TheTechGuide Forum

General Category => Tech Clinic => Topic started by: X-clusive on January 11, 2009, 02:31:00 PM

Title: internet explorer isnt working
Post by: X-clusive on January 11, 2009, 02:31:00 PM
Hello, I have a problem with internet explorer or iexplorer.exe.
 When im starting internet explorer is doesnt load a page but instead firefox asks me if i wanna download that page what im trying to open with internet explorer
 (I hope that you can understand my englisch...)
 
 picture:
(http://img522.imageshack.us/img522/3880/picburoeh1.png)

Even AVG is coming up with a threath, but i can't seem to heal it, or moving to Vault...

Hijack Log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:24:11, on 11-1-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\sistray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.warrock.net/ (http://\"http://www.warrock.net/\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: AdvancedTool - {6C4ECE5C-7CB8-36C5-6F3B-D414CE8F8E22} - C:\Program Files\AdvancedTool\AdvancedTool-2.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: (no name) - {EEE2F485-86D4-4AEB-9704-5B1037EBE281} - C:\WINDOWS\system32\cmprop.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CmUsbAudio] RunDll32 cmcnfg2.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LESS CITY AMEN SETUP] C:\Documents and Settings\All Users\Application Data\Tool Eggs Less City\Settings meet.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [Vc Mode] C:\DOCUME~1\JEFFRE~1\APPLIC~1\ELSEPO~1\Dupe Hold Burn.exe
O4 - HKCU\..\Run: [RegTool] C:\Program Files\RegTool\RegTool.exe -boot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Lokale service')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Netwerkservice')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1212511711984 (http://\"http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1212511711984\")
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab (http://\"http://download.divx.com/player/DivXBrowserPlugin.cab\")
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v4.cab (http://\"http://www.acclaim.com/cabs/acclaim_v4.cab\")
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: lfrnaitc.dll,vrhbuwuk.dll,avgrsstx.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 7026 bytes
Title: internet explorer isnt working
Post by: guestolo on January 11, 2009, 06:02:56 PM
Can you do the following please
Download ComboFix from one of these locations:

[color=\"#0000FF\"]Link 1[/color] (http://\"http://download.bleepingcomputer.com/sUBs/ComboFix.exe\")
[color=\"#0000FF\"]Link 2[/color] (http://\"http://www.forospyware.com/sUBs/ComboFix.exe\")
[color=\"#0000FF\"]Link 3[/color] (http://\"http://subs.geekstogo.com/ComboFix.exe\")
[color=\"#FF0000\"]Save it ONLY to your Desktop[/color]

      --------------------------------------------------------------------
[color=\"#2E8B57\"]Temporarily Disable your AntiVirus/AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with this tool[/color]



[color=\"#2e8b57\"]**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.
[/color]

(http://img.photobucket.com/albums/v706/ried7/RcAuto1.gif)

Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:
(http://img.photobucket.com/albums/v706/ried7/whatnext.png)


Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply

NOTE: Do not mouseclick inside ComboFix window as it's running, it may cause it to stall
ComboFix will run again on startup, it will prompt that it's creating a log
This process could take up to 10 minutes, let it run uninterrupted please

With that log can you also post a fresh Hijackthis log
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 11:19:02 AM
Hijack log file:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:18:43, on 12-1-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\sistray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.warrock.net/ (http://\"http://www.warrock.net/\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: (no name) - {EEE2F485-86D4-4AEB-9704-5B1037EBE281} - C:\WINDOWS\system32\cmprop.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CmUsbAudio] RunDll32 cmcnfg2.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LESS CITY AMEN SETUP] C:\Documents and Settings\All Users\Application Data\Tool Eggs Less City\Settings meet.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [Vc Mode] C:\DOCUME~1\JEFFRE~1\APPLIC~1\ELSEPO~1\Dupe Hold Burn.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1212511711984 (http://\"http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1212511711984\")
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab (http://\"http://download.divx.com/player/DivXBrowserPlugin.cab\")
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v4.cab (http://\"http://www.acclaim.com/cabs/acclaim_v4.cab\")
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: lfrnaitc.dll,vrhbuwuk.dll,avgrsstx.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 6613 bytes
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 11:22:51 AM
Combofix log file:
ComboFix 09-01-11.04 - Jeffrey Mennen 2009-01-12 17:03:33.5 - NTFSx86
Microsoft Windows XP Home Edition  5.1.2600.3.1252.1.1043.18.959.552 [GMT 1:00]
Gestart vanuit: c:\documents and settings\Jeffrey Mennen\Bureaublad\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning disabled* (Outdated)
 * Nieuw herstelpunt werd aangemaakt
.

((((((((((((((((((((((((((((((((((   Andere Verwijderingen   )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Jeffrey Mennen\Local Settings\Temporary Internet Files\ijjistarter_verinfo.dat
c:\program files\FBrowserAdvisor
c:\program files\FBrowsingAdvisor
c:\program files\FBrowsingAdvisor\IXPCOMEvents.xpt
c:\program files\FBrowsingAdvisor\Logo.png
c:\program files\FBrowsingAdvisor\main.db
c:\program files\FBrowsingAdvisor\unins000.dat
c:\program files\FBrowsingAdvisor\unins000.exe
c:\program files\FBrowsingAdvisor\XPCOMEvents.dll
c:\windows\qmdispatch.dll
c:\windows\system32\injptgyn.ini
c:\windows\system32\joangdks.ini
c:\windows\system32\judodwho.ini
c:\windows\system32\meycstwk.ini
c:\windows\system32\onnfsuxk.ini
c:\windows\system32\qhgmugph.ini
c:\windows\system32\tbuhotko.ini

.
((((((((((((((((((((   Bestanden Gemaakt van 2008-12-12 to 2009-01-12  ))))))))))))))))))))))))))))))
.

2009-01-11 21:53 . 2009-01-11 21:53   435   --a------   c:\windows\system32\Snelkoppeling naar system32.lnk
2009-01-11 20:23 . 2009-01-11 20:23   <DIR>   d--------   c:\program files\Trend Micro
2009-01-09 22:06 . 2009-01-09 22:06   268   --ah-----   C:\sqmdata01.sqm
2009-01-09 22:06 . 2009-01-09 22:06   244   --ah-----   C:\sqmnoopt01.sqm
2009-01-09 16:17 . 2009-01-09 17:53   <DIR>   d--------   c:\documents and settings\Michel Mennen\Contacts
2009-01-09 15:01 . 2009-01-09 15:01   <DIR>   d--------   c:\program files\Auslogics
2009-01-09 15:01 . 2009-01-09 15:01   <DIR>   d--------   c:\documents and settings\Michel Mennen\Application Data\Auslogics
2009-01-09 14:19 . 2009-01-12 11:25   <DIR>   d--h-----   C:\$AVG8.VAULT$
2009-01-09 14:08 . 2009-01-09 14:08   10,520   --a------   c:\windows\system32\avgrsstx.dll
2009-01-09 14:07 . 2009-01-12 11:10   <DIR>   d--------   c:\windows\system32\drivers\Avg
2009-01-09 14:07 . 2009-01-09 14:07   <DIR>   d--------   c:\program files\AVG
2009-01-09 14:07 . 2009-01-09 14:07   <DIR>   d--------   c:\documents and settings\All Users\Application Data\avg8
2009-01-09 14:07 . 2009-01-09 14:07   97,928   --a------   c:\windows\system32\drivers\avgldx86.sys
2009-01-09 14:04 . 2009-01-09 14:04   <DIR>   d--------   c:\program files\Else Poke Dog
2009-01-09 14:04 . 2009-01-09 14:04   <DIR>   d--------   c:\documents and settings\All Users\Application Data\Tool Eggs Less City
2009-01-08 20:53 . 2009-01-08 20:53   <DIR>   d--------   C:\CrashReport
2009-01-04 15:22 . 2009-01-04 15:22   <DIR>   d--------   C:\.jagex_cache_32
2009-01-01 16:52 . 2009-01-01 16:52   <DIR>   d--------   c:\program files\Safer Networking
2009-01-01 16:25 . 2009-01-01 16:28   <DIR>   d--------   c:\documents and settings\Jeffrey Mennen\Application Data\RegTool
2008-12-28 14:01 . 2009-01-01 16:59   <DIR>   d--------   c:\program files\Free FLV Converter
2008-12-28 14:01 . 2007-06-19 01:22   364,544   --a------   c:\windows\system32\PropertyGrid.ocx
2008-12-28 14:01 . 2008-05-15 11:30   208,896   --a------   c:\windows\system32\TubeFinder.exe
2008-12-28 14:01 . 2005-10-13 15:42   208,500   --a------   c:\windows\system32\ReyXpBasics.tlb
2008-12-28 14:01 . 2004-03-09 01:00   152,848   --a------   c:\windows\system32\COMDLG32.OCX
2008-12-28 14:01 . 1998-07-13 01:00   141,312   --a------   c:\windows\system32\MSCMCFR.DLL
2008-12-28 14:01 . 2000-10-01 21:00   119,568   --a------   c:\windows\system32\VB6FR.DLL
2008-12-28 14:01 . 2000-07-15 07:00   101,888   --a------   c:\windows\system32\VB6STKIT.DLL
2008-12-28 14:01 . 2004-03-09 02:00   84,512   --a------   c:\windows\system32\PICCLP32.OCX
2008-12-28 14:01 . 1998-07-12 21:00   32,768   --a------   c:\windows\system32\CMDLGFR.DLL
2008-12-28 14:01 . 2005-09-28 03:31   24,576   --a------   c:\windows\system32\ControlSubX.ocx
2008-12-28 14:01 . 1998-07-13 02:00   9,728   --a------   c:\windows\system32\PCCLPFR.DLL
2008-12-27 12:47 . 2008-12-27 12:47   <DIR>   d--------   c:\documents and settings\All Users\Application Data\NCH Software
2008-12-13 09:56 . 2008-12-19 17:03   <DIR>   d--------   c:\program files\QMacro
2008-12-13 09:56 . 2007-04-22 16:04   36,864   --a------   c:\windows\system32\himc.dll

.
(((((((((((((((((((((((((((((((((((((((   Find3M Rapport   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-10 12:36   31   ----a-w   c:\documents and settings\Jeffrey Mennen\jagex_runescape_preferences.dat
2009-01-09 15:07   ---------   d-----w   c:\program files\Spybot - Search & Destroy
2009-01-09 13:23   ---------   d-----w   c:\program files\AdvancedTool
2009-01-09 13:19   ---------   d-----w   c:\documents and settings\Michel Mennen\Application Data\Else Poke Dog
2009-01-09 13:01   ---------   d-----w   c:\program files\DivX
2009-01-09 13:01   ---------   d-----w   c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-01-09 13:00   ---------   d-----w   c:\program files\DAEMON Tools Toolbar
2009-01-08 20:45   ---------   d-----w   c:\documents and settings\Jeffrey Mennen\Application Data\Canon
2009-01-08 15:36   ---------   d-----w   c:\program files\Java
2009-01-05 19:39   ---------   d--h--w   c:\program files\InstallShield Installation Information
2009-01-04 11:08   ---------   d-----w   c:\documents and settings\Jeffrey Mennen\Application Data\Else Poke Dog
2008-12-13 15:05   ---------   d-----w   c:\documents and settings\All Users\Application Data\Microsoft Help
2008-12-12 22:31   ---------   d-----w   c:\program files\Workspace Macro 4.6
2008-12-10 17:04   2,560   ----a-w   c:\windows\_MSRSTRT.EXE
2008-12-10 16:59   ---------   d-----w   c:\program files\Stardock
2008-11-30 15:22   ---------   d-----w   c:\program files\Daemons Ring Gunz
2008-11-22 14:44   ---------   d-----w   c:\program files\Frets on Fire
2008-11-22 14:43   ---------   d-----w   c:\documents and settings\All Users\Application Data\NexonUS
2008-11-22 09:05   ---------   d--h--w   c:\documents and settings\Jeffrey Mennen\Application Data\ijjigame
2008-11-17 16:02   ---------   d-----w   c:\program files\Common Files\Blizzard Entertainment
2008-11-12 15:13   116,480   ----a-w   c:\windows\system32\cmprop.dll
2008-11-10 04:43   410,984   ----a-w   c:\windows\system32\deploytk.dll
2008-10-23 12:43   286,720   ----a-w   c:\windows\system32\gdi32.dll
2008-10-19 12:35   182,928   ----a-w   c:\windows\system32\PnkBstrB.exe
2008-10-16 20:33   826,368   ----a-w   c:\windows\system32\wininet.dll
2008-10-16 13:13   202,776   ----a-w   c:\windows\system32\wuweb.dll
2008-10-16 13:13   1,809,944   ----a-w   c:\windows\system32\wuaueng.dll
2008-10-16 13:12   561,688   ----a-w   c:\windows\system32\wuapi.dll
2008-10-16 13:12   323,608   ----a-w   c:\windows\system32\wucltui.dll
2008-10-16 13:09   92,696   ----a-w   c:\windows\system32\cdm.dll
2008-10-16 13:09   51,224   ----a-w   c:\windows\system32\wuauclt.exe
2008-10-16 13:09   43,544   ----a-w   c:\windows\system32\wups2.dll
2008-10-16 13:08   34,328   ----a-w   c:\windows\system32\wups.dll
2008-10-16 13:06   268,648   ----a-w   c:\windows\system32\mucltui.dll
2008-10-16 13:06   208,744   ----a-w   c:\windows\system32\muweb.dll
2008-10-14 09:13   98,304   ----a-w   c:\windows\system32\CmdLineExt.dll
2008-07-13 20:02   23   ----a-w   c:\documents and settings\Michel Mennen\jagex_runescape_preferences.dat
2008-12-18 14:09   208,384   ----a-w   c:\program files\mozilla firefox\plugins\uc_rohan_launching.dll
.

(((((((((((((((((((((((((((((   snapshot_2008-07-02_17.02.15.20   )))))))))))))))))))))))))))))))))))))))))
.
+ 2004-11-17 17:42:19   352,768   ----a-w   c:\windows\$hf_mig$\KB873339\SP2QFE\hypertrm.dll
+ 2004-10-14 08:35:36   8,704   ----a-w   c:\windows\$hf_mig$\KB873339\spmsg.dll
+ 2004-10-14 08:36:26   171,520   ----a-w   c:\windows\$hf_mig$\KB873339\spuninst.exe
+ 2004-10-14 08:36:24   21,504   ----a-w   c:\windows\$hf_mig$\KB873339\update\spcustom.dll
+ 2004-10-14 08:35:38   663,552   ----a-w   c:\windows\$hf_mig$\KB873339\update\update.exe
+ 2004-10-13 16:21:24   1,694,208   ----a-w   c:\windows\$hf_mig$\KB887472\SP2QFE\msmsgs.exe
+ 2004-10-14 09:35:36   8,704   ----a-w   c:\windows\$hf_mig$\KB887472\spmsg.dll
+ 2004-10-14 09:36:26   171,520   ----a-w   c:\windows\$hf_mig$\KB887472\spuninst.exe
+ 2004-10-14 09:36:24   21,504   ----a-w   c:\windows\$hf_mig$\KB887472\update\spcustom.dll
+ 2004-10-14 09:35:38   663,552   ----a-w   c:\windows\$hf_mig$\KB887472\update\update.exe
+ 2004-12-07 19:33:24   96,768   ----a-w   c:\windows\$hf_mig$\KB888302\SP2QFE\srvsvc.dll
+ 2004-11-30 12:47:18   8,704   ----a-w   c:\windows\$hf_mig$\KB888302\spmsg.dll
+ 2004-11-30 18:22:46   171,520   ----a-w   c:\windows\$hf_mig$\KB888302\spuninst.exe
+ 2004-11-30 18:22:46   21,504   ----a-w   c:\windows\$hf_mig$\KB888302\update\spcustom.dll
+ 2004-11-30 12:47:18   663,552   ----a-w   c:\windows\$hf_mig$\KB888302\update\update.exe
+ 2005-04-22 05:20:50   57,344   ----a-w   c:\windows\$hf_mig$\KB890046\SP2QFE\agentdpv.dll
+ 2005-05-17 00:44:58   18,944   ----a-w   c:\windows\$hf_mig$\KB890046\SP2QFE\spru0413.dll
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB890046\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB890046\spuninst.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB890046\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB890046\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB890046\update\updspapi.dll
+ 2004-11-30 12:47:18   8,704   ----a-w   c:\windows\$hf_mig$\KB891781\spmsg.dll
+ 2004-11-30 18:22:46   171,520   ----a-w   c:\windows\$hf_mig$\KB891781\spuninst.exe
+ 2004-11-30 18:22:46   21,504   ----a-w   c:\windows\$hf_mig$\KB891781\update\spcustom.dll
+ 2004-11-30 12:47:18   663,552   ----a-w   c:\windows\$hf_mig$\KB891781\update\update.exe
+ 2005-07-08 16:31:04   249,344   ----a-w   c:\windows\$hf_mig$\KB893756\SP2QFE\tapisrv.dll
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB893756\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB893756\spuninst.exe
+ 2005-07-07 17:27:08   30,720   ----a-w   c:\windows\$hf_mig$\KB893756\update\arpidfix.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB893756\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB893756\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB893756\update\updspapi.dll
+ 2005-05-26 23:26:50   10,752   ----a-w   c:\windows\$hf_mig$\KB896358\SP2QFE\hh.exe
+ 2005-05-27 02:11:38   41,472   ----a-w   c:\windows\$hf_mig$\KB896358\SP2QFE\hhsetup.dll
+ 2005-05-27 02:11:38   155,136   ----a-w   c:\windows\$hf_mig$\KB896358\SP2QFE\itircl.dll
+ 2005-05-27 02:11:38   137,216   ----a-w   c:\windows\$hf_mig$\KB896358\SP2QFE\itss.dll
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB896358\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB896358\spuninst.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB896358\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB896358\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB896358\update\updspapi.dll
+ 2005-06-11 00:17:13   57,856   ----a-w   c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB896423\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB896423\spuninst.exe
+ 2005-06-29 14:54:32   30,720   ----a-w   c:\windows\$hf_mig$\KB896423\update\arpidfix.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB896423\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB896423\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB896423\update\updspapi.dll
+ 2005-06-10 04:06:01   139,528   ----a-w   c:\windows\$hf_mig$\KB899591\SP2QFE\rdpwd.sys
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB899591\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB899591\spuninst.exe
+ 2005-06-29 14:54:32   30,720   ----a-w   c:\windows\$hf_mig$\KB899591\update\arpidfix.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB899591\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB899591\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB899591\update\updspapi.dll
+ 2006-02-15 00:30:07   142,464   ----a-w   c:\windows\$hf_mig$\KB900485\SP2QFE\aec.sys
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB900485\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB900485\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB900485\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB900485\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB900485\update\updspapi.dll
+ 2005-09-01 02:54:25   19,968   ----a-w   c:\windows\$hf_mig$\KB900725\SP2QFE\linkinfo.dll
+ 2005-09-23 03:27:39   8,499,712   ----a-w   c:\windows\$hf_mig$\KB900725\SP2QFE\shell32.dll
+ 2005-09-02 23:55:55   474,624   ----a-w   c:\windows\$hf_mig$\KB900725\SP2QFE\shlwapi.dll
+ 2005-09-27 00:47:55   23,040   ----a-w   c:\windows\$hf_mig$\KB900725\SP2QFE\spru0413.dll
+ 2005-09-01 02:54:25   292,352   ----a-w   c:\windows\$hf_mig$\KB900725\SP2QFE\winsrv.dll
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB900725\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB900725\spuninst.exe
+ 2005-09-26 15:36:24   30,720   ----a-w   c:\windows\$hf_mig$\KB900725\update\arpidfix.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB900725\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB900725\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB900725\update\updspapi.dll
+ 2005-09-10 01:54:10   2,068,480   ----a-w   c:\windows\$hf_mig$\KB901017\SP2QFE\cdosys.dll
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB901017\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB901017\spuninst.exe
+ 2005-09-09 14:26:26   30,720   ----a-w   c:\windows\$hf_mig$\KB901017\update\arpidfix.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB901017\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB901017\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB901017\update\updspapi.dll
+ 2005-06-29 01:54:27   254,976   ----a-w   c:\windows\$hf_mig$\KB901214\SP2QFE\icm32.dll
+ 2005-06-29 01:54:27   73,728   ----a-w   c:\windows\$hf_mig$\KB901214\SP2QFE\mscms.dll
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB901214\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB901214\spuninst.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB901214\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB901214\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB901214\update\updspapi.dll
+ 2005-07-26 04:36:41   225,792   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\catsrv.dll
+ 2005-07-26 04:36:41   625,152   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\catsrvut.dll
+ 2005-07-26 04:36:41   110,080   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\clbcatex.dll
+ 2005-07-26 04:36:42   498,688   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\clbcatq.dll
+ 2005-07-26 04:36:42   60,416   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\colbact.dll
+ 2005-07-26 04:36:42   195,072   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\comadmin.dll
+ 2005-07-26 04:36:42   97,792   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\comrepl.dll
+ 2005-07-26 04:36:43   1,267,200   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\comsvcs.dll
+ 2005-07-26 04:36:44   540,160   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\comuid.dll
+ 2005-07-26 04:36:44   243,200   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\es.dll
+ 2005-07-25 23:42:35   8,704   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\migregdb.exe
+ 2005-07-26 04:36:44   425,472   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\msdtcprx.dll
+ 2005-07-26 04:36:45   945,152   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\msdtctm.dll
+ 2005-07-26 04:36:45   161,280   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\msdtcuiu.dll
+ 2005-07-26 04:36:45   66,560   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\mtxclu.dll
+ 2005-07-26 04:36:45   91,136   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\mtxoci.dll
+ 2005-07-26 04:36:46   1,285,632   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\ole32.dll
+ 2005-07-26 04:36:46   74,752   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\olecli32.dll
+ 2005-07-26 04:36:46   37,376   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\olecnv32.dll
+ 2005-07-26 04:36:47   398,336   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\rpcss.dll
+ 2005-07-26 04:36:47   101,376   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\txflog.dll
+ 2005-07-26 04:36:47   11,776   ----a-w   c:\windows\$hf_mig$\KB902400\SP2QFE\xolehlp.dll
+ 2005-02-24 18:35:58   15,584   ----a-w   c:\windows\$hf_mig$\KB902400\spmsg.dll
+ 2005-02-24 18:35:58   213,216   ----a-w   c:\windows\$hf_mig$\KB902400\spuninst.exe
+ 2005-07-25 17:21:18   30,720   ----a-w   c:\windows\$hf_mig$\KB902400\update\arpidfix.exe
+ 2005-02-24 18:35:58   22,240   ----a-w   c:\windows\$hf_mig$\KB902400\update\spcustom.dll
+ 2005-02-24 18:35:58   727,776   ----a-w   c:\windows\$hf_mig$\KB902400\update\update.exe
+ 2005-02-24 18:36:00   390,368   ----a-w   c:\windows\$hf_mig$\KB902400\update\updspapi.dll
+ 2006-03-24 04:49:16   49,152   ----a-w   c:\windows\$hf_mig$\KB904942\SP2QFE\wdigest.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB904942\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB904942\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB904942\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB904942\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB904942\update\updspapi.dll
+ 2005-08-22 18:27:32   197,632   ----a-w   c:\windows\$hf_mig$\KB905414\SP2QFE\netman.dll
+ 2005-02-25 03:35:56   15,584   ----a-w   c:\windows\$hf_mig$\KB905414\spmsg.dll
+ 2005-02-25 03:35:56   213,216   ----a-w   c:\windows\$hf_mig$\KB905414\spuninst.exe
+ 2005-08-19 23:50:31   30,720   ----a-w   c:\windows\$hf_mig$\KB905414\update\arpidfix.exe
+ 2005-02-25 03:35:56   22,240   ----a-w   c:\windows\$hf_mig$\KB905414\update\spcustom.dll
+ 2005-02-25 03:35:57   727,776   ----a-w   c:\windows\$hf_mig$\KB905414\update\update.exe
+ 2005-02-25 03:35:58   390,368   ----a-w   c:\windows\$hf_mig$\KB905414\update\updspapi.dll
+ 2005-10-17 21:28:16   80,896   ----a-w   c:\windows\$hf_mig$\KB908519\SP2QFE\fontsub.dll
+ 2005-10-17 21:28:17   117,760   ----a-w   c:\windows\$hf_mig$\KB908519\SP2QFE\t2embed.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB908519\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB908519\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB908519\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB908519\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB908519\update\updspapi.dll
+ 2006-06-22 10:47:03   180,736   ----a-w   c:\windows\$hf_mig$\KB911280\SP2QFE\rasmans.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB911280\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB911280\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB911280\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB911280\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB911280\update\updspapi.dll
+ 2006-03-23 05:54:16   143,360   ----a-w   c:\windows\$hf_mig$\KB911562\SP2QFE\msadco.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB911562\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB911562\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB911562\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB911562\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB911562\update\updspapi.dll
+ 2006-01-04 04:19:36   68,096   ----a-w   c:\windows\$hf_mig$\KB911927\SP2QFE\webclnt.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB911927\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB911927\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB911927\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB911927\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB911927\update\updspapi.dll
+ 2006-05-19 14:34:09   112,128   ----a-w   c:\windows\$hf_mig$\KB914388\SP2QFE\dhcpcsvc.dll
+ 2006-05-19 14:34:09   147,456   ----a-w   c:\windows\$hf_mig$\KB914388\SP2QFE\dnsapi.dll
+ 2006-05-19 14:34:09   95,232   ----a-w   c:\windows\$hf_mig$\KB914388\SP2QFE\iphlpapi.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB914388\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB914388\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB914388\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB914388\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB914388\update\updspapi.dll
+ 2006-07-14 15:52:22   121,856   ----a-w   c:\windows\$hf_mig$\KB915865\SP2QFE\xmllite.dll
+ 2005-10-12 23:12:25   14,048   ----a-w   c:\windows\$hf_mig$\KB915865\spmsg.dll
+ 2005-10-12 23:12:26   213,216   ----a-w   c:\windows\$hf_mig$\KB915865\spuninst.exe
+ 2005-10-12 23:12:25   22,752   ----a-w   c:\windows\$hf_mig$\KB915865\update\spcustom.dll
+ 2005-10-12 23:12:28   716,000   ----a-w   c:\windows\$hf_mig$\KB915865\update\update.exe
+ 2005-10-12 23:12:33   371,424   ----a-w   c:\windows\$hf_mig$\KB915865\update\updspapi.dll
+ 2006-03-17 01:08:10   262,656   ----a-w   c:\windows\$hf_mig$\KB916595\SP2QFE\http.sys
+ 2005-10-12 23:26:03   15,584   ----a-w   c:\windows\$hf_mig$\KB916595\spmsg.dll
+ 2005-10-12 23:26:03   216,800   ----a-w   c:\windows\$hf_mig$\KB916595\spuninst.exe
+ 2005-10-12 23:26:03   22,752   ----a-w   c:\windows\$hf_mig$\KB916595\update\spcustom.dll
+ 2005-10-12 23:26:05   725,728   ----a-w   c:\windows\$hf_mig$\KB916595\update\update.exe
+ 2005-10-12 23:26:11   389,856   ----a-w   c:\windows\$hf_mig$\KB916595\update\updspapi.dll
+ 2006-11-27 15:18:57   539,136   ----a-w   c:\windows\$hf_mig$\KB918118\SP2QFE\msftedit.dll
+ 2006-11-27 15:18:57   433,664   ----a-w   c:\windows\$hf_mig$\KB918118\SP2QFE\riched20.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB918118\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB918118\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB918118\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB918118\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB918118\update\updspapi.dll
+ 2006-06-01 19:46:13   163,840   ----a-w   c:\windows\$hf_mig$\KB918439\SP2QFE\jgdw400.dll
+ 2006-06-01 19:46:13   27,648   ----a-w   c:\windows\$hf_mig$\KB918439\SP2QFE\jgpl400.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB918439\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB918439\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB918439\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB918439\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB918439\update\updspapi.dll
+ 2006-10-12 13:56:47   42,496   ----a-w   c:\windows\$hf_mig$\KB920213\SP2QFE\agentdp2.dll
+ 2006-10-12 13:56:47   57,344   ----a-w   c:\windows\$hf_mig$\KB920213\SP2QFE\agentdpv.dll
+ 2006-10-12 11:54:07   256,512   ----a-w   c:\windows\$hf_mig$\KB920213\SP2QFE\agentsvr.exe
+ 2006-10-16 11:19:21   266,240   ----a-w   c:\windows\$hf_mig$\KB920213\SP2QFE\spru0413.dll
+ 2005-10-12 23:26:03   15,584   ----a-w   c:\windows\$hf_mig$\KB920213\spmsg.dll
+ 2005-10-12 23:26:03   216,800   ----a-w   c:\windows\$hf_mig$\KB920213\spuninst.exe
+ 2005-10-12 23:26:03   22,752   ----a-w   c:\windows\$hf_mig$\KB920213\update\spcustom.dll
+ 2005-10-12 23:26:05   725,728   ----a-w   c:\windows\$hf_mig$\KB920213\update\update.exe
+ 2005-10-12 23:26:11   389,856   ----a-w   c:\windows\$hf_mig$\KB920213\update\updspapi.dll
+ 2006-07-21 08:31:26   72,704   ----a-w   c:\windows\$hf_mig$\KB920670\SP2QFE\hlink.dll
+ 2005-10-12 23:26:03   15,584   ----a-w   c:\windows\$hf_mig$\KB920670\spmsg.dll
+ 2005-10-12 23:26:03   216,800   ----a-w   c:\windows\$hf_mig$\KB920670\spuninst.exe
+ 2005-10-12 23:26:03   22,752   ----a-w   c:\windows\$hf_mig$\KB920670\update\spcustom.dll
+ 2005-10-12 23:26:05   725,728   ----a-w   c:\windows\$hf_mig$\KB920670\update\update.exe
+ 2005-10-12 23:26:11   389,856   ----a-w   c:\windows\$hf_mig$\KB920670\update\updspapi.dll
+ 2006-06-26 17:47:47   147,456   ----a-w   c:\windows\$hf_mig$\KB920683\SP2QFE\dnsapi.dll
+ 2006-06-26 17:47:47   7,680   ----a-w   c:\windows\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB920683\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB920683\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB920683\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB920683\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB920683\update\updspapi.dll
+ 2006-06-22 05:23:06   69,120   ----a-w   c:\windows\$hf_mig$\KB920685\SP2QFE\ciodm.dll
+ 2006-06-22 05:23:07   1,440,768   ----a-w   c:\windows\$hf_mig$\KB920685\SP2QFE\query.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB920685\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB920685\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB920685\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB920685\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB920685\update\updspapi.dll
+ 2006-06-14 08:50:19   172,416   ----a-w   c:\windows\$hf_mig$\KB920872\SP2QFE\kmixer.sys
+ 2006-06-14 08:50:19   6,272   ----a-w   c:\windows\$hf_mig$\KB920872\SP2QFE\splitter.sys
+ 2006-06-14 09:17:04   82,944   ----a-w   c:\windows\$hf_mig$\KB920872\SP2QFE\wdmaud.sys
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB920872\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB920872\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB920872\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB920872\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB920872\update\updspapi.dll
+ 2006-10-13 12:43:46   64,000   ----a-w   c:\windows\$hf_mig$\KB923980\SP2QFE\nwapi32.dll
+ 2006-10-13 12:43:46   144,384   ----a-w   c:\windows\$hf_mig$\KB923980\SP2QFE\nwprovau.dll
+ 2006-10-13 10:39:12   163,456   ----a-w   c:\windows\$hf_mig$\KB923980\SP2QFE\nwrdr.sys
+ 2006-10-13 12:43:46   65,536   ----a-w   c:\windows\$hf_mig$\KB923980\SP2QFE\nwwks.dll
+ 2005-10-12 23:26:03   15,584   ----a-w   c:\windows\$hf_mig$\KB923980\spmsg.dll
+ 2005-10-12 23:26:03   216,800   ----a-w   c:\windows\$hf_mig$\KB923980\spuninst.exe
+ 2005-10-12 23:26:03   22,752   ----a-w   c:\windows\$hf_mig$\KB923980\update\spcustom.dll
+ 2005-10-12 23:26:05   725,728   ----a-w   c:\windows\$hf_mig$\KB923980\update\update.exe
+ 2005-10-12 23:26:11   389,856   ----a-w   c:\windows\$hf_mig$\KB923980\update\updspapi.dll
+ 2006-08-17 12:43:48   731,648   ----a-w   c:\windows\$hf_mig$\KB924270\SP2QFE\lsasrv.dll
+ 2006-08-17 12:43:48   337,408   ----a-w   c:\windows\$hf_mig$\KB924270\SP2QFE\netapi32.dll
+ 2006-08-17 12:43:48   132,096   ----a-w   c:\windows\$hf_mig$\KB924270\SP2QFE\wkssvc.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB924270\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB924270\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB924270\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB924270\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB924270\update\updspapi.dll
+ 2006-09-04 06:15:30   1,497,088   ----a-w   c:\windows\$hf_mig$\KB924496\SP2QFE\shdocvw.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB924496\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB924496\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB924496\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB924496\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB924496\update\updspapi.dll
+ 2006-10-04 14:07:10   73,216   ----a-w   c:\windows\$hf_mig$\KB925720\SP2QFE\magnify.exe
+ 2006-10-04 14:07:09   54,784   ----a-w   c:\windows\$hf_mig$\KB925720\SP2QFE\narrator.exe
+ 2006-10-04 14:07:11   216,064   ----a-w   c:\windows\$hf_mig$\KB925720\SP2QFE\osk.exe
+ 2006-10-04 14:11:57   36,352   ----a-w   c:\windows\$hf_mig$\KB925720\SP2QFE\umandlg.dll
+ 2006-10-04 14:07:10   50,176   ----a-w   c:\windows\$hf_mig$\KB925720\SP2QFE\utilman.exe
+ 2005-10-12 23:26:03   15,584   ----a-w   c:\windows\$hf_mig$\KB925720\spmsg.dll
+ 2005-10-12 23:26:03   216,800   ----a-w   c:\windows\$hf_mig$\KB925720\spuninst.exe
+ 2005-10-12 23:26:03   22,752   ----a-w   c:\windows\$hf_mig$\KB925720\update\spcustom.dll
+ 2005-10-12 23:26:05   725,728   ----a-w   c:\windows\$hf_mig$\KB925720\update\update.exe
+ 2005-10-12 23:26:11   389,856   ----a-w   c:\windows\$hf_mig$\KB925720\update\updspapi.dll
+ 2007-03-08 15:51:45   282,112   ----a-w   c:\windows\$hf_mig$\KB925902\SP2QFE\gdi32.dll
+ 2007-03-08 15:51:45   40,960   ----a-w   c:\windows\$hf_mig$\KB925902\SP2QFE\mf3216.dll
+ 2007-03-08 15:51:45   579,584   ----a-w   c:\windows\$hf_mig$\KB925902\SP2QFE\user32.dll
+ 2007-03-08 15:49:42   1,844,096   ----a-w   c:\windows\$hf_mig$\KB925902\SP2QFE\win32k.sys
+ 2006-01-19 19:29:39   15,584   ----a-w   c:\windows\$hf_mig$\KB925902\spmsg.dll
+ 2006-01-19 19:29:39   216,800   ----a-w   c:\windows\$hf_mig$\KB925902\spuninst.exe
+ 2006-01-19 19:29:39   22,752   ----a-w   c:\windows\$hf_mig$\KB925902\update\spcustom.dll
+ 2006-01-19 19:29:39   725,728   ----a-w   c:\windows\$hf_mig$\KB925902\update\update.exe
+ 2006-01-19 19:29:40   389,856   ----a-w   c:\windows\$hf_mig$\KB925902\update\updspapi.dll
+ 2006-10-20 01:41:24   714,752   ----a-w   c:\windows\$hf_mig$\KB926255\SP2QFE\sxs.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB926255\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB926255\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB926255\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB926255\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB926255\update\updspapi.dll
+ 2006-10-16 17:16:18   124,928   ----a-w   c:\windows\$hf_mig$\KB926436\SP2QFE\oledlg.dll
+ 2005-10-12 23:26:03   15,584   ----a-w   c:\windows\$hf_mig$\KB926436\spmsg.dll
+ 2005-10-12 23:26:03   216,800   ----a-w   c:\windows\$hf_mig$\KB926436\spuninst.exe
+ 2005-10-12 23:26:03   22,752   ----a-w   c:\windows\$hf_mig$\KB926436\update\spcustom.dll
+ 2005-10-12 23:26:05   725,728   ----a-w   c:\windows\$hf_mig$\KB926436\update\update.exe
+ 2005-10-12 23:26:11   389,856   ----a-w   c:\windows\$hf_mig$\KB926436\update\updspapi.dll
+ 2007-05-16 15:31:04   86,528   ----a-w   c:\windows\$hf_mig$\KB929123\SP2QFE\directdb.dll
+ 2007-05-16 15:31:05   683,520   ----a-w   c:\windows\$hf_mig$\KB929123\SP2QFE\inetcomm.dll
+ 2007-05-16 15:31:06   1,314,816   ----a-w   c:\windows\$hf_mig$\KB929123\SP2QFE\msoe.dll
+ 2007-05-16 15:31:07   510,976   ----a-w   c:\windows\$hf_mig$\KB929123\SP2QFE\wab32.dll
+ 2007-05-16 15:31:07   85,504   ----a-w   c:\windows\$hf_mig$\KB929123\SP2QFE\wabimp.dll
+ 2006-01-19 19:29:39   15,584   ----a-w   c:\windows\$hf_mig$\KB929123\spmsg.dll
+ 2006-01-19 19:29:39   216,800   ----a-w   c:\windows\$hf_mig$\KB929123\spuninst.exe
+ 2006-01-19 19:29:39   22,752   ----a-w   c:\windows\$hf_mig$\KB929123\update\spcustom.dll
+ 2006-01-19 19:29:39   725,728   ----a-w   c:\windows\$hf_mig$\KB929123\update\update.exe
+ 2006-01-19 19:29:40   389,856   ----a-w   c:\windows\$hf_mig$\KB929123\update\updspapi.dll
+ 2007-03-17 13:47:19   293,376   ----a-w   c:\windows\$hf_mig$\KB930178\SP2QFE\winsrv.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB930178\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB930178\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB930178\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB930178\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB930178\update\updspapi.dll
+ 2007-02-05 20:21:39   185,344   ----a-w   c:\windows\$hf_mig$\KB931261\SP2QFE\upnphost.dll
+ 2006-01-19 19:29:39   15,584   ----a-w   c:\windows\$hf_mig$\KB931261\spmsg.dll
+ 2006-01-19 19:29:39   216,800   ----a-w   c:\windows\$hf_mig$\KB931261\spuninst.exe
+ 2006-01-19 19:29:39   22,752   ----a-w   c:\windows\$hf_mig$\KB931261\update\spcustom.dll
+ 2006-01-19 19:29:39   725,728   ----a-w   c:\windows\$hf_mig$\KB931261\update\update.exe
+ 2006-01-19 19:29:40   389,856   ----a-w   c:\windows\$hf_mig$\KB931261\update\updspapi.dll
+ 2007-03-09 14:00:49   57,344   ----a-w   c:\windows\$hf_mig$\KB932168\SP2QFE\agentdpv.dll
+ 2007-03-09 11:51:35   266,240   ----a-w   c:\windows\$hf_mig$\KB932168\SP2QFE\spru0413.dll
+ 2006-01-19 19:29:39   15,584   ----a-w   c:\windows\$hf_mig$\KB932168\spmsg.dll
+ 2006-01-19 19:29:39   216,800   ----a-w   c:\windows\$hf_mig$\KB932168\spuninst.exe
+ 2006-01-19 19:29:39   22,752   ----a-w   c:\windows\$hf_mig$\KB932168\update\spcustom.dll
+ 2006-01-19 19:29:39   725,728   ----a-w   c:\windows\$hf_mig$\KB932168\update\update.exe
+ 2006-01-19 19:29:40   389,856   ----a-w   c:\windows\$hf_mig$\KB932168\update\updspapi.dll
+ 2008-02-26 11:50:02   297,984   ----a-w   c:\windows\$hf_mig$\KB932823-v3\SP2QFE\msctf.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB932823-v3\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB932823-v3\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB932823-v3\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB932823-v3\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB932823-v3\update\updspapi.dll
+ 2007-04-25 20:33:41   144,896   ----a-w   c:\windows\$hf_mig$\KB935840\SP2QFE\schannel.dll
+ 2006-01-19 19:29:39   15,584   ----a-w   c:\windows\$hf_mig$\KB935840\spmsg.dll
+ 2006-01-19 19:29:39   216,800   ----a-w   c:\windows\$hf_mig$\KB935840\spuninst.exe
+ 2006-01-19 19:29:39   22,752   ----a-w   c:\windows\$hf_mig$\KB935840\update\spcustom.dll
+ 2006-01-19 19:29:39   725,728   ----a-w   c:\windows\$hf_mig$\KB935840\update\update.exe
+ 2006-01-19 19:29:40   389,856   ----a-w   c:\windows\$hf_mig$\KB935840\update\updspapi.dll
+ 2007-06-26 06:08:06   1,104,896   ----a-w   c:\windows\$hf_mig$\KB936021\SP2QFE\msxml3.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB936021\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB936021\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB936021\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB936021\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB936021\update\updspapi.dll
+ 2007-04-23 10:14:23   364,160   ----a-w   c:\windows\$hf_mig$\KB936357\SP2QFE\update.sys
+ 2006-01-19 19:29:39   15,584   ----a-w   c:\windows\$hf_mig$\KB936357\spmsg.dll
+ 2006-01-19 19:29:39   216,800   ----a-w   c:\windows\$hf_mig$\KB936357\spuninst.exe
+ 2006-01-19 19:29:39   22,752   ----a-w   c:\windows\$hf_mig$\KB936357\update\spcustom.dll
+ 2006-01-19 19:29:39   725,728   ----a-w   c:\windows\$hf_mig$\KB936357\update\update.exe
+ 2006-01-19 19:29:40   389,856   ----a-w   c:\windows\$hf_mig$\KB936357\update\updspapi.dll
+ 2007-07-12 23:28:55   765,952   ----a-w   c:\windows\$hf_mig$\KB938127-IE7\SP2QFE\vgx.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB938127-IE7\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB938127-IE7\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB938127-IE7\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB938127-IE7\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB938127-IE7\update\updspapi.dll
+ 2007-06-26 14:47:22   851,968   ----a-w   c:\windows\$hf_mig$\KB938127\SP2QFE\vgx.dll
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB938127\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB938127\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB938127\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB938127\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB938127\update\updspapi.dll
+ 2007-11-30 12:39:46   18,808   ----a-w   c:\windows\$hf_mig$\KB938464\spmsg.dll
+ 2007-11-30 12:39:46   234,872   ----a-w   c:\windows\$hf_mig$\KB938464\spuninst.exe
+ 2007-11-30 12:39:46   26,488   ----a-w   c:\windows\$hf_mig$\KB938464\update\spcustom.dll
+ 2007-11-30 11:19:43   765,304   ----a-w   c:\windows\$hf_mig$\KB938464\update\update.exe
+ 2007-11-30 12:39:47   401,272   ----a-w   c:\windows\$hf_mig$\KB938464\update\updspapi.dll
+ 2007-06-13 13:12:27   1,036,800   ----a-w   c:\windows\$hf_mig$\KB938828\SP2QFE\explorer.exe
+ 2005-10-12 23:20:05   15,584   ----a-w   c:\windows\$hf_mig$\KB938828\spmsg.dll
+ 2005-10-12 23:20:07   216,800   ----a-w   c:\windows\$hf_mig$\KB938828\spuninst.exe
+ 2005-10-12 23:20:05   22,752   ----a-w   c:\windows\$hf_mig$\KB938828\update\spcustom.dll
+ 2005-10-12 23:20:10   725,728   ----a-w   c:\windows\$hf_mig$\KB938828\update\update.exe
+ 2005-10-12 23:20:16   389,856   ----a-w   c:\windows\$hf_mig$\KB938828\update\updspapi.dll
+ 2007-08-21 06:26:15   683,520   ----a-w   c:\windows\$hf_mig$\KB941202\SP2QFE\inetcomm.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB941202\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB941202\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB941202\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB941202\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB941202\update\updspapi.dll
+ 2007-10-30 16:53:32   360,832   ----a-w   c:\windows\$hf_mig$\KB941644\SP2QFE\tcpip.sys
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB941644\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB941644\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB941644\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB941644\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB941644\update\updspapi.dll
+ 2008-03-20 08:01:24   1,846,016   ----a-w   c:\windows\$hf_mig$\KB941693\SP2QFE\win32k.sys
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB941693\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB941693\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB941693\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB941693\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB941693\update\updspapi.dll
+ 2007-10-25 16:44:49   8,507,392   ----a-w   c:\windows\$hf_mig$\KB943460\SP2QFE\shell32.dll
+ 2007-10-29 14:07:26   369,664   ----a-w   c:\windows\$hf_mig$\KB943460\SP2QFE\spru0413.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB943460\spmsg.dll
+ 2007-03-06 01:58:27   216,800   ----a-w   c:\windows\$hf_mig$\KB943460\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB943460\update\spcustom.dll
+ 2007-03-06 01:58:45   725,728   ----a-w   c:\windows\$hf_mig$\KB943460\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB943460\update\updspapi.dll
+ 2007-11-07 09:51:06   732,160   ----a-w   c:\windows\$hf_mig$\KB943485\SP2QFE\lsasrv.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB943485\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB943485\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB943485\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB943485\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB943485\update\updspapi.dll
+ 2007-12-18 14:33:29   450,560   ----a-w   c:\windows\$hf_mig$\KB944338\SP2QFE\jscript.dll
+ 2007-12-18 14:33:29   417,792   ----a-w   c:\windows\$hf_mig$\KB944338\SP2QFE\vbscript.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB944338\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB944338\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB944338\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB944338\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB944338\update\updspapi.dll
+ 2008-02-20 05:23:40   147,968   ----a-w   c:\windows\$hf_mig$\KB945553\SP2QFE\dnsapi.dll
+ 2008-02-20 18:53:42   45,568   ----a-w   c:\windows\$hf_mig$\KB945553\SP2QFE\dnsrslvr.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB945553\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB945553\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB945553\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB945553\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB945553\update\updspapi.dll
+ 2007-12-18 09:38:59   179,712   ----a-w   c:\windows\$hf_mig$\KB946026\SP2QFE\mrxdav.sys
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB946026\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB946026\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB946026\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB946026\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB946026\update\updspapi.dll
+ 2008-05-02 13:42:09   83,968   ----a-w   c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
+ 2008-05-02 14:05:59   83,968   ----a-w   c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
+ 2008-05-02 13:46:26   83,968   ----a-w   c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
+ 2007-11-30 12:39:46   18,808   ----a-w   c:\windows\$hf_mig$\KB946648\spmsg.dll
+ 2007-11-30 12:39:46   234,872   ----a-w   c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2007-11-30 12:39:46   26,488   ----a-w   c:\windows\$hf_mig$\KB946648\update\spcustom.dll
+ 2007-11-30 11:19:43   765,304   ----a-w   c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2007-11-30 12:39:47   401,272   ----a-w   c:\windows\$hf_mig$\KB946648\update\updspapi.dll
+ 2008-02-20 06:53:39   282,624   ----a-w   c:\windows\$hf_mig$\KB948590\SP2QFE\gdi32.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB948590\spmsg.dll
+ 2007-03-06 01:58:28   216,800   ----a-w   c:\windows\$hf_mig$\KB948590\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB948590\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB948590\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB948590\update\updspapi.dll
+ 2008-04-23 04:21:54   124,928   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\advpack.dll
+ 2008-04-23 04:21:54   347,136   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\dxtmsft.dll
+ 2008-04-23 04:21:54   214,528   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\dxtrans.dll
+ 2008-04-23 04:21:54   132,608   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\extmgr.dll
+ 2008-04-23 04:21:54   63,488   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\icardie.dll
+ 2008-04-22 08:02:19   70,656   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ie4uinit.exe
+ 2008-04-23 04:21:54   153,088   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieakeng.dll
+ 2008-04-23 04:21:54   230,400   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieaksie.dll
+ 2008-04-20 05:07:38   161,792   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38   2,455,488   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dat
+ 2008-04-23 04:21:54   383,488   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dll
+ 2008-04-23 04:21:54   388,608   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iedkcs32.dll
+ 2008-04-23 04:21:54   6,068,224   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieframe.dll
+ 2008-04-23 04:21:54   44,544   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iernonce.dll
+ 2008-04-23 04:21:54   267,776   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iertutil.dll
+ 2008-04-22 08:02:19   13,824   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieudinit.exe
+ 2008-04-22 08:02:46   625,664   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iexplore.exe
+ 2008-04-23 04:21:54   27,648   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\jsproxy.dll
+ 2008-04-23 04:21:54   459,264   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msfeeds.dll
+ 2008-04-23 04:21:54   52,224   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msfeedsbs.dll
+ 2008-04-23 04:21:55   3,593,728   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mshtml.dll
+ 2008-04-23 04:21:55   478,208   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mshtmled.dll
+ 2008-04-23 04:21:55   193,024   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msrating.dll
+ 2008-04-23 04:21:55   671,232   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mstime.dll
+ 2008-04-23 04:21:55   102,912   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\occache.dll
+ 2008-04-23 04:21:55   44,544   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\pngfilt.dll
+ 2008-04-23 04:21:55   105,984   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\url.dll
+ 2008-04-23 04:21:55   1,162,752   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\urlmon.dll
+ 2008-04-23 04:21:55   233,472   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\webcheck.dll
+ 2008-04-23 04:21:55   827,392   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:58:22   15,584   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\spmsg.dll
+ 2007-03-06 01:58:27   216,800   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\spuninst.exe
+ 2007-03-06 01:58:21   22,752   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\update\spcustom.dll
+ 2007-03-06 01:58:46   725,728   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\update\update.exe
+ 2007-03-06 01:59:37   389,856   ----a-w   c:\windows\$hf_mig$\KB950759-IE7\update\updspapi.dll
+ 2008-04-21 06:58:15   1,024,000   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\browseui.dll
+ 2008-04-21 06:58:15   151,552   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\cdfview.dll
+ 2008-04-21 06:58:16   1,057,280   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\danim.dll
+ 2008-04-21 06:58:16   357,888   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\dxtmsft.dll
+ 2008-04-21 06:58:17   205,312   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\dxtrans.dll
+ 2008-04-21 06:58:17   55,808   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\extmgr.dll
+ 2008-04-17 10:46:59   18,432   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\iedw.exe
+ 2008-04-21 06:58:17   251,904   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\iepeers.dll
+ 2008-04-21 06:58:17   96,768   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\inseng.dll
+ 2008-04-21 06:58:17   16,384   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\jsproxy.dll
+ 2008-04-21 06:58:21   3,087,872   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\mshtml.dll
+ 2008-04-21 06:58:22   449,024   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\mshtmled.dll
+ 2008-04-21 06:58:22   146,432   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\msrating.dll
+ 2008-04-21 06:58:22   532,480   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\mstime.dll
+ 2008-04-21 06:58:22   39,424   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\pngfilt.dll
+ 2008-04-21 06:58:23   1,499,136   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\shdocvw.dll
+ 2008-04-21 06:58:24   474,624   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\shlwapi.dll
+ 2008-04-17 11:03:55   370,176   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\spru0413.dll
+ 2008-04-21 06:58:24   620,032   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\urlmon.dll
+ 2008-04-21 06:58:25   669,696   ----a-w   c:\windows\$hf_mig$\KB950759\SP2QFE\wininet.dll
+ 2008-04-21 06:57:04   3,087,872   ----a-w   c:\windows\$hf_mig$\KB950759\SP3GDR\mshtml.dll
+ 2008-04-21 06:57:05   669,184   ----a-w   c:\windows\$hf_mig$\KB950759\SP3GDR\wininet.dll
+ 2008-04-21 06:41:43   3,088,384   ----a-w   c:\windows\$hf_mig$\KB950759\SP3QFE\mshtml.dll
+ 2008-04-21 06:41:44   669,696   ----a-w   c:\windows\$hf_mig$\KB950759\SP3QFE\wininet.dll
+ 2007-11-30 12:39:46   18,808   ----a-w   c:\windows\$hf_mig$\KB950759\spmsg.dll
+ 2007-11-30 12:39:46   234,872   ----a-w   c:\windows\$hf_mig$\KB950759\spuninst.exe
+ 2007-11-30 12:39:46   26,488   ----a-w   c:\windows\$hf_mig$\KB950759\update\spcustom.dll
+ 2007-11-30 12:
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 11:23:49 AM
+ 2006-03-02 12:00:00   169,472   -c----w   c:\windows\$NtServicePackUninstall$\sysmod.dll
+ 2006-03-02 12:00:00   107,520   -c----w   c:\windows\$NtServicePackUninstall$\sysocmgr.exe
+ 2006-03-02 12:00:00   993,280   -c----w   c:\windows\$NtServicePackUninstall$\syssetup.dll
+ 2005-10-17 21:21:57   118,272   -c----w   c:\windows\$NtServicePackUninstall$\t2embed.dll
+ 2006-03-02 12:00:00   14,976   -c----w   c:\windows\$NtServicePackUninstall$\tape.sys
+ 2006-03-02 12:00:00   859,648   -c----w   c:\windows\$NtServicePackUninstall$\tapi3.dll
+ 2006-03-02 12:00:00   181,760   -c----w   c:\windows\$NtServicePackUninstall$\tapi32.dll
+ 2005-07-08 16:29:37   249,344   -c----w   c:\windows\$NtServicePackUninstall$\tapisrv.dll
+ 2006-03-02 12:00:00   140,800   -c----w   c:\windows\$NtServicePackUninstall$\taskmgr.exe
+ 2008-06-20 10:45:13   360,320   -c----w   c:\windows\$NtServicePackUninstall$\tcpip.sys
+ 2008-06-20 09:52:06   225,920   -c----w   c:\windows\$NtServicePackUninstall$\tcpip6.sys
+ 2006-03-02 12:00:00   14,848   -c----w   c:\windows\$NtServicePackUninstall$\tcpmib.dll
+ 2006-03-02 12:00:00   46,080   -c----w   c:\windows\$NtServicePackUninstall$\tcpmon.dll
+ 2006-03-02 12:00:00   46,592   -c----w   c:\windows\$NtServicePackUninstall$\tcpmonui.dll
+ 2003-03-24 13:52:04   32,827   -c----w   c:\windows\$NtServicePackUninstall$\tcptest.exe
+ 2006-03-02 12:00:00   18,560   -c----w   c:\windows\$NtServicePackUninstall$\tdi.sys
+ 2006-03-02 12:00:00   12,040   -c----w   c:\windows\$NtServicePackUninstall$\tdpipe.sys
+ 2006-03-02 12:00:00   21,896   -c----w   c:\windows\$NtServicePackUninstall$\tdtcp.sys
+ 2005-05-11 02:31:47   79,360   -c----w   c:\windows\$NtServicePackUninstall$\telnet.exe
+ 2004-08-03 23:03:48   40,840   -c----w   c:\windows\$NtServicePackUninstall$\termdd.sys
+ 2006-03-02 12:00:00   358,912   -c----w   c:\windows\$NtServicePackUninstall$\termmgr.dll
+ 2006-03-02 12:00:00   297,472   -c----w   c:\windows\$NtServicePackUninstall$\termsrv.dll
+ 2006-03-02 12:00:00   390,144   -c----w   c:\windows\$NtServicePackUninstall$\themeui.dll
+ 2006-03-02 12:00:00   10,240   -c----w   c:\windows\$NtServicePackUninstall$\tmigrate.dll
+ 2006-03-02 12:00:00   347,648   -c----w   c:\windows\$NtServicePackUninstall$\tourstart.exe
+ 2006-03-02 12:00:00   347,648   -c----w   c:\windows\$NtServicePackUninstall$\tourstrt.exe
+ 2006-03-02 12:00:00   12,800   -c----w   c:\windows\$NtServicePackUninstall$\tracert.exe
+ 2006-03-02 12:00:00   11,264   -c----w   c:\windows\$NtServicePackUninstall$\tree.com
+ 2006-03-02 12:00:00   153,088   -c----w   c:\windows\$NtServicePackUninstall$\triedit.dll
+ 2006-03-02 12:00:00   90,624   -c----w   c:\windows\$NtServicePackUninstall$\trkwks.dll
+ 2006-03-02 12:00:00   94,208   -c----w   c:\windows\$NtServicePackUninstall$\tscfgwmi.dll
+ 2006-03-02 12:00:00   12,168   -c----w   c:\windows\$NtServicePackUninstall$\tsddd.dll
+ 2006-03-02 12:00:00   279,040   -c----w   c:\windows\$NtServicePackUninstall$\tshoot.dll
+ 2006-03-02 12:00:00   123,392   -c----w   c:\windows\$NtServicePackUninstall$\tsoc.dll
+ 2006-03-02 12:00:00   12,416   -c----w   c:\windows\$NtServicePackUninstall$\tunmp.sys
+ 2006-03-02 12:00:00   50,688   -c----w   c:\windows\$NtServicePackUninstall$\twain_32.dll
+ 2006-03-02 12:00:00   44,032   -c----w   c:\windows\$NtServicePackUninstall$\twext.dll
+ 2005-07-26 04:42:48   101,376   -c----w   c:\windows\$NtServicePackUninstall$\txflog.dll
+ 2008-07-14 11:09:18   62,976   -c----w   c:\windows\$NtServicePackUninstall$\tzchange.exe
+ 2004-08-03 21:07:44   44,672   -c----w   c:\windows\$NtServicePackUninstall$\uagp35.sys
+ 2006-03-02 12:00:00   66,176   -c----w   c:\windows\$NtServicePackUninstall$\udfs.sys
+ 2006-03-02 12:00:00   25,600   -c----w   c:\windows\$NtServicePackUninstall$\udhisapi.dll
+ 2006-03-02 12:00:00   305,664   -c----w   c:\windows\$NtServicePackUninstall$\ulib.dll
+ 2006-10-04 13:39:29   36,352   -c----w   c:\windows\$NtServicePackUninstall$\umandlg.dll
+ 2005-08-23 03:40:36   124,416   -c----w   c:\windows\$NtServicePackUninstall$\umpnpmgr.dll
+ 2007-03-22 18:24:06   376,832   -c----w   c:\windows\$NtServicePackUninstall$\unidrv.dll
+ 2007-03-22 19:03:54   749,568   -c----w   c:\windows\$NtServicePackUninstall$\unidrvui.dll
+ 2006-03-02 12:00:00   76,288   -c----w   c:\windows\$NtServicePackUninstall$\uniime.dll
+ 2006-03-02 12:00:00   78,336   -c----w   c:\windows\$NtServicePackUninstall$\unimdmat.dll
+ 2006-03-02 12:00:00   13,824   -c----w   c:\windows\$NtServicePackUninstall$\uniplat.dll
+ 2006-03-02 12:00:00   316,416   -c----w   c:\windows\$NtServicePackUninstall$\untfs.dll
+ 2007-04-23 10:32:54   364,160   -c----w   c:\windows\$NtServicePackUninstall$\update.sys
+ 2006-03-02 12:00:00   151,040   -c----w   c:\windows\$NtServicePackUninstall$\uploadm.exe
+ 2006-03-02 12:00:00   132,608   -c----w   c:\windows\$NtServicePackUninstall$\upnp.dll
+ 2006-03-02 12:00:00   16,896   -c----w   c:\windows\$NtServicePackUninstall$\upnpcont.exe
+ 2007-02-05 20:20:07   185,344   -c----w   c:\windows\$NtServicePackUninstall$\upnphost.dll
+ 2006-03-02 12:00:00   239,616   -c----w   c:\windows\$NtServicePackUninstall$\upnpui.dll
+ 2006-03-02 12:00:00   18,432   -c----w   c:\windows\$NtServicePackUninstall$\ups.exe
+ 2006-03-02 12:00:00   12,672   -c----w   c:\windows\$NtServicePackUninstall$\usb8023.sys
+ 2004-08-03 21:07:56   59,264   -c----w   c:\windows\$NtServicePackUninstall$\usbaudio.sys
+ 2006-03-02 12:00:00   23,808   -c----w   c:\windows\$NtServicePackUninstall$\usbcamd.sys
+ 2006-03-02 12:00:00   23,936   -c----w   c:\windows\$NtServicePackUninstall$\usbcamd2.sys
+ 2006-03-02 12:00:00   31,616   -c----w   c:\windows\$NtServicePackUninstall$\usbccgp.sys
+ 2006-03-02 12:00:00   26,624   -c----w   c:\windows\$NtServicePackUninstall$\usbehci.sys
+ 2006-03-02 12:00:00   57,600   -c----w   c:\windows\$NtServicePackUninstall$\usbhub.sys
+ 2006-03-02 12:00:00   16,000   -c----w   c:\windows\$NtServicePackUninstall$\usbintel.sys
+ 2006-03-02 12:00:00   16,896   -c----w   c:\windows\$NtServicePackUninstall$\usbmon.dll
+ 2006-03-02 12:00:00   17,024   -c----w   c:\windows\$NtServicePackUninstall$\usbohci.sys
+ 2006-03-02 12:00:00   142,976   -c----w   c:\windows\$NtServicePackUninstall$\usbport.sys
+ 2004-08-03 23:01:26   25,856   -c----w   c:\windows\$NtServicePackUninstall$\usbprint.sys
+ 2004-08-03 20:58:46   15,104   -c----w   c:\windows\$NtServicePackUninstall$\usbscan.sys
+ 2006-03-02 12:00:00   26,496   -c----w   c:\windows\$NtServicePackUninstall$\usbstor.sys
+ 2004-08-04 01:03:24   76,288   -c----w   c:\windows\$NtServicePackUninstall$\usbui.dll
+ 2007-03-08 15:39:10   579,072   -c----w   c:\windows\$NtServicePackUninstall$\user32.dll
+ 2006-03-02 12:00:00   728,576   -c----w   c:\windows\$NtServicePackUninstall$\userenv.dll
+ 2006-03-02 12:00:00   24,576   -c----w   c:\windows\$NtServicePackUninstall$\userinit.exe
+ 2006-03-02 12:00:00   406,528   -c----w   c:\windows\$NtServicePackUninstall$\usp10.dll
+ 2006-10-04 13:34:57   50,176   -c----w   c:\windows\$NtServicePackUninstall$\utilman.exe
+ 2006-03-02 12:00:00   219,136   -c----w   c:\windows\$NtServicePackUninstall$\uxtheme.dll
+ 2006-03-02 12:00:00   30,749   -c----w   c:\windows\$NtServicePackUninstall$\vbajet32.dll
+ 2007-08-13 16:54:10   413,696   -c----w   c:\windows\$NtServicePackUninstall$\vbscript.dll
+ 2006-03-02 12:00:00   26,112   -c----w   c:\windows\$NtServicePackUninstall$\vdmdbg.dll
+ 2006-03-02 12:00:00   51,712   -c----w   c:\windows\$NtServicePackUninstall$\vdmredir.dll
+ 2006-03-17 00:38:01   28,672   -c----w   c:\windows\$NtServicePackUninstall$\verclsid.exe
+ 2006-03-02 12:00:00   13,312   -c----w   c:\windows\$NtServicePackUninstall$\verifier.dll
+ 2006-03-02 12:00:00   18,944   -c----w   c:\windows\$NtServicePackUninstall$\version.dll
+ 2006-03-02 12:00:00   20,992   -c----w   c:\windows\$NtServicePackUninstall$\vga.sys
+ 2006-03-02 12:00:00   79,744   -c----w   c:\windows\$NtServicePackUninstall$\videoprt.sys
+ 2006-03-02 12:00:00   131,584   -c----w   c:\windows\$NtServicePackUninstall$\viewprov.dll
+ 2006-03-02 12:00:00   426,041   -c----w   c:\windows\$NtServicePackUninstall$\voicepad.dll
+ 2006-03-02 12:00:00   86,073   -c----w   c:\windows\$NtServicePackUninstall$\voicesub.dll
+ 2006-03-02 12:00:00   53,632   -c----w   c:\windows\$NtServicePackUninstall$\volsnap.sys
+ 2006-03-02 12:00:00   430,592   -c----w   c:\windows\$NtServicePackUninstall$\vssapi.dll
+ 2006-03-02 12:00:00   292,864   -c----w   c:\windows\$NtServicePackUninstall$\vssvc.exe
+ 2006-03-02 12:00:00   175,616   -c----w   c:\windows\$NtServicePackUninstall$\w32time.dll
+ 2006-03-02 12:00:00   15,872   -c----w   c:\windows\$NtServicePackUninstall$\w3ssl.dll
+ 2006-03-02 12:00:00   46,080   -c----w   c:\windows\$NtServicePackUninstall$\wab.exe
+ 2007-05-16 15:19:49   510,976   -c----w   c:\windows\$NtServicePackUninstall$\wab32.dll
+ 2006-03-02 12:00:00   257,536   -c----w   c:\windows\$NtServicePackUninstall$\wab32res.dll
+ 2006-03-02 12:00:00   32,768   -c----w   c:\windows\$NtServicePackUninstall$\wabfind.dll
+ 2007-05-16 15:19:50   85,504   -c----w   c:\windows\$NtServicePackUninstall$\wabimp.dll
+ 2006-03-02 12:00:00   30,208   -c----w   c:\windows\$NtServicePackUninstall$\wabmig.exe
+ 2006-03-02 12:00:00   34,560   -c----w   c:\windows\$NtServicePackUninstall$\wanarp.sys
+ 2006-03-02 12:00:00   17,664   -c----w   c:\windows\$NtServicePackUninstall$\watchdog.sys
+ 2006-03-02 12:00:00   208,896   -c----w   c:\windows\$NtServicePackUninstall$\wavemsp.dll
+ 2006-03-02 12:00:00   200,192   -c----w   c:\windows\$NtServicePackUninstall$\wbemcntl.dll
+ 2006-03-02 12:00:00   214,528   -c----w   c:\windows\$NtServicePackUninstall$\wbemcomn.dll
+ 2006-03-02 12:00:00   71,680   -c----w   c:\windows\$NtServicePackUninstall$\wbemcons.dll
+ 2006-03-02 12:00:00   530,944   -c----w   c:\windows\$NtServicePackUninstall$\wbemcore.dll
+ 2006-03-02 12:00:00   178,176   -c----w   c:\windows\$NtServicePackUninstall$\wbemdisp.dll
+ 2006-03-02 12:00:00   273,920   -c----w   c:\windows\$NtServicePackUninstall$\wbemess.dll
+ 2006-03-02 12:00:00   44,032   -c----w   c:\windows\$NtServicePackUninstall$\wbemperf.dll
+ 2006-03-02 12:00:00   18,944   -c----w   c:\windows\$NtServicePackUninstall$\wbemprox.dll
+ 2006-03-02 12:00:00   43,520   -c----w   c:\windows\$NtServicePackUninstall$\wbemsvc.dll
+ 2006-03-02 12:00:00   118,784   -c----w   c:\windows\$NtServicePackUninstall$\wbemtest.exe
+ 2006-03-02 12:00:00   197,120   -c----w   c:\windows\$NtServicePackUninstall$\wbemupgd.dll
+ 2006-03-24 04:40:00   49,152   -c----w   c:\windows\$NtServicePackUninstall$\wdigest.dll
+ 2004-08-03 23:03:40   23,552   -c----w   c:\windows\$NtServicePackUninstall$\wdmaud.drv
+ 2006-06-14 09:00:45   82,944   -c----w   c:\windows\$NtServicePackUninstall$\wdmaud.sys
+ 2006-06-14 09:00:45   82,944   -c----w   c:\windows\$NtServicePackUninstall$\wdmaud.sys.000
+ 2006-01-04 03:36:30   68,096   -c----w   c:\windows\$NtServicePackUninstall$\webclnt.dll
+ 2006-03-02 12:00:00   136,192   -c----w   c:\windows\$NtServicePackUninstall$\webvw.dll
+ 2006-03-02 12:00:00   66,048   -c----w   c:\windows\$NtServicePackUninstall$\wextract.exe
+ 2006-03-02 12:00:00   436,736   -c----w   c:\windows\$NtServicePackUninstall$\wiaacmgr.exe
+ 2006-03-02 12:00:00   464,896   -c----w   c:\windows\$NtServicePackUninstall$\wiadefui.dll
+ 2006-03-02 12:00:00   124,928   -c----w   c:\windows\$NtServicePackUninstall$\wiadss.dll
+ 2006-03-02 12:00:00   75,776   -c----w   c:\windows\$NtServicePackUninstall$\wiascr.dll
+ 2006-12-19 18:18:35   334,336   -c----w   c:\windows\$NtServicePackUninstall$\wiaservc.dll
+ 2006-03-02 12:00:00   593,408   -c----w   c:\windows\$NtServicePackUninstall$\wiashext.dll
+ 2006-03-02 12:00:00   111,104   -c----w   c:\windows\$NtServicePackUninstall$\wiavideo.dll
+ 2008-03-20 08:10:47   1,845,376   -c----w   c:\windows\$NtServicePackUninstall$\win32k.sys
+ 2006-03-02 12:00:00   102,400   -c----w   c:\windows\$NtServicePackUninstall$\win32spl.dll
+ 2006-03-02 12:00:00   937,984   -c----w   c:\windows\$NtServicePackUninstall$\winbrand.dll
+ 2006-10-24 10:30:06   716,288   -c----w   c:\windows\$NtServicePackUninstall$\windowscodecs.dll
+ 2006-10-24 10:29:50   352,256   -c----w   c:\windows\$NtServicePackUninstall$\windowscodecsext.dll
+ 2006-03-02 12:00:00   287,232   -c----w   c:\windows\$NtServicePackUninstall$\winhlp32.exe
+ 2006-03-02 12:00:00   351,232   -c----w   c:\windows\$NtServicePackUninstall$\winhttp.dll
+ 2006-03-02 12:00:00   32,768   -c----w   c:\windows\$NtServicePackUninstall$\winipsec.dll
+ 2006-03-02 12:00:00   504,832   -c----w   c:\windows\$NtServicePackUninstall$\winlogon.exe
+ 2006-03-02 12:00:00   179,200   -c----w   c:\windows\$NtServicePackUninstall$\winmm.dll
+ 2006-03-02 12:00:00   772,608   -c----w   c:\windows\$NtServicePackUninstall$\winntbbu.dll
+ 2006-03-02 12:00:00   16,896   -c----w   c:\windows\$NtServicePackUninstall$\winrnr.dll
+ 2006-03-02 12:00:00   99,840   -c----w   c:\windows\$NtServicePackUninstall$\winscard.dll
+ 2006-03-02 12:00:00   17,408   -c----w   c:\windows\$NtServicePackUninstall$\winshfhc.dll
+ 2006-03-02 12:00:00   146,944   -c----w   c:\windows\$NtServicePackUninstall$\winspool.drv
+ 2007-03-17 13:45:54   293,376   -c----w   c:\windows\$NtServicePackUninstall$\winsrv.dll
+ 2006-03-02 12:00:00   53,760   -c----w   c:\windows\$NtServicePackUninstall$\winsta.dll
+ 2006-03-02 12:00:00   176,640   -c----w   c:\windows\$NtServicePackUninstall$\wintrust.dll
+ 2006-03-02 12:00:00   5,632   -c----w   c:\windows\$NtServicePackUninstall$\winver.exe
+ 2006-08-17 12:30:16   132,096   -c----w   c:\windows\$NtServicePackUninstall$\wkssvc.dll
+ 2006-03-02 12:00:00   172,544   -c----w   c:\windows\$NtServicePackUninstall$\wldap32.dll
+ 2006-03-02 12:00:00   93,696   -c----w   c:\windows\$NtServicePackUninstall$\wlnotify.dll
+ 2006-03-02 12:00:00   5,632   -c----w   c:\windows\$NtServicePackUninstall$\wmi.dll
+ 2006-03-02 12:00:00   196,608   -c----w   c:\windows\$NtServicePackUninstall$\wmiadap.exe
+ 2006-03-02 12:00:00   7,168   -c----w   c:\windows\$NtServicePackUninstall$\wmiapres.dll
+ 2006-03-02 12:00:00   89,088   -c----w   c:\windows\$NtServicePackUninstall$\wmiaprpl.dll
+ 2006-03-02 12:00:00   126,464   -c----w   c:\windows\$NtServicePackUninstall$\wmiapsrv.exe
+ 2006-03-02 12:00:00   60,928   -c----w   c:\windows\$NtServicePackUninstall$\wmicookr.dll
+ 2006-03-02 12:00:00   140,800   -c----w   c:\windows\$NtServicePackUninstall$\wmidcprv.dll
+ 2006-03-02 12:00:00   156,672   -c----w   c:\windows\$NtServicePackUninstall$\wmipcima.dll
+ 2006-03-02 12:00:00   132,096   -c----w   c:\windows\$NtServicePackUninstall$\wmipdskq.dll
+ 2006-03-02 12:00:00   62,464   -c----w   c:\windows\$NtServicePackUninstall$\wmipiprt.dll
+ 2006-03-02 12:00:00   62,976   -c----w   c:\windows\$NtServicePackUninstall$\wmipjobj.dll
+ 2006-03-02 12:00:00   144,896   -c----w   c:\windows\$NtServicePackUninstall$\wmiprov.dll
+ 2006-03-02 12:00:00   437,248   -c----w   c:\windows\$NtServicePackUninstall$\wmiprvsd.dll
+ 2006-03-02 12:00:00   218,112   -c----w   c:\windows\$NtServicePackUninstall$\wmiprvse.exe
+ 2006-03-02 12:00:00   41,472   -c----w   c:\windows\$NtServicePackUninstall$\wmipsess.dll
+ 2006-03-02 12:00:00   145,408   -c----w   c:\windows\$NtServicePackUninstall$\wmisvc.dll
+ 2006-03-02 12:00:00   98,304   -c----w   c:\windows\$NtServicePackUninstall$\wmiutils.dll
+ 2006-03-02 12:00:00   167,936   -c----w   c:\windows\$NtServicePackUninstall$\wmm2ae.dll
+ 2006-03-02 12:00:00   4,096   -c----w   c:\windows\$NtServicePackUninstall$\wmm2eres.dll
+ 2006-03-02 12:00:00   7,680   -c----w   c:\windows\$NtServicePackUninstall$\wmm2ext.dll
+ 2006-03-02 12:00:00   402,432   -c----w   c:\windows\$NtServicePackUninstall$\wmm2filt.dll
+ 2006-03-02 12:00:00   502,272   -c----w   c:\windows\$NtServicePackUninstall$\wmm2fxa.dll
+ 2006-03-02 12:00:00   325,632   -c----w   c:\windows\$NtServicePackUninstall$\wmm2fxb.dll
+ 2006-03-02 12:00:00   4,277,248   -c----w   c:\windows\$NtServicePackUninstall$\wmm2res.dll
+ 2006-03-02 12:00:00   6,144   -c----w   c:\windows\$NtServicePackUninstall$\wmm2res2.dll
+ 2006-03-02 12:00:00   20,480   -c----w   c:\windows\$NtServicePackUninstall$\wmpcd.dll
+ 2006-03-02 12:00:00   20,480   -c----w   c:\windows\$NtServicePackUninstall$\wmpcore.dll
+ 2006-10-24 10:30:00   276,992   -c----w   c:\windows\$NtServicePackUninstall$\wmphoto.dll
+ 2006-03-02 12:00:00   20,480   -c----w   c:\windows\$NtServicePackUninstall$\wmpui.dll
+ 2006-03-02 12:00:00   115,200   -c----w   c:\windows\$NtServicePackUninstall$\wmsdmoe.dll
+ 2006-03-02 12:00:00   303,616   -c----w   c:\windows\$NtServicePackUninstall$\wmstream.dll
+ 2006-03-02 12:00:00   217,600   -c----w   c:\windows\$NtServicePackUninstall$\wordpad.exe
+ 2006-03-02 12:00:00   264,704   -c----w   c:\windows\$NtServicePackUninstall$\wow32.dll
+ 2006-03-02 12:00:00   32,256   -c----w   c:\windows\$NtServicePackUninstall$\wpabaln.exe
+ 2006-03-02 12:00:00   32,768   -c----w   c:\windows\$NtServicePackUninstall$\wpnpinst.exe
+ 2006-03-02 12:00:00   82,944   -c----w   c:\windows\$NtServicePackUninstall$\ws2_32.dll
+ 2006-03-02 12:00:00   19,968   -c----w   c:\windows\$NtServicePackUninstall$\ws2help.dll
+ 2006-03-02 12:00:00   13,824   -c----w   c:\windows\$NtServicePackUninstall$\wscntfy.exe
+ 2006-03-02 12:00:00   114,688   -c----w   c:\windows\$NtServicePackUninstall$\wscript.exe
+ 2006-03-02 12:00:00   81,408   -c----w   c:\windows\$NtServicePackUninstall$\wscsvc.dll
+ 2006-03-02 12:00:00   108,032   -c----w   c:\windows\$NtServicePackUninstall$\wshbth.dll
+ 2006-03-02 12:00:00   28,672   -c----w   c:\windows\$NtServicePackUninstall$\wshcon.dll
+ 2006-03-02 12:00:00   65,536   -c----w   c:\windows\$NtServicePackUninstall$\wshext.dll
+ 2006-03-02 12:00:00   14,336   -c----w   c:\windows\$NtServicePackUninstall$\wship6.dll
+ 2004-08-04 01:03:26   8,192   -c----w   c:\windows\$NtServicePackUninstall$\wshirda.dll
+ 2006-03-02 12:00:00   11,776   -c----w   c:\windows\$NtServicePackUninstall$\wshrm.dll
+ 2006-03-02 12:00:00   19,968   -c----w   c:\windows\$NtServicePackUninstall$\wshtcpip.dll
+ 2006-03-02 12:00:00   42,496   -c----w   c:\windows\$NtServicePackUninstall$\wsnmp32.dll
+ 2006-03-02 12:00:00   24,576   -c----w   c:\windows\$NtServicePackUninstall$\wsock32.dll
+ 2006-03-02 12:00:00   51,200   -c----w   c:\windows\$NtServicePackUninstall$\wstdecod.dll
+ 2006-03-02 12:00:00   18,432   -c----w   c:\windows\$NtServicePackUninstall$\wtsapi32.dll
+ 2006-03-02 12:00:00   167,936   -c----w   c:\windows\$NtServicePackUninstall$\wuauclt1.exe
+ 2006-03-02 12:00:00   183,808   -c----w   c:\windows\$NtServicePackUninstall$\wuaueng1.dll
+ 2006-03-02 12:00:00   6,656   -c----w   c:\windows\$NtServicePackUninstall$\wuauserv.dll
+ 2006-03-02 12:00:00   379,392   -c----w   c:\windows\$NtServicePackUninstall$\wzcdlg.dll
+ 2006-03-02 12:00:00   51,712   -c----w   c:\windows\$NtServicePackUninstall$\wzcsapi.dll
+ 2006-03-02 12:00:00   359,936   -c----w   c:\windows\$NtServicePackUninstall$\wzcsvc.dll
+ 2006-03-02 12:00:00   91,648   -c----w   c:\windows\$NtServicePackUninstall$\xactsrv.dll
+ 2006-03-02 12:00:00   30,720   -c----w   c:\windows\$NtServicePackUninstall$\xcopy.exe
+ 2006-07-14 15:51:51   121,856   -c----w   c:\windows\$NtServicePackUninstall$\xmllite.dll
+ 2006-03-02 12:00:00   129,536   -c----w   c:\windows\$NtServicePackUninstall$\xmlprov.dll
+ 2006-03-02 12:00:00   50,176   -c----w   c:\windows\$NtServicePackUninstall$\xmlprovi.dll
+ 2006-03-01 19:44:36   11,776   -c----w   c:\windows\$NtServicePackUninstall$\xolehlp.dll
+ 2006-10-10 12:44:50   557,568   -c----w   c:\windows\$NtServicePackUninstall$\xpnetdiag.exe
+ 2006-03-02 12:00:00   437,248   -c----w   c:\windows\$NtServicePackUninstall$\xpob2res.dll
+ 2006-03-02 12:00:00   196,096   -c----w   c:\windows\$NtServicePackUninstall$\xpsp1res.dll
+ 2006-03-02 12:00:00   2,962,432   -c----w   c:\windows\$NtServicePackUninstall$\xpsp2res.dll
+ 2008-04-17 11:03:55   370,176   -c----w   c:\windows\$NtServicePackUninstall$\xpsp3res.dll
+ 2006-03-02 12:00:00   340,480   -c----w   c:\windows\$NtServicePackUninstall$\zipfldr.dll
+ 2006-05-25 08:29:04   213,216   -c----w   c:\windows\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe
+ 2006-05-25 08:29:04   371,424   -c----w   c:\windows\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\updspapi.dll
+ 2006-05-24 10:32:48   213,216   -c----w   c:\windows\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe
+ 2006-05-24 10:32:48   371,424   -c----w   c:\windows\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   350,720   -c----w   c:\windows\$NtUninstallKB873339$\hypertrm.dll
+ 2004-10-14 08:36:26   171,520   -c----w   c:\windows\$NtUninstallKB873339$\spuninst\spuninst.exe
+ 2004-08-03 23:15:40   1,667,584   -c----w   c:\windows\$NtUninstallKB887472$\msmsgs.exe
+ 2004-10-14 09:36:26   171,520   -c----w   c:\windows\$NtUninstallKB887472$\spuninst\spuninst.exe
+ 2004-11-30 18:22:46   171,520   -c----w   c:\windows\$NtUninstallKB888302$\spuninst\spuninst.exe
+ 2006-03-02 12:00:00   96,768   -c----w   c:\windows\$NtUninstallKB888302$\srvsvc.dll
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB890046$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB890046$\spuninst\updspapi.dll
+ 2004-11-30 18:22:46   171,520   -c----w   c:\windows\$NtUninstallKB891781$\spuninst\spuninst.exe
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB893756$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB893756$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   246,272   -c----w   c:\windows\$NtUninstallKB893756$\tapisrv.dll
+ 2006-03-02 12:00:00   10,752   -c----w   c:\windows\$NtUninstallKB896358$\hh.exe
+ 2006-03-02 12:00:00   38,912   -c----w   c:\windows\$NtUninstallKB896358$\hhsetup.dll
+ 2006-03-02 12:00:00   143,872   -c----w   c:\windows\$NtUninstallKB896358$\itircl.dll
+ 2006-03-02 12:00:00   134,144   -c----w   c:\windows\$NtUninstallKB896358$\itss.dll
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB896358$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB896358$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   57,856   -c----w   c:\windows\$NtUninstallKB896423$\spoolsv.exe
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB896423$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB896423$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   139,400   -c----w   c:\windows\$NtUninstallKB899591$\rdpwd.sys
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB899591$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB899591$\spuninst\updspapi.dll
+ 2004-08-03 20:39:38   142,464   -c----w   c:\windows\$NtUninstallKB900485$\aec.sys
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB900485$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB900485$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   18,944   -c----w   c:\windows\$NtUninstallKB900725$\linkinfo.dll
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB900725$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB900725$\spuninst\updspapi.dll
+ 2005-03-02 18:19:18   291,840   -c----w   c:\windows\$NtUninstallKB900725$\winsrv.dll
+ 2006-03-02 12:00:00   2,067,968   -c----w   c:\windows\$NtUninstallKB901017$\cdosys.dll
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB901017$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB901017$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   253,952   -c----w   c:\windows\$NtUninstallKB901214$\icm32.dll
+ 2006-03-02 12:00:00   73,728   -c----w   c:\windows\$NtUninstallKB901214$\mscms.dll
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB901214$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB901214$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   229,888   -c----w   c:\windows\$NtUninstallKB902400$\catsrv.dll
+ 2006-03-02 12:00:00   628,224   -c----w   c:\windows\$NtUninstallKB902400$\catsrvut.dll
+ 2006-03-02 12:00:00   110,080   -c----w   c:\windows\$NtUninstallKB902400$\clbcatex.dll
+ 2006-03-02 12:00:00   501,248   -c----w   c:\windows\$NtUninstallKB902400$\clbcatq.dll
+ 2006-03-02 12:00:00   62,464   -c----w   c:\windows\$NtUninstallKB902400$\colbact.dll
+ 2006-03-02 12:00:00   195,584   -c----w   c:\windows\$NtUninstallKB902400$\comadmin.dll
+ 2006-03-02 12:00:00   82,432   -c----w   c:\windows\$NtUninstallKB902400$\comrepl.dll
+ 2006-03-02 12:00:00   1,251,840   -c----w   c:\windows\$NtUninstallKB902400$\comsvcs.dll
+ 2006-03-02 12:00:00   540,160   -c----w   c:\windows\$NtUninstallKB902400$\comuid.dll
+ 2006-03-02 12:00:00   243,200   -c----w   c:\windows\$NtUninstallKB902400$\es.dll
+ 2006-03-02 12:00:00   7,680   -c----w   c:\windows\$NtUninstallKB902400$\migregdb.exe
+ 2005-04-28 19:33:07   1,284,608   -c----w   c:\windows\$NtUninstallKB902400$\ole32.dll
+ 2005-04-28 19:33:07   75,264   -c----w   c:\windows\$NtUninstallKB902400$\olecli32.dll
+ 2005-04-28 19:33:07   37,888   -c----w   c:\windows\$NtUninstallKB902400$\olecnv32.dll
+ 2005-04-28 19:33:07   395,776   -c----w   c:\windows\$NtUninstallKB902400$\rpcss.dll
+ 2005-02-24 18:35:58   213,216   -c----w   c:\windows\$NtUninstallKB902400$\spuninst\spuninst.exe
+ 2005-02-24 18:36:00   390,368   -c----w   c:\windows\$NtUninstallKB902400$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   101,376   -c----w   c:\windows\$NtUninstallKB902400$\txflog.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB904942$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB904942$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   49,152   -c----w   c:\windows\$NtUninstallKB904942$\wdigest.dll
+ 2006-03-02 12:00:00   198,144   -c----w   c:\windows\$NtUninstallKB905414$\netman.dll
+ 2005-02-25 03:35:56   213,216   -c----w   c:\windows\$NtUninstallKB905414$\spuninst\spuninst.exe
+ 2005-02-25 03:35:58   390,368   -c----w   c:\windows\$NtUninstallKB905414$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   79,360   -c----w   c:\windows\$NtUninstallKB908519$\fontsub.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB908519$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB908519$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   210,432   -c----w   c:\windows\$NtUninstallKB908519$\t2embed.dll
+ 2006-03-02 12:00:00   174,080   -c----w   c:\windows\$NtUninstallKB911280$\rasmans.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB911280$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB911280$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   143,360   -c----w   c:\windows\$NtUninstallKB911562$\msadco.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB911562$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB911562$\spuninst\updspapi.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB911927$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB911927$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   67,584   -c----w   c:\windows\$NtUninstallKB911927$\webclnt.dll
+ 2006-03-02 12:00:00   111,104   -c----w   c:\windows\$NtUninstallKB914388$\dhcpcsvc.dll
+ 2006-03-02 12:00:00   95,232   -c----w   c:\windows\$NtUninstallKB914388$\iphlpapi.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB914388$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB914388$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   28,672   -c----w   c:\windows\$NtUninstallKB914440$\custsat.dll
+ 2005-10-12 23:20:06   216,800   -c----w   c:\windows\$NtUninstallKB914440$\spuninst\spuninst.exe
+ 2005-10-12 23:20:15   389,856   -c----w   c:\windows\$NtUninstallKB914440$\spuninst\updspapi.dll
+ 2005-10-12 23:12:26   213,216   -c----w   c:\windows\$NtUninstallKB915865$\spuninst\spuninst.exe
+ 2005-10-12 23:12:33   371,424   -c----w   c:\windows\$NtUninstallKB915865$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   263,040   -c----w   c:\windows\$NtUninstallKB916595$\http.sys
+ 2005-10-12 23:26:03   216,800   -c----w   c:\windows\$NtUninstallKB916595$\spuninst\spuninst.exe
+ 2005-10-12 23:26:11   389,856   -c----w   c:\windows\$NtUninstallKB916595$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   537,088   -c----w   c:\windows\$NtUninstallKB918118$\msftedit.dll
+ 2006-03-02 12:00:00   431,616   -c----w   c:\windows\$NtUninstallKB918118$\riched20.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB918118$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB918118$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   144,896   -c----w   c:\windows\$NtUninstallKB918439$\jgdw400.dll
+ 2006-03-02 12:00:00   42,496   -c----w   c:\windows\$NtUninstallKB918439$\jgpl400.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB918439$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB918439$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   41,984   -c----w   c:\windows\$NtUninstallKB920213$\agentdp2.dll
+ 2006-03-02 12:00:00   58,880   -c----w   c:\windows\$NtUninstallKB920213$\agentdpv.dll
+ 2006-03-02 12:00:00   256,512   -c----w   c:\windows\$NtUninstallKB920213$\agentsvr.exe
+ 2005-10-12 23:26:03   216,800   -c----w   c:\windows\$NtUninstallKB920213$\spuninst\spuninst.exe
+ 2005-10-12 23:26:11   389,856   -c----w   c:\windows\$NtUninstallKB920213$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   77,850   -c----w   c:\windows\$NtUninstallKB920670$\hlink.dll
+ 2005-10-12 23:26:03   216,800   -c----w   c:\windows\$NtUninstallKB920670$\spuninst\spuninst.exe
+ 2005-10-12 23:26:11   389,856   -c----w   c:\windows\$NtUninstallKB920670$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   148,480   -c----w   c:\windows\$NtUninstallKB920683$\dnsapi.dll
+ 2006-03-02 12:00:00   8,192   -c----w   c:\windows\$NtUninstallKB920683$\rasadhlp.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB920683$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB920683$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   69,120   -c----w   c:\windows\$NtUninstallKB920685$\ciodm.dll
+ 2006-03-02 12:00:00   1,440,768   -c----w   c:\windows\$NtUninstallKB920685$\query.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB920685$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB920685$\spuninst\updspapi.dll
+ 2004-08-03 21:07:50   171,776   -c----w   c:\windows\$NtUninstallKB920872$\kmixer.sys
+ 2004-08-03 21:07:48   6,400   -c----w   c:\windows\$NtUninstallKB920872$\splitter.sys
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB920872$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB920872$\spuninst\updspapi.dll
+ 2004-08-03 21:15:06   82,944   -c----w   c:\windows\$NtUninstallKB920872$\wdmaud.sys
+ 2006-03-02 12:00:00   611,328   -c----w   c:\windows\$NtUninstallKB923191$\comctl32.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB923191$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB923191$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   146,432   -c----w   c:\windows\$NtUninstallKB923980$\nwprovau.dll
+ 2005-10-12 23:26:03   216,800   -c----w   c:\windows\$NtUninstallKB923980$\spuninst\spuninst.exe
+ 2005-10-12 23:26:11   389,856   -c----w   c:\windows\$NtUninstallKB923980$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   332,288   -c----w   c:\windows\$NtUninstallKB924270$\netapi32.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB924270$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB924270$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   132,096   -c----w   c:\windows\$NtUninstallKB924270$\wkssvc.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB924496$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB924496$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   924,432   -c----w   c:\windows\$NtUninstallKB924667$\mfc40u.dll
+ 2006-03-02 12:00:00   1,024,000   -c----w   c:\windows\$NtUninstallKB924667$\mfc42u.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB924667$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB924667$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   73,216   -c----w   c:\windows\$NtUninstallKB925720$\magnify.exe
+ 2006-03-02 12:00:00   54,784   -c----w   c:\windows\$NtUninstallKB925720$\narrator.exe
+ 2006-03-02 12:00:00   216,064   -c----w   c:\windows\$NtUninstallKB925720$\osk.exe
+ 2005-10-12 23:26:03   216,800   -c----w   c:\windows\$NtUninstallKB925720$\spuninst\spuninst.exe
+ 2005-10-12 23:26:11   389,856   -c----w   c:\windows\$NtUninstallKB925720$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   36,352   -c----w   c:\windows\$NtUninstallKB925720$\umandlg.dll
+ 2006-03-02 12:00:00   50,176   -c----w   c:\windows\$NtUninstallKB925720$\utilman.exe
+ 2006-03-02 12:00:00   39,936   -c----w   c:\windows\$NtUninstallKB925902$\mf3216.dll
+ 2006-01-19 19:29:39   216,800   -c----w   c:\windows\$NtUninstallKB925902$\spuninst\spuninst.exe
+ 2006-01-19 19:29:40   389,856   -c----w   c:\windows\$NtUninstallKB925902$\spuninst\updspapi.dll
+ 2005-03-02 18:19:18   578,560   -c----w   c:\windows\$NtUninstallKB925902$\user32.dll
+ 2005-03-02 18:09:35   1,836,416   -c----w   c:\windows\$NtUninstallKB925902$\win32k.sys
+ 2005-10-12 23:12:26   213,216   -c----w   c:\windows\$NtUninstallKB926239$\spuninst\spuninst.exe
+ 2005-10-12 23:12:33   371,424   -c----w   c:\windows\$NtUninstallKB926239$\spuninst\updspapi.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB926255$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB926255$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   714,752   -c----w   c:\windows\$NtUninstallKB926255$\sxs.dll
+ 2006-03-02 12:00:00   119,808   -c----w   c:\windows\$NtUninstallKB926436$\oledlg.dll
+ 2005-10-12 23:26:03   216,800   -c----w   c:\windows\$NtUninstallKB926436$\spuninst\spuninst.exe
+ 2005-10-12 23:26:11   389,856   -c----w   c:\windows\$NtUninstallKB926436$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   81,408   -c----w   c:\windows\$NtUninstallKB929123$\directdb.dll
+ 2006-03-02 12:00:00   1,311,232   -c----w   c:\windows\$NtUninstallKB929123$\msoe.dll
+ 2006-01-19 19:29:39   216,800   -c----w   c:\windows\$NtUninstallKB929123$\spuninst\spuninst.exe
+ 2006-01-19 19:29:40   389,856   -c----w   c:\windows\$NtUninstallKB929123$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   504,832   -c----w   c:\windows\$NtUninstallKB929123$\wab32.dll
+ 2006-03-02 12:00:00   84,992   -c----w   c:\windows\$NtUninstallKB929123$\wabimp.dll
+ 2006-10-18 19:47:16   414,208   -c----w   c:\windows\$NtUninstallKB929399$\msscp.dll
+ 2005-06-28 08:23:26   213,216   -c----w   c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54   371,424   -c----w   c:\windows\$NtUninstallKB929399$\spuninst\updspapi.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB930178$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB930178$\spuninst\updspapi.dll
+ 2005-09-01 02:28:26   292,352   -c----w   c:\windows\$NtUninstallKB930178$\winsrv.dll
+ 2005-09-01 02:28:26   292,352   -c----w   c:\windows\$NtUninstallKB930178$\winsrv.dll.000
+ 2006-01-19 19:29:39   216,800   -c----w   c:\windows\$NtUninstallKB931261$\spuninst\spuninst.exe
+ 2006-01-19 19:29:40   389,856   -c----w   c:\windows\$NtUninstallKB931261$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   185,344   -c----w   c:\windows\$NtUninstallKB931261$\upnphost.dll
+ 2006-10-12 14:05:20   57,344   -c----w   c:\windows\$NtUninstallKB932168$\agentdpv.dll
+ 2006-01-19 19:29:39   216,800   -c----w   c:\windows\$NtUninstallKB932168$\spuninst\spuninst.exe
+ 2006-01-19 19:29:40   389,856   -c----w   c:\windows\$NtUninstallKB932168$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   294,400   -c----w   c:\windows\$NtUninstallKB932823-v3$\msctf.dll
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB932823-v3$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB932823-v3$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   144,896   -c----w   c:\windows\$NtUninstallKB935840$\schannel.dll
+ 2006-01-19 19:29:39   216,800   -c----w   c:\windows\$NtUninstallKB935840$\spuninst\spuninst.exe
+ 2006-01-19 19:29:40   389,856   -c----w   c:\windows\$NtUninstallKB935840$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   1,236,480   -c----w   c:\windows\$NtUninstallKB936021$\msxml3.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB936021$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB936021$\spuninst\updspapi.dll
+ 2006-01-19 19:29:39   216,800   -c----w   c:\windows\$NtUninstallKB936357$\spuninst\spuninst.exe
+ 2006-01-19 19:29:40   389,856   -c----w   c:\windows\$NtUninstallKB936357$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   209,408   -c----w   c:\windows\$NtUninstallKB936357$\update.sys
+ 2005-06-28 08:23:40   216,800   -c----w   c:\windows\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54   371,424   -c----w   c:\windows\$NtUninstallKB936782_WMP11$\spuninst\updspapi.dll
+ 2006-10-18 19:47:20   10,834,432   -c----w   c:\windows\$NtUninstallKB936782_WMP11$\wmp.dll
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB938127$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB938127$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   848,384   -c----w   c:\windows\$NtUninstallKB938127$\vgx.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB938464$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB938464$\spuninst\updspapi.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB938464_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB938464_0$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   1,035,776   -c----w   c:\windows\$NtUninstallKB938828$\explorer.exe
+ 2005-10-12 23:20:07   216,800   -c----w   c:\windows\$NtUninstallKB938828$\spuninst\spuninst.exe
+ 2005-10-12 23:20:16   389,856   -c----w   c:\windows\$NtUninstallKB938828$\spuninst\updspapi.dll
+ 2005-06-28 08:23:40   216,800   -c----w   c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
+ 2005-06-28 08:23:54   371,424   -c----w   c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
+ 2006-11-02 20:52:44   316,416   -c----w   c:\windows\$NtUninstallKB939683$\unregmp2.exe
+ 2006-03-02 12:00:00   678,400   -c----w   c:\windows\$NtUninstallKB941202$\inetcomm.dll
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB941202$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB941202$\spuninst\updspapi.dll
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB941644$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB941644$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   359,040   -c----w   c:\windows\$NtUninstallKB941644$\tcpip.sys
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB941693$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB941693$\spuninst\updspapi.dll
+ 2007-03-08 15:37:59   1,843,712   -c----w   c:\windows\$NtUninstallKB941693$\win32k.sys
+ 2006-12-19 21:51:37   8,500,736   -c----w   c:\windows\$NtUninstallKB943460$\shell32.dll
+ 2007-03-06 01:58:27   216,800   -c----w   c:\windows\$NtUninstallKB943460$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB943460$\spuninst\updspapi.dll
+ 2004-10-28 01:29:11   727,040   -c----w   c:\windows\$NtUninstallKB943485$\lsasrv.dll
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB943485$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB943485$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   450,560   -c----w   c:\windows\$NtUninstallKB944338$\jscript.dll
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB944338$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB944338$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   417,792   -c----w   c:\windows\$NtUninstallKB944338$\vbscript.dll
+ 2006-06-26 17:45:39   148,480   -c----w   c:\windows\$NtUninstallKB945553$\dnsapi.dll
+ 2006-06-26 17:45:39   148,480   -c----w   c:\windows\$NtUninstallKB945553$\dnsapi.dll.000
+ 2006-03-02 12:00:00   45,568   -c----w   c:\windows\$NtUninstallKB945553$\dnsrslvr.dll
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB945553$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB945553$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   181,248   -c----w   c:\windows\$NtUninstallKB946026$\mrxdav.sys
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB946026$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB946026$\spuninst\updspapi.dll
+ 2008-04-14 17:02:31   82,944   -c----w   c:\windows\$NtUninstallKB946648$\msgsc.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB946648$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB946648$\spuninst\updspapi.dll
+ 2004-08-03 23:15:40   82,944   -c----w   c:\windows\$NtUninstallKB946648_0$\msgsc.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB946648_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB946648_0$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   278,016   -c----w   c:\windows\$NtUninstallKB948590$\gdi32.dll
+ 2007-03-06 01:58:28   216,800   -c----w   c:\windows\$NtUninstallKB948590$\spuninst\spuninst.exe
+ 2007-03-06 01:59:37   389,856   -c----w   c:\windows\$NtUninstallKB948590$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   1,022,976   -c----w   c:\windows\$NtUninstallKB950759$\browseui.dll
+ 2006-03-02 12:00:00   151,040   -c----w   c:\windows\$NtUninstallKB950759$\cdfview.dll
+ 2006-03-02 12:00:00   1,056,768   -c----w   c:\windows\$NtUninstallKB950759$\danim.dll
+ 2006-03-02 12:00:00   357,888   -c----w   c:\windows\$NtUninstallKB950759$\dxtmsft.dll
+ 2006-03-02 12:00:00   201,728   -c----w   c:\windows\$NtUninstallKB950759$\dxtrans.dll
+ 2006-03-02 12:00:00   55,808   -c----w   c:\windows\$NtUninstallKB950759$\extmgr.dll
+ 2006-03-02 12:00:00   18,432   -c----w   c:\windows\$NtUninstallKB950759$\iedw.exe
+ 2006-03-02 12:00:00   251,392   -c----w   c:\windows\$NtUninstallKB950759$\iepeers.dll
+ 2006-03-02 12:00:00   96,768   -c----w   c:\windows\$NtUninstallKB950759$\inseng.dll
+ 2006-03-02 12:00:00   15,872   -c----w   c:\windows\$NtUninstallKB950759$\jsproxy.dll
+ 2006-03-02 12:00:00   3,070,464   -c----w   c:\windows\$NtUninstallKB950759$\mshtml.dll
+ 2006-03-02 12:00:00   448,512   -c----w   c:\windows\$NtUninstallKB950759$\mshtmled.dll
+ 2006-03-02 12:00:00   146,432   -c----w   c:\windows\$NtUninstallKB950759$\msrating.dll
+ 2006-03-02 12:00:00   530,432   -c----w   c:\windows\$NtUninstallKB950759$\mstime.dll
+ 2006-03-02 12:00:00   39,424   -c----w   c:\windows\$NtUninstallKB950759$\pngfilt.dll
+ 2006-03-02 12:00:00   1,492,480   -c----w   c:\windows\$NtUninstallKB950759$\shdocvw.dll
+ 2006-03-02 12:00:00   474,624   -c----w   c:\windows\$NtUninstallKB950759$\shlwapi.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB950759$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB950759$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   613,888   -c----w   c:\windows\$NtUninstallKB950759$\urlmon.dll
+ 2006-03-02 12:00:00   659,456   -c----w   c:\windows\$NtUninstallKB950759$\wininet.dll
+ 2007-06-12 21:53:16   122,880   -c----w   c:\windows\$NtUninstallKB950759$\xpsp3res.dll
+ 2008-04-13 18:55:08   202,624   -c----w   c:\windows\$NtUninstallKB950762$\rmcast.sys
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB950762$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB950762$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   200,064   -c----w   c:\windows\$NtUninstallKB950762_0$\rmcast.sys
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB950762_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB950762_0$\spuninst\updspapi.dll
+ 2008-04-14 17:02:25   246,272   -c----w   c:\windows\$NtUninstallKB950974$\es.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB950974$\spuninst\spuninst.exe
+ 2007-11-30 12:39:44   401,272   -c----w   c:\windows\$NtUninstallKB950974$\spuninst\updspapi.dll
+ 2005-07-26 04:42:48   243,200   -c----w   c:\windows\$NtUninstallKB950974_0$\es.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB950974_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:44   401,272   -c----w   c:\windows\$NtUninstallKB950974_0$\spuninst\updspapi.dll
+ 2008-04-14 17:02:28   691,712   -c----w   c:\windows\$NtUninstallKB951066$\inetcomm.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB951066$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB951066$\spuninst\updspapi.dll
+ 2007-08-21 06:18:26   683,520   -c----w   c:\windows\$NtUninstallKB951066_0$\inetcomm.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB951066_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB951066_0$\spuninst\updspapi.dll
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB951072-v2$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB951072-v2$\spuninst\updspapi.dll
+ 2008-03-27 09:24:20   60,416   -c----w   c:\windows\$NtUninstallKB951072-v2$\tzchange.exe
+ 2008-04-14 16:34:36   273,536   -c----w   c:\windows\$NtUninstallKB951376-v2$\bthport.sys
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB951376-v2_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:44   401,272   -c----w   c:\windows\$NtUninstallKB951376-v2_0$\spuninst\updspapi.dll
+ 2008-04-14 17:02:38   1,292,288   -c----w   c:\windows\$NtUninstallKB951698$\quartz.dll
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB951698$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB951698$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   1,291,776   -c----w   c:\windows\$NtUninstallKB951698_0$\quartz.dll
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB951698_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB951698_0$\spuninst\updspapi.dll
+ 2008-04-13 19:19:23   138,112   -c----w   c:\windows\$NtUninstallKB951748$\afd.sys
+ 2008-04-14 17:02:24   147,968   -c----w   c:\windows\$NtUninstallKB951748$\dnsapi.dll
+ 2008-04-14 17:02:33   247,296   -c----w   c:\windows\$NtUninstallKB951748$\mswsock.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB951748$\spuninst\spuninst.exe
+ 2007-11-30 12:39:44   401,272   -c----w   c:\windows\$NtUninstallKB951748$\spuninst\updspapi.dll
+ 2008-04-13 19:20:16   361,344   -c----w   c:\windows\$NtUninstallKB951748$\tcpip.sys
+ 2008-04-13 19:00:02   225,664   -c----w   c:\windows\$NtUninstallKB951748$\tcpip6.sys
+ 2006-03-02 12:00:00   138,496   -c----w   c:\windows\$NtUninstallKB951748_0$\afd.sys
+ 2008-02-20 05:39:05   148,992   -c----w   c:\windows\$NtUninstallKB951748_0$\dnsapi.dll
+ 2006-03-02 12:00:00   247,296   -c----w   c:\windows\$NtUninstallKB951748_0$\mswsock.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB951748_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:44   401,272   -c----w   c:\windows\$NtUninstallKB951748_0$\spuninst\updspapi.dll
+ 2007-10-30 17:20:55   360,064   -c----w   c:\windows\$NtUninstallKB951748_0$\tcpip.sys
+ 2006-08-16 09:37:30   225,664   -c----w   c:\windows\$NtUninstallKB951748_0$\tcpip6.sys
+ 2008-04-14 17:02:53   139,264   -c----w   c:\windows\$NtUninstallKB951978$\cscript.exe
+ 2008-04-14 17:02:29   512,000   -c----w   c:\windows\$NtUninstallKB951978$\jscript.dll
+ 2008-04-14 17:02:39   180,224   -c----w   c:\windows\$NtUninstallKB951978$\scrobj.dll
+ 2008-04-14 17:02:39   172,032   -c----w   c:\windows\$NtUninstallKB951978$\scrrun.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB951978$\spuninst\spuninst.exe
+ 2007-11-30 12:39:44   401,272   -c----w   c:\windows\$NtUninstallKB951978$\spuninst\updspapi.dll
+ 2008-04-14 17:02:44   434,176   -c----w   c:\windows\$NtUninstallKB951978$\vbscript.dll
+ 2008-04-14 17:03:20   155,648   -c----w   c:\windows\$NtUninstallKB951978$\wscript.exe
+ 2008-04-14 17:02:45   90,112   -c----w   c:\windows\$NtUninstallKB951978$\wshext.dll
+ 2008-05-01 14:33:36   331,776   -c----w   c:\windows\$NtUninstallKB952287$\msadce.dll
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB952287$\spuninst\spuninst.exe
+ 2007-11-30 11:19:44   401,272   -c----w   c:\windows\$NtUninstallKB952287$\spuninst\updspapi.dll
+ 2006-03-02 12:00:00   331,776   -c----w   c:\windows\$NtUninstallKB952287_0$\msadce.dll
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB952287_0$\spuninst\spuninst.exe
+ 2007-11-30 11:19:44   401,272   -c----w   c:\windows\$NtUninstallKB952287_0$\spuninst\updspapi.dll
+ 2008-04-14 17:02:29   73,728   -c----w   c:\windows\$NtUninstallKB952954$\mscms.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB952954$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB952954$\spuninst\updspapi.dll
+ 2005-06-29 01:53:10   74,240   -c----w   c:\windows\$NtUninstallKB952954_0$\mscms.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB952954_0$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB952954_0$\spuninst\updspapi.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB953839$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB953839$\spuninst\updspapi.dll
+ 2007-07-27 06:34:54   234,872   -c----w   c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
+ 2007-07-27 08:41:48   382,840   -c----w   c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
+ 2006-10-18 19:47:20   295,936   -c----w   c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB954211$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB954211$\spuninst\updspapi.dll
+ 2008-04-14 16:35:09   1,845,760   -c----w   c:\windows\$NtUninstallKB954211$\win32k.sys
+ 2008-04-14 17:02:33   1,306,624   -c----w   c:\windows\$NtUninstallKB954459$\msxml6.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB954459$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB954459$\spuninst\updspapi.dll
+ 2008-04-14 17:02:33   1,104,896   -c----w   c:\windows\$NtUninstallKB955069$\msxml3.dll
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB955069$\spuninst\spuninst.exe
+ 2008-07-09 12:14:20   401,272   -c----w   c:\windows\$NtUninstallKB955069$\spuninst\updspapi.dll
+ 2007-11-30 12:39:46   234,872   -c----w   c:\windows\$NtUninstallKB956391$\spuninst\spuninst.exe
+ 2007-11-30 12:39:47   401,272   -c----w   c:\windows\$NtUninstallKB956391$\spuninst\updspapi.dll
+ 2008-06-20 11:40:08   138,496   -c----w   c:\windows\$NtUninstallKB956803$\afd.sys
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB956803$\spuninst\spuninst.exe
+ 2007-11-30 11:19:44   401,272   -c----w   c:\windows\$NtUninstallKB956803$\spuninst\updspapi.dll
+ 2008-04-14 16:41:29   2,070,272   -c----w   c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe
+ 2008-04-14 16:42:00   2,193,408   -c----w   c:\windows\$NtUninstallKB956841$\ntoskrnl.exe
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB956841$\spuninst\spuninst.exe
+ 2008-07-09 07:44:19   401,272   -c----w   c:\windows\$NtUninstallKB956841$\spuninst\updspapi.dll
+ 2007-11-30 11:19:43   234,872   -c----w   c:\windows\$NtUninstallKB957095$\spuninst\spuninst.exe
+ 2007-11-30 11:19:44   401,272   -c----w   c:\windows\$NtUninstallKB957095$\spuninst\updspapi.dll
+ 2008-04-13 19:15:11   334,848   -c----w   c:\windows\$NtUninstallKB957095$\srv.sys
+ 2008-04-13 19:17:01   456,576   -c----w   c:\windows\$NtUninstallKB957097$\mrxsmb.sys
+ 2008-07-08 13:07:36   234,872   -c----w   c:\windows\$NtUninstallKB957097$
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 11:26:12 AM
wow that's a hell of a log file o.0,
note that combofix didnt maked my computer restart
internet explorer doesnt words either yet

X-clusive~
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 11:27:10 AM
Download [color=\"#FF0000\"]> ATF Cleaner <[/color] (http://\"http://www.atribune.org/ccount/click.php?id=1\") by Atribune and save it to your Desktop.

Double Click on ATF-Cleaner.exe to Run it
Check the boxes to the left of:

Windows Temp
Current User Temp
All Users Temp
Temporary Internet Files
*Prefetch (Windows XP) only.
Java Cache

The rest are optional - if you want to remove the lot, check "Select All".
Finally click Empty Selected. When you get the "Done Cleaning" message, click OK.
If you use Firefox browser
      Click Firefox at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit from the Main menu

download Malwarebytes' Anti-Malware from Here (http://\"http://www.besttechie.net/tools/mbam-setup.exe\") or Here (http://\"http://www.majorgeeks.com/Malwarebytes_Anti-Malware_d5756.html\")
Save the installer to desktop

Double Click mbam-setup.exe to install the application.Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.

With that log from MBAM also, again post a fresh Hijackthis log
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 11:28:04 AM
[quote name=\'X-clusive\' post=\'455859\' date=\'Jan 12 2009, 11:26 AM\']wow that's a hell of a log file o.0,
note that combofix didnt maked my computer restart
internet explorer doesnt words either yet

X-clusive~[/quote]
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 11:31:45 AM
You are able to use Firefox, correct?
Can you do my last set of instructions please if you can
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 11:34:00 AM
[quote name=\'guestolo\' post=\'455862\' date=\'Jan 12 2009, 11:31 AM\']You are able to use Firefox, correct?
Can you do my last set of instructions please if you can[/quote]

yes sorry for the double post didnt mean to do that /tongue.gif\' class=\'bbc_emoticon\' alt=\':P\' /> im working on it right now thx
and yes i can use firefox correctly but can't use the normal internet explorer
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 12:18:55 PM
Okay i did it all, but Malwarebytes Anti-Malware didnt start up after the reboot, and so couldnt delete the threats...
I think it's because i've got other profiles on this computer so that i have a windows start up screen, if you know what i mean.
If it's neccesairy i can delete the other profiles.


Malware Log file:
Malwarebytes' Anti-Malware 1.32
Database versie: 1646
Windows 5.1.2600 Service Pack 3

12-1-2009 17:43:10
mbam-log-2009-01-12 (17-43-10).txt

Scan type: Snelle Scan
Objecten gescand: 55436
Verstreken tijd: 4 minute(s), 50 second(s)

Geheugenprocessen geïnfecteerd: 0
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 11
Registerwaarden geïnfecteerd: 4
Registerdata bestanden geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 5

Geheugenprocessen geïnfecteerd:
(Geen kwaadaardige items gevonden)

Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige items gevonden)

Registersleutels geïnfecteerd:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{eee2f485-86d4-4aeb-9704-5b1037ebe281} (Trojan.BHO.H) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{eee2f485-86d4-4aeb-9704-5b1037ebe281} (Trojan.BHO.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\cekslams (Rootkit.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\cekslams (Rootkit.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\cekslams (Rootkit.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cekslams (Rootkit.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\fbrowsingadvisor_is1 (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\DBReg (Adware.SoftMate) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{eee2f485-86d4-4aeb-9704-5b1037ebe281} (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Registerwaarden geïnfecteerd:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\bf (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\bk (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\iu (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\mu (Trojan.Agent) -> Delete on reboot.

Registerdata bestanden geïnfecteerd:
(Geen kwaadaardige items gevonden)

Mappen geïnfecteerd:
(Geen kwaadaardige items gevonden)

Bestanden geïnfecteerd:
C:\WINDOWS\system32\cmprop.dll (Trojan.BHO.H) -> Delete on reboot.
C:\WINDOWS\system32\{145a3735-9b3d-380e-cf6c-eb6b2d80a7c2}.dll-uninst.exe (Adware.Vapsup) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\Drivers\jjgznyyn.dat (Rootkit.Agent) -> Delete on reboot.
C:\WINDOWS\system32\{e18067de-d83f-7c78-aefc-cd0a4c5324c9}.dll-uninst.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\clkcnt.txt (Trojan.Vundo) -> Quarantined and deleted successfully.



Hijack log file:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:18:20, on 12-1-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\sistray.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.warrock.net/ (http://\"http://www.warrock.net/\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: (no name) - {EEE2F485-86D4-4AEB-9704-5B1037EBE281} - C:\WINDOWS\system32\cmprop.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CmUsbAudio] RunDll32 cmcnfg2.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [LESS CITY AMEN SETUP] C:\Documents and Settings\All Users\Application Data\Tool Eggs Less City\Settings meet.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [Vc Mode] C:\DOCUME~1\JEFFRE~1\APPLIC~1\ELSEPO~1\Dupe Hold Burn.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1212511711984 (http://\"http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1212511711984\")
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab (http://\"http://download.divx.com/player/DivXBrowserPlugin.cab\")
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v4.cab (http://\"http://www.acclaim.com/cabs/acclaim_v4.cab\")
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: lfrnaitc.dll,vrhbuwuk.dll,avgrsstx.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 6947 bytes
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 12:26:47 PM
No need to delete any profiles
Can you do the following, I want to see one more log

Download and save to your desktop
[color=\"#FF0000\"]OTScanIt2[/color] (http://\"http://download.bleepingcomputer.com/oldtimer/OTScanIt2.exe\")[/url]
by OldTimer
For an alternative download location, you can try here if that one is busy
Click HERE (http://\"http://oldtimer.geekstogo.com/OTScanIt2.exe\")

Double click on it to Run it and then Extract it to a folder on desktop
Open that newly created folder and double click on OTScanIt2.exe
Leave all defaults selected
Except, change Rootkit Search to YES

Under Additional Scans, put a tick beside
Reg - Uninstall List

Then click on [color=\"#0000FF\"]Run Scan [/color]

When done, it will produce a log
Can you post the contents of that log back here please
A copy of it can also be found in the OTScanIt2 folder on desktop
NOTE: If you do get an error posting this log, please Upload it, but Only if you get an error
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 12:48:44 PM
OTscanIt2 log file:

http://www.upload4free.com/download.php?fi...68-OTScanIt.Txt (http://\"http://www.upload4free.com/download.php?file=934396568-OTScanIt.Txt\")
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 01:36:49 PM
Can you do the following please
Access your Add and Remove Programs
Remove Messenger Plus! Live & Sponsor (CiD)
You may be prompted for a verification code when removing
type it in and follow the prompts
The Sponsor adds adware called LOP
You may choose to reinstall Messenger Plus! LATER
Without the SPONSOR <--very important
Don't reinstall it yet, let's finish are cleaning cycle

If you have troubles removing it, just carry on with the following
Afterwards
Download HostsXpert [color=\"red\"]Here[/color] (http://\"http://www.funkytoad.com/download/HostsXpert.zip\") and unzip it to your desktop.
Next, open HostsXpert

Start OTScanIt2. Copy/Paste the information in the codebox below into the pane where it says "Paste fix here" and then click the Run Fix button.
Code: [Select]
[Kill Explorer]
[Unregister Dlls]
[Driver Services - Safe List]
NY -> (cekslams) cekslams [Kernel | Boot | Running] -> %SystemRoot%\system32\drivers\jjgznyyn.dat
[Registry - Safe List]
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
NY -> "LESS CITY AMEN SETUP" -> %AllUsersProfile%\Application Data\Tool Eggs Less City\Settings meet.exe [C:\Documents and Settings\All Users\Application Data\Tool Eggs Less City\Settings meet.exe]
< Run [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
NY -> "Vc Mode" -> %AppData%\Else Poke Dog\Dupe Hold Burn.exe [C:\DOCUME~1\JEFFRE~1\APPLIC~1\ELSEPO~1\Dupe Hold Burn.exe]
[Files/Folders - Created Within 30 Days]
NY -> Tool Eggs Less City -> %AllUsersProfile%\Application Data\Tool Eggs Less City
NY -> Else Poke Dog -> %ProgramFiles%\Else Poke Dog
NY -> RegTool Scan.job -> %SystemRoot%\tasks\RegTool Scan.job
NY -> RegTool -> %AppData%\RegTool
[Files/Folders - Modified Within 30 Days]
NY -> AC33A1CA918854F6.job -> %SystemRoot%\tasks\AC33A1CA918854F6.job
NY -> A783604B918514C3.job -> %SystemRoot%\tasks\A783604B918514C3.job
NY -> hosts.slh -> %SystemRoot%\System32\drivers\etc\hosts.slh
[Custom Items]
:files
c:\documents and settings\Michel Mennen\Application Data\Else Poke Dog
c:\documents and settings\Jeffrey Mennen\Application Data\Else Poke Dog
c:\windows\system32\drivers\jjgznyyn.dat
c:\program files\RegTool
:reg
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=-
"AppInit_DLLs"="avgrsstx.dll"
:end
[Empty Temp Folders]
[Start Explorer]
[Reboot]

The fix should only take a very short time. When the fix is completed a message box will popup either telling you that it is finished, or that a reboot is needed to complete the fix. If the fix is complete, click the Ok button and Notepad will open with a log of actions taken during the fix. Post that log back here in your next reply.

If a reboot is required, click the "Yes" button to reboot the machine. After the reboot, OTScanIt2 will finish moving any files that could not be moved during the fix and NotePad will open with the final results at that time

Can you post that log with a fresh Hijackthis log
Keep me informed how things are running please
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 01:55:57 PM
computer still running fine, internet explorer still isnt working.

OtScanIT log file:
Process Explorer.EXE killed successfully!
[Driver Services - Safe List]
Unable to stop service cekslams!
Registry delete failed. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cekslams\ scheduled to be deleted on reboot.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_cekslams deleted successfully.
Unable to delete service cekslams!
File C:\WINDOWS\system32\drivers\jjgznyyn.dat not found.
[Registry - Safe List]
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\LESS CITY AMEN SETUP deleted successfully.
C:\Documents and Settings\All Users\Application Data\Tool Eggs Less City\Settings meet.exe moved successfully.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Vc Mode not found.
File C:\Documents and Settings\Jeffrey Mennen\Application Data\Else Poke Dog\Dupe Hold Burn.exe not found.
[Files/Folders - Created Within 30 Days]
C:\Documents and Settings\All Users\Application Data\Tool Eggs Less City folder moved successfully.
File C:\Program Files\Else Poke Dog not found!
C:\WINDOWS\tasks\RegTool Scan.job moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Application Data\RegTool\QuarantineW\2009-01-01 16-28-430 folder moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Application Data\RegTool\QuarantineW folder moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Application Data\RegTool\Logs folder moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Application Data\RegTool folder moved successfully.
[Files/Folders - Modified Within 30 Days]
File C:\WINDOWS\tasks\AC33A1CA918854F6.job not found!
C:\WINDOWS\tasks\A783604B918514C3.job moved successfully.
C:\WINDOWS\System32\drivers\etc\hosts.slh moved successfully.
[Custom Items]
========== FILES ==========
c:\documents and settings\Michel Mennen\Application Data\Else Poke Dog folder moved successfully.
File/Folder c:\documents and settings\Jeffrey Mennen\Application Data\Else Poke Dog not found.
File move failed. c:\windows\system32\drivers\jjgznyyn.dat scheduled to be moved on reboot.
File/Folder c:\program files\RegTool not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows\\AppInit_DLLs deleted successfully.
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows\\"AppInit_DLLs"|"avgrsstx.dll" /E : value set successfully!
[Empty Temp Folders]
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\etilqs_7PtB7tmcOE4zX6oUdqjK scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\Perflib_Perfdata_824.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\Perflib_Perfdata_82c.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\Perflib_Perfdata_934.dat scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_480.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_001_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_002_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_003_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_MAP_ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\urlclassifier3.sqlite scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\XUL.mfl scheduled to be deleted on reboot.
FireFox cache emptied.
RecycleBin -> emptied.
Explorer started successfully
< End of fix log >
OTScanIt2 by OldTimer - Version 1.0.6.2 fix logfile created on 01122009_194835

Files moved on Reboot...
File c:\windows\system32\drivers\jjgznyyn.dat not found!
File C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\etilqs_7PtB7tmcOE4zX6oUdqjK not found!
File C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\Perflib_Perfdata_824.dat not found!
File C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\Perflib_Perfdata_82c.dat not found!
File C:\Documents and Settings\Jeffrey Mennen\Local Settings\Temp\Perflib_Perfdata_934.dat not found!
File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File C:\WINDOWS\temp\Perflib_Perfdata_480.dat not found!
C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\urlclassifier3.sqlite moved successfully.
C:\Documents and Settings\Jeffrey Mennen\Local Settings\Application Data\Mozilla\Firefox\Profiles\uen6n1p5.default\XUL.mfl moved successfully.

Registry entries deleted on Reboot...
Registry delete failed. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cekslams\ scheduled to be deleted on reboot.

hijack log file:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:52:39, on 12-1-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\notepad.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\sistray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\internet explorer\iexplore.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.warrock.net/ (http://\"http://www.warrock.net/\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: (no name) - {EEE2F485-86D4-4AEB-9704-5B1037EBE281} - C:\WINDOWS\system32\cmprop.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CmUsbAudio] RunDll32 cmcnfg2.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\RunOnce: [OTScanIt] "C:\Documents and Settings\Jeffrey Mennen\Bureaublad\OTScanIt2\OTScanIt2.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1212511711984 (http://\"http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1212511711984\")
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab (http://\"http://download.divx.com/player/DivXBrowserPlugin.cab\")
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v4.cab (http://\"http://www.acclaim.com/cabs/acclaim_v4.cab\")
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 6817 bytes
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 02:07:48 PM
Can you do the following
Do a System Scan Only with Hijackthis and put a tick next to the following entries:

O2 - BHO: (no name) - {EEE2F485-86D4-4AEB-9704-5B1037EBE281} - C:\WINDOWS\system32\cmprop.dll
Close down all other open windows
Including this one
Then click on FIX CHECKED
OK any prompts then exit Hijackthis

Leave all browser windows closed

Open Malwarebytes Anti-Malware
Open the update tab and check for updates (Just in case)
Then open the Scanner tab
Run a "quick scan"
#  When the scan is complete, click OK, then Show Results to view the results.
# Make sure that everything is checked, and click Remove Selected.
* When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
# The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
# Copy&Paste the entire report in your next reply

Again, if it asks you to reboot, do so first
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 02:32:01 PM
okay after the reboot OTScanIt2 autlomaticly loaded up but didnt do anything (i waited for about 5 min)
I closed it and nothing else happend more.

Hijack log file:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:29:24, on 12-1-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\sistray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.warrock.net/ (http://\"http://www.warrock.net/\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: (no name) - {EEE2F485-86D4-4AEB-9704-5B1037EBE281} - C:\WINDOWS\system32\cmprop.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CmUsbAudio] RunDll32 cmcnfg2.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1212511711984 (http://\"http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1212511711984\")
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab (http://\"http://download.divx.com/player/DivXBrowserPlugin.cab\")
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v4.cab (http://\"http://www.acclaim.com/cabs/acclaim_v4.cab\")
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 6734 bytes

Malwarebytes Anti-Malware:
Malwarebytes' Anti-Malware 1.32
Database versie: 1646
Windows 5.1.2600 Service Pack 3

12-1-2009 20:22:26
mbam-log-2009-01-12 (20-22-26).txt

Scan type: Snelle Scan
Objecten gescand: 55848
Verstreken tijd: 3 minute(s), 25 second(s)

Geheugenprocessen geïnfecteerd: 0
Geheugenmodulen geïnfecteerd: 0
Registersleutels geïnfecteerd: 4
Registerwaarden geïnfecteerd: 4
Registerdata bestanden geïnfecteerd: 0
Mappen geïnfecteerd: 0
Bestanden geïnfecteerd: 1

Geheugenprocessen geïnfecteerd:
(Geen kwaadaardige items gevonden)

Geheugenmodulen geïnfecteerd:
(Geen kwaadaardige items gevonden)

Registersleutels geïnfecteerd:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\cekslams (Rootkit.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\cekslams (Rootkit.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\cekslams (Rootkit.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cekslams (Rootkit.Agent) -> Delete on reboot.

Registerwaarden geïnfecteerd:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\bf (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\bk (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\iu (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Settings\mu (Trojan.Agent) -> Delete on reboot.

Registerdata bestanden geïnfecteerd:
(Geen kwaadaardige items gevonden)

Mappen geïnfecteerd:
(Geen kwaadaardige items gevonden)

Bestanden geïnfecteerd:
C:\WINDOWS\system32\Drivers\jjgznyyn.dat (Rootkit.Agent) -> Delete on reboot.
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 02:38:56 PM
Download [color=\"#FF0000\"]The Avenger.zip[/color] (http://\"http://swandog46.geekstogo.com/avenger.zip\") by Swandog46 to your Desktop.

    * Click on Avenger.zip to open the file
    * Extract avenger.exe to your desktop
LOG OFF any other users on the computer except for yourself

Copy ALL the text contained in [color=\"#0000FF\"]blue[/color] below to your Clipboard by highlighting it and pressing the (Ctrl+C) on your keyboard,
Make sure you include "Drivers to delete:"
=============================================================
[color=\"#0000FF\"]
Drivers to delete:
cekslams

Files to delete:
C:\WINDOWS\system32\Drivers\jjgznyyn.dat
C:\WINDOWS\system32\cmprop.dll

Registry keys to delete:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{eee2f485-86d4-4aeb-9704-5b1037ebe281}

 
[/color]

==========================================================================

Now, start The Avenger program by clicking on its icon on your desktop
OK the prompt

    * Under "Script file to execute" choose "Input Script Manually".
    * Now click on the Magnifying Glass icon which will open a new window titled "View/edit script"
    * Paste the text copied to clipboard into this window by pressing (Ctrl+V).
    * Click Done
    * Now click on the [color=\"#00FF00\"]Green Light[/color] to begin execution of the script
    * Answer "Yes" twice when prompted.

Avenger should now Reboot your computer

Back in Windows

1, Post a fresh hijackthis log
2. Post the log from Avenger, located here>>C:\Avenger.txt
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 02:48:48 PM
sorry i dont understand, this is what it looks:
(http://img82.imageshack.us/img82/1948/sdsdtw3.png)
just input the script were it should?
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 03:00:18 PM
Copy/paste under
Input Script here:

Then click Execute and follow the prompts
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 03:06:20 PM
avenger log file
Logfile of The Avenger Version 2.0, © by Swandog46
http://swandog46.geekstogo.com (http://\"http://swandog46.geekstogo.com\")

Platform:  Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!
Driver "cekslams" deleted successfully.
File "C:\WINDOWS\system32\Drivers\jjgznyyn.dat" deleted successfully.
File "C:\WINDOWS\system32\cmprop.dll" deleted successfully.
Registry key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{eee2f485-86d4-4aeb-9704-5b1037ebe281}" deleted successfully.

Completed script processing.

*******************

Finished!  Terminate.



Hijack log file
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:04:04, on 12-1-2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\sistray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.warrock.net/ (http://\"http://www.warrock.net/\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 (http://\"http://go.microsoft.com/fwlink/?LinkId=54896\")
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 (http://\"http://go.microsoft.com/fwlink/?LinkId=69157\")
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [CmUsbAudio] RunDll32 cmcnfg2.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: E&xporteren naar Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1212511711984 (http://\"http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1212511711984\")
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab (http://\"http://download.divx.com/player/DivXBrowserPlugin.cab\")
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v4.cab (http://\"http://www.acclaim.com/cabs/acclaim_v4.cab\")
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

--
End of file - 6504 bytes
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 03:12:48 PM
Can you do me a favor and run a fresh scan with OTScanit2
as you did before
Upload the file again

Also keep me informed how things are running
Title: internet explorer isnt working
Post by: X-clusive on January 12, 2009, 03:28:39 PM
computer is running fine as before maybe some faster though /wink.gif\' class=\'bbc_emoticon\' alt=\';)\' />
only internet explorer isnt still working

otscan (http://\"http://www.upload4free.com/download.php?file=1034325566-OTScanIt.Txt\")

But i need to do homework for tomorrow's school
and after that going to bed
I realy appriciate your help!
hopefully see you tommorow

thx~
Title: internet explorer isnt working
Post by: guestolo on January 12, 2009, 03:36:56 PM
Run another quick scan with Malwarebytes AntiMalware
Remove anything it finds
Post the log if it finds anything

In addition: Start IE by the following
Go to Start -> All Programs -> Accessories -> System Tools, and then click Internet Explorer (No Add-ons).
Does IE then work properly?