ComboFix
"al3alawi" - 2008-09-26 20:30:58 Service Pack 3
ComboFix 07-05.27.BV - Running from: "E:\êéه ¦ں­ éں§يں¢ ں颭éï¥\ں§يں¢ ں颭éï¥\ں§يں¢ êىê،\pacote-ATF-Cleaner+ComboFix+HiJackThis_v2+\pacote - hijackthis\"
((((((((((((((((((((((((((((((( Files Created from 2008-08-26 to 2008-09-26 ))))))))))))))))))))))))))))))))))
2008-09-26 20:25 98,816 --a------ C:\WINDOWS\sed.exe
2008-09-26 20:25 89,504 --a------ C:\WINDOWS\fdsv.exe
2008-09-26 20:25 80,412 --a------ C:\WINDOWS\grep.exe
2008-09-26 20:25 68,096 --a------ C:\WINDOWS\zip.exe
2008-09-26 20:25 49,152 --a------ C:\WINDOWS\VFind.exe
2008-09-26 20:25 28,672 --a------ C:\WINDOWS\Nircmd.exe
2008-09-26 20:25 212,480 --a------ C:\WINDOWS\swxcacls.exe
2008-09-26 20:25 161,792 --a------ C:\WINDOWS\swreg.exe
2008-09-26 20:25 136,704 --a------ C:\WINDOWS\swsc.exe
2008-09-26 09:25 398 --a------ C:\WINDOWS\system32\tmp.reg
2008-09-26 09:08 <DIR> d-------- C:\Program Files\IObit
2008-09-26 08:38 <DIR> d-------- C:\Zyzoom_RFA_Platinum
2008-09-26 08:38 <DIR> d-------- C:\DOCUME~1\ALLUSE~1.WIN\APPLIC~1\RFA_Backups
2008-09-26 03:13 299,520 --a------ C:\WINDOWS\uninst.exe
2008-09-26 03:13 <DIR> d-------- C:\Program Files\TonTin Press
2008-09-26 01:28 32,256 --a------ C:\WINDOWS\system32\bbcap.dll
2008-09-26 01:28 3,584 --a------ C:\WINDOWS\system32\bbchlp.dll
2008-09-26 01:28 2,944 --a------ C:\WINDOWS\system32\drivers\bbcap.sys
2008-09-26 00:59 <DIR> d-------- C:\Program Files\DiskTrix
2008-09-25 23:24 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\GoodSync
2008-09-25 23:19 <DIR> d-------- C:\Program Files\Siber Systems
2008-09-25 23:19 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\RoboForm
2008-09-25 22:03 <DIR> d-------- C:\Program Files\Download Direct
2008-09-25 08:19 <DIR> d-------- C:\Program Files\SoftwareDoctor
2008-09-25 03:44 <DIR> d-a------ C:\Program Files\Messenger
2008-09-25 01:56 <DIR> d-------- C:\Program Files\Teorex
2008-09-24 23:55 <DIR> d-------- C:\Program Files\Winstep
2008-09-24 21:35 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2008-09-24 21:35 <DIR> d-------- C:\WINDOWS\system32\drivers\UMDF
2008-09-24 08:21 <DIR> d-------- C:\My Media Files
2008-09-24 08:19 5,600 --a------ C:\WINDOWS\system\WINASPI.DLL
2008-09-24 08:19 45,056 --a------ C:\WINDOWS\system32\WNASPI32.DLL
2008-09-24 08:19 4,672 --a------ C:\WINDOWS\system\WOWPOST.EXE
2008-09-24 08:19 17,005 --a------ C:\WINDOWS\system32\drivers\ASPI32.SYS
2008-09-24 07:46 <DIR> d-------- C:\Program Files\Aurora Media Workshop
2008-09-24 07:23 <DIR> d-------- C:\Program Files\Byte Doctor Pro
2008-09-24 03:55 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\FaceOnBody
2008-09-24 03:48 <DIR> d-------- C:\WINDOWS\Prefetch
2008-09-24 03:39 <DIR> d-------- C:\WINDOWS\system32\scripting
2008-09-24 03:39 <DIR> d-------- C:\WINDOWS\system32\bits
2008-09-24 03:39 <DIR> d-------- C:\WINDOWS\l2schemas
2008-09-24 03:37 <DIR> d-------- C:\WINDOWS\ServicePackFiles
2008-09-24 03:35 <DIR> d-------- C:\WINDOWS\network diagnostic
2008-09-24 03:33 <DIR> d-------- C:\WINDOWS\system32\ReinstallBackups
2008-09-24 03:24 69,120 --------- C:\WINDOWS\system32\wlanapi.dll
2008-09-24 03:23 95,424 --------- C:\WINDOWS\system32\drivers\slnthal.sys
2008-09-24 03:23 79,872 --a------ C:\WINDOWS\system32\msxml6r.dll
2008-09-24 03:23 76,800 --------- C:\WINDOWS\system32\qutil.dll
2008-09-24 03:23 76,800 --------- C:\WINDOWS\system32\msshavmsg.dll
2008-09-24 03:23 73,832 --------- C:\WINDOWS\system32\slcoinst.dll
2008-09-24 03:23 73,796 --------- C:\WINDOWS\system32\slserv.exe
2008-09-24 03:23 7,680 --a------ C:\WINDOWS\system32\spdwnwxp.exe
2008-09-24 03:23 62,464 --------- C:\WINDOWS\system32\qcliprov.dll
2008-09-24 03:23 61,952 --------- C:\WINDOWS\system32\rasqec.dll
2008-09-24 03:23 53,248 --------- C:\WINDOWS\system32\tsgqec.dll
2008-09-24 03:23 50,688 --------- C:\WINDOWS\system32\tspkg.dll
2008-09-24 03:23 5,888 --------- C:\WINDOWS\system32\drivers\smbali.sys
2008-09-24 03:23 452,736 --------- C:\WINDOWS\system32\drivers\mtxparhm.sys
2008-09-24 03:23 44,672 --------- C:\WINDOWS\system32\drivers\uagp35.sys
2008-09-24 03:23 42,240 --------- C:\WINDOWS\system32\drivers\viaagp.sys
2008-09-24 03:23 404,990 --------- C:\WINDOWS\system32\drivers\slntamr.sys
2008-09-24 03:23 40,960 --------- C:\WINDOWS\system32\drivers\sisagp.sys
2008-09-24 03:23 397,056 --------- C:\WINDOWS\system32\s3gnb.dll
2008-09-24 03:23 32,866 --------- C:\WINDOWS\system32\slrundll.exe
2008-09-24 03:23 32,866 --------- C:\WINDOWS\slrundll.exe
2008-09-24 03:23 32,768 --------- C:\WINDOWS\system32\setupn.exe
2008-09-24 03:23 30,592 --------- C:\WINDOWS\system32\drivers\rndismpx.sys
2008-09-24 03:23 30,208 --------- C:\WINDOWS\system32\napipsec.dll
2008-09-24 03:23 30,208 --------- C:\WINDOWS\system32\drivers\usbehci.sys
2008-09-24 03:23 3,901 --------- C:\WINDOWS\system32\drivers\siint5.dll
2008-09-24 03:23 291,328 --------- C:\WINDOWS\system32\qagentrt.dll
2008-09-24 03:23 290,304 --------- C:\WINDOWS\system32\rhttpaa.dll
2008-09-24 03:23 286,792 --------- C:\WINDOWS\system32\slextspk.dll
2008-09-24 03:23 25,471 --------- C:\WINDOWS\system32\drivers\watv10nt.sys
2008-09-24 03:23 22,271 --------- C:\WINDOWS\system32\drivers\watv06nt.sys
2008-09-24 03:23 20,992 --------- C:\WINDOWS\system32\spupdwxp.exe
2008-09-24 03:23 193,024 --------- C:\WINDOWS\system32\napmontr.dll
2008-09-24 03:23 188,508 --------- C:\WINDOWS\system32\slgen.dll
2008-09-24 03:23 180,360 --------- C:\WINDOWS\system32\drivers\ntmtlfax.sys
2008-09-24 03:23 176,640 --------- C:\WINDOWS\system32\napstat.exe
2008-09-24 03:23 166,912 --------- C:\WINDOWS\system32\drivers\s3gnbm.sys
2008-09-24 03:23 155,136 --------- C:\WINDOWS\system32\mssha.dll
2008-09-24 03:23 150,528 --------- C:\WINDOWS\system32\qagent.dll
2008-09-24 03:23 144,384 --------- C:\WINDOWS\system32\onex.dll
2008-09-24 03:23 14,208 --------- C:\WINDOWS\system32\drivers\wacompen.sys
2008-09-24 03:23 13,776 --------- C:\WINDOWS\system32\drivers\recagent.sys
2008-09-24 03:23 13,240 --------- C:\WINDOWS\system32\drivers\slwdmsup.sys
2008-09-24 03:23 129,535 --------- C:\WINDOWS\system32\drivers\slnt7554.sys
2008-09-24 03:23 126,686 --------- C:\WINDOWS\system32\drivers\mtlmnt5.sys
2008-09-24 03:23 121,984 --------- C:\WINDOWS\system32\drivers\usbvideo.sys
2008-09-24 03:23 12,800 --------- C:\WINDOWS\system32\drivers\usb8023x.sys
2008-09-24 03:23 12,672 --------- C:\WINDOWS\system32\drivers\mutohpen.sys
2008-09-24 03:23 11,935 --------- C:\WINDOWS\system32\drivers\wadv11nt.sys
2008-09-24 03:23 11,871 --------- C:\WINDOWS\system32\drivers\wadv09nt.sys
2008-09-24 03:23 11,807 --------- C:\WINDOWS\system32\drivers\wadv07nt.sys
2008-09-24 03:23 11,325 --------- C:\WINDOWS\system32\drivers\vchnt5.dll
2008-09-24 03:23 11,295 --------- C:\WINDOWS\system32\drivers\wadv08nt.sys
2008-09-24 03:23 10,240 --------- C:\WINDOWS\system32\drivers\sffp_mmc.sys
2008-09-24 03:23 1,737,856 --------- C:\WINDOWS\system32\mtxparhd.dll
2008-09-24 03:23 1,309,184 --------- C:\WINDOWS\system32\drivers\mtlstrm.sys
2008-09-24 03:22 94,208 --------- C:\WINDOWS\system32\eappgnui.dll
2008-09-24 03:22 9,728 --------- C:\WINDOWS\system32\rwnh.dll
2008-09-24 03:22 9,728 --------- C:\WINDOWS\system32\comsdupd.exe
2008-09-24 03:22 9,216 --------- C:\WINDOWS\system32\dot3dlg.dll
2008-09-24 03:22 86,016 --------- C:\WINDOWS\system32\mdmxsdk.dll
2008-09-24 03:22 7,168 --------- C:\WINDOWS\system32\hccoin.dll
2008-09-24 03:22 685,056 --------- C:\WINDOWS\system32\drivers\hsfcxts2.sys
2008-09-24 03:22 650,752 --------- C:\WINDOWS\system32\dot3ui.dll
2008-09-24 03:22 61,440 --------- C:\WINDOWS\system32\kmsvc.dll
2008-09-24 03:22 59,392 --------- C:\WINDOWS\system32\eapqec.dll
2008-09-24 03:22 57,856 --------- C:\WINDOWS\system32\dot3cfg.dll
2008-09-24 03:22 56,320 --------- C:\WINDOWS\system32\dot3msm.dll
2008-09-24 03:22 48,640 --------- C:\WINDOWS\system32\dhcpqec.dll
2008-09-24 03:22 46,592 --------- C:\WINDOWS\system32\drivers\irbus.sys
2008-09-24 03:22 46,464 --------- C:\WINDOWS\system32\drivers\gagp30kx.sys
2008-09-24 03:22 40,960 --------- C:\WINDOWS\system32\eappprxy.dll
2008-09-24 03:22 39,936 --------- C:\WINDOWS\system32\dot3gpclnt.dll
2008-09-24 03:22 39,936 --------- C:\WINDOWS\system32\dimsroam.dll
2008-09-24 03:22 37,376 --------- C:\WINDOWS\system32\l2gpstore.dll
2008-09-24 03:22 33,792 --------- C:\WINDOWS\system32\eapsvc.dll
2008-09-24 03:22 32,285 --------- C:\WINDOWS\system32\hsfcisp2.dll
2008-09-24 03:22 30,720 --------- C:\WINDOWS\system32\eapolqec.dll
2008-09-24 03:22 26,112 --------- C:\WINDOWS\system32\dot3api.dll
2008-09-24 03:22 25,600 --------- C:\WINDOWS\system32\drivers\hidbth.sys
2008-09-24 03:22 220,032 --------- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
2008-09-24 03:22 20,992 --------- C:\WINDOWS\system32\faxpatch.exe
2008-09-24 03:22 19,456 --------- C:\WINDOWS\system32\dimsntfy.dll
2008-09-24 03:22 19,200 --------- C:\WINDOWS\system32\drivers\hidir.sys
2008-09-24 03:22 184,832 --------- C:\WINDOWS\system32\eapp3hst.dll
2008-09-24 03:22 180,224 --------- C:\WINDOWS\system32\eapphost.dll
2008-09-24 03:22 15,423 --------- C:\WINDOWS\system32\drivers\ch7xxnt5.dll
2008-09-24 03:22 132,096 --------- C:\WINDOWS\system32\dot3svc.dll
2008-09-24 03:22 126,976 --------- C:\WINDOWS\system32\eappcfg.dll
2008-09-24 03:22 12,800 --------- C:\WINDOWS\system32\credssp.dll
2008-09-24 03:22 11,868 --------- C:\WINDOWS\system32\drivers\mdmxsdk.sys
2008-09-24 03:22 10,752 --------- C:\WINDOWS\system32\smtpapi.dll
2008-09-24 03:22 1,041,536 --------- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
2008-09-24 03:21 870,784 --------- C:\WINDOWS\system32\ati3d1ag.dll
2008-09-24 03:21 73,216 --------- C:\WINDOWS\system32\drivers\atintuxx.sys
2008-09-24 03:21 701,440 --------- C:\WINDOWS\system32\drivers\ati2mtag.sys
2008-09-24 03:21 7,168 --------- C:\WINDOWS\system32\bitsprx4.dll
2008-09-24 03:21 63,663 --------- C:\WINDOWS\system32\drivers\ati1rvxx.sys
2008-09-24 03:21 63,488 --------- C:\WINDOWS\system32\drivers\atinxsxx.sys
2008-09-24 03:21 57,856 --------- C:\WINDOWS\system32\drivers\atinbtxx.sys
2008-09-24 03:21 56,623 --------- C:\WINDOWS\system32\drivers\ati1btxx.sys
2008-09-24 03:21 52,224 --------- C:\WINDOWS\system32\drivers\atinraxx.sys
2008-09-24 03:21 516,768 --------- C:\WINDOWS\system32\ativvaxx.dll
2008-09-24 03:21 44,928 --------- C:\WINDOWS\system32\drivers\agpcpq.sys
2008-09-24 03:21 43,008 --------- C:\WINDOWS\system32\drivers\amdagp.sys
2008-09-24 03:21 42,752 --------- C:\WINDOWS\system32\drivers\alim1541.sys
2008-09-24 03:21 4,255 --------- C:\WINDOWS\system32\drivers\adv01nt5.dll
2008-09-24 03:21 377,984 --------- C:\WINDOWS\system32\ati2dvaa.dll
2008-09-24 03:21 36,480 --------- C:\WINDOWS\system32\drivers\bthprint.sys
2008-09-24 03:21 36,463 --------- C:\WINDOWS\system32\drivers\ati1tuxx.sys
2008-09-24 03:21 34,735 --------- C:\WINDOWS\system32\drivers\ati1xsxx.sys
2008-09-24 03:21 327,040 --------- C:\WINDOWS\system32\drivers\ati2mtaa.sys
2008-09-24 03:21 32,768 --------- C:\WINDOWS\system32\ativtmxx.dll
2008-09-24 03:21 31,744 --------- C:\WINDOWS\system32\drivers\atinxbxx.sys
2008-09-24 03:21 30,671 --------- C:\WINDOWS\system32\drivers\ati1raxx.sys
2008-09-24 03:21 3,967 --------- C:\WINDOWS\system32\drivers\adv02nt5.dll
2008-09-24 03:21 3,775 --------- C:\WINDOWS\system32\drivers\adv11nt5.dll
2008-09-24 03:21 3,711 --------- C:\WINDOWS\system32\drivers\adv09nt5.dll
2008-09-24 03:21 3,647 --------- C:\WINDOWS\system32\drivers\adv07nt5.dll
2008-09-24 03:21 3,615 --------- C:\WINDOWS\system32\drivers\adv05nt5.dll
2008-09-24 03:21 3,135 --------- C:\WINDOWS\system32\drivers\adv08nt5.dll
2008-09-24 03:21 29,455 --------- C:\WINDOWS\system32\drivers\ati1xbxx.sys
2008-09-24 03:21 28,672 --------- C:\WINDOWS\system32\drivers\atinsnxx.sys
2008-09-24 03:21 26,367 --------- C:\WINDOWS\system32\drivers\ati1snxx.sys
2008-09-24 03:21 25,471 --------- C:\WINDOWS\system32\drivers\atv04nt5.dll
2008-09-24 03:21 233,472 --------- C:\WINDOWS\system32\azroles.dll
2008-09-24 03:21 229,376 --------- C:\WINDOWS\system32\ati2cqag.dll
2008-09-24 03:21 21,343 --------- C:\WINDOWS\system32\drivers\ati1ttxx.sys
2008-09-24 03:21 21,183 --------- C:\WINDOWS\system32\drivers\atv01nt5.dll
2008-09-24 03:21 201,728 --------- C:\WINDOWS\system32\ati2dvag.dll
2008-09-24 03:21 17,279 --------- C:\WINDOWS\system32\drivers\atv10nt5.dll
2008-09-24 03:21 14,336 --------- C:\WINDOWS\system32\drivers\atinpdxx.sys
2008-09-24 03:21 14,143 --------- C:\WINDOWS\system32\drivers\atv06nt5.dll
2008-09-24 03:21 136,192 --------- C:\WINDOWS\system32\aaclient.dll
2008-09-24 03:21 13,824 --------- C:\WINDOWS\system32\drivers\atinttxx.sys
2008-09-24 03:21 13,824 --------- C:\WINDOWS\system32\drivers\atinmdxx.sys
2008-09-24 03:21 12,047 --------- C:\WINDOWS\system32\drivers\ati1pdxx.sys
2008-09-24 03:21 11,615 --------- C:\WINDOWS\system32\drivers\ati1mdxx.sys
2008-09-24 03:21 11,359 --------- C:\WINDOWS\system32\drivers\atv02nt5.dll
2008-09-24 03:21 104,960 --------- C:\WINDOWS\system32\drivers\atinrvxx.sys
2008-09-24 03:21 1,888,992 --------- C:\WINDOWS\system32\ati3duag.dll
2008-09-23 23:02 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
2008-09-23 22:19 6,291,456 --a------ C:\Documents and Settings\al3alawi\ntuser.dat
2008-09-23 22:19 6,291,456 --a------ C:\DOCUME~1\al3alawi\ntuser.dat
2008-09-23 21:02 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\URSoft
2008-09-23 06:25 <DIR> d-------- C:\Documents and Settings\al3alawi\Tracing
2008-09-23 06:25 <DIR> d-------- C:\DOCUME~1\al3alawi\Tracing
2008-09-23 06:15 64,512 --ah----- C:\DOCUME~1\al3alawi\APPLIC~1\dach100.dll
2008-09-23 05:47 <DIR> d-------- C:\Program Files\Microsoft SQL Server Compact Edition
2008-09-23 05:17 213 --ah----- C:\WINDOWS\winshell.dat
2008-09-23 05:17 <DIR> d-------- C:\Program Files\Dachshund Software
2008-09-23 04:47 1,632 --a------ C:\WINDOWS\system32\d3d8caps.dat
2008-09-22 05:32 <DIR> d-------- C:\Program Files\PowerISO
2008-09-22 01:17 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\Ashampoo
2008-09-22 01:10 <DIR> d-------- C:\Program Files\Timesave Software
2008-09-21 05:12 45,568 --a------ C:\WINDOWS\system32\YM11AUTH.DLL
2008-09-21 05:07 153,600 --a------ C:\WINDOWS\system32\TLBINF32.DLL
2008-09-21 04:15 <DIR> d-------- C:\Program Files\Uniblue
2008-09-21 04:15 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\Uniblue
2008-09-21 04:13 <DIR> d--h-c--- C:\DOCUME~1\ALLUSE~1\APPLIC~1\{2840BBCB-9BEC-47F6-BA0F-10D3C34BF151}
2008-09-21 04:06 1,384,479 --a------ C:\WINDOWS\system32\msvbvm60.dll
2008-09-21 02:26 <DIR> d-------- C:\Program Files\Error Repair Professional
2008-09-21 01:14 0 --a------ C:\WINDOWS\system32\Ultra.dll
2008-09-21 01:12 <DIR> d-------- C:\Program Files\Bug Doctor
2008-09-20 22:01 <DIR> d-------- C:\Program Files\OneStep
2008-09-20 21:35 81,768 --a------ C:\WINDOWS\system32\xinput1_3.dll
2008-09-20 21:35 68,616 --a------ C:\WINDOWS\system32\XAPOFX1_1.dll
2008-09-20 21:35 65,032 --a------ C:\WINDOWS\system32\XAPOFX1_0.dll
2008-09-20 21:35 62,744 --a------ C:\WINDOWS\system32\xinput1_2.dll
2008-09-20 21:35 509,448 --a------ C:\WINDOWS\system32\XAudio2_2.dll
2008-09-20 21:35 507,400 --a------ C:\WINDOWS\system32\XAudio2_1.dll
2008-09-20 21:35 479,752 --a------ C:\WINDOWS\system32\XAudio2_0.dll
2008-09-20 21:35 467,984 --a------ C:\WINDOWS\system32\d3dx10_39.dll
2008-09-20 21:35 467,984 --a------ C:\WINDOWS\system32\d3dx10_38.dll
2008-09-20 21:35 462,864 --a------ C:\WINDOWS\system32\d3dx10_37.dll
2008-09-20 21:35 444,776 --a------ C:\WINDOWS\system32\d3dx10_36.dll
2008-09-20 21:35 444,776 --a------ C:\WINDOWS\system32\d3dx10_35.dll
2008-09-20 21:35 443,752 --a------ C:\WINDOWS\system32\d3dx10_34.dll
2008-09-20 21:35 443,752 --a------ C:\WINDOWS\system32\d3dx10_33.dll
2008-09-20 21:35 3,851,784 --a------ C:\WINDOWS\system32\D3DX9_39.dll
2008-09-20 21:35 3,850,760 --a------ C:\WINDOWS\system32\D3DX9_38.dll
2008-09-20 21:35 3,786,760 --a------ C:\WINDOWS\system32\D3DX9_37.dll
2008-09-20 21:35 3,734,536 --a------ C:\WINDOWS\system32\d3dx9_36.dll
2008-09-20 21:35 3,727,720 --a------ C:\WINDOWS\system32\d3dx9_35.dll
2008-09-20 21:35 3,497,832 --a------ C:\WINDOWS\system32\d3dx9_34.dll
2008-09-20 21:35 3,495,784 --a------ C:\WINDOWS\system32\d3dx9_33.dll
2008-09-20 21:35 3,426,072 --a------ C:\WINDOWS\system32\d3dx9_32.dll
2008-09-20 21:35 267,272 --a------ C:\WINDOWS\system32\xactengine2_10.dll
2008-09-20 21:35 267,112 --a------ C:\WINDOWS\system32\xactengine2_9.dll
2008-09-20 21:35 266,088 --a------ C:\WINDOWS\system32\xactengine2_8.dll
2008-09-20 21:35 261,480 --a------ C:\WINDOWS\system32\xactengine2_7.dll
2008-09-20 21:35 255,848 --a------ C:\WINDOWS\system32\xactengine2_6.dll
2008-09-20 21:35 251,672 --a------ C:\WINDOWS\system32\xactengine2_5.dll
2008-09-20 21:35 25,608 --a------ C:\WINDOWS\system32\X3DAudio1_4.dll
2008-09-20 21:35 25,608 --a------ C:\WINDOWS\system32\X3DAudio1_3.dll
2008-09-20 21:35 238,088 --a------ C:\WINDOWS\system32\xactengine3_2.dll
2008-09-20 21:35 238,088 --a------ C:\WINDOWS\system32\xactengine3_1.dll
2008-09-20 21:35 238,088 --a------ C:\WINDOWS\system32\xactengine3_0.dll
2008-09-20 21:35 237,848 --a------ C:\WINDOWS\system32\xactengine2_4.dll
2008-09-20 21:35 236,824 --a------ C:\WINDOWS\system32\xactengine2_3.dll
2008-09-20 21:35 2,414,360 --a------ C:\WINDOWS\system32\d3dx9_31.dll
2008-09-20 21:35 17,928 --a------ C:\WINDOWS\system32\X3DAudio1_2.dll
2008-09-20 21:35 15,128 --a------ C:\WINDOWS\system32\x3daudio1_1.dll
2008-09-20 21:35 1,493,528 --a------ C:\WINDOWS\system32\D3DCompiler_39.dll
2008-09-20 21:35 1,491,992 --a------ C:\WINDOWS\system32\D3DCompiler_38.dll
2008-09-20 21:35 1,420,824 --a------ C:\WINDOWS\system32\D3DCompiler_37.dll
2008-09-20 21:35 1,374,232 --a------ C:\WINDOWS\system32\D3DCompiler_36.dll
2008-09-20 21:35 1,358,192 --a------ C:\WINDOWS\system32\D3DCompiler_35.dll
2008-09-20 21:35 1,124,720 --a------ C:\WINDOWS\system32\D3DCompiler_34.dll
2008-09-20 21:35 1,123,696 --a------ C:\WINDOWS\system32\D3DCompiler_33.dll
2008-09-20 20:44 <DIR> d-------- C:\WINDOWS\Logs
2008-09-20 20:43 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
2008-09-20 07:13 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\BinarySense
2008-09-20 06:49 25,808 --a------ C:\WINDOWS\ctl3dv2.dll
2008-09-20 06:49 <DIR> d-------- C:\Animagic
2008-09-20 04:23 1,744 --a------ C:\WINDOWS\system32\d3d9caps.dat
2008-09-20 01:12 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\Thinstall
2008-09-19 01:45 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\Help
2008-09-19 01:18 98,304 --a------ C:\WINDOWS\system32\LTFIL90N.DLL
2008-09-19 01:18 93,184 --a------ C:\WINDOWS\system32\LFTIF70N.DLL
2008-09-19 01:18 88,576 --a------ C:\WINDOWS\system32\LFFPX90N.DLL
2008-09-19 01:18 81,408 --a------ C:\WINDOWS\system32\LTIMG70N.DLL
2008-09-19 01:18 64,512 --a------ C:\WINDOWS\system32\LFFAX90N.DLL
2008-09-19 01:18 6,144 --a------ C:\WINDOWS\system32\AWDCXC32.DLL
2008-09-19 01:18 58,880 --a------ C:\WINDOWS\system32\NPPLG90N.DLL
2008-09-19 01:18 55,808 --a------ C:\WINDOWS\system32\LFFAX70N.DLL
2008-09-19 01:18 55,296 --a------ C:\WINDOWS\system32\LTFIL70N.DLL
2008-09-19 01:18 46,592 --a------ C:\WINDOWS\system32\LFICA90N.DLL
2008-09-19 01:18 39,936 --a------ C:\WINDOWS\system32\LFGIF90N.DLL
2008-09-19 01:18 38,912 --a------ C:\WINDOWS\system32\LTISI90N.DLL
2008-09-19 01:18 36,864 --a------ C:\WINDOWS\system32\LTWND90N.DLL
2008-09-19 01:18 350,208 --a------ C:\WINDOWS\system32\LTKRN70N.DLL
2008-09-19 01:18 35,840 --a------ C:\WINDOWS\system32\LFLMA90N.DLL
2008-09-19 01:18 35,328 --a------ C:\WINDOWS\system32\LTTWN90N.DLL
2008-09-19 01:18 35,328 --a------ C:\WINDOWS\system32\LFFPX70N.DLL
2008-09-19 01:18 344,064 --a------ C:\WINDOWS\system32\LFFPX7.DLL
2008-09-19 01:18 33,792 --a------ C:\WINDOWS\system32\LFBMP90N.DLL
2008-09-19 01:18 32,768 --a------ C:\WINDOWS\system32\LFGIF70N.DLL
2008-09-19 01:18 31,232 --a------ C:\WINDOWS\system32\LFPCX90N.DLL
2008-09-19 01:18 31,232 --a------ C:\WINDOWS\system32\LFPCT90N.DLL
2008-09-19 01:18 31,232 --a------ C:\WINDOWS\system32\LFLMB90N.DLL
2008-09-19 01:18 31,232 --a------ C:\WINDOWS\system32\LFEPS90N.DLL
2008-09-19 01:18 30,208 --a------ C:\WINDOWS\system32\LTWND70N.DLL
2008-09-19 01:18 3,824 --a------ C:\WINDOWS\system32\LTTHK90W.DLL
2008-09-19 01:18 3,824 --a------ C:\WINDOWS\system32\LTTHK70W.DLL
2008-09-19 01:18 29,184 --a------ C:\WINDOWS\system32\LFPSD90N.DLL
2008-09-19 01:18 280,064 --a------ C:\WINDOWS\system32\LTKRN90N.DLL
2008-09-19 01:18 28,672 --a------ C:\WINDOWS\system32\LFLMA70N.DLL
2008-09-19 01:18 28,672 --a------ C:\WINDOWS\system32\LFAWD90N.DLL
2008-09-19 01:18 28,160 --a------ C:\WINDOWS\system32\LFWMF90N.DLL
2008-09-19 01:18 28,160 --a------ C:\WINDOWS\system32\LFTGA90N.DLL
2008-09-19 01:18 27,648 --a------ C:\WINDOWS\system32\LFWPG90N.DLL
2008-09-19 01:18 27,136 --a------ C:\WINDOWS\system32\LFIMG90N.DLL
2008-09-19 01:18 26,624 --a------ C:\WINDOWS\system32\LFPCD90N.DLL
2008-09-19 01:18 26,624 --a------ C:\WINDOWS\system32\LFCAL90N.DLL
2008-09-19 01:18 26,624 --a------ C:\WINDOWS\system32\AWRESX32.DLL
2008-09-19 01:18 26,112 --a------ C:\WINDOWS\system32\LFRAS90N.DLL
2008-09-19 01:18 26,112 --a------ C:\WINDOWS\system32\LFMSP90N.DLL
2008-09-19 01:18 26,112 --a------ C:\WINDOWS\system32\LFICA70N.DLL
2008-09-19 01:18 254,976 --a------ C:\WINDOWS\system32\LTANN90N.DLL
2008-09-19 01:18 25,600 --a------ C:\WINDOWS\system32\LTTWN70N.DLL
2008-09-19 01:18 25,600 --a------ C:\WINDOWS\system32\LFWFX90N.DLL
2008-09-19 01:18 25,600 --a------ C:\WINDOWS\system32\LFMAC90N.DLL
2008-09-19 01:18 25,088 --a------ C:\WINDOWS\system32\LFLMB70N.DLL
2008-09-19 01:18 24,576 --a------ C:\WINDOWS\system32\LFPCX70N.DLL
2008-09-19 01:18 24,576 --a------ C:\WINDOWS\system32\LFBMP70N.DLL
2008-09-19 01:18 24,576 --a------ C:\WINDOWS\system32\LFAVI90N.DLL
2008-09-19 01:18 24,576 --a------ C:\WINDOWS\system32\AWCODC32.DLL
2008-09-19 01:18 24,064 --a------ C:\WINDOWS\system32\LFPCT70N.DLL
2008-09-19 01:18 24,064 --a------ C:\WINDOWS\system32\LFEPS70N.DLL
2008-09-19 01:18 236,032 --a------ C:\WINDOWS\system32\LFDIC90N.DLL
2008-09-19 01:18 235,008 --a------ C:\WINDOWS\system32\LFCMP90N.DLL
2008-09-19 01:18 23,040 --a------ C:\WINDOWS\system32\NPPLG70N.DLL
2008-09-19 01:18 224,768 --a------ C:\WINDOWS\system32\LFCMP70N.DLL
2008-09-19 01:18 220,160 --a------ C:\WINDOWS\system32\LTDIS90N.DLL
2008-09-19 01:18 220,160 --a------ C:\WINDOWS\system32\LFDIC70N.DLL
2008-09-19 01:18 22,016 --a------ C:\WINDOWS\system32\LFPSD70N.DLL
2008-09-19 01:18 212,480 --a------ C:\WINDOWS\system32\PCDLIB32.DLL
2008-09-19 01:18 21,504 --a------ C:\WINDOWS\system32\LFWMF70N.DLL
2008-09-19 01:18 20,992 --a------ C:\WINDOWS\system32\LFTGA70N.DLL
2008-09-19 01:18 20,480 --a------ C:\WINDOWS\system32\LFWPG70N.DLL
2008-09-19 01:18 20,480 --a------ C:\WINDOWS\system32\LFIMG70N.DLL
2008-09-19 01:18 196,096 --a------ C:\WINDOWS\system32\LTANN70N.DLL
2008-09-19 01:18 19,968 --a------ C:\WINDOWS\system32\LFCAL70N.DLL
2008-09-19 01:18 19,456 --a------ C:\WINDOWS\system32\LFRAS70N.DLL
2008-09-19 01:18 19,456 --a------ C:\WINDOWS\system32\LFPCD70N.DLL
2008-09-19 01:18 19,456 --a------ C:\WINDOWS\system32\LFMSP70N.DLL
2008-09-19 01:18 18,944 --a------ C:\WINDOWS\system32\LFWFX70N.DLL
2008-09-19 01:18 18,944 --a------ C:\WINDOWS\system32\LFMAC70N.DLL
2008-09-19 01:18 17,920 --a------ C:\WINDOWS\system32\LFAVI70N.DLL
2008-09-19 01:18 147,968 --a------ C:\WINDOWS\system32\LTDLG90N.DLL
2008-09-19 01:18 146,432 --a------ C:\WINDOWS\system32\LTEFX90N.DLL
2008-09-19 01:18 133,632 --a------ C:\WINDOWS\system32\LFPNG90N.DLL
2008-09-19 01:18 122,880 --a------ C:\WINDOWS\system32\LFKODAK.DLL
2008-09-19 01:18 118,272 --a------ C:\WINDOWS\system32\LFTIF90N.DLL
2008-09-19 01:18 111,104 --a------ C:\WINDOWS\system32\LFPNG70N.DLL
2008-09-19 01:18 11,776 --a------ C:\WINDOWS\system32\AWDENC32.DLL
2008-09-19 01:18 107,008 --a------ C:\WINDOWS\system32\LTIMG90N.DLL
2008-09-19 01:18 10,240 --a------ C:\WINDOWS\system32\AWVIEW32.DLL
2008-09-19 01:18 <DIR> d-------- C:\Program Files\Professor Franklin
2008-09-18 09:27 <DIR> d-------- C:\Program Files\inKline Global
2008-09-18 08:51 <DIR> d--h----- C:\WINDOWS\PIF
2008-09-18 07:53 <DIR> d-------- C:\Program Files\Flash Banner Creator
2008-09-18 03:43 <DIR> d-------- C:\My Music
2008-09-18 03:27 <DIR> d-------- C:\Program Files\SpeederXP
2008-09-17 20:46 <DIR> d-------- C:\WINDOWS\system32\appmgmt
2008-09-17 08:18 <DIR> d--h----- C:\WINDOWS\system32\GroupPolicy
2008-09-17 07:53 <DIR> d-------- C:\WINDOWS\system32\NtmsData
2008-09-17 07:19 <DIR> d-------- C:\Program Files\edBlockDetector 2.0
2008-09-17 04:01 26,112 --a------ C:\WINDOWS\system32\drivers\usbser.sys
2008-09-17 03:50 21,632 --a------ C:\WINDOWS\system32\drivers\pccsmcfd.sys
2008-09-17 03:50 <DIR> d-------- C:\Program Files\PC Connectivity Solution
2008-09-17 03:50 <DIR> d-------- C:\Program Files\Common Files\PCSuite
2008-09-17 03:50 <DIR> d-------- C:\Program Files\Common Files\Nokia
2008-09-17 03:49 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2008-09-17 03:49 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2008-09-17 03:49 659,968 --a------ C:\WINDOWS\system32\nmwcdcocls.dll
2008-09-17 03:49 20,864 --a------ C:\WINDOWS\system32\drivers\ccdcmbo.sys
2008-09-17 03:49 17,536 --a------ C:\WINDOWS\system32\drivers\ccdcmb.sys
2008-09-17 03:49 1,419,232 --a------ C:\WINDOWS\system32\wdfcoinstaller01005.dll
2008-09-17 01:23 37,888 --a------ C:\WINDOWS\system32\drivers\bthmodem.sys
2008-09-17 01:22 8,192 --a------ C:\WINDOWS\system32\wshirda.dll
2008-09-17 01:22 59,136 --a------ C:\WINDOWS\system32\drivers\rfcomm.sys
2008-09-17 01:22 28,160 --a------ C:\WINDOWS\system32\irmon.dll
2008-09-17 01:22 18,944 --a------ C:\WINDOWS\system32\drivers\bthusb.sys
2008-09-17 01:22 17,024 --a------ C:\WINDOWS\system32\drivers\bthenum.sys
2008-09-17 01:22 151,552 --a------ C:\WINDOWS\system32\irftp.exe
2008-09-17 01:22 101,120 --a------ C:\WINDOWS\system32\drivers\bthpan.sys
2008-09-17 00:59 <DIR> d-------- C:\Documents and Settings\al3alawi\Phone Browser
2008-09-17 00:59 <DIR> d-------- C:\DOCUME~1\al3alawi\Phone Browser
2008-09-16 08:45 <DIR> d-------- C:\Program Files\MSXML 6.0
2008-09-16 08:43 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-09-16 08:26 <DIR> d-------- C:\Program Files\ZoneAlarmSB
2008-09-16 07:49 <DIR> d-------- C:\Program Files\MSN Messenger
2008-09-16 06:25 <DIR> d-------- C:\Program Files\Net Studio
2008-09-16 03:55 272,128 --------- C:\WINDOWS\system32\drivers\bthport.sys
2008-09-16 03:35 <DIR> d-------- C:\Documents and Settings\al3alawi\Contacts
2008-09-16 03:35 <DIR> d-------- C:\DOCUME~1\al3alawi\Contacts
2008-09-16 03:13 262,144 --a------ C:\DOCUME~1\ALLUSE~1\ntuser.dat
2008-09-16 03:13 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2008-09-16 02:35 <DIR> d--h-c--- C:\DOCUME~1\ALLUSE~1\APPLIC~1\{D994735B-8DC6-4AEE-B720-704A4EC0402E}
2008-09-16 02:27 <DIR> d-------- C:\WINDOWS\SxsCaPendDel
2008-09-16 02:02 <DIR> d-------- C:\Program Files\XoftSpySE
2008-09-16 01:46 <DIR> d-------- C:\Program Files\Yahoo!
2008-09-16 01:45 843 --a------ C:\WinXPKey.vbs
2008-09-16 01:43 270,880 --a------ C:\WINDOWS\system32\mucltui.dll
2008-09-16 01:43 26,488 --a------ C:\WINDOWS\system32\spupdsvc.exe
2008-09-16 01:42 <DIR> d-------- C:\WINDOWS\system32\SoftwareDistribution
2008-09-16 01:41 <DIR> dr-h----- C:\AHCache
2008-09-16 01:35 <DIR> d-------- C:\Program Files\Common Files\xing shared
2008-09-16 01:34 <DIR> d-------- C:\Program Files\Real
2008-09-16 01:34 <DIR> d-------- C:\Program Files\PhotoFiltre
2008-09-16 01:34 <DIR> d-------- C:\Program Files\Common Files\Real
2008-09-16 01:34 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\Real
2008-09-16 01:33 <DIR> d-------- C:\Program Files\Streambox
2008-09-16 01:32 304,128 --a------ C:\WINDOWS\IsUninst.exe
2008-09-16 01:32 <DIR> d--h----- C:\Program Files\InstallShield Installation Information
2008-09-16 01:32 <DIR> d-------- C:\Documents and Settings\al3alawi\WINDOWS
2008-09-16 01:32 <DIR> d-------- C:\DOCUME~1\al3alawi\WINDOWS
2008-09-16 01:29 <DIR> d-------- C:\Program Files\Common Files\InstallShield
2008-09-16 01:28 947,472 --a------ C:\WINDOWS\system32\msjava.dll
2008-09-16 01:28 63,248 --a------ C:\WINDOWS\system32\javaprxy.dll
2008-09-16 01:28 6,550 --a------ C:\WINDOWS\jautoexp.dat
2008-09-16 01:28 49,424 --a------ C:\WINDOWS\system32\clspack.exe
2008-09-16 01:28 46,352 --a------ C:\WINDOWS\setdebug.exe
2008-09-16 01:28 404,752 --a------ C:\WINDOWS\system32\javart.dll
2008-09-16 01:28 313,856 --a------ C:\WINDOWS\system32\dx3j.dll
2008-09-16 01:28 286,992 --a------ C:\WINDOWS\system32\vmhelper.dll
2008-09-16 01:28 21,264 --a------ C:\WINDOWS\system32\msjdbc10.dll
2008-09-16 01:28 187,152 --a------ C:\WINDOWS\system32\javacypt.dll
2008-09-16 01:28 172,304 --a------ C:\WINDOWS\system32\jview.exe
2008-09-16 01:28 171,792 --a------ C:\WINDOWS\system32\wjview.exe
2008-09-16 01:28 171,280 --a------ C:\WINDOWS\system32\jit.dll
2008-09-16 01:28 154,384 --a------ C:\WINDOWS\system32\msawt.dll
2008-09-16 01:28 15,120 --a------ C:\WINDOWS\system32\jdbgmgr.exe
2008-09-16 01:28 139,536 --a------ C:\WINDOWS\system32\javaee.dll
2008-09-16 01:28 113 --a------ C:\WINDOWS\system32\zonedon.reg
2008-09-16 01:28 113 --a------ C:\WINDOWS\system32\zonedoff.reg
2008-09-16 01:27 <DIR> d-------- C:\Program Files\Internet Download Manager
2008-09-16 01:27 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\IDM
2008-09-16 01:27 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\DMCache
2008-09-16 01:23 5 --a------ C:\WINDOWS\system32\SySCut.dat
2008-09-16 01:23 <DIR> d-------- C:\Program Files\SuperAudiotool
2008-09-16 01:23 <DIR> d-------- C:\Program Files\DIFX
2008-09-16 01:23 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
2008-09-16 01:23 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\PC Suite
2008-09-16 01:23 <DIR> d-------- C:\DOCUME~1\al3alawi\APPLIC~1\Nokia
2008-09-16 01:22 90,624 --a------ C:\WINDOWS\system32\nmwcdcls.dll
2008-09-16 01:22 <DIR> d----c--- C:\WINDOWS\system32\DRVSTORE
2008-09-16 01:22 <DIR> d-------- C:\Program Files\Nokia
2008-09-16 01:22 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
2008-09-15 11:15 21,504 --a------ C:\WINDOWS\system32\hidserv.dll
2008-09-15 11:13 <DIR> dr------- C:\DOCUME~1\ALLUSE~1\Documents
2008-09-15 09:42 83,072 --a------ C:\WINDOWS\system32\drivers\wdmaud.sys
2008-09-15 09:42 7,552 --a------ C:\WINDOWS\system32\drivers\mskssrv.sys
2008-09-15 09:42 60,800 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys
2008-09-15 09:42 6,272 --a------ C:\WINDOWS\system32\drivers\splitter.sys
2008-09-15 09:42 56,576 --a------ C:\WINDOWS\system32\drivers\swmidi.sys
2008-09-15 09:42 52,864 --a------ C:\WINDOWS\system32\drivers\dmusic.sys
2008-09-15 09:42 5,376 --a------ C:\WINDOWS\system32\drivers\mspclock.sys
2008-09-15 09:42 4,992 --a------ C:\WINDOWS\system32\drivers\mspqm.sys
2008-09-15 09:42 3,072 --a------ C:\WINDOWS\system32\drivers\audstub.sys
2008-09-15 09:42 2,944 --a------ C:\WINDOWS\system32\drivers\drmkaud.sys
2008-09-15 09:42 172,416 --a------ C:\WINDOWS\system32\drivers\kmixer.sys
2008-09-15 09:42 142,592 --a------ C:\WINDOWS\system32\drivers\aec.sys
2008-09-15 09:41 794,399 --a------ C:\WINDOWS\system32\drivers\USR1806V.SYS
2008-09-15 09:41 57,600 --a------ C:\WINDOWS\system32\drivers\redbook.sys
2008-09-15 09:41 4,274,816 --a------ C:\WINDOWS\system32\nv4_disp.dll
2008-09-15 09:41 16,128 --a------ C:\WINDOWS\system32\drivers\MODEMCSA.sys
2008-09-15 09:41 1,897,408 --a------ C:\WINDOWS\system32\drivers\nv4_mini.sys
2008-09-15 09:40 96,256 --a------ C:\WINDOWS\system32\drivers\ac97intc.sys
2008-09-15 09:40 74,240 --a------ C:\WINDOWS\system32\usbui.dll
2008-09-15 09:40 60,160 --a------ C:\WINDOWS\system32\drivers\drmk.sys
2008-09-15 09:40 42,368 --a------ C:\WINDOWS\system32\drivers\agp440.sys
2008-09-15 09:40 4,096 --a------ C:\WINDOWS\system32\ksuser.dll
2008-09-15 09:40 146,048 --a------ C:\WINDOWS\system32\drivers\portcls.sys
2008-09-15 09:39 8,192 -ra------ C:\WINDOWS\system32\kbdhept.dll
2008-09-15 09:39 6,656 -ra------ C:\WINDOWS\system32\kbdhela3.dll
2008-09-15 09:39 6,144 -ra------ C:\WINDOWS\system32\kbdtuq.dll
2008-09-15 09:39 6,144 -ra------ C:\WINDOWS\system32\kbdtuf.dll
2008-09-15 09:39 6,144 -ra------ C:\WINDOWS\system32\kbdlv1.dll
2008-09-15 09:39 6,144 -ra------ C:\WINDOWS\system32\kbdlv.dll
2008-09-15 09:39 6,144 -ra------ C:\WINDOWS\system32\kbdhela2.dll
2008-09-15 09:39 6,144 -ra------ C:\WINDOWS\system32\kbdgkl.dll
2008-09-15 09:39 6,144 -ra------ C:\WINDOWS\system32\kbdest.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdmon.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdlt1.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdlt.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdkyr.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdhe319.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdhe220.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdhe.dll
2008-09-15 09:39 5,632 -ra------ C:\WINDOWS\system32\kbdazel.dll
2008-09-15 09:39 <DIR> dr------- C:\Program Files
2008-09-15 09:39 <DIR> d--hs---- C:\WINDOWS\Installer
2008-09-15 09:39 <DIR> d-------- C:\Program Files\Common Files\SpeechEngines
2008-09-15 09:39 <DIR> d-------- C:\Program Files\Common Files\ODBC
2008-09-15 09:38 9,936 --a------ C:\WINDOWS\system\LZEXPAND.DLL
2008-09-15 09:38 9,008 --a------ C:\WINDOWS\system\VER.DLL
2008-09-15 09:38 85,020 --a------ C:\WINDOWS\system32\dgsetup.dll
2008-09-15 09:38 82,944 --a------ C:\WINDOWS\system\OLECLI.DLL
2008-09-15 09:38 8,704 --a------ C:\WINDOWS\system32\batt.dll
2008-09-15 09:38 74,752 --a------ C:\WINDOWS\system32\storprop.dll
2008-09-15 09:38 7,168 -ra------ C:\WINDOWS\system32\kbdcz.dll
2008-09-15 09:38 69,584 --a------ C:\WINDOWS\system\AVICAP.DLL
2008-09-15 09:38 69,120 --a------ C:\WINDOWS\notepad.exe
2008-09-15 09:38 68,768 --a------ C:\WINDOWS\system\MMSYSTEM.DLL
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdycl.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdsl1.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdsl.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdpl.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdhu.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdcz2.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdcz1.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\kbdcr.dll
2008-09-15 09:38 6,656 -ra------ C:\WINDOWS\system32\KBDAL.DLL
2008-09-15 09:38 5,632 -ra------ C:\WINDOWS\system32\kbdro.dll
2008-09-15 09:38 5,632 -ra------ C:\WINDOWS\system32\kbdpl1.dll
2008-09-15 09:38 5,632 -ra------ C:\WINDOWS\system32\kbdhu1.dll
2008-09-15 09:38 5,120 --a------ C:\WINDOWS\system\SHELL.DLL
2008-09-15 09:38 32,816 --a------ C:\WINDOWS\system\COMMDLG.DLL
2008-09-15 09:38 24,661 --a------ C:\WINDOWS\system32\spxcoins.dll
2008-09-15 09:38 24,064 --a------ C:\WINDOWS\system\OLESVR.DLL
2008-09-15 09:38 19,200 --a------ C:\WINDOWS\system\TAPI.DLL
2008-09-15 09:38 176,157 --a------ C:\WINDOWS\system32\dgrpsetu.dll
2008-09-15 09:38 15,360 --a------ C:\WINDOWS\TASKMAN.EXE
2008-09-15 09:38 13,312 --a------ C:\WINDOWS\system32\irclass.dll
2008-09-15 09:38 126,912 --a------ C:\WINDOWS\system\MSVIDEO.DLL
2008-09-15 09:38 11,264 --a------ C:\WINDOWS\system32\drivers\irenum.sys
2008-09-15 09:38 109,456 --a------ C:\WINDOWS\system\AVIFILE.DLL
2008-09-15 09:38 103,424 --a------ C:\WINDOWS\system32\eqnclass.dll
2008-09-15 09:35 <DIR> d--hs---- C:\System Volume Information
2008-09-15 09:35 <DIR> d-------- C:\WINDOWS\system32\CatRoot2
2008-09-15 09:35 <DIR> d-------- C:\WINDOWS\system32\CatRoot
2008-09-15 09:35 <DIR> d-------- C:\Documents and Settings
2008-09-15 09:29 <DIR> dr-hsc--- C:\WINDOWS\system32\dllcache
2008-09-15 09:29 <DIR> dr--s---- C:\WINDOWS\Fonts
2008-09-15 09:29 <DIR> dr------- C:\WINDOWS\Web
2008-09-15 09:29 <DIR> d--h----- C:\WINDOWS\inf
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\WinSxS
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\twain_32
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\wins
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\wbem
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\usmt
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\spool
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\ShellExt
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\Setup
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\ras
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\PreInstall
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\oobe
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\npp
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\mui
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\inetsrv
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\IME
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\icsxml
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\ias
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\export
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\en
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\drivers\etc
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\drivers\disdn
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\drivers
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\dhcp
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\config
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\3com_dmi
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\3076
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\2052
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1054
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1042
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1041
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1037
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1033
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1031
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1028
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32\1025
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system32
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\system
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\SoftwareDistribution
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\security
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Resources
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\repair
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Provisioning
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\PeerNet
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\pchealth
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\mui
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\msapps
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\msagent
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Media
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\ime
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Help
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\ehome
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Driver Cache
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Debug
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Cursors
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Connection Wizard
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\Config
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\AppPatch
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS\addins
2008-09-15 09:29 <DIR> d-------- C:\WINDOWS
2008-09-15 08:35 6,144 -ra------ C:\WINDOWS\system32\kbdth3.dll
2008-09-15 08:35 6,144 -ra------ C:\WINDOWS\system32\kbdth2.dll
2008-09-15 08:35 6,144 -ra------ C:\WINDOWS\system32\kbdinpun.dll
2008-09-15 08:35 6,144 --a------ C:\WINDOWS\system32\ftlx041e.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdvntc.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdurdu.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdth1.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdth0.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdsyr2.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdsyr1.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdintel.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdintam.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdinmar.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdinkan.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdinhin.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdinguj.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdindev.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdheb.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbdfa.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbddiv2.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbddiv1.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbda3.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbda2.dll
2008-09-15 08:35 5,632 -ra------ C:\WINDOWS\system32\kbda1.dll
2008-09-15 08:35 5,632 --a------ C:\WINDOWS\system32\kbdusa.dll
2008-09-15 08:35 5,120 -ra------ C:\WINDOWS\system32\kbdgeo.dll
2008-09-15 08:35 5,120 -ra------ C:\WINDOWS\system32\kbdarmw.dll
2008-09-15 08:35 5,120 -ra------ C:\WINDOWS\system32\kbdarme.dll
2008-09-15 08:35 185,344 --a------ C:\WINDOWS\system32\Thawbrkr.dll
2008-09-15 08:35 10,752 --a------ C:\WINDOWS\system32\c_iscii.dll
2008-09-15 08:29 249,856 --a------ C:\DOCUME~1\LOCALS~1\NTUSER.DAT
2008-09-15 08:29 245,760 --a------ C:\DOCUME~1\NETWOR~1\NTUSER.DAT
2008-09-15 08:24 262,144 --ah----- C:\DOCUME~1\DEFAUL~1\NTUSER.DAT
2008-09-15 08:24 0 -rahs---- C:\MSDOS.SYS
2008-09-15 08:24 0 -rahs---- C:\IO.SYS
2008-09-15 08:24 0 --a------ C:\CONFIG.SYS
2008-09-15 08:24 0 --a------ C:\AUTOEXEC.BAT
2008-09-15 08:24 <DIR> d-------- C:\WINDOWS\system32\xircom
2008-09-15 08:24 <DIR> d-------- C:\Program Files\microsoft frontpage
2008-09-15 08:23 112,128 --a------ C:\WINDOWS\system32\mapi32.dll
2008-09-15 08:22 <DIR> dr------- C:\WINDOWS\Offline Web Pages
2008-09-15 08:22 <DIR> d--hs---- C:\DOCUME~1\ALLUSE~1\DRM
2008-09-15 08:22 <DIR> d--h----- C:\Program Files\WindowsUpdate
2008-09-15 08:22 <DIR> d---s---- C:\WINDOWS\Downloaded Program Files
2008-09-15 08:22 <DIR> d-------- C:\WINDOWS\system32\DirectX
2008-09-15 08:21 81,920 --a------ C:\WINDOWS\system32\isign32.dll
2008-09-15 08:21 81,920 --a------ C:\WINDOWS\system32\ils.dll
2008-09-15 08:21 8,192 --a------ C:\WINDOWS\system32\bitsprx2.dll
2008-09-15 08:21 78,336 --a------ C:\WINDOWS\system32\srclient(2)(2).dll
2008-09-15 08:21 73,728 --a------ C:\WINDOWS\system32\icwdial.dll
2008-09-15 08:21 73,472 --a------ C:\WINDOWS\system32\drivers\sr.sys
2008-09-15 08:21 7,168 --a------ C:\WINDOWS\system32\bitsprx3.dll
2008-09-15 08:21 691,712 --a------ C:\WINDOWS\system32\inetcomm.dll
2008-09-15 08:21 69,632 --a------ C:\WINDOWS\system32\msconf.dll
2008-09-15 08:21 67,584 --a------ C:\WINDOWS\system32\srclient.dll
2008-09-15 08:21 65,536 --a------ C:\WINDOWS\system32\icwphbk.dll
2008-09-15 08:21 64,512 --a------ C:\WINDOWS\system32\acctres.dll
2008-09-15 08:21 6,656 --a------ C:\WINDOWS\system32\wuauserv.dll
2008-09-15 08:21 563,912 --a------ C:\WINDOWS\system32\wuapi.dll
2008-09-15 08:21 53,448 --a------ C:\WINDOWS\system32\wuauclt.exe
2008-09-15 08:21 48,128 --a------ C:\WINDOWS\system32\inetres.dll
2008-09-15 08:21 45,568 --a------ C:\WINDOWS\system32\safrslv.dll
2008-09-15 08:21 43,520 --a------ C:\WINDOWS\system32\safrcdlg.dll
2008-09-15 08:21 43,520 --a------ C:\WINDOWS\system32\racpldlg.dll
2008-09-15 08:21 409,088 --a------ C:\WINDOWS\system32\qmgr.dll
2008-09-15 08:21 36,552 --a------ C:\WINDOWS\system32\wups.dll
2008-09-15 08:21 34,560 --a------ C:\WINDOWS\system32\mnmdd.dll
2008-09-15 08:21 325,832 --a------ C:\WINDOWS\system32\wucltui.dll
2008-09-15 08:21 32,768 --a------ C:\WINDOWS\system32\mnmsrvc.exe
2008-09-15 08:21 32,768 --a------ C:\WINDOWS\system32\isrdbg32.dll
2008-09-15 08:21 29,696 --a------ C:\WINDOWS\system32\safrdm.dll
2008-09-15 08:21 28,672 --a------ C:\WINDOWS\system32\nmmkcert.dll
2008-09-15 08:21 274,944 --a------ C:\WINDOWS\system32\mstask.dll
2008-09-15 08:21 274,432 --a------ C:\WINDOWS\system32\inetcfg.dll
2008-09-15 08:21 265,216 --a------ C:\WINDOWS\system32\srrstr(2)(2).dll
2008-09-15 08:21 252,928 --a------ C:\WINDOWS\system32\msoeacct.dll
2008-09-15 08:21 239,104 --a------ C:\WINDOWS\system32\srrstr.dll
2008-09-15 08:21 23,040 --a------ C:\WINDOWS\system32\fltmc.exe
2008-09-15 08:21 205,000 --a------ C:\WINDOWS\system32\wuweb.dll
2008-09-15 08:21 194,328 --a------ C:\WINDOWS\system32\wuaueng1.dll
2008-09-15 08:21 192,512 --a------ C:\WINDOWS\system32\schedsvc.dll
2008-09-15 08:21 18,944 --a------ C:\WINDOWS\system32\qmgrprxy.dll
2008-09-15 08:21 172,312 --a------ C:\WINDOWS\system32\wuauclt1.exe
2008-09-15 08:21 171,008 --a------ C:\WINDOWS\system32\srsvc.dll
2008-09-15 08:21 16,896 --a------ C:\WINDOWS\system32\fltlib.dll
2008-09-15 08:21 16,384 --a------ C:\WINDOWS\system32\icfgnt5.dll
2008-09-15 08:21 129,792 --a------ C:\WINDOWS\system32\drivers\fltmgr.sys
2008-09-15 08:21 12,288 --a------ C:\WINDOWS\system32\nmevtmsg.dll
2008-09-15 08:21 12,288 --a------ C:\WINDOWS\system32\mstinit.exe
2008-09-15 08:21 11,264 --a------ C:\WINDOWS\system32\atrace.dll
2008-09-15 08:21 105,984 --a------ C:\WINDOWS\system32\msoert2.dll
2008-09-15 08:21 1,811,656 --a------ C:\WINDOWS\system32\wuaueng.dll
2008-09-15 08:21 <DIR> d---s---- C:\WINDOWS\Tasks
2008-09-15 08:21 <DIR> d-------- C:\WINDOWS\system32\Restore
2008-09-15 08:21 <DIR> d-------- C:\WINDOWS\system32\Macromed
2008-09-15 08:21 <DIR> d-------- C:\WINDOWS\srchasst
2008-09-15 08:21 <DIR> d-------- C:\Program Files\Movie Maker
2008-09-15 08:21 <DIR> d-------- C:\Program Files\Common Files\MSSoap
2008-09-15 08:20 21,640 --a------ C:\WINDOWS\system32\emptyregdb.dat
2008-09-15 08:20 <DIR> d-------- C:\WINDOWS\Registration
2008-09-15 08:20 <DIR> d-------- C:\Program Files\Online Services
2008-09-15 08:19 97,792 --a------ C:\WINDOWS\system32\comrepl.dll
2008-09-15 08:19 956,928 --a------ C:\WINDOWS\system32\msdtctm.dll
2008-09-15 08:19 93,696 --a------ C:\WINDOWS\system32\tscfgwmi.dll
2008-09-15 08:19 91,648 --a------ C:\WINDOWS\system32\mtxoci.dll
2008-09-15 08:19 9,728 --a------ C:\WINDOWS\system32\reset.exe
2008-09-15 08:19 87,176 --a------ C:\WINDOWS\system32\rdpwsx.dll
2008-09-15 08:19 85,504 --a------ C:\WINDOWS\system32\catsrvps.dll
2008-09-15 08:19 80,384 --a------ C:\WINDOWS\system32\charmap.exe
2008-09-15 08:19 73,216 --a------ C:\WINDOWS\system32\avwav.dll
2008-09-15 08:19 677,888 --a------ C:\WINDOWS\system32\mstsc.exe
2008-09-15 08:19 67,072 --a------ C:\WINDOWS\system32\rdshost.exe
2008-09-15 08:19 625,664 --a------ C:\WINDOWS\system32\catsrvut.dll
2008-09-15 08:19 62,976 --a------ C:\WINDOWS\system32\rdpclip.exe
2008-09-15 08:19 605,696 --a------ C:\WINDOWS\system32\getuname.dll
2008-09-15 08:19 60,416 --a------ C:\WINDOWS\system32\remotepg.dll
2008-09-15 08:19 60,416 --a------ C:\WINDOWS\system32\colbact.dll
2008-09-15 08:19 6,144 --a------ C:\WINDOWS\system32\msdtc.exe
2008-09-15 08:19 6,144 --a------ C:\WINDOWS\system32\dcomcnfg.exe
2008-09-15 08:19 59,392 --a------ C:\WINDOWS\system32\stclient.dll
2008-09-15 08:19 58,880 --a------ C:\WINDOWS\system32\msdtclog.dll
2008-09-15 08:19 58,880 --a------ C:\WINDOWS\system32\licwmi.dll
2008-09-15 08:19 56,832 --a------ C:\WINDOWS\system32\sol.exe
2008-09-15 08:19 56,320 --a------ C:\WINDOWS\system32\servdeps.dll
2008-09-15 08:19 55,296 --a------ C:\WINDOWS\system32\freecell.exe
2008-09-15 08:19 539,648 --a------ C:\WINDOWS\system32\comuid.dll
2008-09-15 08:19 538,624 --a------ C:\WINDOWS\system32\spider.exe
2008-09-15 08:19 5,632 --a------ C:\WINDOWS\system32\write.exe
2008-09-15 08:19 498,688 --a------ C:\WINDOWS\system32\clbcatq.dll
2008-09-15 08:19 44,544 --a------ C:\WINDOWS\system32\tscupgrd.exe
2008-09-15 08:19 44,544 --a------ C:\WINDOWS\system32\hticons.dll
2008-09-15 08:19 427,008 --a------ C:\WINDOWS\system32\msdtcprx.dll
2008-09-15 08:19 40,840 --a------ C:\WINDOWS\system32\drivers\termdd.sys
2008-09-15 08:19 4,096 --a------ C:\WINDOWS\system32\rdpcfgex.dll
2008-09-15 08:19 4,096 --a------ C:\WINDOWS\system32\mtxex.dll
2008-09-15 08:19 38,912 --a------ C:\WINDOWS\system32\cfgbkend.dll
2008-09-15 08:19 35,328 --a------ C:\WINDOWS\system32\winchat.exe
2008-09-15 08:19 347,136 --a------ C:\WINDOWS\system32\hypertrm.dll
2008-09-15 08:19 343,040 --a------ C:\WINDOWS\system32\mspaint.exe
2008-09-15 08:19 34,304 --a------ C:\WINDOWS\system32\mtxlegih.dll
2008-09-15 08:19 33,792 --a------ C:\WINDOWS\system32\regini.exe
2008-09-15 08:19 30,720 --a------ C:\WINDOWS\system32\mtxdm.dll
2008-09-15 08:19 295,424 --a------ C:\WINDOWS\system32\termsrv.dll
2008-09-15 08:19 28,160 --a------ C:\WINDOWS\system32\comaddin.dll
2008-09-15 08:19 227,840 --a------ C:\WINDOWS\system32\avtapi.dll
2008-09-15 08:19 226,304 --a------ C:\WINDOWS\system32\catsrv.dll
2008-09-15 08:19 22,016 --a------ C:\WINDOWS\system32\qwinsta.exe
2008-09-15 08:19 21,896 --a------ C:\WINDOWS\system32\drivers\tdtcp.sys
2008-09-15 08:19 20,992 --a------ C:\WINDOWS\system32\msg.exe
2008-09-15 08:19 2,061,824 --a------ C:\WINDOWS\system32\mstscax.dll
2008-09-15 08:19 196,224 --a------ C:\WINDOWS\system32\drivers\rdpdr.sys
2008-09-15 08:19 19,968 --a------ C:\WINDOWS\system32\rdpsnd.dll
2008-09-15 08:19 19,968 --a------ C:\WINDOWS\system32\qprocess.exe
2008-09-15 08:19 185,344 --a------ C:\WINDOWS\system32\cmprops.dll
2008-09-15 08:19 184,320 --a------ C:\WINDOWS\system32\accwiz.exe
2008-09-15 08:19 17,408 --a------ C:\WINDOWS\system32\mmfutil.dll
2008-09-15 08:19 167,424 --a------ C:\WINDOWS\system32\comsnap.dll
2008-09-15 08:19 161,792 --a------ C:\WINDOWS\system32\msdtcuiu.dll
2008-09-15 08:19 16,896 --a------ C:\WINDOWS\system32\tsshutdn.exe
2008-09-15 08:19 16,896 --a------ C:\WINDOWS\system32\qappsrv.exe
2008-09-15 08:19 16,384 --a------ C:\WINDOWS\system32\tskill.exe
2008-09-15 08:19 16,384 --a------ C:\WINDOWS\system32\avmeter.dll
2008-09-15 08:19 15,872 --a------ C:\WINDOWS\system32\rwinsta.exe
2008-09-15 08:19 15,872 --a------ C:\WINDOWS\system32\cdmodem.dll
2008-09-15 08:19 15,360 --a------ C:\WINDOWS\system32\logoff.exe
2008-09-15 08:19 147,968 --a------ C:\WINDOWS\system32\rdchost.dll
2008-09-15 08:19 141,312 --a------ C:\WINDOWS\system32\sessmgr.exe
2008-09-15 08:19 14,848 --a------ C:\WINDOWS\system32\tsdiscon.exe
2008-09-15 08:19 14,848 --a------ C:\WINDOWS\system32\tscon.exe
2008-09-15 08:19 14,848 --a------ C:\WINDOWS\system32\shadow.exe
2008-09-15 08:19 139,656 --a------ C:\WINDOWS\system32\drivers\rdpwd.sys
2008-09-15 08:19 138,752 --a------ C:\WINDOWS\system32\sndvol32.exe
2008-09-15 08:19 131,584 --a------ C:\WINDOWS\system32\sndrec32.exe
2008-09-15 08:19 13,824 --a------ C:\WINDOWS\system32\rdsaddin.exe
2008-09-15 08:19 126,976 --a------ C:\WINDOWS\system32\mshearts.exe
2008-09-15 08:19 123,392 --a------ C:\WINDOWS\system32\mplay32.exe
2008-09-15 08:19 12,040 --a------ C:\WINDOWS\system32\drivers\tdpipe.sys
2008-09-15 08:19 119,808 --a------ C:\WINDOWS\system32\winmine.exe
2008-09-15 08:19 114,688 --a------ C:\WINDOWS\system32\calc.exe
2008-09-15 08:19 110,592 --a------ C:\WINDOWS\system32\clbcatex.dll
2008-09-15 08:19 11,776 --a------ C:\WINDOWS\system32\xolehlp.dll
2008-09-15 08:19 11,264 --a------ C:\WINDOWS\system32\icaapi.dll
2008-09-15 08:19 102,912 --a------ C:\WINDOWS\system32\clipbrd.exe
2008-09-15 08:19 1,267,200 --a------ C:\WINDOWS\system32\comsvcs.dll
2008-09-15 08:19 1,161 --a------ C:\WINDOWS\system32\usrlogon.cmd
2008-09-15 08:19 <DIR> d-------- C:\WINDOWS\system32\MsDtc
2008-09-15 08:19 <DIR> d-------- C:\WINDOWS\system32\Com
2008-09-15 08:19 <DIR> d-------- C:\Program Files\Windows NT
2008-09-15 08:19 <DIR> d-------- C:\Program Files\Windows Media Connect 2
2008-09-15 08:19 <DIR> d-------- C:\Program Files\MSN Gaming Zone
2008-09-09 00:03 51,712 --a------ C:\WINDOWS\system32\sirenacm.dll
2008-09-05 16:04 287,744 --a------ C:\WINDOWS\WLXPGSS.SCR
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2008-07-29 22:34:04 83,968 ----a-w C:\WINDOWS\system32\mscories.dll
2008-07-18 19:10:48 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-18 19:10:40 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-18 19:07:32 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2008-07-11 08:55:41 712,704 ------w C:\WINDOWS\system32\windowscodecs.dll
2008-07-11 08:55:41 347,648 ------w C:\WINDOWS\system32\windowscodecsext.dll
2008-07-07 20:26:58 253,952 ----a-w C:\WINDOWS\system32\es.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper s]
{0055C089-8582-441B-A0BF-17B458C2A3A8}=C:\Program Files\Internet Download Manager\IDMIECC.dll [2007-09-28 18:14]
{3049C3E9-B461-4BC5-8870-4C09146192CA}=C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-09-16 01:35]
{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}=C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2008-08-21 15:15]
{724d43a9-0d85-11d4-9908-00400523e39a}=C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2008-09-25 23:20]
{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}=C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL [2008-09-16 08:26]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-09-16 01:34]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"USB_FW"="C:\Program Files\Net Studio\USB_FW.exe" [2008-05-21 14:16]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 03:12]
"PC Suite Tray"="C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2008-08-11 08:31]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe /NoDialog"=C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe /NoDialog
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=0 (0x0)
"HideStartupScripts"=0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=0 (0x0)
"HideStartupScripts"=0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\dimsntfy]
%SystemRoot%\System32\dimsntfy.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs BthServ
eapsvcs eaphost
dot3svc dot3svc
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost *netsvcs*
napagent
*Newly Created Service* - CATCHME
s of the 'Scheduled Tasks' folder
2008-09-26 15:56:02 C:\WINDOWS\tasks\XoftSpySE 2.job
2008-09-23 00:02:41 C:\WINDOWS\tasks\XoftSpySE.job
********************************************************************
catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer,
Rootkit scan 2008-09-26 20:32:00
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
********************************************************************
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\OneStepSearch Service]
"ImagePath"="\"C:\Program Files\OneStep\onestep.exe\" \"C:\Program Files\OneStep\onestep.dll\" Service"
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\BTHPORT\Parameters\Services\{00000001-0000-1000-8000-0002ee000002}]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\BTHPORT\Parameters\Services\{00001000-0000-1000-8000-00805f9b34fb}]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\BTHPORT\Parameters\Services\{00001105-0000-1000-8000-00805f9b34fb}]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\BTHPORT\Parameters\Services\{00001115-0000-1000-8000-00805f9b34fb}]
Completion time: 2008-09-26 20:32:42
C:\ComboFix-quarantined-files.txt ... 2008-09-26 20:32
C:\ComboFix2.txt ... 2008-09-26 20:28
--- E O F ---
------------------------------------------------------------------------------------
وهذا تقرير الهايجاك
Logfile of HijackThis v1.99.1
Scan saved at 20:23:17, on 9/26/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\OneStep\onestep.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\OneStep\onestep.exe
C:\Program Files\Net Studio\USB_FW.exe
C:\Program Files\IObit\Advanced WindowsCare V2\Awcl.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
E:\ملف خاص لادوات التصليح\ادوات التقارير\SmitfraudFix\SmitfraudFix\Policies.exe
C:\WINDOWS\explorer.exe
C:\Zyzoom_RFA_Platinum\rfagent.exe
E:\ملف خاص لادوات التصليح\ادوات التقارير\اداة فحص للجهاز واعطاء تقرير\HijackThis.exe
F2 - REG:system.ini: UserInit=C:\WINNT\system32\userinit.exe,
O2 - BHO: IDMIEHlprObj Class - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: (no name) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - (no file)
O2 - BHO: ZoneAlarm Spy Blocker BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O3 - Toolbar: ZoneAlarm Spy Blocker - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O3 - Toolbar: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - (no file)
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [USB_FW] C:\Program Files\Net Studio\USB_FW.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تخصيص القائمه -
Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: حفظ النماذج -
Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: شريط ادوات روبوفورم -
Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: ملئ النماذج -
Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: EI??? ??C ?? C??I??E - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: C??? C???C?? - {320AF880-6646-11D3-ABEE-C5DBF3571F46} -
Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: ??? C???C?? - {320AF880-6646-11D3-ABEE-C5DBF3571F46} -
Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: ??U - {320AF880-6646-11D3-ABEE-C5DBF3571F49} -
Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: ??U C???C?? - {320AF880-6646-11D3-ABEE-C5DBF3571F49} -
Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: ??E????? - {724d43aa-0d85-11d4-9908-00400523e39a} -
Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: O??? CI?CE ??E????? - {724d43aa-0d85-11d4-9908-00400523e39a} -
Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\WINDOWS\system32\Shdocvw.dll
O11 - Options group: [INTERNATIONAL] International*
O11 - Options group: [TABS] Tabbed Browsing
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - (no file)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - (no file)
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - (no file)
O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: OneStepSearch Service - Unknown owner - C:\Program Files\OneStep\onestep.exe" "C:\Program Files\OneStep\onestep.dll" Service (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
---------------------------------------------------------------
وهذا تقرير SmitFraudFix
SmitFraudFix v2.338
Scan done at 20:19:15.40, Fri 09/26/2008
Run from E:\êéه ¦ں­ éں§يں¢ ں颭éï¥\ں§يں¢ ںé¢çں©ï©\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in normal mode
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Killing process
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files
»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» RK
»»»»»»»»»»»»»»»»»»»»»»»» DNS
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning
Registry Cleaning done.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» End
---------------------------------------------------------------------
وكل الشكر لكم
علما باني اخاف ان اعمل سكان للهارد الخارجي
وانا اعلم به فيروسات ولكن سوف تحذف ملفات كثيرة
وخاصتا الكاسبر وحش في الحذف