Guest User

Untitled

a guest
Sep 2nd, 2011
130
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. OTL logfile created on: 1/15/2004 7:56:00 PM - Run 1
  2. OTL by OldTimer - Version 3.2.27.0 Folder = C:\Documents and Settings\user\My Documents\Downloads
  3. Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
  4. Internet Explorer (Version = 8.0.6001.18702)
  5. Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
  6.  
  7. 1.50 Gb Total Physical Memory | 0.95 Gb Available Physical Memory | 63.07% Memory free
  8. 3.35 Gb Paging File | 2.91 Gb Available in Paging File | 86.70% Paging File free
  9. Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
  12. Drive C: | 74.46 Gb Total Space | 60.74 Gb Free Space | 81.57% Space Free | Partition Type: NTFS
  13. Drive F: | 111.79 Gb Total Space | 100.05 Gb Free Space | 89.50% Space Free | Partition Type: NTFS
  14.  
  15. Computer Name: USER-A8B135AEE7 | User Name: user | Logged in as Administrator.
  16. Boot Mode: Normal | Scan Mode: Current user | Quick Scan
  17. Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
  18.  
  19. [color=#E56717]========== Processes (SafeList) ==========[/color]
  20.  
  21. PRC - [2011/08/18 09:10:12 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
  22. PRC - [2011/08/17 12:06:48 | 002,156,928 | ---- | M] (TeamViewer GmbH) -- c:\Documents and Settings\user\Local Settings\Temp\TeamViewer\Version6\TeamViewer_Desktop.exe
  23. PRC - [2011/08/17 12:06:47 | 007,032,704 | ---- | M] (TeamViewer GmbH) -- C:\Documents and Settings\user\Local Settings\Temp\TeamViewer\Version6\TeamViewer.exe
  24. PRC - [2011/08/17 10:07:10 | 000,108,416 | ---- | M] (TeamViewer GmbH) -- C:\Documents and Settings\user\Local Settings\Temp\TeamViewer\Version6\tv_w32.exe
  25. PRC - [2011/05/25 15:07:14 | 024,176,560 | ---- | M] (Dropbox, Inc.) -- C:\Documents and Settings\user\Application Data\Dropbox\bin\Dropbox.exe
  26. PRC - [2009/07/20 12:30:50 | 000,813,584 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe
  27. PRC - [2009/07/10 12:42:32 | 000,055,824 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
  28. PRC - [2008/04/14 02:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
  29. PRC - [2006/01/02 16:41:22 | 000,045,056 | ---- | M] (ATI Technologies Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
  30. PRC - [2004/07/03 00:36:58 | 001,432,576 | ---- | M] (Cisco Linksys Corporation) -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv4.exe
  31. PRC - [2004/06/14 16:16:18 | 000,045,056 | ---- | M] () -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InfoMyCa.exe
  32. PRC - [2004/02/06 22:56:14 | 000,041,025 | ---- | M] (GEMTEKS) -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
  33. PRC - [2004/01/15 19:32:29 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\user\My Documents\Downloads\OTL.exe
  34. PRC - [2002/04/03 00:01:00 | 000,135,264 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe
  35.  
  36.  
  37. [color=#E56717]========== Modules (No Company Name) ==========[/color]
  38.  
  39. MOD - [2011/08/18 09:10:13 | 001,000,920 | ---- | M] () -- C:\Program Files\Mozilla Firefox\js3250.dll
  40. MOD - [2011/08/10 02:11:33 | 011,800,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\40893760431f8f0dcce3e18630e45b23\System.Web.ni.dll
  41. MOD - [2011/08/10 02:09:54 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\77df2cd21a5b85a1605b335aa9ad9d44\System.Configuration.ni.dll
  42. MOD - [2011/08/10 02:07:43 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\10154dcad2d62f226af2fd4211460a4b\System.Xml.ni.dll
  43. MOD - [2011/08/10 02:07:36 | 012,430,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\d00cc387e462e4c3cdcd112b137cac87\System.Windows.Forms.ni.dll
  44. MOD - [2011/08/10 02:07:20 | 001,587,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\7ed09623172a292eaee51e2e3bcaf784\System.Drawing.ni.dll
  45. MOD - [2011/08/10 02:05:44 | 007,950,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\e6c79e1d71b0c9000afd7e5e439b5c54\System.ni.dll
  46. MOD - [2011/08/10 02:04:49 | 000,372,736 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
  47. MOD - [2011/08/10 02:04:47 | 000,303,104 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
  48. MOD - [2011/06/29 02:06:41 | 011,490,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\0309936a8e1672d39b9cf14463ce69f9\mscorlib.ni.dll
  49. MOD - [2009/07/20 12:27:14 | 000,017,936 | ---- | M] () -- C:\Program Files\Logitech\SetPoint\khalwrapper.dll
  50. MOD - [2008/04/14 02:00:00 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
  51. MOD - [2008/04/14 02:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
  52. MOD - [2004/06/30 17:12:12 | 000,077,824 | ---- | M] () -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\Security.dll
  53. MOD - [2004/06/14 16:16:18 | 000,045,056 | ---- | M] () -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InfoMyCa.exe
  54. MOD - [2003/10/13 15:30:58 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\GTW32N50.dll
  55. MOD - [2002/04/24 00:00:00 | 000,110,592 | ---- | M] () -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\GEMWEP.DLL
  56.  
  57.  
  58. [color=#E56717]========== Win32 Services (SafeList) ==========[/color]
  59.  
  60. SRV - File not found [Auto | Running] -- -- (WUSB54Gv4SVC)
  61. SRV - [2009/07/20 12:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
  62. SRV - [2008/09/16 12:03:18 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor7.0)
  63. SRV - [2004/01/22 21:40:23 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
  64.  
  65.  
  66. [color=#E56717]========== Driver Services (SafeList) ==========[/color]
  67.  
  68. DRV - [2010/06/06 22:12:22 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BVRPMPR5.SYS -- (BVRPMPR5)
  69. DRV - [2009/06/17 11:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LMouFilt.Sys -- (LMouFilt)
  70. DRV - [2009/06/17 11:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt)
  71. DRV - [2009/06/17 11:55:34 | 000,010,384 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE)
  72. DRV - [2009/06/17 11:55:18 | 000,020,240 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\L8042Kbd.sys -- (L8042Kbd)
  73. DRV - [2008/04/13 23:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
  74. DRV - [2006/05/03 08:50:42 | 001,540,608 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
  75. DRV - [2004/05/26 14:53:40 | 000,015,781 | ---- | M] (Meetinghouse Data Communications) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\mdc8021x.sys -- (MDC8021X) AEGIS Protocol (IEEE 802.1x)
  76. DRV - [2004/05/07 13:47:10 | 000,079,616 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\rt2500usb.sys -- (WUSB54GV4SRV)
  77. DRV - [2003/09/25 22:15:32 | 000,015,872 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\GTNDIS5.sys -- (GTNDIS5)
  78. DRV - [2003/09/22 11:43:06 | 001,330,048 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\P16X.sys -- (P16X) Creative SB Live! Series (WDM)
  79. DRV - [2003/09/22 07:48:06 | 000,130,192 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
  80. DRV - [2003/09/22 07:47:38 | 000,178,672 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
  81. DRV - [2003/03/05 11:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\PFMODNT.SYS -- (PfModNT)
  82.  
  83.  
  84. [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
  85.  
  86.  
  87. [color=#E56717]========== Internet Explorer ==========[/color]
  88.  
  89.  
  90. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
  91. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
  92. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:56889
  93.  
  94. [color=#E56717]========== FireFox ==========[/color]
  95.  
  96. FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
  97. FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
  98. FF - prefs.js..network.proxy.http: "127.0.0.1"
  99. FF - prefs.js..network.proxy.http_port: 56889
  100. FF - prefs.js..network.proxy.type: 0
  101.  
  102. FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
  103. FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
  104. FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
  105. FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
  106. FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
  107. FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
  108. FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
  109. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.68\npGoogleUpdate3.dll (Google Inc.)
  110. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.68\npGoogleUpdate3.dll (Google Inc.)
  111. FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Documents and Settings\user\Application Data\Mozilla\plugins\npgoogletalk.dll (Google)
  112. FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Documents and Settings\user\Application Data\Mozilla\plugins\npgtpo3dautoplugin.dll ()
  113. FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\user\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
  114. FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\user\Local Settings\Application Data\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
  115.  
  116. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.20\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/08/18 09:10:16 | 000,000,000 | ---D | M]
  117. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.20\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/08/18 09:10:16 | 000,000,000 | ---D | M]
  118.  
  119. [2004/01/15 00:15:06 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\user\Application Data\Mozilla\Extensions
  120. [2011/08/27 09:25:56 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\oluw32xv.default\extensions
  121. [2011/02/26 13:22:57 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\user\Application Data\Mozilla\Firefox\Profiles\oluw32xv.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
  122. [2011/08/27 09:25:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
  123. [2011/02/26 17:20:31 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
  124. [2011/02/26 17:20:12 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
  125. [2011/02/26 17:20:11 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
  126.  
  127. O1 HOSTS File: ([2004/01/15 19:52:57 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
  128. O1 - Hosts: 127.0.0.1 localhost
  129. O1 - Hosts: ::1 localhost
  130. O4 - HKLM..\Run: [ATICCC] C:\Program Files\ATI Technologies\ATI.ACE\cli.exe (ATI Technologies Inc.)
  131. O4 - HKLM..\Run: [diagent] C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe (Creative Technology Ltd)
  132. O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\WINDOWS\KHALMNPR.Exe (Logitech, Inc.)
  133. O4 - HKLM..\Run: [UpdReg] C:\WINDOWS\Updreg.EXE (Creative Technology Ltd.)
  134. O4 - HKLM..\Run: [WUSB54Gv4] C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe ()
  135. O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
  136. O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech, Inc.)
  137. O4 - Startup: C:\Documents and Settings\user\Start Menu\Programs\Startup\Dropbox.lnk = C:\Documents and Settings\user\Application Data\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
  138. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
  139. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
  140. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 1
  141. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuMyMusic = 1
  142. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMBalloonTip = 1
  143. O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
  144. O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
  145. O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
  146. O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
  147. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
  148. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2E73FCB3-039A-4AA6-B1BE-B1C4996AC86C}: DhcpNameServer = 167.206.254.2 167.206.254.1
  149. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{36CCA0BD-D5CC-4679-A603-D1B4D630249A}: DhcpNameServer = 167.206.254.2 167.206.254.1
  150. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{38B25466-5E7D-488B-8C3F-EB1DF6923485}: DhcpNameServer = 192.168.1.1
  151. O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
  152. O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
  153. O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
  154. O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
  155. O32 - HKLM CDRom: AutoRun - 1
  156. O32 - AutoRun File - [2010/08/17 12:35:16 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
  157. O34 - HKLM BootExecute: (autocheck autochk *) - File not found
  158. O35 - HKLM\..comfile [open] -- "%1" %*
  159. O35 - HKLM\..exefile [open] -- "%1" %*
  160. O37 - HKLM\...com [@ = comfile] -- "%1" %*
  161. O37 - HKLM\...exe [@ = exefile] -- "%1" %*
  162.  
  163. [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
  164.  
  165. [2011/08/27 02:00:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
  166. [2011/08/25 13:33:46 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\user\PrivacIE
  167. [2011/08/25 13:31:46 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\user\IETldCache
  168. [2011/08/25 13:28:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
  169. [2011/08/25 13:27:25 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
  170. [2011/08/25 13:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Google
  171. [2011/08/25 13:22:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Earth
  172. [2011/08/25 13:20:36 | 000,000,000 | ---D | C] -- C:\Program Files\Google
  173. [2011/07/20 00:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
  174. [2011/07/20 00:00:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Malwarebytes
  175. [2011/07/20 00:00:39 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
  176. [2011/07/20 00:00:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
  177. [2011/07/20 00:00:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
  178. [2011/07/20 00:00:35 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
  179. [2011/07/20 00:00:35 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
  180. [2011/07/18 00:09:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Start Menu\Programs\Wolfenstein - Enemy Territory
  181. [2011/07/18 00:09:25 | 000,000,000 | ---D | C] -- C:\Program Files\Wolfenstein - Enemy Territory
  182. [2011/07/16 17:24:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\.minecraft
  183. [2011/07/04 11:27:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\Google
  184. [2011/06/16 14:13:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
  185. [2011/05/16 22:26:32 | 000,049,904 | R--- | C] (Avanquest Software) -- C:\WINDOWS\System32\drivers\BVRPMPR5.SYS
  186. [2011/05/16 21:41:05 | 000,000,000 | ---D | C] -- C:\Netgear
  187. [2011/04/05 00:46:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Apple Computer
  188. [2011/04/05 00:46:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\iTunes
  189. [2011/04/05 00:45:40 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
  190. [2011/04/05 00:45:36 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
  191. [2011/04/05 00:45:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
  192. [2011/04/05 00:44:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\QuickTime
  193. [2011/04/05 00:44:34 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
  194. [2011/04/05 00:44:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple Computer
  195. [2011/04/05 00:44:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\Apple
  196. [2011/04/05 00:44:19 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
  197. [2011/04/05 00:44:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
  198. [2011/04/05 00:43:48 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
  199. [2011/04/05 00:43:31 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
  200. [2011/04/05 00:43:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple
  201. [2011/04/05 00:40:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\Apple Computer
  202. [2011/03/28 22:28:34 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\My Documents\Dropbox
  203. [2011/03/28 22:27:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Start Menu\Programs\Dropbox
  204. [2011/03/28 22:27:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Dropbox
  205. [2011/03/03 11:39:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
  206. [2011/02/28 13:00:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\Identities
  207. [2011/02/26 17:20:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Sun
  208. [2011/02/26 17:20:51 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
  209. [2011/02/26 17:20:06 | 000,000,000 | ---D | C] -- C:\Program Files\Java
  210. [2011/02/26 17:19:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Sun
  211. [2011/02/25 03:04:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
  212. [2011/02/25 03:04:18 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
  213. [2011/02/25 03:04:09 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
  214. [2011/02/25 01:10:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Logitech
  215. [2011/02/25 01:10:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Leadertech
  216. [2011/02/25 01:09:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\LogiShrd
  217. [2011/02/25 01:08:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
  218. [2011/02/25 01:08:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Logitech
  219. [2011/02/25 01:07:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Logitech
  220. [2011/02/25 01:07:34 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logishrd
  221. [2011/02/25 01:07:14 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
  222. [2011/02/24 15:57:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\Adobe
  223. [2011/02/24 15:57:30 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
  224. [2011/02/24 15:55:31 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
  225. [2011/02/24 01:16:12 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy
  226. [2010/08/19 16:30:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\ATI
  227. [2010/08/19 16:30:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\ATI
  228. [2010/08/19 16:29:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
  229. [2010/08/19 16:28:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Catalyst Control Center
  230. [2010/08/19 16:25:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
  231. [2010/08/19 16:21:56 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
  232. [2010/08/19 16:21:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
  233. [2010/08/19 16:19:48 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
  234. [2010/08/19 16:18:42 | 000,000,000 | ---D | C] -- C:\Diamond
  235. [2010/08/17 12:49:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
  236. [2010/08/17 12:49:34 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
  237. [2010/08/17 12:48:39 | 000,065,536 | ---- | C] ( ) -- C:\WINDOWS\System32\dllcache\a3d.dll
  238. [2010/08/17 12:48:39 | 000,065,536 | ---- | C] ( ) -- C:\WINDOWS\System32\A3d.dll
  239. [2010/08/17 12:48:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Data
  240. [2010/08/17 12:47:59 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
  241. [2010/08/17 12:47:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Creative
  242. [2010/08/17 12:47:52 | 000,000,000 | ---D | C] -- C:\Program Files\Creative
  243. [2010/08/17 12:47:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\Drivers
  244. [2010/08/17 12:45:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
  245. [2010/08/17 12:42:22 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
  246. [2010/08/17 12:41:53 | 000,000,000 | ---D | C] -- C:\drvrtmp
  247. [2010/08/17 12:40:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Identities
  248. [2010/08/17 12:40:15 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
  249. [2010/08/17 12:40:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\My Documents\My Pictures
  250. [2010/08/17 12:40:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\My Documents\My Music
  251. [2010/08/17 12:40:10 | 000,000,000 | --SD | C] -- C:\Documents and Settings\user\Application Data\Microsoft
  252. [2010/08/17 12:40:10 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\user\Application Data
  253. [2010/08/17 12:40:10 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\My Documents
  254. [2010/08/17 12:40:10 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\Favorites
  255. [2010/08/17 12:40:10 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\user\Cookies
  256. [2010/08/17 12:40:10 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\user\Local Settings
  257. [2010/08/17 12:40:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\Microsoft
  258. [2010/08/17 12:40:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Desktop
  259. [2010/08/17 12:40:09 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\user\SendTo
  260. [2010/08/17 12:40:09 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\user\Recent
  261. [2010/08/17 12:40:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\Start Menu\Programs\Startup
  262. [2010/08/17 12:40:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\Start Menu
  263. [2010/08/17 12:40:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\user\Start Menu\Programs\Accessories
  264. [2010/08/17 12:40:09 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\user\Templates
  265. [2010/08/17 12:40:09 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\user\PrintHood
  266. [2010/08/17 12:40:09 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\user\NetHood
  267. [2010/08/17 12:39:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
  268. [2010/08/17 12:39:30 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
  269. [2010/08/17 12:39:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
  270. [2010/08/17 12:39:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
  271. [2010/08/17 12:39:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
  272. [2010/08/17 12:38:34 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
  273. [2010/08/17 12:38:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
  274. [2010/08/17 12:37:12 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
  275. [2010/08/17 12:37:12 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
  276. [2010/08/17 12:37:12 | 000,029,184 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll
  277. [2010/08/17 12:36:10 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
  278. [2010/08/17 12:35:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
  279. [2010/08/17 12:35:39 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
  280. [2010/08/17 12:35:39 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
  281. [2010/08/17 12:35:26 | 000,000,000 | ---D | C] -- C:\DELL
  282. [2010/08/17 12:34:17 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
  283. [2010/08/17 12:34:07 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
  284. [2010/08/17 12:34:07 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
  285. [2010/08/17 12:33:56 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
  286. [2010/08/17 12:33:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
  287. [2010/08/17 12:33:21 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
  288. [2010/08/17 12:33:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
  289. [2010/08/17 12:33:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
  290. [2010/08/17 12:33:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
  291. [2010/08/17 12:33:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
  292. [2010/08/17 12:33:07 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
  293. [2010/08/17 12:32:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
  294. [2010/08/17 12:32:44 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
  295. [2010/08/17 12:32:41 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
  296. [2010/08/17 12:32:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
  297. [2010/08/17 12:32:32 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
  298. [2010/08/17 12:32:31 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures
  299. [2010/08/17 12:32:06 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Games
  300. [2010/08/17 12:31:56 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
  301. [2010/08/17 12:31:49 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools
  302. [2010/08/17 12:31:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
  303. [2010/08/17 12:31:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music
  304. [2010/08/17 12:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
  305. [2010/08/17 12:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services
  306. [2010/08/17 12:31:34 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
  307. [2010/08/17 12:31:31 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
  308. [2010/08/17 12:30:58 | 000,281,088 | ---- | C] (Cinematronics) -- C:\WINDOWS\System32\dllcache\pinball.exe
  309. [2010/08/17 12:30:58 | 000,000,000 | ---D | C] -- C:\Program Files\MSN
  310. [2010/08/17 12:30:57 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
  311. [2010/08/17 12:30:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
  312. [2010/08/17 12:30:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
  313. [2010/08/17 12:30:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
  314. [2010/08/17 12:30:39 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Videos
  315. [2010/08/17 12:30:20 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Accessories
  316. [2010/08/17 08:26:06 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
  317. [2010/08/17 08:26:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
  318. [2010/08/17 08:26:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
  319. [2010/08/17 08:26:01 | 000,000,000 | R--D | C] -- C:\Program Files
  320. [2010/08/17 08:26:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
  321. [2010/08/17 08:26:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
  322. [2010/08/17 08:25:33 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup
  323. [2010/08/17 08:25:33 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
  324. [2010/08/17 08:25:33 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents
  325. [2010/08/17 08:25:33 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Templates
  326. [2010/08/17 08:25:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
  327. [2010/08/17 08:25:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Desktop
  328. [2010/08/17 08:25:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
  329. [2010/08/17 08:25:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
  330. [2010/08/17 08:25:12 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft
  331. [2010/08/17 08:25:12 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
  332. [2010/08/17 08:24:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings
  333. [2010/08/17 08:24:43 | 000,000,000 | -HSD | C] -- C:\System Volume Information
  334. [2010/08/17 08:18:43 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
  335. [2010/08/17 08:18:43 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
  336. [2010/08/17 08:18:43 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
  337. [2010/08/17 08:18:43 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
  338. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
  339. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
  340. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS
  341. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
  342. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
  343. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
  344. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
  345. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
  346. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
  347. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
  348. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
  349. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
  350. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
  351. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
  352. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
  353. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
  354. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
  355. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
  356. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
  357. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
  358. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
  359. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
  360. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Network Diagnostic
  361. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
  362. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
  363. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
  364. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
  365. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
  366. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\L2Schemas
  367. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
  368. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
  369. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
  370. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
  371. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
  372. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
  373. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
  374. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
  375. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
  376. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
  377. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\ehome
  378. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
  379. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
  380. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
  381. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
  382. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Dell
  383. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
  384. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
  385. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
  386. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
  387. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
  388. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
  389. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
  390. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
  391. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
  392. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
  393. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
  394. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
  395. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
  396. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
  397. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
  398. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
  399. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
  400. [2010/08/17 08:18:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
  401. [2008/04/14 02:00:00 | 003,374,640 | ---- | C] (Macromedia, Inc.) -- C:\WINDOWS\System32\dllcache\tourW.exe
  402. [2008/04/14 02:00:00 | 000,736,768 | ---- | C] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\sprb0419.dll
  403. [2008/04/14 02:00:00 | 000,627,200 | ---- | C] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\sprc0419.dll
  404. [2008/04/14 02:00:00 | 000,427,008 | ---- | C] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\obrb0419.dll
  405. [2008/04/14 02:00:00 | 000,192,512 | ---- | C] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\spra0419.dll
  406. [2004/01/25 23:39:53 | 000,000,000 | --SD | C] -- C:\Documents and Settings\user\UserData
  407. [2004/01/22 21:40:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
  408. [2004/01/22 21:38:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\Fonts\Fonts
  409. [2004/01/22 21:37:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
  410. [2004/01/15 19:52:57 | 000,000,000 | ---D | C] -- C:\_OTL
  411. [2004/01/15 19:29:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Start Menu\Programs\Google Chrome
  412. [2004/01/15 19:22:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\TeamViewer
  413. [2004/01/15 00:36:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Silverlight
  414. [2004/01/15 00:36:39 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
  415. [2004/01/15 00:31:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
  416. [2004/01/15 00:21:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Macromedia
  417. [2004/01/15 00:21:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Adobe
  418. [2004/01/15 00:19:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\My Documents\Downloads
  419. [2004/01/15 00:14:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Local Settings\Application Data\Mozilla
  420. [2004/01/15 00:14:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Application Data\Mozilla
  421. [2004/01/15 00:14:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox
  422. [2004/01/15 00:14:49 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
  423. [2004/01/15 00:09:47 | 000,374,752 | ---- | C] (Cisco-Linksys, LLC.) -- C:\WINDOWS\System32\WUSBGXP.sys
  424. [2004/01/15 00:09:47 | 000,339,488 | ---- | C] (Cisco-Linksys, LLC.) -- C:\WINDOWS\System32\WUSB20XP.sys
  425. [2004/01/15 00:09:47 | 000,079,616 | ---- | C] (Ralink Technology Inc.) -- C:\WINDOWS\System32\rt2500usb.sys
  426. [2004/01/15 00:09:47 | 000,079,616 | ---- | C] (Ralink Technology Inc.) -- C:\WINDOWS\System32\drivers\rt2500usb.sys
  427. [2004/01/15 00:09:47 | 000,015,872 | ---- | C] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\WINDOWS\System32\GTNDIS5.sys
  428. [2004/01/15 00:09:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Linksys Wireless-G USB Network Adapter
  429. [2004/01/15 00:09:43 | 000,000,000 | ---D | C] -- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor
  430. [2004/01/15 00:08:26 | 000,000,000 | -HSD | C] -- C:\RECYCLER
  431. [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
  432. [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
  433.  
  434. [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
  435.  
  436. [2011/08/28 01:30:07 | 000,000,882 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
  437. [2011/08/27 09:24:08 | 000,472,104 | ---- | M] () -- C:\Documents and Settings\user\Desktop\2011-Relocation_Map_West.pdf
  438. [2011/08/27 09:23:41 | 000,472,104 | ---- | M] () -- C:\Documents and Settings\user\My Documents\2011-Relocation_Map_West.pdf
  439. [2011/08/27 02:00:59 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
  440. [2011/08/25 13:31:53 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
  441. [2011/08/25 13:22:14 | 000,001,915 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Earth.lnk
  442. [2011/07/18 00:09:53 | 000,000,741 | ---- | M] () -- C:\Documents and Settings\user\Desktop\Wolfenstein - Enemy Territory.lnk
  443. [2011/07/13 02:19:35 | 000,102,232 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
  444. [2011/07/13 02:03:39 | 000,000,206 | ---- | M] () -- C:\WINDOWS\System32\MRT.INI
  445. [2011/07/12 02:56:28 | 000,006,320 | ---- | M] () -- C:\Documents and Settings\user\Application Data\9F7E.9F3
  446. [2011/07/06 19:52:42 | 000,041,272 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
  447. [2011/07/06 19:52:42 | 000,022,712 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
  448. [2011/06/24 22:14:04 | 000,004,624 | ---- | M] () -- C:\Documents and Settings\user\My Documents\JADE_EMS_RESUME_2011.rtf
  449. [2011/05/30 23:11:04 | 000,004,399 | ---- | M] () -- C:\Documents and Settings\user\My Documents\peteresume.rtf
  450. [2011/05/28 07:09:21 | 000,001,003 | ---- | M] () -- C:\Documents and Settings\user\Start Menu\Programs\Startup\Dropbox.lnk
  451. [2011/03/06 23:46:13 | 000,000,441 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
  452. [2011/02/25 01:09:25 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
  453. [2011/02/25 01:09:09 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
  454. [2011/02/25 01:09:06 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
  455. [2011/02/25 01:08:09 | 000,001,687 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk
  456. [2011/02/24 01:21:35 | 000,001,010 | RHS- | M] () -- C:\Documents and Settings\user\ntuser.pol
  457. [2011/02/24 01:14:54 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\user\My Documents\Recycle Bin.lnk
  458. [2011/02/09 08:53:52 | 000,270,848 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sbe.dll
  459. [2011/02/09 08:53:52 | 000,186,880 | ---- | M] () -- C:\WINDOWS\System32\dllcache\encdec.dll
  460. [2010/08/17 12:49:13 | 000,000,066 | ---- | M] () -- C:\WINDOWS\SBWIN.INI
  461. [2010/08/17 12:40:23 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
  462. [2010/08/17 12:38:37 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
  463. [2010/08/17 12:37:51 | 000,000,290 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
  464. [2010/08/17 12:35:16 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
  465. [2010/08/17 12:35:16 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
  466. [2010/08/17 12:35:16 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
  467. [2010/08/17 12:35:16 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
  468. [2010/08/17 12:35:16 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
  469. [2010/08/17 12:35:13 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
  470. [2010/08/17 12:35:12 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
  471. [2010/08/17 12:35:12 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
  472. [2010/08/17 12:35:01 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
  473. [2010/08/17 12:32:05 | 000,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
  474. [2010/08/17 12:29:55 | 000,000,211 | -HS- | M] () -- C:\boot.ini
  475. [2010/08/17 08:26:11 | 000,004,444 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
  476. [2010/07/05 15:40:04 | 000,057,667 | ---- | M] () -- C:\WINDOWS\System32\ieuinit.inf
  477. [2010/06/06 22:12:22 | 000,049,904 | R--- | M] (Avanquest Software) -- C:\WINDOWS\System32\drivers\BVRPMPR5.SYS
  478. [2010/02/05 13:27:45 | 001,291,776 | ---- | M] () -- C:\WINDOWS\System32\dllcache\quartz.dll
  479. [2009/02/12 21:20:42 | 000,005,630 | ---- | M] () -- C:\WINDOWS\System32\IE8Eula.rtf
  480. [2009/01/07 17:20:20 | 000,008,798 | ---- | M] () -- C:\WINDOWS\System32\icrav03.rat
  481. [2009/01/07 17:20:20 | 000,001,988 | ---- | M] () -- C:\WINDOWS\System32\ticrf.rat
  482. [2008/04/14 02:00:00 | 013,463,552 | ---- | M] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
  483. [2008/04/14 02:00:00 | 004,399,505 | ---- | M] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
  484. [2008/04/14 02:00:00 | 003,440,660 | ---- | M] () -- C:\WINDOWS\System32\drivers\gm.dls
  485. [2008/04/14 02:00:00 | 003,440,660 | ---- | M] () -- C:\WINDOWS\System32\dllcache\gm.dls
  486. [2008/04/14 02:00:00 | 003,374,640 | ---- | M] (Macromedia, Inc.) -- C:\WINDOWS\System32\dllcache\tourW.exe
  487. [2008/04/14 02:00:00 | 002,144,487 | ---- | M] () -- C:\WINDOWS\System32\dllcache\NT5.CAT
  488. [2008/04/14 02:00:00 | 001,685,606 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sam.spd
  489. [2008/04/14 02:00:00 | 001,326,080 | ---- | M] () -- C:\WINDOWS\System32\webfldrs.msi
  490. [2008/04/14 02:00:00 | 001,309,184 | ---- | M] () -- C:\WINDOWS\System32\wbdbase.deu
  491. [2008/04/14 02:00:00 | 001,296,669 | ---- | M] () -- C:\WINDOWS\System32\dllcache\SP3.CAT
  492. [2008/04/14 02:00:00 | 001,158,818 | ---- | M] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
  493. [2008/04/14 02:00:00 | 001,095,680 | ---- | M] () -- C:\WINDOWS\System32\wbdbase.nld
  494. [2008/04/14 02:00:00 | 000,957,440 | ---- | M] () -- C:\WINDOWS\System32\wbdbase.enu
  495. [2008/04/14 02:00:00 | 000,956,990 | ---- | M] () -- C:\WINDOWS\System32\instcat.sql
  496. [2008/04/14 02:00:00 | 000,937,984 | ---- | M] () -- C:\WINDOWS\System32\wbdbase.sve
  497. [2008/04/14 02:00:00 | 000,867,840 | ---- | M] () -- C:\WINDOWS\System32\wbdbase.ita
  498. [2008/04/14 02:00:00 | 000,844,314 | ---- | M] () -- C:\WINDOWS\System32\msdxm.ocx
  499. [2008/04/14 02:00:00 | 000,844,314 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msdxm.ocx
  500. [2008/04/14 02:00:00 | 000,797,189 | ---- | M] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
  501. [2008/04/14 02:00:00 | 000,786,944 | ---- | M] () -- C:\WINDOWS\System32\wbdbase.fra
  502. [2008/04/14 02:00:00 | 000,785,972 | ---- | M] () -- C:\WINDOWS\System32\dllcache\apph_sp.sdb
  503. [2008/04/14 02:00:00 | 000,750,080 | ---- | M] () -- C:\WINDOWS\System32\wbdbase.esn
  504. [2008/04/14 02:00:00 | 000,736,768 | ---- | M] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\sprb0419.dll
  505. [2008/04/14 02:00:00 | 000,733,696 | ---- | M] () -- C:\WINDOWS\System32\dllcache\qedwipes.dll
  506. [2008/04/14 02:00:00 | 000,673,088 | ---- | M] () -- C:\WINDOWS\System32\mlang.dat
  507. [2008/04/14 02:00:00 | 000,673,088 | ---- | M] () -- C:\WINDOWS\System32\dllcache\mlang.dat
  508. [2008/04/14 02:00:00 | 000,643,717 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
  509. [2008/04/14 02:00:00 | 000,627,200 | ---- | M] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\sprc0419.dll
  510. [2008/04/14 02:00:00 | 000,605,050 | ---- | M] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
  511. [2008/04/14 02:00:00 | 000,562,176 | ---- | M] () -- C:\WINDOWS\System32\dllcache\qedit.dll
  512. [2008/04/14 02:00:00 | 000,522,220 | ---- | M] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT
  513. [2008/04/14 02:00:00 | 000,498,742 | ---- | M] () -- C:\WINDOWS\System32\dllcache\dxmasf.dll
  514. [2008/04/14 02:00:00 | 000,461,672 | ---- | M] () -- C:\WINDOWS\System32\dllcache\micross.ttf
  515. [2008/04/14 02:00:00 | 000,427,008 | ---- | M] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\obrb0419.dll
  516. [2008/04/14 02:00:00 | 000,399,645 | ---- | M] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
  517. [2008/04/14 02:00:00 | 000,386,048 | ---- | M] () -- C:\WINDOWS\System32\dllcache\qdvd.dll
  518. [2008/04/14 02:00:00 | 000,383,804 | ---- | M] () -- C:\WINDOWS\System32\dllcache\tahoma.ttf
  519. [2008/04/14 02:00:00 | 000,376,832 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msinfo.dll
  520. [2008/04/14 02:00:00 | 000,355,680 | ---- | M] () -- C:\WINDOWS\System32\dllcache\tahomabd.ttf
  521. [2008/04/14 02:00:00 | 000,355,112 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msjetol1.dll
  522. [2008/04/14 02:00:00 | 000,281,088 | ---- | M] (Cinematronics) -- C:\WINDOWS\System32\dllcache\pinball.exe
  523. [2008/04/14 02:00:00 | 000,279,040 | ---- | M] () -- C:\WINDOWS\System32\dllcache\tshoot.dll
  524. [2008/04/14 02:00:00 | 000,279,040 | ---- | M] () -- C:\WINDOWS\System32\dllcache\qdv.dll
  525. [2008/04/14 02:00:00 | 000,272,128 | ---- | M] () -- C:\WINDOWS\System32\perfi009.dat
  526. [2008/04/14 02:00:00 | 000,252,928 | ---- | M] () -- C:\WINDOWS\System32\dllcache\compatui.dll
  527. [2008/04/14 02:00:00 | 000,250,048 | RHS- | M] () -- C:\ntldr
  528. [2008/04/14 02:00:00 | 000,240,120 | ---- | M] () -- C:\WINDOWS\System32\setup.bmp
  529. [2008/04/14 02:00:00 | 000,239,616 | ---- | M] () -- C:\WINDOWS\System32\dllcache\wstrendr.ax
  530. [2008/04/14 02:00:00 | 000,239,616 | ---- | M] () -- C:\WINDOWS\System32\wstrenderer.ax
  531. [2008/04/14 02:00:00 | 000,218,134 | ---- | M] () -- C:\WINDOWS\System32\dllcache\apphelp.sdb
  532. [2008/04/14 02:00:00 | 000,218,003 | ---- | M] () -- C:\WINDOWS\System32\dssec.dat
  533. [2008/04/14 02:00:00 | 000,204,396 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msimain.sdb
  534. [2008/04/14 02:00:00 | 000,196,665 | ---- | M] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
  535. [2008/04/14 02:00:00 | 000,192,512 | ---- | M] (Корпорация Майкрософт) -- C:\WINDOWS\System32\dllcache\spra0419.dll
  536. [2008/04/14 02:00:00 | 000,192,512 | ---- | M] () -- C:\WINDOWS\System32\dllcache\qcap.dll
  537. [2008/04/14 02:00:00 | 000,175,104 | ---- | M] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
  538. [2008/04/14 02:00:00 | 000,173,568 | ---- | M] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
  539. [2008/04/14 02:00:00 | 000,167,219 | ---- | M] () -- C:\WINDOWS\System32\pagefileconfig.vbs
  540. [2008/04/14 02:00:00 | 000,167,219 | ---- | M] () -- C:\WINDOWS\System32\dllcache\pagefile.vbs
  541. [2008/04/14 02:00:00 | 000,164,352 | ---- | M] () -- C:\WINDOWS\System32\wstpager.ax
  542. [2008/04/14 02:00:00 | 000,164,352 | ---- | M] () -- C:\WINDOWS\System32\dllcache\wstpager.ax
  543. [2008/04/14 02:00:00 | 000,152,844 | ---- | M] () -- C:\WINDOWS\System32\dllcache\framdit.ttf
  544. [2008/04/14 02:00:00 | 000,149,848 | ---- | M] () -- C:\WINDOWS\System32\noise.deu
  545. [2008/04/14 02:00:00 | 000,148,992 | ---- | M] () -- C:\WINDOWS\System32\mpg2splt.ax
  546. [2008/04/14 02:00:00 | 000,148,992 | ---- | M] () -- C:\WINDOWS\System32\dllcache\mpg2splt.ax
  547. [2008/04/14 02:00:00 | 000,144,484 | ---- | M] () -- C:\WINDOWS\System32\dllcache\netfx.cat
  548. [2008/04/14 02:00:00 | 000,135,984 | ---- | M] () -- C:\WINDOWS\System32\dllcache\framd.ttf
  549. [2008/04/14 02:00:00 | 000,134,339 | ---- | M] () -- C:\WINDOWS\System32\dllcache\imekr.lex
  550. [2008/04/14 02:00:00 | 000,127,213 | ---- | M] () -- C:\WINDOWS\System32\ega.cpi
  551. [2008/04/14 02:00:00 | 000,118,272 | ---- | M] () -- C:\WINDOWS\System32\dllcache\mpg2data.ax
  552. [2008/04/14 02:00:00 | 000,118,272 | ---- | M] () -- C:\WINDOWS\System32\mpeg2data.ax
  553. [2008/04/14 02:00:00 | 000,112,918 | ---- | M] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat
  554. [2008/04/14 02:00:00 | 000,108,827 | ---- | M] () -- C:\WINDOWS\System32\dllcache\hanja.lex
  555. [2008/04/14 02:00:00 | 000,097,965 | ---- | M] () -- C:\WINDOWS\System32\dllcache\evtquery.vbs
  556. [2008/04/14 02:00:00 | 000,097,965 | ---- | M] () -- C:\WINDOWS\System32\eventquery.vbs
  557. [2008/04/14 02:00:00 | 000,082,944 | ---- | M] () -- C:\WINDOWS\clock.avi
  558. [2008/04/14 02:00:00 | 000,080,546 | ---- | M] () -- C:\WINDOWS\System32\dllcache\apps.chm
  559. [2008/04/14 02:00:00 | 000,079,872 | ---- | M] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
  560. [2008/04/14 02:00:00 | 000,079,872 | ---- | M] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
  561. [2008/04/14 02:00:00 | 000,072,387 | ---- | M] () -- C:\WINDOWS\System32\dllcache\archvapp.inf
  562. [2008/04/14 02:00:00 | 000,071,859 | ---- | M] () -- C:\WINDOWS\System32\cliconf.chm
  563. [2008/04/14 02:00:00 | 000,070,656 | ---- | M] () -- C:\WINDOWS\System32\dllcache\amstream.dll
  564. [2008/04/14 02:00:00 | 000,065,978 | ---- | M] () -- C:\WINDOWS\Soap Bubbles.bmp
  565. [2008/04/14 02:00:00 | 000,065,954 | ---- | M] () -- C:\WINDOWS\Prairie Wind.bmp
  566. [2008/04/14 02:00:00 | 000,065,832 | ---- | M] () -- C:\WINDOWS\Santa Fe Stucco.bmp
  567. [2008/04/14 02:00:00 | 000,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.sve
  568. [2008/04/14 02:00:00 | 000,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.nld
  569. [2008/04/14 02:00:00 | 000,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.ita
  570. [2008/04/14 02:00:00 | 000,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.fra
  571. [2008/04/14 02:00:00 | 000,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.esn
  572. [2008/04/14 02:00:00 | 000,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.enu
  573. [2008/04/14 02:00:00 | 000,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.deu
  574. [2008/04/14 02:00:00 | 000,063,488 | ---- | M] () -- C:\WINDOWS\System32\wmimgmt.msc
  575. [2008/04/14 02:00:00 | 000,059,904 | ---- | M] () -- C:\WINDOWS\System32\dllcache\devenum.dll
  576. [2008/04/14 02:00:00 | 000,059,392 | ---- | M] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
  577. [2008/04/14 02:00:00 | 000,059,167 | ---- | M] () -- C:\WINDOWS\System\setup.inf
  578. [2008/04/14 02:00:00 | 000,058,273 | R--- | M] () -- C:\WINDOWS\System32\perfmon.msc
  579. [2008/04/14 02:00:00 | 000,056,678 | ---- | M] () -- C:\WINDOWS\System32\eventvwr.msc
  580. [2008/04/14 02:00:00 | 000,054,528 | ---- | M] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
  581. [2008/04/14 02:00:00 | 000,053,840 | ---- | M] () -- C:\WINDOWS\System32\dllcache\dosx.exe
  582. [2008/04/14 02:00:00 | 000,053,248 | ---- | M] () -- C:\WINDOWS\System32\vbicodec.ax
  583. [2008/04/14 02:00:00 | 000,053,248 | ---- | M] () -- C:\WINDOWS\System32\dllcache\vbicodec.ax
  584. [2008/04/14 02:00:00 | 000,049,196 | ---- | M] () -- C:\WINDOWS\System32\noise.fra
  585. [2008/04/14 02:00:00 | 000,048,794 | ---- | M] () -- C:\WINDOWS\System32\ntimage.gif
  586. [2008/04/14 02:00:00 | 000,048,680 | -HS- | M] () -- C:\WINDOWS\winnt256.bmp
  587. [2008/04/14 02:00:00 | 000,048,680 | -HS- | M] () -- C:\WINDOWS\winnt.bmp
  588. [2008/04/14 02:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
  589. [2008/04/14 02:00:00 | 000,046,258 | ---- | M] () -- C:\WINDOWS\System32\mib.bin
  590. [2008/04/14 02:00:00 | 000,046,133 | ---- | M] () -- C:\WINDOWS\System32\sqlsodbc.chm
  591. [2008/04/14 02:00:00 | 000,044,451 | R--- | M] () -- C:\WINDOWS\System32\rsop.msc
  592. [2008/04/14 02:00:00 | 000,042,809 | ---- | M] () -- C:\WINDOWS\System32\dllcache\key01.sys
  593. [2008/04/14 02:00:00 | 000,042,537 | ---- | M] () -- C:\WINDOWS\System32\dllcache\keyboard.sys
  594. [2008/04/14 02:00:00 | 000,042,339 | ---- | M] () -- C:\WINDOWS\System32\certmgr.msc
  595. [2008/04/14 02:00:00 | 000,042,166 | ---- | M] () -- C:\WINDOWS\System32\lusrmgr.msc
  596. [2008/04/14 02:00:00 | 000,041,762 | ---- | M] () -- C:\WINDOWS\System32\ciadv.msc
  597. [2008/04/14 02:00:00 | 000,041,397 | ---- | M] () -- C:\WINDOWS\System32\dfrg.msc
  598. [2008/04/14 02:00:00 | 000,040,505 | ---- | M] () -- C:\WINDOWS\System32\cmdlib.wsc
  599. [2008/04/14 02:00:00 | 000,040,448 | ---- | M] () -- C:\WINDOWS\System32\wiasf.ax
  600. [2008/04/14 02:00:00 | 000,040,448 | ---- | M] () -- C:\WINDOWS\System32\dllcache\wiasf.ax
  601. [2008/04/14 02:00:00 | 000,039,274 | ---- | M] () -- C:\WINDOWS\System32\dllcache\mem.exe
  602. [2008/04/14 02:00:00 | 000,038,302 | ---- | M] () -- C:\WINDOWS\System32\compmgmt.msc
  603. [2008/04/14 02:00:00 | 000,037,484 | ---- | M] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
  604. [2008/04/14 02:00:00 | 000,036,364 | ---- | M] () -- C:\WINDOWS\System32\secpol.msc
  605. [2008/04/14 02:00:00 | 000,035,755 | ---- | M] () -- C:\WINDOWS\System32\prncnfg.vbs
  606. [2008/04/14 02:00:00 | 000,035,755 | ---- | M] () -- C:\WINDOWS\System32\dllcache\prncnfg.vbs
  607. [2008/04/14 02:00:00 | 000,035,648 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio411.sys
  608. [2008/04/14 02:00:00 | 000,035,424 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio412.sys
  609. [2008/04/14 02:00:00 | 000,035,328 | ---- | M] () -- C:\WINDOWS\System32\dllcache\mciqtz32.dll
  610. [2008/04/14 02:00:00 | 000,034,871 | ---- | M] () -- C:\WINDOWS\System32\gpedit.msc
  611. [2008/04/14 02:00:00 | 000,034,816 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sniffpol.dll
  612. [2008/04/14 02:00:00 | 000,034,747 | ---- | M] () -- C:\WINDOWS\System32\dllcache\mediactr.cat
  613. [2008/04/14 02:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio804.sys
  614. [2008/04/14 02:00:00 | 000,034,560 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio404.sys
  615. [2008/04/14 02:00:00 | 000,034,063 | ---- | M] () -- C:\WINDOWS\System32\dllcache\FP4.CAT
  616. [2008/04/14 02:00:00 | 000,033,840 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntio.sys
  617. [2008/04/14 02:00:00 | 000,033,673 | ---- | M] () -- C:\WINDOWS\System32\diskmgmt.msc
  618. [2008/04/14 02:00:00 | 000,033,464 | ---- | M] () -- C:\WINDOWS\System32\services.msc
  619. [2008/04/14 02:00:00 | 000,033,280 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sstub.dll
  620. [2008/04/14 02:00:00 | 000,033,079 | ---- | M] () -- C:\WINDOWS\System32\devmgmt.msc
  621. [2008/04/14 02:00:00 | 000,032,968 | ---- | M] () -- C:\WINDOWS\System32\ntmsoprq.msc
  622. [2008/04/14 02:00:00 | 000,032,760 | ---- | M] () -- C:\WINDOWS\System32\fsmgmt.msc
  623. [2008/04/14 02:00:00 | 000,032,546 | ---- | M] () -- C:\WINDOWS\System32\prnmngr.vbs
  624. [2008/04/14 02:00:00 | 000,032,546 | ---- | M] () -- C:\WINDOWS\System32\dllcache\prnmngr.vbs
  625. [2008/04/14 02:00:00 | 000,029,454 | ---- | M] () -- C:\WINDOWS\System32\prnport.vbs
  626. [2008/04/14 02:00:00 | 000,029,454 | ---- | M] () -- C:\WINDOWS\System32\dllcache\prnport.vbs
  627. [2008/04/14 02:00:00 | 000,029,370 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntdos411.sys
  628. [2008/04/14 02:00:00 | 000,029,274 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntdos412.sys
  629. [2008/04/14 02:00:00 | 000,029,184 | ---- | M] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll
  630. [2008/04/14 02:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntdos804.sys
  631. [2008/04/14 02:00:00 | 000,029,146 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntdos404.sys
  632. [2008/04/14 02:00:00 | 000,028,626 | ---- | M] () -- C:\WINDOWS\System32\perfd009.dat
  633. [2008/04/14 02:00:00 | 000,028,420 | ---- | M] () -- C:\WINDOWS\System32\bios1.rom
  634. [2008/04/14 02:00:00 | 000,027,866 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ntdos.sys
  635. [2008/04/14 02:00:00 | 000,027,097 | ---- | M] () -- C:\WINDOWS\System32\dllcache\country.sys
  636. [2008/04/14 02:00:00 | 000,026,991 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msn7.cat
  637. [2008/04/14 02:00:00 | 000,026,680 | ---- | M] () -- C:\WINDOWS\River Sumida.bmp
  638. [2008/04/14 02:00:00 | 000,026,582 | ---- | M] () -- C:\WINDOWS\Greenstone.bmp
  639. [2008/04/14 02:00:00 | 000,026,209 | ---- | M] () -- C:\WINDOWS\System32\ntmsmgr.msc
  640. [2008/04/14 02:00:00 | 000,025,415 | ---- | M] () -- C:\WINDOWS\System32\prndrvr.vbs
  641. [2008/04/14 02:00:00 | 000,025,415 | ---- | M] () -- C:\WINDOWS\System32\dllcache\prndrvr.vbs
  642. [2008/04/14 02:00:00 | 000,024,124 | ---- | M] () -- C:\WINDOWS\System32\dllcache\marlett.ttf
  643. [2008/04/14 02:00:00 | 000,021,527 | ---- | M] () -- C:\WINDOWS\System32\prnjobs.vbs
  644. [2008/04/14 02:00:00 | 000,021,527 | ---- | M] () -- C:\WINDOWS\System32\dllcache\prnjobs.vbs
  645. [2008/04/14 02:00:00 | 000,021,232 | ---- | M] () -- C:\WINDOWS\System32\graphics.pro
  646. [2008/04/14 02:00:00 | 000,020,634 | ---- | M] () -- C:\WINDOWS\System32\dllcache\debug.exe
  647. [2008/04/14 02:00:00 | 000,019,684 | ---- | M] () -- C:\WINDOWS\System32\noise.esn
  648. [2008/04/14 02:00:00 | 000,019,618 | ---- | M] () -- C:\WINDOWS\System32\noise.ita
  649. [2008/04/14 02:00:00 | 000,018,832 | ---- | M] () -- C:\WINDOWS\System32\v7vga.rom
  650. [2008/04/14 02:00:00 | 000,017,362 | ---- | M] () -- C:\WINDOWS\Rhododendron.bmp
  651. [2008/04/14 02:00:00 | 000,017,336 | ---- | M] () -- C:\WINDOWS\Gone Fishing.bmp
  652. [2008/04/14 02:00:00 | 000,017,062 | ---- | M] () -- C:\WINDOWS\Coffee Bean.bmp
  653. [2008/04/14 02:00:00 | 000,016,730 | ---- | M] () -- C:\WINDOWS\FeatherTexture.bmp
  654. [2008/04/14 02:00:00 | 000,016,535 | ---- | M] () -- C:\WINDOWS\System32\dllcache\IMS.CAT
  655. [2008/04/14 02:00:00 | 000,015,860 | ---- | M] () -- C:\WINDOWS\System32\prnqctl.vbs
  656. [2008/04/14 02:00:00 | 000,015,860 | ---- | M] () -- C:\WINDOWS\System32\dllcache\prnqctl.vbs
  657. [2008/04/14 02:00:00 | 000,015,360 | ---- | M] () -- C:\WINDOWS\System32\dllcache\tsd32.dll
  658. [2008/04/14 02:00:00 | 000,014,433 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msn9.cat
  659. [2008/04/14 02:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msdmo.dll
  660. [2008/04/14 02:00:00 | 000,013,730 | ---- | M] () -- C:\WINDOWS\System32\noise.sve
  661. [2008/04/14 02:00:00 | 000,013,472 | ---- | M] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
  662. [2008/04/14 02:00:00 | 000,013,312 | ---- | M] () -- C:\WINDOWS\System32\dllcache\win87em.dll
  663. [2008/04/14 02:00:00 | 000,013,256 | ---- | M] () -- C:\WINDOWS\System32\noise.nld
  664. [2008/04/14 02:00:00 | 000,012,642 | ---- | M] () -- C:\WINDOWS\System32\dllcache\edlin.exe
  665. [2008/04/14 02:00:00 | 000,012,498 | ---- | M] () -- C:\WINDOWS\System32\dllcache\append.exe
  666. [2008/04/14 02:00:00 | 000,012,363 | ---- | M] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT
  667. [2008/04/14 02:00:00 | 000,010,240 | ---- | M] () -- C:\WINDOWS\System32\dllcache\scriptpw.dll
  668. [2008/04/14 02:00:00 | 000,010,027 | ---- | M] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT
  669. [2008/04/14 02:00:00 | 000,009,522 | ---- | M] () -- C:\WINDOWS\Zapotec.bmp
  670. [2008/04/14 02:00:00 | 000,009,424 | ---- | M] () -- C:\WINDOWS\System32\dllcache\drvmain.sdb
  671. [2008/04/14 02:00:00 | 000,009,029 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ansi.sys
  672. [2008/04/14 02:00:00 | 000,008,574 | ---- | M] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
  673. [2008/04/14 02:00:00 | 000,008,424 | ---- | M] () -- C:\WINDOWS\System32\dllcache\exe2bin.exe
  674. [2008/04/14 02:00:00 | 000,008,191 | ---- | M] () -- C:\WINDOWS\System32\bios4.rom
  675. [2008/04/14 02:00:00 | 000,007,334 | ---- | M] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
  676. [2008/04/14 02:00:00 | 000,007,208 | ---- | M] () -- C:\WINDOWS\System32\secupd.sig
  677. [2008/04/14 02:00:00 | 000,007,208 | ---- | M] () -- C:\WINDOWS\System32\dllcache\secupd.sig
  678. [2008/04/14 02:00:00 | 000,007,116 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\services
  679. [2008/04/14 02:00:00 | 000,007,052 | ---- | M] () -- C:\WINDOWS\System32\dllcache\nlsfunc.exe
  680. [2008/04/14 02:00:00 | 000,006,708 | ---- | M] () -- C:\WINDOWS\System32\esentprf.hxx
  681. [2008/04/14 02:00:00 | 000,004,768 | ---- | M] () -- C:\WINDOWS\System32\dllcache\himem.sys
  682. [2008/04/14 02:00:00 | 000,004,569 | ---- | M] () -- C:\WINDOWS\System32\secupd.dat
  683. [2008/04/14 02:00:00 | 000,004,569 | ---- | M] () -- C:\WINDOWS\System32\dllcache\secupd.dat
  684. [2008/04/14 02:00:00 | 000,004,310 | ---- | M] () -- C:\WINDOWS\System32\odbcconf.rsp
  685. [2008/04/14 02:00:00 | 000,004,310 | ---- | M] () -- C:\WINDOWS\System32\dllcache\odbcconf.rsp
  686. [2008/04/14 02:00:00 | 000,004,126 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msdxmlc.dll
  687. [2008/04/14 02:00:00 | 000,004,096 | ---- | M] () -- C:\WINDOWS\System32\wdl.trm
  688. [2008/04/14 02:00:00 | 000,003,708 | ---- | M] () -- C:\WINDOWS\System32\pubprn.vbs
  689. [2008/04/14 02:00:00 | 000,003,708 | ---- | M] () -- C:\WINDOWS\System32\dllcache\pubprn.vbs
  690. [2008/04/14 02:00:00 | 000,003,683 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\lmhosts.sam
  691. [2008/04/14 02:00:00 | 000,003,577 | ---- | M] () -- C:\WINDOWS\System32\sysprtj.sep
  692. [2008/04/14 02:00:00 | 000,003,338 | ---- | M] () -- C:\WINDOWS\System32\dllcache\redir.exe
  693. [2008/04/14 02:00:00 | 000,003,286 | ---- | M] () -- C:\WINDOWS\System32\tslabels.h
  694. [2008/04/14 02:00:00 | 000,003,252 | ---- | M] () -- C:\WINDOWS\System32\dllcache\nw16.exe
  695. [2008/04/14 02:00:00 | 000,003,214 | ---- | M] () -- C:\WINDOWS\System32\sysprint.sep
  696. [2008/04/14 02:00:00 | 000,003,178 | ---- | M] () -- C:\WINDOWS\System32\rsvpcnts.h
  697. [2008/04/14 02:00:00 | 000,003,167 | ---- | M] () -- C:\WINDOWS\System32\rsaci.rat
  698. [2008/04/14 02:00:00 | 000,003,010 | ---- | M] () -- C:\WINDOWS\System32\pschdcnt.h
  699. [2008/04/14 02:00:00 | 000,002,755 | ---- | M] () -- C:\WINDOWS\System32\mqprfsym.h
  700. [2008/04/14 02:00:00 | 000,002,233 | ---- | M] () -- C:\WINDOWS\System32\dllcache\12520850.cpx
  701. [2008/04/14 02:00:00 | 000,002,233 | ---- | M] () -- C:\WINDOWS\System32\12520850.cpx
  702. [2008/04/14 02:00:00 | 000,002,151 | ---- | M] () -- C:\WINDOWS\System32\dllcache\12520437.cpx
  703. [2008/04/14 02:00:00 | 000,002,151 | ---- | M] () -- C:\WINDOWS\System32\12520437.cpx
  704. [2008/04/14 02:00:00 | 000,001,818 | ---- | M] () -- C:\WINDOWS\System32\rasctrnm.h
  705. [2008/04/14 02:00:00 | 000,001,804 | ---- | M] () -- C:\WINDOWS\System32\Dcache.bin
  706. [2008/04/14 02:00:00 | 000,001,696 | ---- | M] () -- C:\WINDOWS\System32\noise.cht
  707. [2008/04/14 02:00:00 | 000,001,696 | ---- | M] () -- C:\WINDOWS\System32\noise.chs
  708. [2008/04/14 02:00:00 | 000,001,688 | ---- | M] () -- C:\WINDOWS\System32\AUTOEXEC.NT
  709. [2008/04/14 02:00:00 | 000,001,492 | ---- | M] () -- C:\WINDOWS\System32\mmdriver.inf
  710. [2008/04/14 02:00:00 | 000,001,272 | ---- | M] () -- C:\WINDOWS\Blue Lace 16.bmp
  711. [2008/04/14 02:00:00 | 000,001,161 | ---- | M] () -- C:\WINDOWS\System32\usrlogon.cmd
  712. [2008/04/14 02:00:00 | 000,001,129 | ---- | M] () -- C:\WINDOWS\System32\dllcache\vwipxspx.exe
  713. [2008/04/14 02:00:00 | 000,000,984 | ---- | M] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
  714. [2008/04/14 02:00:00 | 000,000,974 | ---- | M] () -- C:\WINDOWS\System32\pid.inf
  715. [2008/04/14 02:00:00 | 000,000,974 | ---- | M] () -- C:\WINDOWS\System32\dllcache\pid.inf
  716. [2008/04/14 02:00:00 | 000,000,929 | ---- | M] () -- C:\WINDOWS\System32\homepage.inf
  717. [2008/04/14 02:00:00 | 000,000,888 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sam.sdf
  718. [2008/04/14 02:00:00 | 000,000,882 | ---- | M] () -- C:\WINDOWS\System32\dllcache\share.exe
  719. [2008/04/14 02:00:00 | 000,000,882 | ---- | M] () -- C:\WINDOWS\System32\dllcache\fastopen.exe
  720. [2008/04/14 02:00:00 | 000,000,862 | ---- | M] () -- C:\WINDOWS\System32\termcap
  721. [2008/04/14 02:00:00 | 000,000,817 | ---- | M] () -- C:\WINDOWS\System32\dllcache\mscdexnt.exe
  722. [2008/04/14 02:00:00 | 000,000,799 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\protocol
  723. [2008/04/14 02:00:00 | 000,000,768 | ---- | M] () -- C:\WINDOWS\System32\msdtcprf.h
  724. [2008/04/14 02:00:00 | 000,000,751 | ---- | M] () -- C:\WINDOWS\System32\noise.enu
  725. [2008/04/14 02:00:00 | 000,000,751 | ---- | M] () -- C:\WINDOWS\System32\noise.eng
  726. [2008/04/14 02:00:00 | 000,000,741 | ---- | M] () -- C:\WINDOWS\System32\noise.dat
  727. [2008/04/14 02:00:00 | 000,000,707 | ---- | M] () -- C:\WINDOWS\_default.pif
  728. [2008/04/14 02:00:00 | 000,000,697 | ---- | M] () -- C:\WINDOWS\System32\noise.tha
  729. [2008/04/14 02:00:00 | 000,000,487 | ---- | M] () -- C:\WINDOWS\System32\login.cmd
  730. [2008/04/14 02:00:00 | 000,000,435 | ---- | M] () -- C:\WINDOWS\System32\perfwci.h
  731. [2008/04/14 02:00:00 | 000,000,427 | ---- | M] () -- C:\WINDOWS\System32\perfci.h
  732. [2008/04/14 02:00:00 | 000,000,407 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\networks
  733. [2008/04/14 02:00:00 | 000,000,140 | ---- | M] () -- C:\WINDOWS\System32\perffilt.h
  734. [2008/04/14 02:00:00 | 000,000,114 | ---- | M] () -- C:\WINDOWS\System32\pcl.sep
  735. [2008/04/14 02:00:00 | 000,000,081 | ---- | M] () -- C:\WINDOWS\System32\dsound.vxd
  736. [2008/04/14 02:00:00 | 000,000,080 | ---- | M] () -- C:\WINDOWS\explorer.scf
  737. [2008/04/14 02:00:00 | 000,000,075 | ---- | M] () -- C:\WINDOWS\System32\View Channels.scf
  738. [2008/04/14 02:00:00 | 000,000,064 | ---- | M] () -- C:\WINDOWS\System32\cmos.ram
  739. [2008/04/14 02:00:00 | 000,000,051 | ---- | M] () -- C:\WINDOWS\System32\pscript.sep
  740. [2006/05/03 09:09:32 | 000,028,080 | ---- | M] () -- C:\WINDOWS\System32\drivers\ativvpxx.vp
  741. [2006/04/28 12:05:14 | 000,127,614 | ---- | M] () -- C:\WINDOWS\System32\atiicdxx.dat
  742. [2006/02/08 12:44:04 | 001,114,674 | ---- | M] () -- C:\WINDOWS\System32\drivers\ativcaxx.cpa
  743. [2006/02/08 12:44:04 | 000,000,929 | ---- | M] () -- C:\WINDOWS\System32\drivers\ativcaxx.vp
  744. [2006/01/25 16:48:02 | 000,006,005 | ---- | M] () -- C:\WINDOWS\System32\atifglpf.xml
  745. [2005/10/14 06:10:12 | 000,058,560 | ---- | M] () -- C:\WINDOWS\System32\drivers\ativckxx.vp
  746. [2005/04/15 06:52:33 | 013,107,200 | ---- | M] () -- C:\WINDOWS\System32\oembios.bin
  747. [2005/04/15 06:52:33 | 013,107,200 | ---- | M] () -- C:\WINDOWS\System32\dllcache\oembios.bin
  748. [2005/04/15 06:52:33 | 000,007,710 | ---- | M] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
  749. [2005/04/15 06:52:33 | 000,007,208 | ---- | M] () -- C:\WINDOWS\System32\oembios.sig
  750. [2005/04/15 06:52:33 | 000,007,208 | ---- | M] () -- C:\WINDOWS\System32\dllcache\oembios.sig
  751. [2005/04/15 06:52:33 | 000,004,627 | ---- | M] () -- C:\WINDOWS\System32\oembios.dat
  752. [2005/04/15 06:52:33 | 000,004,627 | ---- | M] () -- C:\WINDOWS\System32\dllcache\oembios.dat
  753. [2004/07/09 03:26:40 | 000,354,816 | ---- | M] () -- C:\WINDOWS\System32\psisdecd.dll
  754. [2004/07/09 03:26:40 | 000,354,816 | ---- | M] () -- C:\WINDOWS\System32\dllcache\psisdecd.dll
  755. [2004/07/09 03:26:40 | 000,030,208 | ---- | M] () -- C:\WINDOWS\System32\psisrndr.ax
  756. [2004/07/09 03:26:40 | 000,030,208 | ---- | M] () -- C:\WINDOWS\System32\dllcache\psisrndr.ax
  757. [2004/07/09 03:26:38 | 000,052,224 | ---- | M] () -- C:\WINDOWS\System32\msdvbnp.ax
  758. [2004/07/09 03:26:38 | 000,052,224 | ---- | M] () -- C:\WINDOWS\System32\dllcache\msdvbnp.ax
  759. [2004/05/27 11:50:32 | 000,007,850 | ---- | M] () -- C:\WINDOWS\System32\WUSB54GV4.cat
  760. [2004/05/07 13:47:10 | 000,079,616 | ---- | M] (Ralink Technology Inc.) -- C:\WINDOWS\System32\rt2500usb.sys
  761. [2004/05/07 13:47:10 | 000,079,616 | ---- | M] (Ralink Technology Inc.) -- C:\WINDOWS\System32\drivers\rt2500usb.sys
  762. [2004/04/28 13:22:46 | 000,007,846 | ---- | M] () -- C:\WINDOWS\System32\WUSB54GV2.cat
  763. [2004/04/23 22:43:00 | 000,374,752 | ---- | M] (Cisco-Linksys, LLC.) -- C:\WINDOWS\System32\WUSBGXP.sys
  764. [2004/02/03 19:13:20 | 000,008,090 | ---- | M] () -- C:\WINDOWS\System32\WUSB54G.cat
  765. [2004/01/15 19:52:57 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
  766. [2004/01/15 19:39:34 | 000,000,922 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-764733703-842925246-1003Core.job
  767. [2004/01/15 19:33:09 | 000,000,974 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-764733703-842925246-1003UA.job
  768. [2004/01/15 19:29:33 | 000,002,277 | ---- | M] () -- C:\Documents and Settings\user\Desktop\Google Chrome.lnk
  769. [2004/01/15 19:29:33 | 000,002,255 | ---- | M] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
  770. [2004/01/15 19:14:19 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
  771. [2004/01/15 17:52:35 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
  772. [2004/01/15 17:51:52 | 000,000,878 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
  773. [2004/01/15 17:51:43 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
  774. [2004/01/15 00:14:58 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
  775. [2004/01/15 00:14:52 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
  776. [2004/01/15 00:13:15 | 000,432,628 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
  777. [2004/01/15 00:13:15 | 000,067,584 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
  778. [2004/01/15 00:09:40 | 000,001,628 | ---- | M] () -- C:\WINDOWS\System32\WLAN.INI
  779. [2004/01/14 23:11:56 | 000,000,804 | ---- | M] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
  780. [2004/01/07 17:04:00 | 000,339,488 | ---- | M] (Cisco-Linksys, LLC.) -- C:\WINDOWS\System32\WUSB20XP.sys
  781. [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
  782. [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
  783.  
  784. [color=#E56717]========== Files Created - No Company Name ==========[/color]
  785.  
  786. [2011/08/27 09:24:07 | 000,472,104 | ---- | C] () -- C:\Documents and Settings\user\Desktop\2011-Relocation_Map_West.pdf
  787. [2011/08/27 09:23:41 | 000,472,104 | ---- | C] () -- C:\Documents and Settings\user\My Documents\2011-Relocation_Map_West.pdf
  788. [2011/08/25 13:31:53 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\user\Start Menu\Programs\Internet Explorer.lnk
  789. [2011/08/25 13:22:14 | 000,001,915 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Google Earth.lnk
  790. [2011/08/25 13:20:51 | 000,000,882 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
  791. [2011/08/25 13:20:50 | 000,000,878 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
  792. [2011/07/18 00:09:53 | 000,000,741 | ---- | C] () -- C:\Documents and Settings\user\Desktop\Wolfenstein - Enemy Territory.lnk
  793. [2011/07/13 02:03:39 | 000,000,206 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
  794. [2011/07/10 20:03:44 | 000,006,320 | ---- | C] () -- C:\Documents and Settings\user\Application Data\9F7E.9F3
  795. [2011/07/04 11:27:05 | 000,000,974 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-764733703-842925246-1003UA.job
  796. [2011/07/04 11:27:04 | 000,000,922 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-764733703-842925246-1003Core.job
  797. [2011/06/24 10:49:01 | 000,004,624 | ---- | C] () -- C:\Documents and Settings\user\My Documents\JADE_EMS_RESUME_2011.rtf
  798. [2011/05/28 14:38:00 | 000,004,399 | ---- | C] () -- C:\Documents and Settings\user\My Documents\peteresume.rtf
  799. [2011/04/05 00:44:20 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Apple Software Update.lnk
  800. [2011/03/28 22:27:34 | 000,001,003 | ---- | C] () -- C:\Documents and Settings\user\Start Menu\Programs\Startup\Dropbox.lnk
  801. [2011/02/25 01:09:25 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
  802. [2011/02/25 01:09:09 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
  803. [2011/02/25 01:09:06 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
  804. [2011/02/25 01:08:09 | 000,001,687 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Logitech SetPoint.lnk
  805. [2011/02/24 16:02:57 | 000,000,754 | ---- | C] () -- C:\Documents and Settings\user\Start Menu\Programs\Photoshop.lnk
  806. [2011/02/24 01:17:07 | 000,001,010 | RHS- | C] () -- C:\Documents and Settings\user\ntuser.pol
  807. [2011/02/24 01:14:54 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\user\My Documents\Recycle Bin.lnk
  808. [2010/08/19 16:25:27 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
  809. [2010/08/19 16:25:27 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisdecd.dll
  810. [2010/08/19 16:25:27 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\msdvbnp.ax
  811. [2010/08/19 16:25:27 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdvbnp.ax
  812. [2010/08/19 16:25:27 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\psisrndr.ax
  813. [2010/08/19 16:25:27 | 000,030,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisrndr.ax
  814. [2010/08/19 16:20:17 | 000,520,192 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
  815. [2010/08/19 16:19:20 | 000,058,560 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativckxx.vp
  816. [2010/08/19 16:19:20 | 000,028,080 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativvpxx.vp
  817. [2010/08/19 16:19:20 | 000,006,005 | ---- | C] () -- C:\WINDOWS\System32\atifglpf.xml
  818. [2010/08/19 16:19:20 | 000,000,929 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.vp
  819. [2010/08/19 16:19:09 | 001,114,674 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativcaxx.cpa
  820. [2010/08/19 16:19:09 | 000,127,614 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
  821. [2010/08/17 12:49:05 | 000,000,066 | ---- | C] () -- C:\WINDOWS\SBWIN.INI
  822. [2010/08/17 12:49:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\CTDevctrl.gid
  823. [2010/08/17 12:49:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\CTDevctrl.fts
  824. [2010/08/17 12:49:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\CTDevctrl.ftg
  825. [2010/08/17 12:48:39 | 002,167,684 | ---- | C] () -- C:\WINDOWS\System32\ct2mgm.sf2
  826. [2010/08/17 12:48:39 | 001,048,576 | ---- | C] () -- C:\WINDOWS\System32\Ct1mgm.rom
  827. [2010/08/17 12:48:39 | 000,047,616 | ---- | C] () -- C:\WINDOWS\System32\P16X.dll
  828. [2010/08/17 12:48:39 | 000,003,126 | ---- | C] () -- C:\WINDOWS\Live.bmp
  829. [2010/08/17 12:48:39 | 000,002,696 | ---- | C] () -- C:\WINDOWS\MIXDEF.INI
  830. [2010/08/17 12:48:39 | 000,002,516 | ---- | C] () -- C:\WINDOWS\System32\P16X.ini
  831. [2010/08/17 12:48:39 | 000,000,059 | ---- | C] () -- C:\WINDOWS\System32\default8.sfm
  832. [2010/08/17 12:48:39 | 000,000,059 | ---- | C] () -- C:\WINDOWS\System32\default4.sfm
  833. [2010/08/17 12:48:39 | 000,000,059 | ---- | C] () -- C:\WINDOWS\System32\Default.sfm
  834. [2010/08/17 12:48:39 | 000,000,026 | ---- | C] () -- C:\WINDOWS\System32\ctzapxx.ini
  835. [2010/08/17 12:41:56 | 000,005,110 | R--- | C] () -- C:\WINDOWS\System32\e100b325.din
  836. [2010/08/17 12:41:53 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll
  837. [2010/08/17 12:40:23 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
  838. [2010/08/17 12:40:15 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
  839. [2010/08/17 12:38:37 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
  840. [2010/08/17 12:37:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
  841. [2010/08/17 12:37:06 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
  842. [2010/08/17 12:36:48 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
  843. [2010/08/17 12:36:41 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
  844. [2010/08/17 12:36:40 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
  845. [2010/08/17 12:36:39 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
  846. [2010/08/17 12:36:31 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
  847. [2010/08/17 12:36:27 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
  848. [2010/08/17 12:36:23 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fpencode.dll
  849. [2010/08/17 12:36:12 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
  850. [2010/08/17 12:35:16 | 000,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
  851. [2010/08/17 12:35:16 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
  852. [2010/08/17 12:35:16 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
  853. [2010/08/17 12:35:16 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
  854. [2010/08/17 12:35:16 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
  855. [2010/08/17 12:35:12 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
  856. [2010/08/17 12:35:12 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
  857. [2010/08/17 12:35:11 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
  858. [2010/08/17 12:33:44 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
  859. [2010/08/17 12:33:29 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
  860. [2010/08/17 12:33:29 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
  861. [2010/08/17 12:33:23 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
  862. [2010/08/17 12:32:49 | 000,376,832 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msinfo.dll
  863. [2010/08/17 12:32:05 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
  864. [2010/08/17 12:31:16 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
  865. [2010/08/17 12:31:16 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
  866. [2010/08/17 12:31:16 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
  867. [2010/08/17 12:31:16 | 000,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
  868. [2010/08/17 12:31:16 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
  869. [2010/08/17 12:31:16 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
  870. [2010/08/17 12:31:16 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
  871. [2010/08/17 12:31:16 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
  872. [2010/08/17 12:31:16 | 000,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
  873. [2010/08/17 12:31:16 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
  874. [2010/08/17 12:31:16 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
  875. [2010/08/17 12:31:13 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
  876. [2010/08/17 12:31:13 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
  877. [2010/08/17 12:31:12 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
  878. [2010/08/17 12:31:07 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
  879. [2010/08/17 08:26:11 | 000,004,444 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF
  880. [2010/08/17 08:26:09 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
  881. [2010/08/17 08:26:05 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
  882. [2010/08/17 08:26:03 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
  883. [2010/08/17 08:26:03 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
  884. [2010/08/17 08:26:02 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
  885. [2010/08/17 08:26:02 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
  886. [2010/08/17 08:25:45 | 000,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
  887. [2010/08/17 08:25:31 | 000,144,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\netfx.cat
  888. [2010/08/17 08:25:31 | 000,112,918 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat
  889. [2010/08/17 08:25:31 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
  890. [2010/08/17 08:25:31 | 000,034,747 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mediactr.cat
  891. [2010/08/17 08:25:31 | 000,026,991 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn7.cat
  892. [2010/08/17 08:25:31 | 000,014,433 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn9.cat
  893. [2010/08/17 08:25:31 | 000,010,027 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT
  894. [2010/08/17 08:25:31 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
  895. [2010/08/17 08:25:31 | 000,007,710 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
  896. [2010/08/17 08:25:31 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
  897. [2010/08/17 08:25:30 | 001,296,669 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP3.CAT
  898. [2010/08/17 08:25:30 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
  899. [2010/08/17 08:25:30 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
  900. [2010/08/17 08:25:30 | 000,034,063 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT
  901. [2010/08/17 08:25:30 | 000,016,535 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT
  902. [2010/08/17 08:25:30 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
  903. [2010/08/17 08:25:30 | 000,012,363 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT
  904. [2010/08/17 08:25:29 | 002,144,487 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT
  905. [2010/08/17 08:25:29 | 000,522,220 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT
  906. [2010/08/17 08:24:43 | 000,102,232 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
  907. [2010/08/17 08:24:00 | 000,000,211 | -HS- | C] () -- C:\boot.ini
  908. [2010/08/17 08:23:56 | 000,000,290 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
  909. [2009/02/12 21:20:42 | 000,005,630 | ---- | C] () -- C:\WINDOWS\System32\IE8Eula.rtf
  910. [2009/01/07 17:20:20 | 000,008,798 | ---- | C] () -- C:\WINDOWS\System32\icrav03.rat
  911. [2009/01/07 17:20:20 | 000,001,988 | ---- | C] () -- C:\WINDOWS\System32\ticrf.rat
  912. [2008/04/14 02:00:00 | 003,440,660 | ---- | C] () -- C:\WINDOWS\System32\drivers\gm.dls
  913. [2008/04/14 02:00:00 | 003,440,660 | ---- | C] () -- C:\WINDOWS\System32\dllcache\gm.dls
  914. [2008/04/14 02:00:00 | 001,326,080 | ---- | C] () -- C:\WINDOWS\System32\webfldrs.msi
  915. [2008/04/14 02:00:00 | 001,309,184 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.deu
  916. [2008/04/14 02:00:00 | 001,291,776 | ---- | C] () -- C:\WINDOWS\System32\dllcache\quartz.dll
  917. [2008/04/14 02:00:00 | 001,095,680 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.nld
  918. [2008/04/14 02:00:00 | 000,957,440 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.enu
  919. [2008/04/14 02:00:00 | 000,956,990 | ---- | C] () -- C:\WINDOWS\System32\instcat.sql
  920. [2008/04/14 02:00:00 | 000,937,984 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.sve
  921. [2008/04/14 02:00:00 | 000,867,840 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.ita
  922. [2008/04/14 02:00:00 | 000,844,314 | ---- | C] () -- C:\WINDOWS\System32\msdxm.ocx
  923. [2008/04/14 02:00:00 | 000,844,314 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdxm.ocx
  924. [2008/04/14 02:00:00 | 000,786,944 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.fra
  925. [2008/04/14 02:00:00 | 000,785,972 | ---- | C] () -- C:\WINDOWS\System32\dllcache\apph_sp.sdb
  926. [2008/04/14 02:00:00 | 000,750,080 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.esn
  927. [2008/04/14 02:00:00 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedwipes.dll
  928. [2008/04/14 02:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
  929. [2008/04/14 02:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mlang.dat
  930. [2008/04/14 02:00:00 | 000,562,176 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedit.dll
  931. [2008/04/14 02:00:00 | 000,498,742 | ---- | C] () -- C:\WINDOWS\System32\dllcache\dxmasf.dll
  932. [2008/04/14 02:00:00 | 000,461,672 | ---- | C] () -- C:\WINDOWS\System32\dllcache\micross.ttf
  933. [2008/04/14 02:00:00 | 000,432,628 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
  934. [2008/04/14 02:00:00 | 000,386,048 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qdvd.dll
  935. [2008/04/14 02:00:00 | 000,383,804 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tahoma.ttf
  936. [2008/04/14 02:00:00 | 000,355,680 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tahomabd.ttf
  937. [2008/04/14 02:00:00 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msjetol1.dll
  938. [2008/04/14 02:00:00 | 000,279,040 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tshoot.dll
  939. [2008/04/14 02:00:00 | 000,279,040 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qdv.dll
  940. [2008/04/14 02:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
  941. [2008/04/14 02:00:00 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sbe.dll
  942. [2008/04/14 02:00:00 | 000,252,928 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compatui.dll
  943. [2008/04/14 02:00:00 | 000,250,048 | RHS- | C] () -- C:\ntldr
  944. [2008/04/14 02:00:00 | 000,240,120 | ---- | C] () -- C:\WINDOWS\System32\setup.bmp
  945. [2008/04/14 02:00:00 | 000,239,616 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wstrendr.ax
  946. [2008/04/14 02:00:00 | 000,239,616 | ---- | C] () -- C:\WINDOWS\System32\wstrenderer.ax
  947. [2008/04/14 02:00:00 | 000,218,134 | ---- | C] () -- C:\WINDOWS\System32\dllcache\apphelp.sdb
  948. [2008/04/14 02:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
  949. [2008/04/14 02:00:00 | 000,204,396 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msimain.sdb
  950. [2008/04/14 02:00:00 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qcap.dll
  951. [2008/04/14 02:00:00 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\dllcache\encdec.dll
  952. [2008/04/14 02:00:00 | 000,167,219 | ---- | C] () -- C:\WINDOWS\System32\pagefileconfig.vbs
  953. [2008/04/14 02:00:00 | 000,167,219 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pagefile.vbs
  954. [2008/04/14 02:00:00 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\wstpager.ax
  955. [2008/04/14 02:00:00 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wstpager.ax
  956. [2008/04/14 02:00:00 | 000,152,844 | ---- | C] () -- C:\WINDOWS\System32\dllcache\framdit.ttf
  957. [2008/04/14 02:00:00 | 000,149,848 | ---- | C] () -- C:\WINDOWS\System32\noise.deu
  958. [2008/04/14 02:00:00 | 000,148,992 | ---- | C] () -- C:\WINDOWS\System32\mpg2splt.ax
  959. [2008/04/14 02:00:00 | 000,148,992 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mpg2splt.ax
  960. [2008/04/14 02:00:00 | 000,135,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\framd.ttf
  961. [2008/04/14 02:00:00 | 000,127,213 | ---- | C] () -- C:\WINDOWS\System32\ega.cpi
  962. [2008/04/14 02:00:00 | 000,118,272 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mpg2data.ax
  963. [2008/04/14 02:00:00 | 000,118,272 | ---- | C] () -- C:\WINDOWS\System32\mpeg2data.ax
  964. [2008/04/14 02:00:00 | 000,097,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\evtquery.vbs
  965. [2008/04/14 02:00:00 | 000,097,965 | ---- | C] () -- C:\WINDOWS\System32\eventquery.vbs
  966. [2008/04/14 02:00:00 | 000,082,944 | ---- | C] () -- C:\WINDOWS\clock.avi
  967. [2008/04/14 02:00:00 | 000,080,546 | ---- | C] () -- C:\WINDOWS\System32\dllcache\apps.chm
  968. [2008/04/14 02:00:00 | 000,072,387 | ---- | C] () -- C:\WINDOWS\System32\dllcache\archvapp.inf
  969. [2008/04/14 02:00:00 | 000,071,859 | ---- | C] () -- C:\WINDOWS\System32\cliconf.chm
  970. [2008/04/14 02:00:00 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\dllcache\amstream.dll
  971. [2008/04/14 02:00:00 | 000,067,584 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
  972. [2008/04/14 02:00:00 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.sve
  973. [2008/04/14 02:00:00 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.nld
  974. [2008/04/14 02:00:00 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.ita
  975. [2008/04/14 02:00:00 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.fra
  976. [2008/04/14 02:00:00 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.esn
  977. [2008/04/14 02:00:00 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.enu
  978. [2008/04/14 02:00:00 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.deu
  979. [2008/04/14 02:00:00 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\dllcache\devenum.dll
  980. [2008/04/14 02:00:00 | 000,059,167 | ---- | C] () -- C:\WINDOWS\System\setup.inf
  981. [2008/04/14 02:00:00 | 000,058,273 | R--- | C] () -- C:\WINDOWS\System32\perfmon.msc
  982. [2008/04/14 02:00:00 | 000,057,667 | ---- | C] () -- C:\WINDOWS\System32\ieuinit.inf
  983. [2008/04/14 02:00:00 | 000,056,678 | ---- | C] () -- C:\WINDOWS\System32\eventvwr.msc
  984. [2008/04/14 02:00:00 | 000,053,840 | ---- | C] () -- C:\WINDOWS\System32\dllcache\dosx.exe
  985. [2008/04/14 02:00:00 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\vbicodec.ax
  986. [2008/04/14 02:00:00 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vbicodec.ax
  987. [2008/04/14 02:00:00 | 000,049,196 | ---- | C] () -- C:\WINDOWS\System32\noise.fra
  988. [2008/04/14 02:00:00 | 000,048,794 | ---- | C] () -- C:\WINDOWS\System32\ntimage.gif
  989. [2008/04/14 02:00:00 | 000,047,564 | RHS- | C] () -- C:\NTDETECT.COM
  990. [2008/04/14 02:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
  991. [2008/04/14 02:00:00 | 000,046,133 | ---- | C] () -- C:\WINDOWS\System32\sqlsodbc.chm
  992. [2008/04/14 02:00:00 | 000,044,451 | R--- | C] () -- C:\WINDOWS\System32\rsop.msc
  993. [2008/04/14 02:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\dllcache\key01.sys
  994. [2008/04/14 02:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\dllcache\keyboard.sys
  995. [2008/04/14 02:00:00 | 000,042,339 | ---- | C] () -- C:\WINDOWS\System32\certmgr.msc
  996. [2008/04/14 02:00:00 | 000,042,166 | ---- | C] () -- C:\WINDOWS\System32\lusrmgr.msc
  997. [2008/04/14 02:00:00 | 000,041,762 | ---- | C] () -- C:\WINDOWS\System32\ciadv.msc
  998. [2008/04/14 02:00:00 | 000,041,397 | ---- | C] () -- C:\WINDOWS\System32\dfrg.msc
  999. [2008/04/14 02:00:00 | 000,040,505 | ---- | C] () -- C:\WINDOWS\System32\cmdlib.wsc
  1000. [2008/04/14 02:00:00 | 000,040,448 | ---- | C] () -- C:\WINDOWS\System32\wiasf.ax
  1001. [2008/04/14 02:00:00 | 000,040,448 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wiasf.ax
  1002. [2008/04/14 02:00:00 | 000,039,274 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mem.exe
  1003. [2008/04/14 02:00:00 | 000,038,302 | ---- | C] () -- C:\WINDOWS\System32\compmgmt.msc
  1004. [2008/04/14 02:00:00 | 000,036,364 | ---- | C] () -- C:\WINDOWS\System32\secpol.msc
  1005. [2008/04/14 02:00:00 | 000,035,755 | ---- | C] () -- C:\WINDOWS\System32\prncnfg.vbs
  1006. [2008/04/14 02:00:00 | 000,035,755 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prncnfg.vbs
  1007. [2008/04/14 02:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio411.sys
  1008. [2008/04/14 02:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio412.sys
  1009. [2008/04/14 02:00:00 | 000,035,328 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mciqtz32.dll
  1010. [2008/04/14 02:00:00 | 000,034,871 | ---- | C] () -- C:\WINDOWS\System32\gpedit.msc
  1011. [2008/04/14 02:00:00 | 000,034,816 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sniffpol.dll
  1012. [2008/04/14 02:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio804.sys
  1013. [2008/04/14 02:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio404.sys
  1014. [2008/04/14 02:00:00 | 000,033,840 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio.sys
  1015. [2008/04/14 02:00:00 | 000,033,673 | ---- | C] () -- C:\WINDOWS\System32\diskmgmt.msc
  1016. [2008/04/14 02:00:00 | 000,033,464 | ---- | C] () -- C:\WINDOWS\System32\services.msc
  1017. [2008/04/14 02:00:00 | 000,033,280 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sstub.dll
  1018. [2008/04/14 02:00:00 | 000,033,079 | ---- | C] () -- C:\WINDOWS\System32\devmgmt.msc
  1019. [2008/04/14 02:00:00 | 000,032,968 | ---- | C] () -- C:\WINDOWS\System32\ntmsoprq.msc
  1020. [2008/04/14 02:00:00 | 000,032,760 | ---- | C] () -- C:\WINDOWS\System32\fsmgmt.msc
  1021. [2008/04/14 02:00:00 | 000,032,546 | ---- | C] () -- C:\WINDOWS\System32\prnmngr.vbs
  1022. [2008/04/14 02:00:00 | 000,032,546 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prnmngr.vbs
  1023. [2008/04/14 02:00:00 | 000,029,454 | ---- | C] () -- C:\WINDOWS\System32\prnport.vbs
  1024. [2008/04/14 02:00:00 | 000,029,454 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prnport.vbs
  1025. [2008/04/14 02:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos411.sys
  1026. [2008/04/14 02:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos412.sys
  1027. [2008/04/14 02:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos804.sys
  1028. [2008/04/14 02:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos404.sys
  1029. [2008/04/14 02:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
  1030. [2008/04/14 02:00:00 | 000,028,420 | ---- | C] () -- C:\WINDOWS\System32\bios1.rom
  1031. [2008/04/14 02:00:00 | 000,027,866 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos.sys
  1032. [2008/04/14 02:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\dllcache\country.sys
  1033. [2008/04/14 02:00:00 | 000,026,209 | ---- | C] () -- C:\WINDOWS\System32\ntmsmgr.msc
  1034. [2008/04/14 02:00:00 | 000,025,415 | ---- | C] () -- C:\WINDOWS\System32\prndrvr.vbs
  1035. [2008/04/14 02:00:00 | 000,025,415 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prndrvr.vbs
  1036. [2008/04/14 02:00:00 | 000,024,124 | ---- | C] () -- C:\WINDOWS\System32\dllcache\marlett.ttf
  1037. [2008/04/14 02:00:00 | 000,021,527 | ---- | C] () -- C:\WINDOWS\System32\prnjobs.vbs
  1038. [2008/04/14 02:00:00 | 000,021,527 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prnjobs.vbs
  1039. [2008/04/14 02:00:00 | 000,021,232 | ---- | C] () -- C:\WINDOWS\System32\graphics.pro
  1040. [2008/04/14 02:00:00 | 000,020,634 | ---- | C] () -- C:\WINDOWS\System32\dllcache\debug.exe
  1041. [2008/04/14 02:00:00 | 000,019,684 | ---- | C] () -- C:\WINDOWS\System32\noise.esn
  1042. [2008/04/14 02:00:00 | 000,019,618 | ---- | C] () -- C:\WINDOWS\System32\noise.ita
  1043. [2008/04/14 02:00:00 | 000,018,832 | ---- | C] () -- C:\WINDOWS\System32\v7vga.rom
  1044. [2008/04/14 02:00:00 | 000,015,860 | ---- | C] () -- C:\WINDOWS\System32\prnqctl.vbs
  1045. [2008/04/14 02:00:00 | 000,015,860 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prnqctl.vbs
  1046. [2008/04/14 02:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tsd32.dll
  1047. [2008/04/14 02:00:00 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdmo.dll
  1048. [2008/04/14 02:00:00 | 000,013,730 | ---- | C] () -- C:\WINDOWS\System32\noise.sve
  1049. [2008/04/14 02:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\dllcache\win87em.dll
  1050. [2008/04/14 02:00:00 | 000,013,256 | ---- | C] () -- C:\WINDOWS\System32\noise.nld
  1051. [2008/04/14 02:00:00 | 000,012,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\edlin.exe
  1052. [2008/04/14 02:00:00 | 000,012,498 | ---- | C] () -- C:\WINDOWS\System32\dllcache\append.exe
  1053. [2008/04/14 02:00:00 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\dllcache\scriptpw.dll
  1054. [2008/04/14 02:00:00 | 000,009,424 | ---- | C] () -- C:\WINDOWS\System32\dllcache\drvmain.sdb
  1055. [2008/04/14 02:00:00 | 000,009,029 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ansi.sys
  1056. [2008/04/14 02:00:00 | 000,008,424 | ---- | C] () -- C:\WINDOWS\System32\dllcache\exe2bin.exe
  1057. [2008/04/14 02:00:00 | 000,008,191 | ---- | C] () -- C:\WINDOWS\System32\bios4.rom
  1058. [2008/04/14 02:00:00 | 000,007,208 | ---- | C] () -- C:\WINDOWS\System32\secupd.sig
  1059. [2008/04/14 02:00:00 | 000,007,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\secupd.sig
  1060. [2008/04/14 02:00:00 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\services
  1061. [2008/04/14 02:00:00 | 000,007,052 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nlsfunc.exe
  1062. [2008/04/14 02:00:00 | 000,006,708 | ---- | C] () -- C:\WINDOWS\System32\esentprf.hxx
  1063. [2008/04/14 02:00:00 | 000,004,768 | ---- | C] () -- C:\WINDOWS\System32\dllcache\himem.sys
  1064. [2008/04/14 02:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
  1065. [2008/04/14 02:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\dllcache\secupd.dat
  1066. [2008/04/14 02:00:00 | 000,004,310 | ---- | C] () -- C:\WINDOWS\System32\odbcconf.rsp
  1067. [2008/04/14 02:00:00 | 000,004,310 | ---- | C] () -- C:\WINDOWS\System32\dllcache\odbcconf.rsp
  1068. [2008/04/14 02:00:00 | 000,004,126 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdxmlc.dll
  1069. [2008/04/14 02:00:00 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\wdl.trm
  1070. [2008/04/14 02:00:00 | 000,003,708 | ---- | C] () -- C:\WINDOWS\System32\pubprn.vbs
  1071. [2008/04/14 02:00:00 | 000,003,708 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pubprn.vbs
  1072. [2008/04/14 02:00:00 | 000,003,683 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\lmhosts.sam
  1073. [2008/04/14 02:00:00 | 000,003,577 | ---- | C] () -- C:\WINDOWS\System32\sysprtj.sep
  1074. [2008/04/14 02:00:00 | 000,003,338 | ---- | C] () -- C:\WINDOWS\System32\dllcache\redir.exe
  1075. [2008/04/14 02:00:00 | 000,003,252 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nw16.exe
  1076. [2008/04/14 02:00:00 | 000,003,214 | ---- | C] () -- C:\WINDOWS\System32\sysprint.sep
  1077. [2008/04/14 02:00:00 | 000,003,178 | ---- | C] () -- C:\WINDOWS\System32\rsvpcnts.h
  1078. [2008/04/14 02:00:00 | 000,003,167 | ---- | C] () -- C:\WINDOWS\System32\rsaci.rat
  1079. [2008/04/14 02:00:00 | 000,003,010 | ---- | C] () -- C:\WINDOWS\System32\pschdcnt.h
  1080. [2008/04/14 02:00:00 | 000,002,755 | ---- | C] () -- C:\WINDOWS\System32\mqprfsym.h
  1081. [2008/04/14 02:00:00 | 000,002,233 | ---- | C] () -- C:\WINDOWS\System32\dllcache\12520850.cpx
  1082. [2008/04/14 02:00:00 | 000,002,233 | ---- | C] () -- C:\WINDOWS\System32\12520850.cpx
  1083. [2008/04/14 02:00:00 | 000,002,206 | ---- | C] () -- C:\WINDOWS\System32\wpa.dbl
  1084. [2008/04/14 02:00:00 | 000,002,151 | ---- | C] () -- C:\WINDOWS\System32\dllcache\12520437.cpx
  1085. [2008/04/14 02:00:00 | 000,002,151 | ---- | C] () -- C:\WINDOWS\System32\12520437.cpx
  1086. [2008/04/14 02:00:00 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\rasctrnm.h
  1087. [2008/04/14 02:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
  1088. [2008/04/14 02:00:00 | 000,001,696 | ---- | C] () -- C:\WINDOWS\System32\noise.cht
  1089. [2008/04/14 02:00:00 | 000,001,696 | ---- | C] () -- C:\WINDOWS\System32\noise.chs
  1090. [2008/04/14 02:00:00 | 000,001,492 | ---- | C] () -- C:\WINDOWS\System32\mmdriver.inf
  1091. [2008/04/14 02:00:00 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vwipxspx.exe
  1092. [2008/04/14 02:00:00 | 000,000,974 | ---- | C] () -- C:\WINDOWS\System32\pid.inf
  1093. [2008/04/14 02:00:00 | 000,000,974 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pid.inf
  1094. [2008/04/14 02:00:00 | 000,000,929 | ---- | C] () -- C:\WINDOWS\System32\homepage.inf
  1095. [2008/04/14 02:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\dllcache\share.exe
  1096. [2008/04/14 02:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fastopen.exe
  1097. [2008/04/14 02:00:00 | 000,000,862 | ---- | C] () -- C:\WINDOWS\System32\termcap
  1098. [2008/04/14 02:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mscdexnt.exe
  1099. [2008/04/14 02:00:00 | 000,000,799 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\protocol
  1100. [2008/04/14 02:00:00 | 000,000,751 | ---- | C] () -- C:\WINDOWS\System32\noise.enu
  1101. [2008/04/14 02:00:00 | 000,000,751 | ---- | C] () -- C:\WINDOWS\System32\noise.eng
  1102. [2008/04/14 02:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
  1103. [2008/04/14 02:00:00 | 000,000,707 | ---- | C] () -- C:\WINDOWS\_default.pif
  1104. [2008/04/14 02:00:00 | 000,000,697 | ---- | C] () -- C:\WINDOWS\System32\noise.tha
  1105. [2008/04/14 02:00:00 | 000,000,487 | ---- | C] () -- C:\WINDOWS\System32\login.cmd
  1106. [2008/04/14 02:00:00 | 000,000,435 | ---- | C] () -- C:\WINDOWS\System32\perfwci.h
  1107. [2008/04/14 02:00:00 | 000,000,427 | ---- | C] () -- C:\WINDOWS\System32\perfci.h
  1108. [2008/04/14 02:00:00 | 000,000,407 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\networks
  1109. [2008/04/14 02:00:00 | 000,000,140 | ---- | C] () -- C:\WINDOWS\System32\perffilt.h
  1110. [2008/04/14 02:00:00 | 000,000,114 | ---- | C] () -- C:\WINDOWS\System32\pcl.sep
  1111. [2008/04/14 02:00:00 | 000,000,098 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\Hosts
  1112. [2008/04/14 02:00:00 | 000,000,081 | ---- | C] () -- C:\WINDOWS\System32\dsound.vxd
  1113. [2008/04/14 02:00:00 | 000,000,080 | ---- | C] () -- C:\WINDOWS\explorer.scf
  1114. [2008/04/14 02:00:00 | 000,000,075 | ---- | C] () -- C:\WINDOWS\System32\View Channels.scf
  1115. [2008/04/14 02:00:00 | 000,000,064 | ---- | C] () -- C:\WINDOWS\System32\cmos.ram
  1116. [2008/04/14 02:00:00 | 000,000,051 | ---- | C] () -- C:\WINDOWS\System32\pscript.sep
  1117. [2005/04/15 06:52:33 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
  1118. [2005/04/15 06:52:33 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.bin
  1119. [2005/04/15 06:52:33 | 000,007,208 | ---- | C] () -- C:\WINDOWS\System32\oembios.sig
  1120. [2005/04/15 06:52:33 | 000,007,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.sig
  1121. [2005/04/15 06:52:33 | 000,004,627 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
  1122. [2005/04/15 06:52:33 | 000,004,627 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.dat
  1123. [2004/01/22 21:40:19 | 000,000,850 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Photoshop Elements 7.0.lnk
  1124. [2004/01/15 19:29:33 | 000,002,277 | ---- | C] () -- C:\Documents and Settings\user\Desktop\Google Chrome.lnk
  1125. [2004/01/15 19:29:33 | 000,002,255 | ---- | C] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
  1126. [2004/01/15 19:14:19 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
  1127. [2004/01/15 00:14:58 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
  1128. [2004/01/15 00:14:52 | 000,001,620 | ---- | C] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
  1129. [2004/01/15 00:11:40 | 000,000,441 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
  1130. [2004/01/15 00:09:47 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\GTW32N50.dll
  1131. [2004/01/15 00:09:47 | 000,031,930 | ---- | C] () -- C:\WINDOWS\System32\GTNDIS3.VXD
  1132. [2004/01/15 00:09:47 | 000,008,090 | ---- | C] () -- C:\WINDOWS\System32\WUSB54G.cat
  1133. [2004/01/15 00:09:47 | 000,007,850 | ---- | C] () -- C:\WINDOWS\System32\WUSB54GV4.cat
  1134. [2004/01/15 00:09:47 | 000,007,846 | ---- | C] () -- C:\WINDOWS\System32\WUSB54GV2.cat
  1135. [2004/01/15 00:09:40 | 000,001,628 | ---- | C] () -- C:\WINDOWS\System32\WLAN.INI
  1136. [2004/01/14 23:11:56 | 000,000,804 | ---- | C] () -- C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk
  1137.  
  1138. [color=#E56717]========== LOP Check ==========[/color]
  1139.  
  1140. [2011/04/05 00:46:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
  1141. [2011/07/19 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Application Data\.minecraft
  1142. [2011/07/10 09:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Application Data\Dropbox
  1143. [2011/02/25 01:10:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Application Data\Leadertech
  1144. [2004/01/15 19:22:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Application Data\TeamViewer
  1145.  
  1146. [color=#E56717]========== Purity Check ==========[/color]
  1147.  
  1148.  
  1149.  
  1150. [color=#E56717]========== Custom Scans ==========[/color]
  1151.  
  1152.  
  1153. [color=#A23BEC]< :otl >[/color]
  1154.  
  1155. < End of report >
RAW Paste Data