Kone on hidas kaikinpuolin. Ennen toiminut paremmin HJT-LOGI, apuja.

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by kingih, May 28, 2007.

  1. kingih

    kingih Member

    Joined:
    Apr 14, 2007
    Messages:
    54
    Likes Received:
    0
    Trophy Points:
    16
    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 16:14:44, on 28.5.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\acs.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\System32\igfxtray.exe
    C:\WINDOWS\System32\hkcmd.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
    C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.EXE
    C:\Program Files\Elisa\Avustaja\Elisa.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\PROGRA~1\ELISAT~1\backweb\4119343\Program\SERVIC~1.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\FSGK32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\program\fsbwsys.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fssm32.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMB32.EXE
    C:\WINDOWS\system32\slserv.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\Program\fspex.exe
    C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
    C:\Program Files\Microsoft Office\Office\OSA.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FCH32.EXE
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FAMEH32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsqh.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsrw.exe
    C:\WINDOWS\system32\slrundll.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsav32.exe
    C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
    C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\PROGRA~1\ELISAT~1\ANTI-S~1\fsaw.exe
    C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\fsguidll.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Java\jre1.5.0_10\bin\jucheck.exe
    C:\Documents and Settings\wxp\Työpöytä\HiJackThis_v2.0.0.0.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://elisa.net/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://elisa.net/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer - Toimittaja Elisa Internet
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.fi;;*.*.fi;*.*.*.fi;<local>
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll
    O2 - BHO: Elisa Avustaja Plugin - {DB87CDE1-EF9C-44EB-A42F-6D0B3C72C516} - C:\Program Files\Elisa\Avustaja\IEFixItNowPlugin.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE" /splash
    O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Elisa Tietoturvapalvelu\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
    O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\FSSW.EXE" /reboot
    O4 - HKLM\..\Run: [News Service] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe"
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
    O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [ACU] C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe -nogui
    O4 - HKLM\..\Run: [EPSON Stylus C66 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.EXE /P23 "EPSON Stylus C66 Series" /O6 "USB001" /M "Stylus C66"
    O4 - HKLM\..\Run: [Elisa Avustaja] "C:\Program Files\Elisa\Avustaja\Elisa.exe"
    O4 - HKLM\..\Run: [uvnx] c:\windows\system32\uvnx.exe
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Paikallinen palve')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Verkkopalve')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Elisa Tietoturvapalvelu.lnk = C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\Program\fspex.exe
    O4 - Global Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O4 - Global Startup: Microsoft Office -pikavalintapalkki.lnk = C:\Program Files\Microsoft Office\Office\MSOFFICE.EXE
    O4 - Global Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
    O4 - Global Startup: Officen käynnistys.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
    O4 - Global Startup: PrecisionTime.lnk = C:\Program Files\PrecisionTime\PrecisionTime.exe
    O8 - Extra context menu item: &Estä tämä kohoikkuna - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\blockpopups.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
    O9 - Extra button: IE-suojaus - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\ieshield.dll
    O9 - Extra 'Tools' menuitem: IE-suojaus... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\ieshield.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra button: Palvelut - {4A78D859-992C-4502-BC79-13300D17D402} - http://service.kolumbus.fi/ (file missing) (HKCU)
    O9 - Extra button: SMS-viesti - {51C5E69F-C366-4769-82B9-1E4A7A4BE4ED} - http://sms.kolumbus.fi/ (file missing) (HKCU)
    O9 - Extra button: Tuki - {F90A2F52-65F3-40B7-B9B2-D816FE8DA56D} - http://tuki.elisa.net/ (file missing) (HKCU)
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O14 - IERESET.INF: START_PAGE_URL=http://elisa.net/
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
    O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
    O23 - Service: Elisa Tietoturvapalvelu (BackWeb Plug-in - 4119343) - BackWeb Technologies Inc. - C:\PROGRA~1\ELISAT~1\backweb\4119343\Program\SERVIC~1.EXE
    O23 - Service: Loogisen levyn hallinnan valvontapalvelu (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
    O23 - Service: Tapahtumaloki (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
    O23 - Service: F-Secure Gatekeeper Handler Starter - Unknown owner - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe
    O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
    O23 - Service: FSBWSYS (fsbwsys) - Unknown owner - C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\program\fsbwsys.exe
    O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe
    O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: CD-levyjen kirjoittamisen IMAPI COM -palvelu (ImapiService) - Unknown owner - C:\WINDOWS\System32\imapi.exe
    O23 - Service: NetMeeting etätyöpöydän jakaminen (mnmsrvc) - Unknown owner - C:\WINDOWS\System32\mnmsrvc.exe
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing)
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Etätyöpöydän ohjeen istunnonhallinta (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
    O23 - Service: Älykortti (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
    O23 - Service: Resurssilokit ja -hälytykset (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
    O23 - Service: Aseman tilannevedos (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
    O23 - Service: WMI resurssisovitin (WmiApSrv) - Unknown owner - C:\WINDOWS\System32\wbem\wmiapsrv.exe
    O24 - Desktop Component 0: (no name) - http://www.anjalankoski.fi/~mkya/Kuvat03s/IMGP0824.JPG

    --
    End of file - 15323 bytes
     
  2. Auttaja

    Auttaja Guest

  3. kingih

    kingih Member

    Joined:
    Apr 14, 2007
    Messages:
    54
    Likes Received:
    0
    Trophy Points:
    16
    siis.. tuossa:


    "wxp" - 2007-05-28 16:25:56 Service Pack 2
    ComboFix 07-05.27.V - Running from: "C:\Documents and Settings\wxp\Ty”p”yt„\"

    Rootkit driver pe386 is present. ... attempting disinfection
    pe386 ...... driver unloaded successfully.
    ADS removed - system32: deleted 78070 bytes in 1 streams.

    (((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


    "C:\install.log"


    ((((((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))


    -------\nm


    ((((((((((((((((((((((((((((((( Files Created from 2007-04-28 to 2007-05-28 ))))))))))))))))))))))))))))))))))


    (((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


    "C:\install.log"


    ((((((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))


    -------\nm


    ((((((((((((((((((((((((((((((( Files Created from 2007-04-28 to 2007-05-28 ))))))))))))))))))))))))))))))))))


    2007-05-11 20:01 21,504 --a------ C:\WINDOWS\system32\hidserv.dll
    2007-05-11 20:00 14,848 --a------ C:\WINDOWS\system32\drivers\kbdhid.sys
    2007-05-01 12:18 <KANSIO> d-------- C:\DOCUME~1\wxp\APPLIC~1\vlc
    2007-05-01 12:17 <KANSIO> d-------- C:\Program Files\VideoLAN


    (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))

    2007-05-19 04:45:28 65,686 ----a-w C:\WINDOWS\system32\perfc00B.dat
    2007-05-19 04:45:28 356,030 ----a-w C:\WINDOWS\system32\perfh00B.dat
    2007-05-16 08:09:53 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\AdobeUM
    2007-05-05 19:14:26 -------- d-----w C:\Program Files\MSN Messenger
    2007-04-29 10:16:09 -------- d-----w C:\Program Files\EA GAMES
    2007-04-28 19:43:15 -------- d--h--w C:\Program Files\InstallShield Installation Information
    2007-04-24 17:14:47 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\U3
    2007-04-21 20:36:42 1,040,384 ----a-w C:\WINDOWS\system32\libeay32.dll
    2007-04-21 20:35:57 196,608 ----a-w C:\WINDOWS\system32\ssleay32.dll
    2007-04-18 16:14:18 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll
    2007-03-17 13:44:51 292,864 ----a-w C:\WINDOWS\system32\winsrv.dll
    2007-03-08 15:38:00 578,048 ----a-w C:\WINDOWS\system32\user32.dll
    2007-03-08 15:37:59 40,960 ----a-w C:\WINDOWS\system32\mf3216.dll
    2007-03-08 15:37:59 281,600 ----a-w C:\WINDOWS\system32\gdi32.dll
    2007-03-08 15:34:26 1,843,840 ----a-w C:\WINDOWS\system32\win32k.sys


    (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))


    *Note* empty entries & legit default entries are not shown

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
    {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}=C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16 17:39]
    {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll [2006-11-09 15:21]
    {9030D464-4C02-4ABF-8ECC-5164760863C6}=C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2006-04-07 00:02]
    {9394EDE7-C8B5-483E-8773-474BF36AF6E4}=C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll [2004-08-13 18:42]
    {AA58ED58-01DD-4d91-8333-CF10577473F7}=c:\program files\google\googletoolbar4.dll [2007-01-20 00:55]
    {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}=C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll [2006-01-17 17:04]
    {DB87CDE1-EF9C-44EB-A42F-6D0B3C72C516}=C:\Program Files\Elisa\Avustaja\IEFixItNowPlugin.dll [2007-02-20 18:39]
    {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}=C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2004-02-10 15:08]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Wizard"="" []
    "HP Component Manager"="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" [2005-01-12 14:54]
    "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2005-02-16 23:11]
    "F-Secure Manager"="C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.exe" [2005-10-26 03:51]
    "F-Secure TNB"="C:\Program Files\Elisa Tietoturvapalvelu\TNB\TNBUtil.exe" [2005-07-18 16:51]
    "F-Secure Startup Wizard"="C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\FSSW.exe" [2005-09-21 16:56]
    "News Service"="C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe" [2005-05-31 14:45]
    "LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2005-01-18 18:47]
    "LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2005-01-18 18:37]
    "SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe" [2006-11-09 15:07]
    "SsAAD.exe"="C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe" [2005-01-24 20:58]
    "ACU"="C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe" [2005-07-21 19:03]
    "Elisa Avustaja"="C:\Program Files\Elisa\Avustaja\Elisa.exe" [2007-02-20 18:37]

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" [2007-02-13 13:42]
    "LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2005-01-18 18:07]
    "msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55]
    "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe" []
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-09-15 01:12]
    "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2007-02-01 17:19]


    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E]
    AutoRun\command- E:\LaunchU3.exe -a

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{79e8e050-da2d-11db-be20-0004e2f62296}]
    AutoRun\command- E:\LaunchU3.exe -a


    Contents of the 'Scheduled Tasks' folder
    2007-05-18 11:43:00 C:\WINDOWS\tasks\HP DArC Task #Hewlett-Packard#hp psc 1300 series#1069159125.job
    2007-05-28 14:08:51 C:\WINDOWS\tasks\Scheduled scanning task.job

    ********************************************************************

    catchme 0.3.681 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
    Rootkit scan 2007-05-28 16:38:44
    Windows 5.1.2600 Service Pack 2 NTFS

    scanning hidden processes ...

    scanning hidden autostart entries ...

    scanning hidden files ...

    scan completed successfully
    hidden files: 0


    ********************************************************************

    Completion time: 2007-05-28 16:40:26 - machine was rebooted
    C:\ComboFix-quarantined-files.txt ... 2007-05-28 16:40

    --- E O F ---
    (((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


    "C:\install.log"


    ((((((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))


    -------\nm


    ((((((((((((((((((((((((((((((( Files Created from 28.0-01-07 to 28.05.2007 ))))))))))))))))))))))))))))))))))


    28.05.2007 16:40 49ÿ152 --a------ C:\WINDOWS\nircmd.exe
    28.05.2006 08:38 46ÿ080 --------- C:\WINDOWS\system32\drivers\PxHelp20.sys
    28.05.2006 08:38 2ÿ560 --------- C:\WINDOWS\system32\drivers\cdralw2k.sys
    28.05.2006 08:38 2ÿ432 --------- C:\WINDOWS\system32\drivers\cdr4_xp.sys
    28.05.2006 00:58 <KANSIO> d-------- C:\DOCUME~1\wxp\APPLIC~1\Apple Computer
    28.05.2006 00:55 <KANSIO> d-------- C:\WINDOWS\Downloaded Installations
    28.05.2006 00:55 <KANSIO> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
    28.05.2004 23:27 133ÿ120 --a------ C:\WINDOWS\system32\RTCRES.dll


    (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))

    2007-05-19 04:45:28 65,686 ----a-w C:\WINDOWS\system32\perfc00B.dat
    2007-05-19 04:45:28 356,030 ----a-w C:\WINDOWS\system32\perfh00B.dat
    2007-05-16 08:09:53 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\AdobeUM
    2007-05-05 19:14:26 -------- d-----w C:\Program Files\MSN Messenger
    2007-04-29 10:16:09 -------- d-----w C:\Program Files\EA GAMES
    2007-04-28 19:43:15 -------- d--h--w C:\Program Files\InstallShield Installation Information
    2007-04-24 17:14:47 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\U3
    2007-04-21 20:36:42 1,040,384 ----a-w C:\WINDOWS\system32\libeay32.dll
    2007-04-21 20:35:57 196,608 ----a-w C:\WINDOWS\system32\ssleay32.dll
    2007-04-18 16:14:18 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll
    2007-03-17 13:44:51 292,864 ----a-w C:\WINDOWS\system32\winsrv.dll
    2007-03-08 15:38:00 578,048 ----a-w C:\WINDOWS\system32\user32.dll
    2007-03-08 15:37:59 40,960 ----a-w C:\WINDOWS\system32\mf3216.dll
    2007-03-08 15:37:59 281,600 ----a-w C:\WINDOWS\system32\gdi32.dll
    2007-03-08 15:34:26 1,843,840 ----a-w C:\WINDOWS\system32\win32k.sys
    2007-02-15 17:30:14 -------- d-----w C:\Program Files\Eurowordkuusi
    2007-02-15 17:30:14 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\uTorrent
    2007-02-15 17:30:14 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\LimeWire
    2007-02-13 11:07:24 127,034 ------r C:\WINDOWS\bwUnin-8.1.1.50-8876480SL.exe
    2007-02-09 11:10:35 574,464 ----a-w C:\WINDOWS\system32\drivers\ntfs.sys
    2007-02-08 10:06:08 -------- d-----w C:\Program Files\Elisa
    2007-02-05 20:19:01 185,344 ----a-w C:\WINDOWS\system32\upnphost.dll
    2007-02-02 05:14:45 -------- d-----w C:\Program Files\Google
    2007-01-19 10:53:04 51,056 ----a-w C:\WINDOWS\system32\sirenacm.dll
    2007-01-19 10:39:35 -------- d-----w C:\Program Files\EPSON
    2007-01-08 18:01:14 17,408 ----a-w C:\WINDOWS\system32\corpol.dll
    2006-12-19 09:48:45 15,890 ----a-w C:\WINDOWS\system32\drivers\mdc8021x.sys
    2006-12-19 09:47:40 -------- d-----w C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter
    2006-11-23 12:22:28 -------- d-----w C:\Program Files\Elisa Tietoturvapalvelu
    2006-11-23 12:17:51 -------- d-----w C:\Program Files\Lavasoft
    2006-11-23 12:02:31 118,842 ------r C:\WINDOWS\bwUnin-6.3.2.123-4119343L.exe
    2006-11-18 02:02:19 -------- d-----w C:\Program Files\MSXML 4.0
    2006-11-09 20:51:24 -------- d-----w C:\Program Files\microsoft frontpage
    2006-11-08 05:06:14 679,424 ----a-w C:\WINDOWS\system32\inetcomm.dll
    2006-11-07 20:03:36 413,696 ----a-w C:\WINDOWS\system32\vbscript.dll
    2006-11-07 20:03:36 156,160 ----a-w C:\WINDOWS\system32\msls31.dll
    2006-11-07 02:26:44 71,680 ----a-w C:\WINDOWS\system32\admparse.dll
    2006-11-07 02:26:42 55,296 ----a-w C:\WINDOWS\system32\iesetup.dll
    2006-11-04 13:14:00 1,245,696 ----a-w C:\WINDOWS\system32\msxml4.dll
    2006-11-01 19:18:27 927,504 ----a-w C:\WINDOWS\system32\mfc40u.dll
    2006-10-24 13:37:18 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Media Player Classic
    2006-10-20 01:39:00 713,728 ----a-w C:\WINDOWS\system32\sxs.dll
    2006-10-17 11:06:00 78,336 ----a-w C:\WINDOWS\system32\ieencode.dll
    2006-10-17 11:05:10 40,960 ----a-w C:\WINDOWS\system32\licmgr10.dll
    2006-10-17 10:57:58 36,352 ----a-w C:\WINDOWS\system32\imgutil.dll
    2006-10-17 10:56:10 45,568 ----a-w C:\WINDOWS\system32\mshta.exe
    2006-10-17 10:28:56 48,128 ----a-w C:\WINDOWS\system32\mshtmler.dll
    2006-10-16 16:16:01 122,880 ----a-w C:\WINDOWS\system32\oledlg.dll
    2006-10-14 08:13:25 981,760 ----a-w C:\WINDOWS\system32\mfc42u.dll
    2006-10-13 12:37:02 142,336 ----a-w C:\WINDOWS\system32\nwprovau.dll
    2006-10-13 08:17:54 -------- d-----w C:\Program Files\Common Files\Ahead
    2006-09-24 17:32:45 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Google
    2006-09-13 05:03:11 1,084,416 ----a-w C:\WINDOWS\system32\msxml3.dll
    2006-09-06 15:43:26 22,752 ----a-w C:\WINDOWS\system32\spupdsvc.exe
    2006-08-25 15:49:12 617,472 ----a-w C:\WINDOWS\system32\comctl32.dll
    2006-08-24 12:19:40 246,814 ----a-w C:\WINDOWS\system32\strmdll.dll
    2006-08-24 12:17:24 499,254 ----a-w C:\WINDOWS\system32\dxmasf.dll
    2006-08-21 12:26:46 16,896 ----a-w C:\WINDOWS\system32\fltlib.dll
    2006-08-21 09:14:58 23,040 ----a-w C:\WINDOWS\system32\fltmc.exe
    2006-08-21 09:14:58 128,896 ------w C:\WINDOWS\system32\drivers\fltmgr.sys
    2006-08-20 14:47:19 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Ahead
    2006-08-20 14:35:41 -------- d-----w C:\Program Files\Nero
    2006-08-20 13:57:19 -------- d-----w C:\Program Files\ffdshow
    2006-08-17 12:28:30 722,432 ----a-w C:\WINDOWS\system32\lsasrv.dll
    2006-08-17 12:28:30 132,096 ----a-w C:\WINDOWS\system32\wkssvc.dll
    2006-08-16 11:58:03 100,352 ----a-w C:\WINDOWS\system32\6to4svc.dll
    2006-08-16 09:37:30 225,664 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys
    2006-08-14 10:34:41 332,928 ----a-w C:\WINDOWS\system32\drivers\srv.sys
    2006-08-12 11:45:33 21,840 ----a-w C:\WINDOWS\system32\SIntfNT.dll
    2006-08-12 11:45:33 17,212 ----a-w C:\WINDOWS\system32\SIntf32.dll
    2006-08-12 11:45:33 12,067 ----a-w C:\WINDOWS\system32\SIntf16.dll
    2006-08-12 11:42:01 -------- d-----w C:\Program Files\Acclaim Entertainment
    2006-08-12 10:50:26 -------- d-----w C:\Program Files\Setup
    2006-08-12 10:44:30 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\BSplayer
    2006-08-07 11:27:46 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Skype
    2006-07-22 19:54:32 -------- d-----w C:\Program Files\Overland
    2006-07-21 08:28:13 72,704 ----a-w C:\WINDOWS\system32\hlink.dll
    2006-07-18 01:35:25 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\X-Chat 2
    2006-07-13 08:48:58 202,240 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys
    2006-07-03 00:36:52 -------- d-----w C:\Program Files\GSpot
    2006-06-29 07:05:44 26,112 ------w C:\WINDOWS\system32\idndl.dll
    2006-06-29 07:05:44 23,552 ------w C:\WINDOWS\system32\normaliz.dll
    2006-06-28 16:59:26 24,576 ------w C:\WINDOWS\system32\nlsdl.dll
    2006-06-26 05:53:15 -------- d-----w C:\Program Files\QuickTime Alternative
    2006-06-26 00:14:40 -------- d-----w C:\Program Files\Jeskola Buzz
    2006-06-22 05:17:16 1,438,208 ----a-w C:\WINDOWS\system32\query.dll
    2006-06-22 05:17:15 69,120 ----a-w C:\WINDOWS\system32\ciodm.dll
    2006-06-14 09:00:45 82,944 ----a-w C:\WINDOWS\system32\drivers\wdmaud.sys
    2006-06-14 08:47:46 6,400 ----a-w C:\WINDOWS\system32\drivers\splitter.sys
    2006-06-14 08:47:45 172,416 ----a-w C:\WINDOWS\system32\drivers\kmixer.sys
    2006-06-05 13:44:29 -------- d-----w C:\Program Files\Real
    2006-06-05 13:44:29 -------- d-----w C:\Program Files\Common Files\Real
    2006-06-05 13:35:35 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Thunderbird
    2006-06-05 13:05:55 -------- d-----w C:\Program Files\Mozilla Thunderbird
    2006-05-30 13:20:57 3,572 ----a-w C:\WINDOWS\mozver.dat
    2006-05-26 13:29:14 5,120 ----a-w C:\WINDOWS\system32\ff_vfw.dll
    2006-05-22 11:23:22 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Talkback
    2006-05-22 11:22:47 0 ----a-w C:\WINDOWS\nsreg.dat
    2006-05-22 11:22:26 6,257 ----a-w C:\WINDOWS\system32\Mapi32.dll
    2006-05-09 16:15:59 -------- d-----w C:\Program Files\DIFX
    2006-05-09 13:30:33 -------- d-----w C:\Program Files\Macrogaming
    2006-05-06 10:20:10 -------- d-----w C:\Program Files\aod
    2006-05-05 09:47:57 174,592 ----a-w C:\WINDOWS\system32\drivers\rdbss.sys
    2006-05-05 09:41:45 453,120 ----a-w C:\WINDOWS\system32\drivers\mrxsmb.sys
    2006-04-29 13:47:13 -------- d-----w C:\Program Files\Windows Journal Viewer
    2006-04-28 22:41:44 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Ventrilo
    2006-04-20 11:51:50 359,808 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
    2006-04-06 18:54:51 -------- d-----w C:\Program Files\Common Files\GTK
    2006-03-24 04:37:51 49,152 ----a-w C:\WINDOWS\system32\wdigest.dll
    2006-03-23 11:44:19 28,934 ----a-w C:\WINDOWS\hpoins03.dat
    2006-03-23 11:29:47 8,807 ----a-w C:\WINDOWS\extend.dat
    2006-03-17 00:38:01 28,672 ------w C:\WINDOWS\system32\verclsid.exe
    2006-03-17 00:33:10 262,784 ------w C:\WINDOWS\system32\drivers\http.sys
    2006-03-01 19:44:09 956,416 ----a-w C:\WINDOWS\system32\msdtctm.dll
    2006-03-01 19:44:09 91,136 ----a-w C:\WINDOWS\system32\mtxoci.dll
    2006-03-01 19:44:09 66,560 ----a-w C:\WINDOWS\system32\mtxclu.dll
    2006-03-01 19:44:09 426,496 ----a-w C:\WINDOWS\system32\msdtcprx.dll
    2006-03-01 19:44:09 161,280 ----a-w C:\WINDOWS\system32\msdtcuiu.dll
    2006-03-01 19:44:09 11,776 ----a-w C:\WINDOWS\system32\xolehlp.dll
    2006-02-28 14:15:09 -------- d-----w C:\Program Files\Wolfenstein - Enemy Territory
    2006-02-15 00:22:26 142,464 ----a-w C:\WINDOWS\system32\drivers\aec.sys
    2006-02-06 20:30:36 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\HP
    2006-01-30 18:03:10 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Sony Corporation
    2006-01-30 15:09:58 -------- d-----w C:\Program Files\Common Files\Sony Shared
    2006-01-30 15:09:55 -------- d-----w C:\Program Files\Sony
    2006-01-30 15:09:41 -------- d-----w C:\Program Files\Sony Corporation
    2006-01-26 20:02:13 -------- d-----w C:\Program Files\MediaGateway
    2006-01-13 15:08:31 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\FotoWire
    2006-01-13 15:08:30 -------- d-----w C:\Program Files\Logitech
    2006-01-13 15:08:30 -------- d-----w C:\Program Files\Common Files\FotoWire
    2006-01-13 15:06:15 -------- d-----w C:\Program Files\Common Files\Logitech
    2006-01-04 03:35:09 68,096 ----a-w C:\WINDOWS\system32\webclnt.dll
    2005-12-31 02:47:36 -------- d-----w C:\Program Files\ToniArts
    2005-12-31 02:20:31 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Lavasoft
    2005-12-06 15:05:29 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\F-Secure
    2005-11-18 15:04:06 70,896 ----a-w C:\WINDOWS\system32\drivers\fsdfw.sys
    2005-11-18 15:04:02 33,584 ----a-w C:\WINDOWS\system32\drivers\fsndis5.sys
    2005-11-15 06:34:14 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\ispnews
    2005-11-15 06:16:17 118,842 ------r C:\WINDOWS\bwUnin-6.3.2.116-4119343L.exe
    2005-11-05 13:32:35 118,784 ------r C:\WINDOWS\bwUnin-7.2.0.157-8876480SL.exe
    2005-10-21 14:10:32 -------- d-----w C:\Program Files\MUSICMATCH
    2005-10-20 22:26:43 1,082,368 ----a-w C:\WINDOWS\system32\esent.dll
    2005-10-17 21:21:16 80,896 ----a-w C:\WINDOWS\system32\fontsub.dll
    2005-10-17 21:21:16 118,272 ----a-w C:\WINDOWS\system32\t2embed.dll
    2005-10-04 07:57:59 118,784 ------r C:\WINDOWS\bwUnin-6.3.2.62-4119343L.exe
    2005-09-22 12:57:18 348,160 ----a-w C:\WINDOWS\system32\msvcr71.dll
    2005-09-22 12:57:16 503,808 ----a-w C:\WINDOWS\system32\msvcp71.dll
    2005-09-15 12:27:32 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Logitech
    2005-09-15 12:21:48 118,784 ------r C:\WINDOWS\bwUnin-7.2.0.137-8876480SL.exe
    2005-09-15 12:20:23 -------- d-----w C:\Program Files\Common Files\InstallShield
    2005-09-10 01:55:11 2,067,968 ----a-w C:\WINDOWS\system32\cdosys.dll
    2005-09-01 01:43:21 19,968 ----a-w C:\WINDOWS\system32\linkinfo.dll
    2005-08-30 03:55:43 1,287,680 ----a-w C:\WINDOWS\system32\quartz.dll
    2005-08-23 03:39:36 123,904 ----a-w C:\WINDOWS\system32\umpnpmgr.dll
    2005-08-22 18:35:15 197,632 ----a-w C:\WINDOWS\system32\netman.dll
    2005-08-13 13:48:10 -------- d-----w C:\Program Files\Hewlett-Packard
    2005-07-26 04:40:34 397,824 ----a-w C:\WINDOWS\system32\rpcss.dll
    2005-07-26 04:40:34 101,376 ----a-w C:\WINDOWS\system32\txflog.dll
    2005-07-26 04:40:33 74,752 ----a-w C:\WINDOWS\system32\olecli32.dll
    2005-07-26 04:40:33 37,888 ----a-w C:\WINDOWS\system32\olecnv32.dll
    2005-07-26 04:40:33 1,284,608 ----a-w C:\WINDOWS\system32\ole32.dll
    2005-07-26 04:40:30 97,792 ----a-w C:\WINDOWS\system32\comrepl.dll
    2005-07-26 04:40:30 60,416 ----a-w C:\WINDOWS\system32\colbact.dll
    2005-07-26 04:40:30 540,160 ----a-w C:\WINDOWS\system32\comuid.dll
    2005-07-26 04:40:30 498,688 ----a-w C:\WINDOWS\system32\clbcatq.dll
    2005-07-26 04:40:30 243,200 ----a-w C:\WINDOWS\system32\es.dll
    2005-07-26 04:40:30 1,267,200 ----a-w C:\WINDOWS\system32\comsvcs.dll
    2005-07-26 04:40:29 625,152 ----a-w C:\WINDOWS\system32\catsrvut.dll
    2005-07-26 04:40:29 225,792 ----a-w C:\WINDOWS\system32\catsrv.dll
    2005-07-26 04:40:29 110,080 ----a-w C:\WINDOWS\system32\clbcatex.dll
    2005-07-15 14:31:00 266,240 ----a-w C:\WINDOWS\system32\ACUIPCONFIG.exe
    2005-07-12 17:04:22 23,304 ----a-w C:\WINDOWS\system32\GWFSPidGen.dll
    2005-07-08 16:29:13 249,344 ----a-w C:\WINDOWS\system32\tapisrv.dll
    2005-06-29 01:49:52 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
    2005-06-29 01:49:52 254,976 ----a-w C:\WINDOWS\system32\icm32.dll
    2005-06-26 03:05:46 278,528 ----a-w C:\WINDOWS\system32\MagicP.exe
    2005-06-15 17:50:48 295,936 ----a-w C:\WINDOWS\system32\kerberos.dll
    2005-06-10 23:53:32 57,856 ----a-w C:\WINDOWS\system32\spoolsv.exe
    2005-06-10 04:11:15 139,528 ----a-w C:\WINDOWS\system32\drivers\rdpwd.sys
    2005-06-09 02:18:22 43,392 ----a-w C:\WINDOWS\system32\drivers\Athfmwdl.sys
    2005-06-09 02:15:06 288,448 ----a-w C:\WINDOWS\system32\drivers\ar5523.sys
    2005-06-06 21:47:22 36,864 ----a-w C:\WINDOWS\system32\acs.exe
    2005-06-06 21:47:12 409,600 ----a-w C:\WINDOWS\system32\athcfg11.dll
    2005-06-06 21:42:34 843,776 ----a-r C:\WINDOWS\system32\AegisE5.dll
    2005-06-06 21:42:34 110,592 ----a-r C:\WINDOWS\system32\AegisI5.exe
    2005-05-27 02:08:15 41,472 ----a-w C:\WINDOWS\system32\hhsetup.dll
    2005-05-27 02:08:15 155,136 ----a-w C:\WINDOWS\system32\itircl.dll
    2005-05-27 02:08:15 137,216 ----a-w C:\WINDOWS\system32\itss.dll
    2005-05-26 23:22:01 10,752 ----a-w C:\WINDOWS\hh.exe
    2005-05-26 02:16:30 465,176 ----a-w C:\WINDOWS\system32\wuapi.dll
    2005-05-26 02:16:30 41,240 ----a-w C:\WINDOWS\system32\wups.dll
    2005-05-26 02:16:30 194,840 ----a-w C:\WINDOWS\system32\wuaueng1.dll
    2005-05-26 02:16:30 18,200 ----a-w C:\WINDOWS\system32\wups2.dll
    2005-05-26 02:16:30 173,848 ----a-w C:\WINDOWS\system32\wuauclt1.exe
    2005-05-26 02:16:30 173,536 ----a-w C:\WINDOWS\system32\wuweb.dll
    2005-05-26 02:16:30 127,256 ----a-w C:\WINDOWS\system32\wucltui.dll
    2005-05-26 02:16:30 124,696 ----a-w C:\WINDOWS\system32\wuauclt.exe
    2005-05-26 02:16:30 1,343,768 ----a-w C:\WINDOWS\system32\wuaueng.dll
    2005-05-26 02:16:24 75,544 ----a-w C:\WINDOWS\system32\cdm.dll
    2005-05-26 02:16:24 198,424 ----a-w C:\WINDOWS\system32\iuengine.dll
    2005-05-11 02:30:39 76,288 ----a-w C:\WINDOWS\system32\telnet.exe
    2005-05-05 20:42:48 286,720 ----a-w C:\WINDOWS\system32\DetectHW.exe
    2005-05-02 20:56:47 657,920 ----a-w C:\WINDOWS\system32\wininet(3).dll
    2005-05-02 20:56:47 604,160 ----a-w C:\WINDOWS\system32\urlmon(3).dll
    2005-05-02 20:56:47 473,600 ----a-w C:\WINDOWS\system32\shlwapi(3).dll
    2005-03-21 13:00:22 884,736 ----a-w C:\WINDOWS\system32\msimsg.dll
    2005-03-21 13:00:22 78,848 ----a-w C:\WINDOWS\system32\msiexec.exe
    2005-03-21 13:00:22 271,360 ----a-w C:\WINDOWS\system32\msihnd.dll
    2005-03-21 13:00:22 15,360 ----a-w C:\WINDOWS\system32\msisip.dll
    2005-03-10 11:08:56 69,504 ----a-w C:\WINDOWS\system32\drivers\LMouKE.Sys
    2005-03-10 11:08:26 53,632 ----a-w C:\WINDOWS\system32\drivers\L8042mou.Sys
    2005-03-10 11:08:16 13,056 ----a-w C:\WINDOWS\system32\drivers\L8042Kbd.sys
    2005-03-02 18:18:13 56,832 ----a-w C:\WINDOWS\system32\authz.dll
    2005-02-18 16:06:42 -------- d-----w C:\Program Files\MSN Apps
    2005-02-17 16:38:08 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\MSN6
    2005-01-31 10:20:03 211,712 ----a-r C:\WINDOWS\system32\drivers\LV561AV.SYS
    2005-01-31 10:18:04 372,736 ----a-r C:\WINDOWS\system32\LVUI2RC.dll
    2005-01-31 10:12:46 22,016 ----a-r C:\WINDOWS\system32\drivers\LVUSBSta.sys
    2005-01-31 10:10:57 204,800 ----a-r C:\WINDOWS\system32\LVUI2.dll
    2005-01-31 10:08:01 204,800 ----a-r C:\WINDOWS\system32\lvcodec2.dll
    2005-01-31 10:04:55 2,180,096 ----a-r C:\WINDOWS\system32\drivers\lvsvf2.sys
    2005-01-31 10:00:09 106,496 ----a-r C:\WINDOWS\system32\lvcoinst.dll
    2005-01-28 11:44:28 96,768 ----a-w C:\WINDOWS\system32\logagent.exe
    2005-01-28 11:44:28 96,768 ----a-w C:\WINDOWS\system32\drmstor.dll
    2005-01-28 11:44:28 940,544 ----a-w C:\WINDOWS\system32\wmspdmoe.dll
    2005-01-28 11:44:28 895,736 ----a-w C:\WINDOWS\system32\wmvdmod.dll
    2005-01-28 11:44:28 774,904 ----a-w C:\WINDOWS\system32\wmsdmod.dll
    2005-01-28 11:44:28 716,288 ----a-w C:\WINDOWS\system32\wmadmoe.dll
    2005-01-28 11:44:28 66,560 ----a-w C:\WINDOWS\system32\wpdmtpus.dll
    2005-01-28 11:44:28 61,952 ----a-w C:\WINDOWS\system32\wpdconns.dll
    2005-01-28 11:44:28 6,656 ----a-w C:\WINDOWS\system32\laprxy.dll
    2005-01-28 11:44:28 502,272 ----a-w C:\WINDOWS\system32\drmv2clt.dll
    2005-01-28 11:44:28 47,104 ----a-w C:\WINDOWS\system32\uwdf.exe
    2005-01-28 11:44:28 413,944 ----a-w C:\WINDOWS\system32\wmspdmod.dll
    2005-01-28 11:44:28 396,528 ----a-w C:\WINDOWS\system32\wmadmod.dll
    2005-01-28 11:44:28 38,912 ----a-w C:\WINDOWS\system32\wpd_ci.dll
    2005-01-28 11:44:28 38,912 ----a-w C:\WINDOWS\system32\wdfmgr.exe
    2005-01-28 11:44:28 364,784 ----a-w C:\WINDOWS\system32\MSSCP.dll
    2005-01-28 11:44:28 335,872 ----a-w C:\WINDOWS\system32\WMDRMdev.dll
    2005-01-28 11:44:28 331,776 ----a-w C:\WINDOWS\system32\wpdmtpdr.dll
    2005-01-28 11:44:28 331,264 ----a-w C:\WINDOWS\system32\wpdsp.dll
    2005-01-28 11:44:28 33,792 ----a-w C:\WINDOWS\system32\WMDMPS.dll
    2005-01-28 11:44:28 315,904 ----a-w C:\WINDOWS\system32\MSWMDM.dll
    2005-01-28 11:44:28 294,912 ----a-w C:\WINDOWS\system32\blackbox.dll
    2005-01-28 11:44:28 290,816 ----a-w C:\WINDOWS\system32\WMDRMNet.dll
    2005-01-28 11:44:28 28,160 ----a-w C:\WINDOWS\system32\WMDMLOG.dll
    2005-01-28 11:44:28 258,296 ----a-w C:\WINDOWS\system32\drmclien.dll
    2005-01-28 11:44:28 25,088 ----a-w C:\WINDOWS\system32\MsPMSNSv.dll
    2005-01-28 11:44:28 224,768 ----a-w C:\WINDOWS\system32\wmasf.dll
    2005-01-28 11:44:28 221,184 ----a-w C:\WINDOWS\system32\qasf.dll
    2005-01-28 11:44:28 18,944 ----a-w C:\WINDOWS\system32\drivers\wpdusb.sys
    2005-01-28 11:44:28 173,568 ----a-w C:\WINDOWS\system32\MsPMSP.dll
    2005-01-28 11:44:28 164,864 ----a-w C:\WINDOWS\system32\cewmdm.dll
    2005-01-28 11:44:28 150,016 ----a-w C:\WINDOWS\system32\wmidx.dll
    2005-01-28 11:44:28 15,872 ----a-w C:\WINDOWS\system32\wdfapi.dll
    2005-01-28 11:44:28 142,336 ----a-w C:\WINDOWS\system32\msnetobj.dll
    2005-01-28 11:44:28 114,176 ----a-w C:\WINDOWS\system32\wpdmtp.dll
    2005-01-28 11:44:28 10,752 ----a-w C:\WINDOWS\system32\wpdtrace.dll
    2005-01-28 11:44:28 1,512,448 ----a-w C:\WINDOWS\system32\WMVADVE.DLL
    2005-01-28 11:44:28 1,218,808 ----a-w C:\WINDOWS\system32\wmvadvd.dll
    2005-01-28 11:44:28 1,119,744 ----a-w C:\WINDOWS\system32\wmsdmoe2.dll
    2005-01-28 11:44:28 1,027,072 ----a-w C:\WINDOWS\system32\wmnetmgr.dll
    2005-01-28 11:44:28 1,003,008 ----a-w C:\WINDOWS\system32\wmvdmoe2.dll
    2005-01-18 16:35:02 462,848 ----a-w C:\WINDOWS\system32\LCamCpl.dll
    2005-01-18 16:05:12 466,944 ----a-w C:\WINDOWS\system32\QCUI2.dll
    2005-01-18 16:02:12 90,112 ----a-w C:\WINDOWS\system32\LQCUI2.dll
    2005-01-18 13:23:30 215,552 ----a-w C:\WINDOWS\system32\Lvkrn12n.dll
    2005-01-18 13:23:28 856,064 ----a-w C:\WINDOWS\system32\Ltwvc12n.dll
    2005-01-18 13:23:24 406,016 ----a-w C:\WINDOWS\system32\ltkrn12n.dll
    2005-01-18 13:23:22 259,072 ----a-w C:\WINDOWS\system32\LTDIS12n.dll
    2005-01-18 13:23:22 207,872 ----a-w C:\WINDOWS\system32\ltefx12n.dll
    2005-01-18 13:23:22 164,864 ----a-w C:\WINDOWS\system32\ltimg12n.dll
    2005-01-18 13:23:22 131,072 ----a-w C:\WINDOWS\system32\ltfil12n.DLL
    2005-01-18 13:23:18 78,336 ----a-w C:\WINDOWS\system32\lffax12n.dll
    2005-01-18 13:23:18 328,704 ----a-w C:\WINDOWS\system32\LFCMP12n.DLL
    2005-01-18 13:23:18 141,312 ----a-w C:\WINDOWS\system32\lftif12n.dll
    2005-01-18 13:23:16 30,720 ----a-w C:\WINDOWS\system32\lfbmp12n.dll
    2005-01-14 08:55:51 74,752 ----a-w C:\WINDOWS\system32\olecli32(3).dll
    2005-01-14 08:55:51 395,776 ----a-w C:\WINDOWS\system32\rpcss(3).dll
    2005-01-14 08:55:51 1,284,608 ----a-w C:\WINDOWS\system32\ole32(3).dll
    2005-01-05 10:14:57 -------- d-----w C:\Program Files\Hobby Hall Digikuvapalvelu
    2004-12-07 19:34:09 96,768 ----a-w C:\WINDOWS\system32\srvsvc.dll
    2004-12-07 08:11:34 258,352 ----a-w C:\WINDOWS\system32\unicows.dll
    2004-11-17 17:42:51 350,208 ----a-w C:\WINDOWS\system32\hypertrm.dll
    2004-11-16 09:27:37 -------- d-----w C:\Program Files\LightDriver2
    2004-10-23 17:15:39 -------- d-----w C:\Program Files\Movie Maker
    2004-10-23 17:11:05 -------- d-----w C:\Program Files\Windows NT
    2004-10-18 10:00:07 -------- d-----w C:\Program Files\GRekAT
    2004-10-13 15:44:10 28,672 ----a-w C:\WINDOWS\system32\RemoveWLANInstaller.exe
    2004-10-08 11:46:28 53,248 ----a-r C:\WINDOWS\system32\InstMed.exe
    2004-10-08 10:55:36 77,824 ----a-w C:\WINDOWS\system32\LVCOMCX.dll
    2004-10-08 10:52:58 258,048 ----a-w C:\WINDOWS\system32\LVMAENUM.dll
    2004-10-08 10:52:32 221,184 ----a-w C:\WINDOWS\system32\LVCOMSX.EXE
    2004-09-29 22:28:37 134,912 ----a-w C:\WINDOWS\system32\drivers\ipnat.sys
    2004-09-15 00:12:00 53,760 ----a-w C:\WINDOWS\system32\vfwwdm32.dll
    2004-09-14 23:21:29 1,788 ----a-w C:\WINDOWS\system32\dcache.bin
    2004-09-14 23:13:48 331,264 ----a-w C:\WINDOWS\system32\netsetup.exe
    2004-09-14 23:12:17 92,168 ----a-w C:\WINDOWS\system32\rdpdd.dll
    2004-09-14 23:12:17 87,176 ----a-w C:\WINDOWS\system32\rdpwsx.dll
    2004-09-14 23:12:17 21,896 ----a-w C:\WINDOWS\system32\drivers\tdtcp.sys
    2004-09-14 23:12:17 12,168 ----a-w C:\WINDOWS\system32\tsddd.dll
    2004-09-14 23:12:16 40,840 ----a-w C:\WINDOWS\system32\drivers\termdd.sys
    2004-09-14 23:12:16 12,040 ----a-w C:\WINDOWS\system32\drivers\tdpipe.sys
    2004-09-14 23:12:09 679,936 ----a-w C:\WINDOWS\system32\sstext3d.scr
    2004-09-14 23:12:09 610,304 ----a-w C:\WINDOWS\system32\sspipes.scr
    2004-09-14 23:12:09 47,104 ----a-w C:\WINDOWS\system32\ssmypics.scr
    2004-09-14 23:12:09 18,944 ----a-w C:\WINDOWS\system32\ssmyst.scr
    2004-09-14 23:12:09 14,336 ----a-w C:\WINDOWS\system32\ssstars.scr
    2004-09-14 23:12:08 9,216 ----a-w C:\WINDOWS\system32\scrnsave.scr
    2004-09-14 23:12:08 708,608 ----a-w C:\WINDOWS\system32\ss3dfo.scr
    2004-09-14 23:12:08 393,216 ----a-w C:\WINDOWS\system32\ssflwbox.scr
    2004-09-14 23:12:08 220,672 ----a-w C:\WINDOWS\system32\logon.scr
    2004-09-14 23:12:08 20,992 ----a-w C:\WINDOWS\system32\ssmarque.scr
    2004-09-14 23:12:08 19,968 ----a-w C:\WINDOWS\system32\ssbezier.scr
    2004-09-14 23:12:07 65,536 ----a-w C:\WINDOWS\system32\wextract.exe
    2004-09-14 23:12:07 57,856 ----a-w C:\WINDOWS\system32\spoolsv(2).exe
    2004-09-14 23:12:07 538,624 ----a-w C:\WINDOWS\system32\spider.exe
    2004-09-14 23:12:07 502,784 ----a-w C:\WINDOWS\system32\winlogon.exe
    2004-09-14 23:12:07 50,176 ----a-w C:\WINDOWS\system32\utilman.exe
    2004-09-14 23:12:07 5,632 ----a-w C:\WINDOWS\system32\winver.exe
    2004-09-14 23:12:07 431,104 ----a-w C:\WINDOWS\system32\wiaacmgr.exe
    2004-09-14 23:12:07 347,136 ----a-w C:\WINDOWS\system32\tourstart.exe
    2004-09-14 23:12:07 32,768 ----a-w C:\WINDOWS\system32\wpnpinst.exe
    2004-09-14 23:12:07 32,256 ----a-w C:\WINDOWS\system32\wpabaln.exe
    2004-09-14 23:12:07 30,720 ----a-w C:\WINDOWS\system32\xcopy.exe
    2004-09-14 23:12:07 289,280 ----a-w C:\WINDOWS\system32\vssvc.exe
    2004-09-14 23:12:07 283,648 ----a-w C:\WINDOWS\winhlp32.exe
    2004-09-14 23:12:07 24,576 ----a-w C:\WINDOWS\system32\userinit.exe
    2004-09-14 23:12:07 21,504 ------w C:\WINDOWS\system32\spupdwxp.exe
    2004-09-14 23:12:07 18,432 ----a-w C:\WINDOWS\system32\ups.exe
    2004-09-14 23:12:07 16,896 ----a-w C:\WINDOWS\system32\upnpcont.exe
    2004-09-14 23:12:07 14,848 ----a-w C:\WINDOWS\system32\stimon.exe
    2004-09-14 23:12:07 14,336 ----a-w C:\WINDOWS\system32\svchost.exe
    2004-09-14 23:12:07 138,240 ----a-w C:\WINDOWS\system32\taskmgr.exe
    2004-09-14 23:12:07 13,824 ------w C:\WINDOWS\system32\wscntfy.exe
    2004-09-14 23:12:07 12,800 ----a-w C:\WINDOWS\system32\tracert.exe
    2004-09-14 23:12:07 114,688 ----a-w C:\WINDOWS\system32\wscript.exe
    2004-09-14 23:12:07 107,008 ----a-w C:\WINDOWS\system32\sysocmgr.exe
    2004-09-14 23:12:06 97,280 ----a-w C:\WINDOWS\system32\scardsvr.exe
    2004-09-14 23:12:06 9,728 ------w C:\WINDOWS\system32\proxycfg.exe
    2004-09-14 23:12:06 89,088 ----a-w C:\WINDOWS\system32\smlogsvc.exe
    2004-09-14 23:12:06 8,192 ----a-w C:\WINDOWS\system32\spdwnwxp.exe
    2004-09-14 23:12:06 8,192 ------w C:\WINDOWS\system32\smbinst.exe
    2004-09-14 23:12:06 77,824 ----a-w C:\WINDOWS\system32\shrpubw.exe
    2004-09-14 23:12:06 77,824 ----a-w C:\WINDOWS\system32\sdbinst.exe
    2004-09-14 23:12:06 76,800 ----a-w C:\WINDOWS\system32\rtcshare.exe
    2004-09-14 23:12:06 70,656 ----a-w C:\WINDOWS\system32\sigverif.exe
    2004-09-14 23:12:06 69,632 ----a-w C:\WINDOWS\system32\odbcconf.exe
    2004-09-14 23:12:06 67,072 ----a-w C:\WINDOWS\system32\rdshost.exe
    2004-09-14 23:12:06 62,464 ----a-w C:\WINDOWS\system32\rdpclip.exe
    2004-09-14 23:12:06 58,368 ----a-w C:\WINDOWS\system32\packager.exe
    2004-09-14 23:12:06 56,832 ----a-w C:\WINDOWS\system32\rasphone.exe
    2004-09-14 23:12:06 51,200 ----a-w C:\WINDOWS\system32\reg.exe
    2004-09-14 23:12:06 50,688 ----a-w C:\WINDOWS\system32\smss.exe
    2004-09-14 23:12:06 50,688 ----a-w C:\WINDOWS\system32\proquota.exe
    2004-09-14 23:12:06 49,152 ------w C:\WINDOWS\system32\powercfg.exe
    2004-09-14 23:12:06 420,352 ----a-w C:\WINDOWS\system32\ntvdm.exe
    2004-09-14 23:12:06 42,496 ----a-w C:\WINDOWS\system32\shmgrate.exe
    2004-09-14 23:12:06 35,840 ----a-w C:\WINDOWS\system32\rcimlby.exe
    2004-09-14 23:12:06 33,280 ----a-w C:\WINDOWS\system32\rundll32.exe
    2004-09-14 23:12:06 32,866 ------w C:\WINDOWS\system32\slrundll.exe
    2004-09-14 23:12:06 32,768 ----a-w C:\WINDOWS\system32\odbcad32.exe
    2004-09-14 23:12:06 32,256 ----a-w C:\WINDOWS\system32\sethc.exe
    2004-09-14 23:12:06 26,112 ----a-w C:\WINDOWS\system32\skeys.exe
    2004-09-14 23:12:06 23,040 ----a-w C:\WINDOWS\system32\setup.exe
    2004-09-14 23:12:06 216,064 ----a-w C:\WINDOWS\system32\osk.exe
    2004-09-14 23:12:06 21,504 ----a-w C:\WINDOWS\system32\rcp.exe
    2004-09-14 23:12:06 20,480 ----a-w C:\WINDOWS\system32\qprocess.exe
    2004-09-14 23:12:06 19,968 ----a-w C:\WINDOWS\system32\shutdown.exe
    2004-09-14 23:12:06 18,432 ----a-w C:\WINDOWS\system32\ping.exe
    2004-09-14 23:12:06 15,872 ----a-w C:\WINDOWS\system32\perfmon.exe
    2004-09-14 23:12:06 15,360 ----a-w C:\WINDOWS\system32\rsh.exe
    2004-09-14 23:12:06 146,944 ----a-w C:\WINDOWS\regedit.exe
    2004-09-14 23:12:06 140,800 ----a-w C:\WINDOWS\system32\sessmgr.exe
    2004-09-14 23:12:06 14,336 ----a-w C:\WINDOWS\system32\runonce.exe
    2004-09-14 23:12:06 14,336 ----a-w C:\WINDOWS\system32\rexec.exe
    2004-09-14 23:12:06 131,584 ----a-w C:\WINDOWS\system32\sndrec32.exe
    2004-09-14 23:12:06 13,824 ----a-w C:\WINDOWS\system32\rdsaddin.exe
    2004-09-14 23:12:06 13,312 ----a-w C:\WINDOWS\system32\savedump.exe
    2004-09-14 23:12:06 12,288 ----a-w C:\WINDOWS\system32\regsvr32.exe
    2004-09-14 23:12:06 109,568 ----a-w C:\WINDOWS\system32\progman.exe
    2004-09-14 23:12:06 108,544 ----a-w C:\WINDOWS\system32\services.exe
    2004-09-14 23:12:05 86,528 ----a-w C:\WINDOWS\system32\netsh.exe
    2004-09-14 23:12:05 76,800 ----a-w C:\WINDOWS\system32\nslookup.exe
    2004-09-14 23:12:05 69,632 ----a-w C:\WINDOWS\system32\notepad.exe
    2004-09-14 23:12:05 69,632 ----a-w C:\WINDOWS\notepad.exe
    2004-09-14 23:12:05 6,144 ----a-w C:\WINDOWS\system32\msdtc.exe
    2004-09-14 23:12:05 54,272 ----a-w C:\WINDOWS\system32\narrator.exe
    2004-09-14 23:12:05 42,496 ----a-w C:\WINDOWS\system32\net.exe
    2004-09-14 23:12:05 4,096 ----a-w C:\WINDOWS\system32\nddeapir.exe
    2004-09-14 23:12:05 37,888 ----a-w C:\WINDOWS\system32\netstat.exe
    2004-09-14 23:12:05 344,064 ----a-w C:\WINDOWS\system32\mspaint.exe
    2004-09-14 23:12:05 124,928 ----a-w C:\WINDOWS\system32\net1.exe
    2004-09-14 23:12:05 12,288 ----a-w C:\WINDOWS\system32\mstinit.exe
    2004-09-14 23:12:05 112,640 ----a-w C:\WINDOWS\system32\netdde.exe
    2004-09-14 23:12:04 123,392 ----a-w C:\WINDOWS\system32\mplay32.exe
    2004-09-14 23:12:03 85,504 ----a-w C:\WINDOWS\system32\makecab.exe
    2004-09-14 23:12:03 815,104 ----a-w C:\WINDOWS\system32\mmc.exe
    2004-09-14 23:12:03 75,264 ----a-w C:\WINDOWS\system32\locator.exe
    2004-09-14 23:12:03 72,704 ----a-w C:\WINDOWS\system32\magnify.exe
    2004-09-14 23:12:03 59,392 ------w C:\WINDOWS\system32\logman.exe
    2004-09-14 23:12:03 54,272 ----a-w C:\WINDOWS\system32\ipconfig.exe
    2004-09-14 23:12:03 53,760 ----a-w C:\WINDOWS\system32\ipv6.exe
    2004-09-14 23:12:03 515,072 ----a-w C:\WINDOWS\system32\logonui.exe
    2004-09-14 23:12:03 44,544 ----a-w C:\WINDOWS\system32\ftp.exe
    2004-09-14 23:12:03 39,424 ----a-w C:\WINDOWS\system32\grpconv.exe
    2004-09-14 23:12:03 32,768 ----a-w C:\WINDOWS\system32\mnmsrvc.exe
    2004-09-14 23:12:03 268,800 ----a-w C:\WINDOWS\system32\fxssvc.exe
    2004-09-14 23:12:03 231,936 ----a-w C:\WINDOWS\system32\fxscover.exe
    2004-09-14 23:12:03 23,552 ----a-w C:\WINDOWS\system32\ipxroute.exe
    2004-09-14 23:12:03 193,024 ------w C:\WINDOWS\system32\fsquirt.exe
    2004-09-14 23:12:03 150,016 ----a-w C:\WINDOWS\system32\imapi.exe
    2004-09-14 23:12:03 143,360 ----a-w C:\WINDOWS\system32\mobsync.exe
    2004-09-14 23:12:03 143,360 ----a-w C:\WINDOWS\system32\fxsclnt.exe
    2004-09-14 23:12:03 13,312 ----a-w C:\WINDOWS\system32\lsass.exe
    2004-09-14 23:12:03 114,688 ----a-w C:\WINDOWS\system32\iexpress.exe
    2004-09-14 23:12:02 98,304 ----a-w C:\WINDOWS\system32\cscript.exe
    2004-09-14 23:12:02 85,504 ----a-w C:\WINDOWS\system32\diantz.exe
    2004-09-14 23:12:02 83,456 ----a-w C:\WINDOWS\system32\dpvsetup.exe
    2004-09-14 23:12:02 82,432 ----a-w C:\WINDOWS\system32\dfrgfat.exe
    2004-09-14 23:12:02 64,000 ----a-w C:\WINDOWS\system32\cleanmgr.exe
    2004-09-14 23:12:02 62,976 ----a-w C:\WINDOWS\system32\cmstp.exe
    2004-09-14 23:12:02 5,632 ----a-w C:\WINDOWS\system32\cisvc.exe
    2004-09-14 23:12:02 47,104 ----a-w C:\WINDOWS\system32\cmdl32.exe
    2004-09-14 23:12:02 45,568 ----a-w C:\WINDOWS\system32\extrac32.exe
    2004-09-14 23:12:02 40,960 ----a-w C:\WINDOWS\system32\cmmon32.exe
    2004-09-14 23:12:02 390,656 ----a-w C:\WINDOWS\system32\cmd.exe
    2004-09-14 23:12:02 33,280 ----a-w C:\WINDOWS\system32\clipsrv.exe
    2004-09-14 23:12:02 31,232 ----a-w C:\WINDOWS\system32\ddeshare.exe
    2004-09-14 23:12:02 30,208 ----a-w C:\WINDOWS\system32\dplaysvr.exe
    2004-09-14 23:12:02 28,160 ----a-w C:\WINDOWS\system32\findstr.exe
    2004-09-14 23:12:02 27,648 ----a-w C:\WINDOWS\system32\conime.exe
    2004-09-14 23:12:02 25,088 ----a-w C:\WINDOWS\system32\defrag.exe
    2004-09-14 23:12:02 224,768 ----a-w C:\WINDOWS\system32\dmadmin.exe
    2004-09-14 23:12:02 21,504 ----a-w C:\WINDOWS\system32\fontview.exe
    2004-09-14 23:12:02 20,992 ------w C:\WINDOWS\system32\faxpatch.exe
    2004-09-14 23:12:02 20,480 ----a-w C:\WINDOWS\system32\cliconfg.exe
    2004-09-14 23:12:02 194,048 ----a-w C:\WINDOWS\system32\eudcedit.exe
    2004-09-14 23:12:02 180,224 ----a-w C:\WINDOWS\system32\dwwin.exe
    2004-09-14 23:12:02 18,432 ----a-w C:\WINDOWS\system32\dpnsvr.exe
    2004-09-14 23:12:02 17,920 ----a-w C:\WINDOWS\system32\dvdupgrd.exe
    2004-09-14 23:12:02 161,792 ----a-w C:\WINDOWS\system32\diskpart.exe
    2004-09-14 23:12:02 15,872 ----a-w C:\WINDOWS\system32\dmremote.exe
    2004-09-14 23:12:02 15,360 ----a-w C:\WINDOWS\system32\ctfmon.exe
    2004-09-14 23:12:02 102,400 ----a-w C:\WINDOWS\system32\clipbrd.exe
    2004-09-14 23:12:02 10,752 ----a-w C:\WINDOWS\system32\dumprep.exe
    2004-09-14 23:12:02 1,298,432 ----a-w C:\WINDOWS\system32\dxdiag.exe
    2004-09-14 23:12:02 1,032,704 ----a-w C:\WINDOWS\explorer.exe
    2004-09-14 23:12:01 98,304 ----a-w C:\WINDOWS\system32\ahui.exe
    2004-09-14 23:12:01 91,648 ----a-w C:\WINDOWS\system32\xactsrv.dll
    2004-09-14 23:12:01 71,680 ------w C:\WINDOWS\system32\blastcln.exe
    2004-09-14 23:12:01 65,536 ----a-w C:\WINDOWS\system32\wshext.dll
    2004-09-14 23:12:01 602,112 ----a-w C:\WINDOWS\system32\autoconv.exe
    2004-09-14 23:12:01 6,656 ----a-w C:\WINDOWS\system32\wuauserv.dll
    2004-09-14 23:12:01 587,776 ----a-w C:\WINDOWS\system32\autochk.exe
    2004-09-14 23:12:01 580,096 ----a-w C:\WINDOWS\system32\autofmt.exe
    2004-09-14 23:12:01 51,712 ----a-w C:\WINDOWS\system32\wzcsapi.dll
    2004-09-14 23:12:01 50,688 ----a-w C:\WINDOWS\system32\wstdecod.dll
    2004-09-14 23:12:01 50,176 ------w C:\WINDOWS\system32\xmlprovi.dll
    2004-09-14 23:12:01 44,544 ----a-w C:\WINDOWS\system32\alg.exe
    2004-09-14 23:12:01 42,496 ----a-w C:\WINDOWS\system32\wsnmp32.dll
    2004-09-14 23:12:01 4,096 ----a-w C:\WINDOWS\system32\actmovie.exe
    2004-09-14 23:12:01 378,368 ----a-w C:\WINDOWS\system32\wzcdlg.dll
    2004-09-14 23:12:01 359,936 ----a-w C:\WINDOWS\system32\wzcsvc.dll
    2004-09-14 23:12:01 336,896 ----a-w C:\WINDOWS\system32\zipfldr.dll
    2004-09-14 23:12:01 28,672 ----a-w C:\WINDOWS\system32\wshcon.dll
    2004-09-14 23:12:01 25,088 ----a-w C:\WINDOWS\system32\at.exe
    2004-09-14 23:12:01 24,064 ----a-w C:\WINDOWS\system32\wsock32.dll
    2004-09-14 23:12:01 19,968 ----a-w C:\WINDOWS\system32\wshtcpip.dll
    2004-09-14 23:12:01 186,368 ----a-w C:\WINDOWS\system32\accwiz.exe
    2004-09-14 23:12:01 18,432 ----a-w C:\WINDOWS\system32\wtsapi32.dll
    2004-09-14 23:12:01 14,336 ----a-w C:\WINDOWS\system32\wship6.dll
    2004-09-14 23:12:01 14,336 ------w C:\WINDOWS\system32\auditusr.exe
    2004-09-14 23:12:01 129,536 ------w C:\WINDOWS\system32\xmlprov.dll
    2004-09-14 23:12:01 11,776 ----a-w C:\WINDOWS\system32\wshrm.dll
    2004-09-14 23:12:01 11,264 ----a-w C:\WINDOWS\system32\autolfn.exe
    2004-09-14 23:12:01 11,264 ----a-w C:\WINDOWS\system32\atmadm.exe
    2004-09-14 23:12:01 108,032 ------w C:\WINDOWS\system32\wshbth.dll
    2004-09-14 23:12:00 98,816 ----a-w C:\WINDOWS\system32\winscard.dll
    2004-09-14 23:12:00 92,672 ----a-w C:\WINDOWS\system32\wlnotify.dll
    2004-09-14 23:12:00 82,944 ----a-w C:\WINDOWS\system32\ws2_32.dll
    2004-09-14 23:12:00 81,408 ------w C:\WINDOWS\system32\wscsvc.dll
    2004-09-14 23:12:00 53,760 ----a-w C:\WINDOWS\system32\winsta.dll
    2004-09-14 23:12:00 351,232 ----a-w C:\WINDOWS\system32\winhttp.dll
    2004-09-14 23:12:00 32,768 ----a-w C:\WINDOWS\system32\winipsec.dll
    2004-09-14 23:12:00 303,616 ----a-w C:\WINDOWS\system32\wmstream.dll
    2004-09-14 23:12:00 264,192 ----a-w C:\WINDOWS\system32\wow32.dll
    2004-09-14 23:12:00 221,184 ----a-w C:\WINDOWS\system32\wmpns.dll
    2004-09-14 23:12:00 19,968 ----a-w C:\WINDOWS\system32\ws2help.dll
    2004-09-14 23:12:00 176,640 ----a-w C:\WINDOWS\system32\wintrust.dll
    2004-09-14 23:12:00 174,592 ----a-w C:\WINDOWS\system32\winmm.dll
    2004-09-14 23:12:00 172,544 ----a-w C:\WINDOWS\system32\wldap32.dll
    2004-09-14 23:12:00 17,408 ------w C:\WINDOWS\system32\winshfhc.dll
    2004-09-14 23:12:00 16,896 ----a-w C:\WINDOWS\system32\winrnr.dll
    2004-09-14 23:12:00 115,200 ----a-w C:\WINDOWS\system32\wmsdmoe.dll
    2004-09-14 23:12:00 111,104 ----a-w C:\WINDOWS\system32\wiavideo.dll
    2004-09-14 23:12:00 102,400 ----a-w C:\WINDOWS\system32\win32spl.dll
    2004-09-14 23:11:59 78,336 ----a-w C:\WINDOWS\system32\unimdmat.dll
    2004-09-14 23:11:59 75,776 ----a-w C:\WINDOWS\system32\wiascr.dll
    2004-09-14 23:11:59 74,240 ----a-w C:\WINDOWS\system32\usbui.dll
    2004-09-14 23:11:59 726,528 ----a-w C:\WINDOWS\system32\userenv.dll
    2004-09-14 23:11:59 589,312 ----a-w C:\WINDOWS\system32\wiashext.dll
    2004-09-14 23:11:59 51,712 ----a-w C:\WINDOWS\system32\vdmredir.dll
    2004-09-14 23:11:59 461,312 ----a-w C:\WINDOWS\system32\wiadefui.dll
    2004-09-14 23:11:59 430,592 ----a-w C:\WINDOWS\system32\vssapi.dll
    2004-09-14 23:11:59 406,528 ----a-w C:\WINDOWS\system32\usp10.dll
    2004-09-14 23:11:59 36,352 ----a-w C:\WINDOWS\system32\umandlg.dll
    2004-09-14 23:11:59 316,416 ----a-w C:\WINDOWS\system32\untfs.dll
    2004-09-14 23:11:59 30,749 ------w C:\WINDOWS\system32\vbajet32.dll
    2004-09-14 23:11:59 274,432 ----a-w C:\WINDOWS\system32\ulib.dll
    2004-09-14 23:11:59 26,112 ----a-w C:\WINDOWS\system32\vdmdbg.dll
    2004-09-14 23:11:59 239,616 ----a-w C:\WINDOWS\system32\upnpui.dll
    2004-09-14 23:11:59 219,136 ----a-w C:\WINDOWS\system32\uxtheme.dll
    2004-09-14 23:11:59 18,944 ----a-w C:\WINDOWS\system32\version.dll
    2004-09-14 23:11:59 174,592 ----a-w C:\WINDOWS\system32\w32time.dll
    2004-09-14 23:11:59 16,896 ----a-w C:\WINDOWS\system32\usbmon.dll
    2004-09-14 23:11:59 15,872 ------w C:\WINDOWS\system32\w3ssl.dll
    2004-09-14 23:11:59 136,192 ----a-w C:\WINDOWS\system32\webvw.dll
    2004-09-14 23:11:59 132,608 ----a-w C:\WINDOWS\system32\upnp.dll
    2004-09-14 23:11:59 13,824 ----a-w C:\WINDOWS\system32\uniplat.dll
    2004-09-14 23:11:59 124,928 ----a-w C:\WINDOWS\system32\wiadss.dll
    2004-09-14 23:11:59 118,784 ----a-w C:\WINDOWS\system32\umpnpmgr(3).dll
    2004-09-14 23:11:58 985,088 ----a-w C:\WINDOWS\system32\syssetup.dll
    2004-09-14 23:11:58 93,696 ----a-w C:\WINDOWS\system32\tscfgwmi.dll
    2004-09-14 23:11:58 90,624 ----a-w C:\WINDOWS\system32\trkwks.dll
    2004-09-14 23:11:58 858,112 ----a-w C:\WINDOWS\system32\tapi3.dll
    2004-09-14 23:11:58 75,776 ------w C:\WINDOWS\system32\strmfilt.dll
    2004-09-14 23:11:58 74,240 ----a-w C:\WINDOWS\system32\storprop.dll
    2004-09-14 23:11:58 71,680 ----a-w C:\WINDOWS\system32\ssdpsrv.dll
    2004-09-14 23:11:58 68,096 ----a-w C:\WINDOWS\system32\sti.dll
    2004-09-14 23:11:58 57,856 ----a-w C:\WINDOWS\system32\synceng.dll
    2004-09-14 23:11:58 50,688 ----a-w C:\WINDOWS\twain_32.dll
    2004-09-14 23:11:58 46,592 ----a-w C:\WINDOWS\system32\tcpmon.dll
    2004-09-14 23:11:58 46,080 ----a-w C:\WINDOWS\system32\tcpmonui.dll
    2004-09-14 23:11:58 44,032 ------w C:\WINDOWS\system32\twext.dll
    2004-09-14 23:11:58 385,536 ----a-w C:\WINDOWS\system32\themeui.dll
    2004-09-14 23:11:58 358,400 ----a-w C:\WINDOWS\system32\termmgr.dll
    2004-09-14 23:11:58 34,816 ----a-w C:\WINDOWS\system32\ssdpapi.dll
    2004-09-14 23:11:58 295,424 ----a-w C:\WINDOWS\system32\termsrv.dll
    2004-09-14 23:11:58 25,600 ----a-w C:\WINDOWS\system32\udhisapi.dll
    2004-09-14 23:11:58 246,272 ----a-w C:\WINDOWS\system32\tapisrv(3).dll
    2004-09-14 23:11:58 240,640 ----a-w C:\WINDOWS\system32\srrstr.dll
    2004-09-14 23:11:58 192,000 ----a-w C:\WINDOWS\system32\syncui.dll
    2004-09-14 23:11:58 181,760 ----a-w C:\WINDOWS\system32\tapi32.dll
    2004-09-14 23:11:58 170,496 ----a-w C:\WINDOWS\system32\srsvc.dll
    2004-09-14 23:11:58 14,848 ----a-w C:\WINDOWS\system32\tcpmib.dll
    2004-09-14 23:11:58 136,704 ----a-w C:\WINDOWS\system32\sti_ci.dll
    2004-09-14 23:11:58 121,856 ----a-w C:\WINDOWS\system32\stobject.dll
    2004-09-14 23:11:57 98,304 ----a-w C:\WINDOWS\system32\slbiop.dll
    2004-09-14 23:11:57 74,752 ----a-w C:\WINDOWS\system32\spoolss.dll
    2004-09-14 23:11:57 73,832 ------w C:\WINDOWS\system32\slcoinst.dll
    2004-09-14 23:11:57 67,584 ----a-w C:\WINDOWS\system32\srclient.dll
    2004-09-14 23:11:57 442,368 ----a-w C:\WINDOWS\system32\sqlsrv32.dll
    2004-09-14 23:11:57 365,056 ----a-w C:\WINDOWS\system32\smlogcfg.dll
    2004-09-14 23:11:57 25,088 ----a-w C:\WINDOWS\system32\slayerxp.dll
    2004-09-14 23:11:57 182,272 ----a-w C:\WINDOWS\system32\snmpsnap.dll
    2004-09-14 23:11:57 180,800 ----a-w C:\WINDOWS\system32\sqlunirl.dll
    2004-09-14 23:11:57 18,944 ----a-w C:\WINDOWS\system32\snmpapi.dll
    2004-09-14 23:11:56 69,120 ----a-w C:\WINDOWS\system32\scarddlg.dll
    2004-09-14 23:11:56 68,096 ----a-w C:\WINDOWS\system32\shgina.dll
    2004-09-14 23:11:56 65,536 ----a-w C:\WINDOWS\system32\shimeng.dll
    2004-09-14 23:11:56 64,000 ----a-w C:\WINDOWS\system32\samlib.dll
    2004-09-14 23:11:56 60,416 ----a-w C:\WINDOWS\system32\remotepg.dll
    2004-09-14 23:11:56 6,656 ----a-w C:\WINDOWS\system32\sensapi.dll
    2004-09-14 23:11:56 59,904 ----a-w C:\WINDOWS\system32\regsvc.dll
    2004-09-14 23:11:56 581,120 ----a-w C:\WINDOWS\system32\rpcrt4.dll
    2004-09-14 23:11:56 58,880 ----a-w C:\WINDOWS\system32\resutils.dll
    2004-09-14 23:11:56 56,320 ----a-w C:\WINDOWS\system32\servdeps.dll
    2004-09-14 23:11:56 55,808 ----a-w C:\WINDOWS\system32\secur32.dll
    2004-09-14 23:11:56 55,296 ----a-w C:\WINDOWS\system32\sendmail.dll
    2004-09-14 23:11:56 5,632 ----a-w C:\WINDOWS\system32\security.dll
    2004-09-14 23:11:56 5,120 ----a-w C:\WINDOWS\system32\sfc.dll
    2004-09-14 23:11:56 45,568 ----a-w C:\WINDOWS\system32\safrslv.dll
    2004-09-14 23:11:56 44,032 ----a-w C:\WINDOWS\system32\rtutils.dll
    2004-09-14 23:11:56 438,272 ----a-w C:\WINDOWS\system32\shimgvw.dll
    2004-09-14 23:11:56 43,520 ----a-w C:\WINDOWS\system32\safrcdlg.dll
    2004-09-14 23:11:56 423,936 ----a-w C:\WINDOWS\system32\samsrv.dll
    2004-09-14 23:11:56 398,336 ----a-w C:\WINDOWS\system32\regwizc.dll
    2004-09-14 23:11:56 397,056 ------w C:\WINDOWS\system32\s3gnb.dll
    2004-09-14 23:11:56 39,936 ----a-w C:\WINDOWS\system32\rshx32.dll
    2004-09-14 23:11:56 38,912 ----a-w C:\WINDOWS\system32\sens.dll
    2004-09-14 23:11:56 317,952 ----a-w C:\WINDOWS\system32\scesrv.dll
    2004-09-14 23:11:56 31,744 ----a-w C:\WINDOWS\system32\rtipxmib.dll
    2004-09-14 23:11:56 29,696 ----a-w C:\WINDOWS\system32\sendcmsg.dll
    2004-09-14 23:11:56 29,696 ----a-w C:\WINDOWS\system32\safrdm.dll
    2004-09-14 23:11:56 29,184 ------w C:\WINDOWS\system32\sdhcinst.dll
    2004-09-14 23:11:56 270,848 ----a-w C:\WINDOWS\system32\sbe.dll
    2004-09-14 23:11:56 27,648 ----a-w C:\WINDOWS\system32\shscrap.dll
    2004-09-14 23:11:56 25,088 ----a-w C:\WINDOWS\system32\shfolder.dll
    2004-09-14 23:11:56 21,504 ----a-w C:\WINDOWS\system32\sclgntfy.dll
    2004-09-14 23:11:56 190,976 ----a-w C:\WINDOWS\system32\schedsvc.dll
    2004-09-14 23:11:56 182,784 ----a-w C:\WINDOWS\system32\scecli.dll
    2004-09-14 23:11:56 18,944 ----a-w C:\WINDOWS\system32\seclogon.dll
    2004-09-14 23:11:56 18,944 ----a-w C:\WINDOWS\system32\rsmps.dll
    2004-09-14 23:11:56 171,008 ----a-w C:\WINDOWS\system32\sccsccp.dll
    2004-09-14 23:11:56 159,744 ----a-w C:\WINDOWS\system32\scrobj.dll
    2004-09-14 23:11:56 159,232 ----a-w C:\WINDOWS\system32\sbeio.dll
    2004-09-14 23:11:56 152,576 ----a-w C:\WINDOWS\system32\shmedia.dll
    2004-09-14 23:11:56 151,552 ----a-w C:\WINDOWS\system32\scrrun.dll
    2004-09-14 23:11:56 144,896 ----a-w C:\WINDOWS\system32\schannel.dll
    2004-09-14 23:11:56 140,288 ----a-w C:\WINDOWS\system32\sfc_os.dll
    2004-09-14 23:11:56 13,312 ----a-w C:\WINDOWS\system32\sigtab.dll
    2004-09-14 23:11:56 1,548,288 ----a-w C:\WINDOWS\system32\sfcfiles.dll
    2004-09-14 23:11:55 97,280 ----a-w C:\WINDOWS\system32\psbase.dll
    2004-09-14 23:11:55 89,088 ----a-w C:\WINDOWS\system32\rasauto.dll
    2004-09-14 23:11:55 69,632 ----a-w C:\WINDOWS\system32\raschap.dll
    2004-09-14 23:11:55 661,504 ----a-w C:\WINDOWS\system32\rasdlg.dll
    2004-09-14 23:11:55 61,440 ----a-w C:\WINDOWS\system32\rasman.dll
    2004-09-14 23:11:55 58,880 ----a-w C:\WINDOWS\system32\rastapi.dll
    2004-09-14 23:11:55 562,176 ----a-w C:\WINDOWS\system32\qedit.dll
    2004-09-14 23:11:55 562,176 ----a-w C:\WINDOWS\system32\printui.dll
    2004-09-14 23:11:55 49,664 ----a-w C:\WINDOWS\system32\regapi.dll
    2004-09-14 23:11:55 48,640 ------w C:\WINDOWS\system32\pnrpnsp.dll
    2004-09-14 23:11:55 43,520 ----a-w C:\WINDOWS\system32\racpldlg.dll
    2004-09-14 23:11:55 43,520 ----a-w C:\WINDOWS\system32\pstorec.dll
    2004-09-14 23:11:55 39,424 ----a-w C:\WINDOWS\system32\perfctrs.dll
    2004-09-14 23:11:55 385,536 ----a-w C:\WINDOWS\system32\qdvd.dll
    2004-09-14 23:11:55 382,464 ----a-w C:\WINDOWS\system32\qmgr.dll
    2004-09-14 23:11:55 363,520 ----a-w C:\WINDOWS\system32\psisdecd.dll
    2004-09-14 23:11:55 35,328 ----a-w C:\WINDOWS\system32\pid.dll
    2004-09-14 23:11:55 35,328 ----a-w C:\WINDOWS\system32\perfproc.dll
    2004-09-14 23:11:55 34,304 ----a-w C:\WINDOWS\system32\pstorsvc.dll
    2004-09-14 23:11:55 283,648 ----a-w C:\WINDOWS\system32\pdh.dll
    2004-09-14 23:11:55 279,040 ----a-w C:\WINDOWS\system32\qdv.dll
    2004-09-14 23:11:55 27,648 ----a-w C:\WINDOWS\system32\profmap.dll
    2004-09-14 23:11:55 26,624 ----a-w C:\WINDOWS\system32\perfdisk.dll
    2004-09-14 23:11:55 25,600 ----a-w C:\WINDOWS\system32\perfos.dll
    2004-09-14 23:11:55 236,544 ----a-w C:\WINDOWS\system32\rasapi32.dll
    2004-09-14 23:11:55 23,040 ----a-w C:\WINDOWS\system32\psapi.dll
    2004-09-14 23:11:55 206,336 ----a-w C:\WINDOWS\system32\rasppp.dll
    2004-09-14 23:11:55 192,512 ----a-w C:\WINDOWS\system32\qcap.dll
    2004-09-14 23:11:55 19,968 ----a-w C:\WINDOWS\system32\rdpsnd.dll
    2004-09-14 23:11:55 18,944 ----a-w C:\WINDOWS\system32\qmgrprxy.dll
    2004-09-14 23:11:55 171,008 ----a-w C:\WINDOWS\system32\photowiz.dll
    2004-09-14 23:11:55 17,408 ----a-w C:\WINDOWS\system32\powrprof.dll
    2004-09-14 23:11:55 16,896 ----a-w C:\WINDOWS\system32\rassapi.dll
    2004-09-14 23:11:55 15,360 ----a-w C:\WINDOWS\system32\pjlmon.dll
    2004-09-14 23:11:55 147,968 ----a-w C:\WINDOWS\system32\rdchost.dll
    2004-09-14 23:11:55 112,640 ----a-w C:\WINDOWS\system32\rastls.dll
    2004-09-14 23:11:55 105,472 ----a-w C:\WINDOWS\system32\polstore.dll
    2004-09-14 23:11:55 102,400 ----a-w C:\WINDOWS\system32\rcbdyctl.dll
    2004-09-14 23:11:54 91,136 ----a-w C:\WINDOWS\system32\ntprint.dll
    2004-09-14 23:11:54 88,064 ------w C:\WINDOWS\system32\p2pnetsh.dll
    2004-09-14 23:11:54 86,016 ------w C:\WINDOWS\system32\p2pgasvc.dll
    2004-09-14 23:11:54 83,456 ----a-w C:\WINDOWS\system32\olepro32.dll
    2004-09-14 23:11:54 8,192 ----a-w C:\WINDOWS\system32\ntlsapi.dll
    2004-09-14 23:11:54 713,728 ----a-w C:\WINDOWS\system32\opengl32.dll
    2004-09-14 23:11:54 67,584 ----a-w C:\WINDOWS\system32\osuninst.dll
    2004-09-14 23:11:54 67,072 ----a-w C:\WINDOWS\system32\ntdsapi.dll
    2004-09-14 23:11:54 65,536 ----a-w C:\WINDOWS\system32\odbccu32.dll
    2004-09-14 23:11:54 65,536 ----a-w C:\WINDOWS\system32\odbccr32.dll
    2004-09-14 23:11:54 64,000 ----a-w C:\WINDOWS\system32\pautoenr.dll
    2004-09-14 23:11:54 553,472 ------w C:\WINDOWS\system32\oleaut32.dll
    2004-09-14 23:11:54 54,784 ----a-w C:\WINDOWS\system32\npptools.dll
    2004-09-14 23:11:54 526,848 ------w C:\WINDOWS\system32\p2psvc.dll
    2004-09-14 23:11:54 491,520 ----a-w C:\WINDOWS\system32\ntmsmgr.dll
    2004-09-14 23:11:54 436,736 ----a-w C:\WINDOWS\system32\ntmssvc.dll
    2004-09-14 23:11:54 43,520 ----a-w C:\WINDOWS\system32\ntlanman.dll
    2004-09-14 23:11:54 40,960 ----a-w C:\WINDOWS\system32\ntmsapi.dll
    2004-09-14 23:11:54 4,274,816 ------w C:\WINDOWS\system32\nv4_disp.dll
    2004-09-14 23:11:54 312,320 ------w C:\WINDOWS\system32\p2pgraph.dll
    2004-09-14 23:11:54 284,672 ----a-w C:\WINDOWS\system32\objsel.dll
    2004-09-14 23:11:54 28,672 ----a-w C:\WINDOWS\system32\nmmkcert.dll
    2004-09-14 23:11:54 278,559 ------w C:\WINDOWS\system32\odbcjt32.dll
    2004-09-14 23:11:54 267,264 ----a-w C:\WINDOWS\system32\oakley.dll
    2004-09-14 23:11:54 249,856 ----a-w C:\WINDOWS\system32\odbc32.dll
    2004-09-14 23:11:54 248,832 ----a-w C:\WINDOWS\system32\newdev.dll
    2004-09-14 23:11:54 245,760 ----a-w C:\WINDOWS\system32\netui1.dll
    2004-09-14 23:11:54 24,576 ----a-w C:\WINDOWS\system32\odbcbcp.dll
    2004-09-14 23:11:54 20,511 ----a-w C:\WINDOWS\system32\odtext32.dll
    2004-09-14 23:11:54 20,511 ----a-w C:\WINDOWS\system32\oddbse32.dll
    2004-09-14 23:11:54 20,510 ----a-w C:\WINDOWS\system32\odpdx32.dll
    2004-09-14 23:11:54 20,510 ----a-w C:\WINDOWS\system32\odfox32.dll
    2004-09-14 23:11:54 20,510 ----a-w C:\WINDOWS\system32\odexl32.dll
    2004-09-14 23:11:54 180,736 ----a-w C:\WINDOWS\system32\ntmsdba.dll
    2004-09-14 23:11:54 16,384 ----a-w C:\WINDOWS\system32\odbc32gt.dll
    2004-09-14 23:11:54 147,456 ----a-w C:\WINDOWS\system32\odbctrac.dll
    2004-09-14 23:11:54 143,872 ----a-w C:\WINDOWS\system32\ntshrui.dll
    2004-09-14 23:11:54 135,168 ----a-w C:\WINDOWS\system32\odbcconf.dll
    2004-09-14 23:11:54 120,832 ----a-w C:\WINDOWS\system32\offfilt.dll
    2004-09-14 23:11:54 118,784 ----a-w C:\WINDOWS\system32\ntmarta.dll
    2004-09-14 23:11:54 116,224 ------w C:\WINDOWS\system32\p2p.dll
    2004-09-14 23:11:54 107,520 ----a-w C:\WINDOWS\system32\oleprn.dll
    2004-09-14 23:11:54 106,496 ----a-w C:\WINDOWS\system32\odbccp32.dll
    2004-09-14 23:11:54 103,936 ----a-w C:\WINDOWS\system32\nlhtml.dll
    2004-09-14 23:11:53 90,624 ----a-w C:\WINDOWS\system32\mydocs.dll
    2004-09-14 23:11:53 875,520 ----a-w C:\WINDOWS\system32\netplwiz.dll
    2004-09-14 23:11:53 831,519 ----a-w C:\WINDOWS\system32\mswdat10.dll
    2004-09-14 23:11:53 80,384 ----a-w C:\WINDOWS\system32\netui0.dll
    2004-09-14 23:11:53 72,704 ----a-w C:\WINDOWS\system32\msw3prt.dll
    2004-09-14 23:11:53 701,440 ----a-w C:\WINDOWS\system32\msxml2.dll
    2004-09-14 23:11:53 623,104 ----a-w C:\WINDOWS\system32\netcfgx.dll
    2004-09-14 23:11:53 614,429 ----a-w C:\WINDOWS\system32\mswstr10.dll
    2004-09-14 23:11:53 552,989 ----a-w C:\WINDOWS\system32\msrepl40.dll
    2004-09-14 23:11:53 54,784 ----a-w C:\WINDOWS\system32\msvcirt.dll
    2004-09-14 23:11:53 506,368 ----a-w C:\WINDOWS\system32\msxml.dll
    2004-09-14 23:11:53 413,696 ----a-w C:\WINDOWS\system32\msvcp60.dll
    2004-09-14 23:11:53 407,040 ----a-w C:\WINDOWS\system32\netlogon.dll
    2004-09-14 23:11:53 36,352 ----a-w C:\WINDOWS\system32\ncobjapi.dll
    2004-09-14 23:11:53 348,189 ----a-w C:\WINDOWS\system32\msxbde40.dll
    2004-09-14 23:11:53 343,040 ----a-w C:\WINDOWS\system32\msvcrt.dll
    2004-09-14 23:11:53 276,480 ----a-w C:\WINDOWS\system32\mstask.dll
    2004-09-14 23:11:53 258,077 ----a-w C:\WINDOWS\system32\mstext40.dll
    2004-09-14 23:11:53 246,784 ----a-w C:\WINDOWS\system32\mswsock.dll
    2004-09-14 23:11:53 203,776 ----a-w C:\WINDOWS\system32\mswebdvd.dll
    2004-09-14 23:11:53 195,072 ----a-w C:\WINDOWS\system32\msutb.dll
    2004-09-14 23:11:53 18,944 ----a-w C:\WINDOWS\system32\nddenb32.dll
    2004-09-14 23:11:53 17,920 ----a-w C:\WINDOWS\system32\nddeapi.dll
    2004-09-14 23:11:53 17,408 ----a-w C:\WINDOWS\system32\msyuv.dll
    2004-09-14 23:11:53 136,192 ----a-w C:\WINDOWS\system32\netid.dll
    2004-09-14 23:11:53 134,656 ----a-w C:\WINDOWS\system32\mssap.dll
    2004-09-14 23:11:53 129,536 ----a-w C:\WINDOWS\system32\msv1_0.dll
    2004-09-14 23:11:53 121,344 ----a-w C:\WINDOWS\system32\msvfw32.dll
    2004-09-14 23:11:53 12,288 ----a-w C:\WINDOWS\system32\netrap.dll
    2004-09-14 23:11:53 115,712 ----a-w C:\WINDOWS\system32\mstlsapi.dll
    2004-09-14 23:11:53 11,264 ----a-w C:\WINDOWS\system32\msrle32.dll
    2004-09-14 23:11:53 1,737,856 ------w C:\WINDOWS\system32\mtxparhd.dll
    2004-09-14 23:11:53 1,705,472 ----a-w C:\WINDOWS\system32\netshell.dll
    2004-09-14 23:11:53 1,427,968 ----a-w C:\WINDOWS\system32\msvidctl.dll
    2004-09-14 23:11:53 1,392,671 ----a-w C:\WINDOWS\system32\msvbvm60.dll
    2004-09-14 23:11:52 994,816 ----a-w C:\WINDOWS\system32\msgina.dll
    2004-09-14 23:11:52 6,656 ----a-w C:\WINDOWS\system32\msidle.dll
    2004-09-14 23:11:52 53,279 ----a-w C:\WINDOWS\system32\msjter40.dll
    2004-09-14 23:11:52 51,712 ----a-w C:\WINDOWS\system32\msident.dll
    2004-09-14 23:11:52 421,919 ----a-w C:\WINDOWS\system32\msrd2x40.dll
    2004-09-14 23:11:52 4,608 ----a-w C:\WINDOWS\system32\msimg32.dll
    2004-09-14 23:11:52 348,189 ----a-w C:\WINDOWS\system32\mspbde40.dll
    2004-09-14 23:11:52 33,792 ----a-w C:\WINDOWS\system32\msgsvc.dll
    2004-09-14 23:11:52 315,423 ----a-w C:\WINDOWS\system32\msrd3x40.dll
    2004-09-14 23:11:52 30,208 ----a-w C:\WINDOWS\system32\mspatcha.dll
    2004-09-14 23:11:52 290,816 ----a-w C:\WINDOWS\system32\msnsspc.dll
    2004-09-14 23:11:52 252,928 ----a-w C:\WINDOWS\system32\msoeacct.dll
    2004-09-14 23:11:52 25,088 ----a-w C:\WINDOWS\system32\mslbui.dll
    2004-09-14 23:11:52 249,856 ----a-w C:\WINDOWS\system32\msieftp.dll
    2004-09-14 23:11:52 241,693 ----a-w C:\WINDOWS\system32\msjtes40.dll
    2004-09-14 23:11:52 213,023 ----a-w C:\WINDOWS\system32\msltus40.dll
    2004-09-14 23:11:52 159,775 ----a-w C:\WINDOWS\system32\msjint40.dll
    2004-09-14 23:11:52 159,232 ----a-w C:\WINDOWS\system32\msimtf.dll
    2004-09-14 23:11:52 143,360 ----a-w C:\WINDOWS\system32\msorcl32.dll
    2004-09-14 23:11:52 105,984 ----a-w C:\WINDOWS\system32\msoert2.dll
    2004-09-14 23:11:52 1,507,356 ----a-w C:\WINDOWS\system32\msjet40.dll
    2004-09-14 23:11:51 86,016 ----a-w C:\WINDOWS\system32\msapsspc.dll
    2004-09-14 23:11:51 71,680 ----a-w C:\WINDOWS\system32\msacm32.dll
    2004-09-14 23:11:51 69,632 ----a-w C:\WINDOWS\system32\msconf.dll
    2004-09-14 23:11:51 69,120 ----a-w C:\WINDOWS\system32\msctfp.dll
    2004-09-14 23:11:51 58,880 ----a-w C:\WINDOWS\system32\msdtclog.dll
    2004-09-14 23:11:51 57,344 ----a-w C:\WINDOWS\system32\msasn1.dll
    2004-09-14 23:11:51 512,029 ----a-w C:\WINDOWS\system32\msexch40.dll
    2004-09-14 23:11:51 36,864 ----a-w C:\WINDOWS\system32\mscpxl32.dll
    2004-09-14 23:11:51 319,517 ----a-w C:\WINDOWS\system32\msexcl40.dll
    2004-09-14 23:11:51 294,400 ----a-w C:\WINDOWS\system32\msctf.dll
    2004-09-14 23:11:51 151,552 ----a-w C:\WINDOWS\system32\msdart.dll
    2004-09-14 23:11:51 14,336 ----a-w C:\WINDOWS\system32\msdmo.dll
    2004-09-14 23:11:51 118,784 ------w C:\WINDOWS\system32\msdadiag.dll
    2004-09-14 23:11:50 87,040 ----a-w C:\WINDOWS\system32\mprapi.dll
    2004-09-14 23:11:50 86,016 ------w C:\WINDOWS\system32\mdmxsdk.dll
    2004-09-14 23:11:50 84,992 ----a-w C:\WINDOWS\system32\mciavi32.dll
    2004-09-14 23:11:50 72,704 ----a-w C:\WINDOWS\system32\mmcbase.dll
    2004-09-14 23:11:50 60,928 ----a-w C:\WINDOWS\system32\miglibnt.dll
    2004-09-14 23:11:50 59,904 ----a-w C:\WINDOWS\system32\mpr.dll
    2004-09-14 23:11:50 586,240 ----a-w C:\WINDOWS\system32\mlang.dll
    2004-09-14 23:11:50 50,688 ----a-w C:\WINDOWS\system32\mmcshext.dll
    2004-09-14 23:11:50 384,512 ----a-w C:\WINDOWS\system32\mp4sdmod.dll
    2004-09-14 23:11:50 35,328 ----a-w C:\WINDOWS\system32\mciqtz32.dll
    2004-09-14 23:11:50 34,560 ----a-w C:\WINDOWS\system32\mnmdd.dll
    2004-09-14 23:11:50 310,272 ----a-w C:\WINDOWS\system32\mp43dmod.dll
    2004-09-14 23:11:50 240,640 ----a-w C:\WINDOWS\system32\mpg4dmod.dll
    2004-09-14 23:11:50 23,552 ----a-w C:\WINDOWS\system32\mciwave.dll
    2004-09-14 23:11:50 23,040 ----a-w C:\WINDOWS\system32\mciseq.dll
    2004-09-14 23:11:50 22,528 ----a-w C:\WINDOWS\system32\mfcsubs.dll
    2004-09-14 23:11:50 22,016 ----a-w C:\WINDOWS\system32\lpk.dll
    2004-09-14 23:11:50 207,360 ----a-w C:\WINDOWS\system32\mobsync.dll
    2004-09-14 23:11:50 18,944 ----a-w C:\WINDOWS\system32\midimap.dll
    2004-09-14 23:11:50 17,408 ----a-w C:\WINDOWS\system32\mmfutil.dll
    2004-09-14 23:11:50 144,384 ----a-w C:\WINDOWS\system32\modemui.dll
    2004-09-14 23:11:50 14,848 ----a-w C:\WINDOWS\system32\mgmtapi.dll
    2004-09-14 23:11:50 14,848 ----a-w C:\WINDOWS\system32\mcastmib.dll
    2004-09-14 23:11:50 118,272 ----a-w C:\WINDOWS\system32\mdminst.dll
    2004-09-14 23:11:50 10,240 ----a-w C:\WINDOWS\system32\lprhelp.dll
    2004-09-14 23:11:50 1,195,520 ----a-w C:\WINDOWS\system32\mmcndmgr.dll
    2004-09-14 23:11:50 1,028,096 ----a-w C:\WINDOWS\system32\mfc42.dll
    2004-09-14 23:11:49 96,768 ----a-w C:\WINDOWS\system32\loadperf.dll
    2004-09-14 23:11:49 86,016 ----a-w C:\WINDOWS\system32\isign32.dll
    2004-09-14 23:11:49 755,200 ----a-w C:\WINDOWS\system32\ir50_32.dll
    2004-09-14 23:11:49 59,904 ----a-w C:\WINDOWS\system32\ipv6mon.dll
    2004-09-14 23:11:49 58,880 ----a-w C:\WINDOWS\system32\licwmi.dll
    2004-09-14 23:11:49 54,272 ----a-w C:\WINDOWS\system32\ixsso.dll
    2004-09-14 23:11:49 47,616 ----a-w C:\WINDOWS\system32\iyuv_32.dll
    2004-09-14 23:11:49 4,096 ----a-w C:\WINDOWS\system32\ksuser.dll
    2004-09-14 23:11:49 399,872 ----a-w C:\WINDOWS\system32\lmrt.dll
    2004-09-14 23:11:49 384,512 ----a-w C:\WINDOWS\system32\ipsmsnap.dll
    2004-09-14 23:11:49 351,744 ----a-w C:\WINDOWS\system32\ipsecsnp.dll
    2004-09-14 23:11:49 342,528 ----a-w C:\WINDOWS\system32\localspl.dll
    2004-09-14 23:11:49 338,432 ----a-w C:\WINDOWS\system32\ir41_qcx.dll
    2004-09-14 23:11:49 32,768 ----a-w C:\WINDOWS\system32\isrdbg32.dll
    2004-09-14 23:11:49 294,400 ----a-w C:\WINDOWS\system32\kerberos(3).dll
    2004-09-14 23:11:49 221,696 ----a-w C:\WINDOWS\system32\localsec.dll
    2004-09-14 23:11:49 200,192 ----a-w C:\WINDOWS\system32\ir50_qc.dll
    2004-09-14 23:11:49 183,808 ----a-w C:\WINDOWS\system32\ir50_qcx.dll
    2004-09-14 23:11:49 182,784 ----a-w C:\WINDOWS\system32\ipsecsvc.dll
    2004-09-14 23:11:49 152,064 ----a-w C:\WINDOWS\system32\keymgr.dll
    2004-09-14 23:11:49 13,824 ----a-w C:\WINDOWS\system32\lmhsvc.dll
    2004-09-14 23:11:49 120,320 ----a-w C:\WINDOWS\system32\ir41_qc.dll
    2004-09-14 23:11:49 11,776 ----a-w C:\WINDOWS\system32\localui.dll
    2004-09-14 23:11:48 81,920 ----a-w C:\WINDOWS\system32\ils.dll
    2004-09-14 23:11:48 8,192 ----a-w C:\WINDOWS\system32\igmpagnt.dll
    2004-09-14 23:11:48 75,264 ----a-w C:\WINDOWS\system32\inetpp.dll
    2004-09-14 23:11:48 36,921 ----a-w C:\WINDOWS\system32\imeshare.dll
    2004-09-14 23:11:48 335,872 ----a-w C:\WINDOWS\system32\ippromon.dll
    2004-09-14 23:11:48 330,752 ----a-w C:\WINDOWS\system32\ipnathlp.dll
    2004-09-14 23:11:48 33,280 ----a-w C:\WINDOWS\system32\inetmib1.dll
    2004-09-14 23:11:48 278,528 ----a-w C:\WINDOWS\system32\inetcfg.dll
    2004-09-14 23:11:48 15,872 ----a-w C:\WINDOWS\system32\inetppui.dll
    2004-09-14 23:11:48 147,456 ----a-w C:\WINDOWS\system32\initpki.dll
    2004-09-14 23:11:48 144,384 ----a-w C:\WINDOWS\system32\imagehlp.dll
    2004-09-14 23:11:48 134,656 ----a-w C:\WINDOWS\system32\ifmon.dll
    2004-09-14 23:11:48 124,928 ----a-w C:\WINDOWS\system32\input.dll
    2004-09-14 23:11:48 120,832 ----a-w C:\WINDOWS\system32\idq.dll
    2004-09-14 23:11:48 110,080 ----a-w C:\WINDOWS\system32\imm32.dll
    2004-09-14 23:11:47 80,384 ----a-w C:\WINDOWS\system32\iccvid.dll
    2004-09-14 23:11:47 8,704 ----a-w C:\WINDOWS\system32\fxsperf.dll
    2004-09-14 23:11:47 73,728 ----a-w C:\WINDOWS\system32\icwdial.dll
    2004-09-14 23:11:47 72,192 ----a-w C:\WINDOWS\system32\fxscom.dll
    2004-09-14 23:11:47 7,168 ----a-w C:\WINDOWS\system32\hccoin.dll
    2004-09-14 23:11:47 65,536 ----a-w C:\WINDOWS\system32\icwphbk.dll
    2004-09-14 23:11:47 614,912 ----a-w C:\WINDOWS\system32\h323msp.dll
    2004-09-14 23:11:47 60,416 ------w C:\WINDOWS\system32\fwcfg.dll
    2004-09-14 23:11:47 57,344 ----a-w C:\WINDOWS\system32\fxsevent.dll
    2004-09-14 23:11:47 562,176 ----a-w C:\WINDOWS\system32\fxsst.dll
    2004-09-14 23:11:47 452,096 ----a-w C:\WINDOWS\system32\fxsapi.dll
    2004-09-14 23:11:47 42,496 ----a-w C:\WINDOWS\system32\htui.dll
    2004-09-14 23:11:47 400,384 ----a-w C:\WINDOWS\system32\fxsxp32.dll
    2004-09-14 23:11:47 397,312 ----a-w C:\WINDOWS\system32\fxstiff.dll
    2004-09-14 23:11:47 344,064 ----a-w C:\WINDOWS\system32\hnetcfg.dll
    2004-09-14 23:11:47 329,728 ----a-w C:\WINDOWS\system32\hnetwiz.dll
    2004-09-14 23:11:47 32,285 ------w C:\WINDOWS\system32\hsfcisp2.dll
    2004-09-14 23:11:47 285,184 ----a-w C:\WINDOWS\system32\fxscomex.dll
    2004-09-14 23:11:47 27,136 ----a-w C:\WINDOWS\system32\fxsdrv.dll
    2004-09-14 23:11:47 246,272 ----a-w C:\WINDOWS\system32\fxst30.dll
    2004-09-14 23:11:47 24,576 ------w C:\WINDOWS\system32\httpapi.dll
    2004-09-14 23:11:47 23,552 ----a-w C:\WINDOWS\system32\fxsmon.dll
    2004-09-14 23:11:47 23,552 ----a-w C:\WINDOWS\system32\fxsext32.dll
    2004-09-14 23:11:47 20,992 ----a-w C:\WINDOWS\system32\hid.dll
    2004-09-14 23:11:47 194,048 ----a-w C:\WINDOWS\system32\fxswzrd.dll
    2004-09-14 23:11:47 155,136 ----a-w C:\WINDOWS\system32\fxsui.dll
    2004-09-14 23:11:47 143,872 ----a-w C:\WINDOWS\system32\hotplug.dll
    2004-09-14 23:11:47 123,904 ----a-w C:\WINDOWS\system32\glu32.dll
    2004-09-14 23:11:47 119,808 ----a-w C:\WINDOWS\system32\iasrad.dll
    2004-09-14 23:11:47 11,264 ----a-w C:\WINDOWS\system32\icaapi.dll
    2004-09-14 23:11:46 88,064 ----a-w C:\WINDOWS\system32\fldrclnr.dll
    2004-09-14 23:11:46 80,384 ----a-w C:\WINDOWS\system32\faultrep.dll
    2004-09-14 23:11:46 55,808 ----a-w C:\WINDOWS\system32\eventlog.dll
    2004-09-14 23:11:46 382,976 ----a-w C:\WINDOWS\system32\fontext.dll
    2004-09-14 23:11:46 380,957 ----a-w C:\WINDOWS\system32\expsrv.dll
    2004-09-14 23:11:46 339,968 ----a-w C:\WINDOWS\system32\filemgmt.dll
    2004-09-14 23:11:46 23,040 ----a-w C:\WINDOWS\system32\ersvc.dll
    2004-09-14 23:11:46 21,504 ----a-w C:\WINDOWS\system32\feclient.dll
    2004-09-14 23:11:46 20,480 ----a-w C:\WINDOWS\system32\encapi.dll
    2004-09-14 23:11:46 186,368 ----a-w C:\WINDOWS\system32\encdec.dll
    2004-09-14 23:11:46 183,808 ----a-w C:\WINDOWS\system32\els.dll
    2004-09-14 23:11:45 93,184 ----a-w C:\WINDOWS\system32\dskquota.dll
    2004-09-14 23:11:45 82,432 ----a-w C:\WINDOWS\system32\dmscript.dll
    2004-09-14 23:11:45 8,704 ----a-w C:\WINDOWS\system32\dciman32.dll
    2004-09-14 23:11:45 71,680 ----a-w C:\WINDOWS\system32\dsdmoprp.dll
    2004-09-14 23:11:45 68,608 ----a-w C:\WINDOWS\system32\digest.dll
    2004-09-14 23:11:45 640,000 ----a-w C:\WINDOWS\system32\dbghelp.dll
    2004-09-14 23:11:45 619,008 ----a-w C:\WINDOWS\system32\dx7vb.dll
    2004-09-14 23:11:45 61,440 ----a-w C:\WINDOWS\system32\dmcompos.dll
    2004-09-14 23:11:45 60,928 ----a-w C:\WINDOWS\system32\dpnhupnp.dll
    2004-09-14 23:11:45 59,904 ----a-w C:\WINDOWS\system32\devenum.dll
    2004-09-14 23:11:45 57,344 ----a-w C:\WINDOWS\system32\dpwsockx.dll
    2004-09-14 23:11:45 51,712 ----a-w C:\WINDOWS\system32\dssec.dll
    2004-09-14 23:11:45 50,688 ----a-w C:\WINDOWS\system32\dmutil.dll
    2004-09-14 23:11:45 48,640 ----a-w C:\WINDOWS\system32\docprop2.dll
    2004-09-14 23:11:45 45,568 ----a-w C:\WINDOWS\system32\dnsrslvr.dll
    2004-09-14 23:11:45 38,912 ----a-w C:\WINDOWS\system32\dfrgsnap.dll
    2004-09-14 23:11:45 375,296 ----a-w C:\WINDOWS\system32\dpnet.dll
    2004-09-14 23:11:45 367,616 ----a-w C:\WINDOWS\system32\dsound.dll
    2004-09-14 23:11:45 35,840 ----a-w C:\WINDOWS\system32\dmloader.dll
    2004-09-14 23:11:45 35,328 ----a-w C:\WINDOWS\system32\dpnhpast.dll
    2004-09-14 23:11:45 304,128 ----a-w C:\WINDOWS\system32\duser.dll
    2004-09-14 23:11:45 281,600 ----a-w C:\WINDOWS\system32\devmgr.dll
    2004-09-14 23:11:45 28,672 ----a-w C:\WINDOWS\system32\dmband.dll
    2004-09-14 23:11:45 28,672 ----a-w C:\WINDOWS\system32\dfsshlex.dll
    2004-09-14 23:11:45 28,672 ----a-w C:\WINDOWS\system32\dbnmpntw.dll
    2004-09-14 23:11:45 27,136 ----a-w C:\WINDOWS\system32\ddrawex.dll
    2004-09-14 23:11:45 266,240 ----a-w C:\WINDOWS\system32\ddraw.dll
    2004-09-14 23:11:45 24,576 ----a-w C:\WINDOWS\system32\dbmsrpcn.dll
    2004-09-14 23:11:45 239,616 ----a-w C:\WINDOWS\system32\dsquery.dll
    2004-09-14 23:11:45 23,552 ----a-w C:\WINDOWS\system32\dpmodemx.dll
    2004-09-14 23:11:45 23,552 ----a-w C:\WINDOWS\system32\dmserver.dll
    2004-09-14 23:11:45 229,888 ----a-w C:\WINDOWS\system32\dplayx.dll
    2004-09-14 23:11:45 212,480 ----a-w C:\WINDOWS\system32\dpvoice.dll
    2004-09-14 23:11:45 21,504 ----a-w C:\WINDOWS\system32\dpvacm.dll
    2004-09-14 23:11:45 200,704 ----a-w C:\WINDOWS\system32\dmdskmgr.dll
    2004-09-14 23:11:45 2,113,536 ----a-w C:\WINDOWS\system32\dxdiagn.dll
    2004-09-14 23:11:45 19,456 ----a-w C:\WINDOWS\system32\dswave.dll
    2004-09-14 23:11:45 188,928 ----a-w C:\WINDOWS\system32\dinput8.dll
    2004-09-14 23:11:45 181,760 ----a-w C:\WINDOWS\system32\dsdmo.dll
    2004-09-14 23:11:45 181,248 ----a-w C:\WINDOWS\system32\dmime.dll
    2004-09-14 23:11:45 166,400 ----a-w C:\WINDOWS\system32\dinput.dll
    2004-09-14 23:11:45 16,384 ----a-w C:\WINDOWS\system32\ds32gt.dll
    2004-09-14 23:11:45 142,336 ----a-w C:\WINDOWS\system32\dsprop.dll
    2004-09-14 23:11:45 14,336 ----a-w C:\WINDOWS\system32\drprov.dll
    2004-09-14 23:11:45 123,904 ----a-w C:\WINDOWS\system32\dfrgui.dll
    2004-09-14 23:11:45 116,736 ----a-w C:\WINDOWS\system32\dpvvox.dll
    2004-09-14 23:11:45 113,152 ----a-w C:\WINDOWS\system32\dsuiext.dll
    2004-09-14 23:11:45 112,640 ----a-w C:\WINDOWS\system32\dgnet.dll
    2004-09-14 23:11:45 110,592 ----a-w C:\WINDOWS\system32\dbnetlib.dll
    2004-09-14 23:11:45 105,984 ----a-w C:\WINDOWS\system32\dmstyle.dll
    2004-09-14 23:11:45 104,448 ----a-w C:\WINDOWS\system32\dmusic.dll
    2004-09-14 23:11:45 103,424 ----a-w C:\WINDOWS\system32\dmsynth.dll
    2004-09-14 23:11:45 1,294,336 ----a-w C:\WINDOWS\system32\dsound3d.dll
    2004-09-14 23:11:45 1,227,264 ----a-w C:\WINDOWS\system32\dx8vb.dll
    2004-09-14 23:11:44 825,344 ----a-w C:\WINDOWS\system32\d3dim700.dll
    2004-09-14 23:11:44 8,192 ----a-w C:\WINDOWS\system32\d3d8thk.dll
    2004-09-14 23:11:44 790,016 ----a-w C:\WINDOWS\system32\comres.dll
    2004-09-14 23:11:44 77,824 ----a-w C:\WINDOWS\system32\cliconfg.dll
    2004-09-14 23:11:44 75,264 ----a-w C:\WINDOWS\system32\cryptdlg.dll
    2004-09-14 23:11:44 63,488 ----a-w C:\WINDOWS\system32\cryptnet.dll
    2004-09-14 23:11:44 60,416 ----a-w C:\WINDOWS\system32\cryptsvc.dll
    2004-09-14 23:11:44 599,040 ----a-w C:\WINDOWS\system32\crypt32.dll
    2004-09-14 23:11:44 57,856 ----a-w C:\WINDOWS\system32\clusapi.dll
    2004-09-14 23:11:44 54,272 ----a-w C:\WINDOWS\system32\dataclen.dll
    2004-09-14 23:11:44 53,760 ----a-w C:\WINDOWS\system32\cryptext.dll
    2004-09-14 23:11:44 515,072 ----a-w C:\WINDOWS\system32\cryptui.dll
    2004-09-14 23:11:44 48,128 ----a-w C:\WINDOWS\system32\cnbjmon.dll
    2004-09-14 23:11:44 458,752 ----a-w C:\WINDOWS\system32\certmgr.dll
    2004-09-14 23:11:44 40,448 ----a-w C:\WINDOWS\system32\cmutil.dll
    2004-09-14 23:11:44 39,424 ----a-w C:\WINDOWS\system32\cfgbkend.dll
    2004-09-14 23:11:44 344,576 ----a-w C:\WINDOWS\system32\cmdial32.dll
    2004-09-14 23:11:44 33,280 ----a-w C:\WINDOWS\system32\cryptdll.dll
    2004-09-14 23:11:44 329,728 ----a-w C:\WINDOWS\system32\cscui.dll
    2004-09-14 23:11:44 32,768 ----a-w C:\WINDOWS\system32\csrsrv.dll
    2004-09-14 23:11:44 278,528 ------w C:\WINDOWS\system32\comdlg32.dll
    2004-09-14 23:11:44 253,440 ----a-w C:\WINDOWS\system32\compatui.dll
    2004-09-14 23:11:44 25,088 ----a-w C:\WINDOWS\system32\davclnt.dll
    2004-09-14 23:11:44 229,376 ----a-w C:\WINDOWS\system32\compstui.dll
    2004-09-14 23:11:44 196,096 ----a-w C:\WINDOWS\system32\certcli.dll
    2004-09-14 23:11:44 185,344 ----a-w C:\WINDOWS\system32\cmprops.dll
    2004-09-14 23:11:44 163,840 ----a-w C:\WINDOWS\system32\credui.dll
    2004-09-14 23:11:44 15,872 ----a-w C:\WINDOWS\system32\cmcfg32.dll
    2004-09-14 23:11:44 13,824 ------w C:\WINDOWS\system32\cmsetacl.dll
    2004-09-14 23:11:44 102,400 ----a-w C:\WINDOWS\system32\cscdll.dll
    2004-09-14 23:11:44 1,689,088 ----a-w C:\WINDOWS\system32\d3d9.dll
    2004-09-14 23:11:44 1,179,648 ----a-w C:\WINDOWS\system32\d3d8.dll
    2004-09-14 23:11:43 870,784 ------w C:\WINDOWS\system32\ati3d1ag.dll
    2004-09-14 23:11:43 85,504 ----a-w C:\WINDOWS\system32\catsrvps.dll
    2004-09-14 23:11:43 84,992 ----a-w C:\WINDOWS\system32\cabview.dll
    2004-09-14 23:11:43 84,992 ----a-w C:\WINDOWS\system32\avifil32.dll
    2004-09-14 23:11:43 8,704 ----a-w C:\WINDOWS\system32\batt.dll
    2004-09-14 23:11:43 8,192 ------w C:\WINDOWS\system32\bitsprx2.dll
    2004-09-14 23:11:43 78,336 ----a-w C:\WINDOWS\system32\browsewm.dll
    2004-09-14 23:11:43 77,312 ----a-w C:\WINDOWS\system32\browser.dll
    2004-09-14 23:11:43 7,168 ------w C:\WINDOWS\system32\bitsprx3.dll
    2004-09-14 23:11:43 65,024 ------w C:\WINDOWS\system32\asycfilt.dll
    2004-09-14 23:11:43 59,904 ----a-w C:\WINDOWS\system32\cabinet.dll
    2004-09-14 23:11:43 58,880 ----a-w C:\WINDOWS\system32\atl.dll
    2004-09-14 23:11:43 52,736 ----a-w C:\WINDOWS\system32\basesrv.dll
    2004-09-14 23:11:43 516,768 ------w C:\WINDOWS\system32\ativvaxx.dll
    2004-09-14 23:11:43 50,688 ----a-w C:\WINDOWS\system32\camocx.dll
    2004-09-14 23:11:43 50,688 ------w C:\WINDOWS\system32\btpanui.dll
    2004-09-14 23:11:43 42,496 ----a-w C:\WINDOWS\system32\audiosrv.dll
    2004-09-14 23:11:43 377,984 ------w C:\WINDOWS\system32\ati2dvaa.dll
    2004-09-14 23:11:43 32,768 ------w C:\WINDOWS\system32\ativtmxx.dll
    2004-09-14 23:11:43 30,208 ----a-w C:\WINDOWS\system32\atmlib.dll
    2004-09-14 23:11:43 30,208 ------w C:\WINDOWS\system32\bthserv.dll
    2004-09-14 23:11:43 28,672 ----a-w C:\WINDOWS\system32\batmeter.dll
    2004-09-14 23:11:43 229,376 ------w C:\WINDOWS\system32\ati2cqag.dll
    2004-09-14 23:11:43 201,728 ------w C:\WINDOWS\system32\ati2dvag.dll
    2004-09-14 23:11:43 20,992 ------w C:\WINDOWS\system32\bthci.dll
    2004-09-14 23:11:43 17,408 ----a-w C:\WINDOWS\system32\bidispl.dll
    2004-09-14 23:11:43 126,976 ----a-w C:\WINDOWS\system32\apphelp.dll
    2004-09-14 23:11:43 1,888,992 ------w C:\WINDOWS\system32\ati3duag.dll
    2004-09-14 23:11:42 70,656 ----a-w C:\WINDOWS\system32\amstream.dll
    2004-09-14 23:11:42 68,096 ----a-w C:\WINDOWS\system32\adsmsext.dll
    2004-09-14 23:11:42 679,936 ----a-w C:\WINDOWS\system32\advapi32.dll
    2004-09-14 23:11:42 263,680 ----a-w C:\WINDOWS\system32\adsnt.dll
    2004-09-14 23:11:42 194,048 ----a-w C:\WINDOWS\system32\activeds.dll
    2004-09-14 23:11:42 175,616 ----a-w C:\WINDOWS\system32\adsldp.dll
    2004-09-14 23:11:42 17,408 ----a-w C:\WINDOWS\system32\alrsvc.dll
    2004-09-14 23:11:42 143,360 ----a-w C:\WINDOWS\system32\adsldpc.dll
    2004-09-14 23:11:42 114,176 ----a-w C:\WINDOWS\system32\aclui.dll
    2004-09-14 23:11:42 101,888 ----a-w C:\WINDOWS\system32\actxprxy.dll
    2004-09-14 23:11:37 701,952 ----a-w C:\WINDOWS\system32\ntdll.dll
    2004-09-14 23:11:33 756,736 ----a-w C:\WINDOWS\system32\winntbbu.dll
    2004-09-14 23:11:33 5,632 ----a-w C:\WINDOWS\system32\wmi.dll
    2004-09-14 23:11:32 937,984 ----a-w C:\WINDOWS\system32\winbrand.dll
    2004-09-14 23:11:24 2,921,984 ------w C:\WINDOWS\system32\xpsp2res.dll
    2004-09-14 23:11:22 186,368 ----a-w C:\WINDOWS\system32\xpsp1res.dll
    2004-09-14 23:11:20 556,032 ----a-w C:\WINDOWS\system32\shdoclc.dll
    2004-09-14 23:11:18 733,696 ----a-w C:\WINDOWS\system32\qedwipes.dll
    2004-09-14 23:11:16 94,208 ----a-w C:\WINDOWS\system32\odbcint.dll
    2004-09-14 23:11:16 57,616 ------w C:\WINDOWS\system32\odbcji32.dll
    2004-09-14 23:11:16 440,832 ------w C:\WINDOWS\system32\xpob2res.dll
    2004-09-14 23:11:16 12,288 ----a-w C:\WINDOWS\system32\odbcp32r.dll
    2004-09-14 23:11:11 48,128 ----a-w C:\WINDOWS\system32\msprivs.dll
    2004-09-14 23:11:11 24,576 ----a-w C:\WINDOWS\system32\msorc32r.dll
    2004-09-14 23:11:02 4,126 ----a-w C:\WINDOWS\system32\msdxmlc.dll
    2004-09-14 23:11:01 3,584 ----a-w C:\WINDOWS\system32\msafd.dll
    2004-09-14 23:11:01 12,288 ----a-w C:\WINDOWS\system32\mscpx32r.dll
    2004-09-14 23:11:00 216,064 ----a-w C:\WINDOWS\system32\moricons.dll
    2004-09-14 23:10:59 7,680 ------w C:\WINDOWS\system32\kbdsmsno.dll
    2004-09-14 23:10:59 7,680 ------w C:\WINDOWS\system32\kbdsmsfi.dll
    2004-09-14 23:10:59 7,168 ------w C:\WINDOWS\system32\kbdukx.dll
    2004-09-14 23:10:59 7,168 ------w C:\WINDOWS\system32\kbdno1.dll
    2004-09-14 23:10:59 7,168 ------w C:\WINDOWS\system32\kbdfi1.dll
    2004-09-14 23:10:59 6,656 ------w C:\WINDOWS\system32\kbdinmal.dll
    2004-09-14 23:10:59 6,656 ------w C:\WINDOWS\system32\kbdinben.dll
    2004-09-14 23:10:59 6,144 ------w C:\WINDOWS\system32\kbdmlt48.dll
    2004-09-14 23:10:59 6,144 ------w C:\WINDOWS\system32\kbdmlt47.dll
    2004-09-14 23:10:59 6,144 ------w C:\WINDOWS\system32\kbdinbe1.dll
    2004-09-14 23:10:59 5,632 ------w C:\WINDOWS\system32\kbdmaori.dll
    2004-09-14 23:10:57 48,640 ----a-w C:\WINDOWS\system32\inetres.dll
    2004-09-14 23:10:56 3,584 ----a-w C:\WINDOWS\system32\icmp.dll
    2004-09-14 23:10:55 9,728 ----a-w C:\WINDOWS\system32\gpkrsrc.dll
    2004-09-14 23:10:55 9,344 ----a-w C:\WINDOWS\system32\framebuf.dll
    2004-09-14 23:10:55 6,656 ----a-w C:\WINDOWS\system32\fxsres.dll
    2004-09-14 23:10:51 4,096 ----a-w C:\WINDOWS\system32\dsprpres.dll
    2004-09-14 23:10:51 3,584 ----a-w C:\WINDOWS\system32\dpnlobby.dll
    2004-09-14 23:10:51 3,584 ----a-w C:\WINDOWS\system32\dpnaddr.dll
    2004-09-14 23:10:48 16,896 ----a-w C:\WINDOWS\system32\cfgmgr32.dll
    2004-09-14 23:10:47 65,536 ----a-w C:\WINDOWS\system32\browselc.dll
    2004-09-14 23:10:47 285,696 ----a-w C:\WINDOWS\system32\atmfd.dll
    2004-09-14 23:08:32 73,472 ----a-w C:\WINDOWS\system32\drivers\sr.sys
    2004-09-14 23:07:50 154,112 ----a-w C:\WINDOWS\system32\drivers\dmio.sys
    2004-09-14 23:07:49 800,000 ----a-w C:\WINDOWS\system32\drivers\dmboot.sys
    2004-09-14 23:07:44 24,576 ----a-w C:\WINDOWS\system32\drivers\kbdclass.sys
    2004-09-14 23:07:28 40,448 ----a-w C:\WINDOWS\system32\drivers\crusoe.sys
    2004-09-14 23:07:26 5,504 ----a-w C:\WINDOWS\system32\drivers\intelide.sys
    2004-09-14 23:07:26 40,064 ------w C:\WINDOWS\system32\drivers\intelppm.sys
    2004-09-14 23:07:07 51,840 ----a-w C:\WINDOWS\system32\drivers\volsnap.sys
    2004-09-14 23:07:02 64,896 ----a-w C:\WINDOWS\system32\drivers\serial.sys
    2004-09-14 23:07:00 52,352 ----a-w C:\WINDOWS\system32\drivers\i8042prt.sys
    2004-09-14 23:06:50 25,728 ------w C:\WINDOWS\system32\drivers\hidbth.sys
    2004-09-14 23:06:47 274,304 ------w C:\WINDOWS\system32\drivers\bthport.sys
    2004-09-14 23:06:38 57,216 ----a-w C:\WINDOWS\system32\drivers\redbook.sys
    2004-09-14 23:06:26 701,440 ------w C:\WINDOWS\system32\drivers\ati2mtag.sys
    2004-09-14 23:06:26 326,912 ------w C:\WINDOWS\system32\drivers\ati2mtaa.sys
    2004-09-14 23:06:20 39,296 ----a-w C:\WINDOWS\system32\drivers\processr.sys
    2004-09-14 23:06:13 41,344 ----a-w C:\WINDOWS\system32\drivers\amdk7.sys
    2004-09-14 23:06:12 40,960 ----a-w C:\WINDOWS\system32\drivers\amdk6.sys
    2004-09-14 23:06:10 23,040 ----a-w C:\WINDOWS\system32\drivers\mouclass.sys
    2004-09-14 23:06:07 30,080 ----a-w C:\WINDOWS\system32\drivers\modem.sys
    2004-09-14 23:06:06 68,768 ----a-w C:\WINDOWS\system32\mmsystem.dll
    2004-09-14 23:06:03 119,808 ----a-w C:\WINDOWS\system32\drivers\pcmcia.sys
    2004-09-14 23:06:01 68,096 ----a-w C:\WINDOWS\system32\drivers\pci.sys
    2004-09-14 23:06:00 187,904 ----a-w C:\WINDOWS\system32\drivers\acpi.sys
    2004-09-14 23:05:58 80,256 ----a-w C:\WINDOWS\system32\drivers\parport.sys
    2004-09-14 23:05:57 46,464 ----a-w C:\WINDOWS\system32\drivers\p3.sys
    2004-09-14 23:05:51 44,544 ----a-w C:\WINDOWS\system32\tscupgrd.exe
    2004-09-14 23:05:49 404,992 ----a-w C:\WINDOWS\system32\mstsc.exe
    2004-09-14 23:05:32 97,280 ----a-w C:\WINDOWS\system32\dpcdll.dll
    2004-09-14 14:12:08 11,776 ------w C:\WINDOWS\system32\spnpinst.exe
    2004-09-14 14:11:58 990,720 ----a-w C:\WINDOWS\system32\setupapi.dll
    2004-09-14 14:11:50 423,936 ----a-w C:\WINDOWS\system32\licdll.dll
    2004-09-14 08:39:56 -------- d-----w C:\Program Files\HP
    2004-09-02 15:38:00 8,192 ----a-w C:\WINDOWS\system32\asferror.dll
    2004-09-02 15:38:00 193,024 ----a-w C:\WINDOWS\system32\wmerror.dll
    2004-09-02 15:37:50 86,016 ----a-w C:\WINDOWS\system32\wmpshell.dll
    2004-09-02 15:37:48 3,391,488 ----a-w C:\WINDOWS\system32\wmploc.dll
    2004-09-02 15:37:46 481,280 ----a-w C:\WINDOWS\system32\Audiodev.dll
    2004-08-12 10:55:15 -------- d--h--w C:\Program Files\WindowsUpdate
    2004-08-10 23:45:16 282,624 ----a-w C:\WINDOWS\system32\wmpdxm.dll
    2004-08-10 23:45:16 135,168 ----a-w C:\WINDOWS\system32\wmpasf.dll
    2004-08-10 23:45:14 175,104 ----a-w C:\WINDOWS\system32\wmpsrcwp.dll
    2004-08-10 23:45:14 1,589,760 ----a-w C:\WINDOWS\system32\wmpencen.dll
    2004-08-10 20:52:14 20,480 ----a-w C:\WINDOWS\system32\wmpui.dll
    2004-08-10 20:52:14 20,480 ----a-w C:\WINDOWS\system32\wmpcore.dll
    2004-08-10 20:52:14 20,480 ----a-w C:\WINDOWS\system32\wmpcd.dll
    2004-08-04 06:15:55 60,800 ----a-w C:\WINDOWS\system32\drivers\sysaudio.sys
    2004-08-04 06:15:49 145,792 ----a-w C:\WINDOWS\system32\drivers\portcls.sys
    2004-08-04 06:15:21 140,928 ----a-w C:\WINDOWS\system32\drivers\ks.sys
    2004-08-04 06:15:20 107,904 ----a-w C:\WINDOWS\system32\drivers\mup.sys
    2004-08-04 06:14:37 162,816 ----a-w C:\WINDOWS\system32\drivers\netbt.sys
    2004-08-04 06:14:31 91,776 ----a-w C:\WINDOWS\system32\drivers\ndiswan.sys
    2004-08-04 06:14:28 74,752 ----a-w C:\WINDOWS\system32\drivers\ipsec.sys
    2004-08-04 06:14:28 182,912 ----a-w C:\WINDOWS\system32\drivers\ndis.sys
    2004-08-04 06:14:26 49,664 ----a-w C:\WINDOWS\system32\drivers\classpnp.sys
    2004-08-04 06:14:26 48,384 ----a-w C:\WINDOWS\system32\drivers\raspptp.sys
    2004-08-04 06:14:22 51,328 ----a-w C:\WINDOWS\system32\drivers\rasl2tp.sys
    2004-08-04 06:14:16 143,360 ----a-w C:\WINDOWS\system32\drivers\fastfat.sys
    2004-08-04 06:14:14 138,496 ----a-w C:\WINDOWS\system32\drivers\afd.sys
    2004-08-04 06:14:10 63,744 ----a-w C:\WINDOWS\system32\drivers\cdfs.sys
    2004-08-04 06:10:39 59,648 ------w C:\WINDOWS\system32\drivers\rfcomm.sys
    2004-08-04 06:10:38 38,016 ------w C:\WINDOWS\system32\drivers\bthmodem.sys
    2004-08-04 06:10:38 17,024 ------w C:\WINDOWS\system32\drivers\bthenum.sys
    2004-08-04 06:10:37 35,456 ------w C:\WINDOWS\system32\drivers\bthprint.sys
    2004-08-04 06:10:34 18,944 ------w C:\WINDOWS\system32\drivers\bthusb.sys
    2004-08-04 06:10:28 85,376 ----a-w C:\WINDOWS\system32\drivers\nabtsfec.sys
    2004-08-04 06:10:21 19,328 ----a-w C:\WINDOWS\system32\drivers\wstcodec.sys
    2004-08-04 06:10:16 17,024 ----a-w C:\WINDOWS\system32\drivers\ccdecode.sys
    2004-08-04 06:10:16 11,136 ----a-w C:\WINDOWS\system32\drivers\slip.sys
    2004-08-04 06:10:12 15,360 ----a-w C:\WINDOWS\system32\drivers\streamip.sys
    2004-08-04 06:10:12 15,360 ----a-w C:\WINDOWS\system32\drivers\mpe.sys
    2004-08-04 06:10:12 11,776 ----a-w C:\WINDOWS\system32\drivers\bdasup.sys
    2004-08-04 06:10:12 10,880 ----a-w C:\WINDOWS\system32\drivers\ndisip.sys
    2004-08-04 06:10:10 78,464 ------w C:\WINDOWS\system32\drivers\usbvideo.sys
    2004-08-04 06:09:58 51,328 ----a-w C:\WINDOWS\system32\drivers\msdv.sys
    2004-08-04 06:09:55 25,472 ----a-w C:\WINDOWS\system32\drivers\sonydcam.sys
    2004-08-04 06:08:57 16,000 ----a-w C:\WINDOWS\system32\drivers\usbintel.sys
    2004-08-04 06:08:46 31,616 ----a-w C:\WINDOWS\system32\drivers\usbccgp.sys
    2004-08-04 06:08:42 57,600 ----a-w C:\WINDOWS\system32\drivers\usbhub.sys
    2004-08-04 06:08:42 142,976 ----a-w C:\WINDOWS\system32\drivers\usbport.sys
    2004-08-04 06:08:37 26,624 ----a-w C:\WINDOWS\system32\drivers\usbehci.sys
    2004-08-04 06:08:37 20,480 ----a-w C:\WINDOWS\system32\drivers\usbuhci.sys
    2004-08-04 06:08:19 36,224 ----a-w C:\WINDOWS\system32\drivers\hidclass.sys
    2004-08-04 06:08:18 15,104 ------w C:\WINDOWS\system32\drivers\hidir.sys
    2004-08-04 06:08:16 24,960 ----a-w C:\WINDOWS\system32\drivers\hidparse.sys
    2004-08-04 06:08:02 48,640 ----a-w C:\WINDOWS\system32\drivers\stream.sys
    2004-08-04 06:07:58 60,288 ----a-w C:\WINDOWS\system32\drivers\drmk.sys
    2004-08-04 06:07:57 2,944 ----a-w C:\WINDOWS\system32\drivers\drmkaud.sys
    2004-08-04 06:07:48 18,560 ----a-w C:\WINDOWS\system32\drivers\tdi.sys
    2004-08-04 06:07:47 67,584 ------w C:\WINDOWS\system32\drivers\sdbus.sys
    2004-08-04 06:07:47 15,488 ------w C:\WINDOWS\system32\drivers\mssmbios.sys
    2004-08-04 06:07:44 63,744 ----a-w C:\WINDOWS\system32\drivers\mf.sys
    2004-08-04 06:07:43 46,464 ------w C:\WINDOWS\system32\drivers\gagp30kx.sys
    2004-08-04 06:07:43 44,672 ------w C:\WINDOWS\system32\drivers\uagp35.sys
    2004-08-04 06:07:42 44,928 ------w C:\WINDOWS\system32\drivers\agpcpq.sys
    2004-08-04 06:07:42 43,008 ------w C:\WINDOWS\system32\drivers\amdagp.sys
    2004-08-04 06:07:42 42,240 ------w C:\WINDOWS\system32\drivers\viaagp.sys
    2004-08-04 06:07:42 41,088 ------w C:\WINDOWS\system32\drivers\sisagp.sys
    2004-08-04 06:07:41 42,752 ------w C:\WINDOWS\system32\drivers\alim1541.sys
    2004-08-04 06:07:41 42,368 ------w C:\WINDOWS\system32\drivers\agp440.sys
    2004-08-04 06:07:38 52,864 ----a-w C:\WINDOWS\system32\drivers\dmusic.sys
    2004-08-04 06:07:36 6,016 ------w C:\WINDOWS\system32\drivers\smbali.sys
    2004-08-04 06:07:32 17,664 ----a-w C:\WINDOWS\system32\watchdog.sys
    2004-08-04 06:07:06 20,992 ----a-w C:\WINDOWS\system32\drivers\vga.sys
    2004-08-04 06:07:05 79,744 ----a-w C:\WINDOWS\system32\drivers\videoprt.sys
    2004-08-04 06:05:07 41,472 ----a-w C:\WINDOWS\system32\drivers\raspppoe.sys
    2004-08-04 06:05:03 14,336 ----a-w C:\WINDOWS\system32\drivers\asyncmac.sys
    2004-08-04 06:04:57 34,560 ----a-w C:\WINDOWS\system32\drivers\wanarp.sys
    2004-08-04 06:04:52 13,568 ------w C:\WINDOWS\system32\drivers\wacompen.sys
    2004-08-04 06:04:51 12,672 ------w C:\WINDOWS\system32\drivers\mutohpen.sys
    2004-08-04 06:04:45 20,992 ----a-w C:\WINDOWS\system32\drivers\ipinip.sys
    2004-08-04 06:04:41 24,064 ----a-w C:\WINDOWS\system32\pidgen.dll
    2004-08-04 06:04:33 12,672 ------w C:\WINDOWS\system32\drivers\usb8023x.sys
    2004-08-04 06:04:32 12,672 ----a-w C:\WINDOWS\system32\drivers\usb8023.sys
    2004-08-04 06:04:31 30,080 ----a-w C:\WINDOWS\system32\drivers\rndismp.sys
    2004-08-04 06:04:31 30,080 ------w C:\WINDOWS\system32\drivers\rndismpx.sys
    2004-08-04 06:04:19 69,120 ----a-w C:\WINDOWS\system32\drivers\psched.sys
    2004-08-04 06:04:12 35,072 ----a-w C:\WINDOWS\system32\drivers\msgpc.sys
    2004-08-04 06:04:11 76,288 ----a-w C:\WINDOWS\system32\uniime.dll
    2004-08-04 06:03:35 88,448 ----a-w C:\WINDOWS\system32\drivers\nwlnkipx.sys
    2004-08-04 06:03:21 34,560 ----a-w C:\WINDOWS\system32\drivers\netbios.sys
    2004-08-04 06:03:17 12,416 ----a-w C:\WINDOWS\system32\drivers\tunmp.sys
    2004-08-04 06:03:12 12,928 ----a-w C:\WINDOWS\system32\drivers\ndisuio.sys
    2004-08-04 06:01:24 25,856 ----a-w C:\WINDOWS\system32\drivers\usbprint.sys
    2004-08-04 06:01:15 196,864 ----a-w C:\WINDOWS\system32\drivers\rdpdr.sys
    2004-08-04 06:00:56 181,248 ----a-w C:\WINDOWS\system32\drivers\mrxdav.sys
    2004-08-04 06:00:54 71,040 ----a-w C:\WINDOWS\system32\drivers\dxg.sys
    2004-08-04 06:00:46 11,264 ----a-w C:\WINDOWS\system32\drivers\irenum.sys
    2004-08-04 06:00:43 30,848 ----a-w C:\WINDOWS\system32\drivers\npfs.sys
    2004-08-04 06:00:41 19,072 ----a-w C:\WINDOWS\system32\drivers\msfs.sys
    2004-08-04 06:00:31 66,176 ----a-w C:\WINDOWS\system32\drivers\udfs.sys
    2004-08-04 06:00:15 41,856 ----a-w C:\WINDOWS\system32\drivers\imapi.sys
    2004-08-04 06:00:06 29,056 ------w C:\WINDOWS\system32\drivers\ip6fw.sys
    2004-08-04 05:59:59 14,976 ----a-w C:\WINDOWS\system32\drivers\tape.sys
    2004-08-04 05:59:57 71,552 ----a-w C:\WINDOWS\system32\drivers\bridge.sys
    2004-08-04 05:59:54 36,352 ----a-w C:\WINDOWS\system32\drivers\disk.sys
    2004-08-04 05:59:54 11,392 ----a-w C:\WINDOWS\system32\drivers\sfloppy.sys
    2004-08-04 05:59:54 11,136 ------w C:\WINDOWS\system32\drivers\sffdisk.sys
    2004-08-04 05:59:54 10,240 ------w C:\WINDOWS\system32\drivers\sffp_sd.sys
    2004-08-04 05:59:52 49,536 ----a-w C:\WINDOWS\system32\drivers\cdrom.sys
    2004-08-04 05:59:52 14,208 ----a-w C:\WINDOWS\system32\drivers\diskdump.sys
    2004-08-04 05:59:50 40,320 ----a-w C:\WINDOWS\system32\drivers\nmnt.sys
    2004-08-04 05:59:47 92,032 ----a-w C:\WINDOWS\system32\drivers\ksecdd.sys
    2004-08-04 05:59:43 655,360 ----a-w C:\WINDOWS\system32\mstscax.dll
    2004-08-04 05:59:42 95,360 ----a-w C:\WINDOWS\system32\drivers\atapi.sys
    2004-08-04 05:59:41 96,256 ----a-w C:\WINDOWS\system32\drivers\scsiport.sys
    2004-08-04 05:59:41 25,088 ----a-w C:\WINDOWS\system32\drivers\pciidex.sys
    2004-08-04 05:59:27 27,392 ----a-w C:\WINDOWS\system32\drivers\fdc.sys
    2004-08-04 05:59:27 20,480 ----a-w C:\WINDOWS\system32\drivers\flpydisk.sys
    2004-08-04 05:59:23 7,424 ----a-w C:\WINDOWS\system32\kd1394.dll
    2004-08-04 05:59:07 15,488 ----a-w C:\WINDOWS\system32\drivers\serenum.sys
    2004-08-04 05:58:45 15,104 ----a-w C:\WINDOWS\system32\drivers\usbscan.sys
    2004-08-04 05:58:41 7,552 ----a-w C:\WINDOWS\system32\drivers\mskssrv.sys
    2004-08-04 05:58:41 4,352 ----a-w C:\WINDOWS\system32\drivers\swenum.sys
    2004-08-04 05:58:40 4,992 ----a-w C:\WINDOWS\system32\drivers\mspqm.sys
    2004-08-04 05:58:38 5,504 ----a-w C:\WINDOWS\system32\drivers\mstee.sys
    2004-08-04 05:58:38 5,376 ----a-w C:\WINDOWS\system32\drivers\mspclock.sys
    2004-08-04 05:58:38 100,992 ------w C:\WINDOWS\system32\drivers\bthpan.sys
    2004-08-04 05:58:34 55,936 ----a-w C:\WINDOWS\system32\drivers\atmlane.sys
    2004-08-04 05:58:32 209,408 ----a-w C:\WINDOWS\system32\drivers\update.sys
    2004-08-04 05:58:30 59,904 ----a-w C:\WINDOWS\system32\drivers\atmarpc.sys
    2004-08-04 05:58:30 42,240 ----a-w C:\WINDOWS\system32\drivers\mountmgr.sys
    2004-08-04 05:58:29 61,824 ----a-w C:\WINDOWS\system32\drivers\nic1394.sys
    2004-08-04 05:58:29 60,800 ----a-w C:\WINDOWS\system32\drivers\arp1394.sys
    2004-08-04 05:58:25 61,440 ------w C:\WINDOWS\system32\msvcrt40.dll
    2004-08-04 05:51:26 53,904 ----a-w C:\WINDOWS\system32\dosx.exe
    2004-08-04 05:49:56 92,256 ----a-w C:\WINDOWS\system32\krnl386.exe
    2004-08-04 05:48:47 3,340 ----a-w C:\WINDOWS\system32\redir.exe
    2004-08-04 05:41:55 11,868 ------w C:\WINDOWS\system32\drivers\mdmxsdk.sys
    2004-08-04 05:41:54 1,041,536 ------w C:\WINDOWS\system32\drivers\hsfdpsp2.sys
    2004-08-04 05:41:48 685,056 ------w C:\WINDOWS\system32\drivers\hsfcxts2.sys
    2004-08-04 05:41:46 220,032 ------w C:\WINDOWS\system32\drivers\hsfbs2s2.sys
    2004-08-04 05:41:40 129,535 ------w C:\WINDOWS\system32\drivers\slnt7554.sys
    2004-08-04 05:41:39 13,776 ----a-w C:\WINDOWS\system32\drivers\recagent.sys
    2004-08-04 05:31:48 811,064 ----a-w C:\WINDOWS\system32\imjp81k.dll
    2004-08-04 05:31:43 306,176 ----a-w C:\WINDOWS\system32\slbcsp.dll
    2004-08-04 05:31:43 152,576 ----a-w C:\WINDOWS\system32\rsaenh.dll
    2004-08-04 05:31:43 137,216 ----a-w C:\WINDOWS\system32\dssenh.dll
    2004-08-04 05:29:54 1,897,408 ------w C:\WINDOWS\system32\drivers\nv4_mini.sys
    2004-08-04 05:29:51 166,912 ------w C:\WINDOWS\system32\drivers\s3gnbm.sys
    2004-08-04 05:29:45 25,471 ------w C:\WINDOWS\system32\drivers\watv10nt.sys
    2004-08-04 05:29:44 22,271 ------w C:\WINDOWS\system32\drivers\watv06nt.sys
    2004-08-04 05:29:40 11,935 ------w C:\WINDOWS\system32\drivers\wadv11nt.sys
    2004-08-04 05:29:40 11,871 ------w C:\WINDOWS\system32\drivers\wadv09nt.sys
    2004-08-04 05:29:39 11,295 ------w C:\WINDOWS\system32\drivers\wadv08nt.sys
    2004-08-04 05:29:38 11,807 ------w C:\WINDOWS\system32\drivers\wadv07nt.sys
    2004-08-04 05:29:36 452,736 ------w C:\WINDOWS\system32\drivers\mtxparhm.sys
    2004-08-04 05:29:31 73,216 ------w C:\WINDOWS\system32\drivers\atintuxx.sys
    2004-08-04 05:29:31 63,488 ------w C:\WINDOWS\system32\drivers\atinxsxx.sys
    2004-08-04 05:29:31 36,463 ------w C:\WINDOWS\system32\drivers\ati1tuxx.sys
    2004-08-04 05:29:31 34,735 ------w C:\WINDOWS\system32\drivers\ati1xsxx.sys
    2004-08-04 05:29:31 31,744 ------w C:\WINDOWS\system32\drivers\atinxbxx.sys
    2004-08-04 05:29:31 29,455 ------w C:\WINDOWS\system32\drivers\ati1xbxx.sys
    2004-08-04 05:29:31 26,367 ------w C:\WINDOWS\system32\drivers\ati1snxx.sys
    2004-08-04 05:29:31 21,343 ------w C:\WINDOWS\system32\drivers\ati1ttxx.sys
    2004-08-04 05:29:30 63,663 ------w C:\WINDOWS\system32\drivers\ati1rvxx.sys
    2004-08-04 05:29:30 30,671 ------w C:\WINDOWS\system32\drivers\ati1raxx.sys
    2004-08-04 05:29:30 28,672 ------w C:\WINDOWS\system32\drivers\atinsnxx.sys
    2004-08-04 05:29:30 13,824 ------w C:\WINDOWS\system32\drivers\atinttxx.sys
    2004-08-04 05:29:30 104,960 ------w C:\WINDOWS\system32\drivers\atinrvxx.sys
    2004-08-04 05:29:29 56,623 ------w C:\WINDOWS\system32\drivers\ati1btxx.sys
    2004-08-04 05:29:29 52,224 ------w C:\WINDOWS\system32\drivers\atinraxx.sys
    2004-08-04 05:29:29 14,336 ------w C:\WINDOWS\system32\drivers\atinpdxx.sys
    2004-08-04 05:29:29 12,047 ------w C:\WINDOWS\system32\drivers\ati1pdxx.sys
    2004-08-04 05:29:29 11,615 ------w C:\WINDOWS\system32\drivers\ati1mdxx.sys
    2004-08-04 05:29:28 13,824 ------w C:\WINDOWS\system32\drivers\atinmdxx.sys
    2004-08-04 05:29:27 57,856 ------w C:\WINDOWS\system32\drivers\atinbtxx.sys
    2004-08-03 22:56:58 293,376 ----a-w C:\WINDOWS\system32\wisptis.exe
    2004-08-03 22:56:44 207,360 ----a-w C:\WINDOWS\system32\inked.dll
    2004-08-02 12:20:40 4,569 ------w C:\WINDOWS\system32\secupd.dat
    2004-07-27 15:13:12 159,845 ----a-w C:\WINDOWS\system32\StopUtility.exe
    2004-07-22 22:27:52 212,992 ----a-w C:\WINDOWS\system32\HPODStormEncoder.dll
    2004-07-17 18:39:02 174,712 ----a-w C:\WINDOWS\system32\xenroll.dll
    2004-07-15 13:15:12 176,128 ----a-w C:\WINDOWS\system32\ACUClose.exe
    2004-07-14 16:48:56 270,336 ----a-w C:\WINDOWS\system32\PlugPlayPCIDevice.exe
    2004-07-14 11:10:06 53,248 ----a-w C:\WINDOWS\system32\AutoClickButtonBootNo.exe
    2004-07-07 14:17:08 36,933 ----a-w C:\WINDOWS\system32\athgina.dll
    2004-06-23 17:24:04 -------- d-----w C:\Program Files\Common Files\bcmabusn
    2004-06-18 12:40:50 33,280 ----a-w C:\WINDOWS\muninst.exe
    2004-06-17 17:55:41 13,312 ----a-w C:\WINDOWS\system32\ntvdmd.dll
    2004-05-24 17:01:18 16,384 ----a-w C:\WINDOWS\VIEWS.DAT
    2004-05-17 22:43:15 33,920 ----a-w C:\WINDOWS\system32\ntio.sys
    2004-05-17 22:43:09 35,424 ----a-w C:\WINDOWS\system32\ntio412.sys
    2004-05-17 22:43:07 34,560 ----a-w C:\WINDOWS\system32\ntio404.sys
    2004-05-17 22:43:06 34,560 ----a-w C:\WINDOWS\system32\ntio804.sys
    2004-05-17 22:43:04 35,648 ----a-w C:\WINDOWS\system32\ntio411.sys
    2004-05-17 16:59:50 43,672 ----a-w C:\WINDOWS\system32\drivers\AFS2K.SYS
    2004-04-30 19:17:25 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\ArcSoft
    2004-04-30 18:58:52 -------- d-----w C:\Program Files\Canon
    2004-04-30 18:53:36 -------- d-----w C:\Program Files\directx
    2004-04-30 18:52:55 4,608 ----a-w C:\WINDOWS\system32\w95inf32.dll
    2004-04-30 18:52:55 2,272 ----a-w C:\WINDOWS\system32\w95inf16.dll
    2004-04-30 18:51:47 -------- d-----w C:\Program Files\ArcSoft
    2004-04-10 10:24:44 26,112 ----a-w C:\WINDOWS\system32\xpsp1hfm.exe
    2004-03-29 17:34:38 -------- d-----w C:\Program Files\GTSuomi
    2004-03-01 18:52:15 358,976 ----a-w C:\WINDOWS\system32\msjetoledb40.dll
    2004-02-20 08:42:30 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Common Files
    2004-02-18 13:12:11 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Ytcd2004
    2004-02-18 12:40:41 -------- d-----w C:\Program Files\Windows Messaging
    2004-02-09 10:28:09 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\InterTrust
    2004-02-03 09:40:46 0 ----a-w C:\WINDOWS\system32\HPODStormEncoder(3).dll
    2004-01-14 15:45:23 -------- d-----w C:\Program Files\TeleWell(2)
    2004-01-03 08:37:21 0 ----a-w C:\WINDOWS\system32\HPODStormEncoder(2).dll
    2003-12-12 09:28:06 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Help
    2003-12-12 09:24:09 -------- d-----w C:\Program Files\Common Files\GenimapX
    2003-12-12 09:03:42 -------- d-----w C:\Program Files\Accolade
    2003-12-12 08:51:07 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\Template
    2003-12-03 15:11:18 -------- d-----w C:\Program Files\GTSuomi(2)
    2003-11-19 15:27:06 888 ----a-w C:\drvpnp.dat
    2003-11-19 15:26:40 490 ----a-w C:\pnpID.dat
    2003-11-19 15:24:30 -------- d-----w C:\DOCUME~1\wxp\APPLIC~1\InterVideo
    2003-11-18 12:34:43 -------- d-----w C:\Program Files\Common Files\Hewlett-Packard
    2003-11-18 12:31:30 -------- d-----w C:\Program Files\Common Files\HP
    2003-11-17 18:16:07 -------- d-----w C:\Program Files\Ahead
    2003-11-17 18:15:08 -------- d-----w C:\Program Files\InterVideo
    2003-11-17 18:06:36 -------- d-----w C:\Program Files\Sovellusten pikakuvakkeet
    2003-11-10 11:31:38 36,232 ------w C:\WINDOWS\system32\drivers\NETMD033.sys
    2003-10-20 19:31:10 771 ---ha-w C:\DRVlog.dat
    2003-10-20 19:30:36 -------- d-----w C:\Program Files\Analog Devices
    2003-10-20 19:30:35 44 ----a-w C:\WINDOWS\system32\msssc.dll
    2003-10-20 19:25:22 -------- d-----w C:\Program Files\Microsoft Works
    2003-10-20 19:20:20 0 --sha-r C:\MSDOS.SYS
    2003-10-20 19:20:20 0 --sha-r C:\IO.SYS
    2003-10-20 19:20:20 0 ----a-w C:\CONFIG.SYS
    2003-10-20 19:20:20 0 ----a-w C:\AUTOEXEC.BAT
    2003-10-20 19:18:59 -------- d-----w C:\Program Files\Online Services
    2003-10-20 19:18:34 -------- d-----w C:\Program Files\Common Files\MSSoap
    2003-10-20 19:18:19 21,672 ----a-w C:\WINDOWS\system32\emptyregdb.dat
    2003-10-20 19:17:08 -------- d-----w C:\Program Files\MSN Gaming Zone
    2003-10-20 10:14:06 -------- d-----w C:\Program Files\Common Files\ODBC
    2003-10-20 10:14:04 -------- d-----w C:\Program Files\Common Files\SpeechEngines
    2003-09-25 00:12:00 76,045 ----a-w C:\WINDOWS\system32\EBPMON24.DLL
    2003-08-26 16:03:54 757,760 ----a-w C:\WINDOWS\system32\CDDBUI.dll
    2003-08-26 16:01:28 630,784 ----a-w C:\WINDOWS\system32\CDDBControl.dll
    2003-08-20 15:34:50 548,952 ----a-w C:\WINDOWS\system32\drivers\slntamr.sys
    2003-08-11 07:27:14 77,824 ----a-w C:\WINDOWS\system32\hpovst08.dll
    2003-08-11 07:27:14 565,248 ----a-w C:\WINDOWS\system32\hpotscl.dll
    2003-08-11 07:27:14 274,432 ----a-w C:\WINDOWS\system32\hpgwiamd.dll
    2003-08-11 07:27:12 94,208 ----a-w C:\WINDOWS\system32\hpzipt12.dll
    2003-08-11 07:27:12 65,795 ----a-w C:\WINDOWS\system32\hpzipm12.exe
    2003-08-11 07:27:12 61,699 ----a-w C:\WINDOWS\system32\hpzinw12.exe
    2003-08-11 07:27:12 57,344 ----a-w C:\WINDOWS\system32\hpzisn12.dll
    2003-08-11 07:27:12 51,056 ----a-r C:\WINDOWS\system32\drivers\hpzid412.sys
    2003-08-11 07:27:12 266,296 ----a-w C:\WINDOWS\system32\hpzidr12.dll
    2003-08-11 07:27:12 21,488 ----a-r C:\WINDOWS\system32\drivers\HPZius12.sys
    2003-08-11 07:27:12 196,608 ----a-w C:\WINDOWS\system32\hpzipr12.dll
    2003-08-11 07:27:12 16,496 ----a-r C:\WINDOWS\system32\drivers\HPZipr12.sys
    2003-08-11 07:27:08 208,896 ----a-w C:\WINDOWS\system32\hpzcoi09.dll
    2003-08-11 07:27:08 204,866 ----a-w C:\WINDOWS\system32\hpzsnt09.dll
    2003-08-11 07:27:06 270,336 ----a-w C:\WINDOWS\system32\hpzcon09.dll
    2003-08-11 07:27:04 262,144 ----a-w C:\WINDOWS\system32\HPZc3212.dll
    2003-08-11 07:27:02 34,480 ------w C:\WINDOWS\hpomdl03.dat
    2003-08-03 21:16:18 11,319 ----a-w C:\WINDOWS\system32\drivers\a314.sys
    2003-08-03 21:16:14 37,431 ----a-w C:\WINDOWS\system32\drivers\a313.sys
    2003-08-03 21:16:12 36,927 ----a-w C:\WINDOWS\system32\ialmrnt5.dll
    2003-08-03 21:16:08 120,094 ----a-w C:\WINDOWS\system32\drivers\ialmsbw.sys
    2003-08-03 21:16:00 96,858 ----a-w C:\WINDOWS\system32\drivers\ialmkchw.sys
    2003-08-03 21:15:54 21,045 ----a-w C:\WINDOWS\system32\drivers\vch.sys
    2003-08-03 21:15:50 33,335 ----a-w C:\WINDOWS\system32\drivers\a311.sys
    2003-08-03 21:15:46 33,335 ----a-w C:\WINDOWS\system32\drivers\a310.sys
    2003-08-03 21:15:42 25,655 ----a-w C:\WINDOWS\system32\drivers\a309.sys
    2003-08-03 21:15:38 11,319 ----a-w C:\WINDOWS\system32\drivers\a308.sys
    2003-08-03 21:15:34 21,559 ----a-w C:\WINDOWS\system32\drivers\a307.sys
    2003-08-03 21:15:30 16,951 ----a-w C:\WINDOWS\system32\drivers\a306.sys
    2003-08-03 21:15:26 12,855 ----a-w C:\WINDOWS\system32\drivers\a305.sys
    2003-08-03 21:15:22 46,647 ----a-w C:\WINDOWS\system32\drivers\a304.sys
    2003-08-03 21:15:16 29,751 ----a-w C:\WINDOWS\system32\drivers\a303.sys
    2003-08-03 21:15:12 11,831 ----a-w C:\WINDOWS\system32\drivers\a302.sys
    2003-08-03 21:15:10 33,847 ----a-w C:\WINDOWS\system32\drivers\wa301b.sys
    2003-08-03 21:15:10 33,847 ----a-w C:\WINDOWS\system32\drivers\wa301a.sys
    2003-08-03 21:15:06 65,536 ----a-w C:\WINDOWS\system32\iAlmCoIn_v3619.dll
    2003-08-03 21:15:04 91,419 ----a-w C:\WINDOWS\system32\drivers\ialmnt5.sys
    2003-08-03 21:15:02 115,772 ----a-w C:\WINDOWS\system32\ialmdnt5.dll
    2003-08-03 21:14:54 196,955 ----a-w C:\WINDOWS\system32\ialmdev5.dll
    2003-08-03 21:14:26 477,762 ----a-w C:\WINDOWS\system32\ialmdd5.dll
    2003-08-03 21:04:24 69,632 ----a-w C:\WINDOWS\system32\ialmrem.dll
    2003-08-03 20:54:32 188,416 ----a-w C:\WINDOWS\system32\ialmgdev.dll
    2003-08-03 20:53:58 1,851,392 ----a-w C:\WINDOWS\system32\ialmgicd.dll
    2003-07-22 08:12:36 94,208 ----a-r C:\WINDOWS\system32\hpzjsn01.dll
    2003-07-22 08:12:34 49,152 ----a-r C:\WINDOWS\system32\hpzjrd01.dll
    2003-07-16 19:40:12 135,168 ----a-w C:\WINDOWS\system32\SLMOHServ.dll
    2003-07-16 10:30:26 221,736 ----a-w C:\WINDOWS\system32\drivers\mtlmnt5.sys
    2003-07-15 12:14:40 31,744 ----a-w C:\WINDOWS\system32\E_DCINST.DLL
    2003-07-10 02:26:56 155,648 ----a-w C:\WINDOWS\system32\igfxres.dll
    2003-07-10 02:26:14 32,768 ----a-w C:\WINDOWS\system32\igfxexps.dll
    2003-07-10 02:26:10 94,208 ----a-w C:\WINDOWS\system32\igfxext.exe
    2003-07-10 02:25:52 155,648 ----a-w C:\WINDOWS\system32\igfxtray.exe
    2003-07-10 02:24:58 204,800 ----a-w C:\WINDOWS\system32\igfxpph.dll
    2003-07-10 02:23:46 221,184 ----a-w C:\WINDOWS\system32\igfxeud.dll
    2003-07-10 02:21:54 45,056 ----a-w C:\WINDOWS\system32\igfxdgps.dll
    2003-07-10 02:21:50 151,552 ----a-w C:\WINDOWS\system32\igfxdiag.exe
    2003-07-10 02:20:00 495,616 ----a-w C:\WINDOWS\system32\igfxcfg.exe
    2003-07-10 02:13:16 114,688 ----a-w C:\WINDOWS\system32\hkcmd.exe
    2003-07-10 02:12:50 122,880 ----a-w C:\WINDOWS\system32\igfxhk.dll
    2003-07-10 02:12:26 319,488 ----a-w C:\WINDOWS\system32\igfxsrvc.dll
    2003-07-10 02:11:24 909,312 ----a-w C:\WINDOWS\system32\igfxress.dll
    2003-07-10 02:11:00 118,784 ----a-w C:\WINDOWS\system32\hccutils.dll
    2003-07-10 02:10:40 151,552 ----a-w C:\WINDOWS\system32\igfxdev.dll
    2003-07-10 02:10:02 86,016 ----a-w C:\WINDOWS\system32\igfxdo.dll
    2003-07-07 12:05:26 34,304 ----a-w C:\WINDOWS\oeuninst.exe
    2003-07-03 01:38:56 14,976 ----a-w C:\WINDOWS\system32\drivers\winddx.sys
    2003-07-03 00:54:20 475,136 ----a-w C:\WINDOWS\system32\SLLights.dll
    2003-07-03 00:44:48 61,440 ----a-w C:\WINDOWS\SmCfg.exe
    2003-07-03 00:12:42 376,832 ----a-w C:\WINDOWS\system32\slmh.exe
    2003-07-02 23:41:08 155,648 ----a-w C:\WINDOWS\system32\amr_cpl.dll
    2003-07-02 23:39:00 167,936 ----a-w C:\WINDOWS\system32\minirec.exe
    2003-07-02 16:05:46 188,416 ----a-w C:\WINDOWS\system32\slextspk.dll
    2003-07-02 16:04:32 49,152 ----a-w C:\WINDOWS\system32\coinst.dll
    2003-07-02 15:40:08 45,056 ----a-w C:\WINDOWS\system32\slserv.exe
    2003-07-02 15:35:48 159,744 ----a-w C:\WINDOWS\system32\SLGen.dll
    2003-07-02 15:03:48 24,576 ----a-w C:\WINDOWS\slrundll.exe
    2003-07-02 14:26:36 1,301,128 ----a-w C:\WINDOWS\system32\drivers\mtlstrm.sys
    2003-07-02 14:24:36 86,128 ----a-w C:\WINDOWS\system32\drivers\slnthal.sys
    2003-07-02 14:12:52 39,348 ----a-w C:\WINDOWS\system32\drivers\slwdmsup.sys
    2003-07-02 13:57:10 167,384 ----a-w C:\WINDOWS\system32\drivers\ntmtlfax.sys
    2003-07-02 00:00:00 131,072 ----a-r C:\WINDOWS\system32\Epcmlib.dll
    2003-06-23 10:44:36 626,960 ----a-r C:\WINDOWS\system32\hpvaut32.dll
    2003-06-23 10:44:36 487,424 ----a-r C:\WINDOWS\system32\hpvcp70.dll
    2003-06-23 10:44:36 44,544 ----a-r C:\WINDOWS\system32\MSXML4a.dll
    2003-06-23 10:44:36 344,064 ----a-r C:\WINDOWS\system32\hpvcr70.dll
    2003-06-23 01:44:36 1,415,680 ----a-w C:\WINDOWS\system32\wmv9vcm.dll
    2003-06-13 23:13:16 578,752 ----a-w C:\WINDOWS\system32\drivers\smwdm.sys
    2003-05-20 01:27:00 64,000 ----a-w C:\WINDOWS\system32\ECBTEG.DLL
    2003-05-12 23:55:00 978,944 ----a-w C:\WINDOWS\SynthCoreA.Dll
    2003-04-08 09:30:48 3,744 ----a-w C:\WINDOWS\system32\drivers\smsens.sys
    2003-04-01 17:55:46 35,319 ------w C:\WINDOWS\system32\drivers\NETMD031.sys
    2003-03-18 20:20:00 1,060,864 ----a-w C:\WINDOWS\system32\MFC71.dll
    2003-03-18 20:12:12 1,047,552 ----a-w C:\WINDOWS\system32\MFC71u.dll
    2003-03-18 19:44:38 57,344 ----a-w C:\WINDOWS\system32\MFC71ENU.DLL
    2003-03-18 19:44:38 49,152 ----a-w C:\WINDOWS\system32\MFC71KOR.DLL
    2003-03-18 19:44:36 61,440 ----a-w C:\WINDOWS\system32\MFC71ITA.DLL
    2003-03-18 19:44:36 61,440 ----a-w C:\WINDOWS\system32\MFC71ESP.DLL
    2003-03-18 19:44:36 45,056 ----a-w C:\WINDOWS\system32\MFC71CHT.DLL
    2003-03-18 19:44:36 40,960 ----a-w C:\WINDOWS\system32\MFC71CHS.DLL
    2003-03-18 19:44:34 65,536 ----a-w C:\WINDOWS\system32\MFC71DEU.DLL
    2003-03-18 19:44:34 61,440 ----a-w C:\WINDOWS\system32\MFC71FRA.DLL
    2003-03-18 19:44:34 49,152 ----a-w C:\WINDOWS\system32\MFC71JPN.DLL
    2003-03-18 18:05:50 89,088 ----a-w C:\WINDOWS\system32\atl71.dll
    2003-03-04 11:56:26 145,408 ----a-w C:\WINDOWS\system32\drivers\e100b325.sys
    2003-03-03 22:26:26 34,304 ----a-w C:\WINDOWS\Q330994.exe
    2003-03-03 15:26:52 118,784 ----a-w C:\WINDOWS\system32\Prounstl.exe
    2003-03-03 14:26:26 34,304 ----a-w C:\WINDOWS\ieuninst.exe
    2003-02-28 17:26:32 171,792 ----a-w C:\WINDOWS\system32\wjview.exe
    2003-02-28 17:26:30 46,352 ----a-w C:\WINDOWS\setdebug.exe
    2003-02-28 17:26:30 172,304 ----a-w C:\WINDOWS\system32\jview.exe
    2003-02-28 17:26:30 15,120 ----a-w C:\WINDOWS\system32\jdbgmgr.exe
    2003-02-28 17:26:26 947,472 ----a-w C:\WINDOWS\system32\msjava.dll
    2003-02-28 17:26:26 49,424 ----a-w C:\WINDOWS\system32\clspack.exe
    2003-02-28 17:26:26 286,992 ----a-w C:\WINDOWS\system32\vmhelper.dll
    2003-02-28 17:26:26 21,264 ----a-w C:\WINDOWS\system32\msjdbc10.dll
    2003-02-28 17:26:20 171,280 ----a-w C:\WINDOWS\system32\jit.dll
    2003-02-28 17:26:20 154,384 ----a-w C:\WINDOWS\system32\msawt.dll
    2003-02-28 17:26:18 63,248 ----a-w C:\WINDOWS\system32\javaprxy.dll
    2003-02-28 17:26:18 404,752 ----a-w C:\WINDOWS\system32\javart.dll
    2003-02-28 17:26:18 139,536 ----a-w C:\WINDOWS\system32\javaee.dll
    2003-02-28 17:26:16 187,152 ----a-w C:\WINDOWS\system32\javacypt.dll
    2003-02-28 15:38:32 113 ----a-w C:\WINDOWS\system32\zonedon.reg
    2003-02-28 15:38:32 113 ----a-w C:\WINDOWS\system32\zonedoff.reg
    2003-02-28 15:35:26 6,550 ----a-w C:\WINDOWS\jautoexp.dat
    2003-02-28 15:34:42 313,856 ----a-w C:\WINDOWS\system32\dx3j.dll
    2003-02-20 18:16:34 32,768 ----a-w C:\WINDOWS\system32\netfxperf.dll
    2003-02-20 18:09:14 106,496 ----a-w C:\WINDOWS\system32\mscories.dll
    2003-02-20 18:06:24 155,648 ----a-w C:\WINDOWS\system32\mscoree.dll
    2003-02-20 17:43:38 16,896 ----a-w C:\WINDOWS\system32\mscorier.dll
    2003-02-03 05:26:18 12,288 ----a-w C:\WINDOWS\system32\e100bmsg.dll
    2003-01-31 11:59:46 118,784 ----a-r C:\WINDOWS\system32\HPODXPAT.DLL
    2003-01-08 19:23:38 49,152 ----a-w C:\WINDOWS\system32\DSndUp.exe
    2002-12-29 04:00:00 24,064 ----a-w C:\WINDOWS\system32\IntelNic.dll
    2002-12-12 07:14:32 44,544 ----a-w C:\WINDOWS\system32\dxdllreg.exe
    2002-11-11 15:16:53 20,480 ----a-w C:\fastboot.exe
    2002-11-07 05:23:48 49,152 ----a-w C:\WINDOWS\system32\S11thk32.dll
    2002-11-07 03:00:38 40,820 ----a-w C:\WINDOWS\system32\Syncor11.dll
    2002-09-16 12:00:00 99,840 ----a-w C:\WINDOWS\system32\mprmsg.dll
    2002-09-16 12:00:00 98,304 ----a-w C:\WINDOWS\system32\rtm.dll
    2002-09-16 12:00:00 98,304 ----a-w C:\WINDOWS\system32\msir3jp.dll
    2002-09-16 12:00:00 94,800 ----a-w C:\WINDOWS\twain.dll
    2002-09-16 12:00:00 94,282 ----a-w C:\WINDOWS\system32\msencode.dll
    2002-09-16 12:00:00 924,432 ----a-w C:\WINDOWS\system32\mfc40.dll
    2002-09-16 12:00:00 90,112 ----a-w C:\WINDOWS\system32\rsvpsp.dll
    2002-09-16 12:00:00 90,112 ----a-w C:\WINDOWS\system32\mycomput.dll
    2002-09-16 12:00:00 9,936 ----a-w C:\WINDOWS\system32\lzexpand.dll
    2002-09-16 12:00:00 9,728 ----a-w C:\WINDOWS\system32\sprestrt.exe
    2002-09-16 12:00:00 9,728 ----a-w C:\WINDOWS\system32\sfc.exe
    2002-09-16 12:00:00 9,728 ----a-w C:\WINDOWS\system32\rsvpperf.dll
    2002-09-16 12:00:00 9,728 ----a-w C:\WINDOWS\system32\reset.exe
    2002-09-16 12:00:00 9,728 ----a-w C:\WINDOWS\system32\label.exe
    2002-09-16 12:00:00 9,728 ----a-w C:\WINDOWS\system32\finger.exe
    2002-09-16 12:00:00 9,600 ----a-w C:\WINDOWS\system32\drivers\ndistapi.sys
    2002-09-16 12:00:00 9,344 ----a-w C:\WINDOWS\system32\vga.dll
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\wshatm.dll
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\winfax.dll
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\wifeman.dll
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\subst.exe
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\print.exe
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\lprmonui.dll
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\kbdnecAT.dll
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\find.exe
    2002-09-16 12:00:00 9,216 ----a-w C:\WINDOWS\system32\diskcomp.com
    2002-09-16 12:00:00 9,026 ----a-w C:\WINDOWS\system32\ansi.sys
    2002-09-16 12:00:00 9,008 ----a-w C:\WINDOWS\system32\ver.dll
    2002-09-16 12:00:00 89,600 ----a-w C:\WINDOWS\system32\langwrbk.dll
    2002-09-16 12:00:00 882 ----a-w C:\WINDOWS\system32\share.exe
    2002-09-16 12:00:00 882 ----a-w C:\WINDOWS\system32\fastopen.exe
    2002-09-16 12:00:00 87,040 ----a-w C:\WINDOWS\system32\ipxmontr.dll
    2002-09-16 12:00:00 86,528 ----a-w C:\WINDOWS\system32\iassam.dll
    2002-09-16 12:00:00 86,073 ----a-w C:\WINDOWS\system32\usrfaxa.dll
    2002-09-16 12:00:00 85,020 ----a-w C:\WINDOWS\system32\dgsetup.dll
    2002-09-16 12:00:00 847,872 ----a-w C:\WINDOWS\system32\dbgeng.dll
    2002-09-16 12:00:00 838,144 ----a-w C:\WINDOWS\system32\chtbrkr.dll
    2002-09-16 12:00:00 82,944 ----a-w C:\WINDOWS\system32\olecli.dll
    2002-09-16 12:00:00 82,432 ----a-w C:\WINDOWS\system32\ufat.dll
    2002-09-16 12:00:00 817 ----a-w C:\WINDOWS\system32\mscdexnt.exe
    2002-09-16 12:00:00 81,920 ----a-w C:\WINDOWS\system32\fsusd.dll
    2002-09-16 12:00:00 80,896 ----a-w C:\WINDOWS\system32\charmap.exe
    2002-09-16 12:00:00 80,384 ----a-w C:\WINDOWS\system32\autodisc.dll
    2002-09-16 12:00:00 8,832 ----a-w C:\WINDOWS\system32\drivers\rasacd.sys
    2002-09-16 12:00:00 8,704 ----a-w C:\WINDOWS\system32\eventvwr.exe
    2002-09-16 12:00:00 8,424 ----a-w C:\WINDOWS\system32\exe2bin.exe
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\winhlp32.exe
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\tsbyuv.dll
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\streamci.dll
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\qosname.dll
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\psnppagn.dll
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\mountvol.exe
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\mciole16.dll
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\mag_hook.dll
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\lpr.exe
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\kbdhept.dll
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\hostname.exe
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\control.exe
    2002-09-16 12:00:00 8,192 ----a-w C:\WINDOWS\system32\cidaemon.exe
    2002-09-16 12:00:00 78,848 ----a-w C:\WINDOWS\system32\tapiui.dll
    2002-09-16 12:00:00 77,891 ----a-w C:\WINDOWS\system32\usrmlnka.exe
    2002-09-16 12:00:00 77,890 ----a-w C:\WINDOWS\system32\usrdpa.dll
    2002-09-16 12:00:00 77,883 ----a-w C:\WINDOWS\system32\usrrtosa.dll
    2002-09-16 12:00:00 77,824 ----a-w C:\WINDOWS\system32\wmpstub.exe
    2002-09-16 12:00:00 741 ----a-w C:\WINDOWS\system32\noise.dat
    2002-09-16 12:00:00 74,240 ----a-w C:\WINDOWS\system32\dhcpsapi.dll
    2002-09-16 12:00:00 73,802 ----a-w C:\WINDOWS\system32\msrclr40.dll
    2002-09-16 12:00:00 73,728 ----a-w C:\WINDOWS\system32\csseqchk.dll
    2002-09-16 12:00:00 73,216 ----a-w C:\WINDOWS\system32\avwav.dll
    2002-09-16 12:00:00 72,192 ----a-w C:\WINDOWS\system32\sprio800.dll
    2002-09-16 12:00:00 71,680 ----a-w C:\WINDOWS\system32\msaudite.dll
    2002-09-16 12:00:00 707 ----a-w C:\WINDOWS\_default.pif
    2002-09-16 12:00:00 70,656 ----a-w C:\WINDOWS\system32\sprio600.dll
    2002-09-16 12:00:00 70,656 ----a-w C:\WINDOWS\system32\korwbrkr.dll
    2002-09-16 12:00:00 70,656 ----a-w C:\WINDOWS\system32\ifsutil.dll
    2002-09-16 12:00:00 70,270 ----a-w C:\WINDOWS\system32\edit.com
    2002-09-16 12:00:00 7,936 ----a-w C:\WINDOWS\system32\drivers\fs_rec.sys
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\vcdex.dll
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\ncxpnt.dll
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\mll_mtf.dll
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\mciole32.dll
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\kbdnecNT.dll
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\kbdcan.dll
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\drivers\mcd.sys
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\ckcnv.exe
    2002-09-16 12:00:00 7,680 ----a-w C:\WINDOWS\system32\chcp.com
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\wshnetbs.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\recover.exe
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\msr2cenu.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\mscat32.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\kbdnec95.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\kbdnec.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\kbdibm02.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\kbdcz.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\forcedos.exe
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\f3ahvoas.dll
    2002-09-16 12:00:00 7,168 ----a-w C:\WINDOWS\system32\diskcopy.com
    2002-09-16 12:00:00 7,052 ----a-w C:\WINDOWS\system32\nlsfunc.exe
    2002-09-16 12:00:00 7,040 ----a-w C:\WINDOWS\system32\kdcom.dll
    2002-09-16 12:00:00 69,856 ----a-w C:\WINDOWS\system32\avicap.dll
    2002-09-16 12:00:00 69,700 ----a-w C:\WINDOWS\system32\usrshuta.exe
    2002-09-16 12:00:00 69,699 ----a-w C:\WINDOWS\system32\usrcoina.dll
    2002-09-16 12:00:00 69,632 ----a-w C:\WINDOWS\system32\spnike.dll
    2002-09-16 12:00:00 69,632 ----a-w C:\WINDOWS\system32\msr2c.dll
    2002-09-16 12:00:00 69,632 ----a-w C:\WINDOWS\system32\ipxpromn.dll
    2002-09-16 12:00:00 69,120 ----a-w C:\WINDOWS\system32\olethk32.dll
    2002-09-16 12:00:00 69,120 ----a-w C:\WINDOWS\system32\mprddm.dll
    2002-09-16 12:00:00 673,088 ----a-w C:\WINDOWS\system32\mlang.dat
    2002-09-16 12:00:00 66,560 ----a-w C:\WINDOWS\system32\ipxsap.dll
    2002-09-16 12:00:00 66,560 ----a-w C:\WINDOWS\system32\console.dll
    2002-09-16 12:00:00 65,536 ----a-w C:\WINDOWS\system32\jgsh400.dll
    2002-09-16 12:00:00 64,512 ----a-w C:\WINDOWS\system32\avicap32.dll
    2002-09-16 12:00:00 64,512 ----a-w C:\WINDOWS\system32\acctres.dll
    2002-09-16 12:00:00 63,232 ----a-w C:\WINDOWS\system32\drivers\nwlnknb.sys
    2002-09-16 12:00:00 62,976 ----a-w C:\WINDOWS\system32\dsauth.dll
    2002-09-16 12:00:00 62,464 ----a-w C:\WINDOWS\system32\iasnap.dll
    2002-09-16 12:00:00 62,464 ----a-w C:\WINDOWS\system32\dpnmodem.dll
    2002-09-16 12:00:00 61,952 ----a-w C:\WINDOWS\system32\dpnwsock.dll
    2002-09-16 12:00:00 61,508 ----a-w C:\WINDOWS\system32\usrprbda.exe
    2002-09-16 12:00:00 61,500 ----a-w C:\WINDOWS\system32\usrcntra.dll
    2002-09-16 12:00:00 61,248 ----a-w C:\WINDOWS\system32\msacm.dll
    2002-09-16 12:00:00 605,696 ----a-w C:\WINDOWS\system32\getuname.dll
    2002-09-16 12:00:00 60,928 ----a-w C:\WINDOWS\system32\ocmanage.dll
    2002-09-16 12:00:00 60,928 ----a-w C:\WINDOWS\system32\msratelc.dll
    2002-09-16 12:00:00 6,912 ----a-w C:\WINDOWS\system32\drivers\parvdm.sys
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\routetab.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\msswchx.exe
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdycl.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdsl1.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdsl.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdsg.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdpl.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdlk41a.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdla.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdhu.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdhela3.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdcz2.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdcz1.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\kbdcr.dll
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\KBDAL.DLL
    2002-09-16 12:00:00 6,656 ----a-w C:\WINDOWS\system32\c_is2022.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\svcpack.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\lpq.exe
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdusx.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdusr.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdusl.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdtuq.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdtuf.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdsw.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdsp.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdsf.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdpo.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdno.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdne.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdmac.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdlv1.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdlv.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdlk41j.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdic.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdhela2.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdgr1.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdgr.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdgkl.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdfr.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdfo.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdfi.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdfc.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdest.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdes.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdda.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdca.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdbr.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdbene.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdbe.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdax2.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbd106n.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbd101a.dll
    2002-09-16 12:00:00 6,144 ----a-w C:\WINDOWS\system32\kbd101.dll
    2002-09-16 12:00:00 590,336 ----a-w C:\WINDOWS\system32\d3dramp.dll
    2002-09-16 12:00:00 59,392 ----a-w C:\WINDOWS\system32\iassvcs.dll
    2002-09-16 12:00:00 58,112 ----a-w C:\WINDOWS\system32\drivers\vdmindvd.sys
    2002-09-16 12:00:00 57,856 ----a-w C:\WINDOWS\system32\scripto.dll
    2002-09-16 12:00:00 57,856 ----a-w C:\WINDOWS\system32\ntlanui.dll
    2002-09-16 12:00:00 57,392 ----a-w C:\WINDOWS\system32\wshfi.dll
    2002-09-16 12:00:00 57,344 ----a-w C:\WINDOWS\system32\fsutil.exe
    2002-09-16 12:00:00 565,760 ------w C:\WINDOWS\system32\msvcp50.dll
    2002-09-16 12:00:00 56,832 ----a-w C:\WINDOWS\system32\sol.exe
    2002-09-16 12:00:00 55,936 ----a-w C:\WINDOWS\system32\drivers\nwlnkspx.sys
    2002-09-16 12:00:00 55,296 ----a-w C:\WINDOWS\system32\freecell.exe
    2002-09-16 12:00:00 55,296 ----a-w C:\WINDOWS\system32\dvdplay.exe
    2002-09-16 12:00:00 54,784 ----a-w C:\WINDOWS\system32\icmui.dll
    2002-09-16 12:00:00 54,272 ----a-w C:\WINDOWS\system32\stclient.dll
    2002-09-16 12:00:00 53,520 ----a-w C:\WINDOWS\system32\dpserial.dll
    2002-09-16 12:00:00 53,305 ----a-w C:\WINDOWS\system32\usrlbva.dll
    2002-09-16 12:00:00 53,248 ----a-w C:\WINDOWS\system32\mfc42loc.dll
    2002-09-16 12:00:00 53,248 ----a-w C:\WINDOWS\system32\mfc40loc.dll
    2002-09-16 12:00:00 52,224 ----a-w C:\WINDOWS\system32\tsappcmp.dll
    2002-09-16 12:00:00 51,712 ----a-w C:\WINDOWS\system32\migpwd.exe
    2002-09-16 12:00:00 51,712 ----a-w C:\WINDOWS\system32\drivers\tosdvd.sys
    2002-09-16 12:00:00 51,456 ----a-w C:\WINDOWS\system32\vga256.dll
    2002-09-16 12:00:00 51,200 ----a-w C:\WINDOWS\system32\wmerrFIN.dll
    2002-09-16 12:00:00 51,200 ----a-w C:\WINDOWS\system32\syncapp.exe
    2002-09-16 12:00:00 51,200 ----a-w C:\WINDOWS\system32\rsm.exe
    2002-09-16 12:00:00 51,200 ----a-w C:\WINDOWS\system32\dfrgres.dll
    2002-09-16 12:00:00 51,096 ----a-w C:\WINDOWS\system32\command.com
    2002-09-16 12:00:00 50,688 ----a-w C:\WINDOWS\system32\w32tm.exe
    2002-09-16 12:00:00 50,688 ----a-w C:\WINDOWS\system32\loghours.dll
    2002-09-16 12:00:00 50,176 ----a-w C:\WINDOWS\system32\mdhcp.dll
    2002-09-16 12:00:00 5,888 ----a-w C:\WINDOWS\system32\drivers\rootmdm.sys
    2002-09-16 12:00:00 5,888 ----a-w C:\WINDOWS\system32\drivers\dmload.sys
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\write.exe
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\tapiperf.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\softpub.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\skdll.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\mll_qic.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdus.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbduk.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdro.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdpl1.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdmon.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdlt1.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdlt.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdkyr.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdit142.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdit.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdir.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdhu1.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdhe319.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdhe220.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdhe.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdgae.dll
    2002-09-16 12:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdazel.dll
    2002-09-16 12:00:00 5,120 ----a-w C:\WINDOWS\system32\winnls.dll
    2002-09-16 12:00:00 5,120 ----a-w C:\WINDOWS\system32\shell.dll
    2002-09-16 12:00:00 5,120 ----a-w C:\WINDOWS\system32\lodctr.exe
    2002-09-16 12:00:00 5,120 ----a-w C:\WINDOWS\system32\kbddv.dll
    2002-09-16 12:00:00 5,120 ----a-w C:\WINDOWS\system32\dcomcnfg.exe
    2002-09-16 12:00:00 5,120 ----a-w C:\WINDOWS\system32\bootvrfy.exe
    2002-09-16 12:00:00 49,680 ----a-w C:\WINDOWS\twunk_16.exe
    2002-09-16 12:00:00 49,211 ----a-w C:\WINDOWS\system32\usrvpa.dll
    2002-09-16 12:00:00 49,211 ----a-w C:\WINDOWS\system32\usrsdpia.dll
    2002-09-16 12:00:00 49,209 ----a-w C:\WINDOWS\system32\usrv80a.dll
    2002-09-16 12:00:00 49,179 ----a-w C:\WINDOWS\system32\sqlwoa.dll
    2002-09-16 12:00:00 49,152 ----a-w C:\WINDOWS\system32\rsmui.exe
    2002-09-16 12:00:00 49,152 ----a-w C:\WINDOWS\system32\mprdim.dll
    2002-09-16 12:00:00 48,464 ----a-w C:\WINDOWS\system32\jobexec.dll
    2002-09-16 12:00:00 47,872 ----a-w C:\WINDOWS\system32\user.exe
    2002-09-16 12:00:00 47,616 ----a-w C:\WINDOWS\system32\d3dxof.dll
    2002-09-16 12:00:00 47,104 ----a-w C:\WINDOWS\system32\mprui.dll
    2002-09-16 12:00:00 46,592 ----a-w C:\WINDOWS\system32\pmspl.dll
    2002-09-16 12:00:00 46,258 ----a-w C:\WINDOWS\system32\mib.bin
    2002-09-16 12:00:00 46,080 ----a-w C:\WINDOWS\system32\drwtsn32.exe
    2002-09-16 12:00:00 46,080 ----a-w C:\WINDOWS\system32\docprop.dll
    2002-09-16 12:00:00 450,560 ----a-w C:\WINDOWS\system32\infosoft.dll
    2002-09-16 12:00:00 45,568 ----a-w C:\WINDOWS\system32\jgsd400.dll
    2002-09-16 12:00:00 45,116 ----a-w C:\WINDOWS\system32\usrvoica.dll
    2002-09-16 12:00:00 45,083 ----a-w C:\WINDOWS\system32\dispex.dll
    2002-09-16 12:00:00 45,056 ----a-w C:\WINDOWS\system32\ipsec6.exe
    2002-09-16 12:00:00 446,464 ----a-w C:\WINDOWS\system32\wmvdmoe.dll
    2002-09-16 12:00:00 44,544 ----a-w C:\WINDOWS\system32\jgaw400.dll
    2002-09-16 12:00:00 44,544 ----a-w C:\WINDOWS\system32\hticons.dll
    2002-09-16 12:00:00 44,032 ----a-w C:\WINDOWS\system32\msxml3r.dll
    2002-09-16 12:00:00 44,032 ----a-w C:\WINDOWS\system32\dimap.dll
    2002-09-16 12:00:00 436,224 ----a-w C:\WINDOWS\system32\d3dim.dll
    2002-09-16 12:00:00 435,712 ----a-w C:\WINDOWS\system32\shellstyle.dll
    2002-09-16 12:00:00 42,809 ----a-w C:\WINDOWS\system32\key01.sys
    2002-09-16 12:00:00 42,768 ----a-w C:\WINDOWS\system32\dpwsock.dll
    2002-09-16 12:00:00 42,537 ----a-w C:\WINDOWS\system32\keyboard.sys
    2002-09-16 12:00:00 414,208 ----a-w C:\WINDOWS\system32\setupdll.dll
    2002-09-16 12:00:00 41,984 ----a-w C:\WINDOWS\system32\msports.dll
    2002-09-16 12:00:00 41,472 ----a-w C:\WINDOWS\system32\iasads.dll
    2002-09-16 12:00:00 41,019 ----a-w C:\WINDOWS\system32\usrsvpia.dll
    2002-09-16 12:00:00 40,448 ----a-w C:\WINDOWS\system32\webhits.dll
    2002-09-16 12:00:00 40,448 ----a-w C:\WINDOWS\system32\osuninst.exe
    2002-09-16 12:00:00 4,952 --sha-r C:\Bootfont.bin
    2002-09-16 12:00:00 4,848 ----a-w C:\WINDOWS\system32\himem.sys
    2002-09-16 12:00:00 4,736 ----a-w C:\WINDOWS\system32\drivers\usbd.sys
    2002-09-16 12:00:00 4,656 ----a-w C:\WINDOWS\system32\ds16gt.dLL
    2002-09-16 12:00:00 4,608 ----a-w C:\WINDOWS\system32\vjoy.dll
    2002-09-16 12:00:00 4,608 ----a-w C:\WINDOWS\system32\regwiz.exe
    2002-09-16 12:00:00 4,608 ----a-w C:\WINDOWS\system32\mssip32.dll
    2002-09-16 12:00:00 4,608 ----a-w C:\WINDOWS\system32\mchgrcoi.dll
    2002-09-16 12:00:00 4,608 ----a-w C:\WINDOWS\system32\dllhst3g.exe
    2002-09-16 12:00:00 4,608 ----a-w C:\WINDOWS\system32\bootok.exe
    2002-09-16 12:00:00 4,352 ----a-w C:\WINDOWS\system32\drivers\wmilib.sys
    2002-09-16 12:00:00 4,224 ----a-w C:\WINDOWS\system32\drivers\rdpcdd.sys
    2002-09-16 12:00:00 4,224 ----a-w C:\WINDOWS\system32\drivers\mnmdd.sys
    2002-09-16 12:00:00 4,224 ----a-w C:\WINDOWS\system32\drivers\beep.sys
    2002-09-16 12:00:00 4,208 ----a-w C:\WINDOWS\system32\storage.dll
    2002-09-16 12:00:00 4,096 ----a-w C:\WINDOWS\system32\unlodctr.exe
    2002-09-16 12:00:00 4,096 ----a-w C:\WINDOWS\system32\rdpcfgex.dll
    2002-09-16 12:00:00 4,096 ----a-w C:\WINDOWS\system32\mtxex.dll
    2002-09-16 12:00:00 4,096 ----a-w C:\WINDOWS\system32\iprtprio.dll
    2002-09-16 12:00:00 39,936 ----a-w C:\WINDOWS\system32\ipxrtmgr.dll
    2002-09-16 12:00:00 39,744 ----a-w C:\WINDOWS\system32\ole2.dll
    2002-09-16 12:00:00 39,424 ----a-w C:\WINDOWS\system32\esentutl.exe
    2002-09-16 12:00:00 39,424 ----a-w C:\WINDOWS\system32\ddeml.dll
    2002-09-16 12:00:00 39,322 ----a-w C:\WINDOWS\system32\mem.exe
    2002-09-16 12:00:00 38,400 ----a-w C:\WINDOWS\system32\msobjs.dll
    2002-09-16 12:00:00 38,160 ----a-w C:\WINDOWS\system32\msxml2r.dll
    2002-09-16 12:00:00 38,016 ----a-w C:\WINDOWS\system32\drivers\ndproxy.sys
    2002-09-16 12:00:00 377,856 ----a-w C:\WINDOWS\system32\dhcpmon.dll
    2002-09-16 12:00:00 37,888 ----a-w C:\WINDOWS\system32\ntmsevt.dll
    2002-09-16 12:00:00 368,710 ----a-w C:\WINDOWS\system32\msisam11.dll
    2002-09-16 12:00:00 362,496 ----a-w C:\WINDOWS\system32\jet500.dll
    2002-09-16 12:00:00 36,864 ----a-w C:\WINDOWS\system32\syskey.exe
    2002-09-16 12:00:00 36,864 ----a-w C:\WINDOWS\system32\ntsdexts.dll
    2002-09-16 12:00:00 36,352 ----a-w C:\WINDOWS\system32\mssign32.dll
    2002-09-16 12:00:00 359,936 ----a-w C:\WINDOWS\system32\cards.dll
    2002-09-16 12:00:00 352,256 ----a-w C:\WINDOWS\system32\drivers\atmuni.sys
    2002-09-16 12:00:00 350,208 ----a-w C:\WINDOWS\system32\d3drm.dll
    2002-09-16 12:00:00 35,840 ----a-w C:\WINDOWS\system32\narrhook.dll
    2002-09-16 12:00:00 35,840 ----a-w C:\WINDOWS\system32\jgmd400.dll
    2002-09-16 12:00:00 35,328 ----a-w C:\WINDOWS\system32\winchat.exe
    2002-09-16 12:00:00 35,328 ----a-w C:\WINDOWS\system32\pifmgr.dll
    2002-09-16 12:00:00 345,600 ----a-w C:\WINDOWS\system32\confmsp.dll
    2002-09-16 12:00:00 34,944 ----a-w C:\WINDOWS\system32\drivers\fips.sys
    2002-09-16 12:00:00 34,816 ----a-w C:\WINDOWS\system32\d3dpmesh.dll
    2002-09-16 12:00:00 34,816 ----a-w C:\WINDOWS\system32\atmpvcno.dll
    2002-09-16 12:00:00 34,432 ----a-w C:\WINDOWS\system32\drivers\rawwan.sys
    2002-09-16 12:00:00 34,270 ----a-w C:\WINDOWS\system32\perfd00B.dat
    2002-09-16 12:00:00 330,752 ----a-w C:\WINDOWS\system32\dmconfig.dll
    2002-09-16 12:00:00 33,792 ----a-w C:\WINDOWS\system32\vssadmin.exe
    2002-09-16 12:00:00 33,792 ----a-w C:\WINDOWS\system32\regini.exe
    2002-09-16 12:00:00 33,792 ----a-w C:\WINDOWS\system32\ping6.exe
    2002-09-16 12:00:00 33,280 ----a-w C:\WINDOWS\system32\iologmsg.dll
    2002-09-16 12:00:00 33,280 ----a-w C:\WINDOWS\system32\eventcls.dll
    2002-09-16 12:00:00 33,120 ----a-w C:\WINDOWS\system32\commdlg.dll
    2002-09-16 12:00:00 33,040 ----a-w C:\WINDOWS\system32\dplay.dll
    2002-09-16 12:00:00 323,641 ----a-w C:\WINDOWS\system32\usrdtea.dll
    2002-09-16 12:00:00 32,896 ----a-w C:\WINDOWS\system32\drivers\ipfltdrv.sys
    2002-09-16 12:00:00 32,768 ----a-w C:\WINDOWS\system32\cnetcfg.dll
    2002-09-16 12:00:00 32,512 ----a-w C:\WINDOWS\system32\drivers\nwlnkfwd.sys
    2002-09-16 12:00:00 32,256 ----a-w C:\WINDOWS\system32\wupdmgr.exe
    2002-09-16 12:00:00 32,256 ----a-w C:\WINDOWS\system32\iashlpr.dll
    2002-09-16 12:00:00 311,327 ----a-w C:\WINDOWS\system32\wmv8dmod.dll
    2002-09-16 12:00:00 31,744 ----a-w C:\WINDOWS\system32\tracert6.exe
    2002-09-16 12:00:00 31,744 ----a-w C:\WINDOWS\system32\ntsd.exe
    2002-09-16 12:00:00 31,744 ----a-w C:\WINDOWS\system32\fxsroute.dll
    2002-09-16 12:00:00 31,360 ----a-w C:\WINDOWS\system32\drivers\atmepvc.sys
    2002-09-16 12:00:00 31,232 ----a-w C:\WINDOWS\system32\traffic.dll
    2002-09-16 12:00:00 31,232 ----a-w C:\WINDOWS\system32\sc.exe
    2002-09-16 12:00:00 308,224 ----a-w C:\WINDOWS\system32\netui2.dll
    2002-09-16 12:00:00 30,720 ----a-w C:\WINDOWS\system32\plustab.dll
    2002-09-16 12:00:00 30,160 ----a-w C:\WINDOWS\system32\compobj.dll
    2002-09-16 12:00:00 3,725 ----a-w C:\WINDOWS\system32\pubprn.vbs
    2002-09-16 12:00:00 3,584 ----a-w C:\WINDOWS\system32\riched32.dll
    2002-09-16 12:00:00 3,584 ----a-w C:\WINDOWS\system32\regedt32.exe
    2002-09-16 12:00:00 3,584 ----a-w C:\WINDOWS\system32\mll_hp.dll
    2002-09-16 12:00:00 3,584 ----a-w C:\WINDOWS\system32\iprop.dll
    2002-09-16 12:00:00 3,584 ------w C:\WINDOWS\system32\comcat.dll
    2002-09-16 12:00:00 3,456 ----a-w C:\WINDOWS\system32\drivers\oprghdlr.sys
    2002-09-16 12:00:00 3,328 ----a-w C:\WINDOWS\system32\drivers\dxgthk.sys
    2002-09-16 12:00:00 3,200 ----a-w C:\WINDOWS\system32\wowfax.dll
    2002-09-16 12:00:00 3,072 ----a-w C:\WINDOWS\system32\systray.exe
    2002-09-16 12:00:00 3,072 ----a-w C:\WINDOWS\system32\rnr20.dll
    2002-09-16 12:00:00 3,072 ----a-w C:\WINDOWS\system32\fixmapi.exe
    2002-09-16 12:00:00 29,696 ----a-w C:\WINDOWS\system32\lights.exe
    2002-09-16 12:00:00 29,370 ----a-w C:\WINDOWS\system32\ntdos411.sys
    2002-09-16 12:00:00 29,274 ----a-w C:\WINDOWS\system32\ntdos412.sys
    2002-09-16 12:00:00 29,146 ----a-w C:\WINDOWS\system32\ntdos804.sys
    2002-09-16 12:00:00 29,146 ----a-w C:\WINDOWS\system32\ntdos404.sys
    2002-09-16 12:00:00 285,184 ----a-w C:\WINDOWS\system32\glmf32.dll
    2002-09-16 12:00:00 28,746 ----a-w C:\WINDOWS\system32\msrecr40.dll
    2002-09-16 12:00:00 28,626 ----a-w C:\WINDOWS\system32\perfd009.dat
    2002-09-16 12:00:00 28,112 ----a-w C:\WINDOWS\system32\drwatson.exe
    2002-09-16 12:00:00 273,920 ----a-w C:\WINDOWS\system32\dmdlgs.dll
    2002-09-16 12:00:00 272,128 ----a-w C:\WINDOWS\system32\perfi009.dat
    2002-09-16 12:00:00 27,882 ----a-w C:\WINDOWS\system32\ntdos.sys
    2002-09-16 12:00:00 27,648 ----a-w C:\WINDOWS\system32\ccfgnt.dll
    2002-09-16 12:00:00 27,440 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
    2002-09-16 12:00:00 27,200 ----a-r C:\WINDOWS\system32\ctl3dv2.dll
    2002-09-16 12:00:00 27,136 ----a-w C:\WINDOWS\system32\ctl3d32.dll
    2002-09-16 12:00:00 27,097 ----a-w C:\WINDOWS\system32\country.sys
    2002-09-16 12:00:00 262,528 ----a-w C:\WINDOWS\system32\drivers\cinemst2.sys
    2002-09-16 12:00:00 26,624 ----a-w C:\WINDOWS\system32\scredir.dll
    2002-09-16 12:00:00 26,624 ----a-w C:\WINDOWS\system32\msxmlr.dll
    2002-09-16 12:00:00 26,624 ----a-w C:\WINDOWS\system32\cnvfat.dll
    2002-09-16 12:00:00 26,224 ----a-w C:\WINDOWS\system32\odbc16gt.dll
    2002-09-16 12:00:00 26,112 ----a-w C:\WINDOWS\system32\graftabl.com
    2002-09-16 12:00:00 26,112 ----a-w C:\WINDOWS\system32\adptif.dll
    2002-09-16 12:00:00 256,832 ----a-w C:\WINDOWS\winhelp.exe
    2002-09-16 12:00:00 253,952 ----a-w C:\WINDOWS\system32\neth.dll
    2002-09-16 12:00:00 253,952 ----a-w C:\WINDOWS\system32\msvcrt20.dll
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\twunk_32.exe
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\system32\utildll.dll
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\system32\routemon.exe
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\system32\msvidc32.dll
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\system32\lnkstub.exe
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\system32\format.com
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\system32\comaddin.dll
    2002-09-16 12:00:00 25,600 ----a-w C:\WINDOWS\system32\aaaamon.dll
    2002-09-16 12:00:00 25,088 ----a-w C:\WINDOWS\system32\mtxlegih.dll
    2002-09-16 12:00:00 248,320 ----a-w C:\WINDOWS\system32\iassdo.dll
    2002-09-16 12:00:00 243,832 ----a-w C:\WINDOWS\system32\perfi00B.dat
    2002-09-16 12:00:00 241,725 ----a-w C:\WINDOWS\system32\msuni11.dll
    2002-09-16 12:00:00 24,661 ----a-w C:\WINDOWS\system32\spxcoins.dll
    2002-09-16 12:00:00 24,624 ----a-w C:\WINDOWS\system32\vbsfi.dll
    2002-09-16 12:00:00 24,623 ----a-w C:\WINDOWS\system32\jsfi.dll
    2002-09-16 12:00:00 24,603 ----a-w C:\WINDOWS\system32\sqlwid.dll
    2002-09-16 12:00:00 24,576 ----a-w C:\WINDOWS\system32\rsmsink.exe
    2002-09-16 12:00:00 24,576 ----a-w C:\WINDOWS\system32\gdi.exe
    2002-09-16 12:00:00 24,576 ----a-w C:\WINDOWS\system32\dbmsvinn.dLL
    2002-09-16 12:00:00 24,064 ----a-w C:\WINDOWS\system32\sort.exe
    2002-09-16 12:00:00 24,064 ----a-w C:\WINDOWS\system32\rsvpmsg.dll
    2002-09-16 12:00:00 24,064 ----a-w C:\WINDOWS\system32\olesvr.dll
    2002-09-16 12:00:00 23,936 ----a-w C:\WINDOWS\system32\drivers\usbcamd2.sys
    2002-09-16 12:00:00 23,808 ----a-w C:\WINDOWS\system32\drivers\usbcamd.sys
    2002-09-16 12:00:00 23,552 ----a-w C:\WINDOWS\system32\sfmapi.dll
    2002-09-16 12:00:00 23,552 ----a-w C:\WINDOWS\system32\rasrad.dll
    2002-09-16 12:00:00 23,552 ----a-w C:\WINDOWS\system32\iasacct.dll
    2002-09-16 12:00:00 227,840 ----a-w C:\WINDOWS\system32\avtapi.dll
    2002-09-16 12:00:00 22,528 ----a-w C:\WINDOWS\system32\rasmxs.dll
    2002-09-16 12:00:00 22,528 ----a-w C:\WINDOWS\system32\pathping.exe
    2002-09-16 12:00:00 22,016 ----a-w C:\WINDOWS\system32\w32topl.dll
    2002-09-16 12:00:00 22,016 ----a-w C:\WINDOWS\system32\rpcns4.dll
    2002-09-16 12:00:00 22,016 ----a-w C:\WINDOWS\system32\qwinsta.exe
    2002-09-16 12:00:00 22,016 ----a-w C:\WINDOWS\system32\olesvr32.dll
    2002-09-16 12:00:00 22,016 ----a-w C:\WINDOWS\system32\mpnotify.exe
    2002-09-16 12:00:00 218,112 ----a-w C:\WINDOWS\system32\c_g18030.dll
    2002-09-16 12:00:00 218,003 ----a-w C:\WINDOWS\system32\dssec.dat
    2002-09-16 12:00:00 214,016 ----a-w C:\WINDOWS\system32\netevent.dll
    2002-09-16 12:00:00 21,504 ----a-w C:\WINDOWS\system32\msg.exe
    2002-09-16 12:00:00 21,504 ----a-w C:\WINDOWS\system32\ipxrip.dll
    2002-09-16 12:00:00 21,376 ----a-w C:\WINDOWS\system32\drivers\tsbvcap.sys
    2002-09-16 12:00:00 208,896 ----a-w C:\WINDOWS\system32\wavemsp.dll
    2002-09-16 12:00:00 20,992 ----a-w C:\WINDOWS\system32\nbtstat.exe
    2002-09-16 12:00:00 20,992 ----a-w C:\WINDOWS\system32\ipxwan.dll
    2002-09-16 12:00:00 20,730 ----a-w C:\WINDOWS\system32\debug.exe
    2002-09-16 12:00:00 20,535 ----a-w C:\WINDOWS\system32\vfpodbc.dll
    2002-09-16 12:00:00 20,530 ----a-w C:\WINDOWS\system32\scrrnfi.dll
    2002-09-16 12:00:00 20,528 ----a-w C:\WINDOWS\system32\scofi.dll
    2002-09-16 12:00:00 20,480 ----a-w C:\WINDOWS\system32\winstrm.dll
    2002-09-16 12:00:00 20,480 ----a-w C:\WINDOWS\system32\route.exe
    2002-09-16 12:00:00 20,480 ----a-w C:\WINDOWS\system32\mtxdm.dll
    2002-09-16 12:00:00 20,480 ----a-w C:\WINDOWS\system32\dbmsadsn.dll
    2002-09-16 12:00:00 2,944 ----a-w C:\WINDOWS\system32\drivers\null.sys
    2002-09-16 12:00:00 2,864 ----a-w C:\WINDOWS\system32\winsock.dll
    2002-09-16 12:00:00 2,736 ----a-w C:\WINDOWS\system32\wowdeb.exe
    2002-09-16 12:00:00 2,560 ----a-w C:\WINDOWS\system32\lz32.dll
    2002-09-16 12:00:00 2,112 ----a-w C:\WINDOWS\system32\winspool.exe
    2002-09-16 12:00:00 199,168 ----a-w C:\WINDOWS\system32\ir32_32.dll
    2002-09-16 12:00:00 19,758 ----a-w C:\WINDOWS\system32\graphics.com
    2002-09-16 12:00:00 19,456 ----a-w C:\WINDOWS\system32\tcpsvcs.exe
    2002-09-16 12:00:00 19,456 ----a-w C:\WINDOWS\system32\mode.com
    2002-09-16 12:00:00 19,456 ----a-w C:\WINDOWS\system32\dmocx.dll
    2002-09-16 12:00:00 19,456 ----a-w C:\WINDOWS\system32\arp.exe
    2002-09-16 12:00:00 19,200 ----a-w C:\WINDOWS\system32\tapi.dll
    2002-09-16 12:00:00 19,088 ----a-w C:\WINDOWS\system32\sysedit.exe
    2002-09-16 12:00:00 18,944 ----a-w C:\WINDOWS\vmmreg32.dll
    2002-09-16 12:00:00 18,944 ----a-w C:\WINDOWS\system32\wmiprop.dll
    2002-09-16 12:00:00 18,944 ----a-w C:\WINDOWS\system32\mimefilt.dll
    2002-09-16 12:00:00 18,944 ----a-w C:\WINDOWS\system32\diskperf.exe
    2002-09-16 12:00:00 18,688 ----a-w C:\WINDOWS\system32\drivers\partmgr.sys
    2002-09-16 12:00:00 18,688 ----a-w C:\WINDOWS\system32\drivers\cdaudio.sys
    2002-09-16 12:00:00 18,432 ----a-w C:\WINDOWS\system32\win.com
    2002-09-16 12:00:00 18,432 ----a-w C:\WINDOWS\system32\dmintf.dll
    2002-09-16 12:00:00 18,432 ----a-w C:\WINDOWS\system32\deskperf.dll
    2002-09-16 12:00:00 18,432 ----a-w C:\WINDOWS\system32\cacls.exe
    2002-09-16 12:00:00 18,176 ----a-w C:\WINDOWS\system32\vga64k.dll
    2002-09-16 12:00:00 177,856 ----a-w C:\WINDOWS\system32\typelib.dll
    2002-09-16 12:00:00 176,640 ----a-w C:\WINDOWS\system32\ftsrch.dll
    2002-09-16 12:00:00 176,157 ----a-w C:\WINDOWS\system32\dgrpsetu.dll
    2002-09-16 12:00:00 171,008 ----a-w C:\WINDOWS\system32\netmsg.dll
    2002-09-16 12:00:00 17,920 ----a-w C:\WINDOWS\system32\ureg.dll
    2002-09-16 12:00:00 17,920 ----a-w C:\WINDOWS\system32\oleaccrc.dll
    2002-09-16 12:00:00 17,920 ----a-w C:\WINDOWS\system32\iaspolcy.dll
    2002-09-16 12:00:00 17,792 ----a-w C:\WINDOWS\system32\drivers\ptilink.sys
    2002-09-16 12:00:00 17,408 ----a-w C:\WINDOWS\system32\tsshutdn.exe
    2002-09-16 12:00:00 17,408 ----a-w C:\WINDOWS\system32\mcicda.dll
    2002-09-16 12:00:00 17,408 ----a-w C:\WINDOWS\system32\esentprf.dll
    2002-09-16 12:00:00 17,408 ----a-w C:\WINDOWS\system32\compact.exe
    2002-09-16 12:00:00 169,984 ----a-w C:\WINDOWS\system32\sccbase.dll
    2002-09-16 12:00:00 169,984 ----a-w C:\WINDOWS\system32\iprtrmgr.dll
    2002-09-16 12:00:00 169,520 ----a-w C:\WINDOWS\system32\ole2disp.dll
    2002-09-16 12:00:00 164,864 ----a-w C:\WINDOWS\system32\ciadmin.dll
    2002-09-16 12:00:00 163,840 ----a-w C:\WINDOWS\system32\mindex.dll
    2002-09-16 12:00:00 163,328 ----a-w C:\WINDOWS\system32\oleacc.dll
    2002-09-16 12:00:00 16,896 ----a-w C:\WINDOWS\system32\vss_ps.dll
    2002-09-16 12:00:00 16,896 ----a-w C:\WINDOWS\system32\tftp.exe
    2002-09-16 12:00:00 16,896 ----a-w C:\WINDOWS\system32\qappsrv.exe
    2002-09-16 12:00:00 16,896 ----a-w C:\WINDOWS\system32\perfnet.dll
    2002-09-16 12:00:00 16,896 ----a-w C:\WINDOWS\system32\deskmon.dll
    2002-09-16 12:00:00 16,896 ----a-w C:\WINDOWS\system32\deskadp.dll
    2002-09-16 12:00:00 16,512 ----a-w C:\WINDOWS\system32\drivers\raspti.sys
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\tskill.exe
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\runas.exe
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\prflbmsg.dll
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\msidntld.dll
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\icfgnt5.dll
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\fmifs.dll
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\expand.exe
    2002-09-16 12:00:00 16,384 ----a-w C:\WINDOWS\system32\avmeter.dll
    2002-09-16 12:00:00 157,696 ----a-w C:\WINDOWS\system32\paqsp.dll
    2002-09-16 12:00:00 154,112 ----a-w C:\WINDOWS\system32\ipmontr.dll
    2002-09-16 12:00:00 153,008 ----a-w C:\WINDOWS\system32\ole2nls.dll
    2002-09-16 12:00:00 152,064 ----a-w C:\WINDOWS\system32\datime.dll
    2002-09-16 12:00:00 15,872 ----a-w C:\WINDOWS\system32\sysinv.dll
    2002-09-16 12:00:00 15,872 ----a-w C:\WINDOWS\system32\rwinsta.exe
    2002-09-16 12:00:00 15,872 ----a-w C:\WINDOWS\system32\more.com
    2002-09-16 12:00:00 15,872 ----a-w C:\WINDOWS\system32\comp.exe
    2002-09-16 12:00:00 15,872 ----a-w C:\WINDOWS\system32\cdmodem.dll
    2002-09-16 12:00:00 15,360 ----a-w C:\WINDOWS\TASKMAN.EXE
    2002-09-16 12:00:00 15,360 ----a-w C:\WINDOWS\system32\tsd32.dll
    2002-09-16 12:00:00 15,360 ----a-w C:\WINDOWS\system32\tscon.exe
    2002-09-16 12:00:00 15,360 ----a-w C:\WINDOWS\system32\taskman.exe
    2002-09-16 12:00:00 15,360 ----a-w C:\WINDOWS\system32\pentnt.exe
    2002-09-16 12:00:00 15,360 ----a-w C:\WINDOWS\system32\logoff.exe
    2002-09-16 12:00:00 15,360 ----a-w C:\WINDOWS\system32\help.exe
    2002-09-16 12:00:00 149,019 ----a-w C:\WINDOWS\system32\crtdll.dll
    2002-09-16 12:00:00 147,968 ----a-w C:\WINDOWS\system32\mdwmdmsp.dll
    2002-09-16 12:00:00 147,456 ----a-w C:\WINDOWS\system32\comsnap.dll
    2002-09-16 12:00:00 145,408 ----a-w C:\WINDOWS\system32\wiavusd.dll
    2002-09-16 12:00:00 145,408 ----a-w C:\WINDOWS\system32\dskquoui.dll
    2002-09-16 12:00:00 143,872 ----a-w C:\WINDOWS\system32\capesnpn.dll
    2002-09-16 12:00:00 143,360 ----a-w C:\WINDOWS\system32\rasmontr.dll
    2002-09-16 12:00:00 141,312 ----a-w C:\WINDOWS\system32\iasrecst.dll
    2002-09-16 12:00:00 14,848 ----a-w C:\WINDOWS\system32\tsdiscon.exe
    2002-09-16 12:00:00 14,848 ----a-w C:\WINDOWS\system32\slbrccsp.dll
    2002-09-16 12:00:00 14,848 ----a-w C:\WINDOWS\system32\shadow.exe
    2002-09-16 12:00:00 14,848 ----a-w C:\WINDOWS\system32\serwvdrv.dll
    2002-09-16 12:00:00 14,848 ----a-w C:\WINDOWS\system32\hnetmon.dll
    2002-09-16 12:00:00 14,848 ----a-w C:\WINDOWS\system32\fc.exe
    2002-09-16 12:00:00 14,766 ----a-w C:\WINDOWS\system32\kb16.com
    2002-09-16 12:00:00 14,592 ----a-w C:\WINDOWS\system32\drivers\smclib.sys
    2002-09-16 12:00:00 14,336 ----a-w C:\WINDOWS\system32\serialui.dll
    2002-09-16 12:00:00 14,336 ----a-w C:\WINDOWS\system32\ntlanui2.dll
    2002-09-16 12:00:00 14,336 ----a-w C:\WINDOWS\system32\cmpbk32.dll
    2002-09-16 12:00:00 138,752 ----a-w C:\WINDOWS\system32\swprv.dll
    2002-09-16 12:00:00 138,752 ----a-w C:\WINDOWS\system32\sndvol32.exe
    2002-09-16 12:00:00 135,680 ----a-w C:\WINDOWS\system32\fxsclntR.dll
    2002-09-16 12:00:00 132,608 ----a-w C:\WINDOWS\system32\rsvp.exe
    2002-09-16 12:00:00 130,048 ----a-w C:\WINDOWS\system32\sdpblb.dll
    2002-09-16 12:00:00 13,952 ----a-w C:\WINDOWS\system32\drivers\cbidf2k.sys
    2002-09-16 12:00:00 13,888 ----a-w C:\WINDOWS\system32\toolhelp.dll
    2002-09-16 12:00:00 13,824 ----a-w C:\WINDOWS\system32\wowfaxui.dll
    2002-09-16 12:00:00 13,824 ----a-w C:\WINDOWS\system32\sisbkup.dll
    2002-09-16 12:00:00 13,824 ----a-w C:\WINDOWS\system32\senscfg.dll
    2002-09-16 12:00:00 13,824 ----a-w C:\WINDOWS\system32\convert.exe
    2002-09-16 12:00:00 13,312 ----a-w C:\WINDOWS\system32\win87em.dll
    2002-09-16 12:00:00 13,312 ----a-w C:\WINDOWS\system32\verifier.dll
    2002-09-16 12:00:00 13,312 ----a-w C:\WINDOWS\system32\umdmxfrm.dll
    2002-09-16 12:00:00 13,312 ----a-w C:\WINDOWS\system32\msswch.dll
    2002-09-16 12:00:00 13,312 ----a-w C:\WINDOWS\system32\mrinfo.exe
    2002-09-16 12:00:00 13,312 ----a-w C:\WINDOWS\system32\irclass.dll
    2002-09-16 12:00:00 13,312 ----a-w C:\WINDOWS\system32\atkctrs.dll
    2002-09-16 12:00:00 129,536 ----a-w C:\WINDOWS\system32\acledit.dll
    2002-09-16 12:00:00 126,976 ----a-w C:\WINDOWS\system32\mshearts.exe
    2002-09-16 12:00:00 126,912 ----a-w C:\WINDOWS\system32\msvideo.dll
    2002-09-16 12:00:00 125,056 ----a-w C:\WINDOWS\system32\drivers\ftdisk.sys
    2002-09-16 12:00:00 121,856 ----a-w C:\WINDOWS\system32\exts.dll
    2002-09-16 12:00:00 12,800 ----a-w C:\WINDOWS\system32\tcmsetup.exe
    2002-09-16 12:00:00 12,800 ----a-w C:\WINDOWS\system32\replace.exe
    2002-09-16 12:00:00 12,800 ----a-w C:\WINDOWS\system32\rasser.dll
    2002-09-16 12:00:00 12,706 ----a-w C:\WINDOWS\system32\edlin.exe
    2002-09-16 12:00:00 12,562 ----a-w C:\WINDOWS\system32\append.exe
    2002-09-16 12:00:00 12,416 ----a-w C:\WINDOWS\system32\drivers\nwlnkflt.sys
    2002-09-16 12:00:00 12,288 ----a-w C:\WINDOWS\system32\perfts.dll
    2002-09-16 12:00:00 12,288 ----a-w C:\WINDOWS\system32\nmevtmsg.dll
    2002-09-16 12:00:00 12,288 ----a-w C:\WINDOWS\system32\mmdrv.dll
    2002-09-16 12:00:00 12,288 ----a-w C:\WINDOWS\system32\bootvid.dll
    2002-09-16 12:00:00 12,160 ----a-w C:\WINDOWS\system32\drivers\fsvga.sys
    2002-09-16 12:00:00 12,032 ----a-w C:\WINDOWS\system32\drivers\ws2ifsl.sys
    2002-09-16 12:00:00 12,032 ----a-w C:\WINDOWS\system32\drivers\riodrv.sys
    2002-09-16 12:00:00 12,032 ----a-w C:\WINDOWS\system32\drivers\rio8drv.sys
    2002-09-16 12:00:00 12,032 ----a-w C:\WINDOWS\system32\drivers\nikedrv.sys
    2002-09-16 12:00:00 119,808 ----a-w C:\WINDOWS\system32\winmine.exe
    2002-09-16 12:00:00 119,808 ----a-w C:\WINDOWS\system32\mmutilse.dll
    2002-09-16 12:00:00 118,784 ----a-w C:\WINDOWS\system32\scardssp.dll
    2002-09-16 12:00:00 118,784 ----a-w C:\WINDOWS\system32\dmdskres.dll
    2002-09-16 12:00:00 114,688 ----a-w C:\WINDOWS\system32\calc.exe
    2002-09-16 12:00:00 114,176 ----a-w C:\WINDOWS\system32\inetcplc.dll
    2002-09-16 12:00:00 112,128 ----a-w C:\WINDOWS\system32\mapistub.dll
    2002-09-16 12:00:00 111,616 ----a-w C:\WINDOWS\system32\fxscfgwz.dll
    2002-09-16 12:00:00 11,904 ----a-w C:\WINDOWS\system32\drivers\acpiec.sys
    2002-09-16 12:00:00 11,776 ----a-w C:\WINDOWS\system32\wshisn.dll
    2002-09-16 12:00:00 11,776 ----a-w C:\WINDOWS\system32\winmsd.exe
    2002-09-16 12:00:00 11,776 ----a-w C:\WINDOWS\system32\rasdial.exe
    2002-09-16 12:00:00 11,776 ----a-w C:\WINDOWS\system32\rasctrs.dll
    2002-09-16 12:00:00 11,776 ----a-w C:\WINDOWS\system32\rasautou.exe
    2002-09-16 12:00:00 11,776 ----a-w C:\WINDOWS\system32\drivers\cpqdap01.sys
    2002-09-16 12:00:00 11,776 ----a-w C:\WINDOWS\system32\chkdsk.exe
    2002-09-16 12:00:00 11,717 ----a-w C:\WINDOWS\system32\setver.exe
    2002-09-16 12:00:00 11,264 ----a-w C:\WINDOWS\system32\tree.com
    2002-09-16 12:00:00 11,264 ----a-w C:\WINDOWS\system32\fxssend.exe
    2002-09-16 12:00:00 11,264 ----a-w C:\WINDOWS\system32\clb.dll
    2002-09-16 12:00:00 11,264 ----a-w C:\WINDOWS\system32\chkntfs.exe
    2002-09-16 12:00:00 11,264 ----a-w C:\WINDOWS\system32\attrib.exe
    2002-09-16 12:00:00 11,264 ----a-w C:\WINDOWS\system32\atrace.dll
    2002-09-16 12:00:00 109,568 ----a-w C:\WINDOWS\system32\cic.dll
    2002-09-16 12:00:00 109,504 ----a-w C:\WINDOWS\system32\avifile.dll
    2002-09-16 12:00:00 108,496 ----a-w C:\WINDOWS\system32\netapi.dll
    2002-09-16 12:00:00 107,520 ----a-w C:\WINDOWS\system32\rend.dll
    2002-09-16 12:00:00 103,424 ----a-w C:\WINDOWS\system32\EqnClass.Dll
    2002-09-16 12:00:00 102,912 ----a-w C:\WINDOWS\system32\msaatext.dll
    2002-09-16 12:00:00 102,912 ----a-w C:\WINDOWS\system32\apcups.dll
    2002-09-16 12:00:00 102,457 ----a-w C:\WINDOWS\system32\usrv42a.dll
    2002-09-16 12:00:00 101,888 ----a-w C:\WINDOWS\system32\gpkcsp.dll
    2002-09-16 12:00:00 101,376 ----a-w C:\WINDOWS\system32\verifier.exe
    2002-09-16 12:00:00 10,752 ----a-w C:\WINDOWS\system32\pschdprf.dll
    2002-09-16 12:00:00 10,752 ----a-w C:\WINDOWS\system32\doskey.exe
    2002-09-16 12:00:00 10,496 ----a-w C:\WINDOWS\system32\mcdsrv32.dll
    2002-09-16 12:00:00 10,496 ----a-w C:\WINDOWS\system32\drivers\dxapi.sys
    2002-09-16 12:00:00 10,368 ----a-w C:\WINDOWS\system32\wowexec.exe
    2002-09-16 12:00:00 10,240 ----a-w C:\WINDOWS\system32\panmap.dll
    2002-09-16 12:00:00 10,240 ----a-w C:\WINDOWS\system32\mcd32.dll
    2002-09-16 12:00:00 10,112 ----a-w C:\WINDOWS\system32\modex.dll
    2002-09-16 12:00:00 1,677,824 ----a-w C:\WINDOWS\system32\chsbrkr.dll
    2002-09-16 12:00:00 1,677,312 ----a-w C:\WINDOWS\system32\wmvcore2.dll
    2002-09-16 12:00:00 1,501,696 ----a-w C:\WINDOWS\system32\diskcopy.dll
    2002-09-16 12:00:00 1,355,776 ------w C:\WINDOWS\system32\msvbvm50.dll
    2002-09-16 12:00:00 1,161 ----a-w C:\WINDOWS\system32\usrlogon.cmd
    2002-09-16 12:00:00 1,146 ----a-w C:\WINDOWS\system32\loadfix.com
    2002-09-16 12:00:00 1,114,896 ----a-w C:\WINDOWS\system32\esent97.dll
    2002-09-11 09:20:16 11,510 ------w C:\WINDOWS\system32\drivers\VMCUSB.sys
    2002-09-09 12:13:00 150,528 ----a-w C:\WINDOWS\system32\ptpusd.dll
    2002-08-30 20:59:54 380,928 ----a-w C:\WINDOWS\SynCor.exe
    2002-08-08 14:51:32 38,951 ------w C:\WINDOWS\system32\drivers\NETMDUSB.sys
    2002-07-24 22:06:44 45,056 ----a-w C:\WINDOWS\system32\SynthCore11Resources.dll
    2002-07-11 23:43:56 31,744 ----a-w C:\WINDOWS\system32\hlp95en.dll
    2002-06-26 09:40:40 76,288 ----a-w C:\WINDOWS\system32\Pubole32.dll
    2002-06-26 04:22:04 5,632 ----a-w C:\WINDOWS\system32\mfcuia32.dll
    2002-06-26 04:22:04 133,904 ----a-w C:\WINDOWS\system32\mfcans32.dll
    2002-06-20 03:19:12 91,136 ----a-r C:\WINDOWS\system32\msls2.dll
    2002-06-07 03:02:02 716,288 ----a-r C:\WINDOWS\system32\Ltwvc11n.dll
    2002-06-07 03:02:02 392,192 ----a-r C:\WINDOWS\system32\ltkrn11n.dll
    2002-06-07 03:02:02 212,480 ----a-r C:\WINDOWS\system32\PCDLIB32.DLL
    2002-06-07 03:02:02 127,488 ----a-r C:\WINDOWS\system32\ltimg11n.dll
    2002-06-07 03:02:00 81,408 ----a-r C:\WINDOWS\system32\lffax11n.dll
    2002-06-07 03:02:00 59,392 ----a-r C:\WINDOWS\system32\lfwmf11n.dll
    2002-06-07 03:02:00 56,320 ----a-r C:\WINDOWS\system32\lfpsd11n.dll
    2002-06-07 03:02:00 41,472 ----a-r C:\WINDOWS\system32\lfgif11n.dll
    2002-06-07 03:02:00 36,864 ----a-r C:\WINDOWS\system32\lfbmp11n.dll
    2002-06-07 03:02:00 33,280 ----a-r C:\WINDOWS\system32\lfpcx11n.dll
    2002-06-07 03:02:00 31,232 ----a-r C:\WINDOWS\system32\lfeps11n.dll
    2002-06-07 03:02:00 285,184 ----a-r C:\WINDOWS\system32\LFCMP11n.DLL
    2002-06-07 03:02:00 27,648 ----a-r C:\WINDOWS\system32\lftga11n.dll
    2002-06-07 03:02:00 262,656 ----a-r C:\WINDOWS\system32\LTDIS11n.dll
    2002-06-07 03:02:00 26,112 ----a-r C:\WINDOWS\system32\lfpcd11n.dll
    2002-06-07 03:02:00 172,032 ----a-r C:\WINDOWS\system32\Lfpng11n.dll
    2002-06-07 03:02:00 152,064 ----a-r C:\WINDOWS\system32\lftif11n.dll
    2002-06-07 03:02:00 118,784 ----a-r C:\WINDOWS\system32\ltfil11n.DLL
    2002-05-30 08:56:08 37,888 ----a-w C:\WINDOWS\system32\ochlp30e.dll
    2002-04-17 23:05:32 45,056 ----a-w C:\WINDOWS\system32\CleanUp.exe
    2002-04-01 12:15:00 4,816 ----a-w C:\WINDOWS\system32\drivers\aeaudio.sys
    2002-02-04 01:43:00 82,432 ----a-w C:\WINDOWS\system32\msxml4r.dll
    2002-01-05 03:48:16 974,848 ----a-w C:\WINDOWS\system32\mfc70.dll
    2002-01-05 03:36:38 964,608 ----a-w C:\WINDOWS\system32\mfc70u.dll
    2002-01-05 02:40:20 487,424 ----a-w C:\WINDOWS\system32\msvcp70.dll
    2002-01-05 02:37:28 344,064 ----a-w C:\WINDOWS\system32\msvcr70.dll
    2001-12-17 04:13:52 54,784 ----a-r C:\WINDOWS\system32\msvci70.dll
    2001-10-24 15:00:40 524,288 ----a-w C:\WINDOWS\system32\TDI-SonyOMG.dll
    2001-10-16 09:23:10 163,840 ----a-w C:\WINDOWS\system32\PhotoImpression Screen Saver.scr
    2001-10-05 22:57:46 3,328 ----a-w C:\WINDOWS\system32\drivers\pciide.sys
    2001-10-05 22:46:26 35,840 ----a-w C:\WINDOWS\system32\drivers\isapnp.sys
    2001-10-05 14:59:32 12,160 ----a-w C:\WINDOWS\system32\drivers\mouhid.sys
    2001-10-05 14:31:36 5,632 ----a-w C:\WINDOWS\system32\ptpusb.dll
    2001-10-04 23:50:22 991,232 ----a-w C:\WINDOWS\system32\virtear.dll
    2001-09-19 21:47:12 720,896 ----a-w C:\WINDOWS\system32\Audio3d.dll
    2001-09-19 21:32:26 720,896 ----a-w C:\WINDOWS\system32\a3d.dll
    2001-09-13 01:15:28 90,112 ------w C:\WINDOWS\snymsico.dll
    2001-09-12 01:20:50 1,285,632 ----a-w C:\WINDOWS\system32\SMMedia.dll
    2001-09-11 23:20:56 30,208 ----a-w C:\WINDOWS\system32\wdmioctl.dll
    2001-09-05 20:00:58 1,700,352 ----a-w C:\WINDOWS\system32\gdiplus.dll
    2001-09-03 01:04:00 182 ----a-w C:\WINDOWS\system32\EBPPORT4.DAT
    2001-08-31 14:07:30 27,255 ------w C:\WINDOWS\system32\drivers\NWWMUSB.sys
    2001-08-23 12:00:00 467,968 ----a-w C:\WINDOWS\system32\diactfrm.dll
    2001-08-23 12:00:00 223,232 ----a-w C:\WINDOWS\system32\gcdef.dll
    2001-08-18 05:36:18 8,704 ----a-w C:\WINDOWS\system32\kbdjpn.dll
    2001-08-18 05:36:18 8,192 ----a-w C:\WINDOWS\system32\kbdkor.dll
    2001-08-18 05:00:52 54,272 ----a-w C:\WINDOWS\system32\drivers\swmidi.sys
    2001-08-17 21:55:56 6,144 ----a-w C:\WINDOWS\system32\kbd106.dll
    2001-08-17 21:55:56 6,144 ----a-w C:\WINDOWS\system32\kbd101c.dll
    2001-08-17 21:55:56 6,144 ----a-w C:\WINDOWS\system32\kbd101b.dll
    2001-08-17 21:55:56 5,632 ----a-w C:\WINDOWS\system32\kbd103.dll
    2001-08-17 21:02:20 9,600 ----a-w C:\WINDOWS\system32\drivers\hidusb.sys
    2001-08-17 19:59:44 3,072 ----a-w C:\WINDOWS\system32\drivers\audstub.sys
    2001-08-16 05:53:31 4,643 ----a-w C:\WINDOWS\system32\oembios.dat
    2001-08-16 05:53:31 13,107,200 ----a-w C:\WINDOWS\system32\oembios.bin
    2001-07-09 08:50:42 155,648 ----a-w C:\WINDOWS\system32\NeroCheck.exe
    2001-05-24 11:59:30 162,304 ----a-w C:\UNWISE.EXE
    2001-05-09 15:47:10 466,944 ----a-w C:\WINDOWS\system32\wmv8dmoe.dll
    2001-03-02 19:52:42 8,704 ----a-w C:\WINDOWS\system32\npwmsdrm.dll
    2001-03-02 19:52:40 15,360 ----a-w C:\WINDOWS\system32\asfsipc.dll
    2000-09-27 15:15:06 532,480 ----a-w C:\WINDOWS\system32\imagx5.dll
    2000-09-21 16:02:28 507,904 ----a-w C:\WINDOWS\system32\imagr5.dll
    2000-09-21 11:53:00 275,312 ----a-w C:\WINDOWS\system32\ImagXpr5.dll
    2000-09-21 06:47:10 35,328 ----a-w C:\WINDOWS\system32\picn20.dll
    2000-06-26 09:45:30 106,496 ----a-w C:\WINDOWS\system32\TwnLib20.dll
    2000-06-06 00:01:00 34,304 ----a-w C:\WINDOWS\system32\EBPCHP.DLL
    1999-06-25 09:55:30 149,504 ----a-w C:\WINDOWS\UNWISE.EXE
    1999-05-26 07:46:50 212,480 ----a-w C:\WINDOWS\pcdlib32.dll
    1999-01-27 12:39:06 65,024 ----a-w C:\WINDOWS\system32\indounin.dll
    1998-11-20 12:38:58 151,552 ----a-w C:\WINDOWS\system32\Npindeo.dll
    1998-11-18 14:33:16 144,384 ----a-w C:\WINDOWS\system32\Iacenc.dll
    1998-10-29 14:45:06 306,688 ----a-w C:\WINDOWS\IsUninst.exe
    1998-09-02 08:28:48 63,488 ----a-w C:\WINDOWS\system32\unam4ie.exe
    1998-09-02 08:28:18 38,160 ----a-w C:\WINDOWS\system32\LMRTREND.dll
    1998-09-02 08:02:02 194,320 ----a-w C:\WINDOWS\system32\qcut.dll
    1998-08-27 04:51:44 182,032 ----a-w C:\WINDOWS\system32\dxtmsft3.dll
    1998-08-17 09:21:56 10,240 ----a-w C:\WINDOWS\system32\vidx16.dll
    1998-04-24 00:00:00 252,176 ----a-w C:\WINDOWS\system32\Msrd2x35.dll
    1998-01-23 11:20:12 302,592 ----a-w C:\WINDOWS\IsUn040b.exe
    1997-10-29 18:48:58 73,216 ----a-w C:\WINDOWS\system32\Odbctl32.dll
    1997-09-29 23:00:00 93,968 ----a-w C:\WINDOWS\system32\GAPI32.DLL
    1997-09-29 23:00:00 92,768 ----a-w C:\WINDOWS\system32\CONTAB32.DLL
    1997-09-29 23:00:00 892,688 ----a-w C:\WINDOWS\system32\mapi32x.dll
    1997-09-29 23:00:00 892,688 ----a-w C:\WINDOWS\system32\Mapi32_moz_bak.dll
    1997-09-29 23:00:00 85,264 ----a-w C:\WINDOWS\system32\KEYEX32.EXE
    1997-09-29 23:00:00 7,904 ----a-w C:\WINDOWS\system32\ML3XEC16.EXE
    1997-09-29 23:00:00 7,680 ----a-w C:\WINDOWS\system32\CONVDSN.EXE
    1997-09-29 23:00:00 7,440 ----a-w C:\WINDOWS\system32\APPXEC32.DLL
    1997-09-29 23:00:00 7,168 ----a-w C:\WINDOWS\system32\CMC.DLL
    1997-09-29 23:00:00 62,976 ----a-w C:\WINDOWS\system32\REFEDIT.DLL
    1997-09-29 23:00:00 590,608 ----a-w C:\WINDOWS\system32\MSPST32.DLL
    1997-09-29 23:00:00 588,048 ----a-w C:\WINDOWS\system32\EMSUIX32.DLL
    1997-09-29 23:00:00 57,342 ----a-w C:\WINDOWS\system32\COMMTB32.DLL
    1997-09-29 23:00:00 546,576 ----a-w C:\WINDOWS\system32\MSFS32.DLL
    1997-09-29 23:00:00 518,720 ----a-w C:\WINDOWS\system32\MAPI.DLL
    1997-09-29 23:00:00 424,400 ----a-w C:\WINDOWS\system32\OUTLCOMM.DLL
    1997-09-29 23:00:00 403,728 ----a-w C:\WINDOWS\system32\ETEXCH32.DLL
    1997-09-29 23:00:00 38,160 ----a-w C:\WINDOWS\system32\MAPISRVR.EXE
    1997-09-29 23:00:00 32,256 ----a-w C:\WINDOWS\system32\SELFREG.DLL
    1997-09-29 23:00:00 31,232 ----a-w C:\WINDOWS\system32\XLREC.DLL
    1997-09-29 23:00:00 290,816 ----a-w C:\WINDOWS\system32\MSXBSE35.DLL
    1997-09-29 23:00:00 286,480 ----a-w C:\WINDOWS\system32\OLEMSG32.DLL
    1997-09-29 23:00:00 285,968 ----a-w C:\WINDOWS\system32\MMFMIG32.DLL
    1997-09-29 23:00:00 28,432 ----a-w C:\WINDOWS\system32\MAPISP32.EXE
    1997-09-29 23:00:00 27,408 ----a-w C:\WINDOWS\system32\FM20FIN.DLL
    1997-09-29 23:00:00 27,136 ----a-w C:\WINDOWS\system32\PUBDLG.DLL
    1997-09-29 23:00:00 254,976 ----a-w C:\WINDOWS\system32\MSEXCL35.DLL
    1997-09-29 23:00:00 25,600 ----a-w C:\WINDOWS\system32\RECNCL.DLL
    1997-09-29 23:00:00 24,336 ----a-w C:\WINDOWS\system32\MSJTER35.DLL
    1997-09-29 23:00:00 232,576 ----a-w C:\WINDOWS\system32\OLEMSG.DLL
    1997-09-29 23:00:00 22,016 ----a-w C:\WINDOWS\system32\ODBCSTF.DLL
    1997-09-29 23:00:00 22,016 ----a-w C:\WINDOWS\system32\DOCOBJ.DLL
    1997-09-29 23:00:00 20,992 ----a-w C:\WINDOWS\system32\INETAB32.DLL
    1997-09-29 23:00:00 20,080 ----a-w C:\WINDOWS\system32\WINSSPI.DLL
    1997-09-29 23:00:00 2,182 ----a-w C:\WINDOWS\system32\OLEMSG32.REG
    1997-09-29 23:00:00 166,912 ----a-w C:\WINDOWS\system32\MSTEXT35.DLL
    1997-09-29 23:00:00 15,872 ----a-w C:\WINDOWS\system32\SCP32.DLL
    1997-09-29 23:00:00 14,336 ----a-w C:\WINDOWS\system32\MSIMRT.DLL
    1997-09-29 23:00:00 139,264 ----a-w C:\WINDOWS\system32\MINET32.DLL
    1997-09-29 23:00:00 139,024 ----a-w C:\WINDOWS\system32\CNFNOT32.EXE
    1997-09-29 23:00:00 126,736 ----a-w C:\WINDOWS\system32\MSJINT35.DLL
    1997-09-29 23:00:00 120,320 ----a-w C:\WINDOWS\system32\MSIMUSIC.DLL
    1997-09-29 23:00:00 12,288 ----a-w C:\WINDOWS\system32\PICSTORE.DLL
    1997-09-29 23:00:00 12,288 ----a-w C:\WINDOWS\system32\HLINKPRX.DLL
    1997-09-29 23:00:00 11,776 ----a-w C:\WINDOWS\system32\MSOTHUNK.DLL
    1997-09-29 23:00:00 1,215,760 ----a-w C:\WINDOWS\system32\WMSUI32.DLL
    1997-09-29 23:00:00 1,123,600 ----a-w C:\WINDOWS\system32\FM20.DLL
    1997-09-29 23:00:00 1,037,312 ----a-w C:\WINDOWS\system32\Msjet35.dll
    1997-06-23 10:06:50 407,312 ----a-w C:\WINDOWS\system32\Msrepl35.dll
    1997-06-13 06:56:08 56,832 ----a-w C:\WINDOWS\system32\Iyvu9_32.dll
    1997-04-18 10:48:20 296,448 ----a-w C:\WINDOWS\unin040b.exe
    1997-01-24 00:00:00 78,608 ----a-w C:\WINDOWS\system32\Vb5db.dll
    1997-01-15 23:00:00 29,696 ----a-w C:\WINDOWS\system32\VB5StKit.dll
    1997-01-15 22:00:00 71,680 ----a-w C:\WINDOWS\ST5UNST.EXE
    1996-11-08 01:48:12 368,912 ----a-w C:\WINDOWS\system32\vbar332.dll
    1996-01-09 09:38:54 283,648 ----a-w C:\WINDOWS\uninst.exe
    1995-11-16 17:39:50 11,776 ------w C:\WINDOWS\system32\AWDENC32.DLL
    1995-10-09 15:58:32 10,240 ------w C:\WINDOWS\system32\AWVIEW32.DLL
    1995-07-11 08:50:00 6,144 ------w C:\WINDOWS\system32\AWDCXC32.DLL
    1995-07-11 08:50:00 26,624 ------w C:\WINDOWS\system32\AWRESX32.DLL
    1995-07-11 08:50:00 24,576 ------w C:\WINDOWS\system32\AWCODC32.DLL
    1995-04-02 22:00:00 12,288 ----a-r C:\WINDOWS\MCIOLE.DLL
    1995-04-02 22:00:00 117,536 ----a-r C:\WINDOWS\MPLAYER.EXE
    1995-04-02 22:00:00 1,116 ----a-r C:\WINDOWS\MPLAYER.REG


    (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))


    *Note* empty entries & legit default entries are not shown

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
    {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}=C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx [16.04.2001 17:39]
    {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll [09.11.2006 15:21]
    {9030D464-4C02-4ABF-8ECC-5164760863C6}=C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [07.04.2006 00:02]
    {9394EDE7-C8B5-483E-8773-474BF36AF6E4}=C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll [13.08.2004 18:42]
    {AA58ED58-01DD-4d91-8333-CF10577473F7}=c:\program files\google\googletoolbar4.dll [20.01.2007 00:55]
    {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}=C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll [17.01.2006 17:04]
    {DB87CDE1-EF9C-44EB-A42F-6D0B3C72C516}=C:\Program Files\Elisa\Avustaja\IEFixItNowPlugin.dll [20.02.2007 18:39]
    {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}=C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [10.02.2004 15:08]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Wizard"="" []
    "HP Component Manager"="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" [12.01.2005 14:54]
    "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [16.02.2005 23:11]
    "F-Secure Manager"="C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.exe" [26.10.2005 03:51]
    "F-Secure TNB"="C:\Program Files\Elisa Tietoturvapalvelu\TNB\TNBUtil.exe" [18.07.2005 16:51]
    "F-Secure Startup Wizard"="C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\FSSW.exe" [21.09.2005 16:56]
    "News Service"="C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe" [31.05.2005 14:45]
    "LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [18.01.2005 18:47]
    "LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [18.01.2005 18:37]
    "SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe" [09.11.2006 15:07]
    "SsAAD.exe"="C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe" [24.01.2005 20:58]
    "ACU"="C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe" [21.07.2005 19:03]
    "Elisa Avustaja"="C:\Program Files\Elisa\Avustaja\Elisa.exe" [20.02.2007 18:37]

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe" [13.02.2007 13:42]
    "LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [18.01.2005 18:07]
    "msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [19.01.2007 12:55]
    "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe" []
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [15.09.2004 01:12]
    "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [01.02.2007 17:19]


    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E]
    AutoRun\command- E:\LaunchU3.exe -a

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{79e8e050-da2d-11db-be20-0004e2f62296}]
    AutoRun\command- E:\LaunchU3.exe -a


    Contents of the 'Scheduled Tasks' folder
    2007-05-18 11:43:00 C:\WINDOWS\tasks\HP DArC Task #Hewlett-Packard#hp psc 1300 series#1069159125.job
    2007-05-28 14:08:51 C:\WINDOWS\tasks\Scheduled scanning task.job


     
    Last edited: May 28, 2007
  4. Auttaja

    Auttaja Guest

    moi, koneellasi on rootkit infektio

    Lataa RustBFix by ejvindh jommastakummasta linkistä ja tallenna se työpöydällesi:
    rustbfix.exe
    rustbfix.exe

    Tuplaklikkaa tiedostoa rustbfix.exe. Jos löytyy Rustock.b-infektio, sinua pyydetään pian käynnistämään kone uudelleen. Uudelleenkäynnistyminen saattaa kestää hetken ja joudut ehkä käynnistämään koneen vielä toisenkin kerran. Kaikki tämä tapahtuu automaattisesti. Uudelleenkäynnistyksen jälkeen kaksi lokitiedostoa avautuu (%root%\avenger.txt & %root%\rustbfix\pelog.txt).

    Kopioi ja liitä nämä kaksi lokitiedostoa seuraavaan vastaukseesi uuden HijackThis lokin kera.
     
    Last edited by a moderator: May 28, 2007
  5. kingih

    kingih Member

    Joined:
    Apr 14, 2007
    Messages:
    54
    Likes Received:
    0
    Trophy Points:
    16
    ************************* Rustock.b-fix v. 1.01 -- By ejvindh *************************
    ma 28.05.2007 17:06:12,04

    No Rustock.b-rootkits found

    ******************************* End of Logfile ********************************

    Ei tainnut olla?
     
  6. Auttaja

    Auttaja Guest

    Jees combo tais puhistaa, ainakin sen mitä pysty

    laita uusi hijackthis logi
     
  7. kingih

    kingih Member

    Joined:
    Apr 14, 2007
    Messages:
    54
    Likes Received:
    0
    Trophy Points:
    16
    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 19:12:30, on 28.5.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\acs.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe
    C:\Program Files\Elisa\Avustaja\Elisa.exe
    C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\WINDOWS\system32\LVComsX.exe
    C:\PROGRA~1\ELISAT~1\backweb\4119343\Program\SERVIC~1.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\FSGK32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\program\fsbwsys.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fssm32.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMB32.EXE
    C:\WINDOWS\system32\slserv.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\Program\fspex.exe
    C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
    C:\Program Files\Microsoft Office\Office\OSA.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FCH32.EXE
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FAMEH32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsqh.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsrw.exe
    C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsav32.exe
    C:\PROGRA~1\ELISAT~1\ANTI-S~1\fsaw.exe
    C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\fsguidll.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\wxp\Työpöytä\HiJackThis_v2.0.0.0.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://elisa.net/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://elisa.net/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.fi;;*.*.fi;*.*.*.fi;<local>
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll
    O2 - BHO: Elisa Avustaja Plugin - {DB87CDE1-EF9C-44EB-A42F-6D0B3C72C516} - C:\Program Files\Elisa\Avustaja\IEFixItNowPlugin.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fi\msntb.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE" /splash
    O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Elisa Tietoturvapalvelu\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
    O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\FSSW.EXE" /reboot
    O4 - HKLM\..\Run: [News Service] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe"
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [ACU] C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe -nogui
    O4 - HKLM\..\Run: [Elisa Avustaja] "C:\Program Files\Elisa\Avustaja\Elisa.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Paikallinen palve')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Verkkopalve')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Elisa Tietoturvapalvelu.lnk = C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\Program\fspex.exe
    O4 - Global Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O4 - Global Startup: Microsoft Office -pikavalintapalkki.lnk = C:\Program Files\Microsoft Office\Office\MSOFFICE.EXE
    O4 - Global Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
    O4 - Global Startup: Officen käynnistys.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
    O4 - Global Startup: PrecisionTime.lnk = C:\Program Files\PrecisionTime\PrecisionTime.exe
    O8 - Extra context menu item: &Estä tämä kohoikkuna - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\blockpopups.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra button: IE-suojaus - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\ieshield.dll
    O9 - Extra 'Tools' menuitem: IE-suojaus... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\ieshield.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra button: Palvelut - {4A78D859-992C-4502-BC79-13300D17D402} - http://service.kolumbus.fi/ (file missing) (HKCU)
    O9 - Extra button: SMS-viesti - {51C5E69F-C366-4769-82B9-1E4A7A4BE4ED} - http://sms.kolumbus.fi/ (file missing) (HKCU)
    O9 - Extra button: Tuki - {F90A2F52-65F3-40B7-B9B2-D816FE8DA56D} - http://tuki.elisa.net/ (file missing) (HKCU)
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O14 - IERESET.INF: START_PAGE_URL=http://elisa.net/
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
    O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
    O23 - Service: Elisa Tietoturvapalvelu (BackWeb Plug-in - 4119343) - BackWeb Technologies Inc. - C:\PROGRA~1\ELISAT~1\backweb\4119343\Program\SERVIC~1.EXE
    O23 - Service: Loogisen levyn hallinnan valvontapalvelu (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
    O23 - Service: Tapahtumaloki (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
    O23 - Service: F-Secure Gatekeeper Handler Starter - Unknown owner - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe
    O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
    O23 - Service: FSBWSYS (fsbwsys) - Unknown owner - C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\program\fsbwsys.exe
    O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe
    O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: CD-levyjen kirjoittamisen IMAPI COM -palvelu (ImapiService) - Unknown owner - C:\WINDOWS\System32\imapi.exe
    O23 - Service: NetMeeting etätyöpöydän jakaminen (mnmsrvc) - Unknown owner - C:\WINDOWS\System32\mnmsrvc.exe
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing)
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Etätyöpöydän ohjeen istunnonhallinta (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
    O23 - Service: Älykortti (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: Resurssilokit ja -hälytykset (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
    O23 - Service: Aseman tilannevedos (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
    O23 - Service: WMI resurssisovitin (WmiApSrv) - Unknown owner - C:\WINDOWS\System32\wbem\wmiapsrv.exe
    O24 - Desktop Component 0: (no name) - http://www.anjalankoski.fi/~mkya/Kuvat03s/IMGP0824.JPG

    --
    End of file - 13648 bytes
     
  8. Auttaja

    Auttaja Guest

    Tallena nämä ohjeet teksitiedostoon sillä et voi lukea niitä muuten vikasietotilassa.

    Jep avaa ohjauspaneelin lisä poista sovellus ja poista precisionTime tai GMT jos on

    ==========

    Avaa hijackthis merkkaa seuraavat rivi(t) ja paina fix checked, sulje muut ohjelmat siksi aikaa.

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - Global Startup: GStartup.lnk = C:\Program Files\Common Files\GMT\GMT.exe
    O4 - Global Startup: PrecisionTime.lnk = C:\Program Files\PrecisionTime\PrecisionTime.exe


    Tässä ohje miten merkataan:
    [​IMG]


    ==========

    1. Lataa AVG Anti-Spyware 7.5 ja tallenna ohjelma työpöydällesi. Jos sinulla on jo kyseinen ohjelma siirry suoraan kohtaan 2!

    [*]Kun olet ladannut ohjelman, kaksoisklikkaa asennuohjelman pikakuvaketta työpöydälläsi, asennus alkaa.
    [*]Asennuksen jälkeen täytyy ohjelma käynnistää ja sen tunnisteet päivittää.

    2. [*]Käynnistä AVG Anti-Spyware.
    [*]Klikkaa "Update" kuvaketta päävalikossa. Sen jälkeen klikkaa "Update now" painiketta.
    [*]Sitten klikkaa "Start Update" kuvaketta jolloin päivitys alkaa.
    [*]Paina hetken kuluttua uudestaan "Start Update" , jos päivitykset eivät heti onnistu
    [*]Jos automaattipäivitys ei jostain syystä toimi, niin tunnisteet voi ladata manuaalisesti http://www.ewido.net/en/download/updates/ -linkin takaa.
    [*]Kun päivitykset on ladattu, klikkaa "Scanner" kuvaketta ikkunan ylälaidassa. Valitse sitten "Settings" välilehti.
    [*]Kun "Settings" valikko on auennut, klikkaa "Recommended actions" ja sitten valitse "Quarantine".
    [*]Sitten "Reports" valikon alta:a
    [*]Laita täppi kohtaan "Automatically generate report after every scan"
    [*]Ota täppi pois kohdasta"Only if threats were found"
    [*]Sitten klikkaa "Shield" kuvaketta ikkunan ylälaidassa
    [*]"Resident shield is", muuta tila active:sta inactive:ksi
    [*]Sulje ohjelma, ÄLÄ skannaa vielä.

    Käynnistä tietokoneesi vikasietotilaan

    C:\Program Files\Common Files\GMT\
    C:\Program Files\PrecisionTime\

    HUOM! Älä käytä muita ohjelmia AVG skannauksen aikana, tämä saattaa häiritä skannausta.
    [*]Kun vikasietotilassa, käynnistä AVG Anti-Spyware.
    [*]Klikkaa "Scanner" kuvaketta ikkunan ylälaidassa ja valitse "Scan" välilehti. Sitten klikkaa "Complete System Scan".
    [*]AVG aloittaa nyt tietokoneen skannaamisen, ole kärsivällinen sillä skannaus vie aikaa.
    Kun skannaus on valmis:
    TÄRKEÄÄ : Älä klikkaa "Save Scan Report" ennen kuin klikkaat "Apply all Actions"
    [*]Varmistu, että Set all elements to: näyttää Quarantine (1), jos ei, klikkaa linkkiä ja valitse Quarantine popup-valikosta.
    [*]Sinulta kysytään mitä tehdä jos infektioita löytyi, valitse silloin "Apply all actions"
    [​IMG]
    [*]Sitten klikkaa "Reports" kuvaketta ohjelma yläosasta.
    [*]Klikkaa "Save report as" painiketta ikkunan vasemmassa alalaidassa ja tallenna raportti työpöydälle.
    [*]Sulje ohjelma, käynnistä kone normaalisti ja lähetä AVG:n raportti viestiketjuusi.

    ==========

    Tämä jos tunnet tietokoneesi olevan hitaan puoleinen, etkä ole eheyttänyt pitkään aikaan:

    Avaa Oma tietokone
    -> Tee seuraava toimenpide kaikille Paikallisille levyille
    [​IMG]

    ==========

    Lataa CCleaner ja asenna se:
    Avaa "Options", sieltä "Language" ja valitse "Suomi (Finnish)"

    Avaa "Virheet" kohta, paina "Etsi rekisterin virheitä", paina "Korjaa valitut rekisterin virheet..". Paina "Kyllä", kun ohjelma kysyy "Haluatko varmuuskopioida muutokset rekisteriin", tallenna tiedosto esim. työpöydälle.

    Avaa "Puhdistaja", paina "Tutki" ja tämän jälkeen "Aja Ccleaner". Puhdista väliaikaistiedostot ja -kansiot ohjelmalla säännöllisesti.

    ==========

    Jos sinulla ei ole tätä java versiota (6.1): Vanha java saastuttaa helposti koneesi!

    Javan päivitys ja välimuistin tyhjennys:

    1. Klikkaa Käynnistä -> Ohjauspaneeli ja tupla-klikkaa Lisää tai poista sovellus Ohjauspaneelissa.
    2. Etsi listasta kaikki entiset Java versiosi. (J2SE Runtime Environment.... )
    Niissä pitäisi olla seuraava kuva vieressä: [​IMG]
    3. Valitse kaikki entiset Java versiosi ja valitse Poista.
    4. Asenna uusin Java päivitys seuraavasta linkistä..
    5. Käynnistä kone uudelleen asennuksen jälkeen:

    http://java.sun.com/javase/downloads/index.jsp
    tai http://www.filehippo.com/download_java_runtime/

    Rullaa alas kohteeseen Java Runtime Environment (JRE) 6u1

    Paina Download

    Ruksaa Accept, ota offline installation, tallenna vaikka työpöydälle ja asenna se.

    6. Käynnistyksen jälkeen, mene takaisin Ohjauspaneeliin ja avaa Java asetuksesi (Muita Ohjauspaneelin asetuksia -> Java kahvikuppi).

    7. General Settings -osion alla, vedä liukusäädintä (Disk Space) pienemmälle, ja klikkaa Delete Files -nappia.

    (Jotkut javapohjaiset ohjelmat saattavat tarvita enemmän levytilaa.
    Jos huomaat säädön pienentämisen jälkeen koneessa hitautta, siirrä liukusäädintä isommalle
    ).

    8. Varmista että kaikki kaksi valintaa ovat rastitettuja:

    *Applications and Applets

    *Trace and Log Files



    Ja paina OK -nappia

    9. Klikkaa OK "Temporary Files Settings" -ikkunassasi.

    10. Klikkaa OK jättääksesi Java asetusikkunasi.

    ==========

    Uusi Hijackthis logi ja onko ongelmia?
     
  9. kingih

    kingih Member

    Joined:
    Apr 14, 2007
    Messages:
    54
    Likes Received:
    0
    Trophy Points:
    16
    ---------------------------------------------------------
    AVG Anti-Spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 18:28:07 29.5.2007

    + Scan result:



    C:\System Volume Information\_restore{6BF8BB3D-F058-418F-9EDA-AF302AADD1AC}\RP635\A0121273.0XE -> Downloader.Agent.axs : Cleaned with backup (quarantined).
    C:\System Volume Information\_restore{6BF8BB3D-F058-418F-9EDA-AF302AADD1AC}\RP635\A0121313.0XE -> Downloader.Agent.axs : Cleaned with backup (quarantined).
    C:\System Volume Information\_restore{6BF8BB3D-F058-418F-9EDA-AF302AADD1AC}\RP639\A0124278.0xe -> Downloader.Agent.axs : Cleaned with backup (quarantined).
    C:\U.0xe -> Downloader.Agent.axs : Cleaned with backup (quarantined).
    C:\System Volume Information\_restore{6BF8BB3D-F058-418F-9EDA-AF302AADD1AC}\RP634\A0120129.0xe -> Downloader.Small.cul : Cleaned with backup (quarantined).
    C:\System Volume Information\_restore{6BF8BB3D-F058-418F-9EDA-AF302AADD1AC}\RP634\A0120130.0xe -> Downloader.Small.cul : Cleaned with backup (quarantined).
    C:\QooBox\Quarantine\catchme2007-05-28_163344.26.zip/lzx32.sys -> Hijacker.Costrat.ab : Cleaned with backup (quarantined).
    C:\System Volume Information\_restore{6BF8BB3D-F058-418F-9EDA-AF302AADD1AC}\RP639\A0124279.0xe -> Hijacker.Costrat.ar : Cleaned with backup (quarantined).
    C:\WINDOWS\install.0xe -> Hijacker.Costrat.ar : Cleaned with backup (quarantined).


    ::Report end

    -Olen poistellut turhia ohjelmia, mitä en ole käyttänyt tässä vanhemmassa koneessani 3vuoteen..

    Ja HJT-Logi

    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 18:36:57, on 29.5.2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\acs.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\PROGRA~1\ELISAT~1\backweb\4119343\Program\SERVIC~1.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe
    C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\program\fsbwsys.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\FSGK32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fssm32.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMB32.EXE
    C:\WINDOWS\system32\slserv.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FCH32.EXE
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Common\FAMEH32.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsqh.exe
    C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsrw.exe
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe
    C:\Program Files\Elisa\Avustaja\Elisa.exe
    C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\Program\fspex.exe
    C:\Program Files\Logitech\SetPoint\SetPoint.exe
    C:\Program Files\Microsoft Office\Office\OSA.EXE
    C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
    C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsav32.exe
    C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe
    C:\WINDOWS\system32\LVComsX.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\PROGRA~1\ELISAT~1\ANTI-S~1\fsaw.exe
    C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\fsguidll.exe
    C:\Program Files\MSN Messenger\usnsvc.exe
    C:\Documents and Settings\wxp\Työpöytä\HiJackThis_v2.0.0.0.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://elisa.net/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://elisa.net/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.fi;;*.*.fi;*.*.*.fi;<local>
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
    O2 - BHO: Elisa Avustaja Plugin - {DB87CDE1-EF9C-44EB-A42F-6D0B3C72C516} - C:\Program Files\Elisa\Avustaja\IEFixItNowPlugin.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
    O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Elisa Tietoturvapalvelu\Common\FSM32.EXE" /splash
    O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Elisa Tietoturvapalvelu\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
    O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\FSSW.EXE" /reboot
    O4 - HKLM\..\Run: [News Service] "C:\Program Files\Elisa Tietoturvapalvelu\FSGUI\ispnews.exe"
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [ACU] C:\Program Files\SMCWUSBT-G EZ Connect TM g 108 Mbps 802.11g Wireless USB 2.0 Adapter\ACU.exe -nogui
    O4 - HKLM\..\Run: [Elisa Avustaja] "C:\Program Files\Elisa\Avustaja\Elisa.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Paikallinen palve')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Verkkopalve')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Elisa Tietoturvapalvelu.lnk = C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\Program\fspex.exe
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
    O4 - Global Startup: Microsoft Office -pikavalintapalkki.lnk = C:\Program Files\Microsoft Office\Office\MSOFFICE.EXE
    O4 - Global Startup: Microsoft Office Pikahaku.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
    O4 - Global Startup: Officen käynnistys.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
    O8 - Extra context menu item: &Estä tämä kohoikkuna - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\blockpopups.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra button: IE-suojaus - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\ieshield.dll
    O9 - Extra 'Tools' menuitem: IE-suojaus... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Spyware\ieshield.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra button: Palvelut - {4A78D859-992C-4502-BC79-13300D17D402} - http://service.kolumbus.fi/ (file missing) (HKCU)
    O9 - Extra button: SMS-viesti - {51C5E69F-C366-4769-82B9-1E4A7A4BE4ED} - http://sms.kolumbus.fi/ (file missing) (HKCU)
    O9 - Extra button: Tuki - {F90A2F52-65F3-40B7-B9B2-D816FE8DA56D} - http://tuki.elisa.net/ (file missing) (HKCU)
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O14 - IERESET.INF: START_PAGE_URL=http://elisa.net/
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
    O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: Elisa Tietoturvapalvelu (BackWeb Plug-in - 4119343) - BackWeb Technologies Inc. - C:\PROGRA~1\ELISAT~1\backweb\4119343\Program\SERVIC~1.EXE
    O23 - Service: Loogisen levyn hallinnan valvontapalvelu (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
    O23 - Service: Tapahtumaloki (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
    O23 - Service: F-Secure Gatekeeper Handler Starter - Unknown owner - C:\Program Files\Elisa Tietoturvapalvelu\Anti-Virus\fsgk32st.exe
    O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
    O23 - Service: FSBWSYS (fsbwsys) - Unknown owner - C:\Program Files\Elisa Tietoturvapalvelu\backweb\4119343\program\fsbwsys.exe
    O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\FWES\Program\fsdfwd.exe
    O23 - Service: FSMA - F-Secure Corporation - C:\Program Files\Elisa Tietoturvapalvelu\Common\FSMA32.EXE
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: CD-levyjen kirjoittamisen IMAPI COM -palvelu (ImapiService) - Unknown owner - C:\WINDOWS\System32\imapi.exe
    O23 - Service: NetMeeting etätyöpöydän jakaminen (mnmsrvc) - Unknown owner - C:\WINDOWS\System32\mnmsrvc.exe
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing)
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Etätyöpöydän ohjeen istunnonhallinta (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
    O23 - Service: Älykortti (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: Resurssilokit ja -hälytykset (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
    O23 - Service: Aseman tilannevedos (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
    O23 - Service: WMI resurssisovitin (WmiApSrv) - Unknown owner - C:\WINDOWS\System32\wbem\wmiapsrv.exe
    O24 - Desktop Component 0: (no name) - http://www.anjalankoski.fi/~mkya/Kuvat03s/IMGP0824.JPG

    --
    End of file - 12567 bytes



    Ja sama hitaus vain jatkuu... :I
     
  10. Hujo

    Hujo Guest

    scannaa hjt_llä merkkaa paina Fix checked

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing)

    käynnistä > suorita kirjoita alla olevat rivit ja jokaisen rivin jälkeen paina enter

    sc stop NipSvc
    sc delete NipSvc

    poista vikasiedossa kansio

    C:\NORMAN
     
    Last edited by a moderator: May 29, 2007
  11. kingih

    kingih Member

    Joined:
    Apr 14, 2007
    Messages:
    54
    Likes Received:
    0
    Trophy Points:
    16
    Tehty, entäpä sitten?

    Hidas vieläkin.. :I
     
  12. Auttaja

    Auttaja Guest

    Jees, ei johdu haittaohjelmista joten etit googlella vaikka nopeuttamisvinkkejä

    ======

    Pysy puhtaana

    -> Tyhjennä järjestelmänpalautus Ohjeet
    Tyhjennä järjestelmänpalautuskansio ja luo uusi palautuspiste. Tämä puhdistaa palautuskansion mahdollisista haittaohjelmajäännöksistä.

    -> Käytä CCleaneria -> CCleaner
    Lataa ja asenna CCleaner. Puhdista väliaikaistiedostot ja -kansiot ohjelmalla säännöllisesti.

    -> Asenna SpywareBlaster -> SpywareBlaster
    SpywareBlaster estää haittaohjelmia asentumasta koneellesi. Ei kuluta muistia!
    Opas saatavilla suomeksi! Nimimerkki Ad-Awaren opas

    -> Asenna MVPS Hosts tiedosto -> MVPS Hosts
    Estää koneesi yhteyden haitallisiin sivustoihin.
    Opas saatavilla suomeksi! Nimimerkki Axelin opas

    -> Vaihda selaimesi Firefoxiin -> Firefox
    Firefox on nopeampi, turvallisempi ja parempi selain kuin Internet Explorer.

    -> Pidä järjestelmäsi ajantasalla. -> Windows Update
    Vieraile Windows Updatessa säännöllisesti.

    -> Pidä palomuuri ja virustorjunta ajantasalla
    Päivitä ja skannaa koneesi säännöllisesti virustorjuntaohjelmallasi.
    ja hyvä myös escan http://koti.mbnet.fi/pattaya1/escanmwav.htm

    ->Pidä ohjelmistosi ajantasalla. -> Secunia Software Inspector
    Secunia Software Inspector tutkii sinun järjestälmäsi ja ohjelmistosi puuttuvien turvallisuuspäivityksien osalta. Tavallinen tutkinta kestää normaalisti 5-40 sekuntia, kun läpikotainen (thorough system inspection) voi kestää useita minuutteja.

    ->Seuraa säännöllisesti viestintäviraston tietoja uusista haavoittuvuuksista -> CERT-FI

    Jos tulevaisuudessa tulee haittaohjelmien kanssa ongelmia, älä epäröi laittaa Hijackthis-logia tarkistettavaksi!
     
  13. kingih

    kingih Member

    Joined:
    Apr 14, 2007
    Messages:
    54
    Likes Received:
    0
    Trophy Points:
    16
    Näimpä! Tähän on hyvä lopettaa tämä viestiketju.

    -Kiitos.
     

Share This Page