Hi,
I prefer that you copy and paste any logs or reports to this thread instead of attaching them, its easier for me to see and analyze . RSIT successfully installed Hijackthis. Looking over your logs, be back in a bit
Logfile of random's system information tool 1.06 (written by random/random)
Run by Barry W. Green at 2009-11-07 07:20:32
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 39 GB (26%) free of 153 GB
Total RAM: 1535 MB (27% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 0720, on 11/7/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\CenturyLink Online Security\Common\FSM32.EXE
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Wallpaper Master\Wallpaper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Radmin Viewer 3\Radmin.exe
C:\Users\Barry W. Green\Desktop\RSIT.exe
C:\Program Files\trend micro\Barry W. Green.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = my.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = plimus.com;
www.plimus.com;regnow.com;www.regnow.com;*.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - (no file)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: LitmusBHO - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - C:\Program Files\CenturyLink Online Security\NRS\iescript\baselitmus.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files\Orbitdownloader\GrabPro.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Browsing Protection Toolbar - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files\CenturyLink Online Security\NRS\iescript\baselitmus.dll
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\CenturyLink Online Security\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\CenturyLink Online Security\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [WallpaperChanger] C:\Program Files\Wallpaper Master\Wallpaper.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [AnyDVD] C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O8 - Extra context menu item: Save with Download Manager... - file://C:\Program Files\Embarq Unlimited Music\DMDownload.htm
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: bmnet.dll
O10 - Unknown file in Winsock LSP: bmnet.dll
O10 - Unknown file in Winsock LSP: bmnet.dll
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} (SysData Class) -
https://wimpro2.cce.hp.com/ChatEntry/downloads/sysinfo.cab
O16 - DPF: {80B626D6-BC34-4BCF-B5A1-7149E4FD9CFA} (UnoCtrl Class) -
http://zone.msn.com/bingame/zpagames/GAME_UNO1.cab60096.cab
O16 - DPF: {8C279F4E-917E-4CD2-8DF0-D9C73C0CE763} (ZPA_WheelOfFortune Object) -
http://zone.msn.com/bingame/zpagames/zpa_wof.cab55579.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) -
http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) -
http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: F-Secure BlackLight Sensor - Unknown owner - C:\Windows\TEMP\F-Secure\Anti-Virus\fsblsrv.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
--
End of file - 5987 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Scheduled scanning task.job
C:\Windows\tasks\Spybot - Search & Destroy Updater - Scheduled Task.job
C:\Windows\tasks\SpyHunter Scanner.job
C:\Windows\tasks\User_Feed_Synchronization-{65E46740-470D-432C-8A73-4568AF0B9A35}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-06-28 312928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C6867EB7-8350-4856-877F-93CF8AE3DC9C}]
Browsing Protection Class - C:\Program Files\CenturyLink Online Security\NRS\iescript\baselitmus.dll [2009-11-06 535136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{C55BBCD6-41AD-48AD-9953-3609C48EACC7} - Grab Pro - C:\Program Files\Orbitdownloader\GrabPro.dll [2009-06-26 658552]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{265EEE8E-3228-44D3-AEA5-F7FDF5860049} - Browsing Protection Toolbar - C:\Program Files\CenturyLink Online Security\NRS\iescript\baselitmus.dll [2009-11-06 535136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NPSStartup"= []
"F-Secure Manager"=C:\Program Files\CenturyLink Online Security\Common\FSM32.EXE [2009-08-05 199264]
"F-Secure TNB"=C:\Program Files\CenturyLink Online Security\FSGUI\TNBUtil.exe [2009-08-05 2349664]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-10-07 13584928]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-10-07 92704]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2009-04-23 691656]
"WallpaperChanger"=C:\Program Files\Wallpaper Master\Wallpaper.exe [2005-11-08 321536]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
"AnyDVD"=C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe [2009-09-25 3058624]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-18 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS4ServiceManager]
C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-11-13 611712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AnyDVD]
C:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe [2009-09-25 3058624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2008-03-25 214360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan.lnk.disabled]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan.lnk.disabled []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office OneNote 2003 Quick Launch.lnk]
C:\PROGRA~1\MICROS~2\OFFICE11\ONENOTEM.EXE /tsr []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WDDMStatus.lnk]
C:\PROGRA~1\WESTER~1\WDSMAR~1\WDDRIV~1\WDDMST~1.EXE [2009-08-17 2043904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WDSmartWare.lnk]
C:\PROGRA~1\WESTER~1\WDSMAR~1\FRONTP~1\WDSMAR~1.EXE [2009-08-17 8919040]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Barry W. Green^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Screen Clipper and Launcher.lnk]
C:\PROGRA~1\MICROS~2\Office12\ONENOTEM.EXE [2008-10-25 98696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Barry W. Green^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Raptr.lnk]
C:\PROGRA~1\Raptr\RAPTRS~1.EXE [2009-04-02 42424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\WINDOWS\Cursors\services.exe"="C:\WINDOWS\Cursors\services.exe"
"C:\Program Files\Orbitdownloader\orbitdm.exe"="C:\Program Files\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit"
"C:\Program Files\Orbitdownloader\orbitnet.exe"="C:\Program Files\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0c42e281-48c8-11de-b906-0011d825fc87}]
shell\AutoRun\command - O:\Installer.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{291af96c-f0ad-11dd-97f6-806e6f6e6963}]
shell\AutoRun\command - E:\autorun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{af9a97ae-c572-11de-a771-0011d825fc87}]
shell\AutoRun\command - "P:\WD SmartWare.exe" autoplay=true
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS4\Dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2009-11-07 07:06:16 ----D---- C:\rsit
2009-11-06 10:20:58 ----D---- C:\Users\Barry W. Green\AppData\Roaming\Malwarebytes
2009-11-06 10:20:50 ----D---- C:\ProgramData\Malwarebytes
2009-11-06 10:20:50 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-11-04 15:27:26 ----A---- C:\Windows\system32\mshtml.dll
2009-11-03 00:25:05 ----A---- C:\svc.txt
2009-11-03 00:21:21 ----A---- C:\list.txt
2009-11-02 17:54:35 ----D---- C:\Program Files\Windows Portable Devices
2009-11-02 08:38:16 ----A---- C:\Windows\system32\UIAnimation.dll
2009-11-02 08:38:14 ----A---- C:\Windows\system32\UIRibbonRes.dll
2009-11-02 08:38:13 ----A---- C:\Windows\system32\UIRibbon.dll
2009-11-02 08:37:22 ----A---- C:\Windows\system32\WMPhoto.dll
2009-11-02 08:37:18 ----A---- C:\Windows\system32\cdd.dll
2009-11-02 08:37:15 ----A---- C:\Windows\system32\d3d10warp.dll
2009-11-02 08:37:14 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-11-02 08:37:13 ----A---- C:\Windows\system32\XpsRasterService.dll
2009-11-02 08:37:13 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2009-11-02 08:37:13 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-11-02 08:37:13 ----A---- C:\Windows\system32\d2d1.dll
2009-11-02 08:37:12 ----A---- C:\Windows\system32\XpsPrint.dll
2009-11-02 08:37:12 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-11-02 08:37:12 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-11-02 08:37:12 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-11-02 08:37:12 ----A---- C:\Windows\system32\dxdiagn.dll
2009-11-02 08:37:12 ----A---- C:\Windows\system32\dxdiag.exe
2009-11-02 08:37:11 ----A---- C:\Windows\system32\xpsservices.dll
2009-11-02 08:37:11 ----A---- C:\Windows\system32\OpcServices.dll
2009-11-02 08:37:11 ----A---- C:\Windows\system32\FntCache.dll
2009-11-02 08:37:11 ----A---- C:\Windows\system32\DWrite.dll
2009-11-02 08:37:11 ----A---- C:\Windows\system32\d3d10level9.dll
2009-11-02 08:37:10 ----A---- C:\Windows\system32\dxgi.dll
2009-11-02 08:37:10 ----A---- C:\Windows\system32\d3d11.dll
2009-11-02 08:37:10 ----A---- C:\Windows\system32\d3d10core.dll
2009-11-02 08:37:10 ----A---- C:\Windows\system32\d3d10_1core.dll
2009-11-02 08:37:10 ----A---- C:\Windows\system32\d3d10_1.dll
2009-11-02 08:37:09 ----A---- C:\Windows\system32\d3d10.dll
2009-11-02 08:36:27 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2009-11-02 08:36:26 ----A---- C:\Windows\system32\wpdbusenum.dll
2009-11-02 08:36:26 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2009-11-02 08:36:17 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2009-11-02 08:36:08 ----A---- C:\Windows\system32\wpdshext.dll
2009-11-02 08:36:07 ----A---- C:\Windows\system32\WPDSp.dll
2009-11-02 08:36:07 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2009-11-02 08:36:07 ----A---- C:\Windows\system32\wpd_ci.dll
2009-11-02 08:36:07 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-11-02 08:36:07 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-11-02 08:36:07 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-11-02 08:36:07 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-11-02 08:33:41 ----A---- C:\Windows\system32\oleaccrc.dll
2009-11-02 08:33:34 ----A---- C:\Windows\system32\oleacc.dll
2009-11-02 08:33:33 ----A---- C:\Windows\system32\UIAutomationCore.dll
2009-10-30 16:24:46 ----D---- C:\Users\Barry W. Green\AppData\Roaming\Western Digital
2009-10-30 16:24:28 ----D---- C:\ProgramData\Western Digital
2009-10-30 16:20:54 ----D---- C:\Program Files\Western Digital
2009-10-30 12:39:52 ----D---- C:\Users\Barry W. Green\AppData\Roaming\Activision
2009-10-30 12:38:26 ----A---- C:\Windows\game.ini
2009-10-30 11:49:50 ----D---- C:\Program Files\Activision
2009-10-30 11:36:20 ----D---- C:\Windows\nvtmpinst
2009-10-29 07:39:49 ----D---- C:\$WINDOWS.~BT
2009-10-28 20:54:30 ----D---- C:\ProgramData\Startup Manager
2009-10-28 20:54:30 ----D---- C:\Program Files\Startup Manager
2009-10-28 14:26:33 ----D---- C:\ProgramData\SSScanAppDataDir
2009-10-28 14:24:59 ----D---- C:\ProgramData\MSScanAppDataDir
2009-10-28 08:23:31 ----A---- C:\Windows\system32\wmp.dll
2009-10-28 08:23:28 ----A---- C:\Windows\system32\unregmp2.exe
2009-10-28 08:23:25 ----A---- C:\Windows\system32\wmploc.DLL
2009-10-26 14:52:14 ----A---- C:\Windows\system32\wups2.dll
2009-10-26 14:52:14 ----A---- C:\Windows\system32\wucltux.dll
2009-10-26 14:52:14 ----A---- C:\Windows\system32\wuauclt.exe
2009-10-26 14:52:13 ----A---- C:\Windows\system32\wuaueng.dll
2009-10-26 14:51:58 ----A---- C:\Windows\system32\wups.dll
2009-10-26 14:51:58 ----A---- C:\Windows\system32\wudriver.dll
2009-10-26 14:51:58 ----A---- C:\Windows\system32\wuapi.dll
2009-10-26 14:51:49 ----A---- C:\Windows\system32\wuwebv.dll
2009-10-26 14:51:49 ----A---- C:\Windows\system32\wuapp.exe
2009-10-26 14:20:18 ----D---- C:\ProgramData\Media Center Programs
2009-10-26 13:19:03 ----D---- C:\Program Files\LucasArts
2009-10-25 19:40:12 ----D---- C:\from_old_computer
2009-10-25 19:17:29 ----A---- C:\Windows\Splitterpro.INI
2009-10-25 19:15:13 ----D---- C:\Program Files\SplitterPro
2009-10-25 14:46:12 ----D---- C:\Program Files\CenturyLink Online Security
2009-10-25 02:30:15 ----D---- C:\Program Files\Microsoft Windows 7 Upgrade Advisor
2009-10-23 17:30:03 ----A---- C:\Windows\Model.txt
2009-10-21 10:00:18 ----D---- C:\Windows\system32\eu-ES
2009-10-21 10:00:18 ----D---- C:\Windows\system32\ca-ES
2009-10-21 10:00:17 ----D---- C:\Windows\system32\vi-VN
2009-10-21 06:22:35 ----D---- C:\Windows\system32\EventProviders
2009-10-20 12:54:27 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2009-10-20 12:54:06 ----A---- C:\Windows\system32\SLCExt.dll
2009-10-20 12:54:05 ----A---- C:\Windows\system32\SLsvc.exe
2009-10-20 12:53:49 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2009-10-20 12:53:48 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2009-10-20 12:53:38 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2009-10-20 12:53:23 ----A---- C:\Windows\system32\mssrch.dll
2009-10-20 12:53:09 ----A---- C:\Windows\system32\tquery.dll
2009-10-20 12:53:03 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-10-20 12:53:01 ----A---- C:\Windows\system32\RMActivate_isv.exe
2009-10-20 12:52:58 ----A---- C:\Windows\system32\scavenge.dll
2009-10-20 12:52:57 ----A---- C:\Windows\system32\RMActivate.exe
2009-10-20 12:52:53 ----A---- C:\Windows\system32\msi.dll
2009-10-20 12:52:48 ----A---- C:\Windows\system32\imapi2fs.dll
2009-10-20 12:52:44 ----A---- C:\Windows\system32\WscEapPr.dll
2009-10-20 12:52:44 ----A---- C:\Windows\system32\secproc_isv.dll
2009-10-20 12:52:43 ----A---- C:\Windows\system32\wcnwiz2.dll
2009-10-20 12:52:42 ----A---- C:\Windows\system32\sysmain.dll
2009-10-20 12:52:33 ----A---- C:\Windows\system32\icardagt.exe
2009-10-20 12:52:27 ----A---- C:\Windows\system32\EhStorShell.dll
2009-10-20 12:52:27 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2009-10-20 12:52:20 ----A---- C:\Windows\system32\spreview.exe
2009-10-20 12:52:20 ----A---- C:\Windows\system32\spinstall.exe
2009-10-20 12:52:18 ----A---- C:\Windows\system32\drmv2clt.dll
2009-10-20 12:52:12 ----A---- C:\Windows\system32\spwizui.dll
2009-10-20 12:52:11 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2009-10-20 12:52:10 ----A---- C:\Windows\system32\secproc.dll
2009-10-20 12:52:04 ----A---- C:\Windows\system32\shell32.dll
2009-10-20 12:51:57 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-10-20 12:51:57 ----A---- C:\Windows\system32\p2psvc.dll
2009-10-20 12:51:54 ----A---- C:\Windows\system32\mssvp.dll
2009-10-20 12:51:50 ----A---- C:\Windows\system32\mscoree.dll
2009-10-20 12:51:49 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2009-10-20 12:51:48 ----A---- C:\Windows\system32\mssphtb.dll
2009-10-20 12:51:48 ----A---- C:\Windows\system32\mssph.dll
2009-10-20 12:51:47 ----A---- C:\Windows\system32\imapi2.dll
2009-10-20 12:51:42 ----A---- C:\Windows\system32\sdohlp.dll
2009-10-20 12:51:38 ----A---- C:\Windows\system32\esent.dll
2009-10-20 12:51:37 ----A---- C:\Windows\system32\IMJP10K.DLL
2009-10-20 12:51:36 ----A---- C:\Windows\system32\DevicePairing.dll
2009-10-20 12:51:32 ----A---- C:\Windows\system32\sperror.dll
2009-10-20 12:51:31 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2009-10-20 12:51:31 ----A---- C:\Windows\system32\korwbrkr.dll
2009-10-20 12:51:30 ----A---- C:\Windows\system32\wevtsvc.dll
2009-10-20 12:51:29 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-10-20 12:51:28 ----A---- C:\Windows\system32\SLC.dll
2009-10-20 12:51:28 ----A---- C:\Windows\system32\IasMigReader.exe
2009-10-20 12:51:27 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2009-10-20 12:51:26 ----A---- C:\Windows\system32\msshsq.dll
2009-10-20 12:51:16 ----A---- C:\Windows\system32\msjet40.dll
2009-10-20 12:51:15 ----A---- C:\Windows\system32\MPSSVC.dll
2009-10-20 12:51:11 ----A---- C:\Windows\system32\msxml6.dll
2009-10-20 12:51:08 ----A---- C:\Windows\system32\Query.dll
2009-10-20 12:51:07 ----A---- C:\Windows\system32\qmgr.dll
2009-10-20 12:51:04 ----A---- C:\Windows\system32\msexch40.dll
2009-10-20 12:51:03 ----A---- C:\Windows\system32\diagperf.dll
2009-10-20 12:51:02 ----A---- C:\Windows\system32\P2PGraph.dll
2009-10-20 12:51:01 ----A---- C:\Windows\system32\ole32.dll
2009-10-20 12:50:59 ----A---- C:\Windows\system32\ntdll.dll
2009-10-20 12:50:58 ----A---- C:\Windows\system32\srchadmin.dll
2009-10-20 12:50:57 ----A---- C:\Windows\system32\msxml3.dll
2009-10-20 12:50:56 ----A---- C:\Windows\system32\winload.exe
2009-10-20 12:50:54 ----A---- C:\Windows\system32\mblctr.exe
2009-10-20 12:50:53 ----A---- C:\Windows\system32\EncDec.dll
2009-10-20 12:50:52 ----A---- C:\Windows\system32\uDWM.dll
2009-10-20 12:50:51 ----A---- C:\Windows\system32\mmc.exe
2009-10-20 12:50:50 ----A---- C:\Windows\system32\dfsr.exe
2009-10-20 12:50:49 ----A---- C:\Windows\system32\IasMigPlugin.dll
2009-10-20 12:50:48 ----A---- C:\Windows\system32\riched20.dll
2009-10-20 12:50:47 ----A---- C:\Windows\system32\WerFault.exe
2009-10-20 12:50:46 ----A---- C:\Windows\system32\fdBth.dll
2009-10-20 12:50:44 ----A---- C:\Windows\system32\RacEngn.dll
2009-10-20 12:50:40 ----A---- C:\Windows\system32\kernel32.dll
2009-10-20 12:50:38 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-10-20 12:50:38 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-10-20 12:50:37 ----A---- C:\Windows\system32\milcore.dll
2009-10-20 12:50:36 ----A---- C:\Windows\system32\EhStorAPI.dll
2009-10-20 12:50:35 ----A---- C:\Windows\system32\spoolss.dll
2009-10-20 12:50:35 ----A---- C:\Windows\system32\CertEnroll.dll
2009-10-20 12:50:33 ----A---- C:\Windows\system32\schedsvc.dll
2009-10-20 12:50:33 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2009-10-20 12:50:27 ----A---- C:\Windows\system32\msjtes40.dll
2009-10-20 12:50:27 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2009-10-20 12:50:26 ----A---- C:\Windows\system32\msvcp60.dll
2009-10-20 12:50:25 ----A---- C:\Windows\system32\gpedit.dll
2009-10-20 12:50:24 ----A---- C:\Windows\system32\infocardapi.dll
2009-10-20 12:50:18 ----A---- C:\Windows\system32\WinSAT.exe
2009-10-20 12:50:17 ----A---- C:\Windows\system32\es.dll
2009-10-20 12:50:15 ----A---- C:\Windows\system32\PresentationSettings.exe
2009-10-20 12:50:14 ----A---- C:\Windows\system32\Magnify.exe
2009-10-20 12:50:13 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2009-10-20 12:50:12 ----A---- C:\Windows\system32\mstext40.dll
2009-10-20 12:50:11 ----A---- C:\Windows\system32\advapi32.dll
2009-10-20 12:50:04 ----A---- C:\Windows\system32\WebClnt.dll
2009-10-20 12:50:03 ----A---- C:\Windows\system32\slwmi.dll
2009-10-20 12:50:03 ----A---- C:\Windows\system32\msexcl40.dll
2009-10-20 12:50:02 ----A---- C:\Windows\system32\comsvcs.dll
2009-10-20 12:50:01 ----A---- C:\Windows\system32\msxbde40.dll
2009-10-20 12:50:00 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2009-10-20 12:49:58 ----A---- C:\Windows\system32\vssapi.dll
2009-10-20 12:49:55 ----A---- C:\Windows\system32\authui.dll
2009-10-20 12:49:51 ----A---- C:\Windows\system32\NetProjW.dll
2009-10-20 12:49:50 ----A---- C:\Windows\system32\msrepl40.dll
2009-10-20 12:49:49 ----A---- C:\Windows\system32\PresentationHost.exe
2009-10-20 12:49:47 ----A---- C:\Windows\system32\propsys.dll
2009-10-20 12:49:47 ----A---- C:\Windows\system32\newdev.dll
2009-10-20 12:49:46 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-10-20 12:49:46 ----A---- C:\Windows\system32\iasrecst.dll
2009-10-20 12:49:45 ----A---- C:\Windows\system32\gpsvc.dll
2009-10-20 12:49:45 ----A---- C:\Windows\system32\eudcedit.exe
2009-10-20 12:49:44 ----A---- C:\Windows\system32\crypt32.dll
2009-10-20 12:49:42 ----A---- C:\Windows\explorer.exe
2009-10-20 12:49:40 ----A---- C:\Windows\system32\rpcss.dll
2009-10-20 12:49:38 ----A---- C:\Windows\system32\setupapi.dll
2009-10-20 12:49:37 ----A---- C:\Windows\system32\mspbde40.dll
2009-10-20 12:49:35 ----A---- C:\Windows\system32\d3d9.dll
2009-10-20 12:49:33 ----A---- C:\Windows\system32\davclnt.dll
2009-10-20 12:49:32 ----A---- C:\Windows\system32\msltus40.dll
2009-10-20 12:49:31 ----A---- C:\Windows\system32\mfc42.dll
2009-10-20 12:49:30 ----A---- C:\Windows\system32\shlwapi.dll
2009-10-20 12:49:30 ----A---- C:\Windows\system32\msrd3x40.dll
2009-10-20 12:49:30 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2009-10-20 12:49:30 ----A---- C:\Windows\system32\EhStorAuthn.dll
2009-10-20 12:49:27 ----A---- C:\Windows\system32\msdtctm.dll
2009-10-20 12:49:26 ----A---- C:\Windows\system32\browseui.dll
2009-10-20 12:49:25 ----A---- C:\Windows\system32\wevtapi.dll
2009-10-20 12:49:23 ----A---- C:\Windows\system32\photowiz.dll
2009-10-20 12:49:23 ----A---- C:\Windows\system32\nlhtml.dll
2009-10-20 12:49:16 ----A---- C:\Windows\system32\user32.dll
2009-10-20 12:49:14 ----A---- C:\Windows\system32\samsrv.dll
2009-10-20 12:49:13 ----A---- C:\Windows\system32\quartz.dll
2009-10-20 12:49:13 ----A---- C:\Windows\system32\ci.dll
2009-10-20 12:49:11 ----A---- C:\Windows\system32\win32spl.dll
2009-10-20 12:49:10 ----A---- C:\Windows\system32\WcnNetsh.dll
2009-10-20 12:49:10 ----A---- C:\Windows\system32\SLCommDlg.dll
2009-10-20 12:49:09 ----A---- C:\Windows\system32\oleaut32.dll
2009-10-20 12:49:07 ----A---- C:\Windows\system32\IKEEXT.DLL
2009-10-20 12:49:04 ----A---- C:\Windows\system32\netshell.dll
2009-10-20 12:49:03 ----A---- C:\Windows\system32\compcln.exe
2009-10-20 12:49:02 ----A---- C:\Windows\system32\apds.dll
2009-10-20 12:49:01 ----A---- C:\Windows\system32\winhttp.dll
2009-10-20 12:49:00 ----A---- C:\Windows\system32\mswstr10.dll
2009-10-20 12:48:59 ----A---- C:\Windows\system32\audiosrv.dll
2009-10-20 12:48:58 ----A---- C:\Windows\system32\xmlfilter.dll
2009-10-20 12:48:57 ----A---- C:\Windows\system32\msctf.dll
2009-10-20 12:48:57 ----A---- C:\Windows\system32\emdmgmt.dll
2009-10-20 12:48:54 ----A---- C:\Windows\system32\msvcrt.dll
2009-10-20 12:48:54 ----A---- C:\Windows\system32\gdi32.dll
2009-10-20 12:48:53 ----A---- C:\Windows\system32\QAGENTRT.DLL
2009-10-20 12:48:52 ----A---- C:\Windows\system32\VSSVC.exe
2009-10-20 12:48:52 ----A---- C:\Windows\system32\iphlpsvc.dll
2009-10-20 12:48:51 ----A---- C:\Windows\system32\mfc42u.dll
2009-10-20 12:48:49 ----A---- C:\Windows\system32\SLUI.exe
2009-10-20 12:48:49 ----A---- C:\Windows\system32\eapphost.dll
2009-10-20 12:48:48 ----A---- C:\Windows\system32\msrd2x40.dll
2009-10-20 12:48:47 ----A---- C:\Windows\system32\sqlsrv32.dll
2009-10-20 12:48:44 ----A---- C:\Windows\system32\propdefs.dll
2009-10-20 12:48:44 ----A---- C:\Windows\system32\odbc32.dll
2009-10-20 12:48:43 ----A---- C:\Windows\system32\winresume.exe
2009-10-20 12:48:40 ----A---- C:\Windows\system32\shdocvw.dll
2009-10-20 12:48:36 ----A---- C:\Windows\system32\wevtutil.exe
2009-10-20 12:48:36 ----A---- C:\Windows\system32\dbgeng.dll
2009-10-20 12:48:35 ----A---- C:\Windows\system32\mssitlb.dll
2009-10-20 12:48:26 ----A---- C:\Windows\system32\WsmSvc.dll
2009-10-20 12:48:25 ----A---- C:\Windows\system32\swprv.dll
2009-10-20 12:48:24 ----A---- C:\Windows\system32\mmcndmgr.dll
2009-10-20 12:48:21 ----A---- C:\Windows\system32\usp10.dll
2009-10-20 12:48:19 ----A---- C:\Windows\system32\vds.exe
2009-10-20 12:48:18 ----A---- C:\Windows\system32\drvinst.exe
2009-10-20 12:48:17 ----A---- C:\Windows\system32\msctfp.dll
2009-10-20 12:48:17 ----A---- C:\Windows\system32\fdBthProxy.dll
2009-10-20 12:48:17 ----A---- C:\Windows\system32\devmgr.dll
2009-10-20 12:48:16 ----A---- C:\Windows\system32\netlogon.dll
2009-10-20 12:48:16 ----A---- C:\Windows\system32\msscb.dll
2009-10-20 12:48:16 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2009-10-20 12:48:16 ----A---- C:\Windows\system32\adsldpc.dll
2009-10-20 12:48:15 ----A---- C:\Windows\system32\BFE.DLL
2009-10-20 12:48:13 ----A---- C:\Windows\system32\evr.dll
2009-10-20 12:48:11 ----A---- C:\Windows\system32\Wldap32.dll
2009-10-20 12:48:11 ----A---- C:\Windows\system32\wcnwiz.dll
2009-10-20 12:48:09 ----A---- C:\Windows\system32\WSDApi.dll
2009-10-20 12:48:09 ----A---- C:\Windows\system32\WMVSDECD.DLL
2009-10-20 12:48:06 ----A---- C:\Windows\system32\services.exe
2009-10-20 12:48:04 ----A---- C:\Windows\system32\wercon.exe
2009-10-20 12:48:03 ----A---- C:\Windows\system32\comdlg32.dll
2009-10-20 12:48:03 ----A---- C:\Windows\system32\adtschema.dll
2009-10-20 12:48:02 ----A---- C:\Windows\system32\wcncsvc.dll
2009-10-20 12:48:02 ----A---- C:\Windows\system32\mimefilt.dll
2009-10-20 12:48:01 ----A---- C:\Windows\system32\certcli.dll
2009-10-20 12:48:00 ----A---- C:\Windows\system32\msdrm.dll
2009-10-20 12:47:59 ----A---- C:\Windows\system32\msjter40.dll
2009-10-20 12:47:59 ----A---- C:\Windows\system32\msdtcprx.dll
2009-10-20 12:47:59 ----A---- C:\Windows\system32\ipsmsnap.dll
2009-10-20 12:47:58 ----A---- C:\Windows\system32\taskeng.exe
2009-10-20 12:47:58 ----A---- C:\Windows\system32\mswdat10.dll
2009-10-20 12:47:57 ----A---- C:\Windows\system32\umpnpmgr.dll
2009-10-20 12:47:57 ----A---- C:\Windows\system32\rtffilt.dll
2009-10-20 12:47:57 ----A---- C:\Windows\system32\reg.exe
2009-10-20 12:47:57 ----A---- C:\Windows\system32\dnsapi.dll
2009-10-20 12:47:56 ----A---- C:\Windows\system32\certutil.exe
2009-10-20 12:47:54 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-10-20 12:47:53 ----A---- C:\Windows\system32\w32time.dll
2009-10-20 12:47:52 ----A---- C:\Windows\system32\IPSECSVC.DLL
2009-10-20 12:47:50 ----A---- C:\Windows\system32\msshooks.dll
2009-10-20 12:47:50 ----A---- C:\Windows\system32\msscntrs.dll
2009-10-20 12:47:50 ----A---- C:\Windows\system32\bthserv.dll
2009-10-20 12:47:50 ----A---- C:\Windows\system32\bcrypt.dll
2009-10-20 12:47:48 ----A---- C:\Windows\system32\rsaenh.dll
2009-10-20 12:47:47 ----A---- C:\Windows\system32\TsWpfWrp.exe
2009-10-20 12:47:47 ----A---- C:\Windows\system32\msihnd.dll
2009-10-20 12:47:47 ----A---- C:\Windows\system32\MMDevAPI.dll
2009-10-20 12:47:46 ----A---- C:\Windows\system32\msstrc.dll
2009-10-20 12:47:44 ----A---- C:\Windows\system32\inetcomm.dll
2009-10-20 12:47:43 ----A---- C:\Windows\system32\netapi32.dll
2009-10-20 12:47:43 ----A---- C:\Windows\system32\dfshim.dll
2009-10-20 12:47:42 ----A---- C:\Windows\system32\inetpp.dll
2009-10-20 12:47:41 ----A---- C:\Windows\system32\mtxclu.dll
2009-10-20 12:47:41 ----A---- C:\Windows\system32\mscories.dll
2009-10-20 12:47:41 ----A---- C:\Windows\system32\hidserv.dll
2009-10-20 12:47:41 ----A---- C:\Windows\system32\fundisc.dll
2009-10-20 12:47:41 ----A---- C:\Windows\system32\cryptsvc.dll
2009-10-20 12:47:39 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2009-10-20 12:47:38 ----A---- C:\Windows\system32\wmicmiplugin.dll
2009-10-20 12:47:37 ----A---- C:\Windows\system32\termsrv.dll
2009-10-20 12:47:37 ----A---- C:\Windows\system32\profsvc.dll
2009-10-20 12:47:33 ----A---- C:\Windows\system32\imapi.dll
2009-10-20 12:47:32 ----A---- C:\Windows\system32\shsvcs.dll
2009-10-20 12:47:32 ----A---- C:\Windows\system32\msiexec.exe
2009-10-20 12:47:30 ----A---- C:\Windows\system32\wdc.dll
2009-10-20 12:47:29 ----A---- C:\Windows\system32\chsbrkr.dll
2009-10-20 12:47:28 ----A---- C:\Windows\system32\iassdo.dll
2009-10-20 12:47:27 ----A---- C:\Windows\system32\rasmans.dll
2009-10-20 12:47:26 ----A---- C:\Windows\system32\pnidui.dll
2009-10-20 12:47:25 ----A---- C:\Windows\system32\spoolsv.exe
2009-10-20 12:47:25 ----A---- C:\Windows\system32\icardres.dll
2009-10-20 12:47:24 ----A---- C:\Windows\system32\autofmt.exe
2009-10-20 12:47:23 ----A---- C:\Windows\system32\scrrun.dll
2009-10-20 12:47:22 ----A---- C:\Windows\system32\wersvc.dll
2009-10-20 12:47:22 ----A---- C:\Windows\system32\slmgr.vbs
2009-10-20 12:47:22 ----A---- C:\Windows\system32\PSHED.DLL
2009-10-20 12:47:21 ----A---- C:\Windows\system32\pdh.dll
2009-10-20 12:47:21 ----A---- C:\Windows\system32\dhcpcsvc.dll
2009-10-20 12:47:20 ----A---- C:\Windows\system32\CertEnrollUI.dll
2009-10-20 12:47:20 ----A---- C:\Windows\system32\azroles.dll
2009-10-20 12:47:16 ----A---- C:\Windows\system32\pidgenx.dll
2009-10-20 12:47:14 ----A---- C:\Windows\system32\wmpmde.dll
2009-10-20 12:47:13 ----A---- C:\Windows\system32\winlogon.exe
2009-10-20 12:47:09 ----A---- C:\Windows\system32\SyncCenter.dll
2009-10-20 12:47:03 ----A---- C:\Windows\system32\SLUINotify.dll
2009-10-20 12:47:02 ----A---- C:\Windows\system32\msjetoledb40.dll
2009-10-20 12:47:02 ----A---- C:\Windows\system32\comuid.dll
2009-10-20 12:47:00 ----A---- C:\Windows\system32\certmgr.dll
2009-10-20 12:46:59 ----A---- C:\Windows\system32\sethc.exe
2009-10-20 12:46:59 ----A---- C:\Windows\system32\ncrypt.dll
2009-10-20 12:46:59 ----A---- C:\Windows\system32\kd1394.dll
2009-10-20 12:46:58 ----A---- C:\Windows\system32\iassam.dll
2009-10-20 12:46:57 ----A---- C:\Windows\system32\untfs.dll
2009-10-20 12:46:57 ----A---- C:\Windows\system32\spp.dll
2009-10-20 12:46:57 ----A---- C:\Windows\system32\scrobj.dll
2009-10-20 12:46:56 ----A---- C:\Windows\system32\wisptis.exe
2009-10-20 12:46:56 ----A---- C:\Windows\system32\rtutils.dll
2009-10-20 12:46:55 ----A---- C:\Windows\system32\taskcomp.dll
2009-10-20 12:46:55 ----A---- C:\Windows\system32\dwm.exe
2009-10-20 12:46:53 ----A---- C:\Windows\system32\autochk.exe
2009-10-20 12:46:51 ----A---- C:\Windows\system32\iasnap.dll
2009-10-20 12:46:50 ----A---- C:\Windows\system32\printui.dll
2009-10-20 12:46:49 ----A---- C:\Windows\system32\autoconv.exe
2009-10-20 12:46:47 ----A---- C:\Windows\system32\winsrv.dll
2009-10-20 12:46:46 ----A---- C:\Windows\system32\cscript.exe
2009-10-20 12:46:45 ----A---- C:\Windows\system32\kdcom.dll
2009-10-20 12:46:45 ----A---- C:\Windows\system32\basecsp.dll
2009-10-20 12:46:44 ----A---- C:\Windows\system32\onex.dll
2009-10-20 12:46:43 ----A---- C:\Windows\system32\wow32.dll
2009-10-20 12:46:43 ----A---- C:\Windows\system32\userenv.dll
2009-10-20 12:46:43 ----A---- C:\Windows\system32\audiodg.exe
2009-10-20 12:46:42 ----A---- C:\Windows\system32\osk.exe
2009-10-20 12:46:42 ----A---- C:\Windows\system32\mswsock.dll
2009-10-20 12:46:38 ----A---- C:\Windows\system32\kdusb.dll
2009-10-20 12:46:37 ----A---- C:\Windows\system32\winmm.dll
2009-10-20 12:46:37 ----A---- C:\Windows\system32\spcmsg.dll
2009-10-20 12:46:37 ----A---- C:\Windows\system32\RelMon.dll
2009-10-20 12:46:36 ----A---- C:\Windows\system32\rdpencom.dll
2009-10-20 12:46:35 ----A---- C:\Windows\system32\WinSCard.dll
2009-10-20 12:46:35 ----A---- C:\Windows\system32\msftedit.dll
2009-10-20 12:46:34 ----A---- C:\Windows\system32\WerFaultSecure.exe
2009-10-20 12:46:33 ----A---- C:\Windows\system32\offfilt.dll
2009-10-20 12:46:33 ----A---- C:\Windows\system32\dnsrslvr.dll
2009-10-20 12:46:24 ----A---- C:\Windows\system32\Utilman.exe
2009-10-20 12:46:23 ----A---- C:\Windows\system32\wsepno.dll
2009-10-20 12:46:23 ----A---- C:\Windows\system32\stobject.dll
2009-10-20 12:46:23 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2009-10-20 12:46:23 ----A---- C:\Windows\system32\secproc_ssp.dll
2009-10-20 12:46:22 ----A---- C:\Windows\system32\mfplat.dll
2009-10-20 12:46:22 ----A---- C:\Windows\system32\diskraid.exe
2009-10-20 12:46:22 ----A---- C:\Windows\system32\apphelp.dll
2009-10-20 12:46:21 ----A---- C:\Windows\system32\SndVol.exe
2009-10-20 12:46:20 ----A---- C:\Windows\system32\mcmde.dll
2009-10-20 12:46:19 ----A---- C:\Windows\system32\msnetobj.dll
2009-10-20 12:46:19 ----A---- C:\Windows\system32\mscms.dll
2009-10-20 12:46:19 ----A---- C:\Windows\system32\adsmsext.dll
2009-10-20 12:46:18 ----A---- C:\Windows\system32\wiaservc.dll
2009-10-20 12:46:18 ----A---- C:\Windows\system32\sysclass.dll
2009-10-20 12:46:18 ----A---- C:\Windows\system32\prnntfy.dll
2009-10-20 12:46:17 ----A---- C:\Windows\system32\wscript.exe
2009-10-20 12:46:17 ----A---- C:\Windows\system32\odbccp32.dll