OTL part I
OTL logfile created on: 3/18/2010 1:17:08 AM - Run 1
OTL by OldTimer - Version 3.1.37.2 Folder = c:\Users\PC\Downloads
64bit-Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6001.18000)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 33.00% Memory free
8.00 Gb Paging File | 5.00 Gb Available in Paging File | 69.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 288.55 Gb Total Space | 223.79 Gb Free Space | 77.56% Space Free | Partition Type: NTFS
Drive D: | 106.68 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: PC-PC
Current User Name: PC
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal
========== Processes (SafeList) ==========
PRC - c:\Users\PC\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.)
PRC - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\ccsvchst.exe (Symantec Corporation)
PRC - C:\Program Files (x86)\Toshiba Registration\Registration.exe (DataLode, Inc.)
PRC - C:\Program Files (x86)\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
PRC - C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe ()
PRC - C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe (Chicony)
PRC - C:\Program Files (x86)\Toshiba\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files (x86)\Toshiba\ConfigFree\CFSwMgr.exe (TOSHIBA CORPORATION)
PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
PRC - C:\Program Files (x86)\Toshiba\ConfigFree\CFProcSRVC.exe (TOSHIBA Corporation.)
PRC - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
========== Modules (SafeList) ==========
MOD - c:\Users\PC\Downloads\OTL.exe (OldTimer Tools)
MOD - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\asoehook.dll (Symantec Corporation)
MOD - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\microsoft.vc90.crt\msvcr90.dll (Microsoft Corporation)
MOD - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\microsoft.vc90.crt\msvcp90.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6001.18175_none_9e7bbe54c9c04bca\GdiPlus.dll (Microsoft Corporation)
MOD - C:\Windows\SysWOW64\wpdshext.dll (Microsoft Corporation)
MOD - C:\Windows\SysWOW64\fontext.dll (Microsoft Corporation)
MOD - C:\Windows\SysWOW64\comdlg32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll (Microsoft Corporation)
========== Win32 Services (SafeList) ==========
SRV:
64bit: - (SmartFaceVWatchSrv) -- C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatchSrv.exe (Toshiba)
SRV:
64bit: - (TosCoSrv) -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
SRV:
64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:
64bit: - (AgereModemAudio) -- C:\Windows\SysNative\agr64svc.exe ()
SRV:
64bit: - (TOSHIBA SMART Log Service) -- C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe (TOSHIBA Corporation)
SRV:
64bit: - (TODDSrv) -- C:\Windows\SysNative\TODDSrv.exe ()
SRV - (McComponentHostService) -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe (McAfee, Inc.)
SRV - (NIS) -- C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe (Symantec Corporation)
SRV - (WinHttpAutoProxySvc) -- winhttp.dll (Microsoft Corporation)
SRV - (TMachInfo) -- C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe (TOSHIBA Corporation)
SRV - (clr_optimization_v2.0.50727_64) -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (TNaviSrv) -- C:\Program Files (x86)\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe (TOSHIBA Corporation)
SRV - (GameConsoleService) -- C:\Program Files (x86)\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe (WildTangent, Inc.)
SRV - (ConfigFree Service) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe (TOSHIBA CORPORATION)
SRV - (jswpsapi) -- C:\Program Files (x86)\Jumpstart\jswpsapi.exe (Atheros Communications, Inc.)
SRV - (IAANTMON) Intel(R) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
SRV - (ConfigFree Gadget Service) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe (TOSHIBA Corporation.)
SRV - (WcesComm) -- C:\Windows\WindowsMobile\wcescomm.dll (Microsoft Corporation)
SRV - (RapiMgr) -- C:\Windows\WindowsMobile\rapimgr.dll (Microsoft Corporation)
SRV - (MSDTC) -- C:\Windows\SysWOW64\Msdtc [2006/11/02 05:34:14 | 000,000,000 | ---D | M]
SRV - (vds) -- C:\Windows\SysWOW64\wbem\vds.mof ()
SRV - (VSS) -- C:\Windows\SysWOW64\wbem\vss.mof ()
SRV - (UleadBurningHelper) -- C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
SRV - (IDriverT) -- C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe (Macrovision Corporation)
========== Driver Services (SafeList) ==========
DRV:
64bit: - (SymEvent) -- C:\Windows\SysNative\Drivers\SYMEVENT64x86.SYS ()
DRV:
64bit: - (ccHP) -- C:\Windows\SysNative\drivers\NISx64\1105000.07F\ccHPx64.sys ()
DRV:
64bit: - (SRTSP) -- C:\Windows\SysNative\Drivers\NISx64\1105000.07F\SRTSP64.SYS ()
DRV:
64bit: - (SRTSPX) Symantec Real Time Storage Protection (PEL) -- C:\Windows\SysNative\drivers\NISx64\1105000.07F\SRTSPX64.SYS ()
DRV:
64bit: - (SymEFA) -- C:\Windows\SysNative\drivers\NISx64\1105000.07F\SYMEFA64.SYS ()
DRV:
64bit: - (SymIRON) -- C:\Windows\SysNative\drivers\NISx64\1105000.07F\Ironx64.SYS ()
DRV:
64bit: - (SYMTDIv) -- C:\Windows\SysNative\Drivers\NISx64\1105000.07F\SYMTDIV.SYS ()
DRV:
64bit: - (SymDS) -- C:\Windows\SysNative\drivers\NISx64\1105000.07F\SYMDS64.SYS ()
DRV:
64bit: - (athr) -- C:\Windows\SysNative\DRIVERS\athrx.sys ()
DRV:
64bit: - (tos_sps64) -- C:\Windows\SysNative\DRIVERS\tos_sps64.sys ()
DRV:
64bit: - (igfx) -- C:\Windows\SysNative\DRIVERS\igdkmd64.sys ()
DRV:
64bit: - (iaStor) -- C:\Windows\SysNative\DRIVERS\iaStor.sys ()
DRV:
64bit: - (RTL8169) -- C:\Windows\SysNative\DRIVERS\Rtlh64.sys ()
DRV:
64bit: - (RTSTOR) -- C:\Windows\SysNative\drivers\RTSTOR64.SYS ()
DRV:
64bit: - (AgereSoftModem) -- C:\Windows\SysNative\DRIVERS\agrsm64.sys ()
DRV:
64bit: - (usbvideo) -- C:\Windows\SysNative\Drivers\usbvideo.sys ()
DRV:
64bit: - (usb_rndisx) -- C:\Windows\SysNative\DRIVERS\usb8023x.sys ()
DRV:
64bit: - (CmBatt) -- C:\Windows\SysNative\DRIVERS\CmBatt.sys ()
DRV:
64bit: - (UVCFTR) -- C:\Windows\SysNative\Drivers\UVCFTR_S.SYS ()
DRV:
64bit: - (tdcmdpst) -- C:\Windows\SysNative\DRIVERS\tdcmdpst.sys ()
DRV:
64bit: - (SynTP) -- C:\Windows\SysNative\DRIVERS\SynTP.sys ()
DRV:
64bit: - (TVALZ) -- C:\Windows\SysNative\DRIVERS\TVALZ_O.SYS ()
DRV:
64bit: - (FwLnk) -- C:\Windows\SysNative\DRIVERS\FwLnk.sys ()
DRV:
64bit: - (KR10N64) -- C:\Windows\SysNative\drivers\kr10n64.sys ()
DRV:
64bit: - (KR10I64) -- C:\Windows\SysNative\drivers\kr10i64.sys ()
DRV:
64bit: - (HdAudAddService) -- C:\Windows\SysNative\drivers\HdAudio.sys ()
DRV - (NAVEX15) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20100317.021\EX64.SYS (Symantec Corporation)
DRV - (eeCtrl) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (NAVENG) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20100317.021\ENG64.SYS (Symantec Corporation)
DRV - (BHDrvx64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\BASHDefs\20100211.001\BHDrvx64.sys (Symantec Corporation)
DRV - (IDSVia64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\IPSDefs\20100312.001\IDSviA64.sys (Symantec Corporation)
DRV - (Tcpip) -- C:\Windows\SysWOW64\wbem\tcpip.mof ()
DRV - (mpsdrv) -- C:\Windows\SysWOW64\wbem\mpsdrv.mof ()
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.toshibadirect.com/dpdstart
IE:
64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.toshibadirect.com/dpdstart
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-692173446-2600856224-2905154775-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.toshibadirect.com/dpdstart
IE - HKU\S-1-5-21-692173446-2600856224-2905154775-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.toshibadirect.com/dpdstart
IE - HKU\S-1-5-21-692173446-2600856224-2905154775-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-692173446-2600856224-2905154775-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledItems: {BBDA0591-3099-440a-AA10-41764D9DB4DB}:2.0
FF - prefs.js..extensions.enabledItems: {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}:4.5
FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\IPSFFPlgn\ [2010/03/01 17:52:54 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\coFFPlgn\ [2010/03/01 20:49:55 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010/03/01 19:37:42 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010/03/03 05:40:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\SeaMonkey 2.0.3\extensions\\Components: C:\Program Files (x86)\SeaMonkey\components [2010/03/01 18:12:17 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\SeaMonkey 2.0.3\extensions\\Plugins: C:\Program Files (x86)\SeaMonkey\plugins [2010/03/01 18:12:16 | 000,000,000 | ---D | M]
[2010/03/01 19:37:52 | 000,000,000 | ---D | M] -- C:\Users\PC\AppData\Roaming\Mozilla\Extensions
[2010/03/01 18:15:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PC\AppData\Roaming\Mozilla\Extensions\{92650c4d-4b8e-4d2a-b7eb-24ecf4f6b63a}
[2010/03/15 00:52:16 | 000,000,000 | ---D | M] -- C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\ufg2zfjx.default\extensions
[2010/03/04 11:37:48 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\ufg2zfjx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/03/01 18:15:11 | 000,000,000 | ---D | M] -- C:\Users\PC\AppData\Roaming\Mozilla\SeaMonkey\Profiles\ewyb2jz8.default\extensions
[2010/03/01 19:37:41 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Mozilla Firefox\extensions
O1 HOSTS File: ([2006/09/18 13:37:24 | 000,000,761 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\coieplg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\ipsbho.dll (Symantec Corporation)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_06\bin\ssv.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.5.0.127\coieplg.dll (Symantec Corporation)
O4:
64bit: - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:
64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe ()
O4:
64bit: - HKLM..\Run: [HSON] C:\Program Files\TOSHIBA\TBS\HSON.exe (TOSHIBA Corporation)
O4:
64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4:
64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe ()
O4:
64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe ()
O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Windows\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [Skytel] C:\Windows\SkyTel.exe (Realtek Semiconductor Corp.)
O4:
64bit: - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:
64bit: - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4:
64bit: - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4:
64bit: - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Camera Assistant Software] C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe (Chicony)
O4 - HKLM..\Run: [cfFncEnabler.exe] File not found
O4 - HKLM..\Run: [jswtrayutil] C:\Program Files (x86)\Jumpstart\jswtrayutil.exe File not found
O4 - HKLM..\Run: [NDSTray.exe] File not found
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\SysWow64\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-692173446-2600856224-2905154775-1000..\Run: [1600818151] C:\Program Files (x86)\Toshiba Registration\Registration.exe (DataLode, Inc.)
O4 - HKU\S-1-5-21-692173446-2600856224-2905154775-1000..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe (TOSHIBA)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre1.6.0_06\bin\ssv.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab (Java Plug-in 1.6.0_06)
O16 - DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab (Java Plug-in 1.6.0_06)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab (Java Plug-in 1.6.0_06)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 206.223.192.11 206.223.192.10 205.238.26.97
O18:
64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:
64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18:
64bit: - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18:
64bit: - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18:
64bit: - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - userinit.exe (Microsoft Corporation)
O20:
64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll ()
O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img24.jpg
O29:
64bit: - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010/03/14 04:03:06 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshhttp.dll
[2010/03/14 04:02:59 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[2010/03/13 22:49:55 | 001,954,640 | ---- | C] (PeerBlock, LLC ) -- C:\Users\PC\Desktop\PeerBlock-Setup_v1.0.0.r181.exe
[2010/03/13 21:36:24 | 000,000,000 | ---D | C] -- C:\Users\PC\Desktop\New Folder
[2010/03/13 03:29:05 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Tific
[2010/03/12 14:56:10 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010/03/12 14:55:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ERUNT
[2010/03/11 15:11:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2010/03/06 21:57:29 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\TOSHIBA
[2010/03/03 05:07:34 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mimefilt.dll
[2010/03/03 05:07:34 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msshooks.dll
[2010/03/03 05:07:33 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscb.dll
[2010/03/03 05:07:31 | 001,671,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\chsbrkr.dll
[2010/03/03 05:07:31 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssitlb.dll
[2010/03/03 05:07:31 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\propdefs.dll
[2010/03/03 05:07:31 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msstrc.dll
[2010/03/03 05:07:30 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\thawbrkr.dll
[2010/03/03 05:07:30 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msshsq.dll
[2010/03/03 05:07:30 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\offfilt.dll
[2010/03/03 05:07:30 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\korwbrkr.dll
[2010/03/03 05:07:30 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssprxy.dll
[2010/03/03 05:07:29 | 006,103,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\chtbrkr.dll
[2010/03/03 05:07:29 | 001,582,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2010/03/03 05:07:29 | 001,418,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2010/03/03 05:07:29 | 000,670,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2010/03/03 05:07:29 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll
[2010/03/03 05:07:29 | 000,203,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll
[2010/03/03 05:07:29 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlhtml.dll
[2010/03/03 05:07:29 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll
[2010/03/03 05:07:29 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xmlfilter.dll
[2010/03/03 05:07:29 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rtffilt.dll
[2010/03/03 04:24:43 | 000,037,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\infocardcpl.cpl
[2010/03/03 04:24:37 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardres.dll
[2010/03/03 04:24:36 | 000,781,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationNative_v0300.dll
[2010/03/03 04:24:36 | 000,043,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHostProxy.dll
[2010/03/03 04:24:35 | 000,622,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardagt.exe
[2010/03/03 04:24:35 | 000,097,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\infocardapi.dll
[2010/03/03 04:24:27 | 000,105,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2010/03/03 04:24:24 | 000,326,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationHost.exe
[2010/03/03 04:16:48 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netfxperf.dll
[2010/03/03 04:16:33 | 000,096,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2010/03/03 04:16:12 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2010/03/03 04:16:08 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2010/03/02 11:06:29 | 012,240,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NlsLexicons0007.dll
[2010/03/02 11:06:25 | 002,644,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NlsLexicons0009.dll
[2010/03/02 11:06:11 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NaturalLanguage6.dll
[2010/03/02 10:42:46 | 000,996,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMNetMgr.dll
[2010/03/02 10:42:45 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\logagent.exe
[2010/03/02 10:40:38 | 010,624,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2010/03/02 10:40:37 | 000,310,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\unregmp2.exe
[2010/03/02 10:40:33 | 008,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2010/03/02 10:39:48 | 001,645,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\connect.dll
[2010/03/02 10:39:46 | 001,314,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2010/03/02 10:39:45 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvfw32.dll
[2010/03/02 10:39:45 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avifil32.dll
[2010/03/02 10:39:45 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mciavi32.dll
[2010/03/02 10:39:45 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\avicap32.dll
[2010/03/02 10:39:38 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
[2010/03/02 10:39:37 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2010/03/02 10:39:36 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2010/03/02 10:39:33 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax
[2010/03/02 10:39:33 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSNP.ax
[2010/03/02 10:38:35 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Apphlpdm.dll
[2010/03/02 10:38:34 | 004,240,384 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\GameUXLegacyGDFs.dll
[2010/03/02 10:38:00 | 000,289,792 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2010/03/02 10:38:00 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2010/03/02 10:38:00 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2010/03/02 10:38:00 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dciman32.dll
[2010/03/02 10:37:53 | 000,636,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\localspl.dll
[2010/03/02 10:37:45 | 000,604,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMSPDMOD.DLL
[2010/03/02 10:37:44 | 000,443,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2010/03/02 10:37:11 | 000,281,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\raschap.dll
[2010/03/02 10:37:11 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2010/03/02 10:37:07 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amxread.dll
[2010/03/02 10:37:07 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apilogen.dll
[2010/03/02 10:35:45 | 000,241,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PortableDeviceApi.dll
[2010/03/02 10:35:15 | 002,066,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2010/03/02 10:35:09 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\polstore.dll
[2010/03/02 10:35:09 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winipsec.dll
[2010/03/02 10:35:09 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FwRemoteSvr.dll
[2010/03/02 10:35:05 | 000,714,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2010/03/02 10:34:59 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sdohlp.dll
[2010/03/02 10:34:59 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iasrecst.dll
[2010/03/02 10:34:59 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iasads.dll
[2010/03/02 10:34:59 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iasdatastore.dll
[2010/03/02 10:34:59 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iashost.exe
[2010/03/02 10:33:50 | 000,523,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2010/03/02 10:33:50 | 000,511,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2010/03/02 10:33:50 | 000,472,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2010/03/02 10:33:50 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2010/03/02 10:33:50 | 000,347,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2010/03/02 10:33:50 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2010/03/02 10:33:49 | 000,329,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdrm.dll
[2010/03/02 10:33:49 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2010/03/02 10:33:49 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2010/03/02 10:30:46 | 002,452,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2010/03/02 10:30:37 | 000,833,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wininet.dll
[2010/03/02 10:30:37 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2010/03/02 10:30:35 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2010/03/02 10:30:34 | 000,458,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2010/03/02 10:30:34 | 000,389,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iedkcs32.dll
[2010/03/02 10:30:33 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2010/03/02 10:30:33 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieaksie.dll
[2010/03/02 10:30:33 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2010/03/02 10:30:33 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2010/03/02 10:30:32 | 000,671,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstime.dll
[2010/03/02 10:30:32 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieencode.dll
[2010/03/02 10:30:32 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jsproxy.dll
[2010/03/02 10:29:06 | 000,512,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2010/03/02 10:29:01 | 003,080,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010/03/02 10:29:00 | 002,927,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2010/03/02 10:28:42 | 002,386,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVCORE.DLL
[2010/03/02 10:28:41 | 002,868,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2010/03/02 10:28:15 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpeffects.dll
[2010/03/02 10:28:13 | 000,430,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbscript.dll
[2010/03/02 10:28:13 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrobj.dll
[2010/03/02 10:28:13 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2010/03/02 10:28:13 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2010/03/02 10:28:13 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2010/03/02 10:28:13 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshext.dll
[2010/03/02 10:28:05 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netiohlp.dll
[2010/03/02 10:28:05 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\NETSTAT.EXE
[2010/03/02 10:28:04 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ARP.EXE
[2010/03/02 10:28:04 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ROUTE.EXE
[2010/03/02 10:28:04 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netevent.dll
[2010/03/02 10:28:04 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MRINFO.EXE
[2010/03/02 10:28:04 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\finger.exe
[2010/03/02 10:28:04 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TCPSVCS.EXE
[2010/03/02 10:28:04 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\HOSTNAME.EXE
[2010/03/02 10:26:25 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dataclen.dll
[2010/03/02 10:26:19 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\traffic.dll
[2010/03/02 10:26:19 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pacerprf.dll
[2010/03/02 10:26:19 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshqos.dll
[2010/03/02 10:26:16 | 000,562,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdtcprx.dll
[2010/03/02 10:26:15 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xolehlp.dll
[2010/03/02 10:26:06 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmpdxm.dll
[2010/03/02 10:26:05 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2010/03/02 10:26:05 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2010/03/02 10:26:05 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2010/03/02 10:26:04 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.tlb
[2010/03/02 10:26:04 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\amcompat.tlb
[2010/03/02 10:24:45 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll
[2010/03/02 10:24:43 | 000,712,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WindowsCodecs.dll
[2010/03/02 10:24:43 | 000,425,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PhotoMetadataHandler.dll
[2010/03/02 10:24:43 | 000,347,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WindowsCodecsExt.dll
[2010/03/02 10:24:39 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlansec.dll
[2010/03/02 10:24:39 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2010/03/02 10:24:39 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\L2SecHC.dll
[2010/03/02 10:02:38 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\Adobe
[2010/03/01 22:10:06 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee Security Scan
[2010/03/01 22:10:06 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2010/03/01 22:10:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\McAfee Security Scan
[2010/03/01 22:09:37 | 000,000,000 | ---D | C] -- C:\ProgramData\NOS
[2010/03/01 20:42:27 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NISx64\1105000.07F
[2010/03/01 20:35:04 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Apple Computer
[2010/03/01 20:35:04 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\Apple Computer
[2010/03/01 20:34:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Safari
[2010/03/01 20:34:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2010/03/01 20:34:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2010/03/01 20:34:12 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\Apple
[2010/03/01 20:34:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2010/03/01 20:34:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2010/03/01 19:37:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2010/03/01 18:27:02 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\skypePM
[2010/03/01 18:24:09 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Skype
[2010/03/01 18:24:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2010/03/01 18:23:59 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2010/03/01 18:23:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2010/03/01 18:15:43 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2010/03/01 18:15:09 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\Mozilla
[2010/03/01 18:15:08 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Mozilla
[2010/03/01 18:12:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SeaMonkey
[2010/03/01 18:06:06 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Macromedia
[2010/03/01 18:06:06 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Adobe
[2010/03/01 18:05:52 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Google
[2010/03/01 17:57:36 | 000,575,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2010/03/01 17:57:36 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2010/03/01 17:57:36 | 000,035,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2010/03/01 17:57:25 | 000,171,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2010/03/01 17:57:25 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2010/03/01 17:52:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2010/03/01 17:52:45 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec
[2010/03/01 17:51:19 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NISx64
[2010/03/01 17:51:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton Internet Security
[2010/03/01 17:46:48 | 000,000,000 | ---D | C] -- C:\ProgramData\PCSettings
[2010/03/01 17:46:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2010/03/01 17:36:45 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2010/03/01 17:36:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NortonInstaller
[2010/03/01 17:33:30 | 000,000,000 | R--D | C] -- C:\Users\PC\Desktop\Extras
[2010/03/01 17:32:47 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Symantec
[2010/03/01 17:32:44 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\Toshiba
[2010/03/01 17:31:59 | 000,000,000 | R--D | C] -- C:\Users\PC\Searches
[2010/03/01 17:31:17 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Identities
[2010/03/01 17:31:13 | 000,000,000 | R--D | C] -- C:\Users\PC\Contacts
[2010/03/01 17:31:10 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\VirtualStore
[2010/03/01 17:31:01 | 000,000,000 | --SD | C] -- C:\Users\PC\AppData\Roaming\Microsoft
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Videos
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Saved Games
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Pictures
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Music
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Links
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Favorites
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Downloads
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Documents
[2010/03/01 17:31:01 | 000,000,000 | R--D | C] -- C:\Users\PC\Desktop
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\AppData\Local\Temporary Internet Files
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Templates
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Start Menu
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\SendTo
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Recent
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\PrintHood
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\NetHood
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Documents\My Videos
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Documents\My Pictures
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Documents\My Music
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\My Documents
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Local Settings
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\AppData\Local\History
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Cookies
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\Application Data
[2010/03/01 17:31:01 | 000,000,000 | -HSD | C] -- C:\Users\PC\AppData\Local\Application Data
[2010/03/01 17:31:01 | 000,000,000 | -H-D | C] -- C:\Users\PC\AppData
[2010/03/01 17:31:01 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\Temp
[2010/03/01 17:31:01 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Local\Microsoft
[2010/03/01 17:31:01 | 000,000,000 | ---D | C] -- C:\Users\PC\AppData\Roaming\Media Center Programs
[2010/03/01 15:17:21 | 000,000,000 | ---D | C] -- C:\DOCS
[2010/03/01 15:12:40 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2010/03/01 15:12:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Toshiba Shared
[2010/03/01 15:08:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Jumpstart
[2010/03/01 15:06:34 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\nn-NO
[2010/03/01 15:06:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Atheros
[2010/03/01 15:06:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco
[2010/03/01 15:06:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Atheros
[2010/03/01 15:03:37 | 000,000,000 | ---D | C] -- C:\Program Files\Camera Assistant Software for Toshiba
[2010/03/01 15:02:11 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2010/03/01 14:59:48 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\ENU
[2010/03/01 14:59:46 | 001,034,776 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\imsmudlg.exe
[2010/03/01 14:56:38 | 000,491,520 | ---- | C] (Toshiba Corporation) -- C:\Windows\SysWow64\cselect.exe
[2010/03/01 14:56:38 | 000,000,000 | ---D | C] -- C:\Program Files\ltmoh
[2010/03/01 14:56:37 | 000,050,752 | ---- | C] (Agere Systems) -- C:\Windows\agrsmdel.exe
[2010/03/01 14:56:37 | 000,029,184 | ---- | C] (Agere Systems) -- C:\Windows\agrdel64.exe
[2010/03/01 14:56:09 | 000,000,000 | ---D | C] -- C:\Windows\Options
[2010/03/01 14:54:52 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2010/03/01 14:54:22 | 000,525,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\DIFxAPI.dll
[2010/03/01 14:54:21 | 006,156,288 | ---- | C] (Realtek Semiconductor) -- C:\Windows\RAVCpl64.exe
[2010/03/01 14:54:21 | 001,826,816 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SkyTel.exe
[2010/03/01 14:54:21 | 001,364,480 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlUpd64.exe
[2010/03/01 14:54:20 | 000,520,192 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
[2010/03/01 14:54:20 | 000,315,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\HideWin.exe
[2010/03/01 14:51:08 | 000,920,088 | ---- | C] (Intel® Corporation) -- C:\Windows\SysWow64\igxpun.exe
[2010/03/01 14:51:08 | 000,319,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\difxapi.dll
[2010/03/01 14:51:08 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\x64
[2010/03/01 14:51:08 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Lang
[2010/03/01 14:47:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
[2010/03/01 14:44:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2010/03/01 14:44:01 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010/03/01 14:44:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2010/03/01 14:42:50 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2010/03/01 14:42:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2010/03/01 14:39:44 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2010/03/01 14:39:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2010/03/01 14:38:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Works
[2010/03/01 14:31:34 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010/03/01 14:27:18 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/03/18 01:17:08 | 002,097,152 | -HS- | M] () -- C:\Users\PC\NTUSER.DAT
[2010/03/18 00:29:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010/03/17 08:33:47 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010/03/17 08:33:47 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010/03/17 03:00:37 | 002,329,646 | ---- | M] () -- C:\Windows\SysNative\drivers\NISx64\1105000.07F\Cat.DB
[2010/03/17 01:58:21 | 000,000,734 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.new
[2010/03/15 18:25:41 | 000,010,177 | ---- | M] () -- C:\Users\PC\Desktop\Budget cuts.docx
[2010/03/15 18:05:51 | 000,140,664 | ---- | M] () -- C:\Users\PC\Desktop\West, South, Final Four.jpg
[2010/03/15 18:03:01 | 000,151,351 | ---- | M] () -- C:\Users\PC\Desktop\Midwest, East, Championship.jpg
[2010/03/15 18:00:54 | 000,118,502 | ---- | M] () -- C:\Users\PC\Desktop\Final Four.jpg
[2010/03/15 17:58:35 | 000,118,929 | ---- | M] () -- C:\Users\PC\Desktop\South.jpg
[2010/03/15 17:54:52 | 000,118,235 | ---- | M] () -- C:\Users\PC\Desktop\East.jpg
[2010/03/15 17:50:01 | 000,117,642 | ---- | M] () -- C:\Users\PC\Desktop\West.jpg
[2010/03/15 17:44:42 | 000,118,576 | ---- | M] () -- C:\Users\PC\Desktop\Midwest.jpg
[2010/03/14 04:34:23 | 000,690,960 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010/03/14 04:34:23 | 000,595,684 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010/03/14 04:34:23 | 000,101,350 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010/03/14 04:27:22 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010/03/14 04:27:08 | 4156,551,168 | -HS- | M] () -- C:\hiberfil.sys
[2010/03/14 04:25:52 | 000,524,288 | -HS- | M] () -- C:\Users\PC\NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TMContainer00000000000000000001.regtrans-ms
[2010/03/14 04:25:52 | 000,065,536 | -HS- | M] () -- C:\Users\PC\NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TM.blf
[2010/03/14 04:25:50 | 001,951,193 | -H-- | M] () -- C:\Users\PC\AppData\Local\IconCache.db
[2010/03/13 22:52:26 | 001,954,640 | ---- | M] (PeerBlock, LLC ) -- C:\Users\PC\Desktop\PeerBlock-Setup_v1.0.0.r181.exe
[2010/03/13 21:46:51 | 000,047,408 | ---- | M] () -- C:\Users\PC\Desktop\img009 - Copy.jpg
[2010/03/13 21:35:29 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdRapi_01_00_00.Wdf
[2010/03/12 14:55:13 | 000,000,774 | ---- | M] () -- C:\Users\PC\Desktop\NTREGOPT.lnk
[2010/03/12 14:55:13 | 000,000,755 | ---- | M] () -- C:\Users\PC\Desktop\ERUNT.lnk
[2010/03/11 15:11:52 | 000,001,939 | ---- | M] () -- C:\Users\PC\Desktop\HijackThis.lnk
[2010/03/10 03:28:46 | 000,103,781 | ---- | M] () -- C:\Users\PC\Desktop\screen 4.jpg
[2010/03/10 03:28:06 | 000,003,584 | ---- | M] () -- C:\Users\PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/03/10 03:19:37 | 000,095,422 | ---- | M] () -- C:\Users\PC\Desktop\screen 3.jpg
[2010/03/08 12:40:40 | 000,068,703 | ---- | M] () -- C:\Users\PC\Desktop\img026.jpg
[2010/03/07 12:10:03 | 000,000,000 | -H-- | M] () -- C:\Users\PC\Documents\Default.rdp
[2010/03/05 19:48:28 | 000,036,004 | ---- | M] () -- C:\Users\PC\Desktop\img025.jpg
[2010/03/05 01:54:24 | 000,001,773 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
[2010/03/05 01:54:24 | 000,001,771 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
[2010/03/03 05:40:32 | 000,083,304 | ---- | M] () -- C:\Users\PC\AppData\Local\GDIPFONTCACHEV1.DAT
[2010/03/03 05:37:02 | 000,322,936 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010/03/02 10:52:13 | 000,156,220 | ---- | M] () -- C:\Users\PC\Desktop\screen pic2.jpg
[2010/03/02 10:49:48 | 000,102,365 | ---- | M] () -- C:\Users\PC\Desktop\screen pic.jpg
[2010/03/01 20:49:49 | 000,002,301 | ---- | M] () -- C:\Users\Public\Desktop\Norton Internet Security.lnk
[2010/03/01 20:34:56 | 000,001,866 | ---- | M] () -- C:\Users\Public\Desktop\Safari.lnk
[2010/03/01 19:37:43 | 000,001,789 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010/03/01 18:27:02 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat
[2010/03/01 18:24:00 | 000,001,890 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010/03/01 18:12:19 | 000,001,751 | ---- | M] () -- C:\Users\Public\Desktop\SeaMonkey.lnk
[2010/03/01 17:52:45 | 000,173,104 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS
[2010/03/01 17:52:45 | 000,007,440 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.CAT
[2010/03/01 17:52:45 | 000,000,854 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.INF
[2010/03/01 17:49:33 | 000,524,288 | -HS- | M] () -- C:\Users\PC\NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TMContainer00000000000000000002.regtrans-ms
[2010/03/01 17:46:48 | 000,005,115 | ---- | M] () -- C:\ProgramData\N360BUOptions.ini
[2010/03/01 17:31:22 | 000,000,016 | RHS- | M] () -- C:\Windows\SysWow64\drivers\fbd.sys
[2010/03/01 17:31:13 | 000,000,006 | RHS- | M] () -- C:\Windows\SysNative\drivers\taishop.sys
[2010/03/01 17:31:01 | 000,000,020 | -HS- | M] () -- C:\Users\PC\ntuser.ini
[2010/03/01 15:25:07 | 000,047,092 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2010/03/01 15:02:31 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_SynTP_01000.Wdf
[2010/03/01 14:54:23 | 000,525,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\DIFxAPI.dll
[2010/03/01 14:54:20 | 000,315,392 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\HideWin.exe
[2010/02/28 03:29:46 | 000,043,292 | ---- | M] () -- C:\Users\PC\Desktop\img024.jpg
[2010/02/28 03:29:36 | 000,038,677 | ---- | M] () -- C:\Users\PC\Desktop\img023.jpg
[2010/02/28 03:15:20 | 000,036,565 | ---- | M] () -- C:\Users\PC\Desktop\img021.jpg
[2010/02/28 02:24:16 | 000,045,442 | ---- | M] () -- C:\Users\PC\Desktop\img020.jpg
[2010/02/28 00:57:50 | 000,068,076 | ---- | M] () -- C:\Users\PC\Desktop\img019.jpg
[2010/02/28 00:57:32 | 000,044,805 | ---- | M] () -- C:\Users\PC\Desktop\img018.jpg
[2010/02/28 00:37:58 | 000,057,131 | ---- | M] () -- C:\Users\PC\Desktop\img017.jpg
[2010/02/27 18:52:18 | 000,043,602 | ---- | M] () -- C:\Users\PC\Desktop\img016.jpg
[2010/02/27 16:22:20 | 000,037,912 | ---- | M] () -- C:\Users\PC\Desktop\img014.jpg
[2010/02/27 16:21:34 | 000,035,711 | ---- | M] () -- C:\Users\PC\Desktop\img013.jpg
[2010/02/27 01:37:52 | 000,055,793 | ---- | M] () -- C:\Users\PC\Desktop\img012.jpg
[2010/02/27 00:23:30 | 000,069,924 | ---- | M] () -- C:\Users\PC\Desktop\img011.jpg
[2010/02/27 00:03:24 | 000,075,256 | ---- | M] () -- C:\Users\PC\Desktop\img010.jpg
[2010/02/21 23:09:00 | 000,077,403 | ---- | M] () -- C:\Users\PC\Desktop\img009.jpg
[2010/02/21 23:08:24 | 000,105,148 | ---- | M] () -- C:\Users\PC\Desktop\img008.jpg
[2010/02/20 15:44:53 | 000,032,768 | ---- | M] () -- C:\Windows\SysNative\nshhttp.dll
[2010/02/20 15:42:16 | 000,033,792 | ---- | M] () -- C:\Windows\SysNative\httpapi.dll
[2010/02/20 15:39:35 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\nshhttp.dll
[2010/02/20 15:37:20 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\httpapi.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]