سعودي دووم

زيزوومى متألق
إنضم
11 مايو 2008
المشاركات
445
مستوى التفاعل
1
النقاط
470
غير متصل
اسعد الله مسائكم بكل خير ....


انا قبل حوالي 5 ايام كتبت موضوع هنا ,,,


السااالفة اني فرمته جهاز عندي وستخدمت نفس السيدي اللي استخدمه داايم بالفرمته ...


انتهيت تفاجأت من حوالي تقريبا 900 فيروووس لما سويت الفحص بالكاسبر 7 بعد ما ركبت المفااتيح

مع اني توني مفرمت ولاحظت ان اغلب الفيروووسات هي نفس اللي بالصووورة هذي :


يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي





طبعا انا كنت شايل ملفات حطيتها بالدي والمشكلة لس ما رجعتها لسطح المكتب وموجود كل هالعدد من الفيروووسات والمشكلة مكتوووب عليها اغلبها البريد الاكتروني الاوت لوك ... وحتى تشوفون السهم شوفوا الملفات اللي السهم متوجه عليها هي اصلا ملفات صوتيه عااادي وبعضها ملفات صفحات نت محفوظة ... بالنسبة للنت ما اقدر افتحه الا من ناحية المستندات علشان ادخل على المفضلة ... لانه كان فيه اختصاار بس متغيره كلماته وحذفته ...



اما بالنسبة لتقرير الهاايجاك فهذا هو :


Logfile of HijackThis v1.99.1
Scan saved at 02:19:50 م, on 29/07/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\خالد\سطح المكتب\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe" -r (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE






اتمنى تشوووفون الحل لاني من جد تعقدت والمشكلة اني رجعت اسوي اصلاح للنظام عن طريق السيدي نفسه وما نفع ....
 

للرفع
 
التقرير سليم اخي اعتقد ان المشكلة في رسائل الاوتلوك تأكد من حذف الرسائل واعمل تحديث للكاسبر ثم سكان​
 
توقيع : السّاجد لله
كيف اخذفها وهي هي البريد الوارد اللي بالايميل
 
ان حصلت معي نفس المشكلة تقريبا مع نفس الفيروس Mabezat لكن كان التاثير على جميع الملفات التنفيذية *.exe لدرجة اني ما قدرت اشغل اي برنامج .

جرب اعمل فورمات للنظام من سي دي اخر
و قبل ان تعمل اي شئ بعد الفورمات ان شاء الله حتى تعريف القطع او الكروت او فتح اي مجلد قوم بتحميل مكافح الفيروسات مع اخر التحديثات و اعمل فحص لجهاز الكمبيوتر كامل و ان شاء الله تحتل المشكلة
 
توقيع : hossamlv
هذا فايروس الاوتو رن (( كل ماتفك مجلد تلقيه في الداخل )) وممكن الفايروس جايك من ملف او فلاش موجود عندك الحل

طبعا انا بهذلني في جهازي واجهزة اخرى كنت اعمل عليها

احذف برامج الحماية وركب الكاسبر 7 من جديد (( بنزل الكاسبر في جهازي عشانك ))

وشوف الصور

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي




يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



q1hp2a1ik6yb.jpg


















hfnmu6uy3rqz.jpg




وبعد ماتخلص فحص

حط دسك الوندوز

ابدا---- تشغيل -- sfc /scannow

عشان هالفيروس يدمج نفسة مع كل الملفات

وعشان الفيروسات اللي موجودة في الاوت لوك روح واحذف جميع الرسايل

وشوف وش يصير

 
مشكوورين


عزيزي البارون انا محمل الكاسبر 7 عليه وهو اللي مطلع هالفيروسات :::


الشيء الثاني انت تقول احذف رسايل الاوت لوك ابي اعرف كيف احذفها وين القااها
 
للرفع
 
هلاااا بك عزيزي

اذا عندك اي فلاش او هارد خارجي اشبكها بالجهاز واعمل التالي

عطل جميع برامج الحماية ,,
وحمل هذه الاداة واحفظها على سطح المكتب

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي




عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes


انتظر حتى الاداة تنتهي من فحص جهازك ,,, وبشكل تلقائي يعاد تشغيل جهازك ,,
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
انتظر حتى يظهر لك تقرير ,, انسخه والصقه بردك القادم
 
وهذا التقرير يا عزيزي مااكس :


ComboFix 08-07-22.4 - خالد 07/30/2008 14:39:15.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.1.1025.18.251 [GMT 3:00]
Running from: C:\Documents and Settings\خالد\سطح المكتب\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\autorun.inf
D:\Autorun.inf
E:\Autorun.inf
.
((((((((((((((((((((((((( Files Created from 2008-06-28 to 2008-07-30 )))))))))))))))))))))))))))))))
.
No new files created in this timespan
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-30 11:41 3,334,944 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2008-07-30 11:41 208,416 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat
2008-07-30 11:08 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-07-29 23:43 50,192 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2008-07-29 23:43 23,480 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx
2008-07-27 12:23 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-07-26 11:43 96,559 ----a-w C:\WINDOWS\system32\drivers\klin.dat
2008-07-26 11:43 87,855 ----a-w C:\WINDOWS\system32\drivers\klick.dat
2008-07-24 17:19 --------- d-----w C:\Program Files\TeamViewer
2008-07-24 17:19 --------- d-----w C:\Program Files\MSN Messenger
2008-07-24 15:27 --------- d-----w C:\Documents and Settings\خالد\Application Data\CyberScrub
2008-07-24 15:26 --------- d-----w C:\Documents and Settings\خالد\Application Data\cleaner
2008-07-24 15:24 --------- d-----w C:\Program Files\K-Lite Codec Pack
2008-07-24 15:23 --------- d-----w C:\Program Files\DIFX
2008-07-20 20:19 0 ----a-w C:\Documents and Settings\MyDocuments\readthis.doc.exe
2008-07-20 20:19 0 ----a-w C:\Documents and Settings\MyDocuments\Readme.doc .exe
2008-07-20 20:02 112,144 ----a-w C:\WINDOWS\system32\drivers\kl1.sys
2008-07-20 19:39 768,512 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe
2008-07-20 19:39 158,208 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\msconfig.exe
2008-07-18 16:31 --------- d-----w C:\Program Files\MSBuild
2008-07-18 16:31 --------- d-----w C:\Program Files\Microsoft Works
2008-07-14 16:56 --------- d-----w C:\Program Files\إدارة التشغيل العربي
2008-07-14 16:51 --------- d-----w C:\Program Files\VideoLAN
2008-07-14 16:51 --------- d-----w C:\Documents and Settings\خالد\Application Data\vlc
2008-07-14 16:41 --------- d-----w C:\Program Files\Kaspersky Lab
2008-07-14 16:40 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-07-13 15:37 --------- d-----w C:\Documents and Settings\خالد\Application Data\Media Player Classic
2008-07-13 15:33 --------- d-----w C:\Documents and Settings\خالد\Application Data\TeamViewer
2008-07-13 15:21 --------- d-----w C:\Program Files\WIDCOMM
2008-07-13 15:16 --------- d-----w C:\Program Files\Synaptics
2008-07-13 15:15 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-07-13 15:15 --------- d-----w C:\Program Files\Modem Helper
2008-07-13 15:14 --------- d-----w C:\Program Files\CONEXANT
2008-07-13 15:13 --------- d-----w C:\Program Files\SigmaTel
2008-07-13 15:13 --------- d-----w C:\Program Files\Dell
2008-07-13 15:05 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-07-13 15:04 --------- d-----w C:\Program Files\Broadcom
2008-07-13 15:01 --------- d-----w C:\Program Files\Intel
2008-07-13 13:21 --------- d-----w C:\Program Files\microsoft frontpage
.

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


((((((((((((((((((((((((((((( snapshot@Thu 07-24-2008_18.51.41.46 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-03-24 16:33:02 1,527,056 ----a-w C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
- 2008-07-24 15:50:38 16,384 ----a-w C:\WINDOWS\system32\config\systemprofile\s\index.dat
+ 2008-07-26 11:18:38 16,384 ----a-w C:\WINDOWS\system32\config\systemprofile\s\index.dat
- 2008-07-24 15:50:38 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2008-07-26 11:18:38 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2008-07-24 15:50:38 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\.IE5\index.dat
+ 2008-07-26 11:18:38 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\.IE5\index.dat
+ 2004-08-03 20:10:08 53,248 -c--a-w C:\WINDOWS\system32\dllcache\1394bus.sys
+ 2001-08-17 11:06:48 11,264 -c--a-w C:\WINDOWS\system32\dllcache\1394vdbg.sys
+ 2001-08-17 10:28:00 762,780 -c--a-w C:\WINDOWS\system32\dllcache\3cwmcru.sys
+ 2001-09-18 11:03:22 689,216 -c--a-w C:\WINDOWS\system32\dllcache\3dfxvs.dll
+ 2001-08-17 09:48:32 148,352 -c--a-w C:\WINDOWS\system32\dllcache\3dfxvsm.sys
+ 2004-08-03 20:00:04 12,288 -c--a-w C:\WINDOWS\system32\dllcache\4mmdat.sys
+ 2004-08-03 20:10:12 48,128 -c--a-w C:\WINDOWS\system32\dllcache\61883.sys
+ 2001-09-18 11:03:22 38,400 -c--a-w C:\WINDOWS\system32\dllcache\8514a.dll
+ 2001-09-18 11:03:36 98,304 -c--a-w C:\WINDOWS\system32\dllcache\a3d.dll
+ 2001-09-18 11:03:36 462,848 -c--a-w C:\WINDOWS\system32\dllcache\a3dapi.dll
+ 2001-08-17 10:52:00 23,552 -c--a-w C:\WINDOWS\system32\dllcache\abp480n5.sys
+ 2004-08-03 19:32:22 231,552 -c--a-w C:\WINDOWS\system32\dllcache\ac97ali.sys
+ 2001-08-17 09:20:04 96,256 -c--a-w C:\WINDOWS\system32\dllcache\ac97intc.sys
+ 2001-08-17 09:20:16 297,728 -c--a-w C:\WINDOWS\system32\dllcache\ac97sis.sys
+ 2004-08-03 19:32:32 84,480 -c--a-w C:\WINDOWS\system32\dllcache\ac97via.sys
+ 2001-09-18 11:03:36 61,440 -c--a-w C:\WINDOWS\system32\dllcache\acerscad.dll
+ 2004-08-03 21:37:08 187,648 -c--a-w C:\WINDOWS\system32\dllcache\acpi.sys
+ 2001-09-19 12:00:00 11,648 -c--a-w C:\WINDOWS\system32\dllcache\acpiec.sys
+ 2001-08-17 10:53:02 7,424 -c--a-w C:\WINDOWS\system32\dllcache\adicvls.sys
+ 2001-08-17 09:11:18 20,160 -c--a-w C:\WINDOWS\system32\dllcache\adm8511.sys
+ 2001-08-17 09:19:10 584,448 -c--a-w C:\WINDOWS\system32\dllcache\adm8810.sys
+ 2001-08-17 09:19:14 553,984 -c--a-w C:\WINDOWS\system32\dllcache\adm8820.sys
+ 2001-08-17 09:19:14 747,392 -c--a-w C:\WINDOWS\system32\dllcache\adm8830.sys
+ 2004-08-03 19:32:24 10,880 -c--a-w C:\WINDOWS\system32\dllcache\admjoy.sys
+ 2001-08-17 09:11:16 46,112 -c--a-w C:\WINDOWS\system32\dllcache\adptsf50.sys
+ 2001-08-17 11:07:32 101,888 -c--a-w C:\WINDOWS\system32\dllcache\adpu160m.sys
+ 2004-08-03 21:55:32 4,255 -c--a-w C:\WINDOWS\system32\dllcache\adv01nt5.dll
+ 2004-08-03 21:55:32 3,967 -c--a-w C:\WINDOWS\system32\dllcache\adv02nt5.dll
+ 2004-08-03 21:55:32 3,615 -c--a-w C:\WINDOWS\system32\dllcache\adv05nt5.dll
+ 2004-08-03 21:55:32 3,647 -c--a-w C:\WINDOWS\system32\dllcache\adv07nt5.dll
+ 2004-08-03 21:55:32 3,135 -c--a-w C:\WINDOWS\system32\dllcache\adv08nt5.dll
+ 2004-08-03 21:55:32 3,711 -c--a-w C:\WINDOWS\system32\dllcache\adv09nt5.dll
+ 2004-08-03 21:55:32 3,775 -c--a-w C:\WINDOWS\system32\dllcache\adv11nt5.dll
+ 2004-08-03 20:07:42 42,368 -c--a-w C:\WINDOWS\system32\dllcache\agp440.sys
+ 2004-08-03 20:07:44 44,928 -c--a-w C:\WINDOWS\system32\dllcache\agpcpq.sys
+ 2001-08-17 10:52:02 12,800 -c--a-w C:\WINDOWS\system32\dllcache\aha154x.sys
+ 2001-08-17 11:07:36 55,168 -c--a-w C:\WINDOWS\system32\dllcache\aic78u2.sys
+ 2001-08-17 11:07:38 56,960 -c--a-w C:\WINDOWS\system32\dllcache\aic78xx.sys
+ 2001-08-17 09:11:18 27,678 -c--a-w C:\WINDOWS\system32\dllcache\ali5261.sys
+ 2001-08-17 10:49:02 26,624 -c--a-w C:\WINDOWS\system32\dllcache\alifir.sys
+ 2001-08-17 10:51:56 5,248 -c--a-w C:\WINDOWS\system32\dllcache\aliide.sys
+ 2004-08-03 20:07:42 42,752 -c--a-w C:\WINDOWS\system32\dllcache\alim1541.sys
+ 2001-08-17 09:11:20 16,969 -c--a-w C:\WINDOWS\system32\dllcache\amb8002.sys
+ 2004-08-03 20:07:44 43,008 -c--a-w C:\WINDOWS\system32\dllcache\amdagp.sys
+ 2004-08-03 22:08:00 40,704 -c--a-w C:\WINDOWS\system32\dllcache\amdk6.sys
+ 2004-08-03 22:08:00 41,088 -c--a-w C:\WINDOWS\system32\dllcache\amdk7.sys
+ 2001-08-17 10:52:04 12,032 -c--a-w C:\WINDOWS\system32\dllcache\amsint.sys
+ 2004-08-03 19:31:20 36,224 -c--a-w C:\WINDOWS\system32\dllcache\an983.sys
+ 2001-08-17 10:47:22 6,272 -c--a-w C:\WINDOWS\system32\dllcache\apmbatt.sys
+ 2004-08-03 22:08:00 60,800 -c--a-w C:\WINDOWS\system32\dllcache\arp1394.sys
+ 2001-08-17 10:52:00 26,496 -c--a-w C:\WINDOWS\system32\dllcache\asc.sys
+ 2001-08-17 10:52:04 22,400 -c--a-w C:\WINDOWS\system32\dllcache\asc3350p.sys
+ 2001-08-17 10:51:58 14,848 -c--a-w C:\WINDOWS\system32\dllcache\asc3550.sys
+ 2001-08-17 09:12:34 97,354 -c--a-w C:\WINDOWS\system32\dllcache\aspndis3.sys
+ 2001-09-18 11:03:22 96,128 -c--a-w C:\WINDOWS\system32\dllcache\ati.dll
+ 2001-09-18 10:29:16 77,568 -c--a-w C:\WINDOWS\system32\dllcache\ati.sys
+ 2004-08-03 19:29:30 56,623 -c--a-w C:\WINDOWS\system32\dllcache\ati1btxx.sys
+ 2004-08-03 19:29:30 11,615 -c--a-w C:\WINDOWS\system32\dllcache\ati1mdxx.sys
+ 2004-08-03 19:29:30 12,047 -c--a-w C:\WINDOWS\system32\dllcache\ati1pdxx.sys
+ 2004-08-03 19:29:32 30,671 -c--a-w C:\WINDOWS\system32\dllcache\ati1raxx.sys
+ 2004-08-03 19:29:32 63,663 -c--a-w C:\WINDOWS\system32\dllcache\ati1rvxx.sys
+ 2004-08-03 19:29:32 26,367 -c--a-w C:\WINDOWS\system32\dllcache\ati1snxx.sys
+ 2004-08-03 19:29:32 21,343 -c--a-w C:\WINDOWS\system32\dllcache\ati1ttxx.sys
+ 2004-08-03 19:29:32 36,463 -c--a-w C:\WINDOWS\system32\dllcache\ati1tuxx.sys
+ 2004-08-03 19:29:32 29,455 -c--a-w C:\WINDOWS\system32\dllcache\ati1xbxx.sys
+ 2004-08-03 19:29:32 34,735 -c--a-w C:\WINDOWS\system32\dllcache\ati1xsxx.sys
+ 2004-08-03 21:55:32 229,376 -c--a-w C:\WINDOWS\system32\dllcache\ati2cqag.dll
+ 2004-08-03 21:55:32 377,984 -c--a-w C:\WINDOWS\system32\dllcache\ati2dvaa.dll
+ 2004-08-03 21:55:32 201,728 -c--a-w C:\WINDOWS\system32\dllcache\ati2dvag.dll
+ 2004-08-03 21:38:42 326,912 -c--a-w C:\WINDOWS\system32\dllcache\ati2mtaa.sys
+ 2004-08-03 21:38:44 700,928 -c--a-w C:\WINDOWS\system32\dllcache\ati2mtag.sys
+ 2004-08-03 21:55:32 870,784 -c--a-w C:\WINDOWS\system32\dllcache\ati3d1ag.dll
+ 2004-08-03 21:55:32 1,888,992 -c--a-w C:\WINDOWS\system32\dllcache\ati3duag.dll
+ 2001-08-17 09:49:04 46,464 -c--a-w C:\WINDOWS\system32\dllcache\atibt829.sys
+ 2001-09-18 11:03:22 382,592 -c--a-w C:\WINDOWS\system32\dllcache\atidrab.dll
+ 2001-09-18 11:03:22 137,216 -c--a-w C:\WINDOWS\system32\dllcache\atidrae.dll
+ 2001-09-18 11:03:22 268,160 -c--a-w C:\WINDOWS\system32\dllcache\atidvai.dll
+ 2001-09-18 11:05:38 37,376 -c--a-w C:\WINDOWS\system32\dllcache\atievxx.exe
+ 2001-09-18 10:29:22 289,664 -c--a-w C:\WINDOWS\system32\dllcache\atimpab.sys
+ 2001-09-18 10:29:22 75,136 -c--a-w C:\WINDOWS\system32\dllcache\atimpae.sys
+ 2001-09-18 10:29:24 281,600 -c--a-w C:\WINDOWS\system32\dllcache\atimtai.sys
+ 2004-08-03 19:29:28 57,856 -c--a-w C:\WINDOWS\system32\dllcache\atinbtxx.sys
+ 2004-08-03 19:29:30 13,824 -c--a-w C:\WINDOWS\system32\dllcache\atinmdxx.sys
+ 2004-08-03 19:29:30 14,336 -c--a-w C:\WINDOWS\system32\dllcache\atinpdxx.sys
+ 2004-08-03 19:29:30 52,224 -c--a-w C:\WINDOWS\system32\dllcache\atinraxx.sys
+ 2004-08-03 19:29:32 104,960 -c--a-w C:\WINDOWS\system32\dllcache\atinrvxx.sys
+ 2004-08-03 19:29:32 28,672 -c--a-w C:\WINDOWS\system32\dllcache\atinsnxx.sys
+ 2004-08-03 19:29:32 13,824 -c--a-w C:\WINDOWS\system32\dllcache\atinttxx.sys
+ 2004-08-03 19:29:32 73,216 -c--a-w C:\WINDOWS\system32\dllcache\atintuxx.sys
+ 2004-08-03 19:29:32 31,744 -c--a-w C:\WINDOWS\system32\dllcache\atinxbxx.sys
+ 2004-08-03 19:29:32 63,488 -c--a-w C:\WINDOWS\system32\dllcache\atinxsxx.sys
+ 2001-08-17 09:49:36 10,240 -c--a-w C:\WINDOWS\system32\dllcache\atipcxxx.sys
+ 2001-09-18 11:03:22 104,832 -c--a-w C:\WINDOWS\system32\dllcache\atiraged.dll
+ 2001-09-18 10:29:24 70,528 -c--a-w C:\WINDOWS\system32\dllcache\atiragem.sys
+ 2001-08-17 09:49:12 49,920 -c--a-w C:\WINDOWS\system32\dllcache\atirtcap.sys
+ 2001-08-17 09:49:18 26,880 -c--a-w C:\WINDOWS\system32\dllcache\atirtsnd.sys
+ 2001-08-17 09:49:22 17,152 -c--a-w C:\WINDOWS\system32\dllcache\atitunep.sys
+ 2001-08-17 09:49:28 17,152 -c--a-w C:\WINDOWS\system32\dllcache\atitvsnd.sys
+ 2001-08-17 09:49:38 9,472 -c--a-w C:\WINDOWS\system32\dllcache\ativmdcd.sys
+ 2004-08-03 21:55:32 32,768 -c--a-w C:\WINDOWS\system32\dllcache\ativtmxx.dll
+ 2001-08-17 09:49:44 19,456 -c--a-w C:\WINDOWS\system32\dllcache\ativttxx.sys
+ 2004-08-03 21:55:32 516,768 -c--a-w C:\WINDOWS\system32\dllcache\ativvaxx.dll
+ 2001-08-17 09:49:48 26,624 -c--a-w C:\WINDOWS\system32\dllcache\ativxbar.sys
+ 2001-08-17 09:49:34 23,552 -c--a-w C:\WINDOWS\system32\dllcache\atixbar.sys
+ 2004-08-03 21:55:32 21,183 -c--a-w C:\WINDOWS\system32\dllcache\atv01nt5.dll
+ 2004-08-03 21:55:32 11,359 -c--a-w C:\WINDOWS\system32\dllcache\atv02nt5.dll
+ 2004-08-03 21:55:32 25,471 -c--a-w C:\WINDOWS\system32\dllcache\atv04nt5.dll
+ 2004-08-03 21:55:32 14,143 -c--a-w C:\WINDOWS\system32\dllcache\atv06nt5.dll
+ 2004-08-03 21:55:32 17,279 -c--a-w C:\WINDOWS\system32\dllcache\atv10nt5.dll
+ 2001-08-17 13:59:44 3,072 -c--a-w C:\WINDOWS\system32\dllcache\audstub.sys
+ 2004-08-03 20:10:12 38,912 -c--a-w C:\WINDOWS\system32\dllcache\avc.sys
+ 2001-08-17 11:01:12 36,096 -c--a-w C:\WINDOWS\system32\dllcache\avcaudio.sys
+ 2004-08-03 20:10:00 13,696 -c--a-w C:\WINDOWS\system32\dllcache\avcstrm.sys
+ 2001-09-18 11:03:40 87,552 -c--a-w C:\WINDOWS\system32\dllcache\avmcoxp.dll
+ 2001-09-18 11:03:40 144,384 -c--a-w C:\WINDOWS\system32\dllcache\avmenum.dll
+ 2001-08-17 09:13:48 37,568 -c--a-w C:\WINDOWS\system32\dllcache\avmwan.sys
+ 2001-08-17 09:19:16 36,992 -c--a-w C:\WINDOWS\system32\dllcache\aztw2320.sys
+ 2001-08-17 09:13:56 89,952 -c--a-w C:\WINDOWS\system32\dllcache\b1cbase.sys
+ 2001-09-18 10:29:48 96,704 -c--a-w C:\WINDOWS\system32\dllcache\b57xp32.sys
+ 2001-09-18 11:03:22 342,336 -c--a-w C:\WINDOWS\system32\dllcache\banshee.dll
+ 2001-08-17 09:48:28 36,128 -c--a-w C:\WINDOWS\system32\dllcache\banshee.sys
+ 2001-09-18 13:30:34 16,256 -c--a-w C:\WINDOWS\system32\dllcache\battc.sys
+ 2001-08-17 09:11:28 66,557 -c--a-w C:\WINDOWS\system32\dllcache\bcm42u.sys
+ 2001-08-17 09:11:26 54,271 -c--a-w C:\WINDOWS\system32\dllcache\bcm42xx5.sys
+ 2001-08-17 09:11:30 26,568 -c--a-w C:\WINDOWS\system32\dllcache\bcm4e5.sys
+ 2001-08-17 10:28:00 871,388 -c--a-w C:\WINDOWS\system32\dllcache\bcmdm.sys
+ 2004-08-03 20:10:14 11,776 -c--a-w C:\WINDOWS\system32\dllcache\bdasup.sys
+ 2001-09-18 11:03:42 102,400 -c--a-w C:\WINDOWS\system32\dllcache\binlsvc.dll
+ 2001-09-18 11:03:42 19,456 -c--a-w C:\WINDOWS\system32\dllcache\brbidiif.dll
+ 2001-09-18 11:03:42 9,728 -c--a-w C:\WINDOWS\system32\dllcache\brcoinst.dll
+ 2001-09-18 11:03:42 12,800 -c--a-w C:\WINDOWS\system32\dllcache\brevif.dll
+ 2001-08-17 10:12:12 2,944 -c--a-w C:\WINDOWS\system32\dllcache\brfilt.sys
+ 2001-08-17 10:12:22 12,160 -c--a-w C:\WINDOWS\system32\dllcache\brfiltlo.sys
+ 2001-08-17 10:12:24 3,968 -c--a-w C:\WINDOWS\system32\dllcache\brfiltup.sys
+ 2001-09-18 11:03:42 15,360 -c--a-w C:\WINDOWS\system32\dllcache\brmfbidi.dll
+ 2001-09-18 11:03:42 81,408 -c--a-w C:\WINDOWS\system32\dllcache\brmfcwia.dll
+ 2001-09-18 11:03:42 29,696 -c--a-w C:\WINDOWS\system32\dllcache\brmflpt.dll
+ 2001-09-18 11:05:38 32,256 -c--a-w C:\WINDOWS\system32\dllcache\brmfrsmg.exe
+ 2001-09-18 11:03:42 41,472 -c--a-w C:\WINDOWS\system32\dllcache\brmfusb.dll
+ 2001-08-17 10:12:24 3,168 -c--a-w C:\WINDOWS\system32\dllcache\brparimg.sys
+ 2001-09-18 10:31:46 39,552 -c--a-w C:\WINDOWS\system32\dllcache\brparwdm.sys
+ 2001-09-18 11:03:42 5,120 -c--a-w C:\WINDOWS\system32\dllcache\brscnrsm.dll
+ 2001-09-18 11:03:42 9,728 -c--a-w C:\WINDOWS\system32\dllcache\brserif.dll
+ 2001-08-17 10:12:20 60,416 -c--a-w C:\WINDOWS\system32\dllcache\brserwdm.sys
+ 2001-08-17 10:12:20 11,008 -c--a-w C:\WINDOWS\system32\dllcache\brusbmdm.sys
+ 2001-08-17 10:12:22 10,368 -c--a-w C:\WINDOWS\system32\dllcache\brusbscn.sys
+ 2001-08-17 09:11:24 31,529 -c--a-w C:\WINDOWS\system32\dllcache\brzwlan.sys
+ 2004-08-03 21:55:32 20,992 -c--a-w C:\WINDOWS\system32\dllcache\bthci.dll
+ 2004-08-03 20:10:40 17,024 -c--a-w C:\WINDOWS\system32\dllcache\bthenum.sys
+ 2004-08-03 20:10:40 38,016 -c--a-w C:\WINDOWS\system32\dllcache\bthmodem.sys
+ 2004-08-03 19:58:40 100,992 -c--a-w C:\WINDOWS\system32\dllcache\bthpan.sys
+ 2004-08-03 21:40:14 273,792 -c--a-w C:\WINDOWS\system32\dllcache\bthport.sys
+ 2004-08-03 20:10:38 35,456 -c--a-w C:\WINDOWS\system32\dllcache\bthprint.sys
+ 2004-08-03 21:55:32 30,208 -c--a-w C:\WINDOWS\system32\dllcache\bthserv.dll
+ 2004-08-03 20:10:36 18,944 -c--a-w C:\WINDOWS\system32\dllcache\bthusb.sys
+ 2001-09-18 10:31:52 13,824 -c--a-w C:\WINDOWS\system32\dllcache\bulltlp3.sys
+ 2001-08-17 11:05:48 314,752 -c--a-w C:\WINDOWS\system32\dllcache\camdro21.sys
+ 2001-08-17 11:04:46 223,232 -c--a-w C:\WINDOWS\system32\dllcache\camdrv21.sys
+ 2001-08-17 11:04:48 171,264 -c--a-w C:\WINDOWS\system32\dllcache\camdrv30.sys
+ 2001-09-18 11:03:44 74,240 -c--a-w C:\WINDOWS\system32\dllcache\camexo20.dll
+ 2001-09-18 11:03:44 236,032 -c--a-w C:\WINDOWS\system32\dllcache\camext20.dll
+ 2001-09-18 11:03:44 119,296 -c--a-w C:\WINDOWS\system32\dllcache\camext30.dll
+ 2001-08-17 09:12:16 37,916 -c--a-w C:\WINDOWS\system32\dllcache\cb102.sys
+ 2001-08-17 09:12:42 39,680 -c--a-w C:\WINDOWS\system32\dllcache\cb325.sys
+ 2001-08-17 09:13:14 46,108 -c--a-w C:\WINDOWS\system32\dllcache\cben5.sys
+ 2001-09-19 12:00:00 13,952 -c--a-w C:\WINDOWS\system32\dllcache\cbidf2k.sys
+ 2001-09-18 10:32:54 714,698 -c--a-w C:\WINDOWS\system32\dllcache\cbmdmkxx.sys
+ 2004-08-03 20:10:18 17,024 -c--a-w C:\WINDOWS\system32\dllcache\ccdecode.sys
+ 2001-08-17 10:52:06 7,680 -c--a-w C:\WINDOWS\system32\dllcache\cd20xrnt.sys
+ 2001-09-19 12:00:00 18,688 -c--a-w C:\WINDOWS\system32\dllcache\cdaudio.sys
+ 2004-08-03 19:59:54 49,536 -c--a-w C:\WINDOWS\system32\dllcache\cdrom.sys
+ 2001-08-17 09:13:12 21,530 -c--a-w C:\WINDOWS\system32\dllcache\ce2n5.sys
+ 2001-09-18 10:33:02 27,164 -c--a-w C:\WINDOWS\system32\dllcache\ce3n5.sys
+ 2001-08-17 09:13:18 22,044 -c--a-w C:\WINDOWS\system32\dllcache\cem28n5.sys
+ 2001-08-17 09:13:18 22,044 -c--a-w C:\WINDOWS\system32\dllcache\cem33n5.sys
+ 2001-09-18 10:33:02 49,182 -c--a-w C:\WINDOWS\system32\dllcache\cem56n5.sys
+ 2004-08-03 21:55:32 15,423 -c--a-w C:\WINDOWS\system32\dllcache\ch7xxnt5.dll
+ 2004-08-03 20:00:14 8,192 -c--a-w C:\WINDOWS\system32\dllcache\changer.sys
+ 2001-09-18 10:33:30 980,034 -c--a-w C:\WINDOWS\system32\dllcache\cicap.sys
+ 2001-09-18 10:33:44 272,640 -c--a-w C:\WINDOWS\system32\dllcache\cinemclc.sys
+ 2001-09-19 12:00:00 262,528 -c--a-w C:\WINDOWS\system32\dllcache\cinemst2.sys
+ 2001-09-18 11:03:22 91,264 -c--a-w C:\WINDOWS\system32\dllcache\cirrus.dll
+ 2001-08-17 10:57:16 45,696 -c--a-w C:\WINDOWS\system32\dllcache\cirrus.sys
+ 2001-09-18 11:03:22 111,232 -c--a-w C:\WINDOWS\system32\dllcache\cl5465.dll
+ 2001-09-18 11:03:22 170,880 -c--a-w C:\WINDOWS\system32\dllcache\cl546x.dll
+ 2001-08-17 10:57:36 248,064 -c--a-w C:\WINDOWS\system32\dllcache\cl546xm.sys
+ 2004-08-03 23:07:40 14,080 -c--a-w C:\WINDOWS\system32\dllcache\cmbatt.sys
+ 2001-09-18 10:34:20 20,736 -c--a-w C:\WINDOWS\system32\dllcache\cmbp0wdm.sys
+ 2001-09-18 10:34:24 6,656 -c--a-w C:\WINDOWS\system32\dllcache\cmdide.sys
+ 2004-08-03 22:08:00 48,128 -c--a-w C:\WINDOWS\system32\dllcache\cnbjmon.dll
+ 2001-09-18 11:03:48 44,032 -c--a-w C:\WINDOWS\system32\dllcache\cnusd.dll
+ 2001-08-17 09:11:42 39,936 -c--a-w C:\WINDOWS\system32\dllcache\cnxt1803.sys
+ 2001-08-17 13:58:00 9,344 -c--a-w C:\WINDOWS\system32\dllcache\compbatt.sys
+ 2001-08-17 10:52:06 14,976 -c--a-w C:\WINDOWS\system32\dllcache\cpqarray.sys
+ 2001-09-19 12:00:00 11,776 -c--a-w C:\WINDOWS\system32\dllcache\cpqdap01.sys
+ 2001-08-17 09:13:14 21,533 -c--a-w C:\WINDOWS\system32\dllcache\cpqndis5.sys
+ 2001-09-18 10:36:30 60,970 -c--a-w C:\WINDOWS\system32\dllcache\cpqtrnd5.sys
+ 2001-09-18 11:03:50 216,064 -c--a-w C:\WINDOWS\system32\dllcache\cpscan.dll
+ 2001-08-17 09:19:18 42,112 -c--a-w C:\WINDOWS\system32\dllcache\crtaud.sys
+ 2004-08-03 22:08:00 40,192 -c--a-w C:\WINDOWS\system32\dllcache\crusoe.sys
+ 2001-09-18 11:03:54 175,104 -c--a-w C:\WINDOWS\system32\dllcache\csamsp.dll
+ 2001-08-17 09:19:28 6,912 -c--a-w C:\WINDOWS\system32\dllcache\ctlfacem.sys
+ 2001-08-17 09:19:20 3,712 -c--a-w C:\WINDOWS\system32\dllcache\ctljystk.sys
+ 2001-08-17 09:19:20 96,256 -c--a-w C:\WINDOWS\system32\dllcache\ctlsb16.sys
+ 2004-08-03 21:55:34 250,880 -c--a-w C:\WINDOWS\system32\dllcache\ctmasetp.dll
+ 2001-09-18 11:03:54 4,096 -c--a-w C:\WINDOWS\system32\dllcache\ctwdm32.dll
+ 2001-08-17 09:19:24 3,072 -c--a-w C:\WINDOWS\system32\dllcache\cwbase.sys
+ 2001-08-17 09:19:26 3,072 -c--a-w C:\WINDOWS\system32\dllcache\cwbmidi.sys
+ 2001-08-17 09:19:28 72,832 -c--a-w C:\WINDOWS\system32\dllcache\cwbwdm.sys
+ 2001-08-17 09:19:30 3,584 -c--a-w C:\WINDOWS\system32\dllcache\cwcosnt5.sys
+ 2001-08-17 09:19:36 111,872 -c--a-w C:\WINDOWS\system32\dllcache\cwcspud.sys
+ 2001-08-17 09:19:48 93,952 -c--a-w C:\WINDOWS\system32\dllcache\cwcwdm.sys
+ 2004-08-03 19:32:26 48,640 -c--a-w C:\WINDOWS\system32\dllcache\cwrwdm.sys
+ 2001-09-18 10:37:32 17,152 -c--a-w C:\WINDOWS\system32\dllcache\cyclad-z.sys
+ 2001-09-18 10:37:34 14,848 -c--a-w C:\WINDOWS\system32\dllcache\cyclom-y.sys
+ 2001-09-18 11:03:54 28,672 -c--a-w C:\WINDOWS\system32\dllcache\cyycoins.dll
+ 2001-09-18 10:37:34 50,176 -c--a-w C:\WINDOWS\system32\dllcache\cyyport.sys
+ 2001-09-18 11:03:54 27,648 -c--a-w C:\WINDOWS\system32\dllcache\cyyports.dll
+ 2001-09-18 11:03:54 27,136 -c--a-w C:\WINDOWS\system32\dllcache\cyzcoins.dll
+ 2001-09-18 10:37:36 49,792 -c--a-w C:\WINDOWS\system32\dllcache\cyzport.sys
+ 2001-09-18 11:03:54 27,648 -c--a-w C:\WINDOWS\system32\dllcache\cyzports.dll
+ 2001-09-18 10:37:36 117,760 -c--a-w C:\WINDOWS\system32\dllcache\d100ib5.sys
+ 2001-08-17 10:52:16 179,584 -c--a-w C:\WINDOWS\system32\dllcache\dac2w2k.sys
+ 2001-08-17 10:52:16 14,720 -c--a-w C:\WINDOWS\system32\dllcache\dac960nt.sys
+ 2001-09-18 11:03:56 25,600 -c--a-w C:\WINDOWS\system32\dllcache\dc210_32.dll
+ 2001-09-18 11:03:56 80,896 -c--a-w C:\WINDOWS\system32\dllcache\dc210usd.dll
+ 2001-08-17 09:12:02 63,208 -c--a-w C:\WINDOWS\system32\dllcache\dc21x4.sys
+ 2001-09-18 11:03:56 86,016 -c--a-w C:\WINDOWS\system32\dllcache\dc240usd.dll
+ 2001-09-18 11:03:56 110,592 -c--a-w C:\WINDOWS\system32\dllcache\dc260usd.dll
+ 2001-08-17 10:52:58 7,424 -c--a-w C:\WINDOWS\system32\dllcache\ddsmc.sys
+ 2001-08-17 09:11:44 20,928 -c--a-w C:\WINDOWS\system32\dllcache\defpa.sys
+ 2001-09-18 11:03:56 256,512 -c--a-w C:\WINDOWS\system32\dllcache\devcon32.dll
+ 2001-09-18 11:05:42 24,064 -c--a-w C:\WINDOWS\system32\dllcache\devldr32.exe
+ 2001-08-17 09:11:48 24,648 -c--a-w C:\WINDOWS\system32\dllcache\dfe650.sys
+ 2001-08-17 09:11:48 24,649 -c--a-w C:\WINDOWS\system32\dllcache\dfe650d.sys
+ 2001-09-18 10:38:42 29,531 -c--a-w C:\WINDOWS\system32\dllcache\dgapci.sys
+ 2001-09-18 11:03:56 419,357 -c--a-w C:\WINDOWS\system32\dllcache\dgconfig.dll
+ 2001-08-17 09:13:48 164,923 -c--a-w C:\WINDOWS\system32\dllcache\diapi2.sys
+ 2001-09-18 11:03:58 32,256 -c--a-w C:\WINDOWS\system32\dllcache\diapi2NT.dll
+ 2001-09-18 11:03:58 65,622 -c--a-w C:\WINDOWS\system32\dllcache\digiasyn.dll
+ 2001-09-18 10:38:56 37,735 -c--a-w C:\WINDOWS\system32\dllcache\digiasyn.sys
+ 2001-09-18 11:03:58 131,156 -c--a-w C:\WINDOWS\system32\dllcache\digidbp.dll
+ 2001-09-18 10:38:58 103,076 -c--a-w C:\WINDOWS\system32\dllcache\digidxb.sys
+ 2001-09-18 10:38:58 90,525 -c--a-w C:\WINDOWS\system32\dllcache\digifep5.sys
+ 2001-09-18 11:03:58 229,462 -c--a-w C:\WINDOWS\system32\dllcache\digifwrk.dll
+ 2001-09-18 11:03:58 159,828 -c--a-w C:\WINDOWS\system32\dllcache\digihlc.dll
+ 2001-09-18 11:03:58 102,484 -c--a-w C:\WINDOWS\system32\dllcache\digiinf.dll
+ 2001-09-18 11:03:58 41,046 -c--a-w C:\WINDOWS\system32\dllcache\digiisdn.dll
+ 2001-08-17 09:14:44 21,606 -c--a-w C:\WINDOWS\system32\dllcache\digiisdn.sys
+ 2001-09-18 11:03:58 110,621 -c--a-w C:\WINDOWS\system32\dllcache\digirlpt.dll
+ 2001-09-18 10:39:02 42,432 -c--a-w C:\WINDOWS\system32\dllcache\digirlpt.sys
+ 2001-09-18 11:05:42 622,621 -c--a-w C:\WINDOWS\system32\dllcache\digiview.exe
+ 2001-08-17 09:13:52 91,305 -c--a-w C:\WINDOWS\system32\dllcache\dimaint.sys
+ 2004-08-03 19:59:56 36,352 -c--a-w C:\WINDOWS\system32\dllcache\disk.sys
+ 2001-09-18 11:04:00 6,729 -c--a-w C:\WINDOWS\system32\dllcache\disrvci.dll
+ 2001-09-18 11:04:00 31,305 -c--a-w C:\WINDOWS\system32\dllcache\disrvpp.dll
+ 2001-09-18 11:04:00 38,985 -c--a-w C:\WINDOWS\system32\dllcache\disrvsu.dll
+ 2001-09-18 11:05:42 236,060 -c--a-w C:\WINDOWS\system32\dllcache\ditrace.exe
+ 2001-09-18 11:04:00 6,216 -c--a-w C:\WINDOWS\system32\dllcache\divaci.dll
+ 2001-09-18 11:04:00 37,962 -c--a-w C:\WINDOWS\system32\dllcache\divaprop.dll
+ 2001-09-18 11:04:00 29,768 -c--a-w C:\WINDOWS\system32\dllcache\divasu.dll
+ 2001-08-17 09:14:52 952,007 -c--a-w C:\WINDOWS\system32\dllcache\diwan.sys
+ 2001-08-17 09:11:44 26,698 -c--a-w C:\WINDOWS\system32\dllcache\dlh5xnd5.sys
+ 2004-08-03 20:00:06 8,320 -c--a-w C:\WINDOWS\system32\dllcache\dlttape.sys
+ 2001-08-17 09:11:42 29,696 -c--a-w C:\WINDOWS\system32\dllcache\dm9pci5.sys
+ 2004-08-03 22:08:00 47,616 -c--a-w C:\WINDOWS\system32\dllcache\dmutil.dll
+ 2004-08-03 19:58:30 207,360 -c--a-w C:\WINDOWS\system32\dllcache\dot4.sys
+ 2001-08-17 10:47:32 12,928 -c--a-w C:\WINDOWS\system32\dllcache\dot4prt.sys
+ 2001-08-17 10:47:32 8,704 -c--a-w C:\WINDOWS\system32\dllcache\dot4scan.sys
+ 2001-09-18 10:39:46 23,808 -c--a-w C:\WINDOWS\system32\dllcache\dot4usb.sys
+ 2001-08-17 09:12:32 28,062 -c--a-w C:\WINDOWS\system32\dllcache\dp83820.sys
+ 2001-08-17 11:07:44 20,192 -c--a-w C:\WINDOWS\system32\dllcache\dpti2o.sys
+ 2001-08-17 09:20:18 334,208 -c--a-w C:\WINDOWS\system32\dllcache\ds1wdm.sys
+ 2001-09-19 12:00:00 55,296 -c--a-w C:\WINDOWS\system32\dllcache\dvdplay.exe
+ 2004-08-03 20:00:56 71,040 -c--a-w C:\WINDOWS\system32\dllcache\dxg.sys
+ 2001-09-18 10:44:12 50,719 -c--a-w C:\WINDOWS\system32\dllcache\e1000nt5.sys
+ 2001-09-18 10:44:12 117,760 -c--a-w C:\WINDOWS\system32\dllcache\e100b325.sys
+ 2001-08-17 09:12:12 19,594 -c--a-w C:\WINDOWS\system32\dllcache\e100isa4.sys
+ 2001-09-18 10:44:46 44,103 -c--a-w C:\WINDOWS\system32\dllcache\el515.sys
+ 2001-08-17 09:10:56 55,999 -c--a-w C:\WINDOWS\system32\dllcache\el556nd5.sys
+ 2001-08-17 09:10:56 24,653 -c--a-w C:\WINDOWS\system32\dllcache\el574nd4.sys
+ 2001-08-17 09:10:58 69,692 -c--a-w C:\WINDOWS\system32\dllcache\el575nd5.sys
+ 2001-08-17 09:10:52 26,141 -c--a-w C:\WINDOWS\system32\dllcache\el589nd5.sys
+ 2001-08-17 09:11:00 69,194 -c--a-w C:\WINDOWS\system32\dllcache\el656cd5.sys
+ 2001-09-18 10:44:46 634,134 -c--a-w C:\WINDOWS\system32\dllcache\el656ct5.sys
+ 2001-08-17 09:11:00 77,386 -c--a-w C:\WINDOWS\system32\dllcache\el656nd5.sys
+ 2001-09-18 10:44:48 241,206 -c--a-w C:\WINDOWS\system32\dllcache\el656se5.sys
+ 2001-08-17 09:11:06 66,591 -c--a-w C:\WINDOWS\system32\dllcache\el90xbc5.sys
+ 2001-09-18 10:44:48 153,631 -c--a-w C:\WINDOWS\system32\dllcache\el90xnd5.sys
+ 2001-09-18 10:44:48 455,199 -c--a-w C:\WINDOWS\system32\dllcache\el985n51.sys
+ 2001-08-17 09:11:04 70,174 -c--a-w C:\WINDOWS\system32\dllcache\el98xn5.sys
+ 2001-09-18 10:44:50 171,520 -c--a-w C:\WINDOWS\system32\dllcache\el99xn51.sys
+ 2001-08-17 10:53:02 7,296 -c--a-w C:\WINDOWS\system32\dllcache\elmsmc.sys
+ 2001-08-17 09:10:52 25,159 -c--a-w C:\WINDOWS\system32\dllcache\elnk3.sys
+ 2001-08-17 09:10:54 19,996 -c--a-w C:\WINDOWS\system32\dllcache\em556n4.sys
+ 2001-08-17 09:19:26 283,904 -c--a-w C:\WINDOWS\system32\dllcache\emu10k1m.sys
+ 2001-08-17 13:46:40 6,400 -c--a-w C:\WINDOWS\system32\dllcache\enum1394.sys
+ 2001-08-17 10:50:20 144,896 -c--a-w C:\WINDOWS\system32\dllcache\epcfw2k.sys
+ 2001-08-17 09:12:08 18,503 -c--a-w C:\WINDOWS\system32\dllcache\epro4.sys
+ 2001-08-17 10:50:20 114,944 -c--a-w C:\WINDOWS\system32\dllcache\epstw2k.sys
+ 2001-09-18 10:46:40 629,984 -c--a-w C:\WINDOWS\system32\dllcache\eqn.sys
+ 2001-09-18 11:05:44 53,248 -c--a-w C:\WINDOWS\system32\dllcache\eqndiag.exe
+ 2001-09-18 11:05:44 51,712 -c--a-w C:\WINDOWS\system32\dllcache\eqnlogr.exe
+ 2001-09-18 11:05:44 62,976 -c--a-w C:\WINDOWS\system32\dllcache\eqnloop.exe
+ 2001-08-17 09:19:38 37,120 -c--a-w C:\WINDOWS\system32\dllcache\es1370mp.sys
+ 2001-08-17 09:19:34 40,704 -c--a-w C:\WINDOWS\system32\dllcache\es1371mp.sys
+ 2001-08-17 09:19:58 72,192 -c--a-w C:\WINDOWS\system32\dllcache\es1969.sys
+ 2001-08-17 09:19:48 174,464 -c--a-w C:\WINDOWS\system32\dllcache\es198x.sys
+ 2001-09-18 10:46:44 595,647 -c--a-w C:\WINDOWS\system32\dllcache\es56cvmp.sys
+ 2001-09-18 10:46:46 594,238 -c--a-w C:\WINDOWS\system32\dllcache\es56hpi.sys
+ 2001-09-18 10:46:46 347,550 -c--a-w C:\WINDOWS\system32\dllcache\es56tpi.sys
+ 2001-08-17 09:19:56 63,360 -c--a-w C:\WINDOWS\system32\dllcache\ess.sys
+ 2004-08-03 19:32:28 137,088 -c--a-w C:\WINDOWS\system32\dllcache\essm2e.sys
+ 2001-09-18 11:04:08 43,008 -c--a-w C:\WINDOWS\system32\dllcache\esucm.dll
+ 2001-09-18 11:04:08 34,816 -c--a-w C:\WINDOWS\system32\dllcache\esuimg.dll
+ 2001-09-18 11:04:08 45,568 -c--a-w C:\WINDOWS\system32\dllcache\esuni.dll
+ 2001-09-18 11:04:08 45,568 -c--a-w C:\WINDOWS\system32\dllcache\esunib.dll
+ 2001-08-17 09:12:08 16,998 -c--a-w C:\WINDOWS\system32\dllcache\ex10.sys
+ 2001-08-17 10:52:48 7,040 -c--a-w C:\WINDOWS\system32\dllcache\exabyte2.sys
+ 2001-08-17 09:11:54 12,362 -c--a-w C:\WINDOWS\system32\dllcache\f3ab18xi.sys
+ 2001-08-17 09:11:56 11,850 -c--a-w C:\WINDOWS\system32\dllcache\f3ab18xj.sys
+ 2001-08-17 09:12:32 16,074 -c--a-w C:\WINDOWS\system32\dllcache\fa312nd5.sys
+ 2001-08-17 09:12:32 24,618 -c--a-w C:\WINDOWS\system32\dllcache\fa410nd5.sys
+ 2004-08-03 19:59:28 27,392 -c--a-w C:\WINDOWS\system32\dllcache\fdc.sys
+ 2001-08-17 09:10:54 22,090 -c--a-w C:\WINDOWS\system32\dllcache\fem556n5.sys
+ 2001-08-17 09:13:08 27,165 -c--a-w C:\WINDOWS\system32\dllcache\fetnd5.sys
+ 2004-08-03 19:59:28 20,480 -c--a-w C:\WINDOWS\system32\dllcache\flpydisk.sys
+ 2001-09-18 11:04:10 71,680 -c--a-w C:\WINDOWS\system32\dllcache\fnfilter.dll
+ 2004-08-03 19:31:24 34,173 -c--a-w C:\WINDOWS\system32\dllcache\forehe.sys
+ 2001-08-17 09:14:24 444,416 -c--a-w C:\WINDOWS\system32\dllcache\fpcibase.sys
+ 2001-08-17 09:14:44 441,728 -c--a-w C:\WINDOWS\system32\dllcache\fpcmbase.sys
+ 2001-08-17 09:15:02 442,240 -c--a-w C:\WINDOWS\system32\dllcache\fpnpbase.sys
+ 2004-08-03 21:56:14 193,024 -c--a-w C:\WINDOWS\system32\dllcache\fsquirt.exe
+ 2001-09-19 12:00:00 12,160 -c--a-w C:\WINDOWS\system32\dllcache\fsvga.sys
+ 2001-09-19 12:00:00 125,056 -c--a-w C:\WINDOWS\system32\dllcache\ftdisk.sys
+ 2001-08-17 09:15:22 455,680 -c--a-w C:\WINDOWS\system32\dllcache\fus2base.sys
+ 2001-08-17 09:15:38 455,296 -c--a-w C:\WINDOWS\system32\dllcache\fusbbase.sys
+ 2001-09-18 11:04:10 92,160 -c--a-w C:\WINDOWS\system32\dllcache\fuusd.dll
+ 2001-08-17 09:15:56 454,912 -c--a-w C:\WINDOWS\system32\dllcache\fxusbase.sys
+ 2001-09-18 11:03:24 470,144 -c--a-w C:\WINDOWS\system32\dllcache\g200d.dll
+ 2001-09-18 10:48:24 320,384 -c--a-w C:\WINDOWS\system32\dllcache\g200m.sys
+ 2001-09-18 11:03:24 1,733,120 -c--a-w C:\WINDOWS\system32\dllcache\g400d.dll
+ 2001-09-18 10:48:28 322,432 -c--a-w C:\WINDOWS\system32\dllcache\g400m.sys
+ 2004-08-03 20:07:44 46,464 -c--a-w C:\WINDOWS\system32\dllcache\gagp30kx.sys
+ 2004-08-03 20:08:22 10,624 -c--a-w C:\WINDOWS\system32\dllcache\gameenum.sys
+ 2004-08-03 20:08:30 59,136 -c--a-w C:\WINDOWS\system32\dllcache\gckernel.sys
+ 2001-09-18 10:49:02 17,408 -c--a-w C:\WINDOWS\system32\dllcache\gpr400.sys
+ 2001-09-18 10:49:08 82,432 -c--a-w C:\WINDOWS\system32\dllcache\grclass.sys
+ 2004-08-03 21:40:30 28,288 -c--a-w C:\WINDOWS\system32\dllcache\grserial.sys
+ 2004-08-03 21:55:38 7,168 -c--a-w C:\WINDOWS\system32\dllcache\hccoin.dll
+ 2001-09-18 10:49:52 907,456 -c--a-w C:\WINDOWS\system32\dllcache\hcf_msft.sys
+ 2004-08-03 22:08:00 20,992 -c--a-w C:\WINDOWS\system32\dllcache\hid.dll
+ 2001-08-17 10:58:00 19,200 -c--a-w C:\WINDOWS\system32\dllcache\hidbatt.sys
+ 2004-08-03 21:40:58 25,600 -c--a-w C:\WINDOWS\system32\dllcache\hidbth.sys
+ 2004-08-03 20:08:20 36,224 -c--a-w C:\WINDOWS\system32\dllcache\hidclass.sys
+ 2001-08-17 11:02:32 8,576 -c--a-w C:\WINDOWS\system32\dllcache\hidgame.sys
+ 2004-08-03 20:08:20 15,104 -c--a-w C:\WINDOWS\system32\dllcache\hidir.sys
+ 2004-08-03 20:08:18 24,960 -c--a-w C:\WINDOWS\system32\dllcache\hidparse.sys
+ 2001-08-17 11:02:50 2,688 -c--a-w C:\WINDOWS\system32\dllcache\hidswvd.sys
+ 2001-09-18 11:04:14 119,296 -c--a-w C:\WINDOWS\system32\dllcache\hpdigwia.dll
+ 2001-09-18 11:04:16 83,968 -c--a-w C:\WINDOWS\system32\dllcache\hpgt21.dll
+ 2001-09-18 11:04:16 123,392 -c--a-w C:\WINDOWS\system32\dllcache\hpgt21tk.dll
+ 2001-09-18 11:04:16 89,088 -c--a-w C:\WINDOWS\system32\dllcache\hpgt33.dll
+ 2001-09-18 11:04:16 48,128 -c--a-w C:\WINDOWS\system32\dllcache\hpgt33tk.dll
+ 2001-09-18 11:04:16 101,376 -c--a-w C:\WINDOWS\system32\dllcache\hpgt34.dll
+ 2001-09-18 11:04:16 126,976 -c--a-w C:\WINDOWS\system32\dllcache\hpgt34tk.dll
+ 2001-09-18 11:04:16 93,696 -c--a-w C:\WINDOWS\system32\dllcache\hpgt42.dll
+ 2001-09-18 11:04:16 31,232 -c--a-w C:\WINDOWS\system32\dllcache\hpgt42tk.dll
+ 2001-09-18 11:04:16 165,888 -c--a-w C:\WINDOWS\system32\dllcache\hpgt53.dll
+ 2001-09-18 11:04:16 68,608 -c--a-w C:\WINDOWS\system32\dllcache\hpgt53tk.dll
+ 2001-09-18 11:04:16 32,768 -c--a-w C:\WINDOWS\system32\dllcache\hpgtmcro.dll
+ 2001-08-17 11:07:44 25,952 -c--a-w C:\WINDOWS\system32\dllcache\hpn.sys
+ 2001-09-18 11:04:16 324,608 -c--a-w C:\WINDOWS\system32\dllcache\hpojwia.dll
+ 2001-09-18 11:04:16 13,312 -c--a-w C:\WINDOWS\system32\dllcache\hpsjmcro.dll
+ 2001-08-17 10:52:50 5,760 -c--a-w C:\WINDOWS\system32\dllcache\hpt4qic.sys
+ 2001-09-18 11:04:16 19,456 -c--a-w C:\WINDOWS\system32\dllcache\hr1w.dll
+ 2001-08-17 10:28:04 150,239 -c--a-w C:\WINDOWS\system32\dllcache\hsf_amos.sys
+ 2001-08-17 10:28:04 67,167 -c--a-w C:\WINDOWS\system32\dllcache\hsf_bsc2.sys
+ 2001-08-17 10:28:06 289,887 -c--a-w C:\WINDOWS\system32\dllcache\hsf_fall.sys
+ 2001-08-17 10:28:06 199,711 -c--a-w C:\WINDOWS\system32\dllcache\hsf_faxx.sys
+ 2001-08-17 10:28:06 115,807 -c--a-w C:\WINDOWS\system32\dllcache\hsf_fsks.sys
+ 2001-09-18 11:04:16 9,759 -c--a-w C:\WINDOWS\system32\dllcache\hsf_inst.dll
+ 2001-08-17 10:28:08 391,199 -c--a-w C:\WINDOWS\system32\dllcache\hsf_k56k.sys
+ 2001-08-17 10:28:10 542,879 -c--a-w C:\WINDOWS\system32\dllcache\hsf_msft.sys
+ 2001-08-17 10:28:10 57,471 -c--a-w C:\WINDOWS\system32\dllcache\hsf_samp.sys
+ 2001-08-17 10:28:10 44,863 -c--a-w C:\WINDOWS\system32\dllcache\hsf_soar.sys
+ 2001-08-17 10:28:10 73,279 -c--a-w C:\WINDOWS\system32\dllcache\hsf_spkp.sys
+ 2001-08-17 10:28:12 50,751 -c--a-w C:\WINDOWS\system32\dllcache\hsf_tone.sys
+ 2001-08-17 10:28:12 488,383 -c--a-w C:\WINDOWS\system32\dllcache\hsf_v124.sys
+ 2004-08-03 19:41:48 220,032 -c--a-w C:\WINDOWS\system32\dllcache\hsfbs2s2.sys
+ 2004-08-03 21:55:38 32,285 -c--a-w C:\WINDOWS\system32\dllcache\hsfcisp2.dll
+ 2004-08-03 19:41:50 685,056 -c--a-w C:\WINDOWS\system32\dllcache\hsfcxts2.sys
+ 2004-08-03 19:41:56 1,041,536 -c--a-w C:\WINDOWS\system32\dllcache\hsfdpsp2.sys
+ 2004-08-03 20:00:14 263,040 -c--a-w C:\WINDOWS\system32\dllcache\http.sys
+ 2004-08-03 20:00:52 8,192 -c--a-w C:\WINDOWS\system32\dllcache\i2omgmt.sys
+ 2004-08-03 20:00:52 18,560 -c--a-w C:\WINDOWS\system32\dllcache\i2omp.sys
+ 2001-09-18 11:03:24 353,184 -c--a-w C:\WINDOWS\system32\dllcache\i740dnt5.dll
+ 2001-08-17 09:49:06 58,592 -c--a-w C:\WINDOWS\system32\dllcache\i740nt5.sys
+ 2004-08-03 21:41:48 51,968 -c--a-w C:\WINDOWS\system32\dllcache\i8042prt.sys
+ 2004-08-03 21:55:38 702,845 -c--a-w C:\WINDOWS\system32\dllcache\i81xdnt5.dll
+ 2004-08-03 19:29:38 161,020 -c--a-w C:\WINDOWS\system32\dllcache\i81xnt5.sys
+ 2001-08-17 09:11:58 28,700 -c--a-w C:\WINDOWS\system32\dllcache\ibmexmp.sys
+ 2001-09-18 11:01:38 9,216 -c--a-w C:\WINDOWS\system32\dllcache\ibmsgnet.dll
+ 2001-08-17 09:12:00 100,936 -c--a-w C:\WINDOWS\system32\dllcache\ibmtok.sys
+ 2001-08-17 09:12:02 109,085 -c--a-w C:\WINDOWS\system32\dllcache\ibmtrp.sys
+ 2001-08-17 11:06:46 38,528 -c--a-w C:\WINDOWS\system32\dllcache\ibmvcap.sys
+ 2001-08-17 11:05:44 141,056 -c--a-w C:\WINDOWS\system32\dllcache\icam3.sys
+ 2001-09-18 11:04:20 27,136 -c--a-w C:\WINDOWS\system32\dllcache\icam3ext.dll
+ 2001-09-18 11:04:20 91,648 -c--a-w C:\WINDOWS\system32\dllcache\icam4com.dll
+ 2001-09-18 11:04:20 62,464 -c--a-w C:\WINDOWS\system32\dllcache\icam4ext.dll
+ 2001-08-17 11:06:02 154,496 -c--a-w C:\WINDOWS\system32\dllcache\icam4usb.sys
+ 2001-09-18 11:04:20 45,056 -c--a-w C:\WINDOWS\system32\dllcache\icam5com.dll
+ 2001-09-18 11:04:20 20,480 -c--a-w C:\WINDOWS\system32\dllcache\icam5ext.dll
+ 2001-08-17 11:06:20 100,992 -c--a-w C:\WINDOWS\system32\dllcache\icam5usb.sys
+ 2001-09-18 11:04:20 372,824 -c--a-w C:\WINDOWS\system32\dllcache\iconf32.dll
- 2008-07-20 19:39:02 93,184 -c--a-w C:\WINDOWS\system32\dllcache\iexplore.exe
+ 2004-08-03 21:56:16 93,184 -c--a-w C:\WINDOWS\system32\dllcache\iexplore.exe
+ 2004-08-03 20:00:16 41,856 -c--a-w C:\WINDOWS\system32\dllcache\imapi.sys
+ 2001-08-17 10:52:08 16,000 -c--a-w C:\WINDOWS\system32\dllcache\ini910u.sys
+ 2001-09-18 10:31:24 13,056 -c--a-w C:\WINDOWS\system32\dllcache\inport.sys
+ 2004-08-03 21:44:14 5,504 -c--a-w C:\WINDOWS\system32\dllcache\intelide.sys
+ 2004-08-03 21:44:16 39,936 -c--a-w C:\WINDOWS\system32\dllcache\intelppm.sys
+ 2001-08-17 10:50:56 38,784 -c--a-w C:\WINDOWS\system32\dllcache\io8.sys
+ 2001-09-18 11:04:24 90,200 -c--a-w C:\WINDOWS\system32\dllcache\io8ports.dll
+ 2001-08-17 09:12:12 45,632 -c--a-w C:\WINDOWS\system32\dllcache\ip5515.sys
+ 2004-08-03 20:08:34 40,832 -c--a-w C:\WINDOWS\system32\dllcache\irbus.sys
+ 2004-08-03 20:00:54 87,424 -c--a-w C:\WINDOWS\system32\dllcache\irda.sys
+ 2004-08-03 21:56:18 152,064 -c--a-w C:\WINDOWS\system32\dllcache\irftp.exe
+ 2001-08-17 10:49:04 23,552 -c--a-w C:\WINDOWS\system32\dllcache\irmk7.sys
+ 2004-08-03 21:55:40 26,624 -c--a-w C:\WINDOWS\system32\dllcache\irmon.dll
+ 2001-08-17 10:51:32 18,688 -c--a-w C:\WINDOWS\system32\dllcache\irsir.sys
+ 2001-08-17 10:49:10 26,624 -c--a-w C:\WINDOWS\system32\dllcache\irstusb.sys
+ 2004-08-03 22:08:00 47,616 -c--a-w C:\WINDOWS\system32\dllcache\iyuv_32.dll
+ 2001-08-17 11:55:56 6,144 -c--a-w C:\WINDOWS\system32\dllcache\kbd101b.dll
+ 2001-08-17 11:55:56 6,144 -c--a-w C:\WINDOWS\system32\dllcache\kbd101c.dll
+ 2001-08-17 11:55:56 5,632 -c--a-w C:\WINDOWS\system32\dllcache\kbd103.dll
+ 2001-08-17 11:55:56 6,144 -c--a-w C:\WINDOWS\system32\dllcache\kbd106.dll
+ 2004-08-03 21:45:42 24,448 -c--a-w C:\WINDOWS\system32\dllcache\kbdclass.sys
+ 2001-08-17 19:36:18 8,704 -c--a-w C:\WINDOWS\system32\dllcache\kbdjpn.dll
+ 2001-08-17 19:36:18 8,192 -c--a-w C:\WINDOWS\system32\dllcache\kbdkor.dll
+ 2001-09-18 11:04:28 45,568 -c--a-w C:\WINDOWS\system32\dllcache\kdsui.dll
+ 2001-09-18 11:04:28 242,176 -c--a-w C:\WINDOWS\system32\dllcache\kdsusd.dll
+ 2001-09-18 11:04:30 37,376 -c--a-w C:\WINDOWS\system32\dllcache\kousd.dll
+ 2001-08-17 09:12:14 19,016 -c--a-w C:\WINDOWS\system32\dllcache\ktc111.sys
+ 2001-09-18 10:33:32 26,442 -c--a-w C:\WINDOWS\system32\dllcache\lanepic5.sys
+ 2004-08-03 19:59:34 34,688 -c--a-w C:\WINDOWS\system32\dllcache\lbrtfdc.sys
+ 2001-09-18 10:33:52 15,744 -c--a-w C:\WINDOWS\system32\dllcache\lit220p.sys
+ 2001-08-17 09:11:52 25,065 -c--a-w C:\WINDOWS\system32\dllcache\lmndis3.sys
+ 2001-08-17 09:12:20 20,573 -c--a-w C:\WINDOWS\system32\dllcache\lne100.sys
+ 2001-08-17 09:12:24 70,730 -c--a-w C:\WINDOWS\system32\dllcache\lne100tx.sys
+ 2001-08-17 10:53:42 4,992 -c--a-w C:\WINDOWS\system32\dllcache\loop.sys
+ 2001-09-18 10:34:20 727,786 -c--a-w C:\WINDOWS\system32\dllcache\ltck000c.sys
+ 2004-08-03 21:46:46 606,364 -c--a-w C:\WINDOWS\system32\dllcache\ltmdmnt.sys
+ 2001-09-18 10:34:22 576,746 -c--a-w C:\WINDOWS\system32\dllcache\ltmdmntl.sys
+ 2004-08-03 21:46:48 417,024 -c--a-w C:\WINDOWS\system32\dllcache\ltmdmntt.sys
+ 2004-08-03 20:00:08 7,040 -c--a-w C:\WINDOWS\system32\dllcache\ltotape.sys
+ 2001-08-17 10:28:10 802,683 -c--a-w C:\WINDOWS\system32\dllcache\ltsm.sys
+ 2001-08-17 10:28:12 797,500 -c--a-w C:\WINDOWS\system32\dllcache\ltsmt.sys
+ 2004-08-03 19:39:32 20,864 -c--a-w C:\WINDOWS\system32\dllcache\lwadihid.sys
+ 2001-08-17 09:49:20 22,848 -c--a-w C:\WINDOWS\system32\dllcache\lwusbhid.sys
+ 2001-09-18 11:04:34 58,880 -c--a-w C:\WINDOWS\system32\dllcache\m3091dc.dll
+ 2001-09-18 11:04:34 59,392 -c--a-w C:\WINDOWS\system32\dllcache\m3092dc.dll
+ 2001-08-17 09:19:58 48,768 -c--a-w C:\WINDOWS\system32\dllcache\maestro.sys
+ 2001-08-17 10:52:50 7,424 -c--a-w C:\WINDOWS\system32\dllcache\mammoth.sys
+ 2001-09-18 10:36:02 164,586 -c--a-w C:\WINDOWS\system32\dllcache\mdgndis5.sys
+ 2001-09-19 12:00:00 147,968 -c--a-w C:\WINDOWS\system32\dllcache\mdwmdmsp.dll
+ 2001-08-17 10:58:04 8,320 -c--a-w C:\WINDOWS\system32\dllcache\memcard.sys
+ 2001-09-18 11:04:34 47,616 -c--a-w C:\WINDOWS\system32\dllcache\memgrp.dll
+ 2004-08-03 20:00:50 26,112 -c--a-w C:\WINDOWS\system32\dllcache\memstpci.sys
+ 2004-08-03 22:08:00 63,744 -c--a-w C:\WINDOWS\system32\dllcache\mf.sys
+ 2001-09-18 11:03:24 235,648 -c--a-w C:\WINDOWS\system32\dllcache\mgaud.dll
+ 2001-09-18 10:37:24 320,384 -c--a-w C:\WINDOWS\system32\dllcache\mgaum.sys
+ 2001-08-17 10:52:50 6,528 -c--a-w C:\WINDOWS\system32\dllcache\miniqic.sys
+ 2004-08-03 22:08:00 30,208 -c--a-w C:\WINDOWS\system32\dllcache\modem.sys
+ 2001-08-17 10:57:38 16,128 -c--a-w C:\WINDOWS\system32\dllcache\modemcsa.sys
+ 2004-08-04 00:38:14 22,912 -c--a-w C:\WINDOWS\system32\dllcache\mouclass.sys
+ 2004-08-03 20:10:14 15,360 -c--a-w C:\WINDOWS\system32\dllcache\mpe.sys
+ 2001-08-17 10:52:12 17,280 -c--a-w C:\WINDOWS\system32\dllcache\mraid35x.sys
+ 2004-08-03 20:15:18 451,456 -c--a-w C:\WINDOWS\system32\dllcache\mrxsmb.sys
+ 2004-08-03 20:10:00 51,328 -c--a-w C:\WINDOWS\system32\dllcache\msdv.sys
+ 2001-08-17 10:48:36 6,016 -c--a-w C:\WINDOWS\system32\dllcache\msfsio.sys
+ 2001-08-17 11:02:40 35,200 -c--a-w C:\WINDOWS\system32\dllcache\msgame.sys
+ 2004-08-03 20:00:48 22,016 -c--a-w C:\WINDOWS\system32\dllcache\msircomm.sys
+ 2001-08-17 11:00:04 2,944 -c--a-w C:\WINDOWS\system32\dllcache\msmpu401.sys
+ 2001-08-17 10:48:50 12,416 -c--a-w C:\WINDOWS\system32\dllcache\msriffwv.sys
+ 2004-08-03 22:08:00 15,488 -c--a-w C:\WINDOWS\system32\dllcache\mssmbios.sys
+ 2004-08-03 20:10:00 49,024 -c--a-w C:\WINDOWS\system32\dllcache\mstape.sys
+ 2004-08-03 19:58:40 5,504 -c--a-w C:\WINDOWS\system32\dllcache\mstee.sys
+ 2004-08-03 22:08:00 17,408 -c--a-w C:\WINDOWS\system32\dllcache\msyuv.dll
+ 2004-08-03 19:41:40 126,686 -c--a-w C:\WINDOWS\system32\dllcache\mtlmnt5.sys
+ 2004-08-03 19:41:38 1,309,184 -c--a-w C:\WINDOWS\system32\dllcache\mtlstrm.sys
+ 2004-08-03 21:55:46 1,737,856 -c--a-w C:\WINDOWS\system32\dllcache\mtxparhd.dll
+ 2004-08-03 19:29:38 452,736 -c--a-w C:\WINDOWS\system32\dllcache\mtxparhm.sys
+ 2001-08-17 09:50:04 103,296 -c--a-w C:\WINDOWS\system32\dllcache\mtxvideo.sys
+ 2004-08-03 20:04:52 12,672 -c--a-w C:\WINDOWS\system32\dllcache\mutohpen.sys
+ 2001-09-18 10:44:06 22,016 -c--a-w C:\WINDOWS\system32\dllcache\mxcard.sys
+ 2001-09-18 11:04:48 19,968 -c--a-w C:\WINDOWS\system32\dllcache\mxicfg.dll
+ 2001-08-17 10:49:32 19,968 -c--a-w C:\WINDOWS\system32\dllcache\mxnic.sys
+ 2001-09-18 11:04:48 7,168 -c--a-w C:\WINDOWS\system32\dllcache\mxport.dll
+ 2001-09-18 10:44:08 75,520 -c--a-w C:\WINDOWS\system32\dllcache\mxport.sys
+ 2001-09-18 10:44:08 52,255 -c--a-w C:\WINDOWS\system32\dllcache\n1000nt5.sys
+ 2001-09-18 10:44:10 128,000 -c--a-w C:\WINDOWS\system32\dllcache\n100325.sys
+ 2001-09-18 11:03:24 35,392 -c--a-w C:\WINDOWS\system32\dllcache\n9i128.dll
+ 2001-08-17 09:50:06 13,664 -c--a-w C:\WINDOWS\system32\dllcache\n9i128.sys
+ 2001-09-18 11:03:24 59,104 -c--a-w C:\WINDOWS\system32\dllcache\n9i128v2.dll
+ 2001-08-17 09:50:08 33,088 -c--a-w C:\WINDOWS\system32\dllcache\n9i128v2.sys
+ 2001-08-17 09:50:10 27,936 -c--a-w C:\WINDOWS\system32\dllcache\n9i3d.sys
+ 2001-09-18 11:03:24 91,488 -c--a-w C:\WINDOWS\system32\dllcache\n9i3disp.dll
+ 2004-08-03 20:10:30 85,376 -c--a-w C:\WINDOWS\system32\dllcache\nabtsfec.sys
+ 2004-08-03 20:10:14 10,880 -c--a-w C:\WINDOWS\system32\dllcache\ndisip.sys
+ 2004-08-03 22:08:00 12,928 -c--a-w C:\WINDOWS\system32\dllcache\ndisuio.sys
+ 2001-08-17 10:49:14 15,872 -c--a-w C:\WINDOWS\system32\dllcache\ne2000.sys
+ 2001-09-18 11:03:24 60,480 -c--a-w C:\WINDOWS\system32\dllcache\neo20xx.dll
+ 2001-08-17 09:50:04 39,264 -c--a-w C:\WINDOWS\system32\dllcache\neo20xx.sys
+ 2001-09-18 10:44:56 65,278 -c--a-w C:\WINDOWS\system32\dllcache\netflx3.sys
+ 2004-08-03 21:48:00 132,695 -c--a-w C:\WINDOWS\system32\dllcache\netwlan5.sys
+ 2001-08-17 09:12:20 32,840 -c--a-w C:\WINDOWS\system32\dllcache\ngrpci.sys
+ 2004-08-03 22:08:00 61,824 -c--a-w C:\WINDOWS\system32\dllcache\nic1394.sys
+ 2001-09-19 12:00:00 12,032 -c--a-w C:\WINDOWS\system32\dllcache\nikedrv.sys
+ 2001-08-17 09:20:08 126,080 -c--a-w C:\WINDOWS\system32\dllcache\nm5a2wdm.sys
+ 2001-08-17 09:20:08 87,040 -c--a-w C:\WINDOWS\system32\dllcache\nm6wdm.sys
+ 2004-08-03 20:00:52 28,672 -c--a-w C:\WINDOWS\system32\dllcache\nscirda.sys
+ 2001-08-17 10:53:02 7,552 -c--a-w C:\WINDOWS\system32\dllcache\nsmmc.sys
+ 2001-09-18 10:46:24 9,472 -c--a-w C:\WINDOWS\system32\dllcache\ntapm.sys
+ 2001-08-17 09:49:04 51,552 -c--a-w C:\WINDOWS\system32\dllcache\ntgrip.sys
+ 2004-08-03 21:48:48 2,149,888 -c--a-w C:\WINDOWS\system32\dllcache\ntkrnlmp.exe
+ 2004-08-03 21:48:52 2,058,368 -c--a-w C:\WINDOWS\system32\dllcache\ntkrnlpa.exe
+ 2004-08-03 22:08:00 2,016,768 -c--a-w C:\WINDOWS\system32\dllcache\ntkrpamp.exe
+ 2004-08-03 19:41:40 180,360 -c--a-w C:\WINDOWS\system32\dllcache\ntmtlfax.sys
+ 2004-08-03 21:49:02 2,182,528 -c--a-w C:\WINDOWS\system32\dllcache\ntoskrnl.exe
+ 2001-09-18 11:03:24 123,776 -c--a-w C:\WINDOWS\system32\dllcache\nv3.dll
+ 2001-08-17 09:50:18 198,144 -c--a-w C:\WINDOWS\system32\dllcache\nv3.sys
+ 2004-08-03 21:55:46 4,274,816 -c--a-w C:\WINDOWS\system32\dllcache\nv4_disp.dll
+ 2004-08-03 19:29:56 1,897,408 -c--a-w C:\WINDOWS\system32\dllcache\nv4_mini.sys
+ 2004-08-03 20:10:10 61,056 -c--a-w C:\WINDOWS\system32\dllcache\ohci1394.sys
+ 2001-08-17 09:20:16 54,528 -c--a-w C:\WINDOWS\system32\dllcache\opl3sax.sys
+ 2001-09-19 12:00:00 3,456 -c--a-w C:\WINDOWS\system32\dllcache\oprghdlr.sys
+ 2001-08-17 09:12:36 27,209 -c--a-w C:\WINDOWS\system32\dllcache\otc06x5.sys
+ 2001-09-18 10:49:52 43,689 -c--a-w C:\WINDOWS\system32\dllcache\otceth5.sys
+ 2001-09-18 10:49:52 54,186 -c--a-w C:\WINDOWS\system32\dllcache\otcsercb.sys
+ 2001-08-17 11:05:04 25,088 -c--a-w C:\WINDOWS\system32\dllcache\ovca.sys
+ 2001-08-17 11:05:12 48,000 -c--a-w C:\WINDOWS\system32\dllcache\ovcam2.sys
+ 2001-08-17 11:05:16 28,032 -c--a-w C:\WINDOWS\system32\dllcache\ovcd.sys
+ 2001-08-17 11:05:20 31,872 -c--a-w C:\WINDOWS\system32\dllcache\ovce.sys
+ 2001-09-18 11:04:56 116,736 -c--a-w C:\WINDOWS\system32\dllcache\ovcodec2.dll
+ 2001-08-17 11:05:12 351,616 -c--a-w C:\WINDOWS\system32\dllcache\ovcodek2.sys
+ 2001-09-18 11:04:56 20,480 -c--a-w C:\WINDOWS\system32\dllcache\ovcomc.dll
+ 2001-09-18 11:05:54 39,424 -c--a-w C:\WINDOWS\system32\dllcache\ovcoms.exe
+ 2001-08-17 11:05:06 25,216 -c--a-w C:\WINDOWS\system32\dllcache\ovsound2.sys
+ 2001-09-18 11:04:56 44,544 -c--a-w C:\WINDOWS\system32\dllcache\ovui2.dll
+ 2001-09-18 11:04:56 43,520 -c--a-w C:\WINDOWS\system32\dllcache\ovui2rc.dll
+ 2004-08-03 22:08:00 46,208 -c--a-w C:\WINDOWS\system32\dllcache\p3.sys
+ 2001-09-19 12:00:00 157,696 -c--a-w C:\WINDOWS\system32\dllcache\paqsp.dll
+ 2004-08-03 22:08:00 79,872 -c--a-w C:\WINDOWS\system32\dllcache\parport.sys
+ 2001-08-17 09:12:18 30,495 -c--a-w C:\WINDOWS\system32\dllcache\pc100nds.sys
+ 2004-08-03 19:31:24 29,502 -c--a-w C:\WINDOWS\system32\dllcache\pca200e.sys
+ 2004-08-03 21:37:50 119,680 -c--a-w C:\WINDOWS\system32\dllcache\pcmcia.sys
+ 2001-08-17 09:12:18 26,153 -c--a-w C:\WINDOWS\system32\dllcache\pcmlm56.sys
+ 2001-08-17 09:11:22 30,282 -c--a-w C:\WINDOWS\system32\dllcache\pcntn5hl.sys
+ 2001-08-17 09:11:20 29,769 -c--a-w C:\WINDOWS\system32\dllcache\pcntn5m.sys
+ 2001-08-17 09:11:22 35,328 -c--a-w C:\WINDOWS\system32\dllcache\pcntpci5.sys
+ 2001-09-18 11:05:54 86,016 -c--a-w C:\WINDOWS\system32\dllcache\pctspk.exe
+ 2004-08-03 19:06:18 169,984 -c--a-w C:\WINDOWS\system32\dllcache\pcx500.sys
+ 2001-08-17 11:07:40 27,296 -c--a-w C:\WINDOWS\system32\dllcache\perc2.sys
+ 2001-08-17 11:07:42 5,504 -c--a-w C:\WINDOWS\system32\dllcache\perc2hib.sys
+ 2004-08-03 20:06:56 27,904 -c--a-w C:\WINDOWS\system32\dllcache\perm2.sys
+ 2004-08-03 21:54:16 211,712 -c--a-w C:\WINDOWS\system32\dllcache\perm2dll.dll
+ 2004-08-03 20:06:58 28,032 -c--a-w C:\WINDOWS\system32\dllcache\perm3.sys
+ 2004-08-03 21:54:16 259,328 -c--a-w C:\WINDOWS\system32\dllcache\perm3dd.dll
+ 2001-09-18 11:04:56 16,384 -c--a-w C:\WINDOWS\system32\dllcache\philcam1.dll
+ 2001-08-17 11:04:50 75,776 -c--a-w C:\WINDOWS\system32\dllcache\philcam1.sys
+ 2001-08-17 11:04:08 173,696 -c--a-w C:\WINDOWS\system32\dllcache\philcam2.sys
+ 2001-08-17 11:04:04 92,416 -c--a-w C:\WINDOWS\system32\dllcache\phildec.sys
+ 2001-08-17 11:07:20 19,840 -c--a-w C:\WINDOWS\system32\dllcache\philtune.sys
+ 2001-09-18 11:04:56 121,344 -c--a-w C:\WINDOWS\system32\dllcache\phvfwext.dll
+ 2004-08-03 22:08:00 35,328 -c--a-w C:\WINDOWS\system32\dllcache\pid.dll
+ 2004-08-03 22:08:00 15,360 -c--a-w C:\WINDOWS\system32\dllcache\pjlmon.dll
+ 2001-08-17 10:53:04 7,168 -c--a-w C:\WINDOWS\system32\dllcache\pnrmc.sys
+ 2001-08-17 10:53:14 7,552 -c--a-w C:\WINDOWS\system32\dllcache\powerfil.sys
+ 2001-08-17 10:53:22 17,792 -c--a-w C:\WINDOWS\system32\dllcache\ppa.sys
+ 2004-08-03 20:00:18 17,664 -c--a-w C:\WINDOWS\system32\dllcache\ppa3.sys
+ 2004-08-03 22:08:00 39,168 -c--a-w C:\WINDOWS\system32\dllcache\processr.sys
+ 2001-09-18 10:52:36 16,128 -c--a-w C:\WINDOWS\system32\dllcache\pscr.sys
+ 2004-08-03 21:55:48 363,520 -c--a-w C:\WINDOWS\system32\dllcache\psisdecd.dll
+ 2001-09-18 11:04:58 35,328 -c--a-w C:\WINDOWS\system32\dllcache\psisload.dll
+ 2001-09-18 11:04:58 5,632 -c--a-w C:\WINDOWS\system32\dllcache\ptpusb.dll
+ 2004-08-03 21:55:48 159,232 -c--a-w C:\WINDOWS\system32\dllcache\ptpusd.dll
+ 2001-08-17 10:28:12 128,286 -c--a-w C:\WINDOWS\system32\dllcache\ptserli.sys
+ 2001-08-17 10:28:14 112,574 -c--a-w C:\WINDOWS\system32\dllcache\ptserlp.sys
+ 2001-08-17 10:28:14 130,942 -c--a-w C:\WINDOWS\system32\dllcache\ptserlv.sys
+ 2004-08-03 20:00:06 6,016 -c--a-w C:\WINDOWS\system32\dllcache\qic157.sys
+ 2001-08-17 10:52:20 40,320 -c--a-w C:\WINDOWS\system32\dllcache\ql1080.sys
+ 2001-08-17 10:52:16 33,152 -c--a-w C:\WINDOWS\system32\dllcache\ql10wnt.sys
+ 2001-08-17 10:52:20 45,312 -c--a-w C:\WINDOWS\system32\dllcache\ql12160.sys
+ 2001-08-17 10:52:16 40,448 -c--a-w C:\WINDOWS\system32\dllcache\ql1240.sys
+ 2001-08-17 10:52:18 49,024 -c--a-w C:\WINDOWS\system32\dllcache\ql1280.sys
+ 2001-08-17 10:53:32 3,328 -c--a-w C:\WINDOWS\system32\dllcache\qv2kux.sys
+ 2001-09-18 11:05:00 41,472 -c--a-w C:\WINDOWS\system32\dllcache\qvusd.dll
+ 2001-09-18 10:52:56 899,146 -c--a-w C:\WINDOWS\system32\dllcache\r2mdkxga.sys
+ 2001-09-18 10:52:56 714,762 -c--a-w C:\WINDOWS\system32\dllcache\r2mdmkxx.sys
+ 2001-08-17 10:51:32 19,584 -c--a-w C:\WINDOWS\system32\dllcache\rasirda.sys
+ 2004-08-03 20:01:16 196,864 -c--a-w C:\WINDOWS\system32\dllcache\rdpdr.sys
+ 2004-08-03 19:41:40 13,776 -c--a-w C:\WINDOWS\system32\dllcache\recagent.sys
+ 2004-08-04 00:41:18 57,216 -c--a-w C:\WINDOWS\system32\dllcache\redbook.sys
+ 2001-09-18 11:05:02 86,097 -c--a-w C:\WINDOWS\system32\dllcache\reslog32.dll
+ 2004-08-03 20:10:40 59,648 -c--a-w C:\WINDOWS\system32\dllcache\rfcomm.sys
+ 2001-09-19 12:00:00 12,032 -c--a-w C:\WINDOWS\system32\dllcache\rio8drv.sys
+ 2001-09-19 12:00:00 12,032 -c--a-w C:\WINDOWS\system32\dllcache\riodrv.sys
+ 2001-08-17 09:12:36 37,563 -c--a-w C:\WINDOWS\system32\dllcache\rlnet5.sys
+ 2004-08-03 20:04:32 30,080 -c--a-w C:\WINDOWS\system32\dllcache\rndismpx.sys
+ 2004-08-03 21:41:56 79,104 -c--a-w C:\WINDOWS\system32\dllcache\rocket.sys
+ 2001-08-17 09:19:20 3,840 -c--a-w C:\WINDOWS\system32\dllcache\rpfun.sys
+ 2001-09-18 11:05:04 9,216 -c--a-w C:\WINDOWS\system32\dllcache\rsmgrstr.dll
+ 2001-08-17 09:19:22 30,720 -c--a-w C:\WINDOWS\system32\dllcache\rthwcls.sys
+ 2001-08-17 09:12:40 19,017 -c--a-w C:\WINDOWS\system32\dllcache\rtl8029.sys
+ 2004-08-03 19:31:34 20,992 -c--a-w C:\WINDOWS\system32\dllcache\rtl8139.sys
+ 2001-09-18 11:05:06 24,576 -c--a-w C:\WINDOWS\system32\dllcache\rw430ext.dll
+ 2001-09-18 11:05:06 26,624 -c--a-w C:\WINDOWS\system32\dllcache\rw450ext.dll
+ 2001-09-18 11:05:06 79,872 -c--a-w C:\WINDOWS\system32\dllcache\rwia430.dll
+ 2001-09-18 11:05:06 82,432 -c--a-w C:\WINDOWS\system32\dllcache\rwia450.dll
+ 2004-08-03 21:55:50 397,056 -c--a-w C:\WINDOWS\system32\dllcache\s3gnb.dll
+ 2004-08-03 19:29:52 166,912 -c--a-w C:\WINDOWS\system32\dllcache\s3gnbm.sys
+ 2001-09-18 11:03:24 66,048 -c--a-w C:\WINDOWS\system32\dllcache\s3legacy.dll
+ 2001-08-17 10:57:46 65,664 -c--a-w C:\WINDOWS\system32\dllcache\s3legacy.sys
+ 2001-08-17 09:50:34 166,720 -c--a-w C:\WINDOWS\system32\dllcache\s3m.sys
+ 2001-09-18 11:03:26 182,272 -c--a-w C:\WINDOWS\system32\dllcache\s3mt3d.dll
+ 2001-08-17 09:50:40 41,216 -c--a-w C:\WINDOWS\system32\dllcache\s3mt3d.sys
+ 2001-09-18 11:03:26 62,496 -c--a-w C:\WINDOWS\system32\dllcache\s3mtrio.dll
+ 2001-09-18 11:03:26 210,496 -c--a-w C:\WINDOWS\system32\dllcache\s3mvirge.dll
+ 2001-09-18 11:03:26 179,264 -c--a-w C:\WINDOWS\system32\dllcache\s3sav3d.dll
+ 2001-08-17 09:50:22 61,504 -c--a-w C:\WINDOWS\system32\dllcache\s3sav3dm.sys
+ 2001-09-18 11:03:26 198,400 -c--a-w C:\WINDOWS\system32\dllcache\s3sav4.dll
+ 2001-08-17 09:50:28 77,824 -c--a-w C:\WINDOWS\system32\dllcache\s3sav4m.sys
+ 2001-09-18 11:03:26 245,632 -c--a-w C:\WINDOWS\system32\dllcache\s3savmx.dll
+ 2001-08-17 09:50:34 75,392 -c--a-w C:\WINDOWS\system32\dllcache\s3savmxm.sys
+ 2001-09-18 11:05:06 495,616 -c--a-w C:\WINDOWS\system32\dllcache\sblfx.dll
+ 2004-08-03 19:59:58 43,136 -c--a-w C:\WINDOWS\system32\dllcache\sbp2port.sys
+ 2001-09-18 10:26:54 23,936 -c--a-w C:\WINDOWS\system32\dllcache\sccmn50m.sys
+ 2001-08-17 10:51:14 23,936 -c--a-w C:\WINDOWS\system32\dllcache\sccmusbm.sys
+ 2001-09-18 10:27:02 16,640 -c--a-w C:\WINDOWS\system32\dllcache\scmstcs.sys
+ 2001-09-18 10:27:04 17,280 -c--a-w C:\WINDOWS\system32\dllcache\scr111.sys
+ 2004-08-03 19:59:42 96,256 -c--a-w C:\WINDOWS\system32\dllcache\scsiport.sys
+ 2001-08-17 10:52:34 11,648 -c--a-w C:\WINDOWS\system32\dllcache\scsiprnt.sys
+ 2001-08-17 10:53:26 10,880 -c--a-w C:\WINDOWS\system32\dllcache\scsiscan.sys
+ 2004-08-03 20:07:48 67,584 -c--a-w C:\WINDOWS\system32\dllcache\sdbus.sys
+ 2004-08-03 21:55:50 29,184 -c--a-w C:\WINDOWS\system32\dllcache\sdhcinst.dll
+ 2001-08-17 10:53:10 6,912 -c--a-w C:\WINDOWS\system32\dllcache\seaddsmc.sys
+ 2004-08-03 19:59:08 15,488 -c--a-w C:\WINDOWS\system32\dllcache\serenum.sys
+ 2004-08-03 21:43:14 64,384 -c--a-w C:\WINDOWS\system32\dllcache\serial.sys
+ 2001-09-18 10:27:22 17,664 -c--a-w C:\WINDOWS\system32\dllcache\sermouse.sys
+ 2001-09-18 10:27:22 6,784 -c--a-w C:\WINDOWS\system32\dllcache\serscan.sys
+ 2004-08-03 19:59:56 11,136 -c--a-w C:\WINDOWS\system32\dllcache\sffdisk.sys
+ 2004-08-03 19:59:56 10,240 -c--a-w C:\WINDOWS\system32\dllcache\sffp_sd.sys
+ 2004-08-03 19:59:56 11,392 -c--a-w C:\WINDOWS\system32\dllcache\sfloppy.sys
+ 2001-08-17 09:19:34 36,480 -c--a-w C:\WINDOWS\system32\dllcache\sfmanm.sys
+ 2001-09-18 11:03:26 386,560 -c--a-w C:\WINDOWS\system32\dllcache\sgiul50.dll
+ 2001-08-17 09:51:04 98,080 -c--a-w C:\WINDOWS\system32\dllcache\sgiulnt5.sys
+ 2001-07-21 11:29:20 18,400 -c--a-w C:\WINDOWS\system32\dllcache\sgsmld.sys
+ 2001-09-18 10:27:42 161,568 -c--a-w C:\WINDOWS\system32\dllcache\sgsmusb.sys
+ 2004-08-03 21:55:52 3,901 -c--a-w C:\WINDOWS\system32\dllcache\siint5.dll
+ 2001-08-17 09:50:46 101,760 -c--a-w C:\WINDOWS\system32\dllcache\sis300ip.sys
+ 2001-09-18 11:03:26 252,032 -c--a-w C:\WINDOWS\system32\dllcache\sis300iv.dll
+ 2001-08-17 09:50:56 68,608 -c--a-w C:\WINDOWS\system32\dllcache\sis6306p.sys
+ 2001-09-18 11:03:26 150,144 -c--a-w C:\WINDOWS\system32\dllcache\sis6306v.dll
+ 2004-08-03 20:07:44 41,088 -c--a-w C:\WINDOWS\system32\dllcache\sisagp.sys
+ 2001-08-17 09:50:48 104,064 -c--a-w C:\WINDOWS\system32\dllcache\sisgrp.sys
+ 2001-09-18 11:05:16 238,592 -c--a-w C:\WINDOWS\system32\dllcache\sisgrv.dll
+ 2004-08-03 19:31:36 32,768 -c--a-w C:\WINDOWS\system32\dllcache\sisnic.sys
+ 2001-08-17 09:50:56 50,432 -c--a-w C:\WINDOWS\system32\dllcache\sisv.sys
+ 2001-09-18 11:03:26 157,696 -c--a-w C:\WINDOWS\system32\dllcache\sisv256.dll
+ 2001-09-18 10:29:44 94,762 -c--a-w C:\WINDOWS\system32\dllcache\sk98xwin.sys
+ 2001-08-17 09:12:52 91,294 -c--a-w C:\WINDOWS\system32\dllcache\skfpwin.sys
+ 2004-08-03 19:31:42 63,547 -c--a-w C:\WINDOWS\system32\dllcache\sla30nd5.sys
+ 2004-08-03 21:55:52 73,832 -c--a-w C:\WINDOWS\system32\dllcache\slcoinst.dll
+ 2004-08-03 21:55:52 286,792 -c--a-w C:\WINDOWS\system32\dllcache\slextspk.dll
+ 2004-08-03 21:55:52 188,508 -c--a-w C:\WINDOWS\system32\dllcache\slgen.dll
+ 2004-08-03 20:10:18 11,136 -c--a-w C:\WINDOWS\system32\dllcache\slip.sys
+ 2004-08-03 19:41:42 129,535 -c--a-w C:\WINDOWS\system32\dllcache\slnt7554.sys
+ 2004-08-03 19:41:44 404,990 -c--a-w C:\WINDOWS\system32\dllcache\slntamr.sys
+ 2004-08-03 19:41:46 95,424 -c--a-w C:\WINDOWS\system32\dllcache\slnthal.sys
+ 2004-08-03 21:56:30 32,866 -c--a-w C:\WINDOWS\system32\dllcache\slrundll.exe
+ 2004-08-03 21:56:30 73,796 -c--a-w C:\WINDOWS\system32\dllcache\slserv.exe
+ 2004-08-03 19:41:46 13,240 -c--a-w C:\WINDOWS\system32\dllcache\slwdmsup.sys
+ 2001-09-18 11:05:16 28,160 -c--a-w C:\WINDOWS\system32\dllcache\sm91w.dll
+ 2001-09-18 11:05:16 28,672 -c--a-w C:\WINDOWS\system32\dllcache\sma0w.dll
+ 2001-09-18 11:05:16 33,792 -c--a-w C:\WINDOWS\system32\dllcache\smb0w.dll
+ 2001-09-18 11:05:16 45,568 -c--a-w C:\WINDOWS\system32\dllcache\smb3w.dll
+ 2004-08-03 20:07:38 6,016 -c--a-w C:\WINDOWS\system32\dllcache\smbali.sys
+ 2004-08-03 20:07:36 16,128 -c--a-w C:\WINDOWS\system32\dllcache\smbbatt.sys
+ 2004-08-03 20:07:36 6,912 -c--a-w C:\WINDOWS\system32\dllcache\smbclass.sys
+ 2001-08-17 10:57:56 6,784 -c--a-w C:\WINDOWS\system32\dllcache\smbhc.sys
+ 2001-08-17 09:12:46 24,576 -c--a-w C:\WINDOWS\system32\dllcache\smc8000n.sys
+ 2001-09-18 10:29:54 35,913 -c--a-w C:\WINDOWS\system32\dllcache\smcirda.sys
+ 2001-08-17 09:12:48 25,034 -c--a-w C:\WINDOWS\system32\dllcache\smcpwr2n.sys
+ 2001-09-18 11:03:26 147,200 -c--a-w C:\WINDOWS\system32\dllcache\smidispb.dll
+ 2001-08-17 09:51:00 58,368 -c--a-w C:\WINDOWS\system32\dllcache\smiminib.sys
+ 2001-08-17 10:53:14 7,040 -c--a-w C:\WINDOWS\system32\dllcache\snyaitmc.sys
+ 2004-08-03 20:00:06 7,552 -c--a-w C:\WINDOWS\system32\dllcache\sonyait.sys
+ 2004-08-03 22:08:00 25,472 -c--a-w C:\WINDOWS\system32\dllcache\sonydcam.sys
+ 2001-08-17 10:53:04 9,600 -c--a-w C:\WINDOWS\system32\dllcache\sonymc.sys
+ 2001-08-17 09:51:20 20,752 -c--a-w C:\WINDOWS\system32\dllcache\sonync.sys
+ 2001-09-18 11:05:16 114,688 -c--a-w C:\WINDOWS\system32\dllcache\sonypi.dll
+ 2001-08-17 09:51:22 37,040 -c--a-w C:\WINDOWS\system32\dllcache\sonypi.sys
+ 2001-08-17 10:56:16 7,552 -c--a-w C:\WINDOWS\system32\dllcache\sonypvu1.sys
+ 2001-08-17 11:07:44 19,072 -c--a-w C:\WINDOWS\system32\dllcache\sparrow.sys
+ 2001-09-18 11:05:18 106,584 -c--a-w C:\WINDOWS\system32\dllcache\spdports.dll
+ 2001-08-17 10:51:00 61,824 -c--a-w C:\WINDOWS\system32\dllcache\speed.sys
+ 2001-09-19 12:00:00 69,632 -c--a-w C:\WINDOWS\system32\dllcache\spnike.dll
+ 2001-09-19 12:00:00 70,656 -c--a-w C:\WINDOWS\system32\dllcache\sprio600.dll
+ 2001-09-19 12:00:00 72,192 -c--a-w C:\WINDOWS\system32\dllcache\sprio800.dll
+ 2001-09-18 11:05:18 24,660 -c--a-w C:\WINDOWS\system32\dllcache\spxupchk.dll
+ 2001-09-18 11:05:18 99,328 -c--a-w C:\WINDOWS\system32\dllcache\srusd.dll
+ 2001-08-17 09:11:08 48,736 -c--a-w C:\WINDOWS\system32\dllcache\srwlnd5.sys
+ 2001-09-18 10:31:06 16,896 -c--a-w C:\WINDOWS\system32\dllcache\stcusb.sys
+ 2001-09-18 10:31:14 285,760 -c--a-w C:\WINDOWS\system32\dllcache\stlnata.sys
+ 2001-09-18 11:05:20 53,248 -c--a-w C:\WINDOWS\system32\dllcache\stlncoin.dll
+ 2001-09-18 11:05:20 155,648 -c--a-w C:\WINDOWS\system32\dllcache\stlnprop.dll
+ 2004-08-04 00:55:54 74,240 -c--a-w C:\WINDOWS\system32\dllcache\storprop.dll
+ 2001-09-19 12:00:00 8,192 -c--a-w C:\WINDOWS\system32\dllcache\streamci.dll
+ 2004-08-03 20:10:14 15,360 -c--a-w C:\WINDOWS\system32\dllcache\streamip.sys
+ 2001-09-18 11:05:20 41,472 -c--a-w C:\WINDOWS\system32\dllcache\sw_effct.dll
+ 2001-09-18 11:05:20 53,760 -c--a-w C:\WINDOWS\system32\dllcache\sw_wheel.dll
+ 2004-08-03 22:08:00 4,352 -c--a-w C:\WINDOWS\system32\dllcache\swenum.sys
+ 2001-09-18 11:05:20 10,240 -c--a-w C:\WINDOWS\system32\dllcache\swpdflt2.dll
+ 2001-09-18 11:05:20 10,240 -c--a-w C:\WINDOWS\system32\dllcache\swpidflt.dll
+ 2001-08-17 11:02:56 3,968 -c--a-w C:\WINDOWS\system32\dllcache\swusbflt.sys
+ 2001-08-17 10:50:58 103,936 -c--a-w C:\WINDOWS\system32\dllcache\sx.sys
+ 2001-09-18 11:05:20 94,293 -c--a-w C:\WINDOWS\system32\dllcache\sxports.dll
+ 2001-08-17 11:07:40 28,384 -c--a-w C:\WINDOWS\system32\dllcache\sym_hi.sys
+ 2001-08-17 11:07:42 30,688 -c--a-w C:\WINDOWS\system32\dllcache\sym_u3.sys
+ 2001-08-17 11:07:34 16,256 -c--a-w C:\WINDOWS\system32\dllcache\symc810.sys
+ 2001-08-17 11:07:36 32,640 -c--a-w C:\WINDOWS\system32\dllcache\symc8xx.sys
+ 2001-09-18 11:03:26 172,768 -c--a-w C:\WINDOWS\system32\dllcache\t2r4disp.dll
+ 2001-08-17 09:50:12 36,640 -c--a-w C:\WINDOWS\system32\dllcache\t2r4mini.sys
+ 2001-08-17 10:52:54 7,040 -c--a-w C:\WINDOWS\system32\dllcache\tandqic.sys
+ 2001-08-17 10:49:46 30,464 -c--a-w C:\WINDOWS\system32\dllcache\tbatm155.sys
+ 2001-08-17 09:13:00 37,961 -c--a-w C:\WINDOWS\system32\dllcache\tdk100b.sys
+ 2001-08-17 09:13:00 17,129 -c--a-w C:\WINDOWS\system32\dllcache\tdkcd31.sys
+ 2004-08-03 21:56:48 40,840 -c--a-w C:\WINDOWS\system32\dllcache\termdd.sys
+ 2004-08-03 20:00:06 149,376 -c--a-w C:\WINDOWS\system32\dllcache\tffsport.sys
+ 2001-09-18 11:03:26 81,408 -c--a-w C:\WINDOWS\system32\dllcache\tgiul50.dll
+ 2001-08-17 09:51:10 138,528 -c--a-w C:\WINDOWS\system32\dllcache\tgiulnt5.sys
+ 2001-08-17 09:14:26 123,995 -c--a-w C:\WINDOWS\system32\dllcache\tjisdn.sys
+ 2001-08-17 09:10:26 28,232 -c--a-w C:\WINDOWS\system32\dllcache\tos4mo.sys
+ 2001-09-19 12:00:00 51,712 -c--a-w C:\WINDOWS\system32\dllcache\tosdvd.sys
+ 2001-08-17 11:01:52 241,664 -c--a-w C:\WINDOWS\system32\dllcache\tosdvd02.sys
+ 2001-08-17 11:02:00 230,912 -c--a-w C:\WINDOWS\system32\dllcache\tosdvd03.sys
+ 2001-09-18 10:33:54 4,992 -c--a-w C:\WINDOWS\system32\dllcache\toside.sys
+ 2001-09-18 11:05:22 31,744 -c--a-w C:\WINDOWS\system32\dllcache\tp4.dll
+ 2004-08-03 21:56:34 82,432 -c--a-w C:\WINDOWS\system32\dllcache\tp4mon.exe
+ 2001-09-18 11:02:54 42,496 -c--a-w C:\WINDOWS\system32\dllcache\tp4res.dll
+ 2001-08-17 09:12:12 34,375 -c--a-w C:\WINDOWS\system32\dllcache\tpro4.sys
+ 2001-09-18 11:03:26 315,520 -c--a-w C:\WINDOWS\system32\dllcache\trid3d.dll
+ 2001-08-17 09:51:16 222,336 -c--a-w C:\WINDOWS\system32\dllcache\trid3dm.sys
+ 2001-09-18 11:03:26 440,576 -c--a-w C:\WINDOWS\system32\dllcache\tridkb.dll
+ 2001-08-17 09:51:16 159,232 -c--a-w C:\WINDOWS\system32\dllcache\tridkbm.sys
+ 2001-09-18 11:05:22 525,568 -c--a-w C:\WINDOWS\system32\dllcache\tridxp.dll
+ 2001-08-17 09:51:22 166,784 -c--a-w C:\WINDOWS\system32\dllcache\tridxpm.sys
+ 2001-09-19 12:00:00 21,376 -c--a-w C:\WINDOWS\system32\dllcache\tsbvcap.sys
+ 2001-09-19 12:00:00 8,192 -c--a-w C:\WINDOWS\system32\dllcache\tsbyuv.dll
+ 2004-08-03 22:08:00 12,416 -c--a-w C:\WINDOWS\system32\dllcache\tunmp.sys
+ 2001-08-17 10:48:14 11,520 -c--a-w C:\WINDOWS\system32\dllcache\twotrack.sys
+ 2004-08-03 20:07:44 44,672 -c--a-w C:\WINDOWS\system32\dllcache\uagp35.sys
+ 2001-08-17 10:52:22 36,736 -c--a-w C:\WINDOWS\system32\dllcache\ultra.sys
+ 2001-09-18 11:05:24 216,064 -c--a-w C:\WINDOWS\system32\dllcache\um34scan.dll
+ 2001-09-18 11:05:24 211,968 -c--a-w C:\WINDOWS\system32\dllcache\um54scan.dll
+ 2001-09-18 11:05:24 47,616 -c--a-w C:\WINDOWS\system32\dllcache\umaxcam.dll
+ 2001-09-18 11:05:24 50,176 -c--a-w C:\WINDOWS\system32\dllcache\umaxp60.dll
+ 2001-08-17 10:58:12 22,912 -c--a-w C:\WINDOWS\system32\dllcache\umaxpcls.sys
+ 2001-09-18 11:05:24 50,688 -c--a-w C:\WINDOWS\system32\dllcache\umaxscan.dll
+ 2001-09-18 11:05:24 69,632 -c--a-w C:\WINDOWS\system32\dllcache\umaxu12.dll
+ 2001-09-18 11:05:24 26,624 -c--a-w C:\WINDOWS\system32\dllcache\umaxu22.dll
+ 2001-09-18 11:05:24 28,160 -c--a-w C:\WINDOWS\system32\dllcache\umaxu40.dll
+ 2001-09-18 11:05:24 94,720 -c--a-w C:\WINDOWS\system32\dllcache\umaxud32.dll
+ 2004-08-03 21:44:00 32,384 -c--a-w C:\WINDOWS\system32\dllcache\usb101et.sys
+ 2004-08-03 20:04:34 12,672 -c--a-w C:\WINDOWS\system32\dllcache\usb8023x.sys
+ 2004-08-03 20:07:56 59,264 -c--a-w C:\WINDOWS\system32\dllcache\usbaudio.sys
+ 2001-09-19 12:00:00 23,808 -c--a-w C:\WINDOWS\system32\dllcache\usbcamd.sys
+ 2001-09-19 12:00:00 23,936 -c--a-w C:\WINDOWS\system32\dllcache\usbcamd2.sys
+ 2004-08-03 20:08:48 31,616 -c--a-w C:\WINDOWS\system32\dllcache\usbccgp.sys
+ 2001-09-19 12:00:00 4,736 -c--a-w C:\WINDOWS\system32\dllcache\usbd.sys
+ 2004-08-03 22:08:00 16,000 -c--a-w C:\WINDOWS\system32\dllcache\usbintel.sys
+ 2004-08-03 20:08:38 17,024 -c--a-w C:\WINDOWS\system32\dllcache\usbohci.sys
+ 2004-08-03 20:01:26 25,856 -c--a-w C:\WINDOWS\system32\dllcache\usbprint.sys
+ 2004-08-03 19:58:46 15,104 -c--a-w C:\WINDOWS\system32\dllcache\usbscan.sys
+ 2004-08-03 20:08:44 25,600 -c--a-w C:\WINDOWS\system32\dllcache\usbser.sys
+ 2004-08-03 20:10:12 78,464 -c--a-w C:\WINDOWS\system32\dllcache\usbvideo.sys
+ 2001-08-17 10:28:16 794,654 -c--a-w C:\WINDOWS\system32\dllcache\usr1801.sys
+ 2001-08-17 10:28:16 793,598 -c--a-w C:\WINDOWS\system32\dllcache\usr1806.sys
+ 2001-08-17 10:28:18 794,399 -c--a-w C:\WINDOWS\system32\dllcache\usr1806v.sys
+ 2001-08-17 10:28:24 224,802 -c--a-w C:\WINDOWS\system32\dllcache\usr1807a.sys
+ 2001-09-19 12:00:00 61,500 -c--a-w C:\WINDOWS\system32\dllcache\usrcntra.dll
+ 2001-09-19 12:00:00 69,699 -c--a-w C:\WINDOWS\system32\dllcache\usrcoina.dll
+ 2001-09-19 12:00:00 77,890 -c--a-w C:\WINDOWS\system32\dllcache\usrdpa.dll
+ 2001-09-19 12:00:00 323,641 -c--a-w C:\WINDOWS\system32\dllcache\usrdtea.dll
+ 2001-09-19 12:00:00 86,073 -c--a-w C:\WINDOWS\system32\dllcache\usrfaxa.dll
+ 2001-09-19 12:00:00 53,305 -c--a-w C:\WINDOWS\system32\dllcache\usrlbva.dll
+ 2001-09-19 12:00:00 77,891 -c--a-w C:\WINDOWS\system32\dllcache\usrmlnka.exe
+ 2001-08-17 10:28:24 7,556 -c--a-w C:\WINDOWS\system32\dllcache\usroslba.sys
+ 2001-08-17 10:28:26 113,762 -c--a-w C:\WINDOWS\system32\dllcache\usrpda.sys
+ 2001-09-19 12:00:00 61,508 -c--a-w C:\WINDOWS\system32\dllcache\usrprbda.exe
+ 2001-09-19 12:00:00 77,883 -c--a-w C:\WINDOWS\system32\dllcache\usrrtosa.dll
+ 2001-09-19 12:00:00 49,211 -c--a-w C:\WINDOWS\system32\dllcache\usrsdpia.dll
+ 2001-09-19 12:00:00 69,700 -c--a-w C:\WINDOWS\system32\dllcache\usrshuta.exe
+ 2001-09-19 12:00:00 41,019 -c--a-w C:\WINDOWS\system32\dllcache\usrsvpia.dll
+ 2001-08-17 10:28:14 765,884 -c--a-w C:\WINDOWS\system32\dllcache\usrti.sys
+ 2001-09-19 12:00:00 102,457 -c--a-w C:\WINDOWS\system32\dllcache\usrv42a.dll
+ 2001-09-19 12:00:00 49,209 -c--a-w C:\WINDOWS\system32\dllcache\usrv80a.dll
+ 2001-09-19 12:00:00 45,116 -c--a-w C:\WINDOWS\system32\dllcache\usrvoica.dll
+ 2001-09-19 12:00:00 49,211 -c--a-w C:\WINDOWS\system32\dllcache\usrvpa.dll
+ 2001-08-17 10:28:26 687,999 -c--a-w C:\WINDOWS\system32\dllcache\usrwdxjs.sys
+ 2004-08-03 21:55:54 11,325 -c--a-w C:\WINDOWS\system32\dllcache\vchnt5.dll
+ 2001-09-19 12:00:00 58,112 -c--a-w C:\WINDOWS\system32\dllcache\vdmindvd.sys
+ 2004-08-03 21:55:54 53,760 -c--a-w C:\WINDOWS\system32\dllcache\vfwwdm32.dll
+ 2004-08-03 20:07:44 42,240 -c--a-w C:\WINDOWS\system32\dllcache\viaagp.sys
+ 2004-08-03 19:59:44 5,376 -c--a-w C:\WINDOWS\system32\dllcache\viaide.sys
+ 2001-08-17 10:49:04 24,576 -c--a-w C:\WINDOWS\system32\dllcache\viairda.sys
+ 2001-08-17 09:14:12 249,402 -c--a-w C:\WINDOWS\system32\dllcache\vinwm.sys
+ 2001-08-17 10:28:14 604,253 -c--a-w C:\WINDOWS\system32\dllcache\vmodem.sys
+ 2001-08-17 10:28:16 397,502 -c--a-w C:\WINDOWS\system32\dllcache\vpctcom.sys
+ 2001-08-17 10:28:16 64,605 -c--a-w C:\WINDOWS\system32\dllcache\vvoice.sys
+ 2001-08-17 09:13:08 19,528 -c--a-w C:\WINDOWS\system32\dllcache\w840nd.sys
+ 2001-08-17 09:13:08 19,016 -c--a-w C:\WINDOWS\system32\dllcache\w926nd.sys
+ 2001-08-17 09:13:12 16,925 -c--a-w C:\WINDOWS\system32\dllcache\w940nd.sys
+ 2004-08-03 20:04:54 13,568 -c--a-w C:\WINDOWS\system32\dllcache\wacompen.sys
+ 2004-08-03 19:29:38 12,415 -c--a-w C:\WINDOWS\system32\dllcache\wadv01nt.sys
+ 2004-08-03 19:29:38 12,127 -c--a-w C:\WINDOWS\system32\dllcache\wadv02nt.sys
+ 2004-08-03 19:29:38 11,775 -c--a-w C:\WINDOWS\system32\dllcache\wadv05nt.sys
+ 2004-08-03 19:29:40 11,807 -c--a-w C:\WINDOWS\system32\dllcache\wadv07nt.sys
+ 2004-08-03 19:29:40 11,295 -c--a-w C:\WINDOWS\system32\dllcache\wadv08nt.sys
+ 2004-08-03 19:29:42 11,871 -c--a-w C:\WINDOWS\system32\dllcache\wadv09nt.sys
+ 2004-08-03 19:29:42 11,935 -c--a-w C:\WINDOWS\system32\dllcache\wadv11nt.sys
+ 2004-08-03 19:29:42 29,311 -c--a-w C:\WINDOWS\system32\dllcache\watv01nt.sys
+ 2004-08-03 19:29:44 19,551 -c--a-w C:\WINDOWS\system32\dllcache\watv02nt.sys
+ 2004-08-03 19:29:44 33,599 -c--a-w C:\WINDOWS\system32\dllcache\watv04nt.sys
+ 2004-08-03 19:29:46 22,271 -c--a-w C:\WINDOWS\system32\dllcache\watv06nt.sys
+ 2004-08-03 19:29:46 25,471 -c--a-w C:\WINDOWS\system32\dllcache\watv10nt.sys
+ 2001-08-17 09:10:30 35,871 -c--a-w C:\WINDOWS\system32\dllcache\wbfirdma.sys
+ 2004-08-03 21:45:48 31,872 -c--a-w C:\WINDOWS\system32\dllcache\wceusbsh.sys
+ 2004-08-03 19:29:46 23,615 -c--a-w C:\WINDOWS\system32\dllcache\wch7xxnt.sys
+ 2001-08-17 10:28:02 701,386 -c--a-w C:\WINDOWS\system32\dllcache\wdhaalba.sys
+ 2001-09-18 11:05:30 87,040 -c--a-w C:\WINDOWS\system32\dllcache\wiafbdrv.dll
+ 2001-09-18 11:05:30 53,760 -c--a-w C:\WINDOWS\system32\dllcache\wiamsmud.dll
+ 2001-08-17 10:28:14 771,581 -c--a-w C:\WINDOWS\system32\dllcache\winacisa.sys
+ 2001-09-18 10:38:36 34,890 -c--a-w C:\WINDOWS\system32\dllcache\wlandrv2.sys
+ 2004-08-03 19:31:28 154,624 -c--a-w C:\WINDOWS\system32\dllcache\wlluc48.sys
+ 2004-08-03 23:07:42 8,832 -c--a-w C:\WINDOWS\system32\dllcache\wmiacpi.sys
+ 2001-09-19 12:00:00 3,200 -c--a-w C:\WINDOWS\system32\dllcache\wowfax.dll
+ 2001-09-19 12:00:00 13,824 -c--a-w C:\WINDOWS\system32\dllcache\wowfaxui.dll
+ 2004-08-03 21:56:00 108,032 -c--a-w C:\WINDOWS\system32\dllcache\wshbth.dll
+ 2004-08-03 21:56:00 8,192 -c--a-w C:\WINDOWS\system32\dllcache\wshirda.dll
+ 2004-08-03 19:29:48 12,063 -c--a-w C:\WINDOWS\system32\dllcache\wsiintxx.sys
+ 2004-08-03 20:10:22 19,328 -c--a-w C:\WINDOWS\system32\dllcache\wstcodec.sys
+ 2004-08-03 19:29:50 19,455 -c--a-w C:\WINDOWS\system32\dllcache\wvchntxx.sys
+ 2004-08-03 22:08:00 51,712 -c--a-w C:\WINDOWS\system32\dllcache\wzcsapi.dll
+ 2004-08-03 22:08:00 359,936 -c--a-w C:\WINDOWS\system32\dllcache\wzcsvc.dll
+ 2001-08-17 09:11:14 16,970 -c--a-w C:\WINDOWS\system32\dllcache\xem336n5.sys
+ 2001-09-18 11:06:06 99,865 -c--a-w C:\WINDOWS\system32\dllcache\xlog.exe
+ 2001-09-18 11:06:06 4,608 -c--a-w C:\WINDOWS\system32\dllcache\xrxflnch.exe
+ 2001-09-18 11:06:06 27,648 -c--a-w C:\WINDOWS\system32\dllcache\xrxftplt.exe
+ 2001-09-18 11:05:36 17,408 -c--a-w C:\WINDOWS\system32\dllcache\xrxscnui.dll
+ 2001-09-18 11:05:36 23,040 -c--a-w C:\WINDOWS\system32\dllcache\xrxwbtmp.dll
+ 2004-08-03 21:56:02 116,224 -c--a-w C:\WINDOWS\system32\dllcache\xrxwiadr.dll
+ 2008-03-25 02:32:44 218,496 ----a-r C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe
+ 2008-07-28 22:05:12 74,649 ----a-w C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
- 2008-07-24 15:48:10 41,274 ----a-w C:\WINDOWS\system32\perfc001.dat
+ 2008-07-30 11:12:30 41,274 ----a-w C:\WINDOWS\system32\perfc001.dat
- 2008-07-24 15:48:10 41,170 ----a-w C:\WINDOWS\system32\perfc009.dat
+ 2008-07-30 11:12:30 41,170 ----a-w C:\WINDOWS\system32\perfc009.dat
- 2008-07-24 15:48:10 254,594 ----a-w C:\WINDOWS\system32\perfh001.dat
+ 2008-07-30 11:12:30 254,594 ----a-w C:\WINDOWS\system32\perfh001.dat
- 2008-07-24 15:48:10 314,842 ----a-w C:\WINDOWS\system32\perfh009.dat
+ 2008-07-30 11:12:30 314,842 ----a-w C:\WINDOWS\system32\perfh009.dat
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 12:56 AM 15360]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [01/19/2007 12:55 PM 5674352]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [08/04/2004 12:56 AM 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.YV12"= yv12vfw.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^قائمة ابدأ^البرامج^بدء التشغيل^Bluetooth.lnk]
path=C:\Documents and Settings\All Users\قائمة ابدأ\البرامج\بدء التشغيل\Bluetooth.lnk
backup=C:\WINDOWS\pss\Bluetooth.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Broadcom Wireless Manager UI]
--a------ 06/22/2006 05:48 PM 1384448 C:\WINDOWS\system32\WLTRAY.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell QuickSet]
--------- 08/03/2006 06:51 PM 1032192 C:\Program Files\Dell\QuickSet\quickset.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
--a------ 10/27/2006 12:47 AM 31016 C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
--a------ 12/13/2005 05:41 PM 77824 C:\WINDOWS\system32\hkcmd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
--a------ 12/13/2005 05:45 PM 118784 C:\WINDOWS\system32\igfxpers.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
--a------ 12/13/2005 05:44 PM 98304 C:\WINDOWS\system32\igfxtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--------- 08/04/2004 01:09 AM 1667584 C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
--------- 01/19/2007 12:55 PM 5674352 C:\Program Files\MSN Messenger\msnmsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
--------- 03/08/2006 12:48 PM 761947 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp]
--a------ 03/24/2006 05:30 PM 282624 C:\WINDOWS\stsystra.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
R3 klim5;Kaspersky Anti-Virus NDIS Filter;C:\WINDOWS\system32\DRIVERS\klim5.sys [04/04/2007 02:58 PM]
*Newly Created Service* - CATCHME
.
.
------- Supplementary Scan -------
.
R0 -: HKCU-Main,Start Page = hxxp://www.mhqonline.com/
O8 -: &تصدير إلى Microsoft Excel - C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 -: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 -: ت&صدير إلى Microsoft Excel - C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


Rootkit scan 2008-07-30 14:41:57
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 07/30/2008 14:43:21
ComboFix-quarantined-files.txt 2008-07-30 11:43:16
ComboFix2.txt 2008-07-24 15:52:40
Pre-Run: 13,668,757,504 bytes free
Post-Run: 13,741,191,168 bytes free
1017
 

عزيزي بقى تقرير الهايجاك
 
توقيع : فارس الملاك
وهذا الهايجاك يا عزيزي :


Logfile of HijackThis v1.99.1
Scan saved at 01:21:15 م, on 31/07/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\خالد\سطح المكتب\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe" -r (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
 
تقريرك سليم

نزل ملف الاعدادات وطبق مثل الي بالصور



اعدادات الكاسبر انتي فايروس ( 7 )

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


z1.gif


شرح التركيب


000.png



001.png



002.png



003.png





بعد تثبيتها اي رسالة تخرج نعمل لها سماح (allow )


بعدها افحص جهازك بالكامل
 
توقيع : فارس الملاك
اوكي فااارس


راح اجربها ////

مع اني كنت متوقع انه من الوفيس ولما فحصت الاوفيس من ملف البروقرام ما طلع منه
 
في انتظارك
 
توقيع : فارس الملاك
عودة
أعلى