see the attached file plzOTL logfile created on: 2/27/2010 10:01:45 AM - Run 1OTL by OldTimer - Version 3.1.30.3 Folder = C:\Documents and Settings\Administrator\My Documents\Downloads\ProgramsWindows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstationInternet Explorer (Version = 6.0.2900.2180)Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 510.00 Mb Total Physical Memory | 366.00 Mb Available Physical Memory | 72.00% Memory free1.00 Gb Paging File | 1.00 Gb Available in Paging File | 84.00% Paging File freePaging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program FilesDrive C: | 6.34 Gb Total Space | 2.13 Gb Free Space | 33.53% Space Free | Partition Type: FAT32Drive D: | 12.64 Gb Total Space | 0.27 Gb Free Space | 2.14% Space Free | Partition Type: FAT32Drive E: | 5.96 Gb Total Space | 3.69 Gb Free Space | 61.93% Space Free | Partition Type: FAT32Drive F: | 6.92 Gb Total Space | 3.75 Gb Free Space | 54.20% Space Free | Partition Type: FAT32Drive G: | 30.36 Gb Total Space | 0.22 Gb Free Space | 0.72% Space Free | Partition Type: FAT32Drive H: | 31.23 Gb Total Space | 4.61 Gb Free Space | 14.78% Space Free | Partition Type: FAT32I: Drive not present or media not loaded Computer Name: MATHELIANCurrent User Name: AdministratorLogged in as Administrator. Current Boot Mode: NormalScan Mode: Current userCompany Name Whitelist: OffSkip Microsoft Files: OffFile Age = 30 DaysOutput = Standard
========== Processes (SafeList) ========== PRC - [2010/02/27 09:48:56 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\My Documents\Downloads\Programs\OTL.exePRC - [2009/06/02 10:10:08 | 000,637,952 | ---- | M] (Nokia.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exePRC - [2009/05/28 13:45:00 | 000,132,096 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exePRC - [2009/03/30 10:11:14 | 000,120,320 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exePRC - [2007/10/05 16:18:50 | 000,230,664 | ---- | M] (Kaspersky Lab) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations\avp.exePRC - [2004/08/04 00:56:50 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exePRC - [2004/01/16 01:11:08 | 000,079,872 | ---- | M] () -- C:\WINDOWS\system32\ffpsrv.exePRC - [2003/04/25 05:53:54 | 000,054,784 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXEPRC - [2002/10/15 23:18:02 | 000,155,648 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxtray.exePRC - [2002/10/15 23:05:58 | 000,114,688 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\hkcmd.exe
========== Modules (SafeList) ========== MOD - [2010/02/27 09:48:56 | 000,549,888 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\My Documents\Downloads\Programs\OTL.exeMOD - [2010/02/26 22:18:16 | 000,087,040 | RHS- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Temp\cvasds0.dllMOD - [2004/08/04 00:57:02 | 001,050,624 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
========== Win32 Services (SafeList) ========== SRV - File not found [Auto | Stopped] -- -- (DrWebEngine) Dr.Web Scanning Engine (DrWebEngine)SRV - [2010/01/25 10:00:54 | 000,067,360 | ---- | M] (NOS Microsystems Ltd.) [On_Demand | Stopped] -- C:\Program Files\NOS\BIN\getPlus_Helper.dll -- (getPlusHelper) getPlus®SRV - [2009/08/17 16:47:50 | 000,231,328 | ---- | M] (Doctor Web, Ltd.) [Auto | Stopped] -- C:\Program Files\DrWeb\spidernt.exe -- (SPIDERNT)SRV - [2009/06/02 10:10:08 | 000,637,952 | ---- | M] (Nokia.) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)SRV - [2007/10/05 16:18:50 | 000,230,664 | ---- | M] (Kaspersky Lab) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations\avp.exe -- (AVP)SRV - [2007/01/19 12:54:14 | 000,097,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\MSN Messenger\usnsvc.exe -- (usnjsvc)SRV - [2004/01/16 01:11:08 | 000,079,872 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\ffpsrv.exe -- (FileAndFolderProtector_S)
========== Driver Services (SafeList) ========== DRV - [2009/08/17 16:47:48 | 000,306,464 | ---- | M] (Doctor Web, Ltd.) [File_System | Auto | Stopped] -- C:\Program Files\DrWeb\spider.sys -- (SPIDER)DRV - [2009/02/09 08:37:48 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)DRV - [2009/02/09 08:37:46 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)DRV - [2009/02/09 08:37:46 | 000,017,664 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)DRV - [2008/08/26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)DRV - [2007/10/05 14:48:04 | 000,190,736 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (klif)DRV - [2007/07/18 15:39:54 | 000,110,096 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\kl1.sys -- (kl1)DRV - [2007/05/30 18:49:06 | 000,024,344 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5)DRV - [2004/08/03 23:08:44 | 000,025,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser.sys -- (usbser)DRV - [2004/07/17 11:36:38 | 000,027,440 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)DRV - [2004/01/17 20:13:54 | 000,043,296 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\FDCDNT.SYS -- (FDCDNT)DRV - [2003/10/15 01:10:00 | 000,036,484 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SMBios.sys -- (SMBios) Intel ®DRV - [2003/04/25 12:48:02 | 000,730,092 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)DRV - [2002/10/25 09:03:30 | 000,071,514 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ialmkchw.sys -- ({D31A0762-0CEB-444e-ACFF-B049A1F6FE91}) Intel® Graphics Chipset (KCH)DRV - [2002/10/25 09:03:22 | 000,091,774 | ---- | M] (Intel Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ialmsbw.sys -- ({6080A529-897E-4629-A488-ABA0C29B635E}) Intel® Graphics Platform (SoftBIOS)DRV - [2002/10/25 09:02:20 | 000,080,283 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ialmnt5.sys -- (ialm)DRV - [2001/08/23 14:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)DRV - [2001/08/17 12:11:06 | 000,066,591 | ---- | M] (3Com Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\el90xbc5.sys -- (EL90XBC)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 172.16.0.200:8080
========== FireFox ========== FF - prefs.js..extensions.enabledItems:
[email protected]:6.7FF - prefs.js..network.proxy.ftp: "172.16.0.200"FF - prefs.js..network.proxy.ftp_port: 8080FF - prefs.js..network.proxy.gopher: "172.16.0.200"FF - prefs.js..network.proxy.gopher_port: 8080FF - prefs.js..network.proxy.http: "172.16.0.200"FF - prefs.js..network.proxy.http_port: 8080FF - prefs.js..network.proxy.share_proxy_settings: trueFF - prefs.js..network.proxy.socks: "172.16.0.200"FF - prefs.js..network.proxy.socks_port: 8080FF - prefs.js..network.proxy.ssl: "172.16.0.200"FF - prefs.js..network.proxy.ssl_port: 8080FF - prefs.js..network.proxy.type: 1 FF - HKLM\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2010/02/18 19:16:52 | 000,000,000 | ---D | M] [2010/02/19 22:54:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Extensions[2010/02/19 22:54:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\prqkrkka.default\extensions O1 HOSTS File: ([2001/08/23 14:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hostsO1 - Hosts: 127.0.0.1 localhostO2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Tonec Inc.)O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No CLSID value found.O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {472734EA-242A-422B-ADF8-83D1E48CC825} - No CLSID value found.O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations\avp.exe (Kaspersky Lab)O4 - HKLM..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)O4 - HKLM..\Run: [KernelFaultCheck] File not foundO4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)O4 - HKCU..\Run: [cdoosoft] C:\Documents and Settings\Administrator\Local Settings\Temp\herss.exe ()O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations\ie_banner_deny.htm ()O9 - Extra Button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations\SCIEPlgn.dll (Kaspersky Lab)O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\DrWeb\drwebsp.dll (Doctor Web, Ltd.)O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\DrWeb\drwebsp.dll (Doctor Web, Ltd.)O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\DrWeb\drwebsp.dll (Doctor Web, Ltd.)O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\DrWeb\drwebsp.dll (Doctor Web, Ltd.)O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files\DrWeb\drwebsp.dll (Doctor Web, Ltd.)O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Program Files\DrWeb\drwebsp.dll (Doctor Web, Ltd.)O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (get_atlcom Class)O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll (Microsoft Corporation)O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1.0FO\adialhk.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations\adialhk.dll (Kaspersky Lab)O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab)O32 - HKLM CDRom: AutoRun - 1O32 - AutoRun File - [2010/02/12 18:17:52 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]O32 - AutoRun File - [2010/02/27 10:02:02 | 000,000,051 | RHS- | M] () - C:\autorun.inf -- [ FAT32 ]O32 - AutoRun File - [2010/02/27 10:02:02 | 000,000,051 | RHS- | M] () - D:\autorun.inf -- [ FAT32 ]O32 - AutoRun File - [2010/01/22 18:40:16 | 000,000,000 | ---- | M] () - E:\AUTOEXEC.BAT -- [ FAT32 ]O32 - AutoRun File - [2010/02/27 10:02:02 | 000,000,051 | RHS- | M] () - E:\autorun.inf -- [ FAT32 ]O32 - AutoRun File - [2010/02/27 10:02:02 | 000,000,051 | RHS- | M] () - F:\autorun.inf -- [ FAT32 ]O32 - AutoRun File - [2010/02/27 10:02:02 | 000,000,051 | RHS- | M] () - G:\autorun.inf -- [ FAT32 ]O32 - AutoRun File - [2010/02/27 10:02:02 | 000,000,051 | RHS- | M] () - H:\autorun.inf -- [ FAT32 ]O33 - MountPoints2\{084b30db-17fa-11df-93c7-806d6172696f}\Shell\AutoRun\command - "" = C:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{084b30db-17fa-11df-93c7-806d6172696f}\Shell\open\Command - "" = C:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{084b30dc-17fa-11df-93c7-806d6172696f}\Shell\AutoRun\command - "" = D:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{084b30dc-17fa-11df-93c7-806d6172696f}\Shell\open\Command - "" = D:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240c-180f-11df-b96e-806d6172696f}\Shell\AutoRun\command - "" = E:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240c-180f-11df-b96e-806d6172696f}\Shell\open\Command - "" = E:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240d-180f-11df-b96e-806d6172696f}\Shell\AutoRun\command - "" = F:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240d-180f-11df-b96e-806d6172696f}\Shell\open\Command - "" = F:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240e-180f-11df-b96e-806d6172696f}\Shell\AutoRun\command - "" = G:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240e-180f-11df-b96e-806d6172696f}\Shell\open\Command - "" = G:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240f-180f-11df-b96e-806d6172696f}\Shell\AutoRun\command - "" = H:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{9438240f-180f-11df-b96e-806d6172696f}\Shell\open\Command - "" = H:\s1.exe -- [2010/02/26 06:59:32 | 000,099,328 | RHS- | M] ()O33 - MountPoints2\{98d4fa60-1802-11df-80a6-0050dadccf0e}\Shell - "" = AutoRunO33 - MountPoints2\{98d4fa60-1802-11df-80a6-0050dadccf0e}\Shell\AutoRun - "" = Auto&PlayO33 - MountPoints2\{a4b2b592-18a5-11df-b976-0050dadccf0e}\Shell - "" = AutoRunO33 - MountPoints2\{a4b2b592-18a5-11df-b976-0050dadccf0e}\Shell\AutoRun - "" = Auto&PlayO33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\E\Shell\open\Command - "" = E:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\F\Shell\open\Command - "" = F:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\G\Shell\open\Command - "" = G:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\H\Shell\open\Command - "" = H:\mbvd.exe -- [2009/12/03 04:32:44 | 000,113,972 | RHS- | M] ()O33 - MountPoints2\I\Shell - "" = AutoRunO33 - MountPoints2\I\Shell\AutoRun - "" = Auto&PlayO34 - HKLM BootExecute: (autocheck autochk *) - File not foundO35 - comfile [open] -- "%1" %*O35 - exefile [open] -- "%1" %* NetSvcs: 6to4 - File not foundNetSvcs: Ias - C:\WINDOWS\system32\ias [2010/02/12 17:23:38 | 000,000,000 | ---D | M]NetSvcs: Iprip - File not foundNetSvcs: Irmon - File not foundNetSvcs: NWCWorkstation - File not foundNetSvcs: Nwsapagent - File not foundNetSvcs: WmdmPmSp - File not foundNetSvcs: ayjasm - C:\WINDOWS\system32\crxfeenj.dll ()NetSvcs: dadzvibyo - C:\WINDOWS\system32\crxfeenj.dll () MsConfig - StartUpReg:
cdoosoft - hkey= - key= - C:\Documents and Settings\Administrator\Local Settings\Temp\herss.exe ()MsConfig - StartUpReg:
KernelFaultCheck - hkey= - key= - File not foundMsConfig - StartUpReg:
LanguageShortcut - hkey= - key= - C:\Program Files\CyberLink\PowerDVD\Language\Language.exe File not foundMsConfig - StartUpReg:
PC Suite Tray - hkey= - key= - C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)MsConfig - StartUpReg:
RemoteControl - hkey= - key= - C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe File not foundMsConfig - State: "system.ini" - 0MsConfig - State: "win.ini" - 0MsConfig - State: "bootini" - 0MsConfig - State: "services" - 0MsConfig - State: "startup" - 2 CREATERESTOREPOINTRestore point Set: OTL Restore Point (53765057741324288)
========== Files/Folders - Created Within 30 Days ========== [2010/02/27 00:54:50 | 000,000,000 | ---D | C] -- C:\Program Files\MYIE2[2010/02/26 15:10:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\IDM[2010/02/26 15:10:11 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Download Manager[2010/02/26 06:57:20 | 000,000,000 | -HSD | C] -- C:\FOUND.005[2010/02/26 06:52:17 | 000,000,000 | ---D | C] -- C:\Program Files\DrWeb[2010/02/26 06:52:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Doctor Web[2010/02/26 06:52:15 | 000,000,000 | -HSD | C] -- C:\Config.Msi[2010/02/26 02:35:18 | 000,000,000 | ---D | C] -- C:\Program Files\TrendMicro[2010/02/25 22:02:53 | 000,018,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cdaudio.sys[2010/02/25 21:35:01 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab[2010/02/25 21:35:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab[2010/02/25 21:33:56 | 000,000,000 | ---D | C] -- C:\kav[2010/02/25 20:17:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities[2010/02/25 00:05:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Contacts[2010/02/25 00:05:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\My Received Files[2010/02/25 00:03:32 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Messenger[2010/02/24 23:52:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\FileAndFolderProtector_S[2010/02/24 23:52:01 | 000,000,000 | ---D | C] -- C:\Program Files\File and Folder Protector[2010/02/24 23:47:22 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent[2010/02/24 23:10:01 | 000,000,000 | ---D | C] -- C:\Program Files\GRETECH[2010/02/23 13:29:05 | 000,000,000 | ---D | C] -- C:\Program Files\NOS[2010/02/23 13:29:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NOS[2010/02/22 20:53:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Vypress Chat History[2010/02/22 20:53:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\VyPRESS[2010/02/22 20:53:02 | 000,000,000 | ---D | C] -- C:\Program Files\Vypress Chat[2010/02/22 20:18:45 | 000,000,000 | ---D | C] -- C:\Program Files\FLV Player[2010/02/22 19:54:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\ESET[2010/02/22 18:56:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\SAaipp Baba[2010/02/21 10:28:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\Internet Logs[2010/02/21 02:03:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\uTorrent[2010/02/20 23:29:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss[2010/02/20 19:25:10 | 000,000,000 | -HSD | C] -- C:\FOUND.004[2010/02/20 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\WMTools Downloaded Files[2010/02/20 01:26:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\CyberLink[2010/02/20 01:26:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\CyberLink[2010/02/20 01:19:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Threat Expert[2010/02/20 00:11:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP[2010/02/19 22:59:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Macromedia[2010/02/19 22:59:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Adobe[2010/02/19 22:54:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla[2010/02/19 22:54:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Mozilla[2010/02/19 22:52:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\avg9[2010/02/19 22:52:22 | 000,000,000 | ---D | C] -- C:\Program Files\AVG[2010/02/19 22:48:59 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox 3.5 Beta 4[2010/02/18 23:03:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\My Documents\Downloads[2010/02/18 23:03:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\DMCache[2010/02/18 19:30:16 | 000,000,000 | ---D | C] -- C:\Program Files\CyberLink[2010/02/18 19:22:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Videos[2010/02/18 19:21:10 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbser.sys[2010/02/18 19:21:10 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbser.sys[2010/02/18 19:20:37 | 000,014,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsgXP_2k3.dll[2010/02/18 19:20:34 | 000,023,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spupdsvc.exe[2010/02/18 19:17:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Nokia[2010/02/18 19:17:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\PC Suite[2010/02/18 19:17:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PC Suite[2010/02/18 19:16:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite[2010/02/18 19:16:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia[2010/02/18 19:16:21 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX[2010/02/18 19:16:20 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys[2010/02/18 19:16:15 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution[2010/02/18 19:15:55 | 000,007,808 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys[2010/02/18 19:15:54 | 000,022,016 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys[2010/02/18 19:15:51 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01007.dll[2010/02/18 19:15:51 | 000,659,968 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll[2010/02/18 19:15:51 | 000,017,664 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys[2010/02/18 19:15:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE[2010/02/18 19:15:20 | 000,091,136 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll[2010/02/18 19:15:19 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia[2010/02/18 19:14:51 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR[2010/02/18 19:13:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Installations[2010/02/16 21:11:56 | 000,000,000 | -HSD | C] -- C:\FOUND.003[2010/02/15 21:27:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\ESET[2010/02/14 16:17:02 | 000,000,000 | -HSD | C] -- C:\FOUND.002[2010/02/13 22:47:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\stars[2010/02/13 15:32:00 | 000,000,000 | -HSD | C] -- C:\FOUND.001[2010/02/13 13:26:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump[2010/02/13 13:26:06 | 000,000,000 | -HSD | C] -- C:\FOUND.000[2010/02/13 02:17:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Media Player Classic[2010/02/13 02:16:12 | 000,065,536 | ---- | C] (Apple Computer, Inc.) -- C:\WINDOWS\System32\QuickTimeVR.qtx[2010/02/13 02:16:12 | 000,049,152 | ---- | C] (Apple Computer, Inc.) -- C:\WINDOWS\System32\QuickTime.qts[2010/02/13 02:16:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple Computer[2010/02/13 02:15:57 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll[2010/02/13 02:15:57 | 000,176,167 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\rmoc3260.dll[2010/02/13 02:15:57 | 000,006,656 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5016.dll[2010/02/13 02:15:57 | 000,005,632 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5032.dll[2010/02/13 02:15:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\bsplayer[2010/02/13 02:15:53 | 001,294,336 | ---- | C] (HMS
http://hp.vector.co.jp/authors/VA012897/) -- C:\WINDOWS\System32\vorbis.acm[2010/02/13 02:15:53 | 000,446,464 | ---- | C] (
http://www.mp3dev.org/) -- C:\WINDOWS\System32\lameACM.acm[2010/02/13 02:15:53 | 000,424,960 | ---- | C] (Voxware, Inc.) -- C:\WINDOWS\System32\msms001.vwp[2010/02/13 02:15:53 | 000,360,448 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\System32\mp3fhg.acm[2010/02/13 02:15:53 | 000,118,784 | ---- | C] (fccHandler) -- C:\WINDOWS\System32\ac3acm.acm[2010/02/13 02:15:52 | 000,630,784 | ---- | C] (On2.com) -- C:\WINDOWS\System32\vp7vfw.dll[2010/02/13 02:15:52 | 000,446,464 | ---- | C] (On2.com) -- C:\WINDOWS\System32\vp31vfw.dll[2010/02/13 02:15:52 | 000,438,272 | ---- | C] (On2.com) -- C:\WINDOWS\System32\vp6vfw.dll[2010/02/13 02:15:52 | 000,413,760 | ---- | C] (Hacked with Joy !) -- C:\WINDOWS\System32\DivXc32f.dll[2010/02/13 02:15:52 | 000,413,760 | ---- | C] (Hacked with Joy !) -- C:\WINDOWS\System32\DivXc32.dll[2010/02/13 02:15:52 | 000,391,680 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\I263_32.drv[2010/02/13 02:15:52 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\Npindeo.dll[2010/02/13 02:15:52 | 000,144,384 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\Iacenc.dll[2010/02/13 02:15:52 | 000,098,304 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\IMC32.acm[2010/02/13 02:15:52 | 000,039,936 | ---- | C] (Disappearing Inc.) -- C:\WINDOWS\System32\huffyuv.dll[2010/02/13 02:15:51 | 001,415,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WMV9VCM.dll[2010/02/13 02:15:51 | 001,024,000 | ---- | C] (3ivx.com) -- C:\WINDOWS\System32\3ivx.dll[2010/02/13 02:15:51 | 000,286,720 | ---- | C] (3ivx.com) -- C:\WINDOWS\System32\3ivxVfWCodec.dll[2010/02/13 02:15:50 | 001,044,480 | ---- | C] (The OpenSSL Project,
http://www.openssl.org/) -- C:\WINDOWS\System32\libdivx.dll[2010/02/13 02:15:50 | 000,619,156 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx.dll[2010/02/13 02:15:50 | 000,200,704 | ---- | C] (The OpenSSL Project,
http://www.openssl.org/) -- C:\WINDOWS\System32\ssldivx.dll[2010/02/13 02:15:50 | 000,200,704 | ---- | C] (DivXNetworks) -- C:\WINDOWS\System32\dtu100.dll[2010/02/13 02:15:50 | 000,090,112 | ---- | C] (DivXNetworks) -- C:\WINDOWS\System32\dpl100.dll[2010/02/13 02:15:47 | 000,499,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcp71.dll[2010/02/13 02:15:47 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcr71.dll[2010/02/13 02:15:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Real[2010/02/13 02:15:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Real[2010/02/13 02:15:47 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack[2010/02/13 00:55:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\BurstCopy Labs[2010/02/13 00:55:24 | 000,000,000 | ---D | C] -- C:\Program Files\BurstCopy[2010/02/13 00:55:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt[2010/02/13 00:42:25 | 000,000,000 | -HSD | C] -- C:\Recycled[2010/02/13 00:42:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\vlc[2010/02/12 23:26:26 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN[2010/02/12 23:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ESET[2010/02/12 23:15:21 | 000,026,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbstor.sys[2010/02/12 22:35:27 | 000,006,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\splitter.sys[2010/02/12 22:35:25 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wdmaud.sys[2010/02/12 22:35:23 | 000,052,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmusic.sys[2010/02/12 22:35:22 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\swmidi.sys[2010/02/12 22:35:21 | 000,142,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aec.sys[2010/02/12 22:35:19 | 000,171,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kmixer.sys[2010/02/12 22:35:18 | 000,002,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmkaud.sys[2010/02/12 22:35:17 | 000,060,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sysaudio.sys[2010/02/12 22:35:15 | 000,007,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mskssrv.sys[2010/02/12 22:35:14 | 000,004,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspqm.sys[2010/02/12 22:35:11 | 000,005,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspclock.sys[2010/02/12 22:35:06 | 000,145,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\portcls.sys[2010/02/12 22:35:06 | 000,145,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\portcls.sys[2010/02/12 22:35:06 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser.dll[2010/02/12 22:35:06 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksuser.dll[2010/02/12 22:35:05 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax[2010/02/12 22:35:05 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksproxy.ax[2010/02/12 22:35:05 | 000,060,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\drmk.sys[2010/02/12 22:35:05 | 000,060,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmk.sys[2010/02/12 22:35:00 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek Sound Manager[2010/02/12 22:34:58 | 000,765,952 | ---- | C] (Sensaura Ltd) -- C:\WINDOWS\System\crlds3d.dll[2010/02/12 22:34:58 | 000,000,000 | ---D | C] -- C:\Program Files\AvRack[2010/02/12 22:34:57 | 000,730,092 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\ALCXWDM.SYS[2010/02/12 22:34:57 | 000,720,896 | ---- | C] (Sensaura Ltd) -- C:\WINDOWS\System32\Audio3D.dll[2010/02/12 22:34:57 | 000,720,896 | ---- | C] (Sensaura Ltd) -- C:\WINDOWS\System32\dllcache\a3d.dll[2010/02/12 22:34:57 | 000,720,896 | ---- | C] (Sensaura Ltd) -- C:\WINDOWS\System32\a3d.dll[2010/02/12 22:34:57 | 000,054,784 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE[2010/02/12 22:34:54 | 006,842,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\ALSNDMGR.CPL[2010/02/12 22:34:54 | 000,208,896 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\alcupd.exe[2010/02/12 22:34:54 | 000,135,168 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\alcrmv.exe[2010/02/12 22:32:52 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxres.dll[2010/02/12 18:38:34 | 000,315,392 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxsrvc.dll[2010/02/12 18:38:34 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrptg.lrc[2010/02/12 18:38:34 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxtray.exe[2010/02/12 18:38:34 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrtrk.lrc[2010/02/12 18:38:34 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrtha.lrc[2010/02/12 18:38:34 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrsve.lrc[2010/02/12 18:38:34 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrrus.lrc[2010/02/12 18:38:34 | 000,026,679 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\wa301b.sys[2010/02/12 18:38:34 | 000,026,679 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\wa301a.sys[2010/02/12 18:38:34 | 000,020,021 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\vch.sys[2010/02/12 18:38:33 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrptb.lrc[2010/02/12 18:38:33 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrplk.lrc[2010/02/12 18:38:33 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrnld.lrc[2010/02/12 18:38:33 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrita.lrc[2010/02/12 18:38:33 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrhun.lrc[2010/02/12 18:38:33 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrfrc.lrc[2010/02/12 18:38:33 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrfra.lrc[2010/02/12 18:38:33 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrnor.lrc[2010/02/12 18:38:33 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrfin.lrc[2010/02/12 18:38:33 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrkor.lrc[2010/02/12 18:38:33 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrjpn.lrc[2010/02/12 18:38:33 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrheb.lrc[2010/02/12 18:38:32 | 000,503,808 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxress.dll[2010/02/12 18:38:32 | 000,163,840 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrell.lrc[2010/02/12 18:38:32 | 000,159,744 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxresp.lrc[2010/02/12 18:38:32 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxreng.lrc[2010/02/12 18:38:32 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrdeu.lrc[2010/02/12 18:38:32 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrdan.lrc[2010/02/12 18:38:32 | 000,155,648 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrcsy.lrc[2010/02/12 18:38:32 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrenu.lrc[2010/02/12 18:38:32 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrcht.lrc[2010/02/12 18:38:32 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrchs.lrc[2010/02/12 18:38:31 | 000,221,184 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxeud.dll[2010/02/12 18:38:31 | 000,204,800 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxpph.dll[2010/02/12 18:38:31 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrarb.lrc[2010/02/12 18:38:31 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxrara.lrc[2010/02/12 18:38:31 | 000,151,552 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxdiag.exe[2010/02/12 18:38:31 | 000,118,784 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxhk.dll[2010/02/12 18:38:31 | 000,086,016 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxdo.dll[2010/02/12 18:38:30 | 001,859,584 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\ialmgicd.dll[2010/02/12 18:38:30 | 000,483,328 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxcfg.exe[2010/02/12 18:38:30 | 000,147,456 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxdev.dll[2010/02/12 18:38:30 | 000,094,208 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxcpl.cpl[2010/02/12 18:38:30 | 000,091,774 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\ialmsbw.sys[2010/02/12 18:38:30 | 000,081,979 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\ialmrem.dll[2010/02/12 18:38:30 | 000,080,283 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\ialmnt5.sys[2010/02/12 18:38:30 | 000,071,514 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\ialmkchw.sys[2010/02/12 18:38:30 | 000,045,056 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\igfxdgps.dll[2010/02/12 18:38:30 | 000,034,367 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\ialmrnt5.dll[2010/02/12 18:38:29 | 000,526,914 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\ialmdd5.dll[2010/02/12 18:38:29 | 000,184,320 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\ialmgdev.dll[2010/02/12 18:38:29 | 000,163,067 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\ialmdev5.dll[2010/02/12 18:38:29 | 000,114,688 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\hkcmd.exe[2010/02/12 18:38:29 | 000,114,688 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\hccutils.dll[2010/02/12 18:38:29 | 000,086,073 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\iAlmCoIn_0_v8.dll[2010/02/12 18:38:29 | 000,077,372 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\ialmdnt5.dll[2010/02/12 18:38:29 | 000,032,823 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a310.sys[2010/02/12 18:38:29 | 000,030,263 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a311.sys[2010/02/12 18:38:29 | 000,026,167 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a303.sys[2010/02/12 18:38:29 | 000,025,655 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a304.sys[2010/02/12 18:38:29 | 000,025,143 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a309.sys[2010/02/12 18:38:29 | 000,020,023 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a307.sys[2010/02/12 18:38:29 | 000,015,927 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a306.sys[2010/02/12 18:38:29 | 000,011,319 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a305.sys[2010/02/12 18:38:29 | 000,010,295 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a312.sys[2010/02/12 18:38:29 | 000,010,295 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a308.sys[2010/02/12 18:38:29 | 000,010,295 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\a302.sys[2010/02/12 18:38:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\Drivers[2010/02/12 18:38:12 | 000,000,000 | ---D | C] -- C:\Program Files\Intel[2010/02/12 18:37:52 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups[2010/02/12 18:37:50 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information[2010/02/12 18:37:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield[2010/02/12 18:34:21 | 000,036,484 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\SMBios.sys[2010/02/12 18:34:18 | 000,000,000 | ---D | C] -- C:\TempEI4[2010/02/12 18:33:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Identities[2010/02/12 18:33:50 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information[2010/02/12 18:33:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Pictures[2010/02/12 18:33:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Music[2010/02/12 18:33:37 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Administrator\Application Data\Microsoft[2010/02/12 18:33:37 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Administrator\Cookies[2010/02/12 18:33:37 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\SendTo[2010/02/12 18:33:37 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Application Data[2010/02/12 18:33:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Start Menu[2010/02/12 18:33:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents[2010/02/12 18:33:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Favorites[2010/02/12 18:33:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Templates[2010/02/12 18:33:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\PrintHood[2010/02/12 18:33:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\NetHood[2010/02/12 18:33:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Local Settings[2010/02/12 18:33:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft[2010/02/12 18:33:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop[2010/02/12 18:33:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution[2010/02/12 18:33:18 | 000,000,000 | -HSD | C] -- C:\System Volume Information[2010/02/12 18:33:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch[2010/02/12 18:33:00 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft[2010/02/12 18:33:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft[2010/02/12 18:32:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft[2010/02/12 18:22:30 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winzm.ime[2010/02/12 18:22:29 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winsp.ime[2010/02/12 18:22:29 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winpy.ime[2010/02/12 18:22:28 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winime.ime[2010/02/12 18:22:27 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winar30.ime[2010/02/12 18:22:27 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wingb.ime[2010/02/12 18:22:26 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys[2010/02/12 18:22:25 | 000,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll[2010/02/12 18:22:24 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wam51.dll[2010/02/12 18:22:24 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamreg51.dll[2010/02/12 18:22:24 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamps51.dll[2010/02/12 18:22:23 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svc.dll[2010/02/12 18:22:23 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ext.dll[2010/02/12 18:22:23 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svapi.dll[2010/02/12 18:22:22 | 000,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll[2010/02/12 18:22:22 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ctrs51.dll[2010/02/12 18:22:21 | 000,426,041 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicepad.dll[2010/02/12 18:22:21 | 000,086,073 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicesub.dll[2010/02/12 18:22:19 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniime.dll[2010/02/12 18:22:18 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uihelper.dll[2010/02/12 18:22:18 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unicdime.ime[2010/02/12 18:22:17 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe[2010/02/12 18:22:16 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tools.dll[2010/02/12 18:22:15 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe[2010/02/12 18:22:15 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmigrate.dll[2010/02/12 18:22:14 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlgnt.ime[2010/02/12 18:22:14 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe[2010/02/12 18:22:13 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll[2010/02/12 18:22:13 | 000,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys[2010/02/12 18:22:12 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys[2010/02/12 18:22:12 | 000,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys[2010/02/12 18:22:10 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\svcext51.dll[2010/02/12 18:22:10 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\status.dll[2010/02/12 18:22:09 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sspifilt.dll[2010/02/12 18:22:09 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ssinc51.dll[2010/02/12 18:22:08 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll[2010/02/12 18:22:07 | 000,143,422 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\softkey.dll[2010/02/12 18:22:06 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmptrap.exe[2010/02/12 18:22:06 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_snprfdll.dll[2010/02/12 18:22:05 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpthrd.dll[2010/02/12 18:22:05 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpstup.dll[2010/02/12 18:22:04 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpincl.dll[2010/02/12 18:22:04 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpsmir.dll[2010/02/12 18:22:04 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpmib.dll[2010/02/12 18:22:03 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpcl.dll[2010/02/12 18:22:02 | 000,456,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpsvc.dll[2010/02/12 18:22:02 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmp.exe[2010/02/12 18:22:01 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpctrs.dll[2010/02/12 18:22:01 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpapi.dll[2010/02/12 18:22:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smimsgif.dll[2010/02/12 18:22:00 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsm.dll[2010/02/12 18:22:00 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsy.dll[2010/02/12 18:21:59 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smi2smir.exe[2010/02/12 18:21:59 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll[2010/02/12 18:21:58 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll[2010/02/12 18:21:58 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll[2010/02/12 18:21:57 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll[2010/02/12 18:21:57 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll[2010/02/12 18:21:56 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll[2010/02/12 18:21:56 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll[2010/02/12 18:21:56 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll[2010/02/12 18:21:55 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll[2010/02/12 18:21:55 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll[2010/02/12 18:21:54 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll[2010/02/12 18:21:54 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll[2010/02/12 18:21:53 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll[2010/02/12 18:21:53 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\simptcp.dll[2010/02/12 18:21:49 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seos.dll[2010/02/12 18:21:48 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\seo.dll[2010/02/12 18:21:48 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_scripto.dll[2010/02/12 18:21:47 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwnh.dll[2010/02/12 18:21:46 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll[2010/02/12 18:21:46 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll[2010/02/12 18:21:46 | 000,026,624 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll[2010/02/12 18:21:45 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rw001ext.dll[2010/02/12 18:21:44 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\romanime.ime[2010/02/12 18:21:44 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rpcref.dll[2010/02/12 18:21:43 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe[2010/02/12 18:21:42 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe[2010/02/12 18:21:41 | 000,020,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ramdisk.sys[2010/02/12 18:21:41 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe[2010/02/12 18:21:40 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quick.ime[2010/02/12 18:21:39 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe[2010/02/12 18:21:38 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pwsdata.dll[2010/02/12 18:21:37 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll[2010/02/12 18:21:36 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll[2010/02/12 18:21:36 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll[2010/02/12 18:21:35 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe[2010/02/12 18:21:35 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmigrate.dll[2010/02/12 18:21:34 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlgnt.ime[2010/02/12 18:21:33 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlcsd.dll[2010/02/12 18:21:32 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phon.ime[2010/02/12 18:21:32 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\permchk.dll[2010/02/12 18:21:31 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pagecnt.dll[2010/02/12 18:21:31 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs804.dll[2010/02/12 18:21:30 | 000,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll[2010/02/12 18:21:30 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll[2010/02/12 18:21:29 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs404.dll[2010/02/12 18:21:27 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll[2010/02/12 18:21:26 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nsepm.dll[2010/02/12 18:21:24 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nextlink.dll[2010/02/12 18:21:23 | 000,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll[2010/02/12 18:21:22 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtstocom.exe[2010/02/12 18:21:17 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msiregmv.exe[2010/02/12 18:21:16 | 001,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex[2010/02/12 18:21:16 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll[2010/02/12 18:21:08 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migregdb.exe[2010/02/12 18:21:07 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys[2010/02/12 18:21:07 | 000,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll[2010/02/12 18:21:06 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\metada51.dll[2010/02/12 18:21:06 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C