Setupcasino enlever : impossible

Résolu
seesaw Messages postés 351 Statut Membre -  
seesaw Messages postés 351 Statut Membre -
Bonjour,
voilà j'ai télécharger un jeu de casino et quand je fais le "anti-spy" il me le trouve mais je n'arrive pas à l'enlever!

je vous remercie d'avance,

gabriel
Configuration: Windows Vista
Firefox 3.0.6

73 réponses

  • 1
  • 2
  • 3
  • 4
Résumé de la discussion

Un utilisateur signale qu'un logiciel malveillant (malware) lié à un jeu de casino téléchargé est détecté par un anti-spyware, mais il n'arrive pas à le supprimer sous Windows Vista avec Firefox 3.0.6. Plusieurs pistes techniques sont proposées pour nettoyer le système, notamment des outils de désinfection et des procédures de suppression manuelle ou par reboot, afin de neutraliser les infections et les fichiers autorun. Des recommandations évoquent des programmes comme RSIT, ComboFix et Qoobox, ainsi que des étapes de nettoyage, diagnostic et rapport à envoyer, tout en évitant les conclusions hâtives. Par ailleurs, il est recommandé de sauvegarder les données avant toute intervention et de privilégier des sources fiables pour les outils de détection afin d'éviter les logiciels nuisibles supplémentaires.

Bobot (l'IA à votre service)
  1. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 325
     
    Plus de WinSOS.
    1
    1. seesaw Messages postés 351 Statut Membre 8
       
      ok,
      mais il reste le problème de la défragg! et j'ai l'impression que la lenteur du syst. viendrait pt de là??
      d'autant plus que le nombre de fichiers fragmentés a augmenté après avoir enlevé le winsos.

      voilà le rapport :

      ---------------------------------------------------------------------------
      (C:), NTFS, Capacité: 175,7 GB, Utilisé : 35,8 GB (20%), Libre : 139,9 GB (80%)
      ---------------------------------------------------------------------------
      Total size: 10,1 GB, Fichiers fragmentés (3), Total Fragments (105)
      ---------------------------------------------------------------------------
      Filename Fragments Size Path
      ---------------------------------------------------------------------------
      avB2BD.tmp 66 16558720 C:\ProgramData\Kaspersky Lab\AVP8\Data\
      sfdb.dat 16 842756 C:\ProgramData\Kaspersky Lab\AVP8\Data\
      {5df60d20-fec7-11dd-868c-001a80a0a2fd}{3808876b-c176-4e48-b7ae-04046e6cc752} 23 10811895808 C:\System Volume Information\
      0
  2. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 325
     
    Le site CommentÇaMarche boguait hier depuis 11h du matin. Du coup, je n'ai pas répondu aux gens car je voyais les réponses 2 fois sur 10.

    Je ne suis pas un robot, j'ai une vie à côté du site. Ces derniers jours, j'étais pas souvent là.

    Pour ton énervement, je peux le comprendre mais je ne te dois rien. Je te réponds quand MOI je le décide.

    Dans les rapports que tu m'as donné, je ne voyais pas de grosse infection.
    1
    1. seesaw Messages postés 351 Statut Membre 8
       
      ok,
      d'accord! passons sur le boggage dont tu n'y pouvais rien!!

      MAIS en temps normal non, "Je te réponds quand MOI je le décide."!!

      bien sûr que je ne suis pas le sul dont tu t'occupes...
      mais, et je le répète, bien sûr si le site n'avait pas buggué, la moindre des choses aurait été de répondre
      et de ne pas laisser quelqu'un ds la merde ALORS qu'on a commencé à s'occuper de son cas!!

      tout le monde travail!
      ainsi, je retire mes propos pour les circonstances présentes de buggage!

      Mais, un dialogue se fait à DEUX et on ne choisit pas unilatéralement d'arrêter le contact quand l'un des 2 pose des questions comme tu le dis!!

      Nul ne décide seul, c'est inepte comme pensée!
      0
  3. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 325
     
    Je ne pouvais pas répondre hier, je ne voyais pas tes messages.

    "Mais, un dialogue se fait à DEUX et on ne choisit pas unilatéralement d'arrêter le contact quand l'un des 2 pose des questions comme tu le dis!!"

    ---> Je n'ai pas arrêté le contact puisque je suis là.

    "Nul ne décide seul, c'est inepte comme pensée!"

    ---> C'est inepte de t'attaquer à moi alors que j'essayais de t'aider. Je ne gagne "rien" à t'aider et pourtant je le fais alors qu'on me dise par exemple "Putain, tu fais chier, tu m'as répondu hier" je trouve cela assez limite.
    1
  4. gen-hackman
     
    bonsoir :

    Désactive le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):

    - Vas dans "Démarrer" puis Panneau de configuration.
    - Double Clique sur l'icône Comptes d'utilisateurs et sur Activer ou désactiver le contrôle des comptes d'utilisateurs.
    - Clique sur Continuer.
    - Décoche la case Utiliser le contrôle des comptes d'utilisateurs pour vous aider à protéger votre ordinateur.
    - Valide par OK et redémarre.

    Tuto : https://forum.malekal.com/viewtopic.php?f=59&t=6517

    Télécharges http://sd-1.archive-host.com/membres/up/16506160323759868/AD-R.exe ( de Cyrildu17 / C_XX ) sur ton bureau :

    /!\ Déconnectes toi et fermes toutes applications en cours

    ? Double clique sur le programme d'installation , et installe le dans son emplacement par défaut. ( C:\Program files )
    ? Double clique sur l'icône Ad-removersituée sur ton bureau
    ? Au menu principal choisi l'option "Recherche"
    ? Postes le rapport qui apparait à la fin .

    ( le rapport est sauvegardé aussi sous C:\Ad-report(date).log )

    (CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    Note :

    "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
    Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
    Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall)
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. seesaw Messages postés 351 Statut Membre 8
     
    ben, rapide! :)

    bon voilà le rapport :

    ------- LOGFILE OF AD-REMOVER 1.1.1.3 | ONLY XP/VISTA -------

    Updated by C_XX on 15/02/2009 at 10:20

    Start at: 23:25:31 | Mon 16/02/2009 | Boot mode: Normal Boot
    Option: SCAN | Executed from: C:\Program Files\Ad-remover\Ad-remover.bat
    Operating System: Microsoft® Windows Vista™ Home Premium Service Pack 1 (version 6.0.6001)
    Computer Name: PC-DE-MOI
    Current User: moi - Administrator
    Drive(s):
    - C:\ (File System: NTFS)
    System Drive: C:\
    Windows Directory: C:\Windows\
    System Directory: C:\Windows\System32\

    --- Running Processes: 78
    --- User Account Control is DISABLE

    +-----------------| Boonty/Boonty Games Elements Found:

    .
    0
  7. gen-hackman
     
    il n est pas complet s il te plait
    0
    1. seesaw Messages postés 351 Statut Membre 8
       
      excuse-moi,

      ouai, apparemment il a pas fini de chercher!
      désolé
      0
  8. seesaw Messages postés 351 Statut Membre 8
     
    ben, j'ai que ça
    0
  9. gen-hackman
     
    tu ne copies/colles pas tout le texte c est pas possible !! :)
    0
  10. gen-hackman
     
    :)
    0
    1. seesaw Messages postés 351 Statut Membre 8
       
      là, c'est bon, enfin je crois :
      voilà rapport :

      ------- LOGFILE OF AD-REMOVER 1.1.1.3 | ONLY XP/VISTA -------

      Updated by C_XX on 15/02/2009 at 10:20

      Start at: 23:25:31 | Mon 16/02/2009 | Boot mode: Normal Boot
      Option: SCAN | Executed from: C:\Program Files\Ad-remover\Ad-remover.bat
      Operating System: Microsoft® Windows Vista™ Home Premium Service Pack 1 (version 6.0.6001)
      Computer Name: PC-DE-MOI
      Current User: moi - Administrator
      Drive(s):
      - C:\ (File System: NTFS)
      System Drive: C:\
      Windows Directory: C:\Windows\
      System Directory: C:\Windows\System32\

      --- Running Processes: 78
      --- User Account Control is DISABLE

      +-----------------| Boonty/Boonty Games Elements Found:

      .

      ------- LOGFILE OF AD-REMOVER 1.1.1.3 | ONLY XP/VISTA -------

      Updated by C_XX on 15/02/2009 at 10:20

      Start at: 23:25:31 | Mon 16/02/2009 | Boot mode: Normal Boot
      Option: SCAN | Executed from: C:\Program Files\Ad-remover\Ad-remover.bat
      Operating System: Microsoft® Windows Vista™ Home Premium Service Pack 1 (version 6.0.6001)
      Computer Name: PC-DE-MOI
      Current User: moi - Administrator
      Drive(s):
      - C:\ (File System: NTFS)
      System Drive: C:\
      Windows Directory: C:\Windows\
      System Directory: C:\Windows\System32\

      --- Running Processes: 78
      --- User Account Control is DISABLE

      +-----------------| Boonty/Boonty Games Elements Found:

      .
      .

      +-----------------| Eorezo Elements Found:

      .

      +-----------------| Infected Poker Softwares Elements Found:

      HKCU\Software\Grand Virtual
      HKCU\Software\Poker 770
      HKLM\Software\Poker 770
      .
      C:\Windows\Prefetch\CSTART.EXE-697E371E.pf

      +-----------------| FunWebProducts/MyWay/MyWebSearch/MyGlobalSearch Elements Found:

      .
      .

      +-----------------| It's TV Elements Found:

      .

      +-----------------| Sweetim Elements Found:

      .

      +-----------------| Added Scan:

      ---- Mozilla FireFox Version 3.0.6 ----

      ProfilePath: wshfj6uk.default
      .
      Prefs.js: Browser.Search.DefaultEngineName: "Google"
      Prefs.js: Browser.Search.SelectedEngine: "Wikipédia (fr
      Prefs.js: Browser.Search.DefaultUrl: "hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q="
      .
      (Prefs.js) FOUND: user_pref("weboftrust.search.mahalo.style", "#content-container a ~ [ATTR=\"NAME\"] { background: url(IMAGE) right no-repeat; margin-left: 2px; margin-right: 5px; }");
      .
      .
      .
      .

      ---- Internet Explorer Version 7.0.6001.18000 ----

      +-[HKEY_CURRENT_USER\..\Internet Explorer\Main]

      Search bar: hxxp://www.google.com/ie
      Search Page: hxxp://www.google.com
      Start page: hxxp:blank

      +-[HKEY_USERS\S-1-5-21-4265469931-594389169-327207644-500\..\Internet Explorer\Main]


      +-[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]

      Default_Page_URL: hxxp://www.club-vaio.com
      Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
      Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
      Start page: hxxp:blank

      +-[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]

      Tabs: hxxp://ieframe.dll/tabswelcome.htm

      +---------------------------------------------------------------------------+

      [~2355 Bytes] - "C:\Ad-Report-Scan-16.02.2009.log"
      -

      End at: 23:52:27 | 16/02/2009
      .
      +-----------------| E.O.F - 59 Lines
      .
      0
    2. seesaw Messages postés 351 Statut Membre 8
       
      t'es plus là?
      0
    3. seesaw Messages postés 351 Statut Membre 8
       
      help,

      vraiment désolé d'insister mais j'ai posté mon rapport
      et je sais pas si tu m'as oublié
      ou si t'as du monde
      0
  11. seesaw Messages postés 351 Statut Membre 8
     
    simple question,

    c'est pas grave d'avoir désactivé le "paramètre sécurité internet"?
    pas de risque de virus?
    0
  12. gen-hackman
     
    si ton pc est bien protege normalement c est bon (en fait je n'y ai jamais touché a ca

    /!\ Déconnecte-toi et ferme toutes applications en cours /!\

    Double-clique sur AD-Remover pour le lancer : au menu principal, choisis l'option B.

    Choisis A

    Puis choisis S, le programme va travailler.

    Poste le rapport qui apparaît à la fin.

    (Le rapport est sauvegardé aussi sous C:\Ad-report.log)

    /!\ Si le Bureau ne réapparaît pas, presse Ctrl + Alt + Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide) /!\

    Note :

    "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
    Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
    Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...)


    0
    1. seesaw Messages postés 351 Statut Membre 8
       
      ok,

      je fais ça!
      merci
      0
    2. seesaw Messages postés 351 Statut Membre 8
       
      eh ben!

      tu vas dire je suis lourd!

      mais en fait je t'ai déjà posté le rapport!

      je te le reposte au cas où tu ne l'aurais pas vu! :)


      ------- LOGFILE OF AD-REMOVER 1.1.1.3 | ONLY XP/VISTA -------

      Updated by C_XX on 15/02/2009 at 10:20

      Start at: 23:25:31 | Mon 16/02/2009 | Boot mode: Normal Boot
      Option: SCAN | Executed from: C:\Program Files\Ad-remover\Ad-remover.bat
      Operating System: Microsoft® Windows Vista™ Home Premium Service Pack 1 (version 6.0.6001)
      Computer Name: PC-DE-MOI
      Current User: moi - Administrator
      Drive(s):
      - C:\ (File System: NTFS)
      System Drive: C:\
      Windows Directory: C:\Windows\
      System Directory: C:\Windows\System32\

      --- Running Processes: 78
      --- User Account Control is DISABLE

      +-----------------| Boonty/Boonty Games Elements Found:

      .

      ------- LOGFILE OF AD-REMOVER 1.1.1.3 | ONLY XP/VISTA -------

      Updated by C_XX on 15/02/2009 at 10:20

      Start at: 23:25:31 | Mon 16/02/2009 | Boot mode: Normal Boot
      Option: SCAN | Executed from: C:\Program Files\Ad-remover\Ad-remover.bat
      Operating System: Microsoft® Windows Vista™ Home Premium Service Pack 1 (version 6.0.6001)
      Computer Name: PC-DE-MOI
      Current User: moi - Administrator
      Drive(s):
      - C:\ (File System: NTFS)
      System Drive: C:\
      Windows Directory: C:\Windows\
      System Directory: C:\Windows\System32\

      --- Running Processes: 78
      --- User Account Control is DISABLE

      +-----------------| Boonty/Boonty Games Elements Found:

      .
      .

      +-----------------| Eorezo Elements Found:

      .

      +-----------------| Infected Poker Softwares Elements Found:

      HKCU\Software\Grand Virtual
      HKCU\Software\Poker 770
      HKLM\Software\Poker 770
      .
      C:\Windows\Prefetch\CSTART.EXE-697E371E.pf

      +-----------------| FunWebProducts/MyWay/MyWebSearch/MyGlobalSearch Elements Found:

      .
      .

      +-----------------| It's TV Elements Found:

      .

      +-----------------| Sweetim Elements Found:

      .

      +-----------------| Added Scan:

      ---- Mozilla FireFox Version 3.0.6 ----

      ProfilePath: wshfj6uk.default
      .
      Prefs.js: Browser.Search.DefaultEngineName: "Google"
      Prefs.js: Browser.Search.SelectedEngine: "Wikipédia (fr
      Prefs.js: Browser.Search.DefaultUrl: "hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q="
      .
      (Prefs.js) FOUND: user_pref("weboftrust.search.mahalo.style", "#content-container a ~ [ATTR=\"NAME\"] { background: url(IMAGE) right no-repeat; margin-left: 2px; margin-right: 5px; }");
      .
      .
      .
      .

      ---- Internet Explorer Version 7.0.6001.18000 ----

      +-[HKEY_CURRENT_USER\..\Internet Explorer\Main]

      Search bar: hxxp://www.google.com/ie
      Search Page: hxxp://www.google.com
      Start page: hxxp:blank

      +-[HKEY_USERS\S-1-5-21-4265469931-594389169-327207644-500\..\Internet Explorer\Main]


      +-[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]

      Default_Page_URL: hxxp://www.club-vaio.com
      Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
      Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
      Start page: hxxp:blank

      +-[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]

      Tabs: hxxp://ieframe.dll/tabswelcome.htm

      +---------------------------------------------------------------------------+

      [~2355 Bytes] - "C:\Ad-Report-Scan-16.02.2009.log"
      -

      End at: 23:52:27 | 16/02/2009
      .
      +-----------------| E.O.F - 59 Lines
      .
      0
  13. gen-hackman
     
    c est pas le bon rapport :)

    C:\Ad-report.log
    0
    1. seesaw Messages postés 351 Statut Membre 8
       
      ben,

      pourtant...
      je comprends pas là!
      c'est bien celui que j'ai trouvé dans le C:/
      0
  14. gen-hackman
     
    tu as suici pas a pas ????? B puis A puis S
    0
    1. seesaw Messages postés 351 Statut Membre 8
       
      bon,

      en fait, il y a eu un truc d'erreur à la fin de la recherche!

      c'est peut-être ça!

      je recommence la recherche donc
      0
  15. gen-hackman
     
    ton antivirus est active ?si oui desactive-le le temps des manips
    0
    1. seesaw Messages postés 351 Statut Membre 8
       
      me revoilà,

      je l'ai désactivé la deuxième fois et il a recommencé le problème!
      0
  16. gen-hackman
     
    ok bonjour :

    Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

    -> http://images.malwareremoval.com/random/RSIT.exe

    ! Déconnecte toi et ferme toutes tes applications en cours !

    Double-clique sur " RSIT.exe " pour le lancer .

    -> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .

    * Devant l'option "List files/folders created ..." , tu choisis : 2 months

    * clique ensuite sur " Continue " pour lancer l'analyse ...

    -> laisse faire le scan et ne touche pas au PC ...

    Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).

    Poste le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...

    Important : poste un rapport, puis l'autre dans la réponse suivante
    Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum

    ( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )

    0
  17. seesaw
     
    ok,

    merci encore malgré la difficulté!

    j'ai beau cliquer sur le lien que tu m'as donné (10/20 fois) mais la page ne peut pas s'ouvrir!!
    je crois que c'est le produit malware bytes antimalware!!

    je le télécharge!

    est-ce celui là?
    0
  18. gen-hackman
     
    ??????????????????????

    je ne comprends rien a ce que tu racontes pfffffffff!!!! arfff !!!

    essaie d etre clair : arrives-tu a telecharger le logiciel RSIT ou pas ?
    0
  19. seesaw Messages postés 351 Statut Membre 8
     
    ben
    pour tout te dire,
    au départ j'arrivais même pas à aller sur le site
    une page d'erreur s'affichait!

    bref! j'ai redémarré l'ordi et...
    je n'y arrive toujours pas!

    ça dure, ça dure....

    bref! je vais essayer avec internet explorer!
    0
  20. gen-hackman
     
    Télécharge DDS.scr de sUBs
    https://download.bleepingcomputer.com/sUBs/dds.scr
    Sur le bureau.
    L'outil ne nécessite pas d'installation.

    Lances-le en cliquant sur l'icône dds.scr

    Cette fenêtre DOS va apparaitre:
    https://i75.servimg.com/u/f75/11/05/93/83/ddsdos10.jpg

    Le scan ne doit pas dépasser trois minutes.
    Un premier rapport va s'ouvrir que tu enregistreras sous DDS.txt par défaut sur le bureau.
    Il te sera demandé si tu veux faire le scan optionnel.
    Accepte par Oui
    Un nouveau rapport s'ouvre que tu enregistres sous Attach.txt sur le bureau.
    Tu ne le fourniras que si nécessaire.
    Poste le rapport DDS.txt
    0
  21. seesaw Messages postés 351 Statut Membre 8
     
    MIRACLE!!!

    j'y suis arrivé pour le RSIT.exe!

    bon, voilà les deux fichiers log et info.txt :

    Logfile of random's system information tool 1.05 (written by random/random)
    Run by moi at 2009-02-17 11:32:48
    Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
    System drive C: has 150 GB (84%) free of 180 GB
    Total RAM: 2046 MB (53% free)

    HijackThis download failed

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
    Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
    IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll [2008-11-11 62728]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
    Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2008-12-04 92504]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
    Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-11-18 408952]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
    Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2007-11-02 2436160]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
    CBrowserHelperObject Object - C:\PROGRA~1\GOOGLE~1\BAE.dll [2006-06-23 98304]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
    Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-02-10 35840]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
    Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-11-02 2436160]
    {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
    "Apoint"=C:\Program Files\Apoint\Apoint.exe [2007-06-10 118784]
    "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-05-11 40048]
    "ISBMgr.exe"=C:\Program Files\Sony\ISB Utility\ISBMgr.exe [2007-09-19 311296]
    "Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2007-11-02 1838592]
    "MarketingTools"=C:\Program Files\Sony\Marketing Tools\MarketingTools.exe [2007-11-02 36864]
    "AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe [2009-02-06 206088]
    "HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-12-10 49152]
    "NvSvc"=C:\Windows\system32\nvsvc.dll [2007-10-30 86016]
    "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-10-30 8429568]
    "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-10-30 81920]
    "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-02-10 148888]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "Picasa Media Detector"=C:\Program Files\Picasa2\PicasaMediaDetector.exe [2007-09-12 443968]

    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    BTTray.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLS"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
    C:\Windows\system32\klogon.dll [2008-11-11 218376]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\VESWinlogon]
    C:\Windows\system32\VESWinlogon.dll [2007-08-14 98304]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "dontdisplaylastusername"=0
    "legalnoticecaption"=
    "legalnoticetext"=
    "shutdownwithoutlogon"=1
    "undockwithoutlogon"=1
    "EnableUIADesktopToggle"=0

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoDriveTypeAutoRun"=145

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoDriveTypeAutoRun"=

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    ======List of files/folders created in the last 2 months======

    2009-02-17 11:25:54 ----D---- C:\rsit
    2009-02-17 02:29:13 ----D---- C:\Users\moi\AppData\Roaming\Malwarebytes
    2009-02-17 02:29:06 ----D---- C:\ProgramData\Malwarebytes
    2009-02-16 23:23:13 ----D---- C:\Program Files\Ad-remover
    2009-02-16 23:03:23 ----D---- C:\Program Files\Trend Micro
    2009-02-15 12:38:27 ----A---- C:\Windows\system32\EncDec.dll
    2009-02-15 12:38:25 ----A---- C:\Windows\system32\psisdecd.dll
    2009-02-14 23:41:07 ----D---- C:\Users\moi\AppData\Roaming\skypePM
    2009-02-14 23:40:04 ----D---- C:\Users\moi\AppData\Roaming\Skype
    2009-02-14 23:39:52 ----RD---- C:\Program Files\Skype
    2009-02-14 23:39:52 ----D---- C:\Program Files\Common Files\Skype
    2009-02-12 17:32:30 ----D---- C:\ProgramData\FLEXnet
    2009-02-11 11:54:10 ----A---- C:\Windows\system32\mshtml.dll
    2009-02-11 11:54:09 ----A---- C:\Windows\system32\wininet.dll
    2009-02-11 11:54:09 ----A---- C:\Windows\system32\urlmon.dll
    2009-02-11 11:54:09 ----A---- C:\Windows\system32\ieframe.dll
    2009-02-11 11:54:08 ----A---- C:\Windows\system32\mstime.dll
    2009-02-11 11:54:08 ----A---- C:\Windows\system32\msfeeds.dll
    2009-02-11 11:54:08 ----A---- C:\Windows\system32\jsproxy.dll
    2009-02-11 11:54:08 ----A---- C:\Windows\system32\iertutil.dll
    2009-02-10 15:34:12 ----A---- C:\Windows\system32\javaws.exe
    2009-02-10 15:34:12 ----A---- C:\Windows\system32\javaw.exe
    2009-02-10 15:34:12 ----A---- C:\Windows\system32\java.exe
    2009-02-09 22:08:34 ----D---- C:\Program Files\Common Files\Scanner
    2009-02-09 22:08:29 ----D---- C:\Program Files\CA Yahoo! Anti-Spy
    2009-02-04 23:39:12 ----A---- C:\Windows\system32\pywintypes25.dll
    2009-02-04 23:39:12 ----A---- C:\Windows\system32\pythoncom25.dll
    2009-02-04 23:39:11 ----A---- C:\Windows\system32\python25.dll
    2009-02-04 23:37:54 ----D---- C:\Program Files\AGI
    2009-02-03 16:09:30 ----D---- C:\Poker
    2009-02-03 01:08:53 ----D---- C:\VAIO Entertainment
    2009-02-01 01:36:16 ----D---- C:\Users\moi\AppData\Roaming\ArcSoft
    2009-02-01 01:31:21 ----A---- C:\Windows\system32\PCDLIB32.DLL
    2009-02-01 01:31:16 ----A---- C:\Windows\system32\unicows.dll
    2009-02-01 01:31:16 ----A---- C:\Windows\system32\ArcSoftKsUFilter.dll
    2009-01-30 22:48:05 ----D---- C:\Program Files\Common Files\Macrovision Shared
    2009-01-30 12:10:36 ----A---- C:\Windows\system32\msshooks.dll
    2009-01-30 12:10:36 ----A---- C:\Windows\system32\msscb.dll
    2009-01-30 12:10:35 ----A---- C:\Windows\system32\SearchFilterHost.exe
    2009-01-30 12:10:35 ----A---- C:\Windows\system32\propdefs.dll
    2009-01-30 12:10:35 ----A---- C:\Windows\system32\mssitlb.dll
    2009-01-30 12:10:34 ----A---- C:\Windows\system32\thawbrkr.dll
    2009-01-30 12:10:34 ----A---- C:\Windows\system32\srchadmin.dll
    2009-01-30 12:10:34 ----A---- C:\Windows\system32\propsys.dll
    2009-01-30 12:10:34 ----A---- C:\Windows\system32\msstrc.dll
    2009-01-30 12:10:34 ----A---- C:\Windows\system32\mssprxy.dll
    2009-01-30 12:10:34 ----A---- C:\Windows\system32\msshsq.dll
    2009-01-30 12:10:34 ----A---- C:\Windows\system32\korwbrkr.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\xmlfilter.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\wsepno.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\tquery.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\SearchProtocolHost.exe
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\SearchIndexer.exe
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\rtffilt.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\offfilt.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\nlhtml.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\msscntrs.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\mimefilt.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\chtbrkr.dll
    2009-01-30 12:10:33 ----A---- C:\Windows\system32\chsbrkr.dll
    2009-01-30 12:10:32 ----A---- C:\Windows\system32\mssvp.dll
    2009-01-30 12:10:32 ----A---- C:\Windows\system32\mssrch.dll
    2009-01-30 12:10:32 ----A---- C:\Windows\system32\mssphtb.dll
    2009-01-30 12:10:32 ----A---- C:\Windows\system32\mssph.dll
    2009-01-30 11:58:15 ----A---- C:\Windows\system32\infocardapi.dll
    2009-01-30 11:58:14 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
    2009-01-30 11:58:12 ----A---- C:\Windows\system32\PresentationHostProxy.dll
    2009-01-30 11:58:12 ----A---- C:\Windows\system32\icardres.dll
    2009-01-30 11:58:12 ----A---- C:\Windows\system32\icardagt.exe
    2009-01-30 11:58:09 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
    2009-01-30 11:58:06 ----A---- C:\Windows\system32\PresentationHost.exe
    2009-01-30 11:53:25 ----A---- C:\Windows\system32\dfshim.dll
    2009-01-30 11:53:22 ----A---- C:\Windows\system32\mscoree.dll
    2009-01-30 11:53:21 ----A---- C:\Windows\system32\netfxperf.dll
    2009-01-30 11:53:08 ----A---- C:\Windows\system32\mscorier.dll
    2009-01-30 11:53:03 ----A---- C:\Windows\system32\mscories.dll
    2009-01-30 04:07:18 ----A---- C:\Windows\system32\emdmgmt.dll
    2009-01-30 04:07:18 ----A---- C:\Windows\system32\dataclen.dll
    2009-01-30 04:07:18 ----A---- C:\Windows\system32\cdd.dll
    2009-01-30 04:07:17 ----A---- C:\Windows\system32\wersvc.dll
    2009-01-30 04:07:17 ----A---- C:\Windows\system32\Faultrep.dll
    2009-01-30 04:07:16 ----A---- C:\Windows\system32\rpcrt4.dll
    2009-01-30 04:07:15 ----A---- C:\Windows\system32\pacerprf.dll
    2009-01-30 04:07:14 ----A---- C:\Windows\system32\wshext.dll
    2009-01-30 04:07:14 ----A---- C:\Windows\system32\wscript.exe
    2009-01-30 04:07:14 ----A---- C:\Windows\system32\vbscript.dll
    2009-01-30 04:07:14 ----A---- C:\Windows\system32\scrrun.dll
    2009-01-30 04:07:14 ----A---- C:\Windows\system32\scrobj.dll
    2009-01-30 04:07:14 ----A---- C:\Windows\system32\jscript.dll
    2009-01-30 04:07:14 ----A---- C:\Windows\system32\cscript.exe
    2009-01-29 22:48:28 ----D---- C:\PerfLogs
    2009-01-29 15:00:20 ----D---- C:\ProgramData\HP Product Assistant
    2009-01-29 14:55:24 ----D---- C:\Program Files\Common Files\HP
    2009-01-29 13:18:20 ----D---- C:\Users\moi\AppData\Roaming\Printer Info Cache
    2009-01-29 13:18:20 ----D---- C:\Users\moi\AppData\Roaming\Image Zone Express
    2009-01-29 13:04:56 ----D---- C:\ProgramData\WEBREG
    2009-01-29 13:04:42 ----D---- C:\Users\moi\AppData\Roaming\HP
    2009-01-29 13:04:10 ----D---- C:\ProgramData\HPSSUPPLY
    2009-01-29 12:58:29 ----D---- C:\ProgramData\Hewlett-Packard
    2009-01-29 12:42:26 ----A---- C:\Windows\system32\hpz3l4v2.dll
    2009-01-29 12:41:44 ----HD---- C:\Config.Msi
    2009-01-29 12:41:00 ----A---- C:\Windows\system32\hpzids01.dll
    2009-01-29 12:24:24 ----D---- C:\Program Files\HP
    2009-01-29 12:21:01 ----D---- C:\ProgramData\HP
    2009-01-28 23:02:01 ----A---- C:\Windows\system32\SLsvc.exe
    2009-01-28 23:02:01 ----A---- C:\Windows\system32\onex.dll
    2009-01-28 23:01:49 ----A---- C:\Windows\system32\PSHED.DLL
    2009-01-28 23:01:48 ----A---- C:\Windows\system32\imagesp1.dll
    2009-01-28 23:01:46 ----A---- C:\Windows\system32\dfsr.exe
    2009-01-28 23:01:45 ----A---- C:\Windows\system32\pidgenx.dll
    2009-01-28 23:01:44 ----A---- C:\Windows\system32\sstpsvc.dll
    2009-01-28 23:01:44 ----A---- C:\Windows\system32\mstscax.dll
    2009-01-28 23:01:43 ----A---- C:\Windows\system32\WsmSvc.dll
    2009-01-28 23:01:43 ----A---- C:\Windows\system32\winrscmd.dll
    2009-01-28 23:01:42 ----A---- C:\Windows\system32\sysmain.dll
    2009-01-28 23:01:42 ----A---- C:\Windows\system32\RMActivate.exe
    2009-01-28 23:01:41 ----A---- C:\Windows\system32\VSSVC.exe
    2009-01-28 23:01:41 ----A---- C:\Windows\system32\vssapi.dll
    2009-01-28 23:01:40 ----A---- C:\Windows\system32\secproc.dll
    2009-01-28 23:01:40 ----A---- C:\Windows\system32\RMActivate_isv.exe
    2009-01-28 23:01:40 ----A---- C:\Windows\system32\iesetup.dll
    2009-01-28 23:01:38 ----A---- C:\Windows\system32\secproc_isv.dll
    2009-01-28 23:01:35 ----A---- C:\Windows\system32\drmv2clt.dll
    2009-01-28 23:01:35 ----A---- C:\Windows\system32\blackbox.dll
    2009-01-28 23:01:34 ----A---- C:\Windows\system32\xpssvcs.dll
    2009-01-28 23:01:33 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
    2009-01-28 23:01:33 ----A---- C:\Windows\system32\RMActivate_ssp.exe
    2009-01-28 23:01:33 ----A---- C:\Windows\system32\RacEngn.dll
    2009-01-28 23:01:33 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
    2009-01-28 23:01:32 ----A---- C:\Windows\system32\spwizimg.dll
    2009-01-28 23:01:32 ----A---- C:\Windows\system32\rdpencom.dll
    2009-01-28 23:01:31 ----A---- C:\Windows\system32\lpremove.exe
    2009-01-28 23:01:31 ----A---- C:\Windows\bfsvc.exe
    2009-01-28 23:01:30 ----A---- C:\Windows\system32\ntdll.dll
    2009-01-28 23:01:30 ----A---- C:\Windows\system32\msjet40.dll
    2009-01-28 23:01:29 ----A---- C:\Windows\system32\qmgr.dll
    2009-01-28 23:01:29 ----A---- C:\Windows\system32\lsasrv.dll
    2009-01-28 23:01:29 ----A---- C:\Windows\system32\localspl.dll
    2009-01-28 23:01:29 ----A---- C:\Windows\system32\IKEEXT.DLL
    2009-01-28 23:01:28 ----A---- C:\Windows\system32\wevtsvc.dll
    2009-01-28 23:01:28 ----A---- C:\Windows\system32\wcncsvc.dll
    2009-01-28 23:01:28 ----A---- C:\Windows\system32\TsWpfWrp.exe
    2009-01-28 23:01:28 ----A---- C:\Windows\system32\recdisc.exe
    2009-01-28 23:01:28 ----A---- C:\Windows\system32\kernel32.dll
    2009-01-28 23:01:27 ----A---- C:\Windows\system32\vds.exe
    2009-01-28 23:01:27 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
    2009-01-28 23:01:26 ----A---- C:\Windows\system32\wmp.dll
    2009-01-28 23:01:25 ----A---- C:\Windows\system32\wcnwiz.dll
    2009-01-28 23:01:25 ----A---- C:\Windows\system32\SMBHelperClass.dll
    2009-01-28 23:01:25 ----A---- C:\Windows\system32\msvbvm60.dll
    2009-01-28 23:01:25 ----A---- C:\Windows\system32\mstsc.exe
    2009-01-28 23:01:24 ----A---- C:\Windows\system32\termsrv.dll
    2009-01-28 23:01:24 ----A---- C:\Windows\system32\msdtctm.dll
    2009-01-28 23:01:23 ----A---- C:\Windows\system32\kerberos.dll
    2009-01-28 23:01:23 ----A---- C:\Windows\system32\IMJP10K.DLL
    2009-01-28 23:01:23 ----A---- C:\Windows\system32\advapi32.dll
    2009-01-28 23:01:22 ----A---- C:\Windows\system32\MSMPEG2ADEC.DLL
    2009-01-28 23:01:22 ----A---- C:\Windows\system32\mmcndmgr.dll
    2009-01-28 23:01:22 ----A---- C:\Windows\system32\CertEnroll.dll
    2009-01-28 23:01:21 ----A---- C:\Windows\system32\xolehlp.dll
    2009-01-28 23:01:21 ----A---- C:\Windows\system32\Query.dll
    2009-01-28 23:01:21 ----A---- C:\Windows\system32\ole32.dll
    2009-01-28 23:01:21 ----A---- C:\Windows\system32\msdtcprx.dll
    2009-01-28 23:01:21 ----A---- C:\Windows\system32\MPSSVC.dll
    2009-01-28 23:01:20 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
    2009-01-28 23:01:20 ----A---- C:\Windows\system32\netlogon.dll
    2009-01-28 23:01:20 ----A---- C:\Windows\system32\msvcrt.dll
    2009-01-28 23:01:19 ----A---- C:\Windows\system32\SSShim.dll
    2009-01-28 23:01:19 ----A---- C:\Windows\system32\schedsvc.dll
    2009-01-28 23:01:19 ----A---- C:\Windows\system32\nlmgp.dll
    2009-01-28 23:01:19 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
    2009-01-28 23:01:19 ----A---- C:\Windows\system32\IasMigPlugin.dll
    2009-01-28 23:01:19 ----A---- C:\Windows\system32\DfsShlEx.dll
    2009-01-28 23:01:18 ----A---- C:\Windows\system32\wer.dll
    2009-01-28 23:01:18 ----A---- C:\Windows\system32\user32.dll
    2009-01-28 23:01:18 ----A---- C:\Windows\system32\shlwapi.dll
    2009-01-28 23:01:18 ----A---- C:\Windows\system32\sdclt.exe
    2009-01-28 23:01:18 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
    2009-01-28 23:01:18 ----A---- C:\Windows\system32\milcore.dll
    2009-01-28 23:01:18 ----A---- C:\Windows\system32\clusapi.dll
    2009-01-28 23:01:17 ----A---- C:\Windows\system32\WSDApi.dll
    2009-01-28 23:01:17 ----A---- C:\Windows\system32\vdsdyn.dll
    2009-01-28 23:01:17 ----A---- C:\Windows\system32\QAGENTRT.DLL
    2009-01-28 23:01:17 ----A---- C:\Windows\system32\diagperf.dll
    2009-01-28 23:01:17 ----A---- C:\Windows\system32\d3d9.dll
    2009-01-28 23:01:16 ----A---- C:\Windows\system32\winrsmgr.dll
    2009-01-28 23:01:16 ----A---- C:\Windows\system32\mtxclu.dll
    2009-01-28 23:01:16 ----A---- C:\Windows\system32\mmc.exe
    2009-01-28 23:01:15 ----A---- C:\Windows\system32\vdsbas.dll
    2009-01-28 23:01:15 ----A---- C:\Windows\system32\swprv.dll
    2009-01-28 23:01:15 ----A---- C:\Windows\system32\SLC.dll
    2009-01-28 23:01:15 ----A---- C:\Windows\system32\msi.dll
    2009-01-28 23:01:15 ----A---- C:\Windows\system32\comctl32.dll
    2009-01-28 23:01:14 ----A---- C:\Windows\system32\MSVidCtl.dll
    2009-01-28 23:01:14 ----A---- C:\Windows\system32\msdtckrm.dll
    2009-01-28 23:01:14 ----A---- C:\Windows\system32\gpsvc.dll
    2009-01-28 23:01:13 ----A---- C:\Windows\system32\XPSSHHDR.dll
    2009-01-28 23:01:13 ----A---- C:\Windows\system32\sbe.dll
    2009-01-28 23:01:13 ----A---- C:\Windows\system32\samsrv.dll
    2009-01-28 23:01:13 ----A---- C:\Windows\system32\mfc42u.dll
    2009-01-28 23:01:13 ----A---- C:\Windows\system32\FWPUCLNT.DLL
    2009-01-28 23:01:13 ----A---- C:\Windows\system32\esent.dll
    2009-01-28 23:01:12 ----A---- C:\Windows\system32\wecutil.exe
    2009-01-28 23:01:12 ----A---- C:\Windows\system32\usp10.dll
    2009-01-28 23:01:12 ----A---- C:\Windows\system32\sdengin2.dll
    2009-01-28 23:01:12 ----A---- C:\Windows\system32\gacinstall.dll
    2009-01-28 23:01:12 ----A---- C:\Windows\system32\cmipnpinstall.dll
    2009-01-28 23:01:12 ----A---- C:\Windows\system32\cmicryptinstall.dll
    2009-01-28 23:01:11 ----A---- C:\Windows\system32\mfc42.dll
    2009-01-28 23:01:10 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
    2009-01-28 23:01:10 ----A---- C:\Windows\system32\crypt32.dll
    2009-01-28 23:01:10 ----A---- C:\Windows\system32\comsvcs.dll
    2009-01-28 23:01:09 ----A---- C:\Windows\system32\mswsock.dll
    2009-01-28 23:01:09 ----A---- C:\Windows\system32\certutil.exe
    2009-01-28 23:01:07 ----A---- C:\Windows\system32\wmdrmsdk.dll
    2009-01-28 23:01:07 ----A---- C:\Windows\system32\oleaut32.dll
    2009-01-28 23:01:07 ----A---- C:\Windows\system32\FirewallAPI.dll
    2009-01-28 23:01:06 ----A---- C:\Windows\system32\wecsvc.dll
    2009-01-28 23:01:06 ----A---- C:\Windows\system32\sqlceqp30.dll
    2009-01-28 23:01:06 ----A---- C:\Windows\system32\setupapi.dll
    2009-01-28 23:01:06 ----A---- C:\Windows\system32\lsm.exe
    2009-01-28 23:01:06 ----A---- C:\Windows\system32\bcrypt.dll
    2009-01-28 23:01:05 ----A---- C:\Windows\system32\sdohlp.dll
    2009-01-28 23:01:05 ----A---- C:\Windows\system32\schannel.dll
    2009-01-28 23:01:05 ----A---- C:\Windows\system32\msv1_0.dll
    2009-01-28 23:01:05 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
    2009-01-28 23:01:04 ----A---- C:\Windows\system32\wmpmde.dll
    2009-01-28 23:01:04 ----A---- C:\Windows\system32\thumbcache.dll
    2009-01-28 23:01:04 ----A---- C:\Windows\system32\p2psvc.dll
    2009-01-28 23:01:04 ----A---- C:\Windows\system32\mcmde.dll
    2009-01-28 23:01:04 ----A---- C:\Windows\system32\iphlpsvc.dll
    2009-01-28 23:01:04 ----A---- C:\Windows\system32\eapp3hst.dll
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\WinSAT.exe
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\vdsutil.dll
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\riched20.dll
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\imapi2fs.dll
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\d3d10_1.dll
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\autofmt.exe
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\autoconv.exe
    2009-01-28 23:01:03 ----A---- C:\Windows\system32\autochk.exe
    2009-01-28 23:01:02 ----A---- C:\Windows\system32\browseui.dll
    2009-01-28 23:01:02 ----A---- C:\Windows\system32\authui.dll
    2009-01-28 23:01:02 ----A---- C:\Windows\system32\authfwcfg.dll
    2009-01-28 23:01:01 ----A---- C:\Windows\system32\wevtapi.dll
    2009-01-28 23:01:01 ----A---- C:\Windows\system32\dmvdsitf.dll
    2009-01-28 23:01:01 ----A---- C:\Windows\system32\d3d10_1core.dll
    2009-01-28 23:01:01 ----A---- C:\Windows\system32\comuid.dll
    2009-01-28 23:01:01 ----A---- C:\Windows\system32\comdlg32.dll
    2009-01-28 23:01:00 ----A---- C:\Windows\system32\WSDMon.dll
    2009-01-28 23:01:00 ----A---- C:\Windows\system32\wevtfwd.dll
    2009-01-28 23:01:00 ----A---- C:\Windows\system32\uexfat.dll
    2009-01-28 23:01:00 ----A---- C:\Windows\system32\rasmans.dll
    2009-01-28 23:01:00 ----A---- C:\Windows\system32\eapphost.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\wlansvc.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\whealogr.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\untfs.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\sqlcese30.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\pcaui.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\iassam.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\eappcfg.dll
    2009-01-28 23:00:59 ----A---- C:\Windows\system32\DfrgNtfs.exe
    2009-01-28 23:00:58 ----A---- C:\Windows\system32\dot3svc.dll
    2009-01-28 23:00:56 ----A---- C:\Windows\system32\winhttp.dll
    2009-01-28 23:00:56 ----A---- C:\Windows\system32\rdpwsx.dll
    2009-01-28 23:00:56 ----A---- C:\Windows\system32\mssha.dll
    2009-01-28 23:00:56 ----A---- C:\Windows\system32\msdrm.dll
    2009-01-28 23:00:55 ----A---- C:\Windows\system32\zipfldr.dll
    2009-01-28 23:00:55 ----A---- C:\Windows\system32\WsmAuto.dll
    2009-01-28 23:00:55 ----A---- C:\Windows\system32\rpcss.dll
    2009-01-28 23:00:55 ----A---- C:\Windows\system32\nlasvc.dll
    2009-01-28 23:00:55 ----A---- C:\Windows\system32\evr.dll
    2009-01-28 23:00:55 ----A---- C:\Windows\system32\dfrgui.exe
    2009-01-28 23:00:54 ----A---- C:\Windows\system32\rasppp.dll
    2009-01-28 23:00:54 ----A---- C:\Windows\system32\ncrypt.dll
    2009-01-28 23:00:54 ----A---- C:\Windows\system32\BFE.DLL
    2009-01-28 23:00:53 ----A---- C:\Windows\system32\wmdrmdev.dll
    2009-01-28 23:00:53 ----A---- C:\Windows\system32\msrepl40.dll
    2009-01-28 23:00:53 ----A---- C:\Windows\system32\ddraw.dll
    2009-01-28 23:00:53 ----A---- C:\Windows\system32\audiosrv.dll
    2009-01-28 23:00:52 ----A---- C:\Windows\system32\WsmWmiPl.dll
    2009-01-28 23:00:52 ----A---- C:\Windows\system32\WebClnt.dll
    2009-01-28 23:00:52 ----A---- C:\Windows\system32\themecpl.dll
    2009-01-28 23:00:52 ----A---- C:\Windows\system32\rastls.dll
    2009-01-28 23:00:52 ----A---- C:\Windows\system32\printui.dll
    2009-01-28 23:00:52 ----A---- C:\Windows\system32\objsel.dll
    2009-01-28 23:00:52 ----A---- C:\Windows\system32\dhcpcsvc6.dll
    2009-01-28 23:00:51 ----A---- C:\Windows\system32\QAGENT.DLL
    2009-01-28 23:00:51 ----A---- C:\Windows\system32\iasnap.dll
    2009-01-28 23:00:51 ----A---- C:\Windows\system32\dbghelp.dll
    2009-01-28 23:00:50 ----A---- C:\Windows\system32\w32time.dll
    2009-01-28 23:00:50 ----A---- C:\Windows\system32\sqlsrv32.dll
    2009-01-28 23:00:49 ----A---- C:\Windows\system32\wmdrmnet.dll
    2009-01-28 23:00:49 ----A---- C:\Windows\system32\WerFaultSecure.exe
    2009-01-28 23:00:49 ----A---- C:\Windows\system32\ncryptui.dll
    2009-01-28 23:00:49 ----A---- C:\Windows\system32\icm32.dll
    2009-01-28 23:00:49 ----A---- C:\Windows\system32\azroles.dll
    2009-01-28 23:00:48 ----A---- C:\Windows\system32\spoolss.dll
    2009-01-28 23:00:48 ----A---- C:\Windows\system32\iprtrmgr.dll
    2009-01-28 23:00:47 ----A---- C:\Windows\system32\wlangpui.dll
    2009-01-28 23:00:47 ----A---- C:\Windows\system32\winsrv.dll
    2009-01-28 23:00:47 ----A---- C:\Windows\system32\taskschd.dll
    2009-01-28 23:00:47 ----A---- C:\Windows\system32\msctf.dll
    2009-01-28 23:00:47 ----A---- C:\Windows\system32\bcdedit.exe
    2009-01-28 23:00:47 ----A---- C:\Windows\system32\basecsp.dll
    2009-01-28 23:00:46 ----A---- C:\Windows\system32\scksp.dll
    2009-01-28 23:00:46 ----A---- C:\Windows\system32\mstlsapi.dll
    2009-01-28 23:00:46 ----A---- C:\Windows\system32\AudioEng.dll
    2009-01-28 23:00:45 ----A---- C:\Windows\system32\winsta.dll
    2009-01-28 23:00:45 ----A---- C:\Windows\system32\netprofm.dll
    2009-01-28 23:00:45 ----A---- C:\Windows\system32\hcrstco.dll
    2009-01-28 23:00:45 ----A---- C:\Windows\system32\dbgeng.dll
    2009-01-28 23:00:44 ----A---- C:\Windows\system32\netcfgx.dll
    2009-01-28 23:00:43 ----A---- C:\Windows\system32\rsaenh.dll
    2009-01-28 23:00:40 ----A---- C:\Windows\system32\winlogon.exe
    2009-01-28 23:00:40 ----A---- C:\Windows\system32\taskcomp.dll
    2009-01-28 23:00:40 ----A---- C:\Windows\system32\cdosys.dll
    2009-01-28 23:00:39 ----A---- C:\Windows\system32\wercon.exe
    2009-01-28 23:00:39 ----A---- C:\Windows\system32\lpksetup.exe
    2009-01-28 23:00:38 ----A---- C:\Windows\system32\wlansec.dll
    2009-01-28 23:00:38 ----A---- C:\Windows\system32\msdtcuiu.dll
    2009-01-28 23:00:38 ----A---- C:\Windows\system32\certcli.dll
    2009-01-28 23:00:38 ----A---- C:\Windows\system32\apds.dll
    2009-01-28 23:00:37 ----A---- C:\Windows\system32\mprddm.dll
    2009-01-28 23:00:37 ----A---- C:\Windows\system32\iasrad.dll
    2009-01-28 23:00:36 ----A---- C:\Windows\system32\tsgqec.dll
    2009-01-28 23:00:36 ----A---- C:\Windows\system32\shdocvw.dll
    2009-01-28 23:00:36 ----A---- C:\Windows\system32\eapsvc.dll
    2009-01-28 23:00:36 ----A---- C:\Windows\system32\certmgr.dll
    2009-01-28 23:00:36 ----A---- C:\Windows\system32\bcdsrv.dll
    2009-01-28 23:00:36 ----A---- C:\Windows\system32\AUDIOKSE.dll
    2009-01-28 23:00:36 ----A---- C:\Windows\system32\aaclient.dll
    2009-01-28 23:00:35 ----A---- C:\Windows\system32\Wldap32.dll
    2009-01-28 23:00:35 ----A---- C:\Windows\system32\umpnpmgr.dll
    2009-01-28 23:00:35 ----A---- C:\Windows\system32\uDWM.dll
    2009-01-28 23:00:35 ----A---- C:\Windows\system32\msidcrl30.dll
    2009-01-28 23:00:35 ----A---- C:\Windows\system32\dnsapi.dll
    2009-01-28 23:00:34 ----A---- C:\Windows\system32\WMVDECOD.DLL
    2009-01-28 23:00:34 ----A---- C:\Windows\system32\pla.dll
    2009-01-28 23:00:33 ----A---- C:\Windows\system32\netshell.dll
    2009-01-28 23:00:33 ----A---- C:\Windows\system32\dxgi.dll
    2009-01-28 23:00:33 ----A---- C:\Windows\system32\dot3gpui.dll
    2009-01-28 23:00:32 ----A---- C:\Windows\system32\wmicmiplugin.dll
    2009-01-28 23:00:32 ----A---- C:\Windows\system32\shsvcs.dll
    2009-01-28 23:00:32 ----A---- C:\Windows\system32\ntprint.dll
    2009-01-28 23:00:32 ----A---- C:\Windows\system32\MMDevAPI.dll
    2009-01-28 23:00:32 ----A---- C:\Windows\system32\cryptnet.dll
    2009-01-28 23:00:32 ----A---- C:\Windows\system32\comsnap.dll
    2009-01-28 23:00:31 ----A---- C:\Windows\system32\wscsvc.dll
    2009-01-28 23:00:31 ----A---- C:\Windows\system32\wscisvif.dll
    2009-01-28 23:00:31 ----A---- C:\Windows\system32\winmm.dll
    2009-01-28 23:00:31 ----A---- C:\Windows\system32\synceng.dll
    2009-01-28 23:00:31 ----A---- C:\Windows\system32\services.exe
    2009-01-28 23:00:31 ----A---- C:\Windows\system32\pnidui.dll
    2009-01-28 23:00:31 ----A---- C:\Windows\system32\cmifw.dll
    2009-01-28 23:00:30 ----A---- C:\Windows\system32\taskeng.exe
    2009-01-28 23:00:30 ----A---- C:\Windows\system32\msconfig.exe
    2009-01-28 23:00:30 ----A---- C:\Windows\system32\iassdo.dll
    2009-01-28 23:00:30 ----A---- C:\Windows\system32\cipher.exe
    2009-01-28 23:00:29 ----A---- C:\Windows\system32\WMVSDECD.DLL
    2009-01-28 23:00:29 ----A---- C:\Windows\system32\msjtes40.dll
    2009-01-28 23:00:28 ----A---- C:\Windows\system32\tdh.dll
    2009-01-28 23:00:28 ----A---- C:\Windows\system32\rasapi32.dll
    2009-01-28 23:00:28 ----A---- C:\Windows\system32\imapi2.dll
    2009-01-28 23:00:27 ----A---- C:\Windows\system32\uxtheme.dll
    2009-01-28 23:00:27 ----A---- C:\Windows\system32\SessEnv.dll
    2009-01-28 23:00:27 ----A---- C:\Windows\system32\dot3api.dll
    2009-01-28 23:00:27 ----A---- C:\Windows\system32\dmdskmgr.dll
    2009-01-28 23:00:26 ----A---- C:\Windows\system32\wkssvc.dll
    2009-01-28 23:00:26 ----A---- C:\Windows\system32\wevtutil.exe
    2009-01-28 23:00:26 ----A---- C:\Windows\system32\qdvd.dll
    2009-01-28 23:00:26 ----A---- C:\Windows\system32\msscp.dll
    2009-01-28 23:00:26 ----A---- C:\Windows\system32\cmd.exe
    2009-01-28 23:00:26 ----A---- C:\Windows\system32\cbsra.exe
    2009-01-28 23:00:26 ----A---- C:\Windows\system32\AuthFWSnapin.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\WUDFx.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\wlanmsm.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\wlancfg.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\srvsvc.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\rpchttp.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\rdpdd.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\mshtmled.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\msdtcVSp1res.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\localsec.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\loadperf.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\fontext.dll
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\diskpart.exe
    2009-01-28 23:00:25 ----A---- C:\Windows\system32\comres.dll
    2009-01-28 23:00:24 ----A---- C:\Windows\system32\wlanapi.dll
    2009-01-28 23:00:24 ----A---- C:\Windows\system32\WinSATAPI.dll
    2009-01-28 23:00:24 ----A---- C:\Windows\system32\hnetcfg.dll
    2009-01-28 23:00:24 ----A---- C:\Windows\system32\dsound.dll
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\wsqmcons.exe
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\WMADMOD.DLL
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\wlanpref.dll
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\RDPENCDD.dll
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\profprov.dll
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\NAPMONTR.DLL
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\filemgmt.dll
    2009-01-28 23:00:23 ----A---- C:\Windows\system32\avifil32.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\wsecedit.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\tracerpt.exe
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\SLCommDlg.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\P2PGraph.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\MuiUnattend.exe
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\dwmredir.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\dnsrslvr.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\dhcpcsvc.dll
    2009-01-28 23:00:22 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
    2009-01-28 23:00:21 ----A---- C:\Windows\system32\WMSPDMOD.DLL
    2009-01-28 23:00:21 ----A---- C:\Windows\system32\wininit.exe
    2009-01-28 23:00:21 ----A---- C:\Windows\system32\QSHVHOST.DLL
    2009-01-28 23:00:21 ----A---- C:\Windows\system32\iassvcs.dll
    2009-01-28 23:00:21 ----A---- C:\Windows\system32\gpresult.exe
    2009-01-28 23:00:21 ----A---- C:\Windows\system32\dwm.exe
    2009-01-28 23:00:21 ----A---- C:\Windows\system32\apphelp.dll
    2009-01-28 23:00:20 ----A---- C:\Windows\system32\spp.dll
    2009-01-28 23:00:20 ----A---- C:\Windows\system32\rasdlg.dll
    2009-01-28 23:00:20 ----A---- C:\Windows\system32\iashost.exe
    2009-01-28 23:00:20 ----A---- C:\Windows\system32\azroleui.dll
    2009-01-28 23:00:20 ----A---- C:\Windows\HelpPane.exe
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\wecapi.dll
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\unbcl.dll
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\tcpmon.dll
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\srrstr.dll
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\spwizeng.dll
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\SLUI.exe
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\rasmontr.dll
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\msra.exe
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\mcbuilder.exe
    2009-01-28 23:00:19 ----A---- C:\Windows\system32\lltdsvc.dll
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\WMPEncEn.dll
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\shrink.dll
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\oleacc.dll
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\msdri.dll
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\IPHLPAPI.DLL
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\iashlpr.dll
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\gpedit.dll
    2009-01-28 23:00:18 ----A---- C:\Windows\system32\brcpl.dll
    2009-01-28 23:00:17 ----A---- C:\Windows\system32\regsvc.dll
    2009-01-28 23:00:17 ----A---- C:\Windows\system32\raschap.dll
    2009-01-28 23:00:17 ----A---- C:\Windows\system32\framedynos.dll
    2009-01-28 23:00:17 ----A---- C:\Windows\system32\fdWSD.dll
    2009-01-28 23:00:17 ----A---- C:\Windows\system32\advpack.dll
    2009-01-28 23:00:16 ----A---- C:\Windows\system32\wdc.dll
    2009-01-28 23:00:16 ----A---- C:\Windows\system32\vsstrace.dll
    2009-01-28 23:00:16 ----A---- C:\Windows\system32\PerfCenterCPL.dll
    2009-01-28 23:00:16 ----A---- C:\Windows\system32\ntvdm.exe
    2009-01-28 23:00:16 ----A---- C:\Windows\system32\ntlanman.dll
    2009-01-28 23:00:16 ----A---- C:\Windows\system32\ipsmsnap.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\wpdshext.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\Storprop.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\NetProjW.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\netman.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\l2nacp.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\iedkcs32.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\ieapfltr.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\framedyn.dll
    2009-01-28 23:00:15 ----A---- C:\Windows\system32\dssenh.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\WsmProv.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\WlanMM.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\wlanhlp.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\WLanConn.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\tcpipcfg.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\sxs.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\profsvc.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\KMSVC.DLL
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\IPBusEnum.dll
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\certreq.exe
    2009-01-28 23:00:14 ----A---- C:\Windows\system32\adsnt.dll
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\wusa.exe
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\WUDFHost.exe
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\WerFault.exe
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\VAN.dll
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\userenv.dll
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\umb.dll
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\ncsi.dll
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\ie4uinit.exe
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\fundisc.dll
    2009-01-28 23:00:13 ----A---- C:\Windows\system32\catsrvut.dll
    2009-01-28 23:00:12 ----A---- C:\Windows\system32\puiobj.dll
    2009-01-28 23:00:12 ----A---- C:\Windows\system32\photowiz.dll
    2009-01-28 23:00:12 ----A---- C:\Windows\system32\netid.dll
    2009-01-28 23:00:12 ----A---- C:\Windows\system32\MdSched.exe
    2009-01-28 23:00:12 ----A---- C:\Windows\system32\InkEd.dll
    2009-01-28 23:00:12 ----A---- C:\Windows\system32\dps.dll
    2009-01-28 23:00:12 ----A---- C:\Windows\system32\cryptui.dll
    2009-01-28 23:00:11 ----A---- C:\Windows\system32\ws2_32.dll
    2009-01-28 23:00:11 ----A---- C:\Windows\system32\WinSCard.dll
    2009-01-28 23:00:11 ----A---- C:\Windows\system32\spbcd.dll
    2009-01-28 23:00:11 ----A---- C:\Windows\system32\netcenter.dll
    2009-01-28 23:00:11 ----A---- C:\Windows\system32\ipsecsnp.dll
    2009-01-28 23:00:10 ----A---- C:\Windows\system32\winrs.exe
    2009-01-28 23:00:10 ----A---- C:\Windows\system32\secur32.dll
    2009-01-28 23:00:10 ----A---- C:\Windows\system32\prnntfy.dll
    2009-01-28 23:00:10 ----A---- C:\Windows\system32\odbcjt32.dll
    2009-01-28 23:00:10 ----A---- C:\Windows\system32\ntdsapi.dll
    2009-01-28 23:00:10 ----A---- C:\Windows\system32\NAPSTAT.EXE
    2009-01-28 23:00:10 ----A---- C:\Windows\system32\msinfo32.exe
    2009-01-28 23:00:09 ----A---- C:\Windows\system32\schtasks.exe
    2009-01-28 23:00:09 ----A---- C:\Windows\system32\RelMon.dll
    2009-01-28 23:00:09 ----A---- C:\Windows\system32\mblctr.exe
    2009-01-28 23:00:09 ----A---- C:\Windows\system32\iasacct.dll
    2009-01-28 23:00:09 ----A---- C:\Windows\system32\dmdlgs.dll
    2009-01-28 23:00:09 ----A---- C:\Windows\system32\cryptsvc.dll
    2009-01-28 23:00:09 ----A---- C:\Windows\system32\activeds.dll
    2009-01-28 23:00:08 ----A---- C:\Windows\system32\TSpkg.dll
    2009-01-28 23:00:08 ----A---- C:\Windows\system32\pdh.dll
    2009-01-28 23:00:08 ----A---- C:\Windows\system32\netdiagfx.dll
    2009-01-28 23:00:08 ----A---- C:\Windows\system32\FirewallControlPanel.exe
    2009-01-28 23:00:08 ----A---- C:\Windows\system32\dhcpsapi.dll
    2009-01-28 23:00:08 ----A---- C:\Windows\system32\dfrgfat.exe
    2009-01-28 23:00:08 ----A---- C:\Windows\system32\catsrv.dll
    2009-01-28 23:00:07 ----A---- C:\Windows\system32\wvc.dll
    2009-01-28 23:00:07 ----A---- C:\Windows\system32\winrm.vbs
    2009-01-28 23:00:07 ----A---- C:\Windows\system32\qwave.dll
    2009-01-28 23:00:07 ----A---- C:\Windows\system32\fdWCN.dll
    2009-01-28 23:00:07 ----A---- C:\Windows\system32\AudioSes.dll
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\rastapi.dll
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\netcorehc.dll
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\NAPHLPR.DLL
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\msacm32.dll
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\ifmon.dll
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\dot3msm.dll
    2009-01-28 23:00:06 ----A---- C:\Windows\system32\dot3cfg.dll
    2009-01-28 23:00:05 ----A---- C:\Windows\system32\wow32.dll
    2009-01-28 23:00:05 ----A---- C:\Windows\system32\shsetup.dll
    2009-01-28 23:00:05 ----A---- C:\Windows\system32\adsldp.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\wscntfy.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\stobject.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\QUTIL.DLL
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\ntshrui.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\msdt.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\iasrecst.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\iasdatastore.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\fdSSDP.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\els.dll
    2009-01-28 23:00:04 ----A---- C:\Windows\system32\clbcatq.dll
    2009-01-28 23:00:03 ----A---- C:\Windows\system32\wlanui.dll
    2009-01-28 23:00:03 ----A---- C:\Windows\system32\sdrsvc.dll
    2009-01-28 23:00:03 ----A---- C:\Windows\system32\net1.exe
    2009-01-28 23:00:03 ----A---- C:\Windows\system32\ipnathlp.dll
    2009-01-28 23:00:03 ----A---- C:\Windows\system32\dsprop.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\wlgpclnt.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\upnphost.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\systemcpl.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\smss.exe
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\rasman.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\nci.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\mprmsg.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\Defrag.exe
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\adsldpc.dll
    2009-01-28 23:00:02 ----A---- C:\Windows\system32\ActiveContentWizard.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\t2embed.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\rascfg.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\PresentationSettings.exe
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\P2P.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\oleprn.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\msftedit.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\MSAC3ENC.DLL
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\loghours.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\L2SecHC.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\fde.dll
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\dxdiag.exe
    2009-01-28 23:00:01 ----A---- C:\Windows\system32\CompatUI.dll
    2009-01-28 23:00:00 ----A---- C:\Windows\system32\Wpc.dll
    2009-01-28 23:00:00 ----A---- C:\Windows\system32\wdigest.dll
    2009-01-28 23:00:00 ----A---- C:\Windows\system32\setupcl.exe
    2009-01-28 23:00:00 ----A---- C:\Windows\system32\mprdim.dll
    2009-01-28 23:00:00 ----A---- C:\Windows\system32\MigAutoPlay.exe
    2009-01-28 23:00:00 ----A---- C:\Windows\system32\DFDWiz.exe
    2009-01-28 23:00:00 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
    2009-01-28 22:59:59 ----A---- C:\Windows\system32\wiaservc.dll
    2009-01-28 22:59:59 ----A---- C:\Windows\system32\scansetting.dll
    2009-01-28 22:59:59 ----A---- C:\Windows\system32\rtm.dll
    2009-01-28 22:59:59 ----A---- C:\Windows\system32\NAPCRYPT.DLL
    2009-01-28 22:59:59 ----A---- C:\Windows\system32\msutb.dll
    2009-01-28 22:59:59 ----A---- C:\Windows\system32\gpapi.dll
    2009-01-28 22:59:59 ----A---- C:\Windows\system32\devmgr.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\wscapi.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\wdi.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\mswmdm.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\msihnd.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\kdusb.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\ifsutil.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\dimsroam.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\CertEnrollUI.dll
    2009-01-28 22:59:58 ----A---- C:\Windows\system32\actxprxy.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\wlandlg.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\WinFXDocObj.exe
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\vssadmin.exe
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\uudf.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\usbmon.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\SyncCenter.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\spoolsv.exe
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\regapi.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\mycomput.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\msls31.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\imagehlp.dll
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\BOOTVID.DLL
    2009-01-28 22:59:57 ----A---- C:\Windows\system32\audiodg.exe
    2009-01-28 22:59:56 ----A---- C:\Windows\system32\sud.dll
    2009-01-28 22:59:56 ----A---- C:\Windows\system32\scecli.dll
    2009-01-28 22:59:56 ----A---- C:\Windows\system32\SCardSvr.dll
    2009-01-28 22:59:56 ----A---- C:\Windows\system32\newdev.dll
    2009-01-28 22:59:56 ----A---- C:\Windows\system32\mstask.dll
    2009-01-28 22:59:56 ----A---- C:\Windows\system32\mspaint.exe
    2009-01-28 22:59:56 ----A---- C:\Windows\system32\kdcom.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\termmgr.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\tapisrv.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\ssdpsrv.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\samlib.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\Robocopy.exe
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\puiapi.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\mtxoci.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\input.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\inetpp.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\duser.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\cic.dll
    2009-01-28 22:59:55 ----A---- C:\Windows\system32\adtschema.dll
    2009-01-28 22:59:54 ----A---- C:\Windows\system32\wisptis.exe
    2009-01-28 22:59:54 ----A---- C:\Windows\system32\SLUINotify.dll
    2009-01-28 22:59:54 ----A---- C:\Windows\system32\netiohlp.dll
    2009-01-28 22:59:54 ----A---- C:\Windows\system32\iasads.dll
    2009-01-28 22:59:54 ----A---- C:\Windows\system32\cscapi.dll
    2009-01-28 22:59:54 ----A---- C:\Windows\system32\AzSqlExt.dll
    2009-01-28 22:59:54 ----A---- C:\Windows\system32\authz.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\WUDFPlatform.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\wpcsvc.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\webcheck.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\verifier.exe
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\themeui.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\slcinst.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\sdshext.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\msdtclog.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\msdt.exe
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\d3d8.dll
    2009-01-28 22:59:53 ----A---- C:\Windows\system32\cmdial32.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\wpccpl.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\WMPhoto.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\wintrust.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\vdsldr.exe
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\SnippingTool.exe
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\SndVol.exe
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\rasgcw.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\pnpsetup.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\oledlg.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\ntmarta.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\mmcbase.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\icfupgd.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\icardie.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\dxtmsft.dll
    2009-01-28 22:59:52 ----A---- C:\Windows\system32\clfsw32.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\wtsapi32.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\wpd_ci.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\unlodctr.exe
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\syssetup.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\slmgr.vbs
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\rasqec.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\nslookup.exe
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\ncobjapi.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\msrd3x40.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\msaatext.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\mpr.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\mlang.dll
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\diskraid.exe
    2009-01-28 22:59:51 ----A---- C:\Windows\system32\accessibilitycpl.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\ulib.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\sethc.exe
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\pnpui.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\oobefldr.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\mscms.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\lodctr.exe
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\iaspolcy.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\fontsub.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\extmgr.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\dxdiagn.dll
    2009-01-28 22:59:50 ----A---- C:\Windows\system32\cabinet.dll
    2009-01-28 22:59:49 ----A---- C:\Windows\system32\Utilman.exe
    2009-01-28 22:59:49 ----A---- C:\Windows\system32\trkwks.dll
    2009-01-28 22:59:49 ----A---- C:\Windows\system32\Mcx2Svc.dll
    2009-01-28 22:59:45 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
    2009-01-28 22:59:45 ----A---- C:\Windows\system32\unattend.dll
    2009-01-28 22:59:45 ----A---- C:\Windows\system32\scesrv.dll
    2009-01-28 22:59:45 ----A---- C:\Windows\system32\lnkstub.exe
    2009-01-28 22:59:44 ----A---- C:\Windows\system32\occache.dll
    2009-01-28 22:59:43 ----A---- C:\Windows\system32\ogldrv.dll
    2009-01-28 22:59:43 ----A---- C:\Windows\system32\cabview.dll
    2009-01-28 22:59:42 ----A---- C:\Windows\system32\wpcao.dll
    2009-01-28 22:59:42 ----A---- C:\Windows\system32\wermgr.exe
    2009-01-28 22:59:42 ----A---- C:\Windows\system32\iepeers.dll
    2009-01-28 22:59:42 ----A---- C:\Windows\system32\eappgnui.dll
    2009-01-28 22:59:42 ----A---- C:\Windows\system32\dfdts.dll
    2009-01-28 22:59:42 ----A---- C:\Windows\system32\bthci.dll
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\sdspres.dll
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\p2pcollab.dll
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\msnetobj.dll
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\ieaksie.dll
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\drvinst.exe
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\dispdiag.exe
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\DHCPQEC.DLL
    2009-01-28 22:59:41 ----A---- C:\Windows\system32\basesrv.dll
    2009-01-28 22:59:40 ----A---- C:\Windows\system32\mmcss.dll
    2009-01-28 22:59:40 ----A---- C:\Windows\system32\dsquery.dll
    2009-01-28 22:59:39 ----A---- C:\Windows\system32\verifier.dll
    2009-01-28 22:59:39 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
    2009-01-28 22:59:39 ----A---- C:\Windows\system32\secproc_ssp.dll
    2009-01-28 22:59:39 ----A---- C:\Windows\system32\RstrtMgr.dll
    2009-01-28 22:59:39 ----A---- C:\Windows\system32\mprapi.dll
    2009-01-28 22:59:39 ----A---- C:\Windows\system32\efsadu.dll
    2009-01-28 22:59:38 ----A---- C:\Windows\system32\WPDSp.dll
    2009-01-28 22:59:38 ----A---- C:\Windows\system32\WMVENCOD.DLL
    2009-01-28 22:59:38 ----A---- C:\Windows\system32\wercplsupport.dll
    2009-01-28 22:59:38 ----A---- C:\Windows\system32\qedit.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\WPDShServiceObj.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\wiascanprofiles.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\setupugc.exe
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\QSVRMGMT.DLL
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\pnrpnsp.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\networkmap.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\msoeacct.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\iscsiexe.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\icacls.exe
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\d3d10core.dll
    2009-01-28 22:59:37 ----A---- C:\Windows\system32\consent.exe
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\xactsrv.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\wiaaut.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\usercpl.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\PNPXAssocPrx.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\PNPXAssoc.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\pngfilt.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\pcadm.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\p2pnetsh.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\msrdc.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\msdmo.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\lsass.exe
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\lpk.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\eappprxy.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\drmmgrtn.dll
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\dpapimig.exe
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\conime.exe
    2009-01-28 22:59:36 ----A---- C:\Windows\system32\autoplay.dll
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\xwizards.dll
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\systeminfo.exe
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\resutils.dll
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\netcfg.exe
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\msrating.dll
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\mfplat.dll
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\findstr.exe
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\DWWIN.EXE
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\dfrgifc.exe
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\cmdl32.exe
    2009-01-28 22:59:35 ----A---- C:\Windows\system32\alg.exe
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\powercpl.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\odbc32.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\nshhttp.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\netprof.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\MFWMAAEC.DLL
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\imm32.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\feclient.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\dssec.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\dot3ui.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\dbnetlib.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\btpanui.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\system32\apircl.dll
    2009-01-28 22:59:34 ----A---- C:\Windows\regedit.exe
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\txflog.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\tbssvc.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\taskkill.exe
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\RASMM.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\provthrd.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\msieftp.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\iexpress.exe
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\dxva2.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\dwmapi.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\d3d10.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\bcdprov.dll
    2009-01-28 22:59:33 ----A---- C:\Windows\system32\ActionQueue.dll
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\syncui.dll
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\svchost.exe
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\slwmi.dll
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\SLCExt.dll
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\slcc.dll
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\shwebsvc.dll
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\EAPQEC.DLL
    2009-01-28 22:59:32 ----A---- C:\Windows\system32\dmocx.dll
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\xcopy.exe
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\WMASF.DLL
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\uxsms.dll
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\taskmgr.exe
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\raserver.exe
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\PnPUnattend.exe
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\olepro32.dll
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\networkexplorer.dll
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\ias.dll
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\dnscacheugc.exe
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\brcplsdw.dll
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\audiodev.dll
    2009-01-28 22:59:31 ----A---- C:\Windows\system32\aclui.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\wlanext.exe
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\upnp.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\UIHub.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\reg.exe
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\QCLIPROV.DLL
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\perfts.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\NapiNSP.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\msoert2.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\msjetoledb40.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\mountvol.exe
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\mmcshext.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\icsfiltr.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\cmstp.exe
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\certprop.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\browser.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\atl.dll
    2009-01-28 22:59:30 ----A---- C:\Windows\system32\appinfo.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\WMVXENCD.DLL
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\wmpdxm.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\SysFxUI.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\SoundRecorder.exe
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\rekeywiz.exe
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\qcap.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\qasf.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\PING.EXE
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\netplwiz.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\inetmib1.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\ieakeng.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\httpapi.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\dsuiext.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\dskquoui.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\dmusic.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\cewmdm.dll
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\bitsadmin.exe
    2009-01-28 22:59:29 ----A---- C:\Windows\system32\adsmsext.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\WUDFSvc.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\WMVSENCD.DLL
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\wmpsrcwp.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\shimgvw.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\Sens.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\SecEdit.exe
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\mtstocom.exe
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\mscandui.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\makecab.exe
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\lsmproxy.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system32\dot3gpclnt.dll
    2009-01-28 22:59:28 ----A---- C:\Windows\system
    0
  • 1
  • 2
  • 3
  • 4