Kone jäätyy välistä aivan totaalisesti => pakko aina käynnistää uudestaan resetillä. Oon eheyttänyt kaikki levyt ja skannannu f-securella, spy-botilla ja AVG Anti-spywarella mut ei löydy juuri enää mitään vakavaa tai paljoa roskaa. Ihanku olisi virus kyseessä mut en tiedä. Noh, kattokaa ja sanokaa: Logfile of Trend Micro HijackThis v2.0.0 (BETA) Scan saved at 14:21:31, on 25.6.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE C:\WINDOWS\system32\CTSVCCDA.EXE C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE C:\Program Files\F-Secure\Common\FSMA32.EXE C:\Program Files\F-Secure\Anti-Virus\fssm32.exe C:\Program Files\F-Secure\Common\FSMB32.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe C:\Program Files\F-Secure\BackWeb\7681197\Program\F-Secure Automatic Update.exe C:\Program Files\F-Secure\Common\FCH32.EXE C:\Program Files\F-Secure\Common\FAMEH32.EXE C:\Program Files\F-Secure\Anti-Virus\fsqh.exe C:\Program Files\F-Secure\Anti-Virus\fsrw.exe C:\WINDOWS\Explorer.EXE C:\Program Files\F-Secure\Common\FSM32.EXE C:\Program Files\Creative\ShareDLL\CtNotify.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\F-Secure\Common\FNRB32.EXE C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe C:\Program Files\F-Secure\Anti-Virus\fsav32.exe C:\Program Files\F-Secure\Common\FIH32.EXE C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\devldr32.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\PeerGuardian2\pg2.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Creative\ShareDLL\MEDIADET.EXE C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\PROGRA~1\F-Secure\ANTI-S~1\fsaw.exe C:\Program Files\F-Secure\FSGUI\fsguidll.exe C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE C:\Program Files\MSN Messenger\usnsvc.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\BitComet\BitComet.exe C:\WINDOWS\system32\oodag.exe C:\WINDOWS\system32\oodtray.exe C:\Documents and Settings\J & H\Työpöytä\HiJackThis_v2.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit O2 - BHO: Adobe PDF Reader -linkkiavustaja - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.5.19.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [OODefragTray] C:\WINDOWS\system32\oodtray.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Paikallinen palve') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Verkkopalve') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Global Startup: F-Secure Automatic Update.lnk = C:\Program Files\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe O4 - Global Startup: Logitech SetPoint.lnk = ? O8 - Extra context menu item: &Block this popup - C:\Program Files\F-Secure\Anti-Spyware\blockpopups.htm O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: IE Shield - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\F-Secure\Anti-Spyware\ieshield.dll O9 - Extra 'Tools' menuitem: IE Shield... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\F-Secure\Anti-Spyware\ieshield.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1181236155002 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181240584968 O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: F-Secure Automatic Update (BackWeb Plug-in - 7681197) - F-Secure Automatic Update - C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTSVCCDA.EXE O23 - Service: Loogisen levyn hallinnan valvontapalvelu (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe O23 - Service: Tapahtumaloki (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe O23 - Service: F-Secure Network Request Broker - F-Secure Corporation - C:\Program Files\F-Secure\Common\FNRB32.EXE O23 - Service: fsbwsys - Unknown owner - C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE O23 - Service: CD-levyjen kirjoittamisen IMAPI COM -palvelu (ImapiService) - Unknown owner - C:\WINDOWS\System32\imapi.exe O23 - Service: NetMeeting etätyöpöydän jakaminen (mnmsrvc) - Unknown owner - C:\WINDOWS\System32\mnmsrvc.exe O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe O23 - Service: Etätyöpöydän ohjeen istunnonhallinta (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe O23 - Service: Älykortti (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe O23 - Service: Resurssilokit ja -hälytykset (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe O23 - Service: Aseman tilannevedos (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe O23 - Service: WMI resurssisovitin (WmiApSrv) - Unknown owner - C:\WINDOWS\System32\wbem\wmiapsrv.exe O24 - Desktop Component 1: weather.pspt.fi - http://weather.pspt.fi/mini.shtml -- End of file - 9198 bytes
luultavasti jotain ongelmaa kovossa tai jossain Lataa WinPFind3 http://download.bleepingcomputer.com/oldtimer/winpfind3u.exe työpöydällesi ja tuplaklikkaa exeä purkaaksesi sen. Kansio nimeltä WinPFind3u luodaan työpöydällesi. * Avaa WinPFind3u-kansio ja tuplaklikkaa WinPFind3U.exe käynnistääksesi ohjelman. o Files Created Within-kohdassa klikkaa30 days o Files Modified Within-kohdassa klikkaa30 days o File String Search -kohdassa klikkaaNon-Microsoft * Nyt klikkaa Run Scan-nappulaa työkalupalkissa. * Kun skanni on valmis, raportti avautuu muistioon. * Klikkaa Muotoile ja varmistu ettei automaattinen rivitys ole valittuna. Jos on, ota valinta pois. Lähetä loki seuraavassa vastauksessasi. Voit tarvita siihen useita vastauksia, ettei se jää vaillinaiseksi.
Noniin tein ohjeiden mukaan ja tässä tulos(toivottavasti mahtuu): WinPFind3 logfile created on: 26.6.2007 7:48:33 WinPFind3U by OldTimer - Version 1.0.39 Folder = C:\Documents and Settings\J & H\Työpöytä\WinPFind3u\ Microsoft Windows XP Service Pack 2 (Version = 5.1.2600) Internet Explorer (Version = 6.0.2900.2180) 767,49 Mb Total Physical Memory | 329,91 Mb Available Physical Memory | 42,99% Memory free 1,83 Gb Paging File | 1,41 Gb Available in Paging File | 76,84% Paging File free Paging file location(s): C:\pagefile.sys 1152 2304; %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 17,58 Gb Total Space | 8,74 Gb Free Space | 49,71% Space Free Drive D: | 58,74 Gb Total Space | 21,09 Gb Free Space | 35,90% Space Free E: Drive not present or media not loaded Drive F: | 9,53 Gb Total Space | 5,30 Gb Free Space | 55,63% Space Free Computer Name: KOTI-LX5JMJOTG2 Current User Name: J & H Logged in as Administrator. Current Boot Mode: Normal [Processes - Non-Microsoft Only] avgas.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 16.6.2007 11:30:04 | Attr = ] bitcomet.exe -> %ProgramFiles%\BitComet\BitComet.exe -> www.BitComet.com [Ver = 0.89 | Size = 5921344 bytes | Modified Date = 31.5.2007 17:17:14 | Attr = ] ctnotify.exe -> %ProgramFiles%\Creative\ShareDLL\CTNOTIFY.EXE -> Creative Technology Ltd. [Ver = 2.00.05.0 | Size = 191488 bytes | Modified Date = 26.12.2001 2:00:00 | Attr = ] ctsvccda.exe -> %System32%\CTsvcCDA.EXE -> Creative Technology Ltd [Ver = 1.0.1.0 | Size = 44032 bytes | Modified Date = 13.12.1999 1:01:00 | Attr = ] devldr32.exe -> %System32%\devldr32.exe -> Creative Technology Ltd. [Ver = 1, 0, 0, 17 | Size = 24064 bytes | Modified Date = 5.10.2001 17:31:50 | Attr = ] f-secure automatic update.exe -> %ProgramFiles%\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe -> F-Secure Automatic Update [Ver = Version 6.3.2 (Build 116R) | Size = 32807 bytes | Modified Date = 7.6.2007 19:39:36 | Attr = ] fameh32.exe -> %ProgramFiles%\F-Secure\common\FAMEH32.EXE -> F-Secure Corporation [Ver = 6.05.8452 | Size = 270387 bytes | Modified Date = 26.10.2005 4:51:58 | Attr = ] fch32.exe -> %ProgramFiles%\F-Secure\common\FCH32.EXE -> F-Secure Corporation [Ver = 6.05.8452 | Size = 65585 bytes | Modified Date = 26.10.2005 4:52:00 | Attr = ] fih32.exe -> %ProgramFiles%\F-Secure\common\FIH32.exe -> F-Secure Corporation [Ver = 6.05.8452 | Size = 57393 bytes | Modified Date = 26.10.2005 4:55:24 | Attr = ] firefox.exe -> %ProgramFiles%\Mozilla Firefox\firefox.exe -> Mozilla Corporation [Ver = 1.8.1.4: 2007051502 | Size = 7637104 bytes | Modified Date = 15.5.2007 23:03:56 | Attr = ] fnrb32.exe -> %ProgramFiles%\F-Secure\common\FNRB32.exe -> F-Secure Corporation [Ver = 6.05.8452 | Size = 110642 bytes | Modified Date = 26.10.2005 4:55:24 | Attr = ] fsav32.exe -> %ProgramFiles%\F-Secure\Anti-Virus\FSAV32.exe -> F-Secure Corporation [Ver = 6.01.11400 | Size = 176128 bytes | Modified Date = 11.10.2005 19:16:02 | Attr = ] fsaw.exe -> %ProgramFiles%\F-Secure\Anti-Spyware\FSAW.exe -> F-Secure Corporation [Ver = 1.1.192 | Size = 86064 bytes | Modified Date = 9.5.2005 11:52:52 | Attr = ] fsbwsys.exe -> %ProgramFiles%\F-Secure\BackWeb\7681197\program\fsbwsys.exe -> F-Secure Corp. [Ver = 7.00.1 | Size = 270428 bytes | Modified Date = 24.10.2005 18:09:08 | Attr = ] fsdfwd.exe -> %ProgramFiles%\F-Secure\FWES\program\fsdfwd.exe -> F-Secure Corporation [Ver = 6.02.540 | Size = 208959 bytes | Modified Date = 31.10.2005 13:01:30 | Attr = ] fsgk32.exe -> %ProgramFiles%\F-Secure\Anti-Virus\fsgk32.exe -> F-Secure Corp. [Ver = 6.10.12200 | Size = 290304 bytes | Modified Date = 17.5.2006 14:28:26 | Attr = ] fsgk32st.exe -> %ProgramFiles%\F-Secure\Anti-Virus\fsgk32st.exe -> F-Secure Corp. [Ver = 1, 0, 7360, 0 | Size = 45056 bytes | Modified Date = 4.9.2001 12:15:22 | Attr = ] fsguidll.exe -> %ProgramFiles%\F-Secure\FSGUI\fsguidll.exe -> F-Secure Corporation [Ver = 6, 20, 11, 0 | Size = 233537 bytes | Modified Date = 12.10.2005 12:52:12 | Attr = ] fsm32.exe -> %ProgramFiles%\F-Secure\common\FSM32.EXE -> F-Secure Corporation [Ver = 6.05.8452 | Size = 122929 bytes | Modified Date = 26.10.2005 4:51:58 | Attr = ] fsma32.exe -> %ProgramFiles%\F-Secure\common\FSMA32.EXE -> F-Secure Corporation [Ver = 6.05.8452 | Size = 61490 bytes | Modified Date = 26.10.2005 4:51:58 | Attr = ] fsmb32.exe -> %ProgramFiles%\F-Secure\common\FSMB32.EXE -> F-Secure Corporation [Ver = 6.05.8452 | Size = 180274 bytes | Modified Date = 26.10.2005 4:51:58 | Attr = ] fsqh.exe -> %ProgramFiles%\F-Secure\Anti-Virus\fsqh.exe -> F-Secure Corporation [Ver = 6.00.6.00.11150 | Size = 32826 bytes | Modified Date = 13.4.2005 16:02:40 | Attr = ] fsrw.exe -> %ProgramFiles%\F-Secure\Anti-Virus\FSRW.exe -> F-Secure Corporation [Ver = 1.1.222 | Size = 159804 bytes | Modified Date = 3.10.2005 16:10:44 | Attr = ] fssm32.exe -> %ProgramFiles%\F-Secure\Anti-Virus\fssm32.exe -> F-Secure Corp. [Ver = 6.10.12200 | Size = 248320 bytes | Modified Date = 17.5.2006 14:29:34 | Attr = ] guard.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 30.5.2007 15:31:10 | Attr = ] khalmnpr.exe -> %CommonProgramFiles%\Logitech\KhalShared\KHALMNPR.exe -> Logitech Inc. [Ver = 2.60.570 | Size = 94208 bytes | Modified Date = 28.3.2006 17:38:32 | Attr = ] logitechdesktopmessenger.exe -> %ProgramFiles%\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe -> Logitech Inc. [Ver = 2.52.21.16 | Size = 67128 bytes | Modified Date = 16.6.2007 11:51:18 | Attr = ] mediadet.exe -> %ProgramFiles%\Creative\ShareDLL\MEDIADET.EXE -> Creative Technology Ltd. [Ver = 2.00.07.0 | Size = 167424 bytes | Modified Date = 30.4.2002 2:00:00 | Attr = ] oodag.exe -> %System32%\oodag.exe -> O&O Software GmbH [Ver = 10.0.1634 | Size = 1050120 bytes | Modified Date = 11.5.2007 2:09:48 | Attr = ] oodtray.exe -> %System32%\oodtray.exe -> O&O Software GmbH [Ver = 10.0.0.106 | Size = 2512392 bytes | Modified Date = 11.5.2007 2:08:54 | Attr = ] pg2.exe -> %ProgramFiles%\PeerGuardian2\pg2.exe -> Methlabs [Ver = 1, 0, 6, 4 | Size = 1421824 bytes | Modified Date = 18.9.2005 18:40:42 | Attr = ] servic~1.exe -> %ProgramFiles%\F-Secure\BackWeb\7681197\program\ServiceWrapper-7681197.exe -> F-Secure Automatic Update [Ver = Version 6.3.2 (Build 116R) | Size = 32807 bytes | Modified Date = 7.6.2007 19:39:36 | Attr = ] setpoint.exe -> %ProgramFiles%\Logitech\SetPoint\SetPoint.exe -> Logitech Inc. [Ver = 2.60.606 | Size = 573440 bytes | Modified Date = 5.5.2006 6:42:00 | Attr = ] soundman.exe -> %SystemRoot%\soundman.exe -> Realtek Semiconductor Corp. [Ver = 5, 1, 0, 59 | Size = 577536 bytes | Modified Date = 16.4.2007 15:28:22 | Attr = ] ulcdrsvr.exe -> %CommonProgramFiles%\Ulead Systems\DVD\ULCDRSvr.exe -> Ulead Systems, Inc. [Ver = 1, 0, 0, 4 | Size = 49152 bytes | Modified Date = 13.12.2004 4:34:32 | Attr = ] winpfind3u.exe -> %UserDesktop%\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.38.0 | Size = 322048 bytes | Modified Date = 23.6.2007 15:15:54 | Attr = ] [Win32 Services - Non-Microsoft Only] (AVG Anti-Spyware Guard) AVG Anti-Spyware Guard [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 30.5.2007 15:31:10 | Attr = ] (BackWeb Plug-in - 7681197) F-Secure Automatic Update [Win32_Own | Auto | Running] -> %ProgramFiles%\F-Secure\BackWeb\7681197\program\ServiceWrapper-7681197.exe -> F-Secure Automatic Update [Ver = Version 6.3.2 (Build 116R) | Size = 32807 bytes | Modified Date = 7.6.2007 19:39:36 | Attr = ] (Creative Service for CDROM Access) Creative Service for CDROM Access [Win32_Own | Auto | Running] -> %System32%\CTsvcCDA.EXE -> Creative Technology Ltd [Ver = 1.0.1.0 | Size = 44032 bytes | Modified Date = 13.12.1999 1:01:00 | Attr = ] (dmadmin) Loogisen levyn hallinnan valvontapalvelu [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 15.9.2004 2:12:02 | Attr = ] (F-Secure Gatekeeper Handler Starter) FSGKHS [Win32_Own | Auto | Running] -> %ProgramFiles%\F-Secure\Anti-Virus\fsgk32st.exe -> F-Secure Corp. [Ver = 1, 0, 7360, 0 | Size = 45056 bytes | Modified Date = 4.9.2001 12:15:22 | Attr = ] (F-Secure Network Request Broker) F-Secure Network Request Broker [Win32_Own | On_Demand | Running] -> %ProgramFiles%\F-Secure\common\FNRB32.exe -> F-Secure Corporation [Ver = 6.05.8452 | Size = 110642 bytes | Modified Date = 26.10.2005 4:55:24 | Attr = ] (fsbwsys) fsbwsys [Win32_Own | Auto | Running] -> %ProgramFiles%\F-Secure\BackWeb\7681197\program\fsbwsys.exe -> F-Secure Corp. [Ver = 7.00.1 | Size = 270428 bytes | Modified Date = 24.10.2005 18:09:08 | Attr = ] (FSDFWD) F-Secure Anti-Virus Firewall Daemon [Win32_Own | On_Demand | Running] -> %ProgramFiles%\F-Secure\FWES\program\fsdfwd.exe -> F-Secure Corporation [Ver = 6.02.540 | Size = 208959 bytes | Modified Date = 31.10.2005 13:01:30 | Attr = ] (FSMA) F-Secure Management Agent [Win32_Own | Auto | Running] -> %ProgramFiles%\F-Secure\common\FSMA32.EXE -> F-Secure Corporation [Ver = 6.05.8452 | Size = 61490 bytes | Modified Date = 26.10.2005 4:51:58 | Attr = ] (O&O Defrag) O&O Defrag [Win32_Own | Auto | Running] -> %System32%\oodag.exe -> O&O Software GmbH [Ver = 10.0.1634 | Size = 1050120 bytes | Modified Date = 11.5.2007 2:09:48 | Attr = ] (UleadBurningHelper) Ulead Burning Helper [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Ulead Systems\DVD\ULCDRSvr.exe -> Ulead Systems, Inc. [Ver = 1, 0, 0, 4 | Size = 49152 bytes | Modified Date = 13.12.2004 4:34:32 | Attr = ] [Registry - Non-Microsoft Only] < Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> -> -> File not found !AVG Anti-Spyware -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 16.6.2007 11:30:04 | Attr = ] Adobe Reader Speed Launcher -> %ProgramFiles%\Adobe\Reader 8.0\Reader\Reader_sl.exe -> Adobe Systems Incorporated [Ver = 8.0.0.0 | Size = 40048 bytes | Modified Date = 11.5.2007 3:06:32 | Attr = ] ATIModeChange -> %System32%\Ati2mdxx.exe -> ATI Technologies, Inc. [Ver = 4.13.3 | Size = 28672 bytes | Modified Date = 4.9.2001 23:24:26 | Attr = ] Disc Detector -> %ProgramFiles%\Creative\ShareDLL\CTNOTIFY.EXE -> Creative Technology Ltd. [Ver = 2.00.05.0 | Size = 191488 bytes | Modified Date = 26.12.2001 2:00:00 | Attr = ] F-Secure Manager -> %ProgramFiles%\F-Secure\common\FSM32.EXE -> F-Secure Corporation [Ver = 6.05.8452 | Size = 122929 bytes | Modified Date = 26.10.2005 4:51:58 | Attr = ] F-Secure TNB -> %ProgramFiles%\F-Secure\TNB\tnbutil.exe -> F-Secure Corporation [Ver = 1.05.014 | Size = 684032 bytes | Modified Date = 27.5.2004 11:57:00 | Attr = ] Logitech Hardware Abstraction Layer -> %SystemRoot%\KHALMNPR.Exe -> Logitech Inc. [Ver = 2.60.570 | Size = 94208 bytes | Modified Date = 28.3.2006 17:38:32 | Attr = ] OODefragTray -> %System32%\oodtray.exe -> O&O Software GmbH [Ver = 10.0.0.106 | Size = 2512392 bytes | Modified Date = 11.5.2007 2:08:54 | Attr = ] SoundMan -> %SystemRoot%\soundman.exe -> Realtek Semiconductor Corp. [Ver = 5, 1, 0, 59 | Size = 577536 bytes | Modified Date = 16.4.2007 15:28:22 | Attr = ] StartCCC -> %ProgramFiles%\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe -> File not found < OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\ -> IMAIL -> Installed = 1 -> MAPI -> Installed = 1 -> MSFS -> Installed = 1 -> < Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> LDM -> %ProgramFiles%\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe -> Logitech Inc. [Ver = 2.52.21.16 | Size = 67128 bytes | Modified Date = 16.6.2007 11:51:18 | Attr = ] PeerGuardian -> %ProgramFiles%\PeerGuardian2\pg2.exe -> Methlabs [Ver = 1, 0, 6, 4 | Size = 1421824 bytes | Modified Date = 18.9.2005 18:40:42 | Attr = ] < Common Startup > -> C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\Käynnistys -> %AllUsersStartup%\F-Secure Automatic Update.lnk -> %ProgramFiles%\F-Secure\BackWeb\7681197\program\F-Secure Automatic Update.exe -> F-Secure Automatic Update [Ver = Version 6.3.2 (Build 116R) | Size = 32807 bytes | Modified Date = 7.6.2007 19:39:36 | Attr = ] %AllUsersStartup%\Logitech SetPoint.lnk -> %ProgramFiles%\Logitech\SetPoint\SetPoint.exe -> Logitech Inc. [Ver = 2.60.606 | Size = 573440 bytes | Modified Date = 5.5.2006 6:42:00 | Attr = ] < ShellExecuteHooks [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks -> {57B86673-276A-48B2-BAE7-C6DBB3020EB8} [HKLM] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [AVG Anti-Spyware 7.5] -> GRISOFT s.r.o. [Ver = 7, 5, 1, 36 | Size = 79408 bytes | Modified Date = 30.5.2007 15:29:58 | Attr = ] < SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders -> < Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> < Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> < Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ -> AtiExtEvent -> %System32%\ati2evxx.dll -> ATI Technologies Inc. [Ver = 6.14.10.4162 | Size = 118784 bytes | Modified Date = 18.5.2007 4:50:36 | Attr = ] < CurrentVersion Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> _ HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 -> < CurrentVersion Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> _ HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun -> -1 -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\ -> -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools -> 0 -> < HOSTS File > (665 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts -> 127.0.0.1 localhost -> -> < Internet Explorer Settings > -> -> HKLM: Default_Page_URL -> http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome -> HKLM: Main\\Default_Search_URL -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch -> HKLM: Local Page -> %SystemRoot%\system32\blank.htm -> HKLM: Search Page -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch -> HKLM: Start Page -> http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home -> HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm -> HKLM: SearchAssistant -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm -> HKCU: Search Page -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch -> HKCU: Start Page -> http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome -> HKCU: ProxyEnable -> 0 -> < Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> msn.com [ - ] -> -> < BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %CommonProgramFiles%\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [Adobe PDF Reader -linkkiavustaja] -> Adobe Systems Incorporated [Ver = 8.0.0.2006102200 | Size = 62080 bytes | Modified Date = 22.10.2006 23:08:42 | Attr = ] {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} [HKLM] -> %ProgramFiles%\BitComet\tools\BitCometBHO_1.1.5.19.dll [BitComet Helper] -> BitComet [Ver = 20070519 | Size = 452160 bytes | Modified Date = 18.5.2007 21:17:48 | Attr = ] {53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> %ProgramFiles%\Spybot - Search & Destroy\SDHelper.dll [Reg Data - Value does not exist] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 31.5.2005 1:04:00 | Attr = ] {7E853D72-626A-48EC-A868-BA8D5E23E045} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found {E5A1691B-D188-4419-AD02-90002030B8EE} [HKLM] -> %ProgramFiles%\FlashFXP\IEFlash.dll [FlashFXP Helper for Internet Explorer] -> IniCom Networks, Inc. [Ver = 3.0.0.1015 | Size = 191096 bytes | Modified Date = 31.3.2006 22:27:14 | Attr = ] < Internet Explorer Bars [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ -> {32683183-48a0-441b-a342-7c2a440a9478} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found < Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {300DB664-75B5-47c0-8B45-A44ACCF73C00} -> Reg Data - Value does not exist [ButtonText: IE Shield] -> File not found {92780B25-18CC-41C8-B9BE-3C9C571A8263} -> Reg Data - Value does not exist [ButtonText: Research] -> File not found < Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ -> &Block this popup -> %ProgramFiles%\F-Secure\Anti-Spyware\blockpopups.htm -> [Ver = | Size = 380 bytes | Modified Date = 18.11.2004 15:51:56 | Attr = ] Download all links using BitComet -> %ProgramFiles%\BitComet\BitComet.exe\AddAllLink.htm -> File not found Download all videos using BitComet -> %ProgramFiles%\BitComet\BitComet.exe\AddVideo.htm -> File not found Download link using &BitComet -> %ProgramFiles%\BitComet\BitComet.exe\AddLink.htm -> File not found E&xport to Microsoft Excel -> -> File not found < User Agent Post Platform [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform -> SV1 -> -> < DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {A2538A81-A347-497E-900E-E24085A08585} -> (Realtek RTL8139/810x Family Fast Ethernet NIC) -> < Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> bwfile-8876480 -> %ProgramFiles%\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll -> Logitech Inc. [Ver = Version 8.1.1 (Build 50R) | Size = 28711 bytes | Modified Date = 16.6.2007 11:51:18 | Attr = ] ipp -> Reg Data - Key not found -> File not found msdaipp -> Reg Data - Key not found -> File not found < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {6414512B-B978-451D-A0D8-FCFDF33E833C} -> WUWebControl Class - CodeBase = http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1181236155002 -> {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} -> MUWebControl Class - CodeBase = http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181240584968 -> [Files/Folders - Created Within 30 days] 1.xml -> %SystemDrive%\1.xml -> [Ver = | Size = 43757 bytes | Created Date = 17.6.2007 10:54:35 | Attr = ] ATI -> %SystemDrive%\ATI -> [Folder | Created Date = 23.6.2007 13:08:09 | Attr = ] AUTOEXEC.BAT -> %SystemDrive%\AUTOEXEC.BAT -> [Ver = | Size = 0 bytes | Created Date = 7.6.2007 18:03:42 | Attr = ] Config.Msi -> %SystemDrive%\Config.Msi -> [Folder | Created Date = 25.6.2007 14:10:27 | Attr = HS] CONFIG.SYS -> %SystemDrive%\CONFIG.SYS -> [Ver = | Size = 0 bytes | Created Date = 7.6.2007 18:03:42 | Attr = ] Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Created Date = 7.6.2007 18:51:49 | Attr = ] IO.SYS -> %SystemDrive%\IO.SYS -> [Ver = | Size = 0 bytes | Created Date = 7.6.2007 18:03:42 | Attr = RHS] Media -> %SystemDrive%\Media -> [Folder | Created Date = 7.6.2007 19:47:41 | Attr = ] MSDOS.SYS -> %SystemDrive%\MSDOS.SYS -> [Ver = | Size = 0 bytes | Created Date = 7.6.2007 18:03:42 | Attr = RHS] Ohjelmatiedostot -> %SystemDrive%\Ohjelmatiedostot -> [Folder | Created Date = 22.6.2007 11:10:00 | Attr = ] Program Files -> %ProgramFiles% -> [Folder | Created Date = 7.6.2007 18:52:41 | Attr = R ] RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 17.6.2007 18:09:34 | Attr = HS] System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 8.4.1809 2:35:42 | Attr = HS] VIAhm -> %SystemDrive%\VIAhm -> [Folder | Created Date = 7.6.2007 18:16:09 | Attr = ] WINDOWS -> %SystemRoot% -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] $hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Created Date = 8.6.2007 8:34:42 | Attr = H ] $MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Created Date = 7.6.2007 18:33:35 | Attr = H ] $NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Created Date = 7.6.2007 22:41:30 | Attr = H ] $NtUninstallKB823559$ -> %SystemRoot%\$NtUninstallKB823559$ -> [Folder | Created Date = 7.6.2007 20:42:13 | Attr = H ] $NtUninstallKB828741$ -> %SystemRoot%\$NtUninstallKB828741$ -> [Folder | Created Date = 7.6.2007 20:42:40 | Attr = H ] $NtUninstallKB833407$ -> %SystemRoot%\$NtUninstallKB833407$ -> [Folder | Created Date = 7.6.2007 20:46:49 | Attr = H ] $NtUninstallKB835732$ -> %SystemRoot%\$NtUninstallKB835732$ -> [Folder | Created Date = 7.6.2007 20:43:50 | Attr = H ] $NtUninstallKB842773$ -> %SystemRoot%\$NtUninstallKB842773$ -> [Folder | Created Date = 7.6.2007 19:11:54 | Attr = H ] $NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Created Date = 8.6.2007 9:12:40 | Attr = H ] $NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Created Date = 8.6.2007 9:17:26 | Attr = H ] $NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Created Date = 8.6.2007 9:17:15 | Attr = H ] $NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Created Date = 8.6.2007 9:01:38 | Attr = H ] $NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Created Date = 8.6.2007 9:10:47 | Attr = H ] $NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Created Date = 8.6.2007 9:03:39 | Attr = H ] $NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Created Date = 8.6.2007 9:07:21 | Attr = H ] $NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Created Date = 8.6.2007 8:57:41 | Attr = H ] $NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Created Date = 8.6.2007 9:08:36 | Attr = H ] $NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Created Date = 8.6.2007 9:14:25 | Attr = H ] $NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Created Date = 8.6.2007 8:58:28 | Attr = H ] $NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Created Date = 8.6.2007 9:10:09 | Attr = H ] $NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Created Date = 8.6.2007 9:13:28 | Attr = H ] $NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Created Date = 8.6.2007 8:58:45 | Attr = H ] $NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Created Date = 8.6.2007 8:34:42 | Attr = H ] $NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Created Date = 8.6.2007 9:18:20 | Attr = H ] $NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Created Date = 8.6.2007 9:14:48 | Attr = H ] $NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Created Date = 8.6.2007 9:13:18 | Attr = H ] $NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Created Date = 8.6.2007 9:03:25 | Attr = H ] $NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Created Date = 8.6.2007 9:14:58 | Attr = H ] $NtUninstallKB901190$ -> %SystemRoot%\$NtUninstallKB901190$ -> [Folder | Created Date = 17.6.2007 12:10:10 | Attr = H ] $NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Created Date = 8.6.2007 9:05:28 | Attr = H ] $NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Created Date = 8.6.2007 9:07:35 | Attr = H ] $NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Created Date = 8.6.2007 9:00:56 | Attr = H ] $NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Created Date = 8.6.2007 9:06:00 | Attr = H ] $NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Created Date = 8.6.2007 8:59:58 | Attr = H ] $NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Created Date = 8.6.2007 8:58:17 | Attr = H ] $NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Created Date = 8.6.2007 9:00:10 | Attr = H ] $NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Created Date = 8.6.2007 9:09:57 | Attr = H ] $NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Created Date = 8.6.2007 9:14:02 | Attr = H ] $NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Created Date = 8.6.2007 9:13:51 | Attr = H ] $NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Created Date = 8.6.2007 9:09:24 | Attr = H ] $NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Created Date = 8.6.2007 9:15:52 | Attr = H ] $NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Created Date = 8.6.2007 8:58:56 | Attr = H ] $NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Created Date = 8.6.2007 9:06:22 | Attr = H ] $NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Created Date = 8.6.2007 8:57:56 | Attr = H ] $NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Created Date = 8.6.2007 9:01:29 | Attr = H ] $NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Created Date = 8.6.2007 9:06:11 | Attr = H ] $NtUninstallKB917422$ -> %SystemRoot%\$NtUninstallKB917422$ -> [Folder | Created Date = 8.6.2007 9:05:04 | Attr = H ] $NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Created Date = 8.6.2007 9:16:38 | Attr = H ] $NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Created Date = 8.6.2007 9:05:50 | Attr = H ] $NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Created Date = 8.6.2007 9:04:00 | Attr = H ] $NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Created Date = 8.6.2007 9:08:24 | Attr = H ] $NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Created Date = 8.6.2007 9:06:33 | Attr = H ] $NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Created Date = 8.6.2007 9:03:13 | Attr = H ] $NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Created Date = 8.6.2007 9:08:47 | Attr = H ] $NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Created Date = 8.6.2007 8:58:07 | Attr = H ] $NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Created Date = 8.6.2007 9:14:36 | Attr = H ] $NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Created Date = 8.6.2007 9:06:59 | Attr = H ] $NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Created Date = 8.6.2007 9:04:13 | Attr = H ] $NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Created Date = 8.6.2007 9:17:37 | Attr = H ] $NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Created Date = 8.6.2007 9:05:16 | Attr = H ] $NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Created Date = 8.6.2007 9:17:04 | Attr = H ] $NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Created Date = 8.6.2007 9:09:47 | Attr = H ] $NtUninstallKB923694$ -> %SystemRoot%\$NtUninstallKB923694$ -> [Folder | Created Date = 8.6.2007 9:01:07 | Attr = H ] $NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Created Date = 8.6.2007 9:14:14 | Attr = H ] $NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Created Date = 8.6.2007 9:17:48 | Attr = H ] $NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Created Date = 8.6.2007 9:13:02 | Attr = H ] $NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Created Date = 8.6.2007 9:12:29 | Attr = H ] $NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Created Date = 8.6.2007 9:13:40 | Attr = H ] $NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Created Date = 8.6.2007 9:15:42 | Attr = H ] $NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Created Date = 8.6.2007 9:08:58 | Attr = H ] $NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Created Date = 8.6.2007 9:03:49 | Attr = H ] $NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Created Date = 8.6.2007 9:07:10 | Attr = H ] $NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Created Date = 8.6.2007 9:18:09 | Attr = H ] $NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Created Date = 8.6.2007 9:17:58 | Attr = H ] $NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Created Date = 8.6.2007 9:12:17 | Attr = H ] $NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Created Date = 8.6.2007 9:16:50 | Attr = H ] $NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Created Date = 8.6.2007 8:57:25 | Attr = H ] $NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Created Date = 16.6.2007 10:38:19 | Attr = H ] $NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Created Date = 8.6.2007 9:16:02 | Attr = H ] $NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Created Date = 8.6.2007 9:06:44 | Attr = H ] $NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Created Date = 8.6.2007 9:01:18 | Attr = H ] $NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Created Date = 8.6.2007 9:12:51 | Attr = H ] $NtUninstallKB931768$ -> %SystemRoot%\$NtUninstallKB931768$ -> [Folder | Created Date = 8.6.2007 9:10:25 | Attr = H ] $NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Created Date = 8.6.2007 9:16:14 | Attr = H ] $NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Created Date = 8.6.2007 9:12:05 | Attr = H ] $NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Created Date = 8.6.2007 9:05:39 | Attr = H ] $NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Created Date = 16.6.2007 10:39:26 | Attr = H ] $NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Created Date = 16.6.2007 10:36:29 | Attr = H ] $NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Created Date = 16.6.2007 10:38:05 | Attr = H ] $NtUninstallQ329048$ -> %SystemRoot%\$NtUninstallQ329048$ -> [Folder | Created Date = 7.6.2007 20:37:39 | Attr = H ] $NtUninstallQ329115$ -> %SystemRoot%\$NtUninstallQ329115$ -> [Folder | Created Date = 7.6.2007 20:38:04 | Attr = H ] $NtUninstallQ329170$ -> %SystemRoot%\$NtUninstallQ329170$ -> [Folder | Created Date = 7.6.2007 20:38:51 | Attr = H ] $NtUninstallQ329390$ -> %SystemRoot%\$NtUninstallQ329390$ -> [Folder | Created Date = 7.6.2007 20:37:57 | Attr = H ] $NtUninstallQ329441$ -> %SystemRoot%\$NtUninstallQ329441$ -> [Folder | Created Date = 7.6.2007 20:40:54 | Attr = H ] $NtUninstallQ329834$ -> %SystemRoot%\$NtUninstallQ329834$ -> [Folder | Created Date = 7.6.2007 20:42:23 | Attr = H ] $NtUninstallQ810577$ -> %SystemRoot%\$NtUninstallQ810577$ -> [Folder | Created Date = 7.6.2007 20:40:12 | Attr = H ] $NtUninstallQ810833$ -> %SystemRoot%\$NtUninstallQ810833$ -> [Folder | Created Date = 7.6.2007 20:43:32 | Attr = H ] $NtUninstallQ815021$ -> %SystemRoot%\$NtUninstallQ815021$ -> [Folder | Created Date = 7.6.2007 20:41:34 | Attr = H ] $xpsp1hfm$ -> %SystemRoot%\$xpsp1hfm$ -> [Folder | Created Date = 7.6.2007 20:37:37 | Attr = H ] addins -> %SystemRoot%\addins -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Alcrmv.exe -> %SystemRoot%\Alcrmv.exe -> Realtek Semiconductor Corp. [Ver = 2, 0, 0, 4 | Size = 217088 bytes | Created Date = 17.6.2007 10:11:10 | Attr = ] alcupd.exe -> %SystemRoot%\alcupd.exe -> Realtek Semiconductor Corp. [Ver = 2, 2, 0, 3 | Size = 315392 bytes | Created Date = 17.6.2007 10:11:10 | Attr = ] Alppiruusu.bmp -> %SystemRoot%\Alppiruusu.bmp -> [Ver = | Size = 17362 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] AppPatch -> %SystemRoot%\AppPatch -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Created Date = 7.6.2007 18:06:01 | Attr = S] bwUnin-6.3.2.116-7681197L.exe -> %SystemRoot%\bwUnin-6.3.2.116-7681197L.exe -> [Ver = | Size = 118842 bytes | Created Date = 7.6.2007 18:39:26 | Attr = R ] bwUnin-7.2.0.137-8876480SL.exe -> %SystemRoot%\bwUnin-7.2.0.137-8876480SL.exe -> [Ver = | Size = 118784 bytes | Created Date = 7.6.2007 18:34:15 | Attr = R ] bwUnin-8.1.1.50-8876480SL.exe -> %SystemRoot%\bwUnin-8.1.1.50-8876480SL.exe -> BackWeb Technologies Inc. [Ver = Version 8.1.1 (Build 50R) | Size = 127034 bytes | Created Date = 16.6.2007 10:51:11 | Attr = R ] Config -> %SystemRoot%\Config -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Connection Wizard -> %SystemRoot%\Connection Wizard -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] control.ini -> %SystemRoot%\control.ini -> [Ver = | Size = 0 bytes | Created Date = 7.6.2007 18:03:42 | Attr = ] Cursors -> %SystemRoot%\Cursors -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Debug -> %SystemRoot%\Debug -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] desktop.ini -> %SystemRoot%\desktop.ini -> [Ver = | Size = 2 bytes | Created Date = 7.6.2007 18:01:37 | Attr = ] Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Created Date = 7.6.2007 18:02:40 | Attr = S] Driver Cache -> %SystemRoot%\Driver Cache -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] EHome -> %SystemRoot%\EHome -> [Folder | Created Date = 7.6.2007 22:41:27 | Attr = ] Fonts -> %SystemRoot%\Fonts -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = R S] Help -> %SystemRoot%\Help -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Höyhenkuvio.bmp -> %SystemRoot%\Höyhenkuvio.bmp -> [Ver = | Size = 16730 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] ime -> %SystemRoot%\ime -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] inf -> %SystemRoot%\inf -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = H ] Installer -> %SystemRoot%\Installer -> [Folder | Created Date = 7.6.2007 18:08:51 | Attr = HS] IsUninst.exe -> %SystemRoot%\IsUninst.exe -> InstallShield Software Corporation [Ver = 5, 51, 138, 0 | Size = 306688 bytes | Created Date = 7.6.2007 18:14:18 | Attr = ] java -> %SystemRoot%\java -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Kahvikuppi.bmp -> %SystemRoot%\Kahvikuppi.bmp -> [Ver = | Size = 17062 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] Kalassa.bmp -> %SystemRoot%\Kalassa.bmp -> [Ver = | Size = 17336 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] KHALMNPR.Exe -> %SystemRoot%\KHALMNPR.Exe -> Logitech Inc. [Ver = 2.60.570 | Size = 94208 bytes | Created Date = 7.6.2007 18:32:48 | Attr = ] Media -> %SystemRoot%\Media -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 2187 bytes | Created Date = 7.6.2007 23:24:13 | Attr = ] msagent -> %SystemRoot%\msagent -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] msapps -> %SystemRoot%\msapps -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] mui -> %SystemRoot%\mui -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 69 bytes | Created Date = 16.6.2007 13:59:05 | Attr = ] nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 0 bytes | Created Date = 7.6.2007 18:58:19 | Attr = ] ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 391 bytes | Created Date = 7.6.2007 19:08:06 | Attr = ] ODBCINST.INI -> %SystemRoot%\ODBCINST.INI -> [Ver = | Size = 4405 bytes | Created Date = 7.6.2007 18:52:45 | Attr = ] Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Created Date = 7.6.2007 18:02:40 | Attr = R ] OODCNT.INI -> %SystemRoot%\OODCNT.INI -> [Ver = | Size = 0 bytes | Created Date = 25.6.2007 13:17:29 | Attr = ] OPTIONS -> %SystemRoot%\OPTIONS -> [Folder | Created Date = 17.6.2007 10:16:48 | Attr = ] PCHEALTH -> %SystemRoot%\PCHEALTH -> [Folder | Created Date = 7.6.2007 18:01:27 | Attr = ] peernet -> %SystemRoot%\peernet -> [Folder | Created Date = 7.6.2007 22:54:37 | Attr = ] Pitsikuvio 16.bmp -> %SystemRoot%\Pitsikuvio 16.bmp -> [Ver = | Size = 1272 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] Preeriatuuli.bmp -> %SystemRoot%\Preeriatuuli.bmp -> [Ver = | Size = 65954 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] Prefetch -> %SystemRoot%\Prefetch -> [Folder | Created Date = 7.6.2007 23:02:06 | Attr = ] provisioning -> %SystemRoot%\provisioning -> [Folder | Created Date = 7.6.2007 22:54:36 | Attr = ] pss -> %SystemRoot%\pss -> [Folder | Created Date = 7.6.2007 23:12:24 | Attr = ] RegisteredPackages -> %SystemRoot%\RegisteredPackages -> [Folder | Created Date = 7.6.2007 19:21:59 | Attr = ] Registration -> %SystemRoot%\Registration -> [Folder | Created Date = 7.6.2007 18:00:50 | Attr = ] REGLOCS.OLD -> %SystemRoot%\REGLOCS.OLD -> [Ver = | Size = 8192 bytes | Created Date = 7.6.2007 18:06:43 | Attr = ] repair -> %SystemRoot%\repair -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Resources -> %SystemRoot%\Resources -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Saippuakuplat.bmp -> %SystemRoot%\Saippuakuplat.bmp -> [Ver = | Size = 65978 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] Santa Fen stukko.bmp -> %SystemRoot%\Santa Fen stukko.bmp -> [Ver = | Size = 65832 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] SBWIN.INI -> %SystemRoot%\SBWIN.INI -> [Ver = | Size = 11 bytes | Created Date = 7.6.2007 19:46:34 | Attr = ] security -> %SystemRoot%\security -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Created Date = 7.6.2007 22:50:47 | Attr = ] SET3.tmp -> %SystemRoot%\SET3.tmp -> [Ver = | Size = 1085938 bytes | Created Date = 7.6.2007 18:52:16 | Attr = R ] SET7.tmp -> %SystemRoot%\SET7.tmp -> [Ver = | Size = 13923 bytes | Created Date = 7.6.2007 18:52:18 | Attr = R ] SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Created Date = 7.6.2007 19:05:46 | Attr = ] SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Created Date = 7.6.2007 19:09:24 | Attr = ] soundman.exe -> %SystemRoot%\soundman.exe -> Realtek Semiconductor Corp. [Ver = 5, 1, 0, 59 | Size = 577536 bytes | Created Date = 17.6.2007 10:11:15 | Attr = ] srchasst -> %SystemRoot%\srchasst -> [Folder | Created Date = 7.6.2007 18:02:15 | Attr = ] system -> %SystemRoot%\system -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] system32 -> %System32% -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] Tasks -> %SystemRoot%\Tasks -> [Folder | Created Date = 7.6.2007 18:01:22 | Attr = S] Temp -> %SystemRoot%\Temp -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] twain_32 -> %SystemRoot%\twain_32 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] vb.ini -> %SystemRoot%\vb.ini -> [Ver = | Size = 36 bytes | Created Date = 7.6.2007 18:00:55 | Attr = ] vbaddin.ini -> %SystemRoot%\vbaddin.ini -> [Ver = | Size = 37 bytes | Created Date = 7.6.2007 18:00:55 | Attr = ] Viherkivi.bmp -> %SystemRoot%\Viherkivi.bmp -> [Ver = | Size = 26582 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] Viuhkat.bmp -> %SystemRoot%\Viuhkat.bmp -> [Ver = | Size = 26680 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] Web -> %SystemRoot%\Web -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = R ] WindowsShell.Manifest -> %SystemRoot%\WindowsShell.Manifest -> [Ver = | Size = 749 bytes | Created Date = 7.6.2007 18:02:34 | Attr = RH ] WININIT.INI -> %SystemRoot%\WININIT.INI -> [Ver = | Size = 10 bytes | Created Date = 23.6.2007 14:36:04 | Attr = ] winnt.bmp -> %SystemRoot%\winnt.bmp -> [Ver = | Size = 48680 bytes | Created Date = 7.6.2007 18:01:37 | Attr = HS] winnt256.bmp -> %SystemRoot%\winnt256.bmp -> [Ver = | Size = 48680 bytes | Created Date = 7.6.2007 18:01:37 | Attr = HS] WinSxS -> %SystemRoot%\WinSxS -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] WMSysPr9.prx -> %SystemRoot%\WMSysPr9.prx -> [Ver = | Size = 316640 bytes | Created Date = 7.6.2007 19:22:29 | Attr = ] WMSysPrx.prx -> %SystemRoot%\WMSysPrx.prx -> [Ver = | Size = 299552 bytes | Created Date = 7.6.2007 18:03:39 | Attr = ] Zapoteekki.bmp -> %SystemRoot%\Zapoteekki.bmp -> [Ver = | Size = 9522 bytes | Created Date = 7.6.2007 17:59:52 | Attr = ] desktop.ini -> %SystemRoot%\tasks\desktop.ini -> [Ver = | Size = 65 bytes | Created Date = 7.6.2007 18:01:22 | Attr = RH ] SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Created Date = 7.6.2007 18:03:33 | Attr = H ] Scheduled scanning task.job -> %SystemRoot%\tasks\Scheduled scanning task.job -> [Ver = | Size = 568 bytes | Created Date = 7.6.2007 18:47:41 | Attr = ] $winnt$.inf -> %System32%\$winnt$.inf -> [Ver = | Size = 261 bytes | Created Date = 7.6.2007 20:51:05 | Attr = ] 1025 -> %System32%\1025 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1028 -> %System32%\1028 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1031 -> %System32%\1031 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1033 -> %System32%\1033 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1035 -> %System32%\1035 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1037 -> %System32%\1037 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1041 -> %System32%\1041 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1042 -> %System32%\1042 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 1054 -> %System32%\1054 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 2052 -> %System32%\2052 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 3076 -> %System32%\3076 -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] 3com_dmi -> %System32%\3com_dmi -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] a15.tbl -> %System32%\a15.tbl -> [Ver = | Size = 1460 bytes | Created Date = 17.6.2007 8:36:34 | Attr = ] a234.tbl -> %System32%\a234.tbl -> [Ver = | Size = 44370 bytes | Created Date = 17.6.2007 8:36:34 | Attr = ] a3d.dll -> %System32%\a3d.dll -> [Ver = 80.0.0.3 | Size = 49152 bytes | Created Date = 7.6.2007 19:46:00 | Attr = ] AC3API.DLL -> %System32%\AC3API.DLL -> Creative Technology Ltd [Ver = 5.12.01.0242-1.31.0020 | Size = 40960 bytes | Created Date = 7.6.2007 19:46:00 | Attr = ] ac3filter.acm -> %System32%\ac3filter.acm -> [Ver = | Size = 380928 bytes | Created Date = 16.6.2007 14:11:37 | Attr = ] acode.tbl -> %System32%\acode.tbl -> [Ver = | Size = 44370 bytes | Created Date = 17.6.2007 8:36:34 | Attr = ] alsndmgr.cpl -> %System32%\alsndmgr.cpl -> Realtek Semiconductor Corp. [Ver = 2, 2, 0, 73 | Size = 18804736 bytes | Created Date = 17.6.2007 10:11:15 | Attr = ] alsndmgr.wav -> %System32%\alsndmgr.wav -> [Ver = | Size = 141016 bytes | Created Date = 17.6.2007 10:11:16 | Attr = ] amcompat.tlb -> %System32%\amcompat.tlb -> [Ver = | Size = 16832 bytes | Created Date = 7.6.2007 18:03:40 | Attr = ] arphr.tbl -> %System32%\arphr.tbl -> [Ver = | Size = 110566 bytes | Created Date = 17.6.2007 8:36:37 | Attr = ] arptr.tbl -> %System32%\arptr.tbl -> [Ver = | Size = 16312 bytes | Created Date = 17.6.2007 8:36:37 | Attr = ] array30.tab -> %System32%\array30.tab -> [Ver = | Size = 146126 bytes | Created Date = 17.6.2007 8:36:37 | Attr = ] arrayhw.tab -> %System32%\arrayhw.tab -> [Ver = | Size = 18600 bytes | Created Date = 17.6.2007 8:36:37 | Attr = ] auto.ini -> %System32%\auto.ini -> [Ver = | Size = 17 bytes | Created Date = 7.6.2007 18:14:06 | Attr = ] AUTOEXEC.NT -> %System32%\AUTOEXEC.NT -> [Ver = | Size = 1636 bytes | Created Date = 7.6.2007 18:52:29 | Attr = ] Autorun.ico -> %System32%\Autorun.ico -> [Ver = | Size = 2238 bytes | Created Date = 7.6.2007 18:14:08 | Attr = ] Autorun.ini -> %System32%\Autorun.ini -> [Ver = | Size = 7969 bytes | Created Date = 7.6.2007 18:14:08 | Attr = ] big5.nls -> %System32%\big5.nls -> [Ver = | Size = 66728 bytes | Created Date = 17.6.2007 8:36:33 | Attr = ] bits -> %System32%\bits -> [Folder | Created Date = 7.6.2007 19:12:02 | Attr = ] bopomofo.nls -> %System32%\bopomofo.nls -> [Ver = | Size = 82172 bytes | Created Date = 17.6.2007 8:36:33 | Attr = ] bopomofo.uce -> %System32%\bopomofo.uce -> [Ver = | Size = 22984 bytes | Created Date = 7.6.2007 17:59:50 | Attr = ] CatRoot -> %System32%\CatRoot -> [Folder | Created Date = 7.6.2007 18:52:10 | Attr = ] CatRoot2 -> %System32%\CatRoot2 -> [Folder | Created Date = 7.6.2007 18:52:10 | Attr = ] cdplayer.exe.manifest -> %System32%\cdplayer.exe.manifest -> [Ver = | Size = 749 bytes | Created Date = 7.6.2007 18:02:34 | Attr = RH ] ChCfg.exe -> %System32%\ChCfg.exe -> [Ver = | Size = 49152 bytes | Created Date = 17.6.2007 10:16:03 | Attr = ] Com -> %System32%\Com -> [Folder | Created Date = 7.6.2007 17:59:44 | Attr = ] config -> %System32%\config -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] CONFIG.NT -> %System32%\CONFIG.NT -> [Ver = | Size = 2518 bytes | Created Date = 7.6.2007 18:03:42 | Attr = ] CONFIG.TMP -> %System32%\CONFIG.TMP -> [Ver = | Size = 2518 bytes | Created Date = 7.6.2007 18:52:29 | Attr = ] CTDetect.cnt -> %System32%\CTDetect.cnt -> [Ver = | Size = 641 bytes | Created Date = 7.6.2007 19:47:12 | Attr = ] CTDETECT.CPL -> %System32%\CTDETECT.CPL -> Creative Technology Ltd. [Ver = 2.0.0.0 | Size = 230912 bytes | Created Date = 7.6.2007 19:47:13 | Attr = ] CTDetect.hlp -> %System32%\CTDetect.hlp -> [Ver = | Size = 17350 bytes | Created Date = 7.6.2007 19:47:12 | Attr = ] CTDetres.dll -> %System32%\CTDetres.dll -> Creative Technology Ltd. [Ver = 2.0.0.0 | Size = 62976 bytes | Created Date = 7.6.2007 19:47:12 | Attr = ] CTDrmRes.dll -> %System32%\CTDrmRes.dll -> Creative Technology Ltd. [Ver = 1.12.0.0 | Size = 73728 bytes | Created Date = 7.6.2007 19:47:42 | Attr = ] CTDRMUI.dll -> %System32%\CTDRMUI.dll -> Creative Technology Ltd. [Ver = 1.12.0.0 | Size = 163840 bytes | Created Date = 7.6.2007 19:47:39 | Attr = ] CTIntRes.dll -> %System32%\CTIntRes.dll -> Creative Technology Ltd. [Ver = 1.10.0.0 | Size = 28672 bytes | Created Date = 7.6.2007 19:47:42 | Attr = ] CTMedEng.DLL -> %System32%\CTMedEng.DLL -> Creative Technology Ltd. [Ver = 3.0.16.0 | Size = 331776 bytes | Created Date = 7.6.2007 19:47:39 | Attr = ] CTMERes.DLL -> %System32%\CTMERes.DLL -> Creative Technology Ltd. [Ver = 1.0.0.0 | Size = 24576 bytes | Created Date = 7.6.2007 19:47:42 | Attr = ] ctmp3.acm -> %System32%\ctmp3.acm -> Creative Technology Ltd. [Ver = 5.01.01 | Size = 364544 bytes | Created Date = 7.6.2007 19:47:39 | Attr = ] CTMp3.crl -> %System32%\CTMp3.crl -> Creative Technology Ltd. [Ver = 2.0.4.0 | Size = 55808 bytes | Created Date = 7.6.2007 19:48:52 | Attr = ] CTPlay.CRL -> %System32%\CTPlay.CRL -> Creative Technology Ltd. [Ver = 1.54.4.0 | Size = 217088 bytes | Created Date = 7.6.2007 19:47:12 | Attr = ] CTsvcCDA.EXE -> %System32%\CTsvcCDA.EXE -> Creative Technology Ltd [Ver = 1.0.1.0 | Size = 44032 bytes | Created Date = 7.6.2007 19:48:47 | Attr = ] CTsvcCtl.EXE -> %System32%\CTsvcCtl.EXE -> Creative Technology Ltd [Ver = 1.0.0.0 | Size = 25088 bytes | Created Date = 7.6.2007 19:47:14 | Attr = ] ctwdm32.dll -> %System32%\ctwdm32.dll -> Creative Technology Ltd. [Ver = 5.0.0.2001 | Size = 4096 bytes | Created Date = 7.6.2007 18:54:03 | Attr = ] c_10001.nls -> %System32%\c_10001.nls -> [Ver = | Size = 162850 bytes | Created Date = 17.6.2007 8:35:49 | Attr = ] c_10002.nls -> %System32%\c_10002.nls -> [Ver = | Size = 195618 bytes | Created Date = 17.6.2007 8:36:33 | Attr = ] c_10003.nls -> %System32%\c_10003.nls -> [Ver = | Size = 177698 bytes | Created Date = 17.6.2007 8:36:14 | Attr = ] c_10006.nls -> %System32%\c_10006.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:36 | Attr = ] c_10007.nls -> %System32%\c_10007.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:38 | Attr = ] c_10008.nls -> %System32%\c_10008.nls -> [Ver = | Size = 173602 bytes | Created Date = 17.6.2007 8:36:24 | Attr = ] c_10010.nls -> %System32%\c_10010.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:34 | Attr = ] c_10017.nls -> %System32%\c_10017.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:38 | Attr = ] c_10029.nls -> %System32%\c_10029.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:34 | Attr = ] c_10081.nls -> %System32%\c_10081.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:39 | Attr = ] c_10082.nls -> %System32%\c_10082.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:34 | Attr = ] c_1361.nls -> %System32%\c_1361.nls -> [Ver = | Size = 189986 bytes | Created Date = 17.6.2007 8:36:14 | Attr = ] c_20000.nls -> %System32%\c_20000.nls -> [Ver = | Size = 180258 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20127.nls -> %System32%\c_20127.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:32 | Attr = ] c_20290.nls -> %System32%\c_20290.nls -> [Ver = | Size = 66082 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20932.nls -> %System32%\c_20932.nls -> [Ver = | Size = 180770 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20936.nls -> %System32%\c_20936.nls -> [Ver = | Size = 173602 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20949.nls -> %System32%\c_20949.nls -> [Ver = | Size = 177698 bytes | Created Date = 17.6.2007 8:35:51 | Attr = ] c_21027.nls -> %System32%\c_21027.nls -> [Ver = | Size = 66082 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] C_28594.NLS -> %System32%\C_28594.NLS -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:35 | Attr = ] C_28595.NLS -> %System32%\C_28595.NLS -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:38 | Attr = ] C_28597.NLS -> %System32%\C_28597.NLS -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:36 | Attr = ] c_28599.nls -> %System32%\c_28599.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:39 | Attr = ] c_737.nls -> %System32%\c_737.nls -> [Ver = | Size = 66594 bytes | Created Date = 7.6.2007 18:52:36 | Attr = ] c_852.nls -> %System32%\c_852.nls -> [Ver = | Size = 66594 bytes | Created Date = 7.6.2007 18:52:33 | Attr = ] c_855.nls -> %System32%\c_855.nls -> [Ver = | Size = 66594 bytes | Created Date = 7.6.2007 18:52:35 | Attr = ] c_857.nls -> %System32%\c_857.nls -> [Ver = | Size = 66594 bytes | Created Date = 7.6.2007 18:52:39 | Attr = ] c_866.nls -> %System32%\c_866.nls -> [Ver = | Size = 66594 bytes | Created Date = 7.6.2007 18:52:35 | Attr = ] c_869.nls -> %System32%\c_869.nls -> [Ver = | Size = 66594 bytes | Created Date = 7.6.2007 18:52:36 | Attr = ] c_875.nls -> %System32%\c_875.nls -> [Ver = | Size = 66082 bytes | Created Date = 7.6.2007 18:52:36 | Attr = ] Data -> %System32%\Data -> [Folder | Created Date = 7.6.2007 19:46:03 | Attr = ] dayiphr.tbl -> %System32%\dayiphr.tbl -> [Ver = | Size = 520 bytes | Created Date = 17.6.2007 8:36:34 | Attr = ] dayiptr.tbl -> %System32%\dayiptr.tbl -> [Ver = | Size = 700 bytes | Created Date = 17.6.2007 8:36:34 | Attr = ] default.ecw -> %System32%\default.ecw -> [Ver = | Size = 2259067 bytes | Created Date = 7.6.2007 19:46:02 | Attr = ] Defaults -> %System32%\Defaults -> [Folder | Created Date = 7.6.2007 19:46:31 | Attr = ] desktop.ini -> %System32%\desktop.ini -> [Ver = | Size = 2 bytes | Created Date = 7.6.2007 18:01:37 | Attr = ] devcon32.dll -> %System32%\devcon32.dll -> Creative Technology Ltd. [Ver = 4.06.651 | Size = 256512 bytes | Created Date = 7.6.2007 18:54:03 | Attr = ] devldr32.exe -> %System32%\devldr32.exe -> Creative Technology Ltd. [Ver = 1, 0, 0, 17 | Size = 24064 bytes | Created Date = 7.6.2007 18:54:03 | Attr = ] dgrpsetu.dll -> %System32%\dgrpsetu.dll -> Digi International, Inc. [Ver = 2.3.7 | Size = 176157 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] dgsetup.dll -> %System32%\dgsetup.dll -> Digi International [Ver = v3.7.3.0 | Size = 85020 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] dhcp -> %System32%\dhcp -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] DirectX -> %System32%\DirectX -> [Folder | Created Date = 7.6.2007 18:02:09 | Attr = ] dllcache -> %System32%\dllcache -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = RHS] drivers -> %System32%\drivers -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] DRVSTORE -> %System32%\DRVSTORE -> [Folder | Created Date = 7.6.2007 19:24:34 | Attr = ] emptyregdb.dat -> %System32%\emptyregdb.dat -> [Ver = | Size = 21672 bytes | Created Date = 7.6.2007 18:01:08 | Attr = ] En.ini -> %System32%\En.ini -> [Ver = | Size = 32647 bytes | Created Date = 7.6.2007 18:14:08 | Attr = ] EqnClass.Dll -> %System32%\EqnClass.Dll -> Equinox Systems Inc. [Ver = 5.0u(58) | Size = 103424 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] export -> %System32%\export -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] ff_vfw.dll -> %System32%\ff_vfw.dll -> [Ver = | Size = 5120 bytes | Created Date = 16.6.2007 14:18:00 | Attr = ] ff_vfw.dll.manifest -> %System32%\ff_vfw.dll.manifest -> [Ver = | Size = 547 bytes | Created Date = 16.6.2007 14:18:00 | Attr = ] FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 199344 bytes | Created Date = 7.6.2007 18:51:48 | Attr = ] Futuremark -> %System32%\Futuremark -> [Folder | Created Date = 19.6.2007 13:51:51 | Attr = ] gb2312.uce -> %System32%\gb2312.uce -> [Ver = | Size = 24006 bytes | Created Date = 7.6.2007 17:59:50 | Attr = ] hticons.dll -> %System32%\hticons.dll -> Hilgraeve, Inc. [Ver = 5.1.2600.0 | Size = 44544 bytes | Created Date = 7.6.2007 17:59:56 | Attr = ] hypertrm.dll -> %System32%\hypertrm.dll -> Hilgraeve, Inc. [Ver = 5.1.2600.2563 | Size = 350208 bytes | Created Date = 7.6.2007 17:59:56 | Attr = ] ias -> %System32%\ias -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] icsxml -> %System32%\icsxml -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] ideograf.uce -> %System32%\ideograf.uce -> [Ver = | Size = 60458 bytes | Created Date = 7.6.2007 17:59:50 | Attr = ] ImagX7.dll -> %System32%\ImagX7.dll -> Pegasus Imaging Corp. [Ver = 7.0.46.0 | Size = 1568768 bytes | Created Date = 16.6.2007 13:56:32 | Attr = ] ImagXpr7.dll -> %System32%\ImagXpr7.dll -> Pegasus Imaging Corp. [Ver = 7.0.46.0 | Size = 476320 bytes | Created Date = 16.6.2007 13:56:32 | Attr = ] ImagXR7.dll -> %System32%\ImagXR7.dll -> Pegasus Imaging Corp. [Ver = 7.0.476.0 | Size = 262144 bytes | Created Date = 16.6.2007 13:56:32 | Attr = ] ImagXRA7.dll -> %System32%\ImagXRA7.dll -> Pegasus Imaging Corp. [Ver = 7.0.476.0 | Size = 471040 bytes | Created Date = 16.6.2007 13:56:32 | Attr = ] IME -> %System32%\IME -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] inetsrv -> %System32%\inetsrv -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] INETWH32.DLL -> %System32%\INETWH32.DLL -> Blue Sky Software Corporation. [Ver = 7.00.131 | Size = 54784 bytes | Created Date = 7.6.2007 19:46:32 | Attr = ] isrdbg32.dll -> %System32%\isrdbg32.dll -> Intel Corporation [Ver = 0.0 | Size = 32768 bytes | Created Date = 7.6.2007 18:01:30 | Attr = ] kanji_1.uce -> %System32%\kanji_1.uce -> [Ver = | Size = 6948 bytes | Created Date = 7.6.2007 17:59:50 | Attr = ] kanji_2.uce -> %System32%\kanji_2.uce -> [Ver = | Size = 8484 bytes | Created Date = 7.6.2007 17:59:50 | Attr = ] kemutb.dll -> %System32%\kemutb.dll -> Logitech Inc. [Ver = 2.60.606 | Size = 155648 bytes | Created Date = 7.6.2007 18:33:06 | Attr = ] KemUtil.dll -> %System32%\KemUtil.dll -> Logitech Inc. [Ver = 2.60.606 | Size = 126976 bytes | Created Date = 7.6.2007 18:33:06 | Attr = ] KemWnd.dll -> %System32%\KemWnd.dll -> Logitech Inc. [Ver = 2.60.606 | Size = 110592 bytes | Created Date = 7.6.2007 18:33:06 | Attr = ] KemXML.dll -> %System32%\KemXML.dll -> Logitech Inc. [Ver = 2.60.606 | Size = 53248 bytes | Created Date = 7.6.2007 18:33:06 | Attr = ] korean.uce -> %System32%\korean.uce -> [Ver = | Size = 12876 bytes | Created Date = 7.6.2007 17:59:50 | Attr = ] korwbrkr.lex -> %System32%\korwbrkr.lex -> [Ver = | Size = 1158818 bytes | Created Date = 17.6.2007 8:36:47 | Attr = ] ksc.nls -> %System32%\ksc.nls -> [Ver = | Size = 47066 bytes | Created Date = 17.6.2007 8:36:13 | Attr = ] lcphrase.tbl -> %System32%\lcphrase.tbl -> [Ver = | Size = 211938 bytes | Created Date = 17.6.2007 8:36:37 | Attr = ] lcptr.tbl -> %System32%\lcptr.tbl -> [Ver = | Size = 24114 bytes | Created Date = 17.6.2007 8:36:37 | Attr = ] logonui.exe.manifest -> %System32%\logonui.exe.manifest -> [Ver = | Size = 488 bytes | Created Date = 7.6.2007 18:02:40 | Attr = RH ] Macromed -> %System32%\Macromed -> [Folder | Created Date = 7.6.2007 18:02:08 | Attr = ] Microsoft -> %System32%\Microsoft -> [Folder | Created Date = 7.6.2007 18:42:04 | Attr = S] msdayi.tbl -> %System32%\msdayi.tbl -> [Ver = | Size = 116285 bytes | Created Date = 17.6.2007 8:36:34 | Attr = ] MsDtc -> %System32%\MsDtc -> [Folder | Created Date = 7.6.2007 17:59:46 | Attr = ] msdtcprf.h -> %System32%\msdtcprf.h -> [Ver = | Size = 768 bytes | Created Date = 7.6.2007 17:59:45 | Attr = ] msdtcprf.ini -> %System32%\msdtcprf.ini -> [Ver = | Size = 3836 bytes | Created Date = 7.6.2007 17:59:45 | Attr = ] mui -> %System32%\mui -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] ncpa.cpl.manifest -> %System32%\ncpa.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 7.6.2007 18:02:34 | Attr = RH ] NeroCheck.exe -> %System32%\NeroCheck.exe -> Ahead Software Gmbh [Ver = 1, 0, 0, 2 | Size = 155648 bytes | Created Date = 16.6.2007 13:56:30 | Attr = ] noise.jpn -> %System32%\noise.jpn -> [Ver = | Size = 2060 bytes | Created Date = 17.6.2007 8:36:47 | Attr = ] noise.kor -> %System32%\noise.kor -> [Ver = | Size = 1486 bytes | Created Date = 17.6.2007 8:36:47 | Attr = ] npp -> %System32%\npp -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] nscompat.tlb -> %System32%\nscompat.tlb -> [Ver = | Size = 23392 bytes | Created Date = 7.6.2007 18:03:40 | Attr = ] nwc.cpl.manifest -> %System32%\nwc.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 7.6.2007 18:02:34 | Attr = RH ] oobe -> %System32%\oobe -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] oodag -> %System32%\oodag -> [Folder | Created Date = 25.6.2007 13:10:46 | Attr = ] oodbs.lor -> %System32%\oodbs.lor -> [Ver = | Size = 1277 bytes | Created Date = 26.6.2007 6:19:06 | Attr = ] PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 692412 bytes | Created Date = 7.6.2007 18:52:46 | Attr = ] PFMODNT.SYS -> %System32%\PFMODNT.SYS -> Creative Technology Ltd. [Ver = 2.0.0.0 | Size = 6752 bytes | Created Date = 7.6.2007 19:45:05 | Attr = ] phon.tbl -> %System32%\phon.tbl -> [Ver = | Size = 4071 bytes | Created Date = 17.6.2007 8:36:35 | Attr = ] phoncode.tbl -> %System32%\phoncode.tbl -> [Ver = | Size = 43242 bytes | Created Date = 17.6.2007 8:36:36 | Attr = ] phonptr.tbl -> %System32%\phonptr.tbl -> [Ver = | Size = 2714 bytes | Created Date = 17.6.2007 8:36:36 | Attr = ] PINTLPAD.HLP -> %System32%\PINTLPAD.HLP -> [Ver = | Size = 14821 bytes | Created Date = 17.6.2007 8:36:32 | Attr = ] PINTLPAE.HLP -> %System32%\PINTLPAE.HLP -> [Ver = | Size = 16254 bytes | Created Date = 17.6.2007 8:36:32 | Attr = ] prc.nls -> %System32%\prc.nls -> [Ver = | Size = 83748 bytes | Created Date = 17.6.2007 8:36:25 | Attr = ] prcp.nls -> %System32%\prcp.nls -> [Ver = | Size = 83748 bytes | Created Date = 17.6.2007 8:36:25 | Attr = ] PreInstall -> %System32%\PreInstall -> [Folder | Created Date = 8.6.2007 8:34:45 | Attr = ] px.dll -> %System32%\px.dll -> Sonic Solutions [Ver = 3.6.36.500 | Size = 547576 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxafs.dll -> %System32%\pxafs.dll -> Sonic Solutions [Ver = 3.6.36.500 | Size = 129784 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxcpya64.exe -> %System32%\pxcpya64.exe -> Sonic Solutions [Ver = 1.00.40a | Size = 64760 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxdrv.dll -> %System32%\pxdrv.dll -> Sonic Solutions [Ver = 1.02.05a | Size = 510712 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxhpinst.exe -> %System32%\pxhpinst.exe -> Sonic Solutions [Ver = 3.00.56a | Size = 72440 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxinsa64.exe -> %System32%\pxinsa64.exe -> Sonic Solutions [Ver = 3.00.56a | Size = 64760 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxmas.dll -> %System32%\pxmas.dll -> Sonic Solutions [Ver = 3.6.36.500 | Size = 187128 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxsfs.dll -> %System32%\pxsfs.dll -> Sonic Solutions [Ver = 3.6.36.500 | Size = 1628920 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] pxwave.dll -> %System32%\pxwave.dll -> Sonic Solutions [Ver = 3.6.36.500 | Size = 379640 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] ras -> %System32%\ras -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] ReinstallBackups -> %System32%\ReinstallBackups -> [Folder | Created Date = 7.6.2007 18:14:33 | Attr = ] Restore -> %System32%\Restore -> [Folder | Created Date = 7.6.2007 18:01:32 | Attr = ] RtlCPAPI.dll -> %System32%\RtlCPAPI.dll -> [Ver = 1, 0, 1, 4 | Size = 147456 bytes | Created Date = 17.6.2007 10:11:14 | Attr = ] RTLCPL.exe -> %System32%\RTLCPL.exe -> Realtek Semiconductor Corp. [Ver = 1.0.1.66 | Size = 10528768 bytes | Created Date = 17.6.2007 10:11:16 | Attr = ] sapi.cpl.manifest -> %System32%\sapi.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 7.6.2007 18:02:34 | Attr = RH ] sblfx.dll -> %System32%\sblfx.dll -> Creative Technology Ltd. [Ver = 5.12.01.3210 | Size = 495616 bytes | Created Date = 7.6.2007 18:54:04 | Attr = ] settings.sfm -> %System32%\settings.sfm -> [Ver = | Size = 1080 bytes | Created Date = 7.6.2007 20:56:19 | Attr = ] settingsbkup.sfm -> %System32%\settingsbkup.sfm -> [Ver = | Size = 1080 bytes | Created Date = 7.6.2007 20:56:19 | Attr = ] Setup -> %System32%\Setup -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] sfman32.dll -> %System32%\sfman32.dll -> Creative Technology Ltd. [Ver = 4.06.501 | Size = 51200 bytes | Created Date = 7.6.2007 18:54:04 | Attr = ] SFMS32.DLL -> %System32%\SFMS32.DLL -> Creative Technology Ltd [Ver = 5.12.01.0242-1.31.0020 | Size = 258048 bytes | Created Date = 7.6.2007 19:46:02 | Attr = ] ShellExt -> %System32%\ShellExt -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] shiftjis.uce -> %System32%\shiftjis.uce -> [Ver = | Size = 16740 bytes | Created Date = 7.6.2007 17:59:50 | Attr = ] SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Created Date = 21.6.2007 8:23:09 | Attr = ] spool -> %System32%\spool -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] spxcoins.dll -> %System32%\spxcoins.dll -> Perle Systems Ltd. [Ver = 1.0.0.0007 | Size = 24661 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] subrange.uce -> %System32%\subrange.uce -> [Ver = | Size = 93702 bytes | Created Date = 7.6.2007 17:59:51 | Attr = ] tslabels.h -> %System32%\tslabels.h -> [Ver = | Size = 3286 bytes | Created Date = 7.6.2007 17:59:47 | Attr = ] tslabels.ini -> %System32%\tslabels.ini -> [Ver = | Size = 26181 bytes | Created Date = 7.6.2007 17:59:47 | Attr = ] TwnLib20.dll -> %System32%\TwnLib20.dll -> Pegasus Software [Ver = 2.02.010 | Size = 106496 bytes | Created Date = 16.6.2007 13:56:37 | Attr = ] usmt -> %System32%\usmt -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] usrlogon.cmd -> %System32%\usrlogon.cmd -> [Ver = | Size = 1161 bytes | Created Date = 7.6.2007 17:59:47 | Attr = ] Video.skn -> %System32%\Video.skn -> Creative Technology Ltd. [Ver = 3.0.1.0 | Size = 139264 bytes | Created Date = 7.6.2007 19:47:42 | Attr = ] vusetup.dll -> %System32%\vusetup.dll -> [Ver = | Size = 45056 bytes | Created Date = 18.6.2007 11:36:49 | Attr = ] vxblock.dll -> %System32%\vxblock.dll -> Sonic Solutions [Ver = 1.00.74a | Size = 39672 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] wbem -> %System32%\wbem -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] WindowsLogon.manifest -> %System32%\WindowsLogon.manifest -> [Ver = | Size = 488 bytes | Created Date = 7.6.2007 18:02:40 | Attr = RH ] WINPY.MB -> %System32%\WINPY.MB -> [Ver = | Size = 1783864 bytes | Created Date = 17.6.2007 8:36:26 | Attr = ] wins -> %System32%\wins -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] WINSP.MB -> %System32%\WINSP.MB -> [Ver = | Size = 1564868 bytes | Created Date = 17.6.2007 8:36:26 | Attr = ] WINZM.MB -> %System32%\WINZM.MB -> [Ver = | Size = 1223500 bytes | Created Date = 17.6.2007 8:36:27 | Attr = ] wmimgmt.msc -> %System32%\wmimgmt.msc -> [Ver = | Size = 63488 bytes | Created Date = 7.6.2007 17:59:35 | Attr = ] wmpscheme.xml -> %System32%\wmpscheme.xml -> [Ver = | Size = 25065 bytes | Created Date = 7.6.2007 18:03:40 | Attr = ] wpa.bak -> %System32%\wpa.bak -> [Ver = | Size = 12980 bytes | Created Date = 7.6.2007 18:13:09 | Attr = ] wuaucpl.cpl.manifest -> %System32%\wuaucpl.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 7.6.2007 18:02:34 | Attr = RH ] xircom -> %System32%\xircom -> [Folder | Created Date = 7.6.2007 18:03:58 | Attr = ] xjis.nls -> %System32%\xjis.nls -> [Ver = | Size = 28288 bytes | Created Date = 17.6.2007 8:35:49 | Attr = ] a3d.dll -> %System32%\dllcache\a3d.dll -> [Ver = 80.0.0.3 | Size = 49152 bytes | Created Date = 7.6.2007 19:46:00 | Attr = ] big5.nls -> %System32%\dllcache\big5.nls -> [Ver = | Size = 66728 bytes | Created Date = 17.6.2007 8:36:33 | Attr = ] bopomofo.nls -> %System32%\dllcache\bopomofo.nls -> [Ver = | Size = 82172 bytes | Created Date = 17.6.2007 8:36:33 | Attr = ] cap7146.sys -> %System32%\dllcache\cap7146.sys -> Philips Semiconductors GmbH [Ver = 1.00 (XPClient.010817-1148) | Size = 54528 bytes | Created Date = 7.6.2007 18:04:18 | Attr = ] c_10001.nls -> %System32%\dllcache\c_10001.nls -> [Ver = | Size = 162850 bytes | Created Date = 17.6.2007 8:35:49 | Attr = ] c_10002.nls -> %System32%\dllcache\c_10002.nls -> [Ver = | Size = 195618 bytes | Created Date = 17.6.2007 8:36:33 | Attr = ] c_10003.nls -> %System32%\dllcache\c_10003.nls -> [Ver = | Size = 177698 bytes | Created Date = 17.6.2007 8:36:14 | Attr = ] c_10008.nls -> %System32%\dllcache\c_10008.nls -> [Ver = | Size = 173602 bytes | Created Date = 17.6.2007 8:36:24 | Attr = ] c_1361.nls -> %System32%\dllcache\c_1361.nls -> [Ver = | Size = 189986 bytes | Created Date = 17.6.2007 8:36:14 | Attr = ] c_20000.nls -> %System32%\dllcache\c_20000.nls -> [Ver = | Size = 180258 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20290.nls -> %System32%\dllcache\c_20290.nls -> [Ver = | Size = 66082 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20932.nls -> %System32%\dllcache\c_20932.nls -> [Ver = | Size = 180770 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20936.nls -> %System32%\dllcache\c_20936.nls -> [Ver = | Size = 173602 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] c_20949.nls -> %System32%\dllcache\c_20949.nls -> [Ver = | Size = 177698 bytes | Created Date = 17.6.2007 8:35:51 | Attr = ] c_21027.nls -> %System32%\dllcache\c_21027.nls -> [Ver = | Size = 66082 bytes | Created Date = 17.6.2007 8:35:50 | Attr = ] dgrpsetu.dll -> %System32%\dllcache\dgrpsetu.dll -> Digi International, Inc. [Ver = 2.3.7 | Size = 176157 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] dgsetup.dll -> %System32%\dllcache\dgsetup.dll -> Digi International [Ver = v3.7.3.0 | Size = 85020 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] eqnclass.dll -> %System32%\dllcache\eqnclass.dll -> Equinox Systems Inc. [Ver = 5.0u(58) | Size = 103424 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] esucmd.dll -> %System32%\dllcache\esucmd.dll -> SEIKO EPSON CORP. [Ver = 1.00 | Size = 31744 bytes | Created Date = 7.6.2007 18:04:29 | Attr = ] esuimgd.dll -> %System32%\dllcache\esuimgd.dll -> SEIKO EPSON CORP. [Ver = 1.00 | Size = 57856 bytes | Created Date = 7.6.2007 18:04:29 | Attr = ] esunid.dll -> %System32%\dllcache\esunid.dll -> SEIKO EPSON CORP. [Ver = 1.00 | Size = 45056 bytes | Created Date = 7.6.2007 18:04:29 | Attr = ] hanja.lex -> %System32%\dllcache\hanja.lex -> [Ver = | Size = 108827 bytes | Created Date = 17.6.2007 8:36:21 | Attr = ] HPCRDP.CAT -> %System32%\dllcache\HPCRDP.CAT -> [Ver = | Size = 13497 bytes | Created Date = 7.6.2007 18:52:20 | Attr = ] htrn_jis.dll -> %System32%\dllcache\htrn_jis.dll -> Hilgraeve, Inc. [Ver = 5.1.2600.0 | Size = 13312 bytes | Created Date = 7.6.2007 17:59:56 | Attr = ] hwxjpn.dll -> %System32%\dllcache\hwxjpn.dll -> [Ver = | Size = 13463552 bytes | Created Date = 17.6.2007 8:36:07 | Attr = ] IASNT4.CAT -> %System32%\dllcache\IASNT4.CAT -> [Ver = | Size = 8599 bytes | Created Date = 7.6.2007 18:52:20 | Attr = ] imekr.lex -> %System32%\dllcache\imekr.lex -> [Ver = | Size = 134339 bytes | Created Date = 17.6.2007 8:36:21 | Attr = ] korwbrkr.lex -> %System32%\dllcache\korwbrkr.lex -> [Ver = | Size = 1158818 bytes | Created Date = 17.6.2007 8:36:47 | Attr = ] ksc.nls -> %System32%\dllcache\ksc.nls -> [Ver = | Size = 47066 bytes | Created Date = 17.6.2007 8:36:13 | Attr = ] ltts1033.lxa -> %System32%\dllcache\ltts1033.lxa -> [Ver = | Size = 643717 bytes | Created Date = 7.6.2007 18:52:42 | Attr = ] MAPIMIG.CAT -> %System32%\dllcache\MAPIMIG.CAT -> [Ver = | Size = 399670 bytes | Created Date = 7.6.2007 18:52:19 | Attr = ] MW770.CAT -> %System32%\dllcache\MW770.CAT -> [Ver = | Size = 37509 bytes | Created Date = 7.6.2007 18:52:20 | Attr = ] nls302en.lex -> %System32%\dllcache\nls302en.lex -> [Ver = | Size = 4399505 bytes | Created Date = 7.6.2007 18:02:16 | Attr = ] NT5IIS.CAT -> %System32%\dllcache\NT5IIS.CAT -> [Ver = | Size = 809684 bytes | Created Date = 7.6.2007 18:52:19 | Attr = ] OEMBIOS.CAT -> %System32%\dllcache\OEMBIOS.CAT -> [Ver = | Size = 7407 bytes | Created Date = 7.6.2007 18:52:20 | Attr = ] prc.nls -> %System32%\dllcache\prc.nls -> [Ver = | Size = 83748 bytes | Created Date = 17.6.2007 8:36:25 | Attr = ] prcp.nls -> %System32%\dllcache\prcp.nls -> [Ver = | Size = 83748 bytes | Created Date = 17.6.2007 8:36:25 | Attr = ] r1033tts.lxa -> %System32%\dllcache\r1033tts.lxa -> [Ver = | Size = 605050 bytes | Created Date = 7.6.2007 18:52:43 | Attr = ] rw330ext.dll -> %System32%\dllcache\rw330ext.dll -> Ricoh Co., Ltd. [Ver = 5, 0, 2419, 1 | Size = 26624 bytes | Created Date = 7.6.2007 18:05:28 | Attr = ] rwia001.dll -> %System32%\dllcache\rwia001.dll -> Ricoh Co., Ltd. [Ver = 5, 0, 2419, 1 | Size = 79872 bytes | Created Date = 7.6.2007 18:05:29 | Attr = ] rwia330.dll -> %System32%\dllcache\rwia330.dll -> Ricoh Co., Ltd. [Ver = 5, 0, 2419, 1 | Size = 79872 bytes | Created Date = 7.6.2007 18:05:29 | Attr = ] sam.sdf -> %System32%\dllcache\sam.sdf -> [Ver = | Size = 888 bytes | Created Date = 7.6.2007 18:52:43 | Attr = ] sam.spd -> %System32%\dllcache\sam.spd -> [Ver = | Size = 1685606 bytes | Created Date = 7.6.2007 18:52:43 | Attr = ] spxcoins.dll -> %System32%\dllcache\spxcoins.dll -> Perle Systems Ltd. [Ver = 1.0.0.0007 | Size = 24661 bytes | Created Date = 7.6.2007 18:52:31 | Attr = ] srframe.mmf -> %System32%\dllcache\srframe.mmf -> [Ver = | Size = 984 bytes | Created Date = 7.6.2007 18:01:32 | Attr = ] xjis.nls -> %System32%\dllcache\xjis.nls -> [Ver = | Size = 28288 bytes | Created Date = 17.6.2007 8:35:49 | Attr = ] 2gmgsmt.sf2 -> %System32%\drivers\2gmgsmt.sf2 -> [Ver = | Size = 2104298 bytes | Created Date = 7.6.2007 18:54:03 | Attr = ] ac97via.sys -> %System32%\drivers\ac97via.sys -> VIA Technologies, Inc. [Ver = 5.10.00.3622 built by: WinDDK | Size = 84480 bytes | Created Date = 7.6.2007 18:54:13 | Attr = ] alcxwdm.sys -> %System32%\drivers\alcxwdm.sys -> Realtek Semiconductor Corp. [Ver = 5.10.00.6240 built by: WinDDK | Size = 4030144 bytes | Created Date = 17.6.2007 10:11:14 | Attr = ] AvgAsCln.sys -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Created Date = 8.6.2007 13:53:53 | Attr = ] cdr4_xp.sys -> %System32%\drivers\cdr4_xp.sys -> Sonic Solutions [Ver = 8.0.0.212 | Size = 9336 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] cdralw2k.sys -> %System32%\drivers\cdralw2k.sys -> Sonic Solutions [Ver = 8.0.0.212 | Size = 9464 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] ctlfacem.sys -> %System32%\drivers\ctlfacem.sys -> Creative Technology Ltd. [Ver = 5.12.01.2108 built by: WinDDK | Size = 6912 bytes | Created Date = 7.6.2007 18:54:03 | Attr = ] ctljystk.sys -> %System32%\drivers\ctljystk.sys -> Creative Technology Ltd. [Ver = 5.1.2501.0 built by: WinDDK | Size = 3712 bytes | Created Date = 7.6.2007 18:54:01 | Attr = ] disdn -> %System32%\drivers\disdn -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] emu10k1m.sys -> %System32%\drivers\emu10k1m.sys -> Creative Technology Ltd. [Ver = 5.12.01.3300 built by: WinDDK | Size = 283904 bytes | Created Date = 7.6.2007 18:54:04 | Attr = ] Entech.sys -> %System32%\drivers\Entech.sys -> EnTech Taiwan [Ver = 1.0 | Size = 21664 bytes | Created Date = 19.6.2007 13:51:53 | Attr = ] Entech.vxd -> %System32%\drivers\Entech.vxd -> [Ver = | Size = 6173 bytes | Created Date = 19.6.2007 13:51:53 | Attr = ] Entech64.sys -> %System32%\drivers\Entech64.sys -> EnTech Taiwan [Ver = 1.0 | Size = 5632 bytes | Created Date = 19.6.2007 13:51:53 | Attr = ] etc -> %System32%\drivers\etc -> [Folder | Created Date = 7.6.2007 20:47:44 | Attr = ] fsdfw.sys -> %System32%\drivers\fsdfw.sys -> F-Secure Corporation [Ver = 6.02.540 | Size = 70896 bytes | Created Date = 7.6.2007 18:39:36 | Attr = ] fsndis5.sys -> %System32%\drivers\fsndis5.sys -> F-Secure Corporation [Ver = 6.02.540 | Size = 33584 bytes | Created Date = 7.6.2007 18:39:36 | Attr = ] hmnt.sys -> %System32%\drivers\hmnt.sys -> VIA Tech Inc [Ver = 1.00 | Size = 11182 bytes | Created Date = 7.6.2007 18:16:09 | Attr = ] L8042Kbd.SYS -> %System32%\drivers\L8042Kbd.SYS -> Logitech, Inc. [Ver = 2.60.570.00 | Size = 13568 bytes | Created Date = 7.6.2007 18:33:19 | Attr = ] L8042MOU.SYS -> %System32%\drivers\L8042MOU.SYS -> Logitech, Inc. [Ver = 2.60.570.00 | Size = 55808 bytes | Created Date = 7.6.2007 18:33:11 | Attr = ] LHidKE.Sys -> %System32%\drivers\LHidKE.Sys -> Logitech, Inc. [Ver = 2.60.570.00 | Size = 27008 bytes | Created Date = 7.6.2007 18:32:49 | Attr = ] LMouKE.Sys -> %System32%\drivers\LMouKE.Sys -> Logitech, Inc. [Ver = 2.60.570.00 | Size = 69760 bytes | Created Date = 7.6.2007 18:32:49 | Attr = ] PciBus.sys -> %System32%\drivers\PciBus.sys -> [Ver = | Size = 3972 bytes | Created Date = 19.6.2007 13:51:53 | Attr = ] PxHelp20.sys -> %System32%\drivers\PxHelp20.sys -> Sonic Solutions [Ver = 3.00.56a | Size = 43528 bytes | Created Date = 7.6.2007 19:22:50 | Attr = ] rtl8139.sys -> %System32%\drivers\rtl8139.sys -> Realtek Semiconductor Corporation [Ver = 5.398.613.2003 built by: WinDDK | Size = 20992 bytes | Created Date = 7.6.2007 18:54:06 | Attr = ] Rtnicxp.sys -> %System32%\drivers\Rtnicxp.sys -> Realtek Semiconductor Corporation [Ver = 5,663,1212,2006 built by: WinDDK | Size = 85120 bytes | Created Date = 17.6.2007 10:16:49 | Attr = ] sfmanm.sys -> %System32%\drivers\sfmanm.sys -> Creative Technology Ltd. [Ver = 4.10.3300 | Size = 36480 bytes | Created Date = 7.6.2007 18:54:04 | Attr = ] sptd.sys -> %System32%\drivers\sptd.sys -> [Ver = | Size = 682232 bytes | Created Date = 20.6.2007 9:42:16 | Attr = ] TVICHW32.SYS -> %System32%\drivers\TVICHW32.SYS -> EnTech Taiwan [Ver = 6.0 | Size = 23600 bytes | Created Date = 17.6.2007 9:19:00 | Attr = ] ULCDRHlp.sys -> %System32%\drivers\ULCDRHlp.sys -> Ulead Systems, Inc. [Ver = 1, 0, 1, 10 | Size = 27392 bytes | Created Date = 16.6.2007 13:44:45 | Attr = ] viaidexp.sys -> %System32%\drivers\viaidexp.sys -> VIA Technologies, Inc. [Ver = 5.1.2600.120 | Size = 6144 bytes | Created Date = 7.6.2007 18:14:33 | Attr = R ] VIAPFD.SYS -> %System32%\drivers\VIAPFD.SYS -> VIA Technologies. Inc. [Ver = 5.00.2195.100 | Size = 3279 bytes | Created Date = 7.6.2007 18:14:20 | Attr = ] viaudio.sys -> %System32%\drivers\viaudio.sys -> VIA Technologies, Inc. [Ver = 5.10.00.3622 built by: WinDDK | Size = 41152 bytes | Created Date = 7.6.2007 18:19:45 | Attr = R ] vulfnth.sys -> %System32%\drivers\vulfnth.sys -> VIA Technologies, Inc. [Ver = 2.60 | Size = 6912 bytes | Created Date = 18.6.2007 11:36:49 | Attr = ] vulfntr.sys -> %System32%\drivers\vulfntr.sys -> VIA Technologies, Inc. [Ver = 2.63 | Size = 11264 bytes | Created Date = 18.6.2007 11:36:48 | Attr = ] [Files/Folders - Modified Within 30 days] 1.xml -> %SystemDrive%\1.xml -> [Ver = | Size = 43757 bytes | Modified Date = 17.6.2007 15:11:56 | Attr = ] ATI -> %SystemDrive%\ATI -> [Folder | Modified Date = 23.6.2007 14:08:10 | Attr = ] AUTOEXEC.BAT -> %SystemDrive%\AUTOEXEC.BAT -> [Ver = | Size = 0 bytes | Modified Date = 7.6.2007 19:03:44 | Attr = ] Config.Msi -> %SystemDrive%\Config.Msi -> [Folder | Modified Date = 26.6.2007 7:19:08 | Attr = HS] CONFIG.SYS -> %SystemDrive%\CONFIG.SYS -> [Ver = | Size = 0 bytes | Modified Date = 7.6.2007 19:03:44 | Attr = ] Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Modified Date = 23.6.2007 15:34:14 | Attr = ] IO.SYS -> %SystemDrive%\IO.SYS -> [Ver = | Size = 0 bytes | Modified Date = 7.6.2007 19:03:44 | Attr = RHS] Media -> %SystemDrive%\Media -> [Folder | Modified Date = 7.6.2007 20:47:42 | Attr = ] MSDOS.SYS -> %SystemDrive%\MSDOS.SYS -> [Ver = | Size = 0 bytes | Modified Date = 7.6.2007 19:03:44 | Attr = RHS] Ohjelmatiedostot -> %SystemDrive%\Ohjelmatiedostot -> [Folder | Modified Date = 22.6.2007 12:10:02 | Attr = ] Program Files -> %ProgramFiles% -> [Folder | Modified Date = 25.6.2007 15:11:26 | Attr = R ] RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Modified Date = 17.6.2007 19:09:36 | Attr = HS] System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 8.6.2007 0:01:52 | Attr = HS] VIAhm -> %SystemDrive%\VIAhm -> [Folder | Modified Date = 7.6.2007 19:16:10 | Attr = ] WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 25.6.2007 14:17:30 | Attr = ] $hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 17.6.2007 12:52:18 | Attr = H ] $MSI31Uninstall_KB893803v2$ -> %SystemRoot%\$MSI31Uninstall_KB893803v2$ -> [Folder | Modified Date = 7.6.2007 19:33:38 | Attr = H ] $NtServicePackUninstall$ -> %SystemRoot%\$NtServicePackUninstall$ -> [Folder | Modified Date = 7.6.2007 23:44:48 | Attr = H ] $NtUninstallKB823559$ -> %SystemRoot%\$NtUninstallKB823559$ -> [Folder | Modified Date = 7.6.2007 21:42:14 | Attr = H ] $NtUninstallKB828741$ -> %SystemRoot%\$NtUninstallKB828741$ -> [Folder | Modified Date = 7.6.2007 21:42:42 | Attr = H ] $NtUninstallKB833407$ -> %SystemRoot%\$NtUninstallKB833407$ -> [Folder | Modified Date = 7.6.2007 21:46:50 | Attr = H ] $NtUninstallKB835732$ -> %SystemRoot%\$NtUninstallKB835732$ -> [Folder | Modified Date = 7.6.2007 21:43:52 | Attr = H ] $NtUninstallKB842773$ -> %SystemRoot%\$NtUninstallKB842773$ -> [Folder | Modified Date = 7.6.2007 20:11:56 | Attr = H ] $NtUninstallKB873339$ -> %SystemRoot%\$NtUninstallKB873339$ -> [Folder | Modified Date = 8.6.2007 10:12:42 | Attr = H ] $NtUninstallKB885835$ -> %SystemRoot%\$NtUninstallKB885835$ -> [Folder | Modified Date = 8.6.2007 10:17:28 | Attr = H ] $NtUninstallKB885836$ -> %SystemRoot%\$NtUninstallKB885836$ -> [Folder | Modified Date = 8.6.2007 10:17:16 | Attr = H ] $NtUninstallKB886185$ -> %SystemRoot%\$NtUninstallKB886185$ -> [Folder | Modified Date = 8.6.2007 10:01:40 | Attr = H ] $NtUninstallKB887472$ -> %SystemRoot%\$NtUninstallKB887472$ -> [Folder | Modified Date = 8.6.2007 10:10:50 | Attr = H ] $NtUninstallKB888302$ -> %SystemRoot%\$NtUninstallKB888302$ -> [Folder | Modified Date = 8.6.2007 10:03:40 | Attr = H ] $NtUninstallKB890046$ -> %SystemRoot%\$NtUninstallKB890046$ -> [Folder | Modified Date = 8.6.2007 10:07:22 | Attr = H ] $NtUninstallKB890859$ -> %SystemRoot%\$NtUninstallKB890859$ -> [Folder | Modified Date = 8.6.2007 9:57:44 | Attr = H ] $NtUninstallKB891781$ -> %SystemRoot%\$NtUninstallKB891781$ -> [Folder | Modified Date = 8.6.2007 10:08:38 | Attr = H ] $NtUninstallKB893756$ -> %SystemRoot%\$NtUninstallKB893756$ -> [Folder | Modified Date = 8.6.2007 10:14:28 | Attr = H ] $NtUninstallKB894391$ -> %SystemRoot%\$NtUninstallKB894391$ -> [Folder | Modified Date = 8.6.2007 9:58:30 | Attr = H ] $NtUninstallKB896358$ -> %SystemRoot%\$NtUninstallKB896358$ -> [Folder | Modified Date = 8.6.2007 10:10:12 | Attr = H ] $NtUninstallKB896423$ -> %SystemRoot%\$NtUninstallKB896423$ -> [Folder | Modified Date = 8.6.2007 10:13:30 | Attr = H ] $NtUninstallKB896428$ -> %SystemRoot%\$NtUninstallKB896428$ -> [Folder | Modified Date = 8.6.2007 9:58:48 | Attr = H ] $NtUninstallKB898461$ -> %SystemRoot%\$NtUninstallKB898461$ -> [Folder | Modified Date = 8.6.2007 9:34:44 | Attr = H ] $NtUninstallKB899587$ -> %SystemRoot%\$NtUninstallKB899587$ -> [Folder | Modified Date = 8.6.2007 10:18:22 | Attr = H ] $NtUninstallKB899591$ -> %SystemRoot%\$NtUninstallKB899591$ -> [Folder | Modified Date = 8.6.2007 10:14:50 | Attr = H ] $NtUninstallKB900485$ -> %SystemRoot%\$NtUninstallKB900485$ -> [Folder | Modified Date = 8.6.2007 10:13:20 | Attr = H ] $NtUninstallKB900725$ -> %SystemRoot%\$NtUninstallKB900725$ -> [Folder | Modified Date = 8.6.2007 10:03:28 | Attr = H ] $NtUninstallKB901017$ -> %SystemRoot%\$NtUninstallKB901017$ -> [Folder | Modified Date = 8.6.2007 10:15:02 | Attr = H ] $NtUninstallKB901190$ -> %SystemRoot%\$NtUninstallKB901190$ -> [Folder | Modified Date = 17.6.2007 13:10:12 | Attr = H ] $NtUninstallKB901214$ -> %SystemRoot%\$NtUninstallKB901214$ -> [Folder | Modified Date = 8.6.2007 10:05:30 | Attr = H ] $NtUninstallKB902400$ -> %SystemRoot%\$NtUninstallKB902400$ -> [Folder | Modified Date = 8.6.2007 10:07:38 | Attr = H ] $NtUninstallKB904706$ -> %SystemRoot%\$NtUninstallKB904706$ -> [Folder | Modified Date = 8.6.2007 10:00:58 | Attr = H ] $NtUninstallKB905414$ -> %SystemRoot%\$NtUninstallKB905414$ -> [Folder | Modified Date = 8.6.2007 10:06:02 | Attr = H ] $NtUninstallKB905749$ -> %SystemRoot%\$NtUninstallKB905749$ -> [Folder | Modified Date = 8.6.2007 10:00:00 | Attr = H ] $NtUninstallKB908519$ -> %SystemRoot%\$NtUninstallKB908519$ -> [Folder | Modified Date = 8.6.2007 9:58:20 | Attr = H ] $NtUninstallKB908531$ -> %SystemRoot%\$NtUninstallKB908531$ -> [Folder | Modified Date = 8.6.2007 10:00:12 | Attr = H ] $NtUninstallKB910437$ -> %SystemRoot%\$NtUninstallKB910437$ -> [Folder | Modified Date = 8.6.2007 10:10:00 | Attr = H ] $NtUninstallKB911280$ -> %SystemRoot%\$NtUninstallKB911280$ -> [Folder | Modified Date = 8.6.2007 10:14:04 | Attr = H ] $NtUninstallKB911562$ -> %SystemRoot%\$NtUninstallKB911562$ -> [Folder | Modified Date = 8.6.2007 10:13:54 | Attr = H ] $NtUninstallKB911564$ -> %SystemRoot%\$NtUninstallKB911564$ -> [Folder | Modified Date = 8.6.2007 10:09:26 | Attr = H ] $NtUninstallKB911927$ -> %SystemRoot%\$NtUninstallKB911927$ -> [Folder | Modified Date = 8.6.2007 10:15:54 | Attr = H ] $NtUninstallKB913580$ -> %SystemRoot%\$NtUninstallKB913580$ -> [Folder | Modified Date = 8.6.2007 9:58:58 | Attr = H ] $NtUninstallKB914388$ -> %SystemRoot%\$NtUninstallKB914388$ -> [Folder | Modified Date = 8.6.2007 10:06:24 | Attr = H ] $NtUninstallKB914389$ -> %SystemRoot%\$NtUninstallKB914389$ -> [Folder | Modified Date = 8.6.2007 9:57:58 | Attr = H ] $NtUninstallKB916595$ -> %SystemRoot%\$NtUninstallKB916595$ -> [Folder | Modified Date = 8.6.2007 10:01:32 | Attr = H ] $NtUninstallKB917344$ -> %SystemRoot%\$NtUninstallKB917344$ -> [Folder | Modified Date = 8.6.2007 10:06:14 | Attr = H ] $NtUninstallKB917422$ -> %SystemRoot%\$NtUninstallKB917422$ -> [Folder | Modified Date = 8.6.2007 10:05:06 | Attr = H ] $NtUninstallKB917734_WMP9$ -> %SystemRoot%\$NtUninstallKB917734_WMP9$ -> [Folder | Modified Date = 8.6.2007 10:16:42 | Attr = H ] $NtUninstallKB917953$ -> %SystemRoot%\$NtUninstallKB917953$ -> [Folder | Modified Date = 8.6.2007 10:05:52 | Attr = H ] $NtUninstallKB918118$ -> %SystemRoot%\$NtUninstallKB918118$ -> [Folder | Modified Date = 8.6.2007 10:04:02 | Attr = H ] $NtUninstallKB918439$ -> %SystemRoot%\$NtUninstallKB918439$ -> [Folder | Modified Date = 8.6.2007 10:08:28 | Attr = H ] $NtUninstallKB919007$ -> %SystemRoot%\$NtUninstallKB919007$ -> [Folder | Modified Date = 8.6.2007 10:06:36 | Attr = H ] $NtUninstallKB920213$ -> %SystemRoot%\$NtUninstallKB920213$ -> [Folder | Modified Date = 8.6.2007 10:03:16 | Attr = H ] $NtUninstallKB920670$ -> %SystemRoot%\$NtUninstallKB920670$ -> [Folder | Modified Date = 8.6.2007 10:08:50 | Attr = H ] $NtUninstallKB920683$ -> %SystemRoot%\$NtUninstallKB920683$ -> [Folder | Modified Date = 8.6.2007 9:58:10 | Attr = H ] $NtUninstallKB920685$ -> %SystemRoot%\$NtUninstallKB920685$ -> [Folder | Modified Date = 8.6.2007 10:14:40 | Attr = H ] $NtUninstallKB920872$ -> %SystemRoot%\$NtUninstallKB920872$ -> [Folder | Modified Date = 8.6.2007 10:07:02 | Attr = H ] $NtUninstallKB922582$ -> %SystemRoot%\$NtUninstallKB922582$ -> [Folder | Modified Date = 8.6.2007 10:04:16 | Attr = H ] $NtUninstallKB922819$ -> %SystemRoot%\$NtUninstallKB922819$ -> [Folder | Modified Date = 8.6.2007 10:17:40 | Attr = H ] $NtUninstallKB923191$ -> %SystemRoot%\$NtUninstallKB923191$ -> [Folder | Modified Date = 8.6.2007 10:05:18 | Attr = H ] $NtUninstallKB923414$ -> %SystemRoot%\$NtUninstallKB923414$ -> [Folder | Modified Date = 8.6.2007 10:17:08 | Attr = H ] $NtUninstallKB923689$ -> %SystemRoot%\$NtUninstallKB923689$ -> [Folder | Modified Date = 8.6.2007 10:09:50 | Attr = H ] $NtUninstallKB923694$ -> %SystemRoot%\$NtUninstallKB923694$ -> [Folder | Modified Date = 8.6.2007 10:01:10 | Attr = H ] $NtUninstallKB923980$ -> %SystemRoot%\$NtUninstallKB923980$ -> [Folder | Modified Date = 8.6.2007 10:14:16 | Attr = H ] $NtUninstallKB924191$ -> %SystemRoot%\$NtUninstallKB924191$ -> [Folder | Modified Date = 8.6.2007 10:17:50 | Attr = H ] $NtUninstallKB924270$ -> %SystemRoot%\$NtUninstallKB924270$ -> [Folder | Modified Date = 8.6.2007 10:13:04 | Attr = H ] $NtUninstallKB924496$ -> %SystemRoot%\$NtUninstallKB924496$ -> [Folder | Modified Date = 8.6.2007 10:12:32 | Attr = H ] $NtUninstallKB924667$ -> %SystemRoot%\$NtUninstallKB924667$ -> [Folder | Modified Date = 8.6.2007 10:13:42 | Attr = H ] $NtUninstallKB925398_WMP64$ -> %SystemRoot%\$NtUninstallKB925398_WMP64$ -> [Folder | Modified Date = 8.6.2007 10:15:44 | Attr = H ] $NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ -> [Folder | Modified Date = 8.6.2007 10:09:00 | Attr = H ] $NtUninstallKB926255$ -> %SystemRoot%\$NtUninstallKB926255$ -> [Folder | Modified Date = 8.6.2007 10:03:52 | Attr = H ] $NtUninstallKB926436$ -> %SystemRoot%\$NtUninstallKB926436$ -> [Folder | Modified Date = 8.6.2007 10:07:12 | Attr = H ] $NtUninstallKB927779$ -> %SystemRoot%\$NtUninstallKB927779$ -> [Folder | Modified Date = 8.6.2007 10:18:12 | Attr = H ] $NtUninstallKB927802$ -> %SystemRoot%\$NtUninstallKB927802$ -> [Folder | Modified Date = 8.6.2007 10:18:00 | Attr = H ] $NtUninstallKB927891$ -> %SystemRoot%\$NtUninstallKB927891$ -> [Folder | Modified Date = 8.6.2007 10:12:20 | Attr = H ] $NtUninstallKB928255$ -> %SystemRoot%\$NtUninstallKB928255$ -> [Folder | Modified Date = 8.6.2007 10:16:52 | Attr = H ] $NtUninstallKB928843$ -> %SystemRoot%\$NtUninstallKB928843$ -> [Folder | Modified Date = 8.6.2007 9:57:28 | Attr = H ] $NtUninstallKB929123$ -> %SystemRoot%\$NtUninstallKB929123$ -> [Folder | Modified Date = 16.6.2007 11:38:22 | Attr = H ] $NtUninstallKB929969$ -> %SystemRoot%\$NtUninstallKB929969$ -> [Folder | Modified Date = 8.6.2007 10:16:06 | Attr = H ] $NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ -> [Folder | Modified Date = 8.6.2007 10:06:46 | Attr = H ] $NtUninstallKB930916$ -> %SystemRoot%\$NtUninstallKB930916$ -> [Folder | Modified Date = 8.6.2007 10:01:20 | Attr = H ] $NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ -> [Folder | Modified Date = 8.6.2007 10:12:54 | Attr = H ] $NtUninstallKB931768$ -> %SystemRoot%\$NtUninstallKB931768$ -> [Folder | Modified Date = 8.6.2007 10:10:30 | Attr = H ] $NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ -> [Folder | Modified Date = 8.6.2007 10:16:16 | Attr = H ] $NtUninstallKB931836$ -> %SystemRoot%\$NtUninstallKB931836$ -> [Folder | Modified Date = 8.6.2007 10:12:06 | Attr = H ] $NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ -> [Folder | Modified Date = 8.6.2007 10:05:42 | Attr = H ] $NtUninstallKB933566$ -> %SystemRoot%\$NtUninstallKB933566$ -> [Folder | Modified Date = 16.6.2007 11:39:32 | Attr = H ] $NtUninstallKB935839$ -> %SystemRoot%\$NtUninstallKB935839$ -> [Folder | Modified Date = 16.6.2007 11:36:30 | Attr = H ] $NtUninstallKB935840$ -> %SystemRoot%\$NtUninstallKB935840$ -> [Folder | Modified Date = 16.6.2007 11:38:06 | Attr = H ] $NtUninstallQ329048$ -> %SystemRoot%\$NtUninstallQ329048$ -> [Folder | Modified Date = 7.6.2007 21:37:40 | Attr = H ] $NtUninstallQ329115$ -> %SystemRoot%\$NtUninstallQ329115$ -> [Folder | Modified Date = 7.6.2007 21:38:06 | Attr = H ] $NtUninstallQ329170$ -> %SystemRoot%\$NtUninstallQ329170$ -> [Folder | Modified Date = 7.6.2007 21:38:52 | Attr = H ] $NtUninstallQ329390$ -> %SystemRoot%\$NtUninstallQ329390$ -> [Folder | Modified Date = 7.6.2007 21:38:00 | Attr = H ] $NtUninstallQ329441$ -> %SystemRoot%\$NtUninstallQ329441$ -> [Folder | Modified Date = 7.6.2007 21:40:56 | Attr = H ] $NtUninstallQ329834$ -> %SystemRoot%\$NtUninstallQ329834$ -> [Folder | Modified Date = 7.6.2007 21:42:24 | Attr = H ] $NtUninstallQ810577$ -> %SystemRoot%\$NtUninstallQ810577$ -> [Folder | Modified Date = 7.6.2007 21:40:14 | Attr = H ] $NtUninstallQ810833$ -> %SystemRoot%\$NtUninstallQ810833$ -> [Folder | Modified Date = 7.6.2007 21:43:34 | Attr = H ] $NtUninstallQ815021$ -> %SystemRoot%\$NtUninstallQ815021$ -> [Folder | Modified Date = 7.6.2007 21:41:36 | Attr = H ] $xpsp1hfm$ -> %SystemRoot%\$xpsp1hfm$ -> [Folder | Modified Date = 7.6.2007 21:43:46 | Attr = H ] addins -> %SystemRoot%\addins -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] AppPatch -> %SystemRoot%\AppPatch -> [Folder | Modified Date = 8.6.2007 0:01:46 | Attr = ] bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 26.6.2007 7:19:12 | Attr = S] bwUnin-6.3.2.116-7681197L.exe -> %SystemRoot%\bwUnin-6.3.2.116-7681197L.exe -> [Ver = | Size = 118842 bytes | Modified Date = 7.6.2007 19:39:28 | Attr = R ] bwUnin-7.2.0.137-8876480SL.exe -> %SystemRoot%\bwUnin-7.2.0.137-8876480SL.exe -> [Ver = | Size = 118784 bytes | Modified Date = 7.6.2007 19:34:16 | Attr = R ] bwUnin-8.1.1.50-8876480SL.exe -> %SystemRoot%\bwUnin-8.1.1.50-8876480SL.exe -> BackWeb Technologies Inc. [Ver = Version 8.1.1 (Build 50R) | Size = 127034 bytes | Modified Date = 16.6.2007 11:47:22 | Attr = R ] Config -> %SystemRoot%\Config -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] Connection Wizard -> %SystemRoot%\Connection Wizard -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] control.ini -> %SystemRoot%\control.ini -> [Ver = | Size = 0 bytes | Modified Date = 7.6.2007 19:03:44 | Attr = ] Cursors -> %SystemRoot%\Cursors -> [Folder | Modified Date = 7.6.2007 19:00:02 | Attr = ] Debug -> %SystemRoot%\Debug -> [Folder | Modified Date = 23.6.2007 16:03:20 | Attr = ] Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Modified Date = 16.6.2007 14:42:40 | Attr = S] Driver Cache -> %SystemRoot%\Driver Cache -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] EHome -> %SystemRoot%\EHome -> [Folder | Modified Date = 7.6.2007 23:41:28 | Attr = ] Fonts -> %SystemRoot%\Fonts -> [Folder | Modified Date = 17.6.2007 9:36:42 | Attr = R S] Help -> %SystemRoot%\Help -> [Folder | Modified Date = 21.6.2007 9:23:28 | Attr = ] ime -> %SystemRoot%\ime -> [Folder | Modified Date = 7.6.2007 23:55:10 | Attr = ] inf -> %SystemRoot%\inf -> [Folder | Modified Date = 23.6.2007 16:13:46 | Attr = H ] Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 25.6.2007 15:12:36 | Attr = HS] java -> %SystemRoot%\java -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] Media -> %SystemRoot%\Media -> [Folder | Modified Date = 17.6.2007 12:37:32 | Attr = ] mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 2187 bytes | Modified Date = 17.6.2007 10:19:00 | Attr = ] msagent -> %SystemRoot%\msagent -> [Folder | Modified Date = 8.6.2007 11:17:06 | Attr = ] msapps -> %SystemRoot%\msapps -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] mui -> %SystemRoot%\mui -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 69 bytes | Modified Date = 21.6.2007 22:35:28 | Attr = ] nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 0 bytes | Modified Date = 7.6.2007 19:58:20 | Attr = ] ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 391 bytes | Modified Date = 7.6.2007 20:08:08 | Attr = ] ODBCINST.INI -> %SystemRoot%\ODBCINST.INI -> [Ver = | Size = 4405 bytes | Modified Date = 7.6.2007 19:03:34 | Attr = ] Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Modified Date = 7.6.2007 19:02:42 | Attr = R ] OODCNT.INI -> %SystemRoot%\OODCNT.INI -> [Ver = | Size = 0 bytes | Modified Date = 25.6.2007 14:17:30 | Attr = ] OPTIONS -> %SystemRoot%\OPTIONS -> [Folder | Modified Date = 17.6.2007 11:16:50 | Attr = ] PCHEALTH -> %SystemRoot%\PCHEALTH -> [Folder | Modified Date = 7.6.2007 20:05:04 | Attr = ] peernet -> %SystemRoot%\peernet -> [Folder | Modified Date = 7.6.2007 23:54:40 | Attr = ] Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 26.6.2007 7:47:48 | Attr = ] provisioning -> %SystemRoot%\provisioning -> [Folder | Modified Date = 7.6.2007 23:54:38 | Attr = ] pss -> %SystemRoot%\pss -> [Folder | Modified Date = 20.6.2007 22:08:12 | Attr = ] RegisteredPackages -> %SystemRoot%\RegisteredPackages -> [Folder | Modified Date = 7.6.2007 20:22:40 | Attr = ] Registration -> %SystemRoot%\Registration -> [Folder | Modified Date = 7.6.2007 19:03:30 | Attr = ] REGLOCS.OLD -> %SystemRoot%\REGLOCS.OLD -> [Ver = | Size = 8192 bytes | Modified Date = 7.6.2007 19:06:44 | Attr = ] repair -> %SystemRoot%\repair -> [Folder | Modified Date = 7.6.2007 19:04:00 | Attr = ] Resources -> %SystemRoot%\Resources -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] SBWIN.INI -> %SystemRoot%\SBWIN.INI -> [Ver = | Size = 11 bytes | Modified Date = 17.6.2007 12:38:24 | Attr = ] security -> %SystemRoot%\security -> [Folder | Modified Date = 17.6.2007 12:46:16 | Attr = ] ServicePackFiles -> %SystemRoot%\ServicePackFiles -> [Folder | Modified Date = 7.6.2007 23:50:48 | Attr = ] SHELLNEW -> %SystemRoot%\SHELLNEW -> [Folder | Modified Date = 7.6.2007 20:06:44 | Attr = ] SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Modified Date = 7.6.2007 21:23:16 | Attr = ] srchasst -> %SystemRoot%\srchasst -> [Folder | Modified Date = 7.6.2007 23:50:26 | Attr = ] system -> %SystemRoot%\system -> [Folder | Modified Date = 7.6.2007 23:49:16 | Attr = ] system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 227 bytes | Modified Date = 20.6.2007 22:08:12 | Attr = ] system32 -> %System32% -> [Folder | Modified Date = 26.6.2007 7:19:08 | Attr = ] Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 7.6.2007 19:47:42 | Attr = S] Temp -> %SystemRoot%\Temp -> [Folder | Modified Date = 26.6.2007 7:49:32 | Attr = ] twain_32 -> %SystemRoot%\twain_32 -> [Folder | Modified Date = 7.6.2007 21:50:32 | Attr = ] vb.ini -> %SystemRoot%\vb.ini -> [Ver = | Size = 36 bytes | Modified Date = 7.6.2007 19:00:56 | Attr = ] vbaddin.ini -> %SystemRoot%\vbaddin.ini -> [Ver = | Size = 37 bytes | Modified Date = 7.6.2007 19:00:56 | Attr = ] Web -> %SystemRoot%\Web -> [Folder | Modified Date = 7.6.2007 23:47:24 | Attr = R ] win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 688 bytes | Modified Date = 23.6.2007 15:48:04 | Attr = ] WindowsShell.Manifest -> %SystemRoot%\WindowsShell.Manifest -> [Ver = | Size = 749 bytes | Modified Date = 7.6.2007 19:02:36 | Attr = RH ] WININIT.INI -> %SystemRoot%\WININIT.INI -> [Ver = | Size = 10 bytes | Modified Date = 23.6.2007 16:06:50 | Attr = ] WinSxS -> %SystemRoot%\WinSxS -> [Folder | Modified Date = 8.6.2007 10:13:42 | Attr = ] WMSysPr9.prx -> %SystemRoot%\WMSysPr9.prx -> [Ver = | Size = 316640 bytes | Modified Date = 16.6.2007 14:58:34 | Attr = ] WMSysPrx.prx -> %SystemRoot%\WMSysPrx.prx -> [Ver = | Size = 299552 bytes | Modified Date = 7.6.2007 19:03:40 | Attr = ] SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 26.6.2007 7:19:14 | Attr = H ] Scheduled scanning task.job -> %SystemRoot%\tasks\Scheduled scanning task.job -> [Ver = | Size = 568 bytes | Modified Date = 26.6.2007 7:20:26 | Attr = ] $winnt$.inf -> %System32%\$winnt$.inf -> [Ver = | Size = 261 bytes | Modified Date = 7.6.2007 19:06:02 | Attr = ] 1025 -> %System32%\1025 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 1028 -> %System32%\1028 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 1031 -> %System32%\1031 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 1033 -> %System32%\1033 -> [Folder | Modified Date = 7.6.2007 21:49:40 | Attr = ] 1035 -> %System32%\1035 -> [Folder | Modified Date = 7.6.2007 21:50:40 | Attr = ] 1037 -> %System32%\1037 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 1041 -> %System32%\1041 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 1042 -> %System32%\1042 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 1054 -> %System32%\1054 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 2052 -> %System32%\2052 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 3076 -> %System32%\3076 -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] 3com_dmi -> %System32%\3com_dmi -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] ac3filter.acm -> %System32%\ac3filter.acm -> [Ver = | Size = 380928 bytes | Modified Date = 7.6.2007 22:11:12 | Attr = ] amcompat.tlb -> %System32%\amcompat.tlb -> [Ver = | Size = 16832 bytes | Modified Date = 7.6.2007 19:03:42 | Attr = ] auto.ini -> %System32%\auto.ini -> [Ver = | Size = 17 bytes | Modified Date = 17.6.2007 18:58:00 | Attr = ] Autorun.ini -> %System32%\Autorun.ini -> [Ver = | Size = 7969 bytes | Modified Date = 7.6.2007 19:14:10 | Attr = ] BitCometRes.dll -> %System32%\BitCometRes.dll -> BitComet [Ver = 1, 0, 0, 1 | Size = 2560 bytes | Modified Date = 17.6.2007 19:23:28 | Attr = ] bits -> %System32%\bits -> [Folder | Modified Date = 7.6.2007 20:12:04 | Attr = ] CatRoot -> %System32%\CatRoot -> [Folder | Modified Date = 23.6.2007 16:15:44 | Attr = ] CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 24.6.2007 12:03:26 | Attr = ] cdplayer.exe.manifest -> %System32%\cdplayer.exe.manifest -> [Ver = | Size = 749 bytes | Modified Date = 7.6.2007 19:02:36 | Attr = RH ] Com -> %System32%\Com -> [Folder | Modified Date = 8.6.2007 10:07:42 | Attr = ] config -> %System32%\config -> [Folder | Modified Date = 7.6.2007 19:06:32 | Attr = ] CONFIG.NT -> %System32%\CONFIG.NT -> [Ver = | Size = 2518 bytes | Modified Date = 7.6.2007 19:03:44 | Attr = ] Data -> %System32%\Data -> [Folder | Modified Date = 17.6.2007 12:38:24 | Attr = ] Defaults -> %System32%\Defaults -> [Folder | Modified Date = 17.6.2007 12:38:24 | Attr = ] dhcp -> %System32%\dhcp -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] DirectX -> %System32%\DirectX -> [Folder | Modified Date = 7.6.2007 19:02:10 | Attr = ] dllcache -> %System32%\dllcache -> [Folder | Modified Date = 23.6.2007 16:14:00 | Attr = RHS] drivers -> %System32%\drivers -> [Folder | Modified Date = 25.6.2007 14:07:50 | Attr = ] DRVSTORE -> %System32%\DRVSTORE -> [Folder | Modified Date = 7.6.2007 20:24:36 | Attr = ] emptyregdb.dat -> %System32%\emptyregdb.dat -> [Ver = | Size = 21672 bytes | Modified Date = 7.6.2007 19:01:08 | Attr = ] export -> %System32%\export -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 199344 bytes | Modified Date = 17.6.2007 11:23:00 | Attr = ] Futuremark -> %System32%\Futuremark -> [Folder | Modified Date = 19.6.2007 14:51:52 | Attr = ] ias -> %System32%\ias -> [Folder | Modified Date = 7.6.2007 19:03:18 | Attr = ] icsxml -> %System32%\icsxml -> [Folder | Modified Date = 7.6.2007 21:50:16 | Attr = ] IME -> %System32%\IME -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] inetsrv -> %System32%\inetsrv -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] logonui.exe.manifest -> %System32%\logonui.exe.manifest -> [Ver = | Size = 488 bytes | Modified Date = 7.6.2007 19:02:42 | Attr = RH ] Macromed -> %System32%\Macromed -> [Folder | Modified Date = 7.6.2007 19:02:10 | Attr = ] Microsoft -> %System32%\Microsoft -> [Folder | Modified Date = 7.6.2007 19:42:06 | Attr = S] MsDtc -> %System32%\MsDtc -> [Folder | Modified Date = 7.6.2007 19:00:50 | Attr = ] mui -> %System32%\mui -> [Folder | Modified Date = 7.6.2007 23:55:10 | Attr = ] ncpa.cpl.manifest -> %System32%\ncpa.cpl.manifest -> [Ver = | Size = 749 bytes | Modified Date = 7.6.2007 19:02:36 | Attr = RH ] npp -> %System32%\npp -> [Folder | Modified Date = 7.6.2007 23:50:30 | Attr = ] nscompat.tlb -> %System32%\nscompat.tlb -> [Ver = | Size = 23392 bytes | Modified Date = 7.6.2007 19:03:42 | Attr = ] nwc.cpl.manifest -> %System32%\nwc.cpl.manifest -> [Ver = | Size = 749 bytes | Modified Date = 7.6.2007 19:02:36 | Attr = RH ] oobe -> %System32%\oobe -> [Folder | Modified Date = 7.6.2007 23:55:12 | Attr = ] oodag -> %System32%\oodag -> [Folder | Modified Date = 25.6.2007 14:21:00 | Attr = ] oodbs.lor -> %System32%\oodbs.lor -> [Ver = | Size = 1277 bytes | Modified Date = 26.6.2007 7:19:08 | Attr = ] perfc009.dat -> %System32%\perfc009.dat -> [Ver = | Size = 40972 bytes | Modified Date = 8.6.2007 13:11:00 | Attr = ] perfc00B.dat -> %System32%\perfc00B.dat -> [Ver = | Size = 49504 bytes | Modified Date = 8.6.2007 13:11:00 | Attr = ] perfh009.dat -> %System32%\perfh009.dat -> [Ver = | Size = 314644 bytes | Modified Date = 8.6.2007 13:11:00 | Attr = ] perfh00B.dat -> %System32%\perfh00B.dat -> [Ver = | Size = 286260 bytes | Modified Date = 8.6.2007 13:11:00 | Attr = ] PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 692412 bytes | Modified Date = 8.6.2007 13:10:54 | Attr = ] PreInstall -> %System32%\PreInstall -> [Folder | Modified Date = 8.6.2007 9:34:46 | Attr = ] ras -> %System32%\ras -> [Folder | Modified Date = 7.6.2007 21:50:24 | Attr = ] ReinstallBackups -> %System32%\ReinstallBackups -> [Folder | Modified Date = 17.6.2007 11:16:58 | Attr = ] Restore -> %System32%\Restore -> [Folder | Modified Date = 7.6.2007 23:50:30 | Attr = ] sapi.cpl.manifest -> %System32%\sapi.cpl.manifest -> [Ver = | Size = 749 bytes | Modified Date = 7.6.2007 19:02:36 | Attr = RH ] settings.sfm -> %System32%\settings.sfm -> [Ver = | Size = 1080 bytes | Modified Date = 17.6.2007 12:38:20 | Attr = ] settingsbkup.sfm -> %System32%\settingsbkup.sfm -> [Ver = | Size = 1080 bytes | Modified Date = 17.6.2007 12:38:20 | Attr = ] Setup -> %System32%\Setup -> [Folder | Modified Date = 7.6.2007 23:55:10 | Attr = ] ShellExt -> %System32%\ShellExt -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] SoftwareDistribution -> %System32%\SoftwareDistribution -> [Folder | Modified Date = 21.6.2007 9:23:10 | Attr = ] spool -> %System32%\spool -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] usmt -> %System32%\usmt -> [Folder | Modified Date = 7.6.2007 23:49:18 | Attr = ] wbem -> %System32%\wbem -> [Folder | Modified Date = 8.6.2007 13:11:56 | Attr = ] WindowsLogon.manifest -> %System32%\WindowsLogon.manifest -> [Ver = | Size = 488 bytes | Modified Date = 7.6.2007 19:02:42 | Attr = RH ] wins -> %System32%\wins -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] wmpscheme.xml -> %System32%\wmpscheme.xml -> [Ver = | Size = 25065 bytes | Modified Date = 7.6.2007 19:08:50 | Attr = ] wpa.bak -> %System32%\wpa.bak -> [Ver = | Size = 12980 bytes | Modified Date = 7.6.2007 19:13:10 | Attr = ] wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 13002 bytes | Modified Date = 26.6.2007 7:20:52 | Attr = ] wuaucpl.cpl.manifest -> %System32%\wuaucpl.cpl.manifest -> [Ver = | Size = 749 bytes | Modified Date = 7.6.2007 19:02:36 | Attr = RH ] xircom -> %System32%\xircom -> [Folder | Modified Date = 7.6.2007 19:04:00 | Attr = ] AvgAsCln.sys -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Modified Date = 30.5.2007 15:10:42 | Attr = ] disdn -> %System32%\drivers\disdn -> [Folder | Modified Date = 7.6.2007 21:47:46 | Attr = ] etc -> %System32%\drivers\etc -> [Folder | Modified Date = 7.6.2007 21:50:20 | Attr = ] sptd.sys -> %System32%\drivers\sptd.sys -> [Ver = | Size = 682232 bytes | Modified Date = 20.6.2007 10:42:18 | Attr = ] [File String Scan - Non-Microsoft Only] WSUD , -> %System32%\alsndmgr.cpl -> Realtek Semiconductor Corp. [Ver = 2, 2, 0, 73 | Size = 18804736 bytes | Modified Date = 17.11.2006 5:40:46 | Attr = ] PEC2 , -> %System32%\dfrg.msc -> [Ver = | Size = 41113 bytes | Modified Date = 9.10.2001 15:00:00 | Attr = ] winsync , -> %System32%\wbdbase.deu -> [Ver = | Size = 1309184 bytes | Modified Date = 9.10.2001 15:00:00 | Attr = ] WSUD , UPX0 , -> %System32%\dllcache\hwxjpn.dll -> [Ver = | Size = 13463552 bytes | Modified Date = 9.10.2001 15:00:00 | Attr = ] PTech , -> %System32%\drivers\mtlstrm.sys -> Smart Link [Ver = 3.80.01MC15 | Size = 1309184 bytes | Modified Date = 4.8.2004 8:41:38 | Attr = ] < End of report > Tulipa pitkä lista ;o Ongelmia?
ei kaikki lokit kunnossa Pysy puhtaana -> Tyhjennä järjestelmänpalautus Ohjeet Tyhjennä järjestelmänpalautuskansio ja luo uusi palautuspiste. Tämä puhdistaa palautuskansion mahdollisista haittaohjelmajäännöksistä. -> Käytä CCleaneria -> CCleaner Lataa ja asenna CCleaner. Puhdista väliaikaistiedostot ja -kansiot ohjelmalla säännöllisesti. -> Asenna SpywareBlaster -> SpywareBlaster SpywareBlaster estää haittaohjelmia asentumasta koneellesi. Ei kuluta muistia! Opas saatavilla suomeksi! Nimimerkki Ad-Awaren opas -> Asenna MVPS Hosts tiedosto -> MVPS Hosts Estää koneesi yhteyden haitallisiin sivustoihin. Opas saatavilla suomeksi! Nimimerkki Axelin opas -> Vaihda selaimesi Firefoxiin -> Firefox Firefox on nopeampi, turvallisempi ja parempi selain kuin Internet Explorer. -> Pidä järjestelmäsi ajantasalla. -> Windows Update Vieraile Windows Updatessa säännöllisesti. -> Pidä palomuuri ja virustorjunta ajantasalla Päivitä ja skannaa koneesi säännöllisesti virustorjuntaohjelmallasi. ja hyvä myös escan http://koti.mbnet.fi/pattaya1/escanmwav.htm ->Pidä ohjelmistosi ajantasalla. -> Secunia Software Inspector Secunia Software Inspector tutkii sinun järjestälmäsi ja ohjelmistosi puuttuvien turvallisuuspäivityksien osalta. Tavallinen tutkinta kestää normaalisti 5-40 sekuntia, kun läpikotainen (thorough system inspection) voi kestää useita minuutteja. ->Seuraa säännöllisesti viestintäviraston tietoja uusista haavoittuvuuksista -> CERT-FI -> Rekistöröidy. -> Virustorjunta.net Virustorjunta.net on suomalainen haittaohjelmien poistoon keskittyvä sivusto joka kykenee auttamaan sinua mitä erilaisimmissa ongelmissa. Lisäksi siellä on suomen ainut HJT-koulu. Koulussa syvennytään HJT-ohjelman tuottaman informaation analysoimiseen sekä analysoinnin jälkeiseen tietokoneen puhdistamiseen. Jos tulevaisuudessa tulee haittaohjelmien kanssa ongelmia, älä epäröi laittaa Hijackthis-logia tarkistettavaksi!