows\system32\msscp.dll
2008-09-17 18:21:19 —-A—- C:\Windows\system32\cbsra.exe
2008-09-17 18:21:19 —-A—- C:\Windows\system32\AuthFWSnapin.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\WUDFx.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\wlanmsm.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\wlancfg.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\wevtutil.exe
2008-09-17 18:21:18 —-A—- C:\Windows\system32\srvsvc.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\mshtmled.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\msdtcVSp1res.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\loadperf.dll
2008-09-17 18:21:18 —-A—- C:\Windows\system32\diskpart.exe
2008-09-17 18:21:18 —-A—- C:\Windows\system32\comres.dll
2008-09-17 18:21:17 —-A—- C:\Windows\system32\rpchttp.dll
2008-09-17 18:21:17 —-A—- C:\Windows\system32\rdpdd.dll
2008-09-17 18:21:17 —-A—- C:\Windows\system32\localsec.dll
2008-09-17 18:21:17 —-A—- C:\Windows\system32\fontext.dll
2008-09-17 18:21:16 —-A—- C:\Windows\system32\wlanapi.dll
2008-09-17 18:21:16 —-A—- C:\Windows\system32\hnetcfg.dll
2008-09-17 18:21:13 —-A—- C:\Windows\system32\WinSATAPI.dll
2008-09-17 18:21:13 —-A—- C:\Windows\system32\dsound.dll
2008-09-17 18:21:12 —-A—- C:\Windows\system32\wsqmcons.exe
2008-09-17 18:21:12 —-A—- C:\Windows\system32\WMADMOD.DLL
2008-09-17 18:21:12 —-A—- C:\Windows\system32\wlanpref.dll
2008-09-17 18:21:12 —-A—- C:\Windows\system32\profprov.dll
2008-09-17 18:21:12 —-A—- C:\Windows\system32\NAPMONTR.DLL
2008-09-17 18:21:12 —-A—- C:\Windows\system32\avifil32.dll
2008-09-17 18:21:11 —-A—- C:\Windows\system32\WindowsCodecs.dll
2008-09-17 18:21:11 —-A—- C:\Windows\system32\RDPENCDD.dll
2008-09-17 18:21:11 —-A—- C:\Windows\system32\filemgmt.dll
2008-09-17 18:21:10 —-A—- C:\Windows\system32\wsecedit.dll
2008-09-17 18:21:10 —-A—- C:\Windows\system32\tracerpt.exe
2008-09-17 18:21:10 —-A—- C:\Windows\system32\SLCommDlg.dll
2008-09-17 18:21:10 —-A—- C:\Windows\system32\PresentationHostProxy.dll
2008-09-17 18:21:10 —-A—- C:\Windows\system32\MuiUnattend.exe
2008-09-17 18:21:10 —-A—- C:\Windows\system32\dnsrslvr.dll
2008-09-17 18:21:09 —-A—- C:\Windows\system32\WMSPDMOD.DLL
2008-09-17 18:21:09 —-A—- C:\Windows\system32\SmartcardCredentialProvider.dll
2008-09-17 18:21:09 —-A—- C:\Windows\system32\P2PGraph.dll
2008-09-17 18:21:09 —-A—- C:\Windows\system32\dwmredir.dll
2008-09-17 18:21:09 —-A—- C:\Windows\system32\dwm.exe
2008-09-17 18:21:09 —-A—- C:\Windows\system32\dhcpcsvc.dll
2008-09-17 18:21:09 —-A—- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2008-09-17 18:21:09 —-A—- C:\Windows\system32\apphelp.dll
2008-09-17 18:21:08 —-A—- C:\Windows\system32\wininit.exe
2008-09-17 18:21:08 —-A—- C:\Windows\system32\spp.dll
2008-09-17 18:21:08 —-A—- C:\Windows\system32\rasdlg.dll
2008-09-17 18:21:08 —-A—- C:\Windows\system32\QSHVHOST.DLL
2008-09-17 18:21:08 —-A—- C:\Windows\system32\iassvcs.dll
2008-09-17 18:21:08 —-A—- C:\Windows\system32\gpresult.exe
2008-09-17 18:21:08 —-A—- C:\Windows\system32\azroleui.dll
2008-09-17 18:21:06 —-A—- C:\Windows\system32\PortableDeviceApi.dll
2008-09-17 18:21:06 —-A—- C:\Windows\system32\mscorier.dll
2008-09-17 18:21:06 —-A—- C:\Windows\system32\mcbuilder.exe
2008-09-17 18:21:06 —-A—- C:\Windows\system32\iashost.exe
2008-09-17 18:21:06 —-A—- C:\Windows\HelpPane.exe
2008-09-17 18:21:05 —-A—- C:\Windows\system32\srrstr.dll
2008-09-17 18:21:05 —-A—- C:\Windows\system32\spwizeng.dll
2008-09-17 18:21:05 —-A—- C:\Windows\system32\SLUI.exe
2008-09-17 18:21:05 —-A—- C:\Windows\system32\rasmontr.dll
2008-09-17 18:21:05 —-A—- C:\Windows\system32\lltdsvc.dll
2008-09-17 18:21:04 —-A—- C:\Windows\system32\wecapi.dll
2008-09-17 18:21:04 —-A—- C:\Windows\system32\unbcl.dll
2008-09-17 18:21:04 —-A—- C:\Windows\system32\tcpmon.dll
2008-09-17 18:21:04 —-A—- C:\Windows\system32\shrink.dll
2008-09-17 18:21:04 —-A—- C:\Windows\system32\msra.exe
2008-09-17 18:21:04 —-A—- C:\Windows\system32\IPHLPAPI.DLL
2008-09-17 18:21:04 —-A—- C:\Windows\system32\brcpl.dll
2008-09-17 18:21:03 —-A—- C:\Windows\system32\gpedit.dll
2008-09-17 18:21:02 —-A—- C:\Windows\system32\WMPEncEn.dll
2008-09-17 18:21:02 —-A—- C:\Windows\system32\iashlpr.dll
2008-09-17 18:21:01 —-A—- C:\Windows\system32\oleacc.dll
2008-09-17 18:21:01 —-A—- C:\Windows\system32\msdri.dll
2008-09-17 18:21:01 —-A—- C:\Windows\system32\iertutil.dll
2008-09-17 18:21:00 —-A—- C:\Windows\system32\raschap.dll
2008-09-17 18:20:59 —-A—- C:\Windows\system32\regsvc.dll
2008-09-17 18:20:59 —-A—- C:\Windows\system32\framedynos.dll
2008-09-17 18:20:59 —-A—- C:\Windows\system32\fdWSD.dll
2008-09-17 18:20:59 —-A—- C:\Windows\system32\advpack.dll
2008-09-17 18:20:58 —-A—- C:\Windows\system32\wpdshext.dll
2008-09-17 18:20:58 —-A—- C:\Windows\system32\wdc.dll
2008-09-17 18:20:58 —-A—- C:\Windows\system32\vsstrace.dll
2008-09-17 18:20:58 —-A—- C:\Windows\system32\PerfCenterCPL.dll
2008-09-17 18:20:58 —-A—- C:\Windows\system32\ntvdm.exe
2008-09-17 18:20:58 —-A—- C:\Windows\system32\ntlanman.dll
2008-09-17 18:20:58 —-A—- C:\Windows\system32\ipsmsnap.dll
2008-09-17 18:20:58 —-A—- C:\Windows\system32\Faultrep.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\Storprop.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\NetProjW.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\netman.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\l2nacp.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\iedkcs32.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\ieapfltr.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\framedyn.dll
2008-09-17 18:20:57 —-A—- C:\Windows\system32\dssenh.dll
2008-09-17 18:20:56 —-A—- C:\Windows\system32\WlanMM.dll
2008-09-17 18:20:56 —-A—- C:\Windows\system32\tcpipcfg.dll
2008-09-17 18:20:56 —-A—- C:\Windows\system32\sxs.dll
2008-09-17 18:20:56 —-A—- C:\Windows\system32\profsvc.dll
2008-09-17 18:20:56 —-A—- C:\Windows\system32\KMSVC.DLL
2008-09-17 18:20:56 —-A—- C:\Windows\system32\certreq.exe
2008-09-17 18:20:56 —-A—- C:\Windows\system32\adsnt.dll
2008-09-17 18:20:55 —-A—- C:\Windows\system32\WLanConn.dll
2008-09-17 18:20:55 —-A—- C:\Windows\system32\PhotoMetadataHandler.dll
2008-09-17 18:20:52 —-A—- C:\Windows\system32\wusa.exe
2008-09-17 18:20:52 —-A—- C:\Windows\system32\WUDFHost.exe
2008-09-17 18:20:52 —-A—- C:\Windows\system32\WsmProv.dll
2008-09-17 18:20:52 —-A—- C:\Windows\system32\wlanhlp.dll
2008-09-17 18:20:52 —-A—- C:\Windows\system32\userenv.dll
2008-09-17 18:20:52 —-A—- C:\Windows\system32\umb.dll
2008-09-17 18:20:52 —-A—- C:\Windows\system32\ncsi.dll
2008-09-17 18:20:52 —-A—- C:\Windows\system32\IPBusEnum.dll
2008-09-17 18:20:51 —-A—- C:\Windows\system32\WerFault.exe
2008-09-17 18:20:51 —-A—- C:\Windows\system32\VAN.dll
2008-09-17 18:20:51 —-A—- C:\Windows\system32\ie4uinit.exe
2008-09-17 18:20:50 —-A—- C:\Windows\system32\fundisc.dll
2008-09-17 18:20:49 —-A—- C:\Windows\system32\catsrvut.dll
2008-09-17 18:20:48 —-A—- C:\Windows\system32\puiobj.dll
2008-09-17 18:20:48 —-A—- C:\Windows\system32\cryptui.dll
2008-09-17 18:20:47 —-A—- C:\Windows\system32\netid.dll
2008-09-17 18:20:47 —-A—- C:\Windows\system32\dps.dll
2008-09-17 18:20:46 —-A—- C:\Windows\system32\photowiz.dll
2008-09-17 18:20:46 —-A—- C:\Windows\system32\netcenter.dll
2008-09-17 18:20:46 —-A—- C:\Windows\system32\MdSched.exe
2008-09-17 18:20:46 —-A—- C:\Windows\system32\InkEd.dll
2008-09-17 18:20:44 —-A—- C:\Windows\system32\ipsecsnp.dll
2008-09-17 18:20:43 —-A—- C:\Windows\system32\ws2_32.dll
2008-09-17 18:20:43 —-A—- C:\Windows\system32\WinSCard.dll
2008-09-17 18:20:43 —-A—- C:\Windows\system32\spbcd.dll
2008-09-17 18:20:43 —-A—- C:\Windows\system32\secur32.dll
2008-09-17 18:20:43 —-A—- C:\Windows\system32\ntdsapi.dll
2008-09-17 18:20:43 —-A—- C:\Windows\system32\msinfo32.exe
2008-09-17 18:20:42 —-A—- C:\Windows\system32\winrs.exe
2008-09-17 18:20:42 —-A—- C:\Windows\system32\prnntfy.dll
2008-09-17 18:20:42 —-A—- C:\Windows\system32\odbcjt32.dll
2008-09-17 18:20:42 —-A—- C:\Windows\system32\NAPSTAT.EXE
2008-09-17 18:20:41 —-A—- C:\Windows\system32\RelMon.dll
2008-09-17 18:20:41 —-A—- C:\Windows\system32\mblctr.exe
2008-09-17 18:20:41 —-A—- C:\Windows\system32\cryptsvc.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\schtasks.exe
2008-09-17 18:20:40 —-A—- C:\Windows\system32\pdh.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\netdiagfx.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\msfeeds.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\iasacct.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\dmdlgs.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\dhcpsapi.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\catsrv.dll
2008-09-17 18:20:40 —-A—- C:\Windows\system32\activeds.dll
2008-09-17 18:20:39 —-A—- C:\Windows\system32\TSpkg.dll
2008-09-17 18:20:39 —-A—- C:\Windows\system32\FirewallControlPanel.exe
2008-09-17 18:20:39 —-A—- C:\Windows\system32\fdWCN.dll
2008-09-17 18:20:39 —-A—- C:\Windows\system32\dfrgfat.exe
2008-09-17 18:20:38 —-A—- C:\Windows\system32\wvc.dll
2008-09-17 18:20:38 —-A—- C:\Windows\system32\winrm.vbs
2008-09-17 18:20:38 —-A—- C:\Windows\system32\qwave.dll
2008-09-17 18:20:38 —-A—- C:\Windows\system32\netcorehc.dll
2008-09-17 18:20:38 —-A—- C:\Windows\system32\NAPHLPR.DLL
2008-09-17 18:20:38 —-A—- C:\Windows\system32\MSMPEG2ENC.DLL
2008-09-17 18:20:38 —-A—- C:\Windows\system32\dot3msm.dll
2008-09-17 18:20:38 —-A—- C:\Windows\system32\dot3cfg.dll
2008-09-17 18:20:38 —-A—- C:\Windows\system32\AudioSes.dll
2008-09-17 18:20:37 —-A—- C:\Windows\system32\wow32.dll
2008-09-17 18:20:37 —-A—- C:\Windows\system32\rastapi.dll
2008-09-17 18:20:37 —-A—- C:\Windows\system32\msacm32.dll
2008-09-17 18:20:37 —-A—- C:\Windows\system32\ifmon.dll
2008-09-17 18:20:37 —-A—- C:\Windows\system32\adsldp.dll
2008-09-17 18:20:36 —-A—- C:\Windows\system32\shsetup.dll
2008-09-17 18:20:36 —-A—- C:\Windows\system32\els.dll
2008-09-17 18:20:35 —-A—- C:\Windows\system32\wscntfy.dll
2008-09-17 18:20:35 —-A—- C:\Windows\system32\WMNetMgr.dll
2008-09-17 18:20:35 —-A—- C:\Windows\system32\QUTIL.DLL
2008-09-17 18:20:35 —-A—- C:\Windows\system32\ntshrui.dll
2008-09-17 18:20:35 —-A—- C:\Windows\system32\msdt.dll
2008-09-17 18:20:35 —-A—- C:\Windows\system32\iasrecst.dll
2008-09-17 18:20:35 —-A—- C:\Windows\system32\iasdatastore.dll
2008-09-17 18:20:35 —-A—- C:\Windows\system32\clbcatq.dll
2008-09-17 18:20:34 —-A—- C:\Windows\system32\stobject.dll
2008-09-17 18:20:34 —-A—- C:\Windows\system32\sdrsvc.dll
2008-09-17 18:20:34 —-A—- C:\Windows\system32\net1.exe
2008-09-17 18:20:34 —-A—- C:\Windows\system32\ipnathlp.dll
2008-09-17 18:20:34 —-A—- C:\Windows\system32\fdSSDP.dll
2008-09-17 18:20:33 —-A—- C:\Windows\system32\wlanui.dll
2008-09-17 18:20:33 —-A—- C:\Windows\system32\dsprop.dll
2008-09-17 18:20:33 —-A—- C:\Windows\system32\Defrag.exe
2008-09-17 18:20:32 —-A—- C:\Windows\system32\wlgpclnt.dll
2008-09-17 18:20:32 —-A—- C:\Windows\system32\smss.exe
2008-09-17 18:20:32 —-A—- C:\Windows\system32\nci.dll
2008-09-17 18:20:32 —-A—- C:\Windows\system32\mprmsg.dll
2008-09-17 18:20:32 —-A—- C:\Windows\system32\adsldpc.dll
2008-09-17 18:20:31 —-A—- C:\Windows\system32\upnphost.dll
2008-09-17 18:20:30 —-A—- C:\Windows\system32\systemcpl.dll
2008-09-17 18:20:29 —-A—- C:\Windows\system32\rasman.dll
2008-09-17 18:20:29 —-A—- C:\Windows\system32\P2P.dll
2008-09-17 18:20:29 —-A—- C:\Windows\system32\msftedit.dll
2008-09-17 18:20:29 —-A—- C:\Windows\system32\MSAC3ENC.DLL
2008-09-17 18:20:29 —-A—- C:\Windows\system32\CompatUI.dll
2008-09-17 18:20:29 —-A—- C:\Windows\system32\ActiveContentWizard.dll
2008-09-17 18:20:28 —-A—- C:\Windows\system32\t2embed.dll
2008-09-17 18:20:28 —-A—- C:\Windows\system32\rascfg.dll
2008-09-17 18:20:28 —-A—- C:\Windows\system32\PresentationSettings.exe
2008-09-17 18:20:28 —-A—- C:\Windows\system32\oleprn.dll
2008-09-17 18:20:28 —-A—- C:\Windows\system32\loghours.dll
2008-09-17 18:20:28 —-A—- C:\Windows\system32\L2SecHC.dll
2008-09-17 18:20:28 —-A—- C:\Windows\system32\fde.dll
2008-09-17 18:20:28 —-A—- C:\Windows\system32\dxdiag.exe
2008-09-17 18:20:27 —-A—- C:\Windows\system32\Wpc.dll
2008-09-17 18:20:27 —-A—- C:\Windows\system32\wdigest.dll
2008-09-17 18:20:27 —-A—- C:\Windows\system32\MigAutoPlay.exe
2008-09-17 18:20:27 —-A—- C:\Windows\system32\DFDWiz.exe
2008-09-17 18:20:27 —-A—- C:\Windows\system32\AuxiliaryDisplayServices.dll
2008-09-17 18:20:26 —-A—- C:\Windows\system32\setupcl.exe
2008-09-17 18:20:26 —-A—- C:\Windows\system32\mprdim.dll
2008-09-17 18:20:26 —-A—- C:\Windows\system32\gpapi.dll
2008-09-17 18:20:25 —-A—- C:\Windows\system32\scansetting.dll
2008-09-17 18:20:25 —-A—- C:\Windows\system32\rtm.dll
2008-09-17 18:20:25 —-A—- C:\Windows\system32\msutb.dll
2008-09-17 18:20:25 —-A—- C:\Windows\system32\devmgr.dll
2008-09-17 18:20:24 —-A—- C:\Windows\system32\wiaservc.dll
2008-09-17 18:20:24 —-A—- C:\Windows\system32\NAPCRYPT.DLL
2008-09-17 18:20:24 —-A—- C:\Windows\system32\msihnd.dll
2008-09-17 18:20:24 —-A—- C:\Windows\system32\CertEnrollUI.dll
2008-09-17 18:20:23 —-A—- C:\Windows\system32\wdi.dll
2008-09-17 18:20:23 —-A—- C:\Windows\system32\kdusb.dll
2008-09-17 18:20:23 —-A—- C:\Windows\system32\ifsutil.dll
2008-09-17 18:20:23 —-A—- C:\Windows\system32\dimsroam.dll
2008-09-17 18:20:23 —-A—- C:\Windows\system32\actxprxy.dll
2008-09-17 18:20:22 —-A—- C:\Windows\system32\wscapi.dll
2008-09-17 18:20:22 —-A—- C:\Windows\system32\WinFXDocObj.exe
2008-09-17 18:20:22 —-A—- C:\Windows\system32\usbmon.dll
2008-09-17 18:20:22 —-A—- C:\Windows\system32\spoolsv.exe
2008-09-17 18:20:22 —-A—- C:\Windows\system32\mswmdm.dll
2008-09-17 18:20:22 —-A—- C:\Windows\system32\imagehlp.dll
2008-09-17 18:20:22 —-A—- C:\Windows\system32\BOOTVID.DLL
2008-09-17 18:20:22 —-A—- C:\Windows\system32\audiodg.exe
2008-09-17 18:20:21 —-A—- C:\Windows\system32\wlandlg.dll
2008-09-17 18:20:21 —-A—- C:\Windows\system32\vssadmin.exe
2008-09-17 18:20:21 —-A—- C:\Windows\system32\uudf.dll
2008-09-17 18:20:21 —-A—- C:\Windows\system32\SyncCenter.dll
2008-09-17 18:20:21 —-A—- C:\Windows\system32\regapi.dll
2008-09-17 18:20:21 —-A—- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2008-09-17 18:20:21 —-A—- C:\Windows\system32\PortableDeviceWMDRM.dll
2008-09-17 18:20:21 —-A—- C:\Windows\system32\mycomput.dll
2008-09-17 18:20:21 —-A—- C:\Windows\system32\msls31.dll
2008-09-17 18:20:20 —-A—- C:\Windows\system32\scecli.dll
2008-09-17 18:20:19 —-A—- C:\Windows\system32\SCardSvr.dll
2008-09-17 18:20:19 —-A—- C:\Windows\system32\newdev.dll
2008-09-17 18:20:19 —-A—- C:\Windows\system32\mstask.dll
2008-09-17 18:20:19 —-A—- C:\Windows\system32\mspaint.exe
2008-09-17 18:20:19 —-A—- C:\Windows\system32\kdcom.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\termmgr.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\tapisrv.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\sud.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\ssdpsrv.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\samlib.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\puiapi.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\mtxoci.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\duser.dll
2008-09-17 18:20:18 —-A—- C:\Windows\system32\adtschema.dll
2008-09-17 18:20:17 —-A—- C:\Windows\system32\SLUINotify.dll
2008-09-17 18:20:17 —-A—- C:\Windows\system32\Robocopy.exe
2008-09-17 18:20:17 —-A—- C:\Windows\system32\input.dll
2008-09-17 18:20:17 —-A—- C:\Windows\system32\inetpp.dll
2008-09-17 18:20:17 —-A—- C:\Windows\system32\cic.dll
2008-09-17 18:20:17 —-A—- C:\Windows\system32\AzSqlExt.dll
2008-09-17 18:20:16 —-A—- C:\Windows\system32\wisptis.exe
2008-09-17 18:20:16 —-A—- C:\Windows\system32\iasads.dll
2008-09-17 18:20:16 —-A—- C:\Windows\system32\cscapi.dll
2008-09-17 18:20:15 —-A—- C:\Windows\system32\authz.dll
2008-09-17 18:20:12 —-A—- C:\Windows\system32\PortableDeviceTypes.dll
2008-09-17 18:20:12 —-A—- C:\Windows\system32\netiohlp.dll
2008-09-17 18:20:11 —-A—- C:\Windows\system32\WUDFPlatform.dll
2008-09-17 18:20:11 —-A—- C:\Windows\system32\webcheck.dll
2008-09-17 18:20:11 —-A—- C:\Windows\system32\verifier.exe
2008-09-17 18:20:11 —-A—- C:\Windows\system32\sdshext.dll
2008-09-17 18:20:11 —-A—- C:\Windows\system32\msdtclog.dll
2008-09-17 18:20:11 —-A—- C:\Windows\system32\msdt.exe
2008-09-17 18:20:10 —-A—- C:\Windows\system32\wpcsvc.dll
2008-09-17 18:20:10 —-A—- C:\Windows\system32\themeui.dll
2008-09-17 18:20:10 —-A—- C:\Windows\system32\slcinst.dll
2008-09-17 18:20:10 —-A—- C:\Windows\system32\PortableDeviceClassExtension.dll
2008-09-17 18:20:10 —-A—- C:\Windows\system32\dxtmsft.dll
2008-09-17 18:20:10 —-A—- C:\Windows\system32\d3d8.dll
2008-09-17 18:20:10 —-A—- C:\Windows\system32\cmdial32.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\wpccpl.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\wintrust.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\vdsldr.exe
2008-09-17 18:20:09 —-A—- C:\Windows\system32\SndVol.exe
2008-09-17 18:20:09 —-A—- C:\Windows\system32\rasgcw.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\oledlg.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\ntmarta.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\mmcbase.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\icardie.dll
2008-09-17 18:20:09 —-A—- C:\Windows\system32\clfsw32.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\WMPhoto.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\SnippingTool.exe
2008-09-17 18:20:08 —-A—- C:\Windows\system32\rasqec.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\pnpsetup.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\ncobjapi.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\msrd3x40.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\msaatext.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\mpr.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\mlang.dll
2008-09-17 18:20:08 —-A—- C:\Windows\system32\icfupgd.dll
2008-09-17 18:20:07 —-A—- C:\Windows\system32\wpd_ci.dll
2008-09-17 18:20:07 —-A—- C:\Windows\system32\syssetup.dll
2008-09-17 18:20:07 —-A—- C:\Windows\system32\slmgr.vbs
2008-09-17 18:20:07 —-A—- C:\Windows\system32\nslookup.exe
2008-09-17 18:20:07 —-A—- C:\Windows\system32\diskraid.exe
2008-09-17 18:20:07 —-A—- C:\Windows\system32\accessibilitycpl.dll
2008-09-17 18:20:06 —-A—- C:\Windows\system32\wtsapi32.dll
2008-09-17 18:20:06 —-A—- C:\Windows\system32\unlodctr.exe
2008-09-17 18:20:06 —-A—- C:\Windows\system32\sethc.exe
2008-09-17 18:20:06 —-A—- C:\Windows\system32\pnpui.dll
2008-09-17 18:20:06 —-A—- C:\Windows\system32\mscms.dll
2008-09-17 18:20:06 —-A—- C:\Windows\system32\lodctr.exe
2008-09-17 18:20:06 —-A—- C:\Windows\system32\iaspolcy.dll
2008-09-17 18:20:06 —-A—- C:\Windows\system32\extmgr.dll
2008-09-17 18:20:05 —-A—- C:\Windows\system32\ulib.dll
2008-09-17 18:20:05 —-A—- C:\Windows\system32\oobefldr.dll
2008-09-17 18:20:05 —-A—- C:\Windows\system32\fontsub.dll
2008-09-17 18:20:05 —-A—- C:\Windows\system32\dxdiagn.dll
2008-09-17 18:20:05 —-A—- C:\Windows\system32\cabinet.dll
2008-09-17 18:20:04 —-A—- C:\Windows\system32\WSManHTTPConfig.exe
2008-09-17 18:20:04 —-A—- C:\Windows\system32\Utilman.exe
2008-09-17 18:20:04 —-A—- C:\Windows\system32\trkwks.dll
2008-09-17 18:20:04 —-A—- C:\Windows\system32\scesrv.dll
2008-09-17 18:20:04 —-A—- C:\Windows\system32\Mcx2Svc.dll
2008-09-17 18:20:04 —-A—- C:\Windows\system32\lnkstub.exe
2008-09-17 18:20:03 —-A—- C:\Windows\system32\unattend.dll
2008-09-17 18:20:03 —-A—- C:\Windows\system32\ogldrv.dll
2008-09-17 18:20:03 —-A—- C:\Windows\system32\occache.dll
2008-09-17 18:20:03 —-A—- C:\Windows\system32\cabview.dll
2008-09-17 18:20:02 —-A—- C:\Windows\system32\wermgr.exe
2008-09-17 18:20:02 —-A—- C:\Windows\system32\dfdts.dll
2008-09-17 18:20:02 —-A—- C:\Windows\system32\bthci.dll
2008-09-17 18:20:01 —-A—- C:\Windows\system32\wpcao.dll
2008-09-17 18:20:00 —-A—- C:\Windows\system32\printfilterpipelineprxy.dll
2008-09-17 18:20:00 —-A—- C:\Windows\system32\iepeers.dll
2008-09-17 18:20:00 —-A—- C:\Windows\system32\eappgnui.dll
2008-09-17 18:19:59 —-A—- C:\Windows\system32\p2pcollab.dll
2008-09-17 18:19:59 —-A—- C:\Windows\system32\msnetobj.dll
2008-09-17 18:19:59 —-A—- C:\Windows\system32\ieaksie.dll
2008-09-17 18:19:59 —-A—- C:\Windows\system32\basesrv.dll
2008-09-17 18:19:58 —-A—- C:\Windows\system32\drvinst.exe
2008-09-17 18:19:58 —-A—- C:\Windows\system32\dispdiag.exe
2008-09-17 18:19:58 —-A—- C:\Windows\system32\DHCPQEC.DLL
2008-09-17 18:19:57 —-A—- C:\Windows\system32\mmcss.dll
2008-09-17 18:19:57 —-A—- C:\Windows\system32\dsquery.dll
2008-09-17 18:19:56 —-A—- C:\Windows\system32\verifier.dll
2008-09-17 18:19:56 —-A—- C:\Windows\system32\secproc_ssp_isv.dll
2008-09-17 18:19:56 —-A—- C:\Windows\system32\secproc_ssp.dll
2008-09-17 18:19:56 —-A—- C:\Windows\system32\RstrtMgr.dll
2008-09-17 18:19:56 —-A—- C:\Windows\system32\mprapi.dll
2008-09-17 18:19:56 —-A—- C:\Windows\system32\efsadu.dll
2008-09-17 18:19:55 —-A—- C:\Windows\system32\WMVENCOD.DLL
2008-09-17 18:19:55 —-A—- C:\Windows\system32\wercplsupport.dll
2008-09-17 18:19:55 —-A—- C:\Windows\system32\qedit.dll
2008-09-17 18:19:54 —-A—- C:\Windows\system32\WPDSp.dll
2008-09-17 18:19:52 —-A—- C:\Windows\system32\msoeacct.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\WPDShServiceObj.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\wiascanprofiles.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\setupugc.exe
2008-09-17 18:19:51 —-A—- C:\Windows\system32\QSVRMGMT.DLL
2008-09-17 18:19:51 —-A—- C:\Windows\system32\pnrpnsp.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\pngfilt.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\networkmap.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\iscsiexe.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\icacls.exe
2008-09-17 18:19:51 —-A—- C:\Windows\system32\d3d10core.dll
2008-09-17 18:19:51 —-A—- C:\Windows\system32\consent.exe
2008-09-17 18:19:50 —-A—- C:\Windows\system32\xactsrv.dll
2008-09-17 18:19:50 —-A—- C:\Windows\system32\wiaaut.dll
2008-09-17 18:19:50 —-A—- C:\Windows\system32\usercpl.dll
2008-09-17 18:19:50 —-A—- C:\Windows\system32\p2pnetsh.dll
2008-09-17 18:19:50 —-A—- C:\Windows\system32\msrdc.dll
2008-09-17 18:19:50 —-A—- C:\Windows\system32\msdmo.dll
2008-09-17 18:19:50 —-A—- C:\Windows\system32\conime.exe
2008-09-17 18:19:49 —-A—- C:\Windows\system32\systeminfo.exe
2008-09-17 18:19:49 —-A—- C:\Windows\system32\PNPXAssocPrx.dll
2008-09-17 18:19:49 —-A—- C:\Windows\system32\PNPXAssoc.dll
2008-09-17 18:19:49 —-A—- C:\Windows\system32\pcadm.dll
2008-09-17 18:19:49 —-A—- C:\Windows\system32\lsass.exe
2008-09-17 18:19:49 —-A—- C:\Windows\system32\lpk.dll
2008-09-17 18:19:49 —-A—- C:\Windows\system32\findstr.exe
2008-09-17 18:19:49 —-A—- C:\Windows\system32\eappprxy.dll
2008-09-17 18:19:49 —-A—- C:\Windows\system32\drmmgrtn.dll
2008-09-17 18:19:49 —-A—- C:\Windows\system32\dpapimig.exe
2008-09-17 18:19:49 —-A—- C:\Windows\system32\autoplay.dll
2008-09-17 18:19:48 —-A—- C:\Windows\system32\xwizards.dll
2008-09-17 18:19:48 —-A—- C:\Windows\system32\resutils.dll
2008-09-17 18:19:48 —-A—- C:\Windows\system32\netcfg.exe
2008-09-17 18:19:48 —-A—- C:\Windows\system32\msrating.dll
2008-09-17 18:19:48 —-A—- C:\Windows\system32\mfplat.dll
2008-09-17 18:19:48 —-A—- C:\Windows\system32\DWWIN.EXE
2008-09-17 18:19:48 —-A—- C:\Windows\system32\cmdl32.exe
2008-09-17 18:19:47 —-A—- C:\Windows\system32\powercpl.dll
2008-09-17 18:19:47 —-A—- C:\Windows\system32\netprof.dll
2008-09-17 18:19:47 —-A—- C:\Windows\system32\MFWMAAEC.DLL
2008-09-17 18:19:47 —-A—- C:\Windows\system32\dssec.dll
2008-09-17 18:19:47 —-A—- C:\Windows\system32\dot3ui.dll
2008-09-17 18:19:47 —-A—- C:\Windows\system32\dfrgifc.exe
2008-09-17 18:19:47 —-A—- C:\Windows\system32\dbnetlib.dll
2008-09-17 18:19:47 —-A—- C:\Windows\system32\alg.exe
2008-09-17 18:19:46 —-A—- C:\Windows\system32\txflog.dll
2008-09-17 18:19:46 —-A—- C:\Windows\system32\odbc32.dll
2008-09-17 18:19:46 —-A—- C:\Windows\system32\nshhttp.dll
2008-09-17 18:19:46 —-A—- C:\Windows\system32\imm32.dll
2008-09-17 18:19:46 —-A—- C:\Windows\system32\feclient.dll
2008-09-17 18:19:46 —-A—- C:\Windows\system32\btpanui.dll
2008-09-17 18:19:46 —-A—- C:\Windows\system32\apircl.dll
2008-09-17 18:19:46 —-A—- C:\Windows\regedit.exe
2008-09-17 18:19:45 —-A—- C:\Windows\system32\tbssvc.dll
2008-09-17 18:19:45 —-A—- C:\Windows\system32\taskkill.exe
2008-09-17 18:19:45 —-A—- C:\Windows\system32\msieftp.dll
2008-09-17 18:19:45 —-A—- C:\Windows\system32\iexpress.exe
2008-09-17 18:19:45 —-A—- C:\Windows\system32\dxva2.dll
2008-09-17 18:19:45 —-A—- C:\Windows\system32\dwmapi.dll
2008-09-17 18:19:45 —-A—- C:\Windows\system32\d3d10.dll
2008-09-17 18:19:45 —-A—- C:\Windows\system32\bcdprov.dll
2008-09-17 18:19:45 —-A—- C:\Windows\system32\ActionQueue.dll
2008-09-17 18:19:44 —-A—- C:\Windows\system32\syncui.dll
2008-09-17 18:19:44 —-A—- C:\Windows\system32\svchost.exe
2008-09-17 18:19:44 —-A—- C:\Windows\system32\slwmi.dll
2008-09-17 18:19:44 —-A—- C:\Windows\system32\shwebsvc.dll
2008-09-17 18:19:44 —-A—- C:\Windows\system32\RASMM.dll
2008-09-17 18:19:44 —-A—- C:\Windows\system32\provthrd.dll
2008-09-17 18:19:44 —-A—- C:\Windows\system32\MediaMetadataHandler.dll
2008-09-17 18:19:44 —-A—- C:\Windows\system32\EAPQEC.DLL
2008-09-17 18:19:44 —-A—- C:\Windows\system32\dmocx.dll
2008-09-17 18:19:43 —-A—- C:\Windows\system32\SLCExt.dll
2008-09-17 18:19:43 —-A—- C:\Windows\system32\slcc.dll
2008-09-17 18:19:43 —-A—- C:\Windows\system32\networkexplorer.dll
2008-09-17 18:19:43 —-A—- C:\Windows\system32\aclui.dll
2008-09-17 18:19:42 —-A—- C:\Windows\system32\WMASF.DLL
2008-09-17 18:19:42 —-A—- C:\Windows\system32\raserver.exe
2008-09-17 18:19:42 —-A—- C:\Windows\system32\olepro32.dll
2008-09-17 18:19:40 —-A—- C:\Windows\system32\PnPUnattend.exe
2008-09-17 18:19:40 —-A—- C:\Windows\system32\dnscacheugc.exe
2008-09-17 18:19:40 —-A—- C:\Windows\system32\connect.dll
2008-09-17 18:19:39 —-A—- C:\Windows\system32\brcplsdw.dll
2008-09-17 18:19:39 —-A—- C:\Windows\system32\audiodev.dll
2008-09-17 18:19:38 —-A—- C:\Windows\system32\xcopy.exe
2008-09-17 18:19:38 —-A—- C:\Windows\system32\uxsms.dll
2008-09-17 18:19:38 —-A—- C:\Windows\system32\UIHub.dll
2008-09-17 18:19:38 —-A—- C:\Windows\system32\taskmgr.exe
2008-09-17 18:19:38 —-A—- C:\Windows\system32\ias.dll
2008-09-17 18:19:37 —-A—- C:\Windows\system32\upnp.dll
2008-09-17 18:19:37 —-A—- C:\Windows\system32\reg.exe
2008-09-17 18:19:37 —-A—- C:\Windows\system32\QCLIPROV.DLL
2008-09-17 18:19:37 —-A—- C:\Windows\system32\NapiNSP.dll
2008-09-17 18:19:37 —-A—- C:\Windows\system32\msoert2.dll
2008-09-17 18:19:37 —-A—- C:\Windows\system32\icsfiltr.dll
2008-09-17 18:19:37 —-A—- C:\Windows\system32\cmstp.exe
2008-09-17 18:19:37 —-A—- C:\Windows\system32\atl.dll
2008-09-17 18:19:37 —-A—- C:\Windows\system32\appinfo.dll
2008-09-17 18:19:36 —-A—- C:\Windows\system32\wlanext.exe
2008-09-17 18:19:36 —-A—- C:\Windows\system32\perfts.dll
2008-09-17 18:19:36 —-A—- C:\Windows\system32\msjetoledb40.dll
2008-09-17 18:19:36 —-A—- C:\Windows\system32\mountvol.exe
2008-09-17 18:19:36 —-A—- C:\Windows\system32\mmcshext.dll
2008-09-17 18:19:36 —-A—- C:\Windows\system32\browser.dll
2008-09-17 18:19:36 —-A—- C:\Windows\system32\AuxiliaryDisplayApi.dll
2008-09-17 18:19:35 —-A—- C:\Windows\system32\wmpdxm.dll
2008-09-17 18:19:35 —-A—- C:\Windows\system32\PING.EXE
2008-09-17 18:19:35 —-A—- C:\Windows\system32\netplwiz.dll
2008-09-17 18:19:35 —-A—- C:\Windows\system32\inetmib1.dll
2008-09-17 18:19:35 —-A—- C:\Windows\system32\dskquoui.dll
2008-09-17 18:19:35 —-A—- C:\Windows\system32\cewmdm.dll
2008-09-17 18:19:35 —-A—- C:\Windows\system32\certprop.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\WUDFCoinstaller.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\WpdMtpUS.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\WMVXENCD.DLL
2008-09-17 18:19:34 —-A—- C:\Windows\system32\SoundRecorder.exe
2008-09-17 18:19:34 —-A—- C:\Windows\system32\qcap.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\qasf.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\ieakeng.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\httpapi.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\dsuiext.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\dmusic.dll
2008-09-17 18:19:34 —-A—- C:\Windows\system32\bitsadmin.exe
2008-09-17 18:19:33 —-A—- C:\Windows\system32\WUDFSvc.dll
2008-09-17 18:19:33 —-A—- C:\Windows\system32\wmpsrcwp.dll
2008-09-17 18:19:33 —-A—- C:\Windows\system32\SysFxUI.dll
2008-09-17 18:19:33 —-A—- C:\Windows\system32\SecEdit.exe
2008-09-17 18:19:33 —-A—- C:\Windows\system32\rekeywiz.exe
2008-09-17 18:19:33 —-A—- C:\Windows\system32\mtstocom.exe
2008-09-17 18:19:33 —-A—- C:\Windows\system32\mscandui.dll
2008-09-17 18:19:33 —-A—- C:\Windows\system32\auditpol.exe
2008-09-17 18:19:33 —-A—- C:\Windows\system32\adsmsext.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\xwtpw32.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\WMVSENCD.DLL
2008-09-17 18:19:32 —-A—- C:\Windows\system32\shimgvw.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\Sens.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\sbeio.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\ndfapi.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\makecab.exe
2008-09-17 18:19:32 —-A—- C:\Windows\system32\lsmproxy.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\dot3gpclnt.dll
2008-09-17 18:19:32 —-A—- C:\Windows\system32\batt.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\wzcdlg.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\wiashext.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\wiadefui.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\sppnp.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\seclogon.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\printcom.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\msdadiag.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\dxtrans.dll
2008-09-17 18:19:31 —-A—- C:\Windows\system32\apss.dll
2008-09-17 18:19:30 —-A—- C:\Windows\system32\wscmisetup.dll
2008-09-17 18:19:30 —-A—- C:\Windows\system32\wpdwcn.dll
2008-09-17 18:19:30 —-A—- C:\Windows\system32\WMSPDMOE.DLL
2008-09-17 18:19:30 —-A—- C:\Windows\system32\userinit.exe
2008-09-17 18:19:30 —-A—- C:\Windows\system32\sxstrace.exe
2008-09-17 18:19:30 —-A—- C:\Windows\system32\shacct.dll
2008-09-17 18:19:30 —-A—- C:\Windows\system32\perfmon.exe
2008-09-17 18:19:30 —-A—- C:\Windows\system32\p2phost.exe
2008-09-17 18:19:30 —-A—- C:\Windows\system32\napipsec.dll
2008-09-17 18:19:30 —-A—- C:\Windows\system32\msorcl32.dll
2008-09-17 18:19:29 —-A—- C:\Windows\system32\winrshost.exe
2008-09-17 18:19:29 —-A—- C:\Windows\system32\tasklist.exe
2008-09-17 18:19:29 —-A—- C:\Windows\system32\rrinstaller.exe
2008-09-17 18:19:29 —-A—- C:\Windows\system32\ktmutil.exe
2008-09-17 18:19:29 —-A—- C:\Windows\system32\keymgr.dll
2008-09-17 18:19:29 —-A—- C:\Windows\system32\HelpPaneProxy.dll
2008-09-17 18:19:29 —-A—- C:\Windows\system32\csrsrv.dll
2008-09-17 18:19:28 —-A—- C:\Windows\system32\TapiMigPlugin.dll
2008-09-17 18:19:28 —-A—- C:\Windows\system32\prntvpt.dll
2008-09-17 18:19:28 —-A—- C:\Windows\system32\notepad.exe
2008-09-17 18:19:28 —-A—- C:\Windows\system32\MP4SDECD.DLL
2008-09-17 18:19:28 —-A—- C:\Windows\system32\ftp.exe
2008-09-17 18:19:28 —-A—- C:\Windows\system32\fmifs.dll
2008-09-17 18:19:28 —-A—- C:\Windows\system32\colorui.dll
2008-09-17 18:19:28 —-A—- C:\Windows\notepad.exe
2008-09-17 18:19:27 —-A—- C:\Windows\system32\d3dim700.dll
2008-09-17 18:19:25 —-A—- C:\Windows\system32\UIAutomationCore.dll
2008-09-17 18:19:25 —-A—- C:\Windows\system32\netiougc.exe
2008-09-17 18:19:25 —-A—- C:\Windows\system32\msiexec.exe
2008-09-17 18:19:25 —-A—- C:\Windows\system32\cryptdll.dll
2008-09-17 18:19:24 —-A—- C:\Windows\system32\wscproxystub.dll
2008-09-17 18:19:24 —-A—- C:\Windows\system32\winethc.dll
2008-09-17 18:19:24 —-A—- C:\Windows\system32\takeown.exe
2008-09-17 18:19:24 —-A—- C:\Windows\system32\PnPutil.exe
2008-09-17 18:19:24 —-A—- C:\Windows\system32\pcasvc.dll
2008-09-17 18:19:24 —-A—- C:\Windows\system32\nshipsec.dll
2008-09-17 18:19:24 —-A—- C:\Windows\system32\msimtf.dll
2008-09-17 18:19:24 —-A—- C:\Windows\system32\mfps.dll
2008-09-17 18:19:24 —-A—- C:\Windows\system32\driverquery.exe
2008-09-17 18:19:23 —-A—- C:\Windows\system32\wpdbusenum.dll
2008-09-17 18:19:23 —-A—- C:\Windows\system32\wmiprop.dll
2008-09-17 18:19:23 —-A—- C:\Windows\system32\WindowsCodecsExt.dll
2008-09-17 18:19:23 —-A—- C:\Windows\system32\txfw32.dll
2008-09-17 18:19:23 —-A—- C:\Windows\system32\powrprof.dll
2008-09-17 18:19:23 —-A—- C:\Windows\system32\pots.dll
2008-09-17 18:19:23 —-A—- C:\Windows\system32\logagent.exe
2008-09-17 18:19:23 —-A—- C:\Windows\system32\inseng.dll
2008-09-17 18:19:23 —-A—- C:\Windows\system32\findnetprinters.dll
2008-09-17 18:19:22 —-A—- C:\Windows\system32\rasplap.dll
2008-09-17 18:19:22 —-A—- C:\Windows\system32\mfpmp.exe
2008-09-17 18:19:22 —-A—- C:\Windows\system32\fsutil.exe
2008-09-17 18:19:22 —-A—- C:\Windows\system32\dnshc.dll
2008-09-17 18:19:22 —-A—- C:\Windows\system32\capisp.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\WLanHC.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\shrpubw.exe
2008-09-17 18:19:21 —-A—- C:\Windows\system32\sfc_os.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\sendmail.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\RESAMPLEDMO.DLL
2008-09-17 18:19:21 —-A—- C:\Windows\system32\perfnet.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\olecli32.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\nsisvc.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\luainstall.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\imapi.dll
2008-09-17 18:19:21 —-A—- C:\Windows\system32\fdPHost.dll
2008-09-17 18:19:20 —-A—- C:\Windows\system32\wiaacmgr.exe
2008-09-17 18:19:20 —-A—- C:\Windows\system32\wextract.exe
2008-09-17 18:19:20 —-A—- C:\Windows\system32\TMM.dll
2008-09-17 18:19:20 —-A—- C:\Windows\system32\shgina.dll
2008-09-17 18:19:20 —-A—- C:\Windows\system32\runonce.exe
2008-09-17 18:19:20 —-A—- C:\Windows\system32\rshx32.dll
2008-09-17 18:19:20 —-A—- C:\Windows\system32\RpcPing.exe
2008-09-17 18:19:20 —-A—- C:\Windows\system32\ktmw32.dll
2008-09-17 18:19:20 —-A—- C:\Windows\system32\d3dim.dll
2008-09-17 18:19:20 —-A—- C:\Windows\system32\compstui.dll
2008-09-17 18:19:20 —-A—- C:\Windows\system32\cmmon32.exe
2008-09-17 18:19:19 —-A—- C:\Windows\system32\WMADMOE.DLL
2008-09-17 18:19:19 —-A—- C:\Windows\system32\version.dll
2008-09-17 18:19:19 —-A—- C:\Windows\system32\unregmp2.exe
2008-09-17 18:19:19 —-A—- C:\Windows\system32\UI0Detect.exe
2008-09-17 18:19:19 —-A—- C:\Windows\system32\mdminst.dll
2008-09-17 18:19:19 —-A—- C:\Windows\system32\getmac.exe
2008-09-17 18:19:19 —-A—- C:\Windows\system32\dsauth.dll
2008-09-17 18:19:19 —-A—- C:\Windows\system32\dimsjob.dll
2008-09-17 18:19:19 —-A—- C:\Windows\system32\cmlua.dll
2008-09-17 18:19:18 —-A—- C:\Windows\system32\w32tm.exe
2008-09-17 18:19:18 —-A—- C:\Windows\system32\tscupgrd.exe
2008-09-17 18:19:18 —-A—- C:\Windows\system32\net.exe
2008-09-17 18:19:18 —-A—- C:\Windows\system32\msvfw32.dll
2008-09-17 18:19:18 —-A—- C:\Windows\system32\MPG4DECD.DLL
2008-09-17 18:19:18 —-A—- C:\Windows\system32\MP43DECD.DLL
2008-09-17 18:19:18 —-A—- C:\Windows\system32\imgutil.dll
2008-09-17 18:19:17 —-A—- C:\Windows\system32\wmpshell.dll
2008-09-17 18:19:17 —-A—- C:\Windows\system32\sdchange.exe
2008-09-17 18:19:17 —-A—- C:\Windows\system32\migisol.dll
2008-09-17 18:19:17 —-A—- C:\Windows\system32\ipconfig.exe
2008-09-17 18:19:17 —-A—- C:\Windows\system32\credui.dll
2008-09-17 18:19:17 —-A—- C:\Windows\system32\ACW.exe
2008-09-17 18:19:16 —-A—- C:\Windows\system32\sfc.exe
2008-09-17 18:19:16 —-A—- C:\Windows\system32\PortableDeviceWiaCompat.dll
2008-09-17 18:19:16 —-A—- C:\Windows\system32\pnpts.dll
2008-09-17 18:19:16 —-A—- C:\Windows\system32\fdeploy.dll
2008-09-17 18:19:16 —-A—- C:\Windows\system32\dispci.dll
2008-09-17 18:19:16 —-A—- C:\Windows\system32\dinput8.dll
2008-09-17 18:19:16 —-A—- C:\Windows\system32\diantz.exe
2008-09-17 18:19:16 —-A—- C:\Windows\system32\comrepl.dll
2008-09-17 18:19:16 —-A—- C:\Windows\system32\cmutil.dll
2008-09-17 18:19:15 —-A—- C:\Windows\system32\TSTheme.exe
2008-09-17 18:19:15 —-A—- C:\Windows\system32\remotepg.dll
2008-09-17 18:19:15 —-A—- C:\Windows\system32\nlaapi.dll
2008-09-17 18:19:15 —-A—- C:\Windows\system32\ExplorerFrame.dll
2008-09-17 18:19:15 —-A—- C:\Windows\system32\EncDump.dll
2008-09-17 18:19:14 —-A—- C:\Windows\system32\WPDShextAutoplay.exe
2008-09-17 18:19:14 —-A—- C:\Windows\system32\wmidx.dll
2008-09-17 18:19:14 —-A—- C:\Windows\system32\vdmredir.dll
2008-09-17 18:19:14 —-A—- C:\Windows\system32\softkbd.dll
2008-09-17 18:19:14 —-A—- C:\Windows\system32\pdhui.dll
2008-09-17 18:19:14 —-A—- C:\Windows\system32\fwcfg.dll
2008-09-17 18:19:14 —-A—- C:\Windows\system32\expand.exe
2008-09-17 18:19:14 —-A—- C:\Windows\system32\colbact.dll
2008-09-17 18:19:14 —-A—- C:\Windows\system32\cfgbkend.dll
2008-09-17 18:19:13 —-A—- C:\Windows\system32\utildll.dll
2008-09-17 18:19:13 —-A—- C:\Windows\system32\TpmInit.exe
2008-09-17 18:19:13 —-A—- C:\Windows\system32\modemui.dll
2008-09-17 18:19:13 —-A—- C:\Windows\system32\hlink.dll
2008-09-17 18:19:10 —-A—- C:\Windows\system32\wmvdspa.dll
2008-09-17 18:19:10 —-A—- C:\Windows\system32\sti_ci.dll
2008-09-17 18:19:10 —-A—- C:\Windows\system32\rdrleakdiag.exe
2008-09-17 18:19:10 —-A—- C:\Windows\system32\msfeedsbs.dll
2008-09-17 18:19:10 —-A—- C:\Windows\system32\McxDriv.dll
2008-09-17 18:19:10 —-A—- C:\Windows\system32\iernonce.dll
2008-09-17 18:19:10 —-A—- C:\Windows\system32\esentutl.exe
2008-09-17 18:19:10 —-A—- C:\Windows\system32\bridgeunattend.exe
2008-09-17 18:19:10 —-A—- C:\Windows\system32\bootcfg.exe
2008-09-17 18:19:10 —-A—- C:\Windows\system32\amstream.dll
2008-09-17 18:19:09 —-A—- C:\Windows\system32\wsnmp32.dll
2008-09-17 18:19:09 —-A—- C:\Windows\system32\waitfor.exe
2008-09-17 18:19:09 —-A—- C:\Windows\system32\vds_ps.dll
2008-09-17 18:19:09 —-A—- C:\Windows\system32\cmcfg32.dll
2008-09-17 18:19:09 —-A—- C:\Windows\system32\admparse.dll
2008-09-17 18:19:08 —-A—- C:\Windows\system32\tabcal.exe
2008-09-17 18:19:08 —-A—- C:\Windows\system32\qdv.dll
2008-09-17 18:19:08 —-A—- C:\Windows\system32\osblprov.dll
2008-09-17 18:19:08 —-A—- C:\Windows\system32\odbccp32.dll
2008-09-17 18:19:08 —-A—- C:\Windows\system32\logman.exe
2008-09-17 18:19:08 —-A—- C:\Windows\system32\iscsium.dll
2008-09-17 18:19:08 —-A—- C:\Windows\system32\dpnet.dll
2008-09-17 18:19:08 —-A—- C:\Windows\system32\cacls.exe
2008-09-17 18:19:07 —-A—- C:\Windows\system32\WsmCl.dll
2008-09-17 18:19:07 —-A—- C:\Windows\system32\wfapigp.dll
2008-09-17 18:19:07 —-A—- C:\Windows\system32\shutdown.exe
2008-09-17 18:19:07 —-A—- C:\Windows\system32\msdtc.exe
2008-09-17 18:19:06 —-A—- C:\Windows\system32\wpnpinst.exe
2008-09-17 18:19:06 —-A—- C:\Windows\system32\wmpcm.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\werdiagcontroller.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\rasauto.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\olethk32.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\olesvr32.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\mfvdsp.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\iscsiwmi.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\DpiScaling.exe
2008-09-17 18:19:06 —-A—- C:\Windows\system32\dmsynth.dll
2008-09-17 18:19:06 —-A—- C:\Windows\system32\COLORCNV.DLL
2008-09-17 18:19:05 —-A—- C:\Windows\system32\wavemsp.dll
2008-09-17 18:19:05 —-A—- C:\Windows\system32\ufat.dll
2008-09-17 18:19:05 —-A—- C:\Windows\system32\sxproxy.dll
2008-09-17 18:19:05 —-A—- C:\Windows\system32\SLLUA.exe
2008-09-17 18:19:05 —-A—- C:\Windows\system32\mstext40.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\WpdConns.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\ucsvc.exe
2008-09-17 18:19:04 —-A—- C:\Windows\system32\rgb9rast.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\RegCtrl.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\odbctrac.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\networkitemfactory.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\mshta.exe
2008-09-17 18:19:04 —-A—- C:\Windows\system32\msctfui.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\itss.dll
2008-09-17 18:19:04 —-A—- C:\Windows\system32\convert.exe
2008-09-17 18:19:04 —-A—- C:\Windows\system32\at.exe
2008-09-17 18:19:03 —-A—- C:\Windows\system32\xmlprovi.dll
2008-09-17 18:19:03 —-A—- C:\Windows\system32\TimeDateMUICallback.dll
2008-09-17 18:19:03 —-A—- C:\Windows\system32\prevhost.exe
2008-09-17 18:19:03 —-A—- C:\Windows\system32\mobsync.exe
2008-09-17 18:19:03 —-A—- C:\Windows\system32\licmgr10.dll
2008-09-17 18:19:03 —-A—- C:\Windows\system32\csrstub.exe
2008-09-17 18:19:03 —-A—- C:\Windows\system32\bitsigd.dll
2008-09-17 18:19:03 —-A—- C:\Windows\system32\AuthFWGP.dll
2008-09-17 18:19:02 —-A—- C:\Windows\system32\tbs.dll
2008-09-17 18:19:02 —-A—- C:\Windows\system32\rasdiag.dll
2008-09-17 18:19:02 —-A—- C:\Windows\system32\ocsetup.exe
2008-09-17 18:19:02 —-A—- C:\Windows\system32\netbtugc.exe
2008-09-17 18:19:02 —-A—- C:\Windows\system32\iscsied.dll
2008-09-17 18:19:02 —-A—- C:\Windows\system32\dskquota.dll
2008-09-17 18:19:02 —-A—- C:\Windows\system32\cscdll.dll
2008-09-17 18:19:02 —-A—- C:\Windows\system32\AtBroker.exe
2008-09-17 18:19:01 —-A—- C:\Windows\system32\winnsi.dll
2008-09-17 18:19:01 —-A—- C:\Windows\system32\unattendedjoin.exe
2008-09-17 18:19:01 —-A—- C:\Windows\system32\setupcln.dll
2008-09-17 18:19:01 —-A—- C:\Windows\system32\mydocs.dll
2008-09-17 18:19:01 —-A—- C:\Windows\system32\l2gpstore.dll
2008-09-17 18:19:01 —-A—- C:\Windows\system32\GuidedHelp.dll
2008-09-17 18:19:01 —-A—- C:\Windows\system32\fphc.dll
2008-09-17 18:19:01 —-A—- C:\Windows\system32\dmime.dll
2008-09-17 18:19:01 —-A—- C:\Windows\system32\cmpbk32.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\usbui.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\regini.exe
2008-09-17 18:19:00 —-A—- C:\Windows\system32\odbccu32.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\odbccr32.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\napdsnap.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\msident.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\msdart.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\dsdmo.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\dot3dlg.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\devenum.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\apilogen.dll
2008-09-17 18:19:00 —-A—- C:\Windows\system32\amxread.dll
2008-09-17 18:18:59 —-A—- C:\Windows\system32\VIDRESZR.DLL
2008-09-17 18:18:59 —-A—- C:\Windows\system32\RacAgent.exe
2008-09-17 18:18:59 —-A—- C:\Windows\system32\MsCtfMonitor.dll
2008-09-17 18:18:59 —-A—- C:\Windows\system32\gpupdate.exe
2008-09-17 18:18:59 —-A—- C:\Windows\system32\cmstplua.dll
2008-09-17 18:18:58 —-A—- C:\Windows\system32\wpclsp.dll
2008-09-17 18:18:56 —-A—- C:\Windows\system32\WINSRPC.DLL
2008-09-17 18:18:56 —-A—- C:\Windows\system32\vss_ps.dll
2008-09-17 18:18:56 —-A—- C:\Windows\system32\upnpcont.exe
2008-09-17 18:18:56 —-A—- C:\Windows\system32\nsi.dll
2008-09-17 18:18:56 —-A—- C:\Windows\system32\nbtstat.exe
2008-09-17 18:18:56 —-A—- C:\Windows\system32\mtxlegih.dll
2008-09-17 18:18:56 —-A—- C:\Windows\system32\mtxdm.dll
2008-09-17 18:18:56 —-A—- C:\Windows\system32\avrt.dll
2008-09-17 18:18:55 —-A—- C:\Windows\system32\srwmi.dll
2008-09-17 18:18:55 —-A—- C:\Windows\system32\rasphone.exe
2008-09-17 18:18:55 —-A—- C:\Windows\system32\mfcsubs.dll
2008-09-17 18:18:55 —-A—- C:\Windows\system32\graftabl.com
2008-09-17 18:18:54 —-A—- C:\Windows\system32\wsock32.dll
2008-09-17 18:18:54 —-A—- C:\Windows\system32\wiarpc.dll
2008-09-17 18:18:54 —-A—- C:\Windows\system32\WavDest.dll
2008-09-17 18:18:54 —-A—- C:\Windows\system32\vfwwdm32.dll
2008-09-17 18:18:54 —-A—- C:\Windows\system32\syskey.exe
2008-09-17 18:18:54 —-A—- C:\Windows\system32\odbcbcp.dll
2008-09-17 18:18:54 —-A—- C:\Windows\system32\netevent.dll
2008-09-17 18:18:54 —-A—- C:\Windows\system32\ndfetw.dll
2008-09-17 18:18:54 —-A—- C:\Windows\system32\msexcl40.dll
2008-09-17 18:18:53 —-A—- C:\Windows\system32\ROUTE.EXE
2008-09-17 18:18:53 —-A—- C:\Windows\system32\procinst.dll
2008-09-17 18:18:53 —-A—- C:\Windows\system32\MP3DMOD.DLL
2008-09-17 18:18:53 —-A—- C:\Windows\system32\extrac32.exe
2008-09-17 18:18:53 —-A—- C:\Windows\system32\eventcls.dll
2008-09-17 18:18:53 —-A—- C:\Windows\system32\csrss.exe
2008-09-17 18:18:52 —-A—- C:\Windows\system32\WlanMmHC.dll
2008-09-17 18:18:52 —-A—- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2008-09-17 18:18:52 —-A—- C:\Windows\system32\wiadss.dll
2008-09-17 18:18:52 —-A—- C:\Windows\system32\TabbtnEx.dll
2008-09-17 18:18:52 —-A—- C:\Windows\system32\psbase.dll
2008-09-17 18:18:52 —-A—- C:\Windows\system32\inetppui.dll
2008-09-17 18:18:52 —-A—- C:\Windows\system32\dmscript.dll
2008-09-17 18:18:52 —-A—- C:\Windows\system32\d3dxof.dll
2008-09-17 18:18:52 —-A—- C:\Windows\system32\atmfd.dll
2008-09-17 18:18:51 —-A—- C:\Windows\system32\Tabbtn.dll
2008-09-17 18:18:51 —-A—- C:\Windows\system32\msxbde40.dll
2008-09-17 18:18:51 —-A—- C:\Windows\system32\dmloader.dll
2008-09-17 18:18:51 —-A—- C:\Windows\system32\CertEnrollCtrl.exe
2008-09-17 18:18:51 —-A—- C:\Windows\fveupdate.exe
2008-09-17 18:18:50 —-A—- C:\Windows\system32\Netplwiz.exe
2008-09-17 18:18:50 —-A—- C:\Windows\system32\msltus40.dll
2008-09-17 18:18:50 —-A—- C:\Windows\system32\credssp.dll
2008-09-17 18:18:49 —-A—- C:\Windows\system32\wshcon.dll
2008-09-17 18:18:49 —-A—- C:\Windows\system32\mspbde40.dll
2008-09-17 18:18:49 —-A—- C:\Windows\system32\icsunattend.exe
2008-09-17 18:18:48 —-A—- C:\Windows\system32\WsmRes.dll
2008-09-17 18:18:48 —-A—- C:\Windows\system32\WSHTCPIP.DLL
2008-09-17 18:18:48 —-A—- C:\Windows\system32\wship6.dll
2008-09-17 18:18:48 —-A—- C:\Windows\system32\sxsstore.dll
2008-09-17 18:18:48 —-A—- C:\Windows\system32\PlaySndSrv.dll
2008-09-17 18:18:48 —-A—- C:\Windows\system32\msvidc32.dll
2008-09-17 18:18:48 —-A—- C:\Windows\system32\lltdapi.dll
2008-09-17 18:18:48 —-A—- C:\Windows\system32\HotStartUserAgent.dll
2008-09-17 18:18:47 —-A—- C:\Windows\system32\setupSNK.exe
2008-09-17 18:18:47 —-A—- C:\Windows\system32\localui.dll
2008-09-17 18:18:47 —-A—- C:\Windows\system32\icaapi.dll
2008-09-17 18:18:47 —-A—- C:\Windows\system32\ComputerDefaults.exe
2008-09-17 18:18:46 —-A—- C:\Windows\system32\tcpmon.ini
2008-09-17 18:18:46 —-A—- C:\Windows\system32\slwga.dll
2008-09-17 18:18:46 —-A—- C:\Windows\system32\OptionalFeatures.exe
2008-09-17 18:18:46 —-A—- C:\Windows\system32\LangCleanupSysprepAction.dll
2008-09-17 18:18:45 —-A—- C:\Windows\system32\sbunattend.exe
2008-09-17 18:18:43 —-A—- C:\Windows\system32\dmutil.dll
2008-09-17 18:18:42 —-A—- C:\Windows\system32\usbperf.dll
2008-09-17 18:18:42 —-A—- C:\Windows\system32\spopk.dll
2008-09-17 18:18:42 —-A—- C:\Windows\system32\serialui.dll
2008-09-17 18:18:42 —-A—- C:\Windows\system32\NcdProp.dll
2008-09-17 18:18:41 —-A—- C:\Windows\system32\odbcconf.dll
2008-09-17 18:18:41 —-A—- C:\Windows\system32\msfeedssync.exe
2008-09-17 18:18:41 —-A—- C:\Windows\system32\cofiredm.dll
2008-09-17 18:18:40 —-A—- C:\Windows\system32\rasctrs.dll
2008-09-17 18:18:40 —-A—- C:\Windows\system32\msobjs.dll
2008-09-17 18:18:40 —-A—- C:\Windows\system32\ieencode.dll
2008-09-17 18:18:40 —-A—- C:\Windows\system32\hbaapi.dll
2008-09-17 18:18:39 —-A—- C:\Windows\system32\midimap.dll
2008-09-17 18:18:39 —-A—- C:\Windows\system32\hnetmon.dll
2008-09-17 18:18:39 —-A—- C:\Windows\system32\corpol.dll
2008-09-17 18:18:38 —-A—- C:\Windows\system32\vdmdbg.dll
2008-09-17 18:18:38 —-A—- C:\Windows\system32\InfDefaultInstall.exe
2008-09-17 18:18:38 —-A—- C:\Windows\system32\esentprf.dll
2008-09-17 18:18:37 —-A—- C:\Windows\system32\url.dll
2008-09-17 18:18:37 —-A—- C:\Windows\system32\nlsbres.dll
2008-09-17 18:18:37 —-A—- C:\Windows\system32\LogonUI.exe
2008-09-17 18:18:37 —-A—- C:\Windows\system32\iprtprio.dll
2008-09-17 18:18:36 —-A—- C:\Windows\system32\sdspres.dll
2008-09-17 18:18:33 —-A—- C:\Windows\system32\osbaseln.dll
2008-09-17 18:18:33 —-A—- C:\Windows\system32\cfgmgr32.dll
2008-09-17 18:18:31 —-A—- C:\Windows\system32\msisip.dll
2008-09-17 18:18:30 —-A—- C:\Windows\system32\msmmsp.dll
2008-09-17 18:18:29 —-A—- C:\Windows\system32\winusb.dll
2008-09-17 18:18:29 —-A—- C:\Windows\system32\rdpcfgex.dll
2008-09-17 18:18:29 —-A—- C:\Windows\system32\dispex.dll
2008-09-17 18:18:25 —-A—- C:\Windows\system32\Nlsdl.dll
2008-09-17 18:18:23 —-A—- C:\Windows\system32\spwmp.dll
2008-09-17 18:18:23 —-A—- C:\Windows\system32\riched32.dll
2008-09-17 18:18:23 —-A—- C:\Windows\system32\msidle.dll
2008-09-17 18:18:23 —-A—- C:\Windows\system32\idndl.dll
2008-09-17 18:18:21 —-A—- C:\Windows\system32\KBDKOR.DLL
2008-09-17 18:18:21 —-A—- C:\Windows\system32\KBDJPN.DLL
2008-09-17 18:18:21 —-A—- C:\Windows\system32\iscsilog.dll
2008-09-17 18:18:20 —-A—- C:\Windows\system32\vga256.dll
2008-09-17 18:18:19 —-A—- C:\Windows\system32\wmploc.DLL
2008-09-17 18:18:19 —-A—- C:\Windows\system32\vga64k.dll
2008-09-17 18:18:19 —-A—- C:\Windows\system32\tsddd.dll
2008-09-17 18:18:19 —-A—- C:\Windows\system32\framebuf.dll
2008-09-17 18:18:19 —-A—- C:\Windows\system32\dxmasf.dll
2008-09-17 18:18:18 —-A—- C:\Windows\system32\vga.dll
2008-09-17 18:18:18 —-A—- C:\Windows\system32\dmdskres2.dll
2008-09-17 18:18:18 —-A—- C:\Windows\system32\bootstr.dll
2008-09-17 18:18:17 —-A—- C:\Windows\system32\spwizres.dll
2008-09-17 18:18:17 —-A—- C:\Windows\system32\f3ahvoas.dll
2008-09-17 18:18:12 —-A—- C:\Windows\system32\gatherWiredInfo.vbs
2008-09-17 18:18:11 —-A—- C:\Windows\system32\gatherWirelessInfo.vbs
2008-09-17 18:18:11 —-A—- C:\Windows\system32\fsmgmt.msc
2008-09-17 18:18:00 —-A—- C:\Windows\system32\perfmon.msc
2008-09-17 18:17:58 —-A—- C:\Windows\system32\vsp1cln.exe
2008-09-17 18:16:51 —-A—- C:\Windows\system32\xmllite.dll
2008-09-17 18:16:47 —-A—- C:\Windows\system32\wbemcomn.dll
2008-09-17 18:16:25 —-A—- C:\Windows\system32\SmiInstaller.dll
2008-09-17 18:16:25 —-A—- C:\Windows\system32\SmiEngine.dll
2008-09-17 18:15:47 —-A—- C:\Windows\system32\wdscore.dll
2008-09-17 18:15:47 —-A—- C:\Windows\system32\PkgMgr.exe
2008-09-17 18:15:00 —-A—- C:\Windows\system32\drvstore.dll
2008-09-17 18:14:58 —-A—- C:\Windows\system32\mspatcha.dll
2008-09-17 18:14:58 —-A—- C:\Windows\system32\msdelta.dll
2008-09-17 18:14:58 —-A—- C:\Windows\system32\dpx.dll
2008-09-14 08:18:59 —-D—- C:\Users\xxxxxxxx\AppData\Roaming\Malwarebytes
2008-09-14 08:18:54 —-D—- C:\ProgramData\Malwarebytes
2008-09-12 11:43:48 —-D—- C:\Users\xxxxxxxx\AppData\Roaming\ooVoo Details
2008-09-11 10:53:59 —-A—- C:\Windows\system32\javaws.exe
2008-09-11 10:53:59 —-A—- C:\Windows\system32\javaw.exe
2008-09-11 10:53:59 —-A—- C:\Windows\system32\java.exe
2008-09-11 02:26:50 —-A—- C:\Windows\system32\bcmihvui.dll
2008-09-10 17:00:30 —-D—- C:\NVIDIA
2008-09-10 15:12:36 —-D—- C:\Windows\pss
2008-09-10 10:39:51 —-A—- C:\Windows\system32\wups2.dll
2008-09-10 10:39:51 —-A—- C:\Windows\system32\wucltux.dll
2008-09-10 10:39:51 —-A—- C:\Windows\system32\wuaueng.dll
2008-09-10 10:39:51 —-A—- C:\Windows\system32\wuauclt.exe
2008-09-10 10:38:59 —-A—- C:\Windows\system32\wups.dll
2008-09-10 10:38:59 —-A—- C:\Windows\system32\wudriver.dll
2008-09-10 10:38:59 —-A—- C:\Windows\system32\wuapi.dll
2008-09-10 10:38:44 —-A—- C:\Windows\system32\wuwebv.dll
2008-09-10 10:38:44 —-A—- C:\Windows\system32\wuapp.exe

======List of files/folders modified in the last 1 months======

2008-10-07 19:17:29 —-D—- C:\Windows\Temp
2008-10-07 19:17:15 —-D—- C:\Windows\Prefetch
2008-10-07 19:16:47 —-D—- C:\Users\xxxxxxxx\AppData\Roaming\SiteAdvisor
2008-10-07 18:52:27 —-SHD—- C:\System Volume Information
2008-10-07 17:54:52 —-D—- C:\Windows\System32
2008-10-07 17:54:52 —-D—- C:\Windows\inf
2008-10-07 17:54:52 —-A—- C:\Windows\system32\PerfStringBackup.INI
2008-10-07 17:53:00 —-D—- C:\ProgramData\Kaspersky Lab
2008-10-07 17:52:09 —-D—- C:\Windows\SMINST
2008-10-07 10:20:53 —-D—- C:\Windows
2008-10-07 09:45:58 —-RD—- C:\Program Files
2008-10-07 09:45:49 —-SD—- C:\Windows\Downloaded Program Files
2008-10-07 09:36:32 —-D—- C:\Windows\system32\drivers
2008-10-02 20:50:58 —-D—- C:\Windows\system32\WDI
2008-10-02 10:33:02 —-D—- C:\Windows\Debug
2008-10-02 09:40:50 —-D—- C:\Windows\system32\catroot
2008-10-01 23:16:00 —-SHD—- C:\Windows\Installer
2008-10-01 23:14:56 —-D—- C:\Program Files\Common Files\Adobe
2008-10-01 23:14:52 —-D—- C:\ProgramData\Adobe
2008-10-01 23:14:41 —-D—- C:\Program Files\Adobe
2008-09-30 18:14:21 —-D—- C:\Program Files\Common Files
2008-09-28 11:05:45 —-D—- C:\Windows\system32\catroot2
2008-09-28 00:20:30 —-RSD—- C:\Windows\assembly
2008-09-28 00:19:52 —-D—- C:\Windows\winsxs
2008-09-28 00:19:49 —-D—- C:\Program Files\Paint.NET
2008-09-28 00:14:32 —-D—- C:\ProgramData\Lx_cats
2008-09-27 12:13:50 —-D—- C:\Program Files\Mozilla Firefox
2008-09-24 09:56:36 —-D—- C:\Users\xxxxxxxx\AppData\Roaming\Mozilla
2008-09-24 08:38:35 —-D—- C:\Windows\rescache
2008-09-18 08:15:59 —-D—- C:\Windows\system32\en-US
2008-09-18 08:15:59 —-D—- C:\Windows\PolicyDefinitions
2008-09-18 08:10:51 —-D—- C:\Windows\twain_32
2008-09-18 08:09:29 —-D—- C:\Program Files\CONEXANT
2008-09-17 22:58:09 —-D—- C:\Windows\Logs
2008-09-17 19:23:03 —-D—- C:\Windows\Microsoft.NET
2008-09-17 19:13:35 —-SHD—- C:\boot
2008-09-17 19:13:06 —-ASH—- C:\Program Files\desktop.ini
2008-09-17 19:00:06 —-D—- C:\Program Files\Windows Sidebar
2008-09-17 19:00:06 —-D—- C:\Program Files\Windows Calendar
2008-09-17 19:00:06 —-D—- C:\Program Files\Movie Maker
2008-09-17 19:00:05 —-D—- C:\Program Files\Windows Photo Gallery
2008-09-17 19:00:05 —-D—- C:\Program Files\Windows Media Player
2008-09-17 19:00:05 —-D—- C:\Program Files\Windows Mail
2008-09-17 19:00:05 —-D—- C:\Program Files\Windows Journal
2008-09-17 19:00:05 —-D—- C:\Program Files\Windows Collaboration
2008-09-17 19:00:05 —-D—- C:\Program Files\Internet Explorer
2008-09-17 18:59:59 —-D—- C:\Windows\servicing
2008-09-17 18:59:59 —-D—- C:\Windows\ehome
2008-09-17 18:59:59 —-D—- C:\Program Files\Windows Defender
2008-09-17 18:59:59 —-D—- C:\Program Files\Common Files\System
2008-09-17 18:59:55 —-D—- C:\Windows\MSAgent
2008-09-17 18:59:55 —-D—- C:\Windows\L2Schemas
2008-09-17 18:59:55 —-D—- C:\Windows\IME
2008-09-17 18:59:55 —-D—- C:\Windows\DigitalLocker
2008-09-17 18:59:54 —-D—- C:\Windows\system32\XPSViewer
2008-09-17 18:59:54 —-D—- C:\Windows\system32\ko-KR
2008-09-17 18:59:54 —-D—- C:\Windows\system32\da-DK
2008-09-17 18:59:54 —-D—- C:\Windows\system32\com
2008-09-17 18:59:45 —-D—- C:\Windows\system32\oobe
2008-09-17 18:59:45 —-D—- C:\Windows\system32\it-IT
2008-09-17 18:59:45 —-D—- C:\Windows\system32\el-GR
2008-09-17 18:59:45 —-D—- C:\Windows\system32\de-DE
2008-09-17 18:59:44 —-D—- C:\Windows\system32\sysprep
2008-09-17 18:59:44 —-D—- C:\Windows\system32\migration
2008-09-17 18:59:42 —-D—- C:\Windows\system32\sv-SE
2008-09-17 18:59:42 —-D—- C:\Windows\system32\SLUI
2008-09-17 18:59:42 —-D—- C:\Windows\system32\setup
2008-09-17 18:59:42 —-D—- C:\Windows\system32\ru-RU
2008-09-17 18:59:42 —-D—- C:\Windows\system32\pt-PT
2008-09-17 18:59:42 —-D—- C:\Windows\system32\ias
2008-09-17 18:59:42 —-D—- C:\Windows\system32\hu-HU
2008-09-17 18:59:42 —-D—- C:\Windows\system32\he-IL
2008-09-17 18:59:42 —-D—- C:\Windows\system32\fr-FR
2008-09-17 18:59:42 —-D—- C:\Windows\system32\fi-FI
2008-09-17 18:59:42 —-D—- C:\Windows\system32\cs-CZ
2008-09-17 18:59:42 —-D—- C:\Windows\system32\AdvancedInstallers
2008-09-17 18:59:40 —-D—- C:\Windows\system32\zh-TW
2008-09-17 18:59:40 —-D—- C:\Windows\system32\zh-CN
2008-09-17 18:59:40 —-D—- C:\Windows\system32\pl-PL
2008-09-17 18:59:40 —-D—- C:\Windows\system32\manifeststore
2008-09-17 18:59:40 —-D—- C:\Windows\system32\ja-JP
2008-09-17 18:59:40 —-D—- C:\Windows\system32\es-ES
2008-09-17 18:59:40 —-D—- C:\Windows\system32\en
2008-09-17 18:59:39 —-D—- C:\Windows\system32\ro-RO
2008-09-17 18:59:38 —-D—- C:\Windows\system32\tr-TR
2008-09-17 18:59:37 —-D—- C:\Windows\system32\wbem
2008-09-17 18:59:36 —-D—- C:\Windows\system32\nl-NL
2008-09-17 18:59:36 —-D—- C:\Windows\system32\nb-NO
2008-09-17 18:59:36 —-D—- C:\Windows\system32\ar-SA
2008-09-17 18:59:30 —-D—- C:\Windows\system32\pt-BR
2008-09-17 18:59:30 —-D—- C:\Windows\system32\migwiz
2008-09-17 18:58:54 —-D—- C:\Windows\AppPatch
2008-09-17 18:58:44 —-D—- C:\Windows\Boot
2008-09-17 18:58:42 —-D—- C:\Windows\system32\Boot
2008-09-17 18:41:16 —-A—- C:\Windows\system32\ifxcardm.dll
2008-09-17 18:41:07 —-A—- C:\Windows\system32\axaltocm.dll
2008-09-15 19:20:09 —-A—- C:\Windows\ODBC.INI
2008-09-15 16:37:40 —-RSD—- C:\Windows\Fonts
2008-09-15 16:37:26 —-HD—- C:\ProgramData
2008-09-15 16:30:39 —-HD—- C:\Program Files\InstallShield Installation Information
2008-09-15 16:30:39 —-D—- C:\Program Files\Common Files\muvee Technologies
2008-09-14 14:54:06 —-D—- C:\Program Files\Canon
2008-09-13 08:50:41 —-D—- C:\Program Files\Java
2008-09-11 02:26:50 —-A—- C:\Windows\system32\bcmwlcoi.dll
2008-09-11 02:26:50 —-A—- C:\Windows\system32\bcmihvsrv.dll
2008-09-10 23:11:05 —-D—- C:\ProgramData\Roxio
2008-09-10 22:47:52 —-D—- C:\ProgramData\Viewpoint

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-11-30 8192]
R1 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2008-05-31 112144]
R1 KLIF;KLIF; C:\Windows\system32\DRIVERS\klif.sys [2007-10-28 127768]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2007-04-04 20760]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-15 32256]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-15 43520]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-15 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2008-09-11 1326584]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-18 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-03 182272]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-05-03 1065384]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-02-28 4465184]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-16 12032]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-18 88576]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-08-22 1749760]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-28 199472]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-18 11264]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S2 npkcrypt;npkcrypt; \??\C:\Nexon\MapleStory\npkcrypt.sys []
S3 2WIREPCP;2Wire USB; C:\Windows\system32\DRIVERS\2WirePCP.sys [2004-09-15 68672]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2008-09-11 1326584]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 E100B;Intel® PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-02-22 159232]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-18 1380864]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 npkcusb;npkcusb; \??\C:\Nexon\MapleStory\npkcusb.sys []
S3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-18 73088]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-18 134016]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-18 39936]
S3 XDva004;XDva004; \??\C:\Windows\system32\XDva004.sys []
S3 XDva028;XDva028; \??\C:\Windows\system32\XDva028.sys []
S3 XDva034;XDva034; \??\C:\Windows\system32\XDva034.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AVP;Kaspersky Internet Security 7.0; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe [2007-06-28 218376]
R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-03-28 270431]
R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-09-19 65536]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 lxdi_device;lxdi_device; C:\Windows\system32\lxdicoms.exe [2007-04-26 517040]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2007-10-06 66872]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560]
S2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [2007-03-28 118877]
S2 lxdiCATSCustConnectService;lxdiCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\W32X86\3\\lxdiserv.exe [2007-04-26 99248]
S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-01-09 110592]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 880640]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-02-17 74656]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
S3 usprserv;User Privilege Service; C:\Windows\System32\svchost.exe [2008-01-19 21504]

—————–EOF—————–





Info.txt:

info.txt logfile of random's system information tool 1.04 2008-10-07 19:17:45

======Uninstall list======

Adobe Flash Player 9 ActiveX–>C:\Windows\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
Adobe Flash Player Plugin–>C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 8.1.2–>MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81200000003}
AIM 6–>C:\Program Files\AIM6\uninst.exe
Canon iP1800 series User Registration–>C:\Program Files\Canon\IJEREG\iP1800 series\UNINST.EXE
Canon iP1800 series–>"C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP1800_series\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP1800_series /L0x0009
Canon My Printer–>C:\Program Files\Canon\MyPrinter\uninst.exe uninst.ini
CCleaner (remove only)–>"C:\Program Files\CCleaner\uninst.exe"
Chinese Traditional Fonts Support For Adobe Reader 8–>MsiExec.exe /I{AC76BA86-7AD7-2448-0000-800000000003}
Compatibility Pack for the 2007 Office system–>MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
Conexant HD Audio–>C:\Program Files\CONEXANT\CNXT_HDAUDIO\UIU32a.exe -U -IwisR30B7.INF
ESET Online Scanner–>C:\Windows\system32\OnlineScannerUninstaller.exe
ESU for Microsoft Vista–>MsiExec.exe /X{39523EA4-F914-4447-A551-2513766095F5}
HDAUDIO Soft Data Fax Modem with SmartCP–>C:\Program Files\CONEXANT\CNXT_MODEM_HDA_HSF\UIU32m.exe -U -IwqcVenz.inf
Hewlett-Packard Active Check–>MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
Hewlett-Packard Asset Agent for Health Check–>MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
HijackThis 2.0.2–>"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
HP Active Support Library 32 bit components–>MsiExec.exe /I{FAB0C302-CB18-4A7A-BA03-C3DC23101A68}
HP Active Support Library–>C:\Program Files\InstallShield Installation Information\{11BB336F-0E58-4977-B866-F24FA334616B}\setup.exe -runfromtemp -l0x0409
HP Customer Experience Enhancements–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9 -removeonly
HP Easy Setup - Frontend–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9 -removeonly
HP Help and Support–>MsiExec.exe /I{584B0895-8EF3-4175-8E80-1B68BFA04636}
HP Pavilion Webcam Driver for Vista v061.001.00005–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5CA81D12-9EC2-4082-972B-43ECA63F41F2}\setup.exe" -l0x9 -removeonly
HP Photosmart Essential 2.0–>C:\Program Files\Hewlett-Packard\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Quick Launch Buttons 6.20 B1–>C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe -runfromtemp -l0x0009 uninst
HP QuickPlay 3.2–>RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{45D707E9-F3C4-11D9-A373-0050BAE317E1}\setup.exe" -uninstall
HP Total Care Advisor–>MsiExec.exe /X{F6B29003-A078-4491-AFBE-62EFB6CFFE19}
HP Update–>MsiExec.exe /X{25F6C900-C138-4888-A56C-91D3D063023A}
HP User Guide 0042–>MsiExec.exe /I{B0F97FBF-9F98-4522-B65D-8980FE38C726}
HP Wireless Assistant–>MsiExec.exe /I{D32067CD-7409-4792-BFA0-1469BCD8F0C8}
HPNetworkAssistant–>MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
Java™ 6 Update 7–>MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Kaspersky Internet Security 7.0–>MsiExec.exe /I{C774410D-3EF9-4DE7-AC01-332613163ECF}
Kaspersky Internet Security 7.0–>MsiExec.exe /I{C774410D-3EF9-4DE7-AC01-332613163ECF}
Lexmark 3500-4500 Series–>C:\Program Files\Lexmark 3500-4500 Series\Install\x86\Uninst.exe
Lexmark Fax Solutions–>C:\Program Files\\Lexmark Fax Solutions\Install\x86\Uninst.exe /R:faxunst
Microsoft Office Professional Edition 2003–>MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
Microsoft Visual C++ 2005 Redistributable–>MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Works–>MsiExec.exe /I{6D52C408-B09A-4520-9B18-475B81D393F1}
Mozilla Firefox (3.0.3)–>C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSCU for Microsoft Vista–>MsiExec.exe /X{3FFB3B34-D639-4384-9AE9-DDE58430D86F}
MSXML 4.0 SP2 (KB927978)–>MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)–>MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB941833)–>MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
MSXML 4.0 SP2 Parser and SDK–>MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
NVIDIA Drivers–>C:\Windows\system32\NVUNINST.EXE UninstallGUI
Paint.NET v3.36–>MsiExec.exe /X{43602F34-1AA3-44FB-AEB2-D08C2C73743F}
Panda ActiveScan 2.0–>C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
QuickTime–>MsiExec.exe /I{95A890AA-B3B1-44B6-9C18-A8F7AB3EE7FC}
Rhapsody Player Engine–>MsiExec.exe /I{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}
Roxio Activation Module–>MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}
Roxio Creator Audio–>MsiExec.exe /I{83FFCFC7-88C6-41c6-8752-958A45325C82}
Roxio Creator Basic v9–>MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
Roxio Creator Copy–>MsiExec.exe /I{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}
Roxio Creator Data–>MsiExec.exe /I{0D397393-9B50-4c52-84D5-77E344289F87}
Roxio Creator EasyArchive–>MsiExec.exe /I{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
Roxio Creator Tools–>MsiExec.exe /I{0394CDC8-FABD-4ed8-B104-03393876DFDF}
Roxio Express Labeler 3–>MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Roxio MyDVD Basic v9–>MsiExec.exe /I{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}
Synaptics Pointing Device Driver–>rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Typing Quick & Easy–>C:\Program Files\Typing Quick & Easy\uninstall.exe
VideoLAN VLC media player 0.8.6c–>C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Live Messenger–>MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}

======Security center information======

AV: Kaspersky Internet Security
FW: Kaspersky Internet Security
AS: Windows Defender
AS: Kaspersky Internet Security

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;C:\Program Files\QuickTime\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 72 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=4802
"NUMBER_OF_PROCESSORS"=2
"PLATFORM"=MCD
"PCBRAND"=Pavilion
"OnlineServices"=Online Services
"RoxioCentral"=C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\
"USERPART"=E:
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_02\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_02\lib\ext\QTJava.zip

—————–EOF—————–
Looks ok, so I would say your system is clean.

This will clean out all the junk

Please download ATF Cleaner by Atribune to your desktop.
  • This program is for XP and Windows 2000 only
  • Double-click ATF-Cleaner.exe to run the program.
  • Under Main choose: Select All
  • Click the Empty Selected button.
Your system may start up slower after running ATF Cleaner, this is expected but will be back to normal after the first or second boot up
Please note: If you use online banking or are registered online with any other organizations, ensure you have memorized password and other personal information as removing cookies will temporarily disable the auto-login facility.



You can try posting in one of these forums for slow computers, we just do malware removal in this one.

Windows Tech Support Forums




It's Not Always Malware
Speedup Windows
Windows Tips


Some good reading to stay clean and prevent attacks

  • How did I get infected in the first place ? Read these links and find out how to prevent getting infected again.
  • Tutorial for System Restore <– Do this first to prevent yourself from being reinfected.
  • WhattheTech
  • TonyKlein CastleCops
  • Grinler BleepingComputer
  • GeeksTo Go
  • Dslreports



Safe Surfn
Ken
Since this issue appears to be resolved … this Topic has been closed. Glad we could be of assistance. If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread. Everyone else please begin a New Topic.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI