حمدي خضير

زيزوومى فعال
إنضم
5 يناير 2008
المشاركات
250
مستوى التفاعل
1
النقاط
330
غير متصل
اسلام عليكم

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


جهازي مصاب بفيروس حتى اني اسوي بحث بالكاسبر يكشف لي الفيروسات بجميع امتداداتexe
ياليت الحل يالاخواان

ولحضات اجيب تقرير لجهاازي انا الحين دااخل في الوضع الامن
 

توقيع : حمدي خضير
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:53:10 ص, on 25/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Maxthon2\Maxthon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\ابدأ\سطح المكتب\Zyzoom_HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: IE 4.x-6.x BHO for Internet Download Accelerator - {2A646672-9C3A-4C28-9A7A-1FB0F63F28B6} - C:\PROGRA~1\IDA\idaiehlp.dll
O2 - BHO: Accelerator Plugin - {656EC4B7-072B-4698-B504-2A414C1F0037} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O3 - Toolbar: IDA Bar - {C70E30C7-140A-4166-A2E8-43557E62B41A} - C:\Program Files\IDA\idabar.dll
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\zyzoom.exe" /minimized
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [Internet Download Accelerator] C:\Program Files\IDA\ida.exe -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: Download ALL with IDA - C:\Program Files\IDA\idaieall.htm
O8 - Extra context menu item: Download with IDA - C:\Program Files\IDA\idaie.htm
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra 'Tools' menuitem: &Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {C171FF59-8C55-4796-A398-4F5D02B4C763} (IMC_Sec Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 7354 bytes
 
توقيع : حمدي خضير
اسلام عليكم

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


جهازي مصاب بفيروس حتى اني اسوي بحث بالكاسبر يكشف لي الفيروسات بجميع امتداداتexe
ياليت الحل يالاخواان

ولحضات اجيب تقرير لجهاازي انا الحين دااخل في الوضع الامن


ونا خوك : مادري هذا فيروس ولا لا ؟؟

شكله ملف Dll تالف !!
 
توقيع : الديبلوماسي
مـــاادري والله بس بحثت بالكاسبر وكشف امتدادات exe فيروس واضن الفيروس الي يصيب امتدادexe| صااب بجهازي والحل يالاخوان :(
 
توقيع : حمدي خضير
مرحبا اخوي

قصدك يعني لما تسوي فحص الكاسبر يمسك البرامج حقتك على انها فايروس ؟؟
يعني الفايروس يصيب التطبيقات الي على الإمتداد exe ؟؟

اذا كان كذالك ,,, استخدم الأداه الي بالموضوع هذا

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


وافحص بها وانت خاش من السيف مود افضل
 
توقيع : Demo-dashDemo-dash is verified member.
ومن التقرير احذف

O2 - BHO: Accelerator Plugin - {656EC4B7-072B-4698-B504-2A414C1F0037} - (no file)

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe


O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot


O16 - DPF: {6924091F-CD97-41E1-B1D4-D9079409D413} (IMCv1 Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي



O16 - DPF: {C171FF59-8C55-4796-A398-4F5D02B4C763} (IMC_Sec Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




طريقة الحذف

mg%20%283%29.png


mg%20%284%29.png


نزل هالاداة لتنظيف الجهاز​

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


zyzoom-3c0e283670.gif

واستخدم هذي الأداتين ورا بعض



عطل جميع برامج الحماية ,,
وحمل هذه الاداة واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes
انتظر حتى الاداة تنتهي من فحص جهازك ,,, وبشكل تلقائي يعاد تشغيل جهازك ,,
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
انتظر حتى يظهر لك تقرير ,, انسخه والصقه بردك القادم



اداة SmitfraudFix

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


وركب اعدادات الكاسبر افضل لكي يتم حذف الفايروسات اوتوماتيكيا



كاسبر انترنت سيكورتي فقط

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


باسورد فك الضغط

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




شرح التركيب

000.png



001.png



002.png



003.png


وافحص جهازك كاملا وماراح يسير الى كل خير
 
اوكي ان شاءالله يالغالي

بجرب ورد لك
 
توقيع : حمدي خضير
ComboFix 08-10-24.02 - ابدأ 10/25/2008 13:02:38.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.1.1025.18.363 [GMT 3:00]
Running from: C:\Documents and Settings\ابدأ\سطح المكتب\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\ابدأ\Local Settings\Temporary Internet Files\urls.xml
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_NPF
-------\Service_NPF

((((((((((((((((((((((((( Files Created from 2008-09-25 to 2008-10-25 )))))))))))))))))))))))))))))))
.
No new files created in this timespan
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-25 10:05 565,280 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat
2008-10-25 10:05 4,060 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx
2008-10-25 10:05 21,784 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2008-10-25 10:05 2,516,000 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2008-10-25 09:27 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\MxBoost
2008-10-25 09:26 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-10-25 08:38 782,336 ----a-w C:\WINDOWS\MTC.exe
2008-10-25 08:37 73,216 ----a-w C:\WINDOWS\ST6UNST.EXE
2008-10-25 08:37 46,080 ----a-w C:\WINDOWS\setdebug.exe
2008-10-25 08:37 172,032 ----a-w C:\WINDOWS\Setup1.exe
2008-10-25 08:31 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
2008-10-25 08:31 --------- d-----w C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-10-25 08:31 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\Malwarebytes
2008-10-25 08:10 782,336 ----a-w C:\MTC.exe
2008-10-25 08:10 6,144 ----a-w C:\WINDOWS\delttsul.exe
2008-10-25 07:22 69,632 ----a-r C:\WINDOWS\ALCMTR.EXE
2008-10-25 07:22 2,879,488 ----a-r C:\WINDOWS\SkyTel.exe
2008-10-25 07:21 --------- d-----w C:\Program Files\No-IP
2008-10-25 07:16 --------- d-----w C:\Program Files\ATK Hotkey
2008-10-25 07:05 --------- d-----w C:\Program Files\Wireless WEP Key Password Spy
2008-10-25 07:04 --------- d-----w C:\Program Files\TeamViewer3(2)
2008-10-25 07:04 --------- d-----w C:\Program Files\TeamViewer3
2008-10-24 07:15 --------- d-----w C:\Program Files\Atheros
2008-10-22 16:19 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-22 13:10 38,496 ----a-w C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-10-22 13:10 15,504 ----a-w C:\WINDOWS\system32\drivers\mbam.sys
2008-10-18 11:32 --------- d-----w C:\Program Files\WinPcap
2008-10-16 05:02 --------- d-----w C:\Program Files\Circle Developement
2008-10-16 03:30 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\Grisoft
2008-10-13 09:08 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-10-12 10:29 --------- d-----w C:\Program Files\edBlockDetector 2.0
2008-10-07 15:38 --------- d-----w C:\Program Files\LtUcx
2008-10-06 22:33 --------- d-----w C:\Program Files\Propel Accelerator
2008-10-06 22:21 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\URSoft
2008-09-24 18:18 --------- d-----w C:\Program Files\Windows Media Connect 2
2008-09-14 03:45 --------- d-----w C:\Program Files\Nokia
2008-09-10 03:39 --------- d-----w C:\Program Files\Google
2008-09-10 01:12 --------- d-----w C:\Documents and Settings\All Users\Application Data\Bluetooth
2008-09-09 17:15 --------- d-----w C:\Program Files\IVT Corporation
2008-09-08 02:28 --------- d-----w C:\Documents and Settings\All Users\Application Data\Grisoft
2008-09-05 23:47 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\TeamViewer
2008-09-05 22:49 --------- d-----w C:\Program Files\Maxthon2
2008-09-05 21:51 --------- d-----w C:\Program Files\SWiSHmax
2008-09-04 17:06 96,976 ----a-w C:\WINDOWS\system32\drivers\klin.dat
2008-09-04 16:47 87,855 ----a-w C:\WINDOWS\system32\drivers\klick.dat
2008-09-04 16:45 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-09-04 16:38 --------- d-----w C:\Program Files\Kaspersky Lab
2008-09-04 01:56 --------- d-----w C:\Program Files\مشغل الفلاش العربي
2008-09-03 19:58 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\Media Player Classic
2008-09-03 17:21 --------- d-----w C:\Program Files\Common Files\ACD Systems
2008-09-03 13:43 64,653 ----a-w C:\WINDOWS\BricoPackUninst.cmd
2008-09-03 13:43 6,108 ----a-w C:\WINDOWS\BricoPackFoldersDelete.cmd
2008-09-03 01:25 --------- d-----w C:\Program Files\IDA
2008-09-03 01:16 673,792 ----a-w C:\WINDOWS\is-FVHVC.exe
2008-09-03 01:13 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\Internet Download Accelerator
2008-09-03 00:56 --------- d-----w C:\Documents and Settings\All Users\Application Data\ATI
2008-09-03 00:56 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\ATI
2008-09-03 00:52 --------- d-----w C:\Program Files\ASUS
2008-09-03 00:52 --------- d-----w C:\Documents and Settings\All Users\Application Data\Atheros
2008-09-03 00:50 --------- d-----w C:\Program Files\Synaptics
2008-09-03 00:49 --------- d-----w C:\Program Files\Realtek
2008-09-03 00:46 --------- d-----w C:\Program Files\ATI Technologies
2008-09-03 00:41 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-09-03 00:39 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\InstallShield
2008-09-03 00:29 --------- d-----w C:\Program Files\microsoft frontpage
2008-09-02 22:20 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\Nokia
2008-09-02 22:03 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\TuneUp Software
2008-09-02 21:54 --------- d-----w C:\Program Files\JetAudio
2008-09-02 21:54 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\COWON
2008-09-02 21:24 --------- d-----w C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2008-09-02 21:07 --------- d-----w C:\Program Files\Windows Live
2008-09-02 21:06 --------- d-----w C:\Program Files\K-Lite Codec Pack
2008-09-02 21:06 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-09-02 21:04 --------- d-----w C:\Program Files\Common Files\xing shared
2008-09-02 21:04 --------- d-----w C:\Program Files\Common Files\Real
2008-09-02 21:01 --------- d-----w C:\Program Files\Real
2008-09-02 20:56 --------- d-----w C:\Documents and Settings\All Users\Application Data\PC Suite
2008-09-02 20:56 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\PC Suite
2008-09-02 20:54 --------- d-----w C:\Program Files\Common Files\Adobe
2008-09-02 20:53 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-09-02 20:51 --------- d-----w C:\Program Files\PC Connectivity Solution
2008-09-02 20:51 --------- d-----w C:\Program Files\DIFX
2008-09-02 20:51 --------- d-----w C:\Documents and Settings\All Users\Application Data\Installations
2008-09-02 20:47 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\ACD Systems
2008-09-02 20:45 --------- d-----w C:\Program Files\Common Files\Ahead
2008-09-02 20:45 --------- d-----w C:\Program Files\Ahead
2008-09-02 20:43 --------- d-----w C:\Program Files\Real_SC
2008-09-02 20:42 --------- d-----w C:\Program Files\DivX
2008-09-02 20:40 --------- d-----w C:\Program Files\VideoLAN
2008-09-02 20:40 --------- d-----w C:\Documents and Settings\ابدأ\Application Data\vlc
2008-09-02 20:07 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-02 20:06 --------- d-----w C:\Program Files\MSBuild
2008-09-02 20:06 --------- d-----w C:\Program Files\Microsoft Works
2008-09-02 20:05 --------- d-----w C:\Program Files\Microsoft.NET
2008-09-02 20:02 --------- d-----w C:\Program Files\Microsoft Visual Studio 8
2008-08-28 10:04 333,056 ----a-w C:\WINDOWS\system32\drivers\srv.sys
.
------- Sigcheck -------
08/03/2004 11:56 PM 973312 a10b8a9309fee2bf9ee6538693844d77 C:\WINDOWS\explorer.exe
10/25/2008 11:08 AM 1031168 96e4401db55a79ee0e6113ec02e433e9 C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\explorer.exe
08/03/2004 11:56 PM 973312 a10b8a9309fee2bf9ee6538693844d77 C:\WINDOWS\system32\dllcache\explorer.exe
10/25/2008 11:08 AM 15360 6d8597f9a51574130f68d9be62262091 C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ctfmon.exe
10/25/2008 10:22 AM 15360 c2a17254fd24ee8495b8185e682b1d7f C:\WINDOWS\system32\ctfmon.exe
08/03/2004 11:56 PM 15360 b87d2319441038f62bddaeeb6bce156d C:\WINDOWS\system32\dllcache\ctfmon.exe
.
((((((((((((((((((((((((((((( snapshot@Sat 10-25-2008_11.08.24.46 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-07-14 11:03:00 83,456 ----a-w C:\WINDOWS\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
+ 2008-10-25 09:43:22 62,976 ----a-w C:\WINDOWS\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
- 2008-07-11 12:42:28 83,456 ----a-w C:\WINDOWS\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
+ 2008-10-25 09:43:22 62,976 ----a-w C:\WINDOWS\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
- 2008-07-11 12:51:51 83,456 ----a-w C:\WINDOWS\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
+ 2008-10-25 09:43:22 62,976 ----a-w C:\WINDOWS\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
- 2008-06-23 08:23:18 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
+ 2008-10-25 09:43:27 70,656 ----a-w C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
- 2008-06-23 08:23:18 34,304 ----a-w C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
+ 2008-10-25 09:43:28 13,824 ----a-w C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
- 2008-06-23 08:23:52 646,144 ----a-w C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
+ 2008-10-25 09:43:28 625,664 ----a-w C:\WINDOWS\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
- 2008-08-25 08:43:21 91,136 ----a-w C:\WINDOWS\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
+ 2008-10-25 09:43:28 70,656 ----a-w C:\WINDOWS\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
- 2008-08-25 08:43:21 34,304 ----a-w C:\WINDOWS\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
+ 2008-10-25 09:43:28 13,824 ----a-w C:\WINDOWS\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
- 2008-08-14 13:37:03 2,164,736 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP2QFE\ntkrnlmp.exe
+ 2008-10-25 09:43:29 2,144,256 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP2QFE\ntkrnlmp.exe
- 2008-08-14 13:37:00 2,042,880 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP2QFE\ntkrpamp.exe
+ 2008-10-25 09:43:29 2,022,400 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP2QFE\ntkrpamp.exe
- 2008-08-14 13:20:31 2,167,296 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3GDR\ntkrnlmp.exe
+ 2008-10-25 09:43:30 2,146,816 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3GDR\ntkrnlmp.exe
- 2008-08-14 13:20:30 2,045,952 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3GDR\ntkrpamp.exe
+ 2008-10-25 09:43:31 2,025,472 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3GDR\ntkrpamp.exe
- 2008-08-14 13:54:25 2,167,296 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
+ 2008-10-25 09:43:32 2,146,816 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
- 2008-08-14 13:54:24 2,045,952 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
+ 2008-10-25 09:43:33 2,025,472 ----a-w C:\WINDOWS\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
- 2004-08-03 20:56:22 97,792 -c----w C:\WINDOWS\$MSI31Uninstall_KB893803v2$\msiexec.exe
+ 2008-10-25 09:43:35 77,312 -c--a-w C:\WINDOWS\$MSI31Uninstall_KB893803v2$\msiexec.exe
- 2006-12-01 09:03:18 336,896 -c----w C:\WINDOWS\$NtUninstallKB939683$\unregmp2.exe
+ 2008-10-25 09:43:37 316,416 -c--a-w C:\WINDOWS\$NtUninstallKB939683$\unregmp2.exe
- 2004-08-03 21:08:00 2,037,248 -c----w C:\WINDOWS\$NtUninstallKB956841$\ntkrnlpa.exe
+ 2008-10-25 09:43:41 2,016,768 -c--a-w C:\WINDOWS\$NtUninstallKB956841$\ntkrnlpa.exe
- 2004-08-03 20:48:48 2,170,368 -c----w C:\WINDOWS\$NtUninstallKB956841$\ntoskrnl.exe
+ 2008-10-25 09:43:42 2,149,888 -c--a-w C:\WINDOWS\$NtUninstallKB956841$\ntoskrnl.exe
- 2004-08-03 20:56:18 124,416 -c----w C:\WINDOWS\$NtUninstallWMFDist11$\logagent.exe
+ 2008-10-25 09:43:42 103,936 -c--a-w C:\WINDOWS\$NtUninstallWMFDist11$\logagent.exe
- 2004-08-03 20:56:30 638,976 -c----w C:\WINDOWS\$NtUninstallwmp11$\setup_wm.exe
+ 2008-10-25 09:43:43 618,496 -c--a-w C:\WINDOWS\$NtUninstallwmp11$\setup_wm.exe
- 2004-08-03 20:56:34 229,376 -c----w C:\WINDOWS\$NtUninstallwmp11$\unregmp2.exe
+ 2008-10-25 09:43:44 208,896 -c--a-w C:\WINDOWS\$NtUninstallwmp11$\unregmp2.exe
- 2004-08-03 20:56:36 94,208 -c----w C:\WINDOWS\$NtUninstallwmp11$\wmplayer.exe
+ 2008-10-25 09:43:44 73,728 -c--a-w C:\WINDOWS\$NtUninstallwmp11$\wmplayer.exe
- 2008-09-03 00:46:18 73,728 ----a-w C:\WINDOWS\assembly\GAC_MSIL\CCC\2.0.0.0__90ba9c70f846762e\CCC.EXE
+ 2008-10-25 09:43:47 49,152 ----a-w C:\WINDOWS\assembly\GAC_MSIL\CCC\2.0.0.0__90ba9c70f846762e\CCC.EXE
- 2008-09-03 00:46:18 69,632 ----a-w C:\WINDOWS\assembly\GAC_MSIL\CLI\2.0.0.0__90ba9c70f846762e\CLI.EXE
+ 2008-10-25 09:43:48 45,056 ----a-w C:\WINDOWS\assembly\GAC_MSIL\CLI\2.0.0.0__90ba9c70f846762e\CLI.EXE
- 2008-09-03 00:46:08 110,592 ----a-w C:\WINDOWS\assembly\GAC_MSIL\LOG\2.0.2741.38627__90ba9c70f846762e\LOG.EXE
+ 2008-10-25 09:44:12 86,016 ----a-w C:\WINDOWS\assembly\GAC_MSIL\LOG\2.0.2741.38627__90ba9c70f846762e\LOG.EXE
- 2008-09-03 00:46:18 73,728 ----a-w C:\WINDOWS\assembly\GAC_MSIL\MOM\2.0.0.0__90ba9c70f846762e\MOM.EXE
+ 2008-10-25 09:44:12 49,152 ----a-w C:\WINDOWS\assembly\GAC_MSIL\MOM\2.0.0.0__90ba9c70f846762e\MOM.EXE
- 2004-08-03 20:56:12 1,050,112 ----a-w C:\WINDOWS\BricoPacks\SysFiles\14_explorer.exe
+ 2008-10-25 09:44:15 1,029,632 ----a-w C:\WINDOWS\BricoPacks\SysFiles\14_explorer.exe
- 2004-08-03 20:56:14 788,992 ----a-w C:\WINDOWS\BricoPacks\SysFiles\17_helpctr.exe
+ 2008-10-25 09:44:15 768,512 ----a-w C:\WINDOWS\BricoPacks\SysFiles\17_helpctr.exe
- 2004-08-03 20:56:04 118,784 ----a-w C:\WINDOWS\BricoPacks\SysFiles\2_ahui.exe
+ 2008-10-25 09:44:16 98,304 ----a-w C:\WINDOWS\BricoPacks\SysFiles\2_ahui.exe
- 2004-08-03 20:56:38 241,152 ----a-w C:\WINDOWS\BricoPacks\SysFiles\24_logon.scr
+ 2008-10-25 09:44:16 220,672 ----a-w C:\WINDOWS\BricoPacks\SysFiles\24_logon.scr
- 2004-08-03 20:56:20 258,560 ----a-w C:\WINDOWS\BricoPacks\SysFiles\26_migwiz.exe
+ 2008-10-25 09:44:16 238,080 ----a-w C:\WINDOWS\BricoPacks\SysFiles\26_migwiz.exe
- 2004-08-03 20:56:24 362,496 ----a-w C:\WINDOWS\BricoPacks\SysFiles\31_mspaint.exe
+ 2008-10-25 09:44:16 342,016 ----a-w C:\WINDOWS\BricoPacks\SysFiles\31_mspaint.exe
- 2004-08-03 20:56:24 74,752 ----a-w C:\WINDOWS\BricoPacks\SysFiles\35_narrator.exe
+ 2008-10-25 09:44:16 54,272 ----a-w C:\WINDOWS\BricoPacks\SysFiles\35_narrator.exe
- 2004-08-03 20:56:24 89,600 ----a-w C:\WINDOWS\BricoPacks\SysFiles\40_notepad.exe
+ 2008-10-25 09:44:17 69,120 ----a-w C:\WINDOWS\BricoPacks\SysFiles\40_notepad.exe
- 2004-08-03 20:56:24 89,600 ----a-w C:\WINDOWS\BricoPacks\SysFiles\41_notepad.exe
+ 2008-10-25 09:44:17 69,120 ----a-w C:\WINDOWS\BricoPacks\SysFiles\41_notepad.exe
- 2004-08-03 20:56:28 167,424 ----a-w C:\WINDOWS\BricoPacks\SysFiles\48_regedit.exe
+ 2008-10-25 09:44:17 146,944 ----a-w C:\WINDOWS\BricoPacks\SysFiles\48_regedit.exe
- 2004-08-03 20:56:32 151,552 ----a-w C:\WINDOWS\BricoPacks\SysFiles\54_sndrec32.exe
+ 2008-10-25 09:44:18 131,072 ----a-w C:\WINDOWS\BricoPacks\SysFiles\54_sndrec32.exe
- 2001-09-19 10:00:00 159,744 ----a-w C:\WINDOWS\BricoPacks\SysFiles\55_sndvol32.exe
+ 2008-10-25 09:44:18 139,264 ----a-w C:\WINDOWS\BricoPacks\SysFiles\55_sndvol32.exe
- 2004-08-03 20:56:34 126,464 ----a-w C:\WINDOWS\BricoPacks\SysFiles\58_sysocmgr.exe
+ 2008-10-25 09:44:18 105,984 ----a-w C:\WINDOWS\BricoPacks\SysFiles\58_sysocmgr.exe
- 2004-08-03 20:56:34 159,744 ----a-w C:\WINDOWS\BricoPacks\SysFiles\60_taskmgr.exe
+ 2008-10-25 09:44:19 139,264 ----a-w C:\WINDOWS\BricoPacks\SysFiles\60_taskmgr.exe
- 2004-08-03 20:56:34 451,584 ----a-w C:\WINDOWS\BricoPacks\SysFiles\67_wiaacmgr.exe
+ 2008-10-25 09:44:19 431,104 ----a-w C:\WINDOWS\BricoPacks\SysFiles\67_wiaacmgr.exe
- 2001-09-19 10:00:00 135,168 ----a-w C:\WINDOWS\BricoPacks\SysFiles\7_calc.exe
+ 2008-10-25 09:44:20 114,688 ----a-w C:\WINDOWS\BricoPacks\SysFiles\7_calc.exe
- 2004-08-03 20:56:36 131,072 ----a-w C:\WINDOWS\BricoPacks\SysFiles\73_wuauclt.exe
+ 2008-10-25 09:44:20 110,592 ----a-w C:\WINDOWS\BricoPacks\SysFiles\73_wuauclt.exe
- 2004-08-03 20:56:38 185,344 ----a-w C:\WINDOWS\BricoPacks\SysFiles\74_wuauclt1.exe
+ 2008-10-25 09:44:20 164,864 ----a-w C:\WINDOWS\BricoPacks\SysFiles\74_wuauclt1.exe
- 2004-08-03 20:56:18 535,552 ----a-w C:\WINDOWS\BricoPacks\SysFiles\78_logonui.exe
+ 2008-10-25 09:44:20 515,072 ----a-w C:\WINDOWS\BricoPacks\SysFiles\78_logonui.exe
- 2004-08-03 20:56:22 80,384 ----a-w C:\WINDOWS\BricoPacks\SysFiles\80_msimn.exe
+ 2008-10-25 09:44:20 59,904 ----a-w C:\WINDOWS\BricoPacks\SysFiles\80_msimn.exe
- 2004-08-03 20:56:22 3,575,808 ----a-w C:\WINDOWS\BricoPacks\SysFiles\82_moviemk.exe
+ 2008-10-25 09:44:21 3,555,328 ----a-w C:\WINDOWS\BricoPacks\SysFiles\82_moviemk.exe
- 2004-08-03 20:56:06 409,088 ----a-w C:\WINDOWS\BricoPacks\SysFiles\9_cmd.exe
+ 2008-10-25 09:44:22 388,608 ----a-w C:\WINDOWS\BricoPacks\SysFiles\9_cmd.exe
- 2006-03-09 14:33:18 425,984 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\iColorFolder.exe
+ 2008-10-25 09:44:22 405,504 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\iColorFolder.exe
- 2008-09-03 13:41:02 53,248 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\uninstall.exe
+ 2008-10-25 09:44:22 32,768 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\iColorFolder\uninstall.exe
- 2007-04-22 08:18:34 118,784 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\pack-it.exe
+ 2008-10-25 09:44:22 98,304 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\pack-it.exe
- 2004-08-03 20:56:12 993,792 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\14_explorer.exe
+ 2008-10-25 09:44:22 973,312 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\14_explorer.exe
- 2004-08-03 20:56:14 785,408 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\17_helpctr.exe
+ 2008-10-25 09:44:24 764,928 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\17_helpctr.exe
- 2004-08-03 20:56:04 121,344 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\2_ahui.exe
+ 2008-10-25 09:44:26 100,864 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\2_ahui.exe
- 2004-08-03 20:56:38 3,148,800 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\24_logon.scr
+ 2008-10-25 09:44:25 3,128,320 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\24_logon.scr
- 2004-08-03 20:56:20 556,544 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\26_migwiz.exe
+ 2008-10-25 09:44:26 536,064 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\26_migwiz.exe
- 2004-08-03 20:56:24 459,264 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\31_mspaint.exe
+ 2008-10-25 09:44:27 438,784 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\31_mspaint.exe
- 2004-08-03 20:56:24 76,288 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\35_narrator.exe
+ 2008-10-25 09:44:27 55,808 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\35_narrator.exe
- 2004-08-03 20:56:24 175,616 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\40_notepad.exe
+ 2008-10-25 09:44:29 155,136 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\40_notepad.exe
- 2004-08-03 20:56:24 175,616 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\41_notepad.exe
+ 2008-10-25 09:44:29 155,136 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\41_notepad.exe
- 2004-08-03 20:56:28 245,248 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\48_regedit.exe
+ 2008-10-25 09:44:29 224,768 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\48_regedit.exe
- 2004-08-03 20:56:32 200,704 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\54_sndrec32.exe
+ 2008-10-25 09:44:30 180,224 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\54_sndrec32.exe
- 2001-09-19 10:00:00 173,056 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\55_sndvol32.exe
+ 2008-10-25 09:44:30 152,576 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\55_sndvol32.exe
- 2004-08-03 20:56:34 202,752 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\58_sysocmgr.exe
+ 2008-10-25 09:44:30 182,272 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\58_sysocmgr.exe
- 2004-08-03 20:56:34 205,824 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\60_taskmgr.exe
+ 2008-10-25 09:44:30 185,344 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\60_taskmgr.exe
- 2004-08-03 20:56:34 903,680 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\67_wiaacmgr.exe
+ 2008-10-25 09:44:30 883,200 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\67_wiaacmgr.exe
- 2001-09-19 10:00:00 138,240 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\7_calc.exe
+ 2008-10-25 09:44:40 117,760 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\7_calc.exe
- 2004-08-03 20:56:36 120,832 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\73_wuauclt.exe
+ 2008-10-25 09:44:31 100,352 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\73_wuauclt.exe
- 2004-08-03 20:56:38 305,152 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\74_wuauclt1.exe
+ 2008-10-25 09:44:31 284,672 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\74_wuauclt1.exe
- 2004-08-03 20:56:18 5,670,912 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\78_logonui.exe
+ 2008-10-25 09:44:40 5,650,432 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\78_logonui.exe
- 2004-08-03 20:56:22 243,200 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\80_msimn.exe
+ 2008-10-25 09:44:41 222,720 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\80_msimn.exe
- 2004-08-03 20:56:22 3,696,640 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\82_moviemk.exe
+ 2008-10-25 09:44:42 3,676,160 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\82_moviemk.exe
- 2004-08-03 20:56:06 435,712 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\9_cmd.exe
+ 2008-10-25 09:44:43 415,232 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\PackFiles\9_cmd.exe
- 2007-04-22 10:31:50 167,936 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Panel.exe
+ 2008-10-25 09:44:43 147,456 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Panel.exe
- 2006-05-21 07:49:32 902,144 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\ResHacker\ResHacker.exe
+ 2008-10-25 09:44:44 881,664 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\ResHacker\ResHacker.exe
- 2007-03-18 22:04:18 90,112 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\Tools\Debug.exe
+ 2008-10-25 09:44:45 69,632 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\Tools\Debug.exe
- 2007-01-01 15:24:48 26,624 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\Tools\LanguageID Finder.exe
+ 2008-10-25 09:44:45 6,144 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\Tools\LanguageID Finder.exe
- 2006-05-21 07:49:38 32,256 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Tools\dialog.exe
+ 2008-10-25 09:44:45 11,776 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Tools\dialog.exe
- 2006-05-21 07:49:38 52,736 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Tools\.exe
+ 2008-10-25 09:44:45 32,256 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\Tools\.exe
- 2005-06-01 19:41:18 86,016 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
+ 2008-10-25 09:44:45 65,536 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
- 2006-05-21 07:43:06 26,624 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Languages\LanguageID Finder.exe
+ 2008-10-25 09:44:45 6,144 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Languages\LanguageID Finder.exe
- 2006-05-21 07:43:08 200,704 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
+ 2008-10-25 09:44:46 180,224 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
- 2006-05-21 07:43:08 55,808 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Uninst.exe
+ 2008-10-25 09:44:46 35,328 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\Uninst.exe
- 2006-05-21 07:43:14 176,128 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
+ 2008-10-25 09:44:47 155,648 ----a-w C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
- 2008-08-14 13:42:30 2,158,080 ------w C:\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
+ 2008-10-25 09:44:49 2,137,600 ----a-w C:\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
- 2008-08-14 13:42:30 2,037,760 ------w C:\WINDOWS\Driver Cache\i386\ntkrpamp.exe
+ 2008-10-25 09:44:50 2,017,280 ----a-w C:\WINDOWS\Driver Cache\i386\ntkrpamp.exe
- 2004-08-03 20:56:16 54,784 -c--a-w C:\WINDOWS\ie7\ie4uinit.exe
+ 2008-10-25 09:45:10 34,304 -c--a-w C:\WINDOWS\ie7\ie4uinit.exe
- 2004-08-03 20:56:16 38,912 -c--a-w C:\WINDOWS\ie7\iedw.exe
+ 2008-10-25 09:45:10 18,432 -c--a-w C:\WINDOWS\ie7\iedw.exe
- 2004-08-03 20:56:16 113,664 -c--a-w C:\WINDOWS\ie7\iexplore.exe
+ 2008-10-25 09:45:10 93,184 -c--a-w C:\WINDOWS\ie7\iexplore.exe
- 2004-08-03 20:56:22 49,664 -c--a-w C:\WINDOWS\ie7\mshta.exe
+ 2008-10-25 09:45:11 29,184 -c--a-w C:\WINDOWS\ie7\mshta.exe
- 2006-11-21 16:53:16 86,528 -c--a-w C:\WINDOWS\ie7\spuninst\ieResetIcons.exe
+ 2008-10-25 09:45:18 66,048 -c--a-w C:\WINDOWS\ie7\spuninst\ieResetIcons.exe
- 2006-11-07 00:26:28 75,264 -c----w C:\WINDOWS\ie7updates\KB953838-IE7\ie4uinit.exe
+ 2008-10-25 09:45:21 54,784 -c--a-w C:\WINDOWS\ie7updates\KB953838-IE7\ie4uinit.exe
- 2006-11-07 00:26:32 33,792 -c----w C:\WINDOWS\ie7updates\KB953838-IE7\ieudinit.exe
+ 2008-10-25 09:45:21 13,312 -c--a-w C:\WINDOWS\ie7updates\KB953838-IE7\ieudinit.exe
- 2006-10-17 09:04:40 642,560 -c----w C:\WINDOWS\ie7updates\KB953838-IE7\iexplore.exe
+ 2008-10-25 09:45:21 622,080 -c--a-w C:\WINDOWS\ie7updates\KB953838-IE7\iexplore.exe
- 2008-06-23 09:18:25 91,136 -c----w C:\WINDOWS\ie7updates\KB956390-IE7\ie4uinit.exe
+ 2008-10-25 09:45:21 70,656 -c--a-w C:\WINDOWS\ie7updates\KB956390-IE7\ie4uinit.exe
- 2008-06-23 09:20:26 34,304 -c----w C:\WINDOWS\ie7updates\KB956390-IE7\ieudinit.exe
+ 2008-10-25 09:45:22 13,824 -c--a-w C:\WINDOWS\ie7updates\KB956390-IE7\ieudinit.exe
- 2008-06-23 09:18:36 646,144 -c----w C:\WINDOWS\ie7updates\KB956390-IE7\iexplore.exe
+ 2008-10-25 09:45:22 625,664 -c--a-w C:\WINDOWS\ie7updates\KB956390-IE7\iexplore.exe
- 2008-09-03 00:35:01 186,880 ----a-r C:\WINDOWS\Installer\{350C97B7-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe
+ 2008-10-25 08:39:56 166,400 ----a-r C:\WINDOWS\Installer\{350C97B7-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe
- 2008-09-09 17:18:46 65,536 ----a-r C:\WINDOWS\Installer\{63D1A44F-E1FD-4460-BE0A-8745012F67EF}\NewShortcut2_B0C8A90F65894FC68EA581831D92A6B4.exe
+ 2008-10-25 08:39:57 45,056 ----a-r C:\WINDOWS\Installer\{63D1A44F-E1FD-4460-BE0A-8745012F67EF}\NewShortcut2_B0C8A90F65894FC68EA581831D92A6B4.exe
- 2008-09-09 17:18:46 65,536 ----a-r C:\WINDOWS\Installer\{63D1A44F-E1FD-4460-BE0A-8745012F67EF}\NewShortcut2_B9F499B8D1F042FC84BECC552123CCCB.exe
+ 2008-10-25 08:39:57 45,056 ----a-r C:\WINDOWS\Installer\{63D1A44F-E1FD-4460-BE0A-8745012F67EF}\NewShortcut2_B9F499B8D1F042FC84BECC552123CCCB.exe
- 2008-09-09 17:18:46 65,536 ----a-r C:\WINDOWS\Installer\{63D1A44F-E1FD-4460-BE0A-8745012F67EF}\NewShortcut2_D52FB7FCBA0548A399F27778E184CAF7.exe
+ 2008-10-25 08:39:57 45,056 ----a-r C:\WINDOWS\Installer\{63D1A44F-E1FD-4460-BE0A-8745012F67EF}\NewShortcut2_D52FB7FCBA0548A399F27778E184CAF7.exe
- 2008-09-02 20:39:48 102,400 ----a-r C:\WINDOWS\Installer\{8E9DB7EF-5DD3-499E-BA2A-A1F3153A4DF8}\ARPPRODUCTICON.exe
+ 2008-10-25 08:39:58 81,920 ----a-r C:\WINDOWS\Installer\{8E9DB7EF-5DD3-499E-BA2A-A1F3153A4DF8}\ARPPRODUCTICON.exe
- 2008-09-20 01:37:10 32,768 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2008-10-25 08:39:59 12,288 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2008-09-20 01:37:10 303,104 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\fpicon.exe
+ 2008-10-25 08:39:59 282,624 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\fpicon.exe
- 2008-09-20 01:37:10 155,648 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2008-10-25 08:16:21 135,168 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2008-09-20 01:37:10 47,616 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2008-10-25 08:40:00 27,136 ----a-r C:\WINDOWS\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2005-09-23 04:28:52 93,184 ----a-w C:\WINDOWS\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2008-10-25 08:40:01 72,704 ----a-w C:\WINDOWS\Microsoft.NET\Framework\NETFXSBS10.exe
- 2005-09-23 04:28:32 61,440 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-10-25 08:40:03 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
- 2005-09-23 04:28:32 131,072 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2008-10-25 08:40:04 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
- 2005-09-23 04:28:56 131,072 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
+ 2008-10-25 08:40:04 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2005-09-23 04:28:56 53,248 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-10-25 08:40:07 28,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
- 2005-09-23 04:28:48 65,536 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2008-10-25 08:40:07 40,960 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\jsc.exe
- 2005-09-23 04:28:48 94,208 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2008-10-25 08:40:08 69,632 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2005-09-23 04:28:56 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-10-25 08:40:10 53,248 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
- 2005-09-23 04:28:56 57,344 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2008-10-25 08:40:10 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2006-12-08 11:31:50 65,536 ----a-w C:\WINDOWS\OPTIONS\CABS\lansetm.exe
+ 2008-10-25 09:46:09 45,056 ----a-w C:\WINDOWS\OPTIONS\CABS\lansetm.exe
- 2006-12-08 11:31:44 69,120 ----a-w C:\WINDOWS\OPTIONS\CABS\lansetup.exe
+ 2008-10-25 09:46:09 48,640 ----a-w C:\WINDOWS\OPTIONS\CABS\lansetup.exe
- 2006-12-08 11:32:12 67,072 ----a-w C:\WINDOWS\OPTIONS\CABS\lansetx.exe
+ 2008-10-25 09:46:09 46,592 ----a-w C:\WINDOWS\OPTIONS\CABS\lansetx.exe
- 2008-04-14 15:59:45 203,776 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\accwiz.exe
- 2008-04-14 15:59:46 36,864 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\admin.exe
- 2008-04-14 15:59:46 276,992 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\agentsvr.exe
- 2008-04-14 15:59:46 118,784 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ahui.exe
- 2008-04-14 15:59:46 65,024 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\alg.exe
- 2008-04-13 16:10:01 45,056 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\aspnet_regiis.exe
- 2008-04-13 16:10:01 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\aspnet_state.exe
- 2008-04-13 16:10:01 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\aspnet_wp.exe
- 2008-04-14 15:59:46 50,688 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\asr_fmt.exe
- 2008-04-14 15:59:46 45,568 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\at.exe
- 2008-04-14 15:59:46 31,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\atmadm.exe
- 2008-04-14 15:59:46 32,768 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\attrib.exe
- 2008-04-14 15:59:46 34,816 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\auditusr.exe
- 2008-04-14 15:59:46 36,864 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\author.exe
- 2008-04-14 15:59:46 609,280 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\autochk.exe
- 2008-04-14 15:59:46 623,104 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\autoconv.exe
- 2008-04-14 15:59:46 601,088 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\autofmt.exe
- 2008-04-14 15:59:46 31,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\autolfn.exe
- 2008-04-14 15:59:47 92,160 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\blastcln.exe
- 2008-04-14 15:59:47 163,328 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\bootcfg.exe
- 2008-04-14 15:59:47 40,448 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cacls.exe
- 2007-06-27 12:53:18 118,784 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\caspol.exe
- 2008-04-14 15:59:48 208,896 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cfgwiz.exe
- 2008-04-14 15:59:48 77,312 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cipher.exe
- 2008-04-14 15:59:48 26,112 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cisvc.exe
- 2008-04-14 15:59:48 40,960 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cliconfg.exe
- 2008-04-14 15:59:48 122,368 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\clipbrd.exe
- 2008-04-14 15:59:48 53,760 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\clipsrv.exe
- 2008-04-14 15:59:48 409,600 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cmd.exe
- 2008-04-14 15:59:48 45,568 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cmdl32.exe
- 2008-04-14 15:59:48 59,904 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cmmon32.exe
- 2008-04-14 15:59:48 82,432 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cmstp.exe
- 2008-04-14 15:59:48 30,208 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\comrepl.exe
- 2008-04-14 15:59:48 26,624 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\comrereg.exe
- 2008-04-14 15:59:49 1,048,576 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\conf.exe
- 2008-04-14 15:59:49 48,128 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\conime.exe
- 2008-04-13 16:10:13 69,632 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\csc.exe
- 2008-04-14 15:59:49 159,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\cscript.exe
- 2008-04-14 15:59:49 26,624 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\csrss.exe
- 2008-04-14 15:59:49 62,976 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\davcdata.exe
- 2008-04-14 15:59:49 26,624 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dcomcnfg.exe
- 2008-04-14 15:59:49 50,688 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ddeshare.exe
- 2008-04-14 15:59:49 45,568 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\defrag.exe
- 2008-04-14 15:59:49 103,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dfrgfat.exe
- 2008-04-14 15:59:49 125,952 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dfrgntfs.exe
- 2008-04-14 15:59:50 107,520 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\diantz.exe
- 2008-04-14 15:59:50 184,320 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\diskpart.exe
- 2008-04-14 15:59:50 315,392 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dlimport.exe
- 2008-04-14 15:59:50 25,600 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dllhost.exe
- 2008-04-14 15:59:50 245,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dmadmin.exe
- 2008-04-14 15:59:50 36,352 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dmremote.exe
- 2008-04-14 15:59:50 50,176 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dplaysvr.exe
- 2008-04-14 15:59:50 38,912 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dpnsvr.exe
- 2008-04-14 15:59:50 103,936 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dpvsetup.exe
- 2008-04-14 15:59:50 83,456 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\drvqry.exe
- 2008-04-14 15:59:50 31,232 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dumprep.exe
- 2008-04-14 15:59:50 38,400 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dvdupgrd.exe
- 2008-04-14 15:59:50 200,704 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dwwin.exe
- 2008-04-14 15:59:51 1,318,912 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\dxdiag.exe
- 2008-04-14 15:59:51 213,504 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\eudcedit.exe
- 2008-04-14 15:59:51 71,168 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\evcreate.exe
- 2008-04-14 15:59:51 44,544 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\evntcmd.exe
- 2008-04-14 15:59:51 112,128 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\evntwin.exe
- 2008-04-14 15:59:51 103,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\evtrig.exe
- 2008-04-14 15:59:52 44,544 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\extrac32.exe
- 2008-04-14 15:59:52 41,472 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\faxpatch.exe
- 2008-04-14 15:59:52 47,616 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\findstr.exe
- 2008-04-14 15:59:52 43,520 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fltmc.exe
- 2008-04-14 15:59:52 41,984 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fontview.exe
- 2008-04-14 15:59:52 28,160 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\forcedos.exe
- 2008-04-14 15:59:52 35,328 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fp98sadm.exe
- 2008-04-14 15:59:52 130,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fp98swin.exe
- 2008-04-14 15:59:52 45,056 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fpadmcgi.exe
- 2008-04-14 15:59:52 208,896 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fpcount.exe
- 2008-04-14 15:59:52 40,960 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fpremadm.exe
- 2008-04-14 15:59:52 49,152 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fpsrvadm.exe
- 2008-04-14 15:59:52 213,504 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fsquirt.exe
- 2008-04-14 15:59:52 62,976 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ftp.exe
- 2008-04-14 15:59:52 163,328 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fxsclnt.exe
- 2008-04-14 15:59:53 247,296 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\fxscover.exe
- 2008-04-14 15:59:53 80,384 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\getmac.exe
- 2008-04-14 15:59:53 141,312 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\gprslt.exe
- 2008-04-14 15:59:53 59,392 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\grpconv.exe
- 2008-04-14 15:59:53 36,352 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\help.exe
- 2008-04-14 15:59:53 789,504 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\helpctr.exe
- 2008-04-14 15:59:53 764,928 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\helpsvc.exe
- 2008-04-14 15:59:53 31,232 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\hh.exe
- 2008-04-14 15:59:53 38,912 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\hscupd.exe
- 2008-04-14 15:59:53 232,448 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\icwconn1.exe
- 2008-04-14 15:59:53 106,496 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\icwconn2.exe
- 2008-04-14 15:59:53 45,056 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\icwrmind.exe
- 2008-04-14 15:59:53 54,784 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ie4uinit.exe
- 2008-04-14 15:59:53 38,912 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\iedw.exe
- 2008-04-14 15:59:54 113,664 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\iexplore.exe
- 2008-04-14 15:59:54 135,168 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\iexpress.exe
- 2008-04-14 15:59:54 51,200 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\iisrstas.exe
- 2008-04-13 16:10:32 204,800 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ilasm.exe
- 2008-04-14 15:59:54 171,008 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\imapi.exe
- 2008-04-14 15:59:54 35,840 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\inetin51.exe
- 2008-04-14 15:59:54 40,960 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\inetwiz.exe
- 2007-06-27 12:54:28 49,152 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\installutil.exe
- 2008-04-14 15:59:46 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ip\asr_pfu.exe
- 2008-04-13 18:43:32 30,208 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ip\comsdupd.exe
- 2008-04-14 16:00:02 39,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ip\secedit.exe
- 2008-04-13 18:43:31 33,280 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ip\spiisupd.exe
- 2008-04-14 15:59:54 76,288 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ipconfig.exe
- 2008-04-14 15:59:54 73,728 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ipv6.exe
- 2008-04-14 15:59:54 44,032 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ipxroute.exe
- 2008-04-14 15:59:54 171,520 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\irftp.exe
- 2007-06-27 12:54:35 65,536 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\jsc.exe
- 2004-08-03 18:31:56 500,736 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\cintsetp.exe
- 2004-08-03 18:31:40 77,824 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\cplexe.exe
- 2004-08-03 18:31:54 327,680 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\imjpdct.exe
- 2004-08-03 18:31:56 176,128 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\imjpdsvr.exe
- 2004-08-03 18:31:58 217,088 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\imjpinst.exe
- 2004-08-03 18:32:00 229,376 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\imjpmig.exe
- 2004-08-03 18:32:12 253,952 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\imjprw.exe
- 2004-08-03 18:32:16 282,624 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\imjputy.exe
- 2004-08-03 18:31:50 79,872 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\imscinst.exe
- 2008-04-13 16:43:36 90,624 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\pintlphr.exe
- 2004-08-03 18:32:16 64,512 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\tintlphr.exe
- 2004-08-03 18:32:16 475,648 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lang\tintsetp.exe
- 2008-04-14 15:59:55 698,368 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lhmstsc.exe
- 2008-04-14 15:59:55 95,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\locator.exe
- 2008-04-14 15:59:55 124,416 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\logagent.exe
- 2008-04-14 15:59:55 79,872 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\logman.exe
- 2008-04-14 16:00:08 241,152 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\logon.scr
- 2008-04-14 15:59:55 535,552 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\logonui.exe
- 2008-04-14 15:59:55 33,792 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\lsass.exe
- 2008-04-14 15:59:55 93,184 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\magnify.exe
- 2008-04-14 15:59:55 77,824 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\makecab.exe
- 2008-04-14 15:59:55 124,416 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\migload.exe
- 2008-04-14 15:59:55 806,912 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\migrate.exe
- 2008-04-14 15:59:55 28,160 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\migregdb.exe
- 2008-04-14 15:59:55 263,680 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\migwiz.exe
- 2008-04-14 15:59:55 261,632 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\migwiza.exe
- 2008-04-14 15:59:56 54,272 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mmcperf.exe
- 2008-04-14 15:59:56 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mnmsrvc.exe
- 2008-04-14 15:59:56 163,328 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mobsync.exe
- 2008-04-14 15:59:56 36,864 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mofcomp.exe
- 2008-04-14 15:59:57 3,579,392 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\moviemk.exe
- 2008-04-14 15:59:57 143,872 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mplay32.exe
- 2008-04-14 15:59:57 25,088 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mplayer2.exe
- 2008-04-14 15:59:57 40,448 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mqbkup.exe
- 2008-04-14 15:59:57 25,088 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mqsvc.exe
- 2008-04-14 15:59:57 137,728 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mqtgsvc.exe
- 2008-04-14 15:59:57 190,464 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\msconfig.exe
- 2008-04-14 15:59:57 26,624 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\msdtc.exe
- 2008-04-14 15:59:57 49,664 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mshta.exe
- 2008-04-14 15:59:57 99,328 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\msiexec.exe
- 2008-04-14 15:59:57 80,384 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\msimn.exe
- 2008-04-14 15:59:57 61,440 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\msiregmv.exe
- 2008-04-14 15:59:58 1,715,712 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\msmsgs.exe
- 2008-04-14 15:59:58 49,664 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\msoobe.exe
- 2008-04-14 15:59:58 362,496 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mspaint.exe
- 2008-04-14 15:59:58 32,768 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mstinit.exe
- 2008-04-14 15:59:58 140,288 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\mtstocom.exe
- 2008-04-14 15:59:58 196,608 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\napstat.exe
- 2008-04-14 15:59:58 74,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\narrator.exe
- 2008-04-14 15:59:58 62,976 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\net.exe
- 2008-04-14 15:59:58 145,408 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\net1.exe
- 2008-04-14 15:59:58 132,096 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\netdde.exe
- 2008-04-14 16:02:57 350,720 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\netsetup.exe
- 2008-04-14 15:59:58 106,496 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\netsh.exe
- 2008-04-14 15:59:58 57,344 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\netstat.exe
- 2008-04-13 16:11:06 167,936 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ngen.exe
- 2008-04-14 15:59:58 89,600 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\notepad.exe
- 2008-04-14 15:59:58 35,840 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\nppagent.exe
- 2008-04-14 15:59:58 97,280 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\nslookup.exe
- 2008-04-14 15:59:59 1,224,704 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ntbackup.exe
- 2008-04-14 15:42:08 2,167,296 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ntkrnlmp.exe
- 2008-04-14 15:42:14 2,045,952 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ntkrpamp.exe
- 2008-04-14 15:59:59 440,832 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ntvdm.exe
- 2008-04-14 15:59:59 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\odbcad32.exe
- 2008-04-14 15:59:59 90,112 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\odbcconf.exe
- 2008-04-14 15:59:59 80,896 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\oemig50.exe
- 2008-04-14 15:59:59 71,680 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\oobebaln.exe
- 2008-04-14 15:59:59 88,064 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\opnfiles.exe
- 2008-04-13 18:32:32 187,392 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\oschoice.exe
- 2008-04-14 16:00:00 236,032 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\osk.exe
- 2008-04-13 18:31:43 250,880 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\osloader.exe
- 2008-04-14 16:00:00 78,336 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\packager.exe
- 2008-04-14 16:00:00 36,352 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\perfmon.exe
- 2008-04-14 16:00:00 302,592 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\pinball.exe
- 2008-04-14 16:00:00 38,400 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ping.exe
- 2008-04-14 16:00:00 69,632 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\powercfg.exe
- 2008-04-14 16:00:00 148,480 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\progman.exe
- 2008-04-14 16:00:00 71,168 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\proquota.exe
- 2008-04-14 16:00:00 29,696 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\proxycfg.exe
- 2008-04-14 16:00:00 40,448 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\qprocess.exe
- 2008-04-14 16:00:00 77,312 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rasphone.exe
- 2008-04-14 16:00:00 56,320 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rcimlby.exe
- 2008-04-14 16:00:00 41,984 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rcp.exe
- 2008-04-14 16:00:00 83,456 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rdpclip.exe
- 2008-04-14 16:00:00 34,304 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rdsaddin.exe
- 2008-04-14 16:00:00 87,552 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rdshost.exe
- 2008-04-14 16:00:00 70,656 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\reg.exe
- 2007-06-27 12:57:33 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\regasm.exe
- 2008-04-14 16:00:01 167,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\regedit.exe
- 2008-04-14 16:00:01 32,256 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\regsvr32.exe
- 2008-04-14 16:00:01 34,304 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rexec.exe
- 2008-04-14 15:59:55 78,848 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\root\cmpnents\mediactr\i386\medctrro.exe
- 2008-04-14 16:00:01 35,328 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rsh.exe
- 2008-04-14 16:00:01 128,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rsnotify.exe
- 2008-04-14 16:00:01 406,016 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rstrui.exe
- 2008-04-14 16:00:01 97,280 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rtcshare.exe
- 2008-04-14 16:00:01 53,760 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\rundll32.exe
- 2008-04-14 16:00:01 34,816 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\runonce.exe
- 2008-04-14 16:00:01 33,792 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\savedump.exe
- 2008-04-14 16:00:01 116,224 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\scardsvr.exe
- 2008-04-14 16:00:01 56,832 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\scrcons.exe
- 2008-04-14 16:00:08 29,696 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\scrnsave.scr
- 2008-04-14 16:00:01 142,336 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sctasks.exe
- 2008-04-14 16:00:02 97,280 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sdbinst.exe
- 2008-04-14 16:00:02 129,024 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\services.exe
- 2008-04-14 16:00:02 161,792 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sessmgr.exe
- 2008-04-14 16:00:02 52,736 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sethc.exe
- 2008-04-14 16:00:02 43,520 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\setup.exe
- 2008-04-14 16:00:02 638,976 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\setup_wm.exe
- 2008-04-14 16:00:02 93,696 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\setup50.exe
- 2008-04-14 16:00:02 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\setupn.exe
- 2008-04-14 16:00:02 65,536 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\shmgrate.exe
- 2008-04-14 16:00:02 97,792 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\shrpubw.exe
- 2008-04-14 16:00:02 36,864 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\shtml.exe
- 2008-04-14 16:00:02 39,936 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\shutdown.exe
- 2008-04-14 16:00:02 90,624 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sigverif.exe
- 2008-04-14 16:00:02 46,592 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\skeys.exe
- 2008-04-14 16:00:02 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\slrundll.exe
- 2008-04-14 16:00:02 94,208 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\slserv.exe
- 2008-04-14 16:00:02 28,672 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\smbinst.exe
- 2008-04-14 16:00:03 257,024 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\smi2smir.exe
- 2008-04-14 16:00:03 108,544 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\smlogsvc.exe
- 2008-04-14 16:00:03 71,168 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\smss.exe
- 2008-04-14 16:00:03 151,552 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sndrec32.exe
- 2008-04-14 16:00:03 53,760 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\snmp.exe
- 2008-04-14 16:00:03 29,184 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\snmptrap.exe
- 2008-04-14 16:00:03 45,056 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sort.exe
- 2008-04-14 16:00:03 28,160 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\spdwnwxp.exe
- 2008-04-14 16:00:03 559,104 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\spider.exe
- 2008-04-14 18:30:04 31,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\spnpinst.exe
- 2008-04-14 16:00:03 78,336 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\spoolsv.exe
- 2008-04-14 16:00:03 41,472 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\spupdwxp.exe
- 2008-04-14 16:00:08 724,992 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ss3dfo.scr
- 2008-04-14 16:00:08 40,448 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ssbezier.scr
- 2008-04-14 16:00:09 413,696 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ssflwbox.scr
- 2008-04-14 16:00:09 41,472 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ssmarque.scr
- 2008-04-14 16:00:09 67,584 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ssmypics.scr
- 2008-04-14 16:00:09 39,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ssmyst.scr
- 2008-04-14 16:00:09 630,784 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sspipes.scr
- 2008-04-14 16:00:09 34,816 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ssstars.scr
- 2008-04-14 16:00:09 700,416 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sstext3d.scr
- 2008-04-14 16:00:03 35,328 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\stimon.exe
- 2008-04-14 16:00:03 36,864 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\stub_fpsrvadm.exe
- 2008-04-14 16:00:03 86,016 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\stub_fpsrvwin.exe
- 2008-04-14 16:00:03 34,816 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\svchost.exe
- 2008-04-14 16:00:03 92,160 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sysinfo.exe
- 2008-04-14 16:00:04 126,464 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\sysocmgr.exe
- 2008-04-14 16:00:04 96,768 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\taskkill.exe
- 2008-04-14 16:00:04 98,304 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tasklist.exe
- 2008-04-14 16:00:04 159,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\taskmgr.exe
- 2008-04-14 16:00:04 53,248 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tcptest.exe
- 2008-04-14 16:00:04 96,256 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\telnet.exe
- 2008-04-14 16:00:04 81,920 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tlntadmn.exe
- 2008-04-14 16:00:04 98,816 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tlntsess.exe
- 2008-04-14 16:00:04 93,184 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tlntsvr.exe
- 2008-04-14 16:00:04 367,616 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tourstrt.exe
- 2008-04-14 16:00:04 103,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tp4mon.exe
- 2008-04-14 16:00:04 280,064 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tracerpt.exe
- 2008-04-14 16:00:04 32,768 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tracert.exe
- 2008-04-14 16:00:04 80,896 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\tzchange.exe
- 2008-04-14 16:00:04 229,376 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\unregmp2.exe
- 2008-04-14 18:29:54 28,672 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\update\fixccs.exe
- 2008-04-14 18:30:00 27,136 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\update\nv4prep.exe
- 2008-04-14 18:30:04 31,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\update\spnpinst.exe
- 2008-04-14 16:00:05 171,008 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\uploadm.exe
- 2008-04-14 16:00:05 37,376 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\upnpcont.exe
- 2008-04-14 16:00:05 38,912 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\ups.exe
- 2008-04-14 16:00:05 46,592 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\userinit.exe
- 2008-04-14 16:00:05 70,656 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\utilman.exe
- 2007-06-27 12:59:58 737,280 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\vbc.exe
- 2008-04-14 16:00:05 49,152 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\verclsid.exe
- 2008-04-14 16:00:05 310,272 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\vssvc.exe
- 2008-04-14 16:00:05 66,560 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wab.exe
- 2008-04-14 16:00:05 50,688 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wabmig.exe
- 2008-04-14 16:00:05 137,728 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wbemtest.exe
- 2008-04-14 16:00:05 85,504 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wextract.exe
- 2008-04-14 16:00:06 451,584 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wiaacmgr.exe
- 2008-04-14 16:00:06 304,640 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\winhlp32.exe
- 2008-04-14 16:00:06 26,112 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\winver.exe
- 2008-04-14 16:00:06 217,088 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wmiadap.exe
- 2008-04-14 16:00:06 146,944 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wmiapsrv.exe
- 2008-04-14 16:00:06 379,392 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wmic.exe
- 2008-04-14 16:00:06 238,592 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wmiprvse.exe
- 2008-04-14 16:00:06 94,208 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wmplayer.exe
- 2008-04-14 16:00:07 234,496 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wordpad.exe
- 2008-04-14 16:00:07 52,736 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wpabaln.exe
- 2008-04-14 16:00:07 31,744 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wpnpinst.exe
- 2008-04-14 16:00:07 34,304 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wscntfy.exe
- 2008-04-14 16:00:07 176,128 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wscript.exe
- 2008-04-14 16:00:07 131,072 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wuauclt.exe
- 2008-04-14 16:00:07 185,344 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\wuauclt1.exe
- 2008-04-14 16:00:07 51,200 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\xcopy.exe
- 2008-04-13 18:53:32 578,560 ----a-w C:\WINDOWS\SoftwareDistribution\Download\7d2cee6b1d58dd154a634d3211bdeac1\xpnetdg.exe
- 2008-08-14 13:42:30 2,158,080 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP2GDR\ntkrnlmp.exe
- 2008-08-14 13:42:30 2,037,760 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP2GDR\ntkrpamp.exe
- 2008-08-14 13:37:03 2,164,736 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP2QFE\ntkrnlmp.exe
- 2008-08-14 13:37:00 2,042,880 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP2QFE\ntkrpamp.exe
- 2008-08-14 13:20:31 2,167,296 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP3GDR\ntkrnlmp.exe
- 2008-08-14 13:20:30 2,045,952 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP3GDR\ntkrpamp.exe
- 2008-08-14 13:54:25 2,167,296 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP3QFE\ntkrnlmp.exe
- 2008-08-14 13:54:24 2,045,952 ----a-w C:\WINDOWS\SoftwareDistribution\Download\8ad11f4c819c80cafc7362c581902249\SP3QFE\ntkrpamp.exe
- 2008-08-25 08:35:50 91,136 ----a-w C:\WINDOWS\SoftwareDistribution\Download\dc815338210c2d4d3bc1a46a7b448af9\sp2gdr\ie4uinit.exe
- 2008-08-25 08:38:00 34,304 ----a-w C:\WINDOWS\SoftwareDistribution\Download\dc815338210c2d4d3bc1a46a7b448af9\sp2gdr\ieudinit.exe
- 2008-08-25 08:43:21 91,136 ----a-w C:\WINDOWS\SoftwareDistribution\Download\dc815338210c2d4d3bc1a46a7b448af9\sp2qfe\ie4uinit.exe
- 2008-08-25 08:43:21 34,304 ----a-w C:\WINDOWS\SoftwareDistribution\Download\dc815338210c2d4d3bc1a46a7b448af9\sp2qfe\ieudinit.exe
+ 2008-08-18 09:19:03 82,432 ----a-w C:\WINDOWS\system32\404Fix.exe
+ 2008-09-08 20:38:55 88,576 ----a-w C:\WINDOWS\system32\AntiXPVSTFix.exe
+ 2004-07-31 15:50:36 51,200 ----a-w C:\WINDOWS\system32\dumphive.exe
+ 2008-10-10 05:58:08 82,944 ----a-w C:\WINDOWS\system32\IEDFix.C.exe
+ 2008-05-18 18:40:35 82,944 ----a-w C:\WINDOWS\system32\IEDFix.exe
+ 2008-10-10 05:58:08 82,944 ----a-w C:\WINDOWS\system32\o4Patch.exe
- 2008-10-25 07:29:09 59,878 ----a-w C:\WINDOWS\system32\perfc001.dat
+ 2008-10-25 09:30:09 59,878 ----a-w C:\WINDOWS\system32\perfc001.dat
- 2008-10-25 07:29:10 59,774 ----a-w C:\WINDOWS\system32\perfc009.dat
+ 2008-10-25 09:30:09 59,774 ----a-w C:\WINDOWS\system32\perfc009.dat
- 2008-10-25 07:29:10 331,338 ----a-w C:\WINDOWS\system32\perfh001.dat
+ 2008-10-25 09:30:09 331,338 ----a-w C:\WINDOWS\system32\perfh001.dat
- 2008-10-25 07:29:10 395,534 ----a-w C:\WINDOWS\system32\perfh009.dat
+ 2008-10-25 09:30:09 395,534 ----a-w C:\WINDOWS\system32\perfh009.dat
+ 2003-06-05 18:13:00 53,248 ----a-w C:\WINDOWS\system32\Process.exe
+ 2006-04-27 14:49:30 288,417 ----a-w C:\WINDOWS\system32\SrchSTS.exe
+ 2006-01-09 07:36:06 40,960 ----a-w C:\WINDOWS\system32\swsc.exe
+ 2008-10-01 12:51:40 87,552 ----a-w C:\WINDOWS\system32\VACFix.exe
+ 2007-09-05 21:22:23 289,144 ----a-w C:\WINDOWS\system32\VCCLSID.exe
+ 2007-10-03 21:36:46 25,600 ----a-w C:\WINDOWS\system32\WS2Fix.exe
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Internet Download Accelerator"="C:\Program Files\IDA\ida.exe" [10/25/2008 10:22 AM 2179072]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [08/16/2007 04:19 PM 5728112]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [10/25/2008 10:22 AM 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATKHOTKEY"="C:\Program Files\ATK Hotkey\Hcontrol.exe" [10/25/2008 10:14 AM 229376]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [10/25/2008 10:14 AM 90112]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [10/25/2008 10:22 AM 786432]
"Power_Gear"="C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe" [10/25/2008 10:22 AM 90112]
"ACU"="C:\Program Files\Atheros\ACU.exe" [10/25/2008 10:22 AM 376832]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [10/27/2006 12:47 AM 31016]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\zyzoom.exe" [11/03/2007 04:50 AM 6731312]
"Malwarebytes' Anti-Malware"="C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" [10/22/2008 04:10 PM 399504]
"AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [07/29/2008 08:20 PM 206088]
"RTHDCPL"="RTHDCPL.EXE" [10/30/2006 02:49 PM 16269312 C:\WINDOWS\RTHDCPL.EXE]
"SkyTel"="SkyTel.EXE" [10/25/2008 10:22 AM 2879488 C:\WINDOWS\SkyTel.exe]
"BluetoothAuthenticationAgent"="bthprops.cpl" [08/03/2004 11:56 PM 110592 C:\WINDOWS\system32\bthprops.cpl]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [10/25/2008 10:22 AM 15360]
C:\Documents and Settings\ں §ڑ\çں‍ê، ں §ڑ\ںé ©ںê¤\ §ک ں颬نïé\
RocketDock.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [2007-03-19 630784]
C:\Documents and Settings\All Users\çں‍ê، ں §ڑ\ںé ©ںê¤\ §ک ں颬نïé\
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2008-09-02 113664]
Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;C:\WINDOWS\system32\drivers\klbg.sys [01/29/2008 06:29 PM 32784]
R2 MBAMService;MBAMService;C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [10/22/2008 04:10 PM 170640]
R3 ASNDIS5;ASNDIS5 Protocol Driver;C:\PROGRA~1\ATKHOT~1\ASNDIS5.SYS [05/27/2004 06:13 PM 16269]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;C:\WINDOWS\system32\DRIVERS\klfltdev.sys [03/13/2008 07:02 PM 26640]
R3 MBAMProtector;MBAMProtector;C:\WINDOWS\system32\drivers\mbam.sys [10/22/2008 04:10 PM 15504]
R3 WSIMD;wsimd Service;C:\WINDOWS\system32\DRIVERS\wsimd.sys [03/28/2007 07:52 PM 57024]
S3 tapvpn;TAP VPN Adapter;C:\WINDOWS\system32\DRIVERS\tapvpn.sys [01/24/2008 12:25 AM 27136]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0e3eccc2-792d-11dd-a6d0-0015afa538c8}]
\Shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL exiplorer.exe
.
.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\ابدأ\Application Data\Mozilla\Firefox\Profiles\pfqsl9k8.default\
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2008-10-25 13:06:13
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\ATK Hotkey\ATKOSD.exe
C:\Program Files\ATK Hotkey\WDC.exe
E:\C:\DOCUME~1\7BB4~1\LOCALS~1\temp\RarSFX0\uruninstaller.exe
C:\DOCUME~1\7BB4~1\LOCALS~1\temp\RarSFX0\uruninstaller.exe
.
**************************************************************************
.
Completion time: 10/25/2008 13:13:02 - machine was rebooted
ComboFix-quarantined-files.txt 2008-10-25 10:12:49
ComboFix2.txt 2008-10-25 08:09:01
Pre-Run: 31,143,952,384 bytes free
Post-Run: 31,138,045,952 bytes free
793 --- E O F --- 2008-10-25 07:13:09








====


الهيجااك




Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:16:26, on 25/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Maxthon2\Maxthon.exe
C:\Documents and Settings\ابدأ\سطح المكتب\Zyzoom_HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: IE 4.x-6.x BHO for Internet Download Accelerator - {2A646672-9C3A-4C28-9A7A-1FB0F63F28B6} - C:\PROGRA~1\IDA\idaiehlp.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O3 - Toolbar: IDA Bar - {C70E30C7-140A-4166-A2E8-43557E62B41A} - C:\Program Files\IDA\idabar.dll
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\zyzoom.exe" /minimized
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKCU\..\Run: [Internet Download Accelerator] C:\Program Files\IDA\ida.exe -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: Download ALL with IDA - C:\Program Files\IDA\idaieall.htm
O8 - Extra context menu item: Download with IDA - C:\Program Files\IDA\idaie.htm
O8 - Extra context menu item: ت&صدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: إرسال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: إر&سال إلى OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra 'Tools' menuitem: &Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 6425 bytes

 
توقيع : حمدي خضير
ماشاء الله تقريرك الان نظيف

والرساله الي تلع ليست بفايروس

مجرد خطأ ببرنامج BatteryLife

لذلك اعد تثبيت البرنامج هذا وان شاء الله خير
 
الله يعطيك العافيـــــــه اخوي
ويخليك لنا فخر

الجهااز سليم
بس اخوي في مشكله ابي استفسر منه
انا مجرد لما اطلع من التصفح ينحذف الكوكيز مثلأأ نجي بالمنتدى القاه طلع
لازم ادخله من جديد اذا عندك الحل جزااك الله خير
 
توقيع : حمدي خضير
بسيطه اخوي
امتنع عن استخدام برامج التنظيف وتحديدا تنظيف مخلفات الإنترنت
وتحديدا الكوكيز ,, وهذا ماانصحك فيه ابدا
الأفضل انك تحذف الكوكيز لانها تستخدم كملفات تعقب ,,
فاذا كنت تستخدم برامج تنظيف امتنع عن استخدامها وانت تحصل الأسم موجود جاهز
 
عودة
أعلى