Here is the log from running Combofix in safe mode:
ComboFix 10-11-17.03 - Administrator 11/19/2010 19:14:14.2.2 - x86 NETWORK
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1015.638 [GMT -5:00]
Running from: c:\documents and settings\Administrator\Desktop\ComboFix.exe
AV: Symantec Endpoint Protection *On-access scanning disabled* (Updated) {FB06448E-52B8-493A-90F3-E43226D3305C}
FW: Symantec Endpoint Protection *enabled* {BE898FE3-CD0B-4014-85A9-03DB9923DDB6}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
---- Previous Run -------
.
c:\windows\Tasks\At1.job
c:\windows\Tasks\At10.job
c:\windows\Tasks\At11.job
c:\windows\Tasks\At12.job
c:\windows\Tasks\At13.job
c:\windows\Tasks\At14.job
c:\windows\Tasks\At15.job
c:\windows\Tasks\At16.job
c:\windows\Tasks\At17.job
c:\windows\Tasks\At18.job
c:\windows\Tasks\At19.job
c:\windows\Tasks\At2.job
c:\windows\Tasks\At20.job
c:\windows\Tasks\At21.job
c:\windows\Tasks\At22.job
c:\windows\Tasks\At3.job
c:\windows\Tasks\At4.job
c:\windows\Tasks\At5.job
c:\windows\Tasks\At6.job
c:\windows\Tasks\At7.job
c:\windows\Tasks\At8.job
c:\windows\Tasks\At9.job
.
((((((((((((((((((((((((( Files Created from 2010-10-20 to 2010-11-20 )))))))))))))))))))))))))))))))
.
2010-11-17 12:31 . 2010-09-18 06:53 954368 ------w- c:\windows\system32\dllcache\mfc40.dll
2010-11-17 12:31 . 2010-09-18 06:53 974848 ------w- c:\windows\system32\dllcache\mfc42.dll
2010-11-17 12:31 . 2010-09-18 06:53 953856 ------w- c:\windows\system32\dllcache\mfc40u.dll
2010-11-17 12:31 . 2010-08-23 16:12 617472 ------w- c:\windows\system32\dllcache\comctl32.dll
2010-11-10 12:32 . 2010-11-10 12:32 -------- d-----w- c:\program files\trend micro
2010-11-10 12:32 . 2010-11-10 12:32 -------- d-----w- C:\rsit
2010-11-10 02:04 . 2010-04-29 20:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-11-10 02:04 . 2010-11-10 02:04 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-11-10 02:04 . 2010-04-29 20:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-09-18 17:23 . 2004-08-04 07:56 974848 ----a-w- c:\windows\system32\mfc42u.dll
2010-09-18 06:53 . 2004-08-04 07:56 974848 ----a-w- c:\windows\system32\mfc42.dll
2010-09-18 06:53 . 2001-08-18 05:36 954368 ----a-w- c:\windows\system32\mfc40.dll
2010-09-18 06:53 . 2001-08-18 05:36 953856 ----a-w- c:\windows\system32\mfc40u.dll
2010-09-11 03:32 . 2007-06-19 21:08 167936 ----a-w- c:\windows\system32\drivers\wpshelper.sys
2010-09-09 13:38 . 2004-08-04 07:56 1830912 ------w- c:\windows\system32\inetcpl.cpl
2010-09-09 13:38 . 2004-08-04 07:56 832512 ----a-w- c:\windows\system32\wininet.dll
2010-09-09 13:38 . 2004-08-04 07:56 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-09-09 13:38 . 2004-08-04 07:56 17408 ----a-w- c:\windows\system32\corpol.dll
2010-09-08 15:57 . 2004-08-04 05:59 389120 ----a-w- c:\windows\system32\html.iec
2010-09-01 11:51 . 2004-08-04 07:56 285824 ----a-w- c:\windows\system32\atmfd.dll
2010-08-31 13:42 . 2004-08-04 06:17 1852800 ----a-w- c:\windows\system32\win32k.sys
2010-08-27 08:02 . 2004-08-04 07:56 119808 ----a-w- c:\windows\system32\t2embed.dll
2010-08-27 05:57 . 2004-08-04 07:56 99840 ----a-w- c:\windows\system32\srvsvc.dll
2010-08-26 13:39 . 2004-08-04 06:14 357248 ----a-w- c:\windows\system32\drivers\srv.sys
2010-08-26 12:52 . 2009-06-23 15:34 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2010-08-23 16:12 . 2004-08-04 07:56 617472 ----a-w- c:\windows\system32\comctl32.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-09-27_23.20.36 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-11-20 00:12 . 2010-11-20 00:12 16384 c:\windows\Temp\Perflib_Perfdata_52c.dat
+ 2008-04-14 00:12 . 2010-06-21 14:46 46080 c:\windows\system32\tzchange.exe
- 2008-04-14 00:12 . 2010-04-21 13:28 46080 c:\windows\system32\tzchange.exe
+ 2009-06-23 16:48 . 2007-07-28 04:11 26488 c:\windows\system32\spupdsvc.exe
- 2009-06-23 16:48 . 2007-11-30 11:18 26488 c:\windows\system32\spupdsvc.exe
+ 2009-09-11 20:48 . 2010-02-22 14:23 17272 c:\windows\system32\spmsg.dll
- 2009-09-11 20:48 . 2009-05-26 09:01 17272 c:\windows\system32\spmsg.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 44544 c:\windows\system32\pngfilt.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 44544 c:\windows\system32\pngfilt.dll
- 2006-04-26 00:43 . 2010-08-14 15:18 71264 c:\windows\system32\perfc009.dat
+ 2006-04-26 00:43 . 2010-11-17 12:25 71264 c:\windows\system32\perfc009.dat
+ 2007-08-13 22:54 . 2010-09-09 13:38 52224 c:\windows\system32\msfeedsbs.dll
- 2007-08-13 22:54 . 2010-06-24 12:15 52224 c:\windows\system32\msfeedsbs.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 27648 c:\windows\system32\jsproxy.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 27648 c:\windows\system32\jsproxy.dll
+ 2007-08-13 22:39 . 2010-09-08 15:57 13824 c:\windows\system32\ieudinit.exe
- 2007-08-13 22:39 . 2010-06-23 12:06 13824 c:\windows\system32\ieudinit.exe
+ 2004-08-04 07:56 . 2010-09-09 13:38 44544 c:\windows\system32\iernonce.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 44544 c:\windows\system32\iernonce.dll
+ 2004-08-04 07:56 . 2010-09-08 15:57 70656 c:\windows\system32\ie4uinit.exe
- 2004-08-04 07:56 . 2010-06-23 12:06 70656 c:\windows\system32\ie4uinit.exe
+ 2007-08-13 22:36 . 2010-09-09 13:38 63488 c:\windows\system32\icardie.dll
- 2007-08-13 22:36 . 2010-06-24 12:15 63488 c:\windows\system32\icardie.dll
+ 2010-07-14 16:51 . 2010-07-14 16:51 65584 c:\windows\system32\drivers\ctxusbm.sys
+ 2010-08-27 05:57 . 2010-08-27 05:57 99840 c:\windows\system32\dllcache\srvsvc.dll
- 2007-08-13 22:36 . 2010-06-24 12:15 44544 c:\windows\system32\dllcache\pngfilt.dll
+ 2007-08-13 22:36 . 2010-09-09 13:38 44544 c:\windows\system32\dllcache\pngfilt.dll
- 2009-09-11 20:35 . 2010-06-24 12:15 52224 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2009-09-11 20:35 . 2010-09-09 13:38 52224 c:\windows\system32\dllcache\msfeedsbs.dll
- 2007-08-13 22:54 . 2010-06-24 12:15 27648 c:\windows\system32\dllcache\jsproxy.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 27648 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-09-11 20:35 . 2010-09-08 15:57 13824 c:\windows\system32\dllcache\ieudinit.exe
- 2009-09-11 20:35 . 2010-06-23 12:06 13824 c:\windows\system32\dllcache\ieudinit.exe
+ 2007-08-13 22:39 . 2010-09-09 13:38 44544 c:\windows\system32\dllcache\iernonce.dll
- 2007-08-13 22:39 . 2010-06-24 12:15 44544 c:\windows\system32\dllcache\iernonce.dll
- 2009-04-29 04:46 . 2010-06-24 12:15 78336 c:\windows\system32\dllcache\ieencode.dll
+ 2009-04-29 04:46 . 2010-09-09 13:38 78336 c:\windows\system32\dllcache\ieencode.dll
+ 2007-08-13 22:39 . 2010-09-08 15:57 70656 c:\windows\system32\dllcache\ie4uinit.exe
- 2007-08-13 22:39 . 2010-06-23 12:06 70656 c:\windows\system32\dllcache\ie4uinit.exe
- 2009-09-11 20:35 . 2010-06-24 12:15 63488 c:\windows\system32\dllcache\icardie.dll
+ 2009-09-11 20:35 . 2010-09-09 13:38 63488 c:\windows\system32\dllcache\icardie.dll
+ 2007-08-13 22:42 . 2010-09-09 13:38 17408 c:\windows\system32\dllcache\corpol.dll
- 2007-08-13 22:42 . 2010-06-24 12:15 17408 c:\windows\system32\dllcache\corpol.dll
+ 2010-09-22 13:43 . 2010-09-22 13:43 30544 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
- 2010-03-23 09:31 . 2010-03-23 09:31 30544 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2010-09-23 19:55 . 2010-09-23 19:55 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2010-04-01 15:42 . 2010-04-01 15:42 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2010-03-31 18:51 . 2010-03-31 18:51 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2010-09-23 06:26 . 2010-09-23 06:26 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2010-09-23 06:26 . 2010-09-23 06:26 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
- 2010-03-31 18:51 . 2010-03-31 18:51 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2010-09-23 06:26 . 2010-09-23 06:26 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2010-03-31 18:51 . 2010-03-31 18:51 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2010-03-31 19:32 . 2010-03-31 19:32 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2010-09-23 07:17 . 2010-09-23 07:17 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2010-03-31 19:32 . 2010-03-31 19:32 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2010-09-23 07:17 . 2010-09-23 07:17 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2010-09-30 03:48 . 2010-09-30 03:48 38400 c:\windows\Installer\2f2588.msi
+ 2010-09-30 03:48 . 2010-09-30 03:48 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2010-09-30 03:20 . 2010-09-30 03:20 77824 c:\windows\Installer\{199C20D6-10D3-4210-B361-4760209F56AE}\liteico.exe.827545C6_7013_4DE1_8E6C_DAEE4C57F54A.exe
+ 2010-09-27 23:20 . 2010-09-27 23:20 25214 c:\windows\Installer\{171E6C1E-B5FC-11DF-B115-005056C00008}\UNINST_Uninstall_G_F6A848FB884248E6A4CDCBDCF41F6A74_1.exe
+ 2010-09-27 23:20 . 2010-09-27 23:20 25214 c:\windows\Installer\{171E6C1E-B5FC-11DF-B115-005056C00008}\ARPPRODUCTICON.exe
+ 2010-09-30 03:21 . 2010-09-30 03:21 77824 c:\windows\Installer\{0F1F7A90-E71B-4E45-A066-2891619F22E1}\pnaico.exe.20FBBF0A_A7E5_4BDE_9798_9811C3D135AC.exe
+ 2010-11-17 12:40 . 2010-06-24 12:15 44544 c:\windows\ie7updates\KB2360131-IE7\pngfilt.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 52224 c:\windows\ie7updates\KB2360131-IE7\msfeedsbs.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 27648 c:\windows\ie7updates\KB2360131-IE7\jsproxy.dll
+ 2010-11-17 12:40 . 2010-06-23 12:06 13824 c:\windows\ie7updates\KB2360131-IE7\ieudinit.exe
+ 2010-11-17 12:40 . 2010-06-24 12:15 44544 c:\windows\ie7updates\KB2360131-IE7\iernonce.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 78336 c:\windows\ie7updates\KB2360131-IE7\ieencode.dll
+ 2010-11-17 12:40 . 2010-06-23 12:06 70656 c:\windows\ie7updates\KB2360131-IE7\ie4uinit.exe
+ 2010-11-17 12:40 . 2010-06-24 12:15 63488 c:\windows\ie7updates\KB2360131-IE7\icardie.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 17408 c:\windows\ie7updates\KB2360131-IE7\corpol.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 90112 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_6c749f49\System.Drawing.Design.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 61440 c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_434a21b8\CustomMarshalers.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\70ee6267f7bad40e8707d402277770c3\System.Web.DynamicData.Design.ni.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2010-09-30 03:10 . 2010-09-30 03:10 81920 c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
- 2010-06-15 03:57 . 2010-06-15 03:57 81920 c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2010-09-30 02:56 . 2010-04-21 13:28 46080 c:\windows\$NtUninstallKB2158563$\tzchange.exe
+ 2010-09-30 02:56 . 2010-06-23 00:54 16896 c:\windows\$NtUninstallKB2158563$\spuninst\tzchange.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2010-08-14 15:17 . 2010-08-14 15:17 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 233472 c:\windows\system32\webcheck.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 233472 c:\windows\system32\webcheck.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 105984 c:\windows\system32\url.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 105984 c:\windows\system32\url.dll
- 2004-08-04 07:56 . 2010-07-22 15:49 590848 c:\windows\system32\rpcrt4.dll
+ 2004-08-04 07:56 . 2010-08-16 08:45 590848 c:\windows\system32\rpcrt4.dll
+ 2006-04-26 00:43 . 2010-11-17 12:25 441454 c:\windows\system32\perfh009.dat
- 2006-04-26 00:43 . 2010-08-14 15:18 441454 c:\windows\system32\perfh009.dat
+ 2004-08-04 07:56 . 2010-09-09 13:38 102912 c:\windows\system32\occache.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 102912 c:\windows\system32\occache.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 671232 c:\windows\system32\mstime.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 671232 c:\windows\system32\mstime.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 193024 c:\windows\system32\msrating.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 193024 c:\windows\system32\msrating.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 478208 c:\windows\system32\mshtmled.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 468480 c:\windows\system32\msfeeds.dll
+ 2010-11-17 12:25 . 2010-11-17 12:25 233936 c:\windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe
+ 2010-11-17 12:25 . 2010-11-17 12:25 311248 c:\windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.dll
- 2007-08-13 22:34 . 2010-06-24 12:15 268288 c:\windows\system32\iertutil.dll
+ 2007-08-13 22:34 . 2010-09-09 13:38 268288 c:\windows\system32\iertutil.dll
- 2009-06-23 16:34 . 2010-06-24 12:15 192512 c:\windows\system32\iepeers.dll
+ 2009-06-23 16:34 . 2010-09-09 13:38 192512 c:\windows\system32\iepeers.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 384512 c:\windows\system32\iedkcs32.dll
+ 2007-07-11 16:27 . 2010-09-09 13:38 380928 c:\windows\system32\ieapfltr.dll
- 2007-07-11 16:27 . 2010-06-24 12:15 380928 c:\windows\system32\ieapfltr.dll
+ 2001-08-18 05:34 . 2010-08-25 11:29 161792 c:\windows\system32\ieakui.dll
- 2001-08-18 05:34 . 2010-06-17 15:11 161792 c:\windows\system32\ieakui.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 230400 c:\windows\system32\ieaksie.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 230400 c:\windows\system32\ieaksie.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 153088 c:\windows\system32\ieakeng.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 153088 c:\windows\system32\ieakeng.dll
+ 2006-04-26 00:39 . 2010-11-17 12:24 110192 c:\windows\system32\FNTCACHE.DAT
- 2006-04-26 00:39 . 2010-08-14 15:08 110192 c:\windows\system32\FNTCACHE.DAT
- 2004-08-04 07:56 . 2010-06-24 12:15 133120 c:\windows\system32\extmgr.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 133120 c:\windows\system32\extmgr.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 214528 c:\windows\system32\dxtrans.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 214528 c:\windows\system32\dxtrans.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 347136 c:\windows\system32\dxtmsft.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 347136 c:\windows\system32\dxtmsft.dll
+ 2009-06-23 15:34 . 2010-07-12 12:55 218112 c:\windows\system32\dllcache\wordpad.exe
- 2009-04-29 04:46 . 2010-06-24 12:15 832512 c:\windows\system32\dllcache\wininet.dll
+ 2009-04-29 04:46 . 2010-09-09 13:38 832512 c:\windows\system32\dllcache\wininet.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 233472 c:\windows\system32\dllcache\webcheck.dll
- 2007-08-13 22:54 . 2010-06-24 12:15 233472 c:\windows\system32\dllcache\webcheck.dll
+ 2007-08-13 22:44 . 2010-09-09 13:38 105984 c:\windows\system32\dllcache\url.dll
- 2007-08-13 22:44 . 2010-06-24 12:15 105984 c:\windows\system32\dllcache\url.dll
- 2009-07-29 04:37 . 2009-10-15 16:28 119808 c:\windows\system32\dllcache\t2embed.dll
+ 2009-07-29 04:37 . 2010-08-27 08:02 119808 c:\windows\system32\dllcache\t2embed.dll
+ 2009-06-23 15:35 . 2010-08-26 13:39 357248 c:\windows\system32\dllcache\srv.sys
+ 2009-04-15 14:51 . 2010-08-16 08:45 590848 c:\windows\system32\dllcache\rpcrt4.dll
- 2009-04-15 14:51 . 2010-07-22 15:49 590848 c:\windows\system32\dllcache\rpcrt4.dll
+ 2007-08-13 22:44 . 2010-09-09 13:38 102912 c:\windows\system32\dllcache\occache.dll
- 2007-08-13 22:44 . 2010-06-24 12:15 102912 c:\windows\system32\dllcache\occache.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 671232 c:\windows\system32\dllcache\mstime.dll
- 2007-08-13 22:54 . 2010-06-24 12:15 671232 c:\windows\system32\dllcache\mstime.dll
- 2007-08-13 22:44 . 2010-06-24 12:15 193024 c:\windows\system32\dllcache\msrating.dll
+ 2007-08-13 22:44 . 2010-09-09 13:38 193024 c:\windows\system32\dllcache\msrating.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 478208 c:\windows\system32\dllcache\mshtmled.dll
+ 2009-09-11 20:35 . 2010-09-09 13:38 468480 c:\windows\system32\dllcache\msfeeds.dll
+ 2010-09-18 17:23 . 2010-09-18 17:23 974848 c:\windows\system32\dllcache\mfc42u.dll
+ 2007-08-13 22:43 . 2010-08-25 11:30 634648 c:\windows\system32\dllcache\iexplore.exe
+ 2009-09-11 20:35 . 2010-09-09 13:38 268288 c:\windows\system32\dllcache\iertutil.dll
- 2009-09-11 20:35 . 2010-06-24 12:15 268288 c:\windows\system32\dllcache\iertutil.dll
- 2007-08-13 22:54 . 2010-06-24 12:15 192512 c:\windows\system32\dllcache\iepeers.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 192512 c:\windows\system32\dllcache\iepeers.dll
+ 2007-08-13 22:39 . 2010-09-09 13:38 384512 c:\windows\system32\dllcache\iedkcs32.dll
+ 2009-09-11 20:35 . 2010-09-09 13:38 380928 c:\windows\system32\dllcache\ieapfltr.dll
- 2009-09-11 20:35 . 2010-06-24 12:15 380928 c:\windows\system32\dllcache\ieapfltr.dll
- 2007-08-13 21:56 . 2010-06-17 15:11 161792 c:\windows\system32\dllcache\ieakui.dll
+ 2007-08-13 21:56 . 2010-08-25 11:29 161792 c:\windows\system32\dllcache\ieakui.dll
+ 2007-08-13 22:39 . 2010-09-09 13:38 230400 c:\windows\system32\dllcache\ieaksie.dll
- 2007-08-13 22:39 . 2010-06-24 12:15 230400 c:\windows\system32\dllcache\ieaksie.dll
- 2007-08-13 22:39 . 2010-06-24 12:15 153088 c:\windows\system32\dllcache\ieakeng.dll
+ 2007-08-13 22:39 . 2010-09-09 13:38 153088 c:\windows\system32\dllcache\ieakeng.dll
- 2007-08-13 22:54 . 2010-06-24 12:15 133120 c:\windows\system32\dllcache\extmgr.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 133120 c:\windows\system32\dllcache\extmgr.dll
- 2007-08-13 22:35 . 2010-06-24 12:15 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2007-08-13 22:35 . 2010-09-09 13:38 214528 c:\windows\system32\dllcache\dxtrans.dll
- 2007-08-13 22:35 . 2010-06-24 12:15 347136 c:\windows\system32\dllcache\dxtmsft.dll
+ 2007-08-13 22:35 . 2010-09-09 13:38 347136 c:\windows\system32\dllcache\dxtmsft.dll
+ 2010-04-20 05:30 . 2010-09-01 11:51 285824 c:\windows\system32\dllcache\atmfd.dll
+ 2007-08-13 22:39 . 2010-09-09 13:38 124928 c:\windows\system32\dllcache\advpack.dll
- 2007-08-13 22:39 . 2010-06-24 12:15 124928 c:\windows\system32\dllcache\advpack.dll
+ 2004-08-04 07:56 . 2010-09-09 13:38 124928 c:\windows\system32\advpack.dll
- 2004-08-04 07:56 . 2010-06-24 12:15 124928 c:\windows\system32\advpack.dll
+ 2010-09-22 13:43 . 2010-09-22 13:43 435024 c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
- 2010-03-23 09:31 . 2010-03-23 09:31 435024 c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2010-09-23 06:26 . 2010-09-23 06:26 102400 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2010-03-31 18:51 . 2010-03-31 18:51 102400 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2010-09-23 06:25 . 2010-09-23 06:25 315392 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2010-03-31 18:49 . 2010-03-31 18:49 315392 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2010-09-23 07:17 . 2010-09-23 07:17 258048 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2010-03-31 19:32 . 2010-03-31 19:32 258048 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2010-09-24 01:02 . 2010-09-24 01:02 798208 c:\windows\Installer\437a40.msp
+ 2010-09-27 23:20 . 2010-09-27 23:20 874496 c:\windows\Installer\3dc701.msi
+ 2010-09-30 03:21 . 2010-09-30 03:21 722432 c:\windows\Installer\157527.msi
+ 2010-09-30 03:21 . 2010-09-30 03:21 432640 c:\windows\Installer\157522.msi
+ 2010-09-30 03:20 . 2010-09-30 03:20 190464 c:\windows\Installer\15751d.msi
+ 2010-09-30 03:20 . 2010-09-30 03:20 516096 c:\windows\Installer\157518.msi
+ 2010-09-30 03:20 . 2010-09-30 03:20 134656 c:\windows\Installer\157513.msi
+ 2010-09-30 03:20 . 2010-09-30 03:20 917504 c:\windows\Installer\15750e.msi
+ 2010-11-17 12:40 . 2010-06-24 12:15 832512 c:\windows\ie7updates\KB2360131-IE7\wininet.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 233472 c:\windows\ie7updates\KB2360131-IE7\webcheck.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 105984 c:\windows\ie7updates\KB2360131-IE7\url.dll
+ 2010-11-17 12:40 . 2010-02-22 14:23 382840 c:\windows\ie7updates\KB2360131-IE7\spuninst\updspapi.dll
+ 2010-11-17 12:40 . 2010-02-22 14:23 231288 c:\windows\ie7updates\KB2360131-IE7\spuninst\spuninst.exe
+ 2010-11-17 12:40 . 2010-06-24 12:15 102912 c:\windows\ie7updates\KB2360131-IE7\occache.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 671232 c:\windows\ie7updates\KB2360131-IE7\mstime.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 193024 c:\windows\ie7updates\KB2360131-IE7\msrating.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 477696 c:\windows\ie7updates\KB2360131-IE7\mshtmled.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 459264 c:\windows\ie7updates\KB2360131-IE7\msfeeds.dll
+ 2010-11-17 12:40 . 2010-06-17 15:12 634656 c:\windows\ie7updates\KB2360131-IE7\iexplore.exe
+ 2010-11-17 12:40 . 2010-06-24 12:15 268288 c:\windows\ie7updates\KB2360131-IE7\iertutil.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 192512 c:\windows\ie7updates\KB2360131-IE7\iepeers.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 385024 c:\windows\ie7updates\KB2360131-IE7\iedkcs32.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 380928 c:\windows\ie7updates\KB2360131-IE7\ieapfltr.dll
+ 2010-11-17 12:40 . 2010-06-17 15:11 161792 c:\windows\ie7updates\KB2360131-IE7\ieakui.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 230400 c:\windows\ie7updates\KB2360131-IE7\ieaksie.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 153088 c:\windows\ie7updates\KB2360131-IE7\ieakeng.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 133120 c:\windows\ie7updates\KB2360131-IE7\extmgr.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 214528 c:\windows\ie7updates\KB2360131-IE7\dxtrans.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 347136 c:\windows\ie7updates\KB2360131-IE7\dxtmsft.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 124928 c:\windows\ie7updates\KB2360131-IE7\advpack.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 835584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_6486d739\System.Drawing.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 192512 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_a8e6ddea\System.Drawing.Design.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 118784 c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_327781af\CustomMarshalers.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\7f9a1ae146571025fd49914b5c71a39b\System.Web.Routing.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 859648 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\b1646e54b708b9824f4193f87eb00c0e\System.Web.Extensions.Design.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 328704 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\504a93e73da77c502ecf98bfdfc1485e\System.Web.Entity.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 301056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\f22334fbd9497d79448fffef515ae0cc\System.Web.Entity.Design.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\af5452305588da228a74e30324681d20\System.Web.DynamicData.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\9d9bca1a8993c427984aa1bc9c165a33\System.Web.Abstractions.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 756736 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\165bd290e518b9397ca55192985fdee3\System.Data.Entity.Design.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 320512 c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\72d3aacfca2e1ce835c210f5a1decb36\ServiceModelReg.ni.exe
+ 2010-09-30 03:25 . 2010-09-30 03:25 842240 c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\af4a3ae6d5c1cafa57002beb487b8d7a\AspNetMMCExt.ni.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2010-09-30 02:56 . 2010-02-22 14:23 382840 c:\windows\$NtUninstallKB2158563$\spuninst\updspapi.dll
+ 2010-09-30 02:56 . 2010-02-22 14:23 231288 c:\windows\$NtUninstallKB2158563$\spuninst\spuninst.exe
+ 2010-11-17 12:31 . 2010-08-23 16:12 1054208 c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
- 2009-06-23 16:36 . 2010-06-24 12:15 1168384 c:\windows\system32\urlmon.dll
+ 2009-06-23 16:36 . 2010-09-09 13:38 1168384 c:\windows\system32\urlmon.dll
+ 2004-08-04 07:56 . 2010-07-16 12:05 1288192 c:\windows\system32\ole32.dll
+ 2009-06-23 16:34 . 2010-09-09 13:38 3601920 c:\windows\system32\mshtml.dll
+ 2007-08-13 22:54 . 2010-09-09 13:38 6075904 c:\windows\system32\ieframe.dll
+ 2009-04-17 12:26 . 2010-08-31 13:42 1852800 c:\windows\system32\dllcache\win32k.sys
- 2009-04-29 04:46 . 2010-06-24 12:15 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2009-04-29 04:46 . 2010-09-09 13:38 1168384 c:\windows\system32\dllcache\urlmon.dll
+ 2010-07-16 12:05 . 2010-07-16 12:05 1288192 c:\windows\system32\dllcache\ole32.dll
+ 2009-04-29 04:46 . 2010-09-09 13:38 3601920 c:\windows\system32\dllcache\mshtml.dll
+ 2009-09-11 20:35 . 2010-09-09 13:38 6075904 c:\windows\system32\dllcache\ieframe.dll
- 2010-03-23 09:32 . 2010-03-23 09:32 5242880 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2010-09-22 13:44 . 2010-09-22 13:44 5242880 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
- 2010-04-01 15:42 . 2010-04-01 15:42 1265664 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2010-09-23 19:55 . 2010-09-23 19:55 1265664 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2010-04-01 15:42 . 2010-04-01 15:42 1232896 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2010-09-23 19:55 . 2010-09-23 19:55 1232896 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2010-03-31 18:50 . 2010-03-31 18:50 2514944 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2010-09-23 06:26 . 2010-09-23 06:26 2514944 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2010-09-23 06:25 . 2010-09-23 06:25 2523136 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2010-09-23 19:55 . 2010-09-23 19:55 2142208 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2010-04-01 15:42 . 2010-04-01 15:42 2142208 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2010-09-23 11:39 . 2010-09-23 11:39 4265472 c:\windows\Installer\437a39.msp
+ 2010-11-17 12:40 . 2010-06-24 12:15 1168384 c:\windows\ie7updates\KB2360131-IE7\urlmon.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 3600896 c:\windows\ie7updates\KB2360131-IE7\mshtml.dll
+ 2010-11-17 12:40 . 2010-06-24 12:15 6067200 c:\windows\ie7updates\KB2360131-IE7\ieframe.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 4792320 c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_cc16855a\System.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 1966080 c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_944294a2\System.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 5513216 c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_73f68795\System.Xml.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 2088960 c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_4b829287\System.Xml.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 7884800 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_ac88f92c\System.Windows.Forms.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 3018752 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_8c06f47a\System.Windows.Forms.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 2244608 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_fd6521ae\System.Drawing.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 3395584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_e9d7aa87\System.Design.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 1470464 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_84d2cad3\System.Design.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 3391488 c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_3a48eee7\mscorlib.dll
+ 2010-09-30 03:11 . 2010-09-30 03:11 8908800 c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_31157eca\mscorlib.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 1356288 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\bec60fe2e934a6284224ab45b0e981e2\System.WorkflowServices.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 1908224 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\09da139c48e2f5e76994a5c0f2e5b19e\System.Workflow.Runtime.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 4514304 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\6809417da74ff937e18b3034f1eac2f2\System.Workflow.ComponentModel.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 2992640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\6c91ee82035d30efa8893e7b0396bbb0\System.Workflow.Activities.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\181254ba0cb690decedb950fd26d7bea\System.Web.Services.ni.dll
+ 2010-09-30 03:27 . 2010-09-30 03:27 2209280 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\4200f716e9a41cb91d17516ba864e586\System.Web.Mobile.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:27 2405376 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\da367bc2ecf2c9c5b4f858b6dba9e2ea\System.Web.Extensions.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 1706496 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\8e34e273d036b7468fc4e951a1fde437\System.ServiceModel.Web.ni.dll
+ 2010-09-30 03:25 . 2010-09-30 03:25 1070080 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\095bb4f033374647b6d66c51f16bb886\System.IdentityModel.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 1328128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\b8c9267d87b7358e1a5f00bf1572c313\System.Data.Services.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 1712128 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\a27783547338dbebf84101a685ba641b\Microsoft.VisualBasic.ni.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2010-09-30 03:14 . 2010-09-30 03:14 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
- 2010-05-05 00:02 . 2010-05-05 00:02 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 5242880 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 5242880 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2010-08-14 15:17 . 2010-08-14 15:17 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2010-09-30 03:13 . 2010-09-30 03:13 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2010-09-30 03:10 . 2010-09-30 03:10 1232896 c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
- 2010-06-15 03:57 . 2010-06-15 03:57 1232896 c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
- 2010-06-15 03:57 . 2010-06-15 03:57 1265664 c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2010-09-30 03:10 . 2010-09-30 03:10 1265664 c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2004-08-04 07:56 . 2009-07-14 03:43 10841088 c:\windows\system32\wmp.dll
+ 2004-08-04 07:56 . 2010-08-26 04:36 10841088 c:\windows\system32\wmp.dll
+ 2009-06-23 15:45 . 2010-11-02 21:47 35758536 c:\windows\system32\MRT.exe
- 2008-04-14 00:12 . 2009-07-14 03:43 10841088 c:\windows\system32\dllcache\wmp.dll
+ 2008-04-14 00:12 . 2010-08-26 04:36 10841088 c:\windows\system32\dllcache\wmp.dll
+ 2010-09-24 18:08 . 2010-09-24 18:08 11430400 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2416447\M2416447Uninstall.msp
+ 2010-09-24 11:08 . 2010-09-24 11:08 17518080 c:\windows\Installer\437a30.msp
+ 2010-09-30 03:48 . 2010-09-30 03:48 20303872 c:\windows\Installer\2f258e.msp
+ 2010-09-30 03:26 . 2010-09-30 03:26 11800576 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\41f436dae3c8146752d06130f7331527\System.Web.ni.dll
+ 2010-09-30 03:26 . 2010-09-30 03:26 17403904 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\75aeb590008d6e166f7be18f935c52d2\System.ServiceModel.ni.dll
+ 2010-09-30 02:58 . 2010-09-30 02:58 10683392 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\fdc42078fd10e4dc8b05087900c63977\System.Design.ni.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\documents and settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2009-09-23 133104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2005-01-07 61952]
"PTHOSTTR"="c:\program files\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2005-10-04 86016]
"PDF Complete"="c:\program files\PDF Complete\pdfsty.exe" [2005-03-07 276480]
"SetRefresh"="c:\program files\Compaq\SetRefresh\SetRefresh.exe" [2003-11-20 525824]
"LayoutM"="KLayMgr.exe" [2004-08-17 45056]
"DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-09-28 122940]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2004-07-27 81920]
"ccApp"="c:\program files\Common Files\Symantec Shared\ccApp.exe" [2008-02-01 115560]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-09-20 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-09-20 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-09-20 114688]
"RTHDCPL"="RTHDCPL.EXE" [2005-09-22 14854144]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2004-07-27 221184]
"PMBVolumeWatcher"="c:\program files\Sony\PMB\PMBVolumeWatcher.exe" [2009-11-04 597792]
"ConnectionCenter"="c:\program files\Citrix\ICA Client\concentr.exe" [2010-10-12 304568]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"RunNarrator"="Narrator.exe" [2008-04-14 53760]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Online plug-in.lnk - c:\windows\Installer\{0F1F7A90-E71B-4E45-A066-2891619F22E1}\pnaico.exe.20FBBF0A_A7E5_4BDE_9798_9811C3D135AC.exe [2010-9-29 77824]
Sonic CinePlayer Quick Launch.lnk - c:\program files\Common Files\Sonic Shared\CineTray.exe [2005-10-15 114688]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccEvtMgr]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccSetMgr]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Symantec Antivirus]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Symantec\\Symantec Endpoint Protection\\Smc.exe"=
"c:\\Program Files\\Symantec\\Symantec Endpoint Protection\\SNAC.EXE"=
"c:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
S0 dsdmgruj;dsdmgruj;c:\windows\system32\drivers\qwttch.sys --> c:\windows\system32\drivers\qwttch.sys [?]
S0 umtxylie;umtxylie;c:\windows\system32\drivers\flqwc.sys --> c:\windows\system32\drivers\flqwc.sys [?]
S0 ygqofxp;ygqofxp;c:\windows\system32\drivers\crnwrtgu.sys --> c:\windows\system32\drivers\crnwrtgu.sys [?]
S1 ctxusbm;Citrix USB Monitor Driver;c:\windows\system32\drivers\ctxusbm.sys [7/14/2010 11:51 AM 65584]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [5/7/2010 8:13 PM 136176]
S2 pdfcDispatcher;PDF Document Manager;c:\program files\PDF Complete\pdfsvc.exe [6/23/2009 11:51 AM 476160]
S2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files\Sony\PMB\PMBDeviceInfoProvider.exe [10/24/2009 2:18 AM 360224]
S3 COH_Mon;COH_Mon;c:\windows\system32\drivers\COH_Mon.sys [5/29/2007 12:55 PM 23888]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [9/27/2010 7:08 PM 102448]
.
Contents of the 'Scheduled Tasks' folder
2010-11-17 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-08 18:48]
2010-11-20 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-08 18:48]
2010-04-11 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-81077405-3077070030-4194218421-500Core.job
- c:\documents and settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-09-23 00:57]
2010-11-17 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-81077405-3077070030-4194218421-500UA.job
- c:\documents and settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-09-23 00:57]
.
.
------- Supplementary Scan -------
.
uStart Page =
hxxp://www.hp.comIE: Add to &Evernote - c:\program files\Evernote\Evernote3.5\enbar.dll/2000
IE: {{E0B8C461-F8FB-49b4-8373-FE32E92528A6} - {BC0E0A5D-AB5A-4fa4-A5FA-280E1D58EEEE} - c:\program files\Evernote\Evernote3.5\enbar.dll
.
- - - - ORPHANS REMOVED - - - -
AddRemove-Adobe Flash Player ActiveX - c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
**************************************************************************
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files:
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pdfcDispatcher]
"ImagePath"="c:\program files\PDF Complete\pdfsvc.exe /startedbyscm:66B66708-40E2BE4D-pdfcService"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(832)
c:\program files\Citrix\ICA Client\pnsson.dll
- - - - - - - > 'explorer.exe'(2844)
c:\windows\system32\WININET.dll
.
Completion time: 2010-11-19 19:18:58
ComboFix-quarantined-files.txt 2010-11-20 00:18
Pre-Run: 62,043,492,352 bytes free
Post-Run: 62,026,579,968 bytes free
- - End Of File - - E605D92B2827F2A670200DAC631D4367