ياحبذى الجنة

زيزوومى مميز
إنضم
1 يونيو 2008
المشاركات
750
مستوى التفاعل
26
النقاط
530
غير متصل
السلام عليكم ورحمة الله وبركاته
اخواني اتحمل عندي تولبار وصفحة بداية غثيثين وحاولت الغيهم من لوحة التحكم ولكنهم انحذفوا من الانترنت اكسبلورر فقط اما من الفايرفوكس لا مازالول موجودين
دخلت على قائمة ابدا كافة البرامج وحاولت احذفه من الانينستول حقته لكن مافي فايده
لااااااااااااااااااصق في الفايرفوكس مو راضي ينحذف ابدا
كيف احذفه الله يخليكم؟

وهذي النافذة الي تطلعلي لما احاول احذفه
اما صورة نفس التولبار مو راضية تنرفع اتعبتني
لكني بحاول ارفعها

i12151_.bmp
 

والله الصورة مارضيت تترفع مادري ليش المهم انه هذا التولبار اسمه 4shared
 
HijackThis1.gif

حمل هذا الآداة
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

شغل البرنامج ==> واضغط على
Do a system scan and save log
لحظات .. ويظهر لك تقرير داخل المفكرة==> انسخه والصقه بردك القادم
أتمنى منك الصبر حتى يتم تحليل التقرير
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:27:25 م, on 14/05/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\Resources\Themes\Vista_Anthracite\VistaStart\VistaStart1.3.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\sistray.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\jws\My Documents\Downloads\Programs\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [SiSRaid] C:\Program Files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [VistaStart1.3] C:\WINDOWS\Resources\Themes\Vista_Anthracite\VistaStart\VistaStart1.3.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: &تصدير إلى Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: خدمة تحديث Google (gupdate1c9d2e9ef8fb89a) (gupdate1c9d2e9ef8fb89a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

--
End of file - 5614 bytes
 
توقيع : أعتز بك
والله اني اخاف من هذي الادوات لاني المرة الماضية جيت احذف برنامج الحماية باحد هذي الادوات وانحذف معاه اشياء من الويندوز وانعدم الجهاز واضطريت اوديه يتفرمت
مافي طريقة ثانية يدوية؟
 
لااااااااااااااااااصق في الفايرفوكس مو راضي ينحذف ابدا

الفاير عربي ولا انقلش ؟

اذا كان عربي من القائمة الي فوق الاداوات >>> الإضافات >>>>

بتطلع لك اضافت كثير وفيها حق التولبار .. حدديه ثم ازالة واعد تشغيل الفايرفوكس

واعملي التالي


عطل جميع برامج الحماية ,,
وحمل هذه الاداة واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes
انتظر حتى الاداة تنتهي من فحص جهازك ,,, وبشكل تلقائي يعاد تشغيل جهازك ,,
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
انتظر حتى يظهر لك تقرير ,, انسخه والصقه بردك القادم

بعدها اعملي التالي




عطل برنامج الحمايه واستخدم اداة SmitfraudFix

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


قم بتشغيل الملف SmitfraudFix.exe ,, وتابع الشرح كماا بهذه الصور

000.png





001.png





002.png





003.png





004.png


005.png



 
السلام عليكم مشكور اخوي على الرد واسفة على التاخير بس ماكان المنتدى راضي يفتح معي اليومين الي فاتو
الفاير عربي وعملت الي قلتلي عليه وراح التولبار
الله يجزاك عني كل خير وهذا تقرير الكمبوفيكس طبعا مااعادت التشغيل على طول اعطتني التقرير

ComboFix 09-05-17.03 - jws 05/18/2009 8:08.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1256.966.1025.18.479.228 [GMT 3:00]
Running from: c:\documents and settings\jws\My Documents\Downloads\Programs\ComboFix.exe
AV: Kaspersky Anti-Virus *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((( Files Created from 2009-04-18 to 2009-05-18 )))))))))))))))))))))))))))))))
.

2009-05-16 02:35 . 2009-05-16 02:35 -------- d-----w c:\documents and settings\All Users\Application Data\Office Genuine Advantage
2009-05-16 02:09 . 2003-02-28 15:26 139536 ----a-w c:\windows\system32\javaee.dll
2009-05-15 06:15 . 2009-05-15 06:15 -------- d-----w c:\program files\Common Files\xing shared
2009-05-14 18:25 . 2009-05-15 19:41 -------- d-----w c:\windows\system32\CatRoot_bak
2009-05-14 17:51 . 2009-05-14 18:10 -------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-05-14 17:51 . 2009-05-14 17:51 -------- d-----w c:\program files\Nsasoft
2009-05-14 01:53 . 2009-02-09 11:48 2059264 -c----w c:\windows\system32\dllcache\ntkrnlpa.exe
2009-05-14 01:53 . 2009-02-09 11:48 2017280 -c----w c:\windows\system32\dllcache\ntkrpamp.exe
2009-05-14 01:53 . 2009-02-09 11:48 2182016 -c----w c:\windows\system32\dllcache\ntoskrnl.exe
2009-05-14 01:52 . 2009-02-09 11:48 2137600 -c----w c:\windows\system32\dllcache\ntkrnlmp.exe
2009-05-14 00:32 . 2008-06-14 17:59 271616 -c----w c:\windows\system32\dllcache\bthport.sys
2009-05-14 00:32 . 2008-06-14 17:59 271616 ------w c:\windows\system32\drivers\bthport.sys
2009-05-14 00:29 . 2008-10-24 11:10 453632 -c----w c:\windows\system32\dllcache\mrxsmb.sys
2009-05-13 23:55 . 2009-05-13 23:55 -------- d-----w c:\documents and settings\jws\Application Data\CyberScrub
2009-05-13 23:54 . 2009-05-14 00:14 -------- d-----w c:\documents and settings\jws\Application Data\cleaner
2009-05-13 22:42 . 2008-10-16 11:06 208744 ----a-w c:\windows\system32\muweb.dll
2009-05-13 22:42 . 2008-10-16 11:06 268648 ----a-w c:\windows\system32\mucltui.dll
2009-05-13 13:38 . 2009-05-13 13:38 -------- d-----w c:\documents and settings\jws\Local Settings\Application Data\Conduit
2009-05-13 13:38 . 2009-05-13 13:38 -------- d-----w c:\program files\Conduit
2009-05-13 13:38 . 2009-05-13 13:38 -------- d-----w c:\documents and settings\jws\Application Data\4shared Desktop
2009-05-13 04:18 . 2003-08-15 11:55 348160 ----a-w c:\windows\system32\eSellerateEngine.dll
2009-05-13 04:18 . 2009-05-13 04:19 -------- d-----w c:\program files\Acoustica MP3 Audio Mixer
2009-05-13 04:00 . 2009-05-13 04:00 -------- d-----w c:\documents and settings\NetworkService\Local Settings\Application Data\Google
2009-05-12 17:27 . 2009-05-17 11:57 -------- d-----w c:\documents and settings\All Users\Application Data\Messenger Plus!
2009-05-12 14:22 . 2009-05-12 14:22 -------- d-----w c:\documents and settings\jws\Application Data\vlc
2009-05-12 10:11 . 2009-05-12 10:11 -------- d-----w c:\documents and settings\LocalService\Local Settings\Application Data\Google
2009-05-12 09:56 . 2009-05-12 09:56 -------- d-----w c:\program files\Messenger Plus! Live
2009-05-12 09:50 . 2009-05-18 04:22 -------- d-----w c:\documents and settings\jws\Tracing
2009-05-12 09:48 . 2006-11-29 10:06 3426072 ----a-w c:\windows\system32\d3dx9_32.dll
2009-05-12 09:48 . 2009-05-12 09:48 -------- d-----w c:\program files\Microsoft SQL Server Compact Edition
2009-05-12 09:46 . 2009-05-12 09:46 -------- d-----w c:\program files\Microsoft
2009-05-12 09:45 . 2009-05-12 09:45 -------- d-----w c:\program files\Windows Live SkyDrive
2009-05-12 09:45 . 2009-05-12 09:48 -------- d-----w c:\program files\Windows Live
2009-05-12 09:42 . 2009-05-12 09:42 -------- d-----w c:\program files\Common Files\Windows Live
2009-05-12 04:31 . 2009-05-12 04:31 -------- d-----w c:\documents and settings\jws\Application Data\COWON
2009-05-12 04:12 . 2008-10-16 11:09 43544 ----a-w c:\windows\system32\wups2.dll
2009-05-12 02:29 . 2009-05-18 04:01 -------- d-----w c:\documents and settings\jws\Application Data\IDM
2009-05-12 02:29 . 2009-05-18 05:12 -------- d-----w c:\documents and settings\jws\Application Data\DMCache
2009-05-12 02:29 . 2009-05-12 04:00 -------- d-----w c:\program files\Internet Download Manager
2009-05-11 20:50 . 2009-05-11 20:51 -------- d-----w c:\documents and settings\jws\Contacts
2009-05-11 17:52 . 2009-05-11 17:52 0 ----a-w c:\windows\nsreg.dat
2009-05-11 17:52 . 2009-05-11 17:52 -------- d-----w c:\documents and settings\jws\Local Settings\Application Data\Mozilla
2009-05-11 16:56 . 2009-05-12 10:20 -------- d-----w c:\documents and settings\jws\Local Settings\Application Data\Google
2009-05-11 16:44 . 2009-05-12 10:19 -------- d-----w c:\program files\Google
2009-05-11 16:33 . 2009-05-11 16:52 -------- d-----w c:\documents and settings\jws\Application Data\Paltalk
2009-05-11 16:33 . 2009-05-11 16:33 -------- d-----w c:\windows\PaltalkScene
2009-05-11 16:33 . 2009-05-11 16:34 -------- d-----w c:\program files\Paltalk Messenger
2009-05-10 17:37 . 2009-05-10 17:37 -------- d-----w c:\documents and settings\jws\Local Settings\Application Data\Stardock
2009-05-10 17:26 . 2009-05-10 17:34 -------- d-----w c:\windows\Icon_Patcher
2009-05-10 17:25 . 2009-05-10 17:25 -------- d-----w c:\program files\MSECache
2009-05-10 17:06 . 2009-05-11 11:41 101287 ----a-w c:\windows\system32\drivers\klin.dat
2009-05-10 17:06 . 2009-05-11 11:41 89601 ----a-w c:\windows\system32\drivers\klick.dat
2009-05-10 17:05 . 2009-05-18 01:33 1053728 --sha-w c:\windows\system32\drivers\fidbox.dat
2009-05-10 17:05 . 2009-05-18 05:01 278560 --sha-w c:\windows\system32\drivers\fidbox2.dat
2009-05-10 17:05 . 2009-05-10 17:05 -------- d-----w c:\program files\Kaspersky Lab
2009-05-10 17:05 . 2009-05-18 03:58 -------- d-----w c:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-05-10 16:50 . 2009-05-15 00:05 -------- d-----w c:\windows\system32\ar-sa
2009-05-10 16:48 . 2008-07-09 07:34 26488 ----a-w c:\windows\system32\spupdsvc.exe
2009-05-10 16:48 . 2009-05-15 00:11 -------- d--h--w c:\windows\$hf_mig$
2009-05-10 16:43 . 2009-05-10 16:43 -------- d-----w c:\program files\Common FilesMicrosoft Shared
2009-05-10 16:43 . 1998-06-17 21:00 89360 ----a-w c:\windows\system32\VB5DB.DLL
2009-05-10 16:43 . 2009-05-10 16:43 -------- d-----w c:\program files\tringkeyboard
2009-05-10 16:42 . 2009-05-10 16:42 47104 ------w c:\windows\AKDeInstall.exe
2009-05-10 16:42 . 2009-05-10 16:42 -------- d-----w c:\program files\mpegable
2009-05-10 16:42 . 2009-05-10 16:42 -------- d-----w c:\program files\VideoLAN
2009-05-10 16:21 . 2009-05-10 16:21 -------- d-----w c:\windows\speech
2009-05-10 16:20 . 2009-05-10 16:20 -------- d-----w c:\program files\Golden Al-Wafi Translator
2009-05-10 16:19 . 2009-05-10 16:19 172032 ------w c:\windows\Setup1.exe
2009-05-10 16:19 . 2009-05-10 16:19 73216 ----a-w c:\windows\ST6UNST.EXE
2009-05-10 16:18 . 2009-05-10 16:18 196608 ----a-w c:\windows\system32\maag.dll
2009-05-10 16:18 . 2009-05-10 16:18 1212416 ----a-w c:\windows\system32\ckll.dll
2009-05-10 16:18 . 2009-05-10 16:18 1245184 ----a-w c:\windows\system32\bkll.dll
2009-05-10 16:18 . 2009-05-10 16:18 1986560 ----a-w c:\windows\system32\akll.dll
2009-05-10 16:18 . 2009-05-10 16:18 2535424 ----a-w c:\windows\system32\agsaamj.dll
2009-05-10 16:18 . 2009-05-10 16:18 90112 ----a-w c:\windows\system32\agsaami.dll
2009-05-10 16:18 . 2009-05-10 16:18 610304 ----a-w c:\windows\system32\agsaamg.dll
2009-05-10 16:18 . 2009-05-10 16:18 372736 ----a-w c:\windows\system32\agsaamc.dll
2009-05-10 16:18 . 2009-05-10 16:18 53760 ----a-w c:\windows\system\ppacklib.dll
2009-05-10 16:18 . 2009-05-10 16:18 -------- d-----w c:\windows\system32\RMBin
2009-05-10 16:18 . 2009-05-10 16:18 -------- d-----w c:\program files\Real_SC
2009-05-10 16:16 . 2009-05-17 23:30 10 ----a-w c:\windows\popcinfo.dat
2009-05-10 16:16 . 2009-05-10 16:16 -------- d-----w c:\program files\PopCap Games
2009-05-10 16:15 . 2009-05-10 16:15 -------- d-----w c:\program files\Quran_in_Word
2009-05-10 16:12 . 2009-05-15 06:14 499712 ----a-w c:\windows\system32\msvcp71.dll
2009-05-10 16:12 . 2009-05-15 06:15 -------- d-----w c:\program files\Common Files\Real
2009-05-10 16:12 . 2009-05-10 16:13 -------- d-----w c:\program files\Real
2009-05-10 15:58 . 2003-04-29 18:07 306688 ----a-w c:\windows\IsUninst.exe
2009-05-10 15:58 . 2009-05-10 15:58 -------- dc----w c:\windows\system32\DRVSTORE
2009-05-10 15:56 . 2009-05-10 15:56 -------- d-----w c:\program files\Macromedia
2009-05-10 15:45 . 2009-05-10 15:45 -------- d-----w c:\program files\CyberLink
2009-05-10 15:38 . 2009-05-10 15:38 -------- d-----w c:\documents and settings\jws\Application Data\BSplayer Pro
2009-05-10 15:38 . 2009-05-10 15:38 -------- d-----w c:\documents and settings\jws\Application Data\BSplayer
2009-05-10 15:38 . 2009-05-10 15:38 -------- d-----w c:\program files\Webteh
2009-05-10 15:27 . 2009-05-11 16:21 -------- d-----w c:\documents and settings\jws\Local Settings\Application Data\Adobe
2009-05-10 15:26 . 2009-05-10 15:59 -------- d-----w c:\program files\Common Files\Adobe
2009-05-10 15:11 . 2007-01-20 18:26 1565480 ----a-w c:\windows\system32\wmv9vcm.dll
2009-05-10 15:11 . 2006-11-01 11:52 765952 ----a-w c:\windows\system32\xvidcore.dll
2009-05-10 15:11 . 2006-11-01 11:54 180224 ----a-w c:\windows\system32\xvidvfw.dll
2009-05-10 15:11 . 2007-01-30 03:03 3596288 ----a-w c:\windows\system32\qt-dx331.dll
2009-05-10 15:11 . 2007-01-30 03:03 200704 ----a-w c:\windows\system32\ssldivx.dll
2009-05-10 15:11 . 2007-01-30 03:03 1044480 ----a-w c:\windows\system32\libdivx.dll
2009-05-10 15:11 . 2007-01-30 02:56 73728 ----a-w c:\windows\system32\dpl100.dll
2009-05-10 15:11 . 2007-01-30 02:56 196608 ----a-w c:\windows\system32\dtu100.dll
2009-05-10 15:11 . 2007-02-01 02:56 639066 ----a-w c:\windows\system32\divx.dll
2009-05-10 15:11 . 2007-01-09 15:46 10752 ----a-w c:\windows\system32\ff_vfw.dll
2009-05-10 15:11 . 2009-05-15 06:14 348160 ----a-w c:\windows\system32\msvcr71.dll
2009-05-10 15:11 . 2009-05-10 15:11 -------- d-----w c:\program files\K-Lite Codec Pack
2009-05-10 14:32 . 2004-08-03 20:08 26496 -c--a-w c:\windows\system32\dllcache\usbstor.sys
2009-05-10 14:32 . 2009-05-10 14:32 -------- d-----w c:\documents and settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-05-10 14:01 . 2007-04-09 10:23 28040 ----a-w c:\windows\system32\mdimon.dll
2009-05-10 14:00 . 2009-05-10 14:00 -------- d-----w c:\program files\Microsoft.NET
2009-05-10 13:59 . 2009-05-15 23:30 -------- d-----w c:\program files\Microsoft Works
2009-05-10 13:58 . 2009-05-10 14:00 -------- d-----w c:\windows\SHELLNEW
2009-05-10 13:56 . 2009-05-10 13:56 -------- d--h--r C:\MSOCache

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-05-18 05:01 . 2009-05-10 17:05 2032 --sha-w c:\windows\system32\drivers\fidbox2.idx
2009-05-18 01:33 . 2009-05-10 17:05 9312 --sha-w c:\windows\system32\drivers\fidbox.idx
2009-05-16 16:39 . 2009-05-09 17:53 101408 ----a-w c:\documents and settings\jws\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-05-15 00:22 . 2001-09-19 12:00 39982 ----a-w c:\windows\system32\perfc001.dat
2009-05-15 00:22 . 2001-09-19 12:00 251478 ----a-w c:\windows\system32\perfh001.dat
2009-05-12 04:31 . 2009-05-10 15:53 -------- d-----w c:\program files\JetAudio
2009-05-11 11:41 . 2008-01-29 15:29 33808 ----a-w c:\windows\system32\drivers\klbg.sys
2009-05-10 17:26 . 2004-08-03 21:55 218624 ----a-w c:\windows\system32\uxtheme.dll
2009-05-10 17:26 . 2004-08-03 21:56 1949184 ----a-w c:\windows\system32\logonui.exe
2009-05-10 15:56 . 2009-05-09 19:49 -------- d--h--w c:\program files\InstallShield Installation Information
2009-05-10 15:54 . 2009-05-10 15:53 -------- d-----w c:\program files\The KMPlayer
2009-05-09 20:23 . 2009-05-09 19:47 -------- d-----w c:\program files\Common Files\InstallShield
2009-05-09 19:53 . 2009-05-09 19:53 -------- d-----w c:\program files\Silicon Integrated Systems
2009-05-09 19:50 . 2009-05-09 19:48 -------- d-----w c:\program files\SiS VGA Utilities V3.61a
2009-05-09 17:39 . 2009-05-09 17:39 -------- d-----w c:\program files\microsoft frontpage
2009-05-09 17:35 . 2009-05-09 17:35 22144 ----a-w c:\windows\system32\emptyregdb.dat
2009-03-26 15:35 . 2009-05-07 07:42 210352 ----a-w c:\windows\system32\idmmbc.dll
2009-03-13 21:25 . 2009-04-25 03:55 25088 ----a-w c:\windows\system32\msxml3a.dll
2009-03-06 14:44 . 2004-08-03 21:55 282624 ----a-w c:\windows\system32\pdh.dll
2009-03-03 00:06 . 2004-08-03 21:55 826368 ----a-w c:\windows\system32\wininet.dll
2009-02-20 16:50 . 2004-08-03 21:55 78336 ----a-w c:\windows\system32\ieencode.dll
.

------- Sigcheck -------

[-] 2009-05-10 17:31 1655296 2FD48AAEAEC9C891F72277BBE701F5DB c:\windows\explorer.exe
[-] 2008-04-14 15:59 1031168 CA3445DCE9EB70A2CA2504E0AF5C543F c:\windows\SoftwareDistribution\Download\b86141217825998609b93e71cc29eb6e\explorer.exe
[-] 2009-05-10 17:31 1655296 2FD48AAEAEC9C891F72277BBE701F5DB c:\windows\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((( SnapShot@2009-05-13_22.38.53 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-10-22 09:47 . 2008-10-22 09:47 62976 c:\windows\system32\tzchange.exe
+ 2009-05-10 14:01 . 2007-04-09 10:23 28552 c:\windows\system32\spool\prtprocs\w32x86\mdippr.dll
+ 2009-05-10 14:01 . 2007-04-09 10:23 46472 c:\windows\system32\spool\drivers\w32x86\mdiui.dll
+ 2009-05-10 14:01 . 2007-04-09 10:23 46472 c:\windows\system32\spool\drivers\w32x86\3\mdiui.dll
- 2009-05-10 16:48 . 2007-11-30 02:39 17784 c:\windows\system32\spmsg.dll
+ 2009-05-10 16:48 . 2007-11-30 11:18 17784 c:\windows\system32\spmsg.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 55808 c:\windows\system32\secur32.dll
+ 2004-08-03 21:55 . 2009-02-03 20:08 55808 c:\windows\system32\secur32.dll
+ 2001-09-19 12:00 . 2009-02-06 16:54 35328 c:\windows\system32\sc.exe
- 2004-08-03 21:55 . 2006-10-17 08:58 44544 c:\windows\system32\pngfilt.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 44544 c:\windows\system32\pngfilt.dll
- 2001-09-19 12:00 . 2009-05-09 17:52 39992 c:\windows\system32\perfc009.dat
+ 2001-09-19 12:00 . 2009-05-15 00:22 39992 c:\windows\system32\perfc009.dat
+ 2009-05-09 17:34 . 2008-06-12 14:16 91648 c:\windows\system32\mtxoci.dll
+ 2004-08-03 21:55 . 2008-06-12 14:16 66560 c:\windows\system32\mtxclu.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 66560 c:\windows\system32\mtxclu.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 21264 c:\windows\system32\msjdbc10.dll
- 2009-05-10 15:53 . 2002-02-18 07:23 21264 c:\windows\system32\msjdbc10.dll
+ 2006-11-07 18:03 . 2009-02-20 16:50 52224 c:\windows\system32\msfeedsbs.dll
- 2009-05-09 17:34 . 2004-08-03 21:55 58880 c:\windows\system32\msdtclog.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 58880 c:\windows\system32\msdtclog.dll
+ 2004-08-03 21:55 . 2008-06-24 16:22 74240 c:\windows\system32\mscms.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 27648 c:\windows\system32\jsproxy.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 15120 c:\windows\system32\jdbgmgr.exe
- 2009-05-10 15:53 . 2002-02-18 07:23 15120 c:\windows\system32\jdbgmgr.exe
- 2009-05-10 15:53 . 2002-02-18 07:22 63248 c:\windows\system32\javaprxy.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 63248 c:\windows\system32\javaprxy.dll
+ 2006-11-07 00:26 . 2009-02-20 10:20 13824 c:\windows\system32\ieudinit.exe
+ 2004-08-03 21:55 . 2009-02-20 16:50 44544 c:\windows\system32\iernonce.dll
+ 2004-08-03 21:56 . 2009-02-20 10:20 70656 c:\windows\system32\ie4uinit.exe
+ 2006-10-17 08:58 . 2009-02-20 16:50 63488 c:\windows\system32\icardie.dll
+ 2007-03-22 16:17 . 2007-03-22 16:17 35440 c:\windows\system32\FM20ENU.DLL
- 2004-08-03 21:55 . 2004-08-03 21:55 55808 c:\windows\system32\dllcache\secur32.dll
+ 2004-08-03 21:55 . 2009-02-03 20:08 55808 c:\windows\system32\dllcache\secur32.dll
+ 2001-09-19 12:00 . 2009-02-06 16:54 35328 c:\windows\system32\dllcache\sc.exe
+ 2004-08-03 21:55 . 2009-02-20 16:50 44544 c:\windows\system32\dllcache\pngfilt.dll
- 2004-08-03 21:55 . 2006-10-17 08:58 44544 c:\windows\system32\dllcache\pngfilt.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 91648 c:\windows\system32\dllcache\mtxoci.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 66560 c:\windows\system32\dllcache\mtxclu.dll
+ 2004-08-03 21:55 . 2008-06-12 14:16 66560 c:\windows\system32\dllcache\mtxclu.dll
+ 2009-02-20 16:50 . 2009-02-20 16:50 52224 c:\windows\system32\dllcache\msfeedsbs.dll
- 2009-05-09 17:34 . 2004-08-03 21:55 58880 c:\windows\system32\dllcache\msdtclog.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 58880 c:\windows\system32\dllcache\msdtclog.dll
+ 2004-08-03 21:55 . 2008-06-24 16:22 74240 c:\windows\system32\dllcache\mscms.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 27648 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-02-20 10:20 . 2009-02-20 10:20 13824 c:\windows\system32\dllcache\ieudinit.exe
+ 2004-08-03 21:55 . 2009-02-20 16:50 44544 c:\windows\system32\dllcache\iernonce.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 78336 c:\windows\system32\dllcache\ieencode.dll
- 2004-08-03 21:55 . 2006-10-17 09:06 78336 c:\windows\system32\dllcache\ieencode.dll
+ 2004-08-03 21:56 . 2009-02-20 10:20 70656 c:\windows\system32\dllcache\ie4uinit.exe
+ 2009-02-20 16:50 . 2009-02-20 16:50 63488 c:\windows\system32\dllcache\icardie.dll
+ 2009-05-09 17:34 . 2005-07-26 04:39 60416 c:\windows\system32\dllcache\colbact.dll
+ 2009-05-09 17:34 . 2005-07-26 04:39 60416 c:\windows\system32\colbact.dll
- 2009-05-10 15:53 . 2002-02-18 07:23 49424 c:\windows\system32\clspack.exe
+ 2009-05-10 15:53 . 2003-02-28 15:26 49424 c:\windows\system32\clspack.exe
+ 2009-05-10 15:53 . 2003-02-28 15:26 46352 c:\windows\setdebug.exe
- 2009-05-10 15:53 . 2002-02-18 07:23 46352 c:\windows\setdebug.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 23040 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 23040 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 61440 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pubs.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 61440 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pubs.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 27136 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 27136 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 11264 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\mspicons.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 11264 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\mspicons.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 86016 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\inficon.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 86016 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\inficon.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 12288 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 12288 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2007-03-22 16:07 . 2007-03-22 16:07 78168 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\RM.DLL
+ 2007-03-22 16:07 . 2007-03-22 16:07 41824 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\RECALL.DLL
+ 2007-03-22 16:05 . 2007-03-22 16:05 97632 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\PP7X32.DLL
+ 2007-04-19 10:53 . 2007-04-19 10:53 69984 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLRPC.DLL
+ 2001-06-05 05:13 . 2001-06-05 05:13 40972 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OCRVC.DAT
+ 2001-10-22 21:13 . 2001-10-22 21:13 53260 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OCRHC.DAT
+ 2001-06-05 05:13 . 2001-06-05 05:13 65536 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\LOOKUP.DAT
+ 2001-06-05 05:13 . 2001-06-05 05:13 18844 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\JFONT.DAT
+ 2001-06-05 05:13 . 2001-06-05 05:13 34168 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\ENGIDX.DAT
+ 2007-03-22 16:07 . 2007-03-22 16:07 80224 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\DLGSETP.DLL
+ 2007-03-22 16:07 . 2007-03-22 16:07 91488 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\ADDRPARS.DLL
+ 2003-01-17 11:03 . 2003-01-17 11:03 59466 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\XSCAN32.DAT
+ 1999-12-09 18:21 . 1999-12-09 18:21 32768 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\XLCALL32.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 59960 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\UNBIND.EXE
+ 2002-10-07 06:49 . 2002-10-07 06:49 81983 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TWRECS.DLL
+ 2003-07-14 20:00 . 2003-07-14 20:00 99904 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TRANSMGR.DLL
+ 2003-07-14 19:53 . 2003-07-14 19:53 11848 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\SMARTTAGINSTALL.EXE
+ 2003-07-14 19:57 . 2003-07-14 19:57 58944 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\SEQCHK10.DLL
+ 2003-07-14 19:44 . 2003-07-14 19:44 66616 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\SENDTO.DLL
+ 2003-07-14 19:43 . 2003-07-14 19:43 74288 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\RM.DLL
+ 2002-10-07 06:49 . 2002-10-07 06:49 81984 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\REVERSE.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 40512 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\REFIEBAR.DLL
+ 2003-05-08 18:54 . 2003-05-08 18:54 77824 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\REFEDIT.DLL
+ 2003-07-14 19:42 . 2003-07-14 19:42 37432 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\RECALL.DLL
+ 2003-07-14 19:40 . 2003-07-14 19:40 51256 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PUBTRAP.DLL
+ 2003-01-13 12:04 . 2003-01-13 12:04 39504 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PUBENV.DLL
+ 2003-07-15 00:18 . 2003-07-15 00:18 93752 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PP7X32.DLL
+ 2003-07-14 19:43 . 2003-07-14 19:43 49208 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLWAB.DLL
+ 2003-07-14 19:43 . 2003-07-14 19:43 64056 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLRPC.DLL
+ 2003-07-14 19:44 . 2003-07-14 19:44 88128 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLMIME.DLL
+ 2003-07-14 19:41 . 2003-07-14 19:41 24640 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLACCT.DLL
+ 2003-07-14 19:53 . 2003-07-14 19:53 95792 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OSA.EXE
+ 2003-07-15 00:14 . 2003-07-15 00:14 27192 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OISCTRL.DLL
+ 2003-07-14 19:56 . 2003-07-14 19:56 13888 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\NPOFFICE.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 56888 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\NAME.DLL
+ 2003-07-14 19:52 . 2003-07-14 19:52 41528 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSSH.DLL
+ 2003-06-18 14:31 . 2003-06-18 14:31 16384 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSPGIMME.DLL
+ 2003-07-14 19:45 . 2003-07-14 19:45 39488 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOXMLMF.DLL
+ 2003-07-14 19:45 . 2003-07-14 19:45 55360 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOXMLED.EXE
+ 2003-07-14 19:46 . 2003-07-14 19:46 42040 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOXEV.DLL
+ 2003-07-14 19:53 . 2003-07-14 19:53 39488 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOSVFBR.DLL
+ 2003-07-14 19:53 . 2003-07-14 19:53 55872 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOSVABW.DLL
+ 2003-07-14 19:52 . 2003-07-14 19:52 35896 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOSV.DLL
+ 2003-07-14 19:52 . 2003-07-14 19:52 28224 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOSTYLE.DLL
+ 2003-07-14 19:56 . 2003-07-14 19:56 54328 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOMSE.DLL
+ 2003-07-14 19:52 . 2003-07-14 19:52 55360 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOHTMED.EXE
+ 2003-07-14 19:52 . 2003-07-14 19:52 67128 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOHEV.DLL
+ 2003-07-14 19:44 . 2003-07-14 19:44 25144 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOEURO.DLL
+ 2003-07-14 19:52 . 2003-07-14 19:52 27704 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSODCW.DLL
+ 2003-07-14 19:52 . 2003-07-14 19:52 17464 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSMH.DLL
+ 2003-07-14 19:51 . 2003-07-14 19:51 87104 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSENCODE.DLL
+ 2003-07-14 19:56 . 2003-07-14 19:56 40504 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSE7.EXE
+ 2003-07-14 20:12 . 2003-07-14 20:12 47872 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSB1XTOR.DLL
+ 2003-06-18 14:31 . 2003-06-18 14:31 35328 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MDIUI.DLL
+ 2003-06-18 14:31 . 2003-06-18 14:31 18944 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MDIPPR.DLL
+ 2003-06-18 14:31 . 2003-06-18 14:31 17920 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MDIMON.DLL
+ 2003-07-14 19:45 . 2003-07-14 19:45 58944 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\INLAUNCH.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 87096 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\IEAWSDC.DLL
+ 2003-07-14 19:41 . 2003-07-14 19:41 13368 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FINDER.EXE
+ 2003-07-14 19:53 . 2003-07-14 19:53 34880 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\DWTRIG20.EXE
+ 2003-07-14 19:52 . 2003-07-14 19:52 39992 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\DWDCW20.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 98360 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\DSSM.EXE
+ 2003-07-14 19:56 . 2003-07-14 19:56 14904 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\DSITF.DLL
+ 2003-07-25 15:57 . 2003-07-25 15:57 75832 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\DLGSETP.DLL
+ 2003-07-15 00:18 . 2003-07-15 00:18 14400 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\DFUIPRXY.DLL
+ 2003-07-15 00:18 . 2003-07-15 00:18 47160 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\DFUICOM.EXE
+ 2003-07-14 19:57 . 2003-07-14 19:57 44608 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\CONVTEXT.EXE
+ 2003-07-14 19:53 . 2003-07-14 19:53 46144 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\BLNMGRPS.DLL
+ 2003-07-14 19:53 . 2003-07-14 19:53 60984 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\BLNMGR.DLL
+ 2003-07-14 19:53 . 2003-07-14 19:53 94768 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\AW.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 38968 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\AUTHZAX.DLL
+ 2003-07-14 19:43 . 2003-07-14 19:43 87616 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\ADDRPARS.DLL
+ 2009-05-15 00:05 . 2006-10-17 08:58 44544 c:\windows\ie7updates\KB963027-IE7\pngfilt.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 50688 c:\windows\ie7updates\KB963027-IE7\msfeedsbs.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 27136 c:\windows\ie7updates\KB963027-IE7\jsproxy.dll
+ 2009-05-15 00:05 . 2006-11-07 00:26 13312 c:\windows\ie7updates\KB963027-IE7\ieudinit.exe
+ 2009-05-15 00:05 . 2006-11-07 00:26 43008 c:\windows\ie7updates\KB963027-IE7\iernonce.dll
+ 2009-05-15 00:05 . 2006-10-17 09:06 78336 c:\windows\ie7updates\KB963027-IE7\ieencode.dll
+ 2009-05-15 00:05 . 2006-11-07 00:26 54784 c:\windows\ie7updates\KB963027-IE7\ie4uinit.exe
+ 2009-05-15 00:05 . 2006-10-17 08:58 61952 c:\windows\ie7updates\KB963027-IE7\icardie.dll
- 2009-05-10 16:12 . 2009-05-10 16:12 5632 c:\windows\system32\pndx5032.dll
+ 2009-05-10 16:12 . 2009-05-15 06:15 5632 c:\windows\system32\pndx5032.dll
- 2009-05-10 16:12 . 2009-05-10 16:12 6656 c:\windows\system32\pndx5016.dll
+ 2009-05-10 16:12 . 2009-05-15 06:15 6656 c:\windows\system32\pndx5016.dll
+ 2009-05-16 02:09 . 2009-05-16 02:09 2678 c:\windows\java\Packages\Data\T7P7H7P7.DAT
+ 2009-05-16 02:09 . 2009-05-16 02:09 2678 c:\windows\java\Packages\Data\QMBNZ5NB.DAT
+ 2009-05-16 02:09 . 2009-05-16 02:09 2678 c:\windows\java\Packages\Data\O97TJPVZ.DAT
+ 2009-05-16 02:09 . 2009-05-16 02:09 2678 c:\windows\java\Packages\Data\DNZZ9VLB.DAT
+ 2009-05-16 02:09 . 2009-05-16 02:09 2678 c:\windows\java\Packages\Data\9VRBBFTV.DAT
- 2009-05-10 15:53 . 2002-02-18 04:35 6550 c:\windows\jautoexp.dat
+ 2009-05-10 15:53 . 2003-02-28 13:35 6550 c:\windows\jautoexp.dat
- 2009-05-10 14:01 . 2009-05-10 14:01 4096 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 4096 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2003-06-18 14:31 . 2003-06-18 14:31 6144 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OCRPS.DLL
+ 2008-02-17 01:33 . 2008-02-17 01:33 690176 c:\windows\system32\xpsp3res.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 171792 c:\windows\system32\wjview.exe
- 2009-05-10 15:53 . 2002-02-18 07:23 171792 c:\windows\system32\wjview.exe
- 2004-08-03 21:55 . 2004-08-03 21:55 351232 c:\windows\system32\winhttp.dll
+ 2004-08-03 21:55 . 2008-12-16 12:48 351232 c:\windows\system32\winhttp.dll
+ 2009-03-10 19:18 . 2009-03-10 19:18 960392 c:\windows\system32\WgaTray.exe
+ 2009-03-10 19:18 . 2009-03-10 19:18 264576 c:\windows\system32\WgaLogon.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 233472 c:\windows\system32\webcheck.dll
+ 2009-05-09 17:34 . 2009-02-06 16:39 227840 c:\windows\system32\wbem\wmiprvse.exe
+ 2009-05-09 17:34 . 2009-02-09 10:18 453120 c:\windows\system32\wbem\wmiprvsd.dll
+ 2009-05-09 17:34 . 2009-02-09 10:19 473088 c:\windows\system32\wbem\fastprox.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 286992 c:\windows\system32\vmhelper.dll
- 2009-05-10 15:53 . 2002-02-18 07:23 286992 c:\windows\system32\vmhelper.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 105984 c:\windows\system32\url.dll
- 2004-08-03 21:55 . 2006-10-17 09:05 105984 c:\windows\system32\url.dll
+ 2004-08-03 21:55 . 2008-10-03 10:15 247326 c:\windows\system32\strmdll.dll
+ 2009-05-10 14:01 . 2007-04-09 10:24 758664 c:\windows\system32\spool\drivers\w32x86\mdigraph.dll
+ 2009-05-10 14:01 . 2007-04-09 10:24 758664 c:\windows\system32\spool\drivers\w32x86\3\mdigraph.dll
+ 2004-08-03 21:56 . 2009-02-09 10:05 110592 c:\windows\system32\services.exe
+ 2004-08-03 21:55 . 2008-12-05 07:12 144896 c:\windows\system32\schannel.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 144896 c:\windows\system32\schannel.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 399360 c:\windows\system32\rpcss.dll
+ 2009-05-10 16:13 . 2009-05-15 06:15 185920 c:\windows\system32\rmoc3260.dll
+ 2009-05-10 16:12 . 2009-05-15 06:14 278528 c:\windows\system32\pncrt.dll
- 2009-05-10 16:12 . 2009-05-10 16:12 278528 c:\windows\system32\pncrt.dll
+ 2001-09-19 12:00 . 2009-05-15 00:22 311604 c:\windows\system32\perfh009.dat
- 2001-09-19 12:00 . 2009-05-09 17:52 311604 c:\windows\system32\perfh009.dat
+ 2008-12-31 14:04 . 2008-12-31 14:04 528744 c:\windows\system32\OGAVerify.exe
+ 2008-12-31 14:04 . 2008-12-31 14:04 691560 c:\windows\system32\OGACheckControl.dll
+ 2008-12-31 14:04 . 2008-12-31 14:04 502120 c:\windows\system32\OGAAddin.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 102912 c:\windows\system32\occache.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 693760 c:\windows\system32\ntdll.dll
+ 2004-08-03 21:55 . 2008-10-15 16:57 332800 c:\windows\system32\netapi32.dll
+ 2004-08-03 21:55 . 2008-06-20 17:39 245248 c:\windows\system32\mswsock.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 245248 c:\windows\system32\mswsock.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 671232 c:\windows\system32\mstime.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 193024 c:\windows\system32\msrating.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 947472 c:\windows\system32\msjava.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 477696 c:\windows\system32\mshtmled.dll
+ 2006-11-07 18:03 . 2009-02-20 16:50 459264 c:\windows\system32\msfeeds.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 161792 c:\windows\system32\msdtcuiu.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 956928 c:\windows\system32\msdtctm.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 428032 c:\windows\system32\msdtcprx.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 154384 c:\windows\system32\msawt.dll
- 2009-05-10 15:53 . 2002-02-18 07:23 154384 c:\windows\system32\msawt.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 717824 c:\windows\system32\lsasrv.dll
+ 2004-08-03 21:56 . 2008-06-09 22:31 103936 c:\windows\system32\logagent.exe
- 2004-08-03 21:56 . 2004-08-03 21:56 103936 c:\windows\system32\logagent.exe
+ 2009-05-10 15:53 . 2003-02-28 15:26 172304 c:\windows\system32\jview.exe
- 2009-05-10 15:53 . 2002-02-18 07:23 172304 c:\windows\system32\jview.exe
+ 2009-05-10 15:53 . 2003-02-28 15:26 171280 c:\windows\system32\jit.dll
- 2009-05-10 15:53 . 2002-02-18 07:22 171280 c:\windows\system32\jit.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 404752 c:\windows\system32\javart.dll
- 2009-05-10 15:53 . 2002-02-18 07:22 404752 c:\windows\system32\javart.dll
- 2009-05-10 15:53 . 2002-02-18 07:22 187152 c:\windows\system32\javacypt.dll
+ 2009-05-10 15:53 . 2003-02-28 15:26 187152 c:\windows\system32\javacypt.dll
+ 2009-05-09 17:36 . 2008-04-11 18:50 683520 c:\windows\system32\inetcomm.dll
+ 2006-10-17 08:57 . 2009-02-20 16:50 268288 c:\windows\system32\iertutil.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 385024 c:\windows\system32\iedkcs32.dll
+ 2006-10-17 08:27 . 2009-02-20 16:50 383488 c:\windows\system32\ieapfltr.dll
+ 2001-09-19 12:00 . 2009-02-20 05:14 161792 c:\windows\system32\ieakui.dll
- 2001-09-19 12:00 . 2006-11-07 00:25 161792 c:\windows\system32\ieakui.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 230400 c:\windows\system32\ieaksie.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 153088 c:\windows\system32\ieakeng.dll
+ 2004-08-03 21:55 . 2008-10-23 12:59 283648 c:\windows\system32\gdi32.dll
- 2009-05-09 20:27 . 2009-05-13 04:00 361728 c:\windows\system32\FNTCACHE.DAT
+ 2009-05-09 20:27 . 2009-05-16 01:58 361728 c:\windows\system32\FNTCACHE.DAT
+ 2004-08-03 21:55 . 2009-02-20 16:50 133120 c:\windows\system32\extmgr.dll
+ 2004-08-03 21:55 . 2008-07-07 20:30 253952 c:\windows\system32\es.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 214528 c:\windows\system32\dxtrans.dll
- 2004-08-03 21:55 . 2006-10-17 08:57 214528 c:\windows\system32\dxtrans.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 347136 c:\windows\system32\dxtmsft.dll
- 2009-05-10 15:53 . 2002-02-18 04:34 313856 c:\windows\system32\dx3j.dll
+ 2009-05-10 15:53 . 2003-02-28 13:34 313856 c:\windows\system32\dx3j.dll
+ 2004-08-03 19:58 . 2004-09-01 22:27 209280 c:\windows\system32\drivers\update.sys
+ 2004-08-03 20:07 . 2008-06-20 09:52 225920 c:\windows\system32\drivers\tcpip6.sys
+ 2004-08-03 20:14 . 2008-06-20 10:45 360320 c:\windows\system32\drivers\tcpip.sys
+ 2004-08-03 20:14 . 2008-12-11 11:57 333184 c:\windows\system32\drivers\srv.sys
+ 2001-09-19 12:00 . 2008-05-08 12:28 202752 c:\windows\system32\drivers\rmcast.sys
+ 2004-08-03 20:15 . 2008-10-24 11:10 453632 c:\windows\system32\drivers\mrxsmb.sys
+ 2004-08-03 20:14 . 2008-08-14 09:51 138368 c:\windows\system32\drivers\afd.sys
+ 2004-08-03 21:55 . 2008-06-20 17:39 148992 c:\windows\system32\dnsapi.dll
+ 2009-05-09 17:34 . 2008-04-21 21:26 215040 c:\windows\system32\dllcache\wordpad.exe
+ 2009-05-09 17:34 . 2009-02-06 16:39 227840 c:\windows\system32\dllcache\wmiprvse.exe
+ 2009-05-09 17:34 . 2009-02-09 10:18 453120 c:\windows\system32\dllcache\wmiprvsd.dll
+ 2004-08-03 21:55 . 2009-03-03 00:06 826368 c:\windows\system32\dllcache\wininet.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 351232 c:\windows\system32\dllcache\winhttp.dll
+ 2004-08-03 21:55 . 2008-12-16 12:48 351232 c:\windows\system32\dllcache\winhttp.dll
+ 2009-03-10 19:18 . 2009-03-10 19:18 960392 c:\windows\system32\dllcache\WgaTray.exe
+ 2009-03-10 19:18 . 2009-03-10 19:18 264576 c:\windows\system32\dllcache\wgaLogon.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 233472 c:\windows\system32\dllcache\webcheck.dll
+ 2009-05-09 17:36 . 2008-05-27 17:23 765952 c:\windows\system32\dllcache\vgx.dll
- 2009-05-09 17:36 . 2006-11-07 18:03 765952 c:\windows\system32\dllcache\VGX.dll
- 2004-08-03 21:55 . 2006-10-17 09:05 105984 c:\windows\system32\dllcache\url.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 105984 c:\windows\system32\dllcache\url.dll
+ 2004-08-03 19:58 . 2004-09-01 22:27 209280 c:\windows\system32\dllcache\update.sys
+ 2004-08-03 20:07 . 2008-06-20 09:52 225920 c:\windows\system32\dllcache\tcpip6.sys
+ 2004-08-03 20:14 . 2008-06-20 10:45 360320 c:\windows\system32\dllcache\tcpip.sys
+ 2004-08-03 21:55 . 2008-10-03 10:15 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2004-08-03 20:14 . 2008-12-11 11:57 333184 c:\windows\system32\dllcache\srv.sys
+ 2004-08-03 21:56 . 2009-02-09 10:05 110592 c:\windows\system32\dllcache\services.exe
- 2004-08-03 21:55 . 2004-08-03 21:55 144896 c:\windows\system32\dllcache\schannel.dll
+ 2004-08-03 21:55 . 2008-12-05 07:12 144896 c:\windows\system32\dllcache\schannel.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 399360 c:\windows\system32\dllcache\rpcss.dll
+ 2001-09-19 12:00 . 2008-05-08 12:28 202752 c:\windows\system32\dllcache\rmcast.sys
+ 2004-08-03 21:55 . 2009-03-06 14:44 282624 c:\windows\system32\dllcache\pdh.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 282624 c:\windows\system32\dllcache\pdh.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 102912 c:\windows\system32\dllcache\occache.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 693760 c:\windows\system32\dllcache\ntdll.dll
+ 2004-08-03 21:55 . 2008-10-15 16:57 332800 c:\windows\system32\dllcache\netapi32.dll
+ 2004-08-03 21:55 . 2008-06-20 17:39 245248 c:\windows\system32\dllcache\mswsock.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 245248 c:\windows\system32\dllcache\mswsock.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 671232 c:\windows\system32\dllcache\mstime.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 193024 c:\windows\system32\dllcache\msrating.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 477696 c:\windows\system32\dllcache\mshtmled.dll
+ 2009-02-20 16:50 . 2009-02-20 16:50 459264 c:\windows\system32\dllcache\msfeeds.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 161792 c:\windows\system32\dllcache\msdtcuiu.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 956928 c:\windows\system32\dllcache\msdtctm.dll
+ 2009-05-09 17:34 . 2008-06-12 14:16 428032 c:\windows\system32\dllcache\msdtcprx.dll
- 2009-05-09 17:36 . 2004-08-03 21:55 331776 c:\windows\system32\dllcache\msadce.dll
+ 2009-05-09 17:36 . 2008-05-01 14:30 331776 c:\windows\system32\dllcache\msadce.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 717824 c:\windows\system32\dllcache\lsasrv.dll
- 2004-08-03 21:56 . 2004-08-03 21:56 103936 c:\windows\system32\dllcache\logagent.exe
+ 2004-08-03 21:56 . 2008-06-09 22:31 103936 c:\windows\system32\dllcache\logagent.exe
+ 2009-05-09 17:36 . 2008-04-11 18:50 683520 c:\windows\system32\dllcache\inetcomm.dll
+ 2009-02-28 04:54 . 2009-02-28 04:54 636072 c:\windows\system32\dllcache\iexplore.exe
+ 2009-02-20 16:50 . 2009-02-20 16:50 268288 c:\windows\system32\dllcache\iertutil.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 385024 c:\windows\system32\dllcache\iedkcs32.dll
+ 2009-02-20 16:50 . 2009-02-20 16:50 383488 c:\windows\system32\dllcache\ieapfltr.dll
+ 2001-09-19 12:00 . 2009-02-20 05:14 161792 c:\windows\system32\dllcache\ieakui.dll
- 2001-09-19 12:00 . 2006-11-07 00:25 161792 c:\windows\system32\dllcache\ieakui.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 230400 c:\windows\system32\dllcache\ieaksie.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 153088 c:\windows\system32\dllcache\ieakeng.dll
+ 2004-08-03 21:55 . 2008-10-23 12:59 283648 c:\windows\system32\dllcache\gdi32.dll
+ 2009-05-09 17:34 . 2009-02-09 10:19 473088 c:\windows\system32\dllcache\fastprox.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 133120 c:\windows\system32\dllcache\extmgr.dll
+ 2004-08-03 21:55 . 2008-07-07 20:30 253952 c:\windows\system32\dllcache\es.dll
- 2004-08-03 21:55 . 2006-10-17 08:57 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 347136 c:\windows\system32\dllcache\dxtmsft.dll
+ 2004-08-03 21:55 . 2008-06-20 17:39 148992 c:\windows\system32\dllcache\dnsapi.dll
+ 2004-08-03 20:14 . 2008-08-14 09:51 138368 c:\windows\system32\dllcache\afd.sys
+ 2004-08-03 21:55 . 2009-02-20 16:50 124928 c:\windows\system32\dllcache\advpack.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 680960 c:\windows\system32\dllcache\advapi32.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 680960 c:\windows\system32\dllcache\advapi32.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 100352 c:\windows\system32\dllcache\6to4svc.dll
+ 2004-08-03 21:55 . 2006-08-16 11:58 100352 c:\windows\system32\dllcache\6to4svc.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 124928 c:\windows\system32\advpack.dll
+ 2004-08-03 21:55 . 2009-02-09 10:19 680960 c:\windows\system32\advapi32.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 680960 c:\windows\system32\advapi32.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 100352 c:\windows\system32\6to4svc.dll
+ 2004-08-03 21:55 . 2006-08-16 11:58 100352 c:\windows\system32\6to4svc.dll
+ 2009-05-10 14:01 . 2009-05-17 00:35 409600 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\xlicons.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 409600 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\xlicons.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 286720 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\wordicon.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 286720 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\wordicon.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 249856 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pptico.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 249856 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pptico.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 794624 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\outicon.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 794624 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\outicon.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 135168 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 135168 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2009-05-10 14:01 . 2009-05-10 14:01 593920 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2009-05-10 14:01 . 2009-05-17 00:35 593920 c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2007-03-22 16:22 . 2007-03-22 16:22 103264 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\TRANSMGR.DLL
+ 2007-05-10 10:34 . 2007-05-10 10:34 562528 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\PUBCONV.DLL
+ 2007-05-31 10:36 . 2007-05-31 10:36 612184 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\PTXT9.DLL
+ 2007-05-31 10:35 . 2007-05-31 10:35 133976 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\PRTF9.DLL
+ 2007-04-19 10:53 . 2007-04-19 10:53 149856 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLPH.DLL
+ 2007-05-31 10:42 . 2007-05-31 10:42 200032 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLOOK.EXE
+ 2007-04-19 10:53 . 2007-04-19 10:53 106336 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLMIME.DLL
+ 2007-04-19 10:54 . 2007-04-19 10:54 183136 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\MIMEDIR.DLL
+ 2007-04-19 10:53 . 2007-04-19 10:53 127328 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\IMPMAIL.DLL
+ 2007-04-19 11:09 . 2007-04-19 11:09 167256 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\IETAG.DLL
+ 2007-04-19 10:53 . 2007-04-19 10:53 137568 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\ENVELOPE.DLL
+ 2001-06-05 05:13 . 2001-06-05 05:13 289926 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\ENGDIC.DAT
+ 2003-04-02 08:21 . 2003-04-02 08:21 111632 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\WAVTOASF.EXE
+ 2002-10-07 06:51 . 2002-10-07 06:51 221252 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TWSTRUCT.DLL
+ 2002-10-07 06:50 . 2002-10-07 06:50 118847 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TWRECE.DLL
+ 2002-10-07 06:51 . 2002-10-07 06:51 102467 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TWORIENT.DLL
+ 2002-10-07 06:51 . 2002-10-07 06:51 147520 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TWLAY32.DLL
+ 2002-10-07 06:51 . 2002-10-07 06:51 180289 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TWCUTLIN.DLL
+ 2002-10-07 06:50 . 2002-10-07 06:50 241729 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\TWCUTCHR.DLL
+ 2002-10-07 06:53 . 2002-10-07 06:53 106561 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\THOCRAPI.DLL
+ 2003-08-06 10:26 . 2003-08-06 10:26 445488 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\SOA.DLL
+ 2003-08-06 10:31 . 2003-08-06 10:31 362552 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\SETLANG.EXE
+ 2003-07-14 19:57 . 2003-07-14 19:57 349248 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\SELFCERT.EXE
+ 2003-07-21 08:46 . 2003-07-21 08:46 390712 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\RTFHTML.DLL
+ 2003-07-14 19:50 . 2003-07-14 19:50 551480 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PUBCONV.DLL
+ 2003-07-14 19:51 . 2003-07-14 19:51 604728 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PTXT9.DLL
+ 2002-10-07 07:11 . 2002-10-07 07:11 167997 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PSOM.DLL
+ 2003-07-14 19:40 . 2003-07-14 19:40 130104 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PRTF9.DLL
+ 2003-07-15 00:18 . 2003-07-15 00:18 430136 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PP4X322.DLL
+ 2003-07-14 19:43 . 2003-07-14 19:43 139320 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLPH.DLL
+ 2003-07-14 19:45 . 2003-07-14 19:45 196152 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLOOK.EXE
+ 2003-07-08 08:48 . 2003-07-08 08:48 115288 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLFLTR.DLL
+ 2003-07-14 19:44 . 2003-07-14 19:44 102968 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLCTL.DLL
+ 2003-07-15 00:14 . 2003-07-15 00:14 242240 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OISGRAPH.DLL
+ 2003-07-15 00:14 . 2003-07-15 00:14 828472 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OISAPP.DLL
+ 2003-07-15 00:14 . 2003-07-15 00:14 283696 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OIS.EXE
+ 2003-07-14 20:00 . 2003-07-14 20:00 145984 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSWEBCAP.DLL
+ 1998-06-17 08:52 . 1998-06-17 08:52 401462 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSVCP60.DLL
+ 2003-07-23 19:40 . 2003-07-23 19:40 482872 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSTORES.DLL
+ 2003-07-14 19:56 . 2003-07-14 19:56 124984 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSTORE.EXE
+ 2003-07-14 20:02 . 2003-07-14 20:02 627256 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSTORDB.EXE
+ 2003-07-14 20:02 . 2003-07-14 20:02 637496 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSQRY32.EXE
+ 2003-06-19 13:05 . 2003-06-19 13:05 364648 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSPVIEW.EXE
+ 2003-06-19 13:05 . 2003-06-19 13:05 128104 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSPSCAN.EXE
+ 2003-06-18 14:31 . 2003-06-18 14:31 788480 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSPFILT.DLL
+ 2003-07-15 00:18 . 2003-07-15 00:18 376888 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSORUN.DLL
+ 2003-07-23 19:35 . 2003-07-23 19:35 127032 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOCFU.DLL
+ 2003-07-15 00:14 . 2003-07-15 00:14 106552 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOCF.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 120888 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOAUTH.DLL
+ 2002-04-09 17:14 . 2002-04-09 17:14 187560 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSMDUN80.DLL
+ 2003-07-15 00:14 . 2003-07-15 00:14 139328 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSJSPP40.DLL
+ 2002-12-17 16:08 . 2002-12-17 16:08 359600 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSDMENG.DLL
+ 2003-07-14 19:51 . 2003-07-14 19:51 116288 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSCONV97.DLL
+ 2003-07-14 19:58 . 2003-07-14 19:58 230968 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSCDM.DLL
+ 2003-07-14 19:57 . 2003-07-14 19:57 124480 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSB1CORE.DLL
+ 2003-07-15 00:13 . 2003-07-15 00:13 130112 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSAEXP30.DLL
+ 2003-07-14 20:01 . 2003-07-14 20:01 445496 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MODHELP.DLL
+ 2003-07-14 19:46 . 2003-07-14 19:46 176696 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MIMEDIR.DLL
+ 2003-05-28 12:42 . 2003-05-28 12:42 342616 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\METCONV.DLL
+ 2003-06-18 14:31 . 2003-06-18 14:31 443904 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MDIVWCTL.DLL
+ 2003-06-18 14:31 . 2003-06-18 14:31 252928 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MDIINK.DLL
+ 2003-06-18 14:31 . 2003-06-18 14:31 758784 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MDIGRAPH.DLL
+ 2003-05-28 12:42 . 2003-05-28 12:42 514680 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\INTLNAME.DLL
+ 2003-07-23 19:32 . 2003-07-23 19:32 121400 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\IMPMAIL.DLL
+ 2003-07-14 19:53 . 2003-07-14 19:53 161336 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\IETAG.DLL
+ 2003-07-25 16:14 . 2003-07-25 16:14 799288 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FPWEC.DLL
+ 2003-07-14 19:40 . 2003-07-14 19:40 179768 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FPERSON.DLL
+ 2003-07-14 20:36 . 2003-07-14 20:36 186424 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FPDTC.DLL
+ 2002-10-07 06:49 . 2002-10-07 06:49 192573 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FORM.DLL
+ 2003-07-31 12:19 . 2003-07-31 12:19 131648 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\ENVELOPE.DLL
+ 2003-07-15 00:14 . 2003-07-15 00:14 350264 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\CDLMSO.DLL
+ 2003-07-15 00:13 . 2003-07-15 00:13 166456 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\ACCWIZ.DLL
+ 2009-05-15 00:05 . 2006-11-07 18:03 818688 c:\windows\ie7updates\KB963027-IE7\wininet.dll
+ 2009-05-15 00:05 . 2009-05-10 17:31 360448 c:\windows\ie7updates\KB963027-IE7\webcheck.dll
+ 2009-05-15 00:05 . 2006-10-17 09:05 105984 c:\windows\ie7updates\KB963027-IE7\url.dll
+ 2009-05-15 00:05 . 2008-07-09 07:34 380792 c:\windows\ie7updates\KB963027-IE7\spuninst\updspapi.dll
+ 2009-05-15 00:05 . 2008-07-08 12:58 231288 c:\windows\ie7updates\KB963027-IE7\spuninst\spuninst.exe
+ 2009-05-15 00:05 . 2009-05-10 17:31 130048 c:\windows\ie7updates\KB963027-IE7\occache.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 670720 c:\windows\ie7updates\KB963027-IE7\mstime.dll
+ 2009-05-15 00:05 . 2006-10-17 09:05 192000 c:\windows\ie7updates\KB963027-IE7\msrating.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 475648 c:\windows\ie7updates\KB963027-IE7\mshtmled.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 458752 c:\windows\ie7updates\KB963027-IE7\msfeeds.dll
+ 2009-05-15 00:05 . 2006-10-17 09:04 622080 c:\windows\ie7updates\KB963027-IE7\iexplore.exe
+ 2009-05-15 00:05 . 2006-10-17 08:57 266752 c:\windows\ie7updates\KB963027-IE7\iertutil.dll
+ 2009-05-15 00:05 . 2006-11-07 00:27 382976 c:\windows\ie7updates\KB963027-IE7\iedkcs32.dll
+ 2009-05-15 00:05 . 2006-10-17 08:27 380928 c:\windows\ie7updates\KB963027-IE7\ieapfltr.dll
+ 2009-05-15 00:05 . 2006-11-07 00:25 161792 c:\windows\ie7updates\KB963027-IE7\ieakui.dll
+ 2009-05-15 00:05 . 2006-11-07 00:27 229376 c:\windows\ie7updates\KB963027-IE7\ieaksie.dll
+ 2009-05-15 00:05 . 2006-11-07 00:26 152064 c:\windows\ie7updates\KB963027-IE7\ieakeng.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 131584 c:\windows\ie7updates\KB963027-IE7\extmgr.dll
+ 2009-05-15 00:05 . 2006-10-17 08:57 214528 c:\windows\ie7updates\KB963027-IE7\dxtrans.dll
+ 2009-05-15 00:05 . 2006-10-17 08:58 346624 c:\windows\ie7updates\KB963027-IE7\dxtmsft.dll
+ 2009-05-15 00:05 . 2006-11-07 00:26 123904 c:\windows\ie7updates\KB963027-IE7\advpack.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 765952 c:\windows\ie7updates\KB938127-v2-IE7\vgx.dll
+ 2009-05-15 00:05 . 2007-03-06 00:58 369376 c:\windows\ie7updates\KB938127-v2-IE7\spuninst\updspapi.dll
+ 2009-05-15 00:05 . 2007-03-06 00:57 213216 c:\windows\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe
+ 2009-05-14 00:29 . 2008-10-24 11:10 453632 c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2009-05-14 00:32 . 2008-06-14 17:59 271616 c:\windows\Driver Cache\i386\bthport.sys
+ 2009-05-14 00:30 . 2008-04-15 17:55 1724416 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.3352_x-ww_81af8e88\GdiPlus.dll
+ 2004-08-03 21:56 . 2008-11-07 15:32 2109440 c:\windows\system32\WMVCore.dll
+ 2004-08-03 21:55 . 2008-06-10 15:18 1053696 c:\windows\system32\WMNetmgr.dll
+ 2004-08-03 21:46 . 2009-02-09 14:15 1846144 c:\windows\system32\win32k.sys
+ 2004-08-03 21:55 . 2009-02-20 16:50 1160192 c:\windows\system32\urlmon.dll
+ 2004-08-03 21:55 . 2008-07-03 13:14 8440320 c:\windows\system32\shell32.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 1285632 c:\windows\system32\quartz.dll
+ 2004-08-03 21:55 . 2008-12-20 22:42 1285632 c:\windows\system32\quartz.dll
+ 2004-08-03 21:49 . 2009-02-09 11:48 2182016 c:\windows\system32\ntoskrnl.exe
+ 2004-08-04 00:48 . 2009-02-09 11:48 2059264 c:\windows\system32\ntkrnlpa.exe
+ 2004-08-03 21:55 . 2008-09-04 16:44 1106944 c:\windows\system32\msxml3.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 3595264 c:\windows\system32\mshtml.dll
+ 2008-03-20 15:06 . 2009-03-10 19:18 1482112 c:\windows\system32\LegitCheckControl.dll
+ 2004-08-03 21:55 . 2009-03-21 14:19 1354240 c:\windows\system32\kernel32.dll
+ 2006-11-07 18:03 . 2009-02-20 16:50 6066176 c:\windows\system32\ieframe.dll
+ 2006-09-05 20:01 . 2008-07-09 14:25 2455488 c:\windows\system32\ieapfltr.dat
+ 2007-06-06 07:53 . 2007-06-06 07:53 1195888 c:\windows\system32\FM20.DLL
+ 2004-08-03 21:56 . 2008-11-07 15:32 2109440 c:\windows\system32\dllcache\WMVCore.dll
+ 2004-08-03 21:55 . 2008-06-10 15:18 1053696 c:\windows\system32\dllcache\WMNetmgr.dll
+ 2004-08-03 21:46 . 2009-02-09 14:15 1846144 c:\windows\system32\dllcache\win32k.sys
+ 2004-08-03 21:55 . 2009-02-20 16:50 1160192 c:\windows\system32\dllcache\urlmon.dll
+ 2004-08-03 21:55 . 2008-07-03 13:14 8440320 c:\windows\system32\dllcache\shell32.dll
- 2004-08-03 21:55 . 2004-08-03 21:55 1285632 c:\windows\system32\dllcache\quartz.dll
+ 2004-08-03 21:55 . 2008-12-20 22:42 1285632 c:\windows\system32\dllcache\quartz.dll
+ 2004-08-03 21:55 . 2008-09-04 16:44 1106944 c:\windows\system32\dllcache\msxml3.dll
+ 2004-08-03 21:55 . 2009-02-20 16:50 3595264 c:\windows\system32\dllcache\mshtml.dll
+ 2004-08-03 21:55 . 2009-03-21 14:19 1354240 c:\windows\system32\dllcache\kernel32.dll
+ 2009-02-20 16:50 . 2009-02-20 16:50 6066176 c:\windows\system32\dllcache\ieframe.dll
+ 2008-07-09 14:25 . 2008-07-09 14:25 2455488 c:\windows\system32\dllcache\ieapfltr.dat
+ 2007-05-09 14:19 . 2007-05-09 14:19 2585936 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\VBE6.DLL
+ 2007-05-31 10:35 . 2007-05-31 10:35 6420320 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\POWERPNT.EXE
+ 2007-05-31 10:43 . 2007-05-31 10:43 7613280 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLLIB.DLL
+ 2007-05-10 10:35 . 2007-05-10 10:35 6747480 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\MSPUB.EXE
+ 2003-04-30 08:52 . 2003-04-30 08:52 1581120 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\XPAGE3C.DLL
+ 2002-10-07 07:03 . 2002-10-07 07:03 1794113 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\XIMAGE3B.DLL
+ 2003-07-03 12:19 . 2003-07-03 12:19 2502656 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\VBE6.DLL
+ 2003-08-03 07:52 . 2003-08-03 07:52 2808376 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\STSLIST.DLL
+ 2003-07-31 12:21 . 2003-07-31 12:21 1782840 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\PPTVIEW.EXE
+ 2003-07-30 09:40 . 2003-07-30 09:40 6133312 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\POWERPNT.EXE
+ 2003-08-01 12:09 . 2003-08-01 12:09 8086072 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OWC11.DLL
+ 2003-08-04 10:19 . 2003-08-04 10:19 7330360 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OWC10.DLL
+ 2003-08-09 20:06 . 2003-08-09 20:06 7522360 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLLIB.DLL
+ 2003-07-07 10:36 . 2003-07-07 10:36 2058343 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OUTLFLTR.DAT
+ 2003-07-14 20:05 . 2003-07-14 20:05 1054264 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\OMFC.DLL
+ 2003-07-28 09:24 . 2003-07-28 09:24 5677112 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSPUB.EXE
+ 2003-06-18 14:31 . 2003-06-18 14:31 1033216 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSPCORE.DLL
+ 2003-07-10 23:15 . 2003-07-10 23:15 1292872 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSONSEXT.DLL
+ 2002-12-17 16:09 . 2002-12-17 16:09 2071752 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSOLAP80.DLL
+ 2002-12-17 16:08 . 2002-12-17 16:08 1383592 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSDMINE.DLL
+ 2003-08-14 21:54 . 2003-08-14 21:54 6627392 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSACCESS.EXE
+ 2003-08-01 12:07 . 2003-08-01 12:07 4815424 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\INFOPATH.EXE
+ 2003-07-14 20:11 . 2003-07-14 20:11 2139192 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\GRAPH.EXE
+ 2003-07-25 16:00 . 2003-07-25 16:00 1157696 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FPSRVUTL.DLL
+ 2003-07-23 20:01 . 2003-07-23 20:01 1949240 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FPCUTL.DLL
+ 2003-08-03 07:56 . 2003-08-03 07:56 1146184 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\FM20.DLL
+ 2009-05-15 00:05 . 2006-11-07 18:03 1162240 c:\windows\ie7updates\KB963027-IE7\urlmon.dll
+ 2009-05-15 00:05 . 2009-05-10 17:31 3786752 c:\windows\ie7updates\KB963027-IE7\mshtml.dll
+ 2009-05-15 00:05 . 2006-11-07 18:03 6049280 c:\windows\ie7updates\KB963027-IE7\ieframe.dll
+ 2009-05-15 00:05 . 2006-09-05 20:01 2451824 c:\windows\ie7updates\KB963027-IE7\ieapfltr.dat
+ 2009-05-14 01:53 . 2009-02-09 11:48 2182016 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2009-05-14 01:53 . 2009-02-09 11:48 2017280 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2009-05-14 01:53 . 2009-02-09 11:48 2059264 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2009-05-14 01:52 . 2009-02-09 11:48 2137600 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2009-05-16 02:04 . 2009-05-06 21:16 24699336 c:\windows\system32\MRT.exe
+ 2007-05-31 10:37 . 2007-05-31 10:37 12310368 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\WINWORD.EXE
+ 2007-06-18 14:16 . 2007-06-18 14:16 12259160 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\MSO.DLL
+ 2007-05-31 10:41 . 2007-05-31 10:41 10352472 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\EXCEL.EXE
+ 2003-08-06 10:24 . 2003-08-06 10:24 12037688 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\WINWORD.EXE
+ 2003-08-07 21:23 . 2003-08-07 21:23 12172336 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\MSO.DLL
+ 2003-08-12 23:34 . 2003-08-12 23:34 10073144 c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.5614\EXCEL.EXE
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-03 15360]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2009-05-07 2807216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SiSRaid"="c:\program files\Silicon Integrated Systems\SiSRaidPackage\SRaid.exe" [2004-12-22 892928]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" [2009-05-11 206088]
"VistaStart1.3"="c:\windows\Resources\Themes\Vista_Anthracite\VistaStart\VistaStart1.3.exe" [2006-03-20 510464]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-05-15 198160]
"SoundMan"="SOUNDMAN.EXE" - c:\windows\SOUNDMAN.EXE [2004-12-01 77824]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-03 15360]

c:\documents and settings\All Users\çں‍ê، ں §ڑ\ںé ©ںê¤\ §ک ں颬نïé\
Adobe Gamma Loader.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2009-5-10 113664]
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
PalTalk.lnk - c:\program files\Paltalk Messenger\paltalk.exe [2009-4-25 11057664]
Utility Tray.lnk - c:\windows\system32\sistray.exe [2009-5-9 331776]

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Paltalk Messenger\\paltalk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"4830:UDP"= 4830:UDP:Windows Media Format SDK (firefox.exe)
"4831:UDP"= 4831:UDP:Windows Media Format SDK (firefox.exe)
"4832:UDP"= 4832:UDP:Windows Media Format SDK (firefox.exe)

R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29/01/2008 06:29 م 33808]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [30/04/2008 06:06 م 24592]
S2 gupdate1c9d2e9ef8fb89a;خدمة تحديث Google (gupdate1c9d2e9ef8fb89a);c:\program files\Google\Update\GoogleUpdate.exe [12/05/2009 01:10 م 133104]
.
Contents of the 'Scheduled Tasks' folder

2009-05-18 c:\windows\Tasks\GoogleUpdateTaskMachine.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-05-12 10:10]

2009-05-17 c:\windows\Tasks\OGADaily.job
- c:\windows\system32\OGAVerify.exe [2008-12-31 14:04]

2009-05-18 c:\windows\Tasks\OGALogon.job
- c:\windows\system32\OGAVerify.exe [2008-12-31 14:04]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com.sa/
IE: &تصدير إلى Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: تحميل الكل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetAll.htm
IE: تحميل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEExt.htm
IE: تحميل محتوى FLV بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetVL.htm
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
FF - ProfilePath - c:\documents and settings\jws\Application Data\Mozilla\Firefox\Profiles\0p1wnn5g.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2233703&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - 4shared Web Search
FF - prefs.js: browser.startup.homepage - hxxp://ar.start2.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:ar:official
FF - component: c:\documents and settings\jws\Application Data\IDM\idmmzcc3\components\idmmzcc.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\components\nprpbrowserrecordplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.145.5\npGoogleOneClick8.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2009-05-18 08:12
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{34facb95-2fc1-4c94-9946-07fb4cddfaab}]
@Denied: (Full) (Everyone)
"Model"=dword:00000089
"Therad"=dword:00000007

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):9f,08,31,ac,5d,24,ec,7b,54,fd,9d,e5,cd,66,3f,1c,d2,ad,ae,2a,8c,
c8,65,aa,19,9a,d3,2a,39,d3,5a,b1,9c,06,7f,d9,1a,15,5d,62,00,00,00,00,00,00,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(804)
c:\windows\system32\cscui.dll

- - - - - - - > 'explorer.exe'(2948)
c:\windows\system32\msi.dll
c:\windows\system32\SETUPAPI.dll
c:\windows\system32\NETSHELL.dll
.
Completion time: 2009-05-18 8:14
ComboFix-quarantined-files.txt 2009-05-18 05:14
ComboFix2.txt 2009-05-13 22:41

Pre-Run: 10,223,300,608 bytes free
Post-Run: 10,307,776,512 bytes free

749 --- E O F --- 2009-05-17 00:35


والان رح ابدا الاداة الثاني وان شاء الله احط التقرير الثاني
 
الظاهر يالغلا .. عندك فايروس دعائي ..

حمل هذا البرنامج .

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ثبته ثم تحديث كامل .. ثم فحص .. واي اصابه أحذفها ..

وفي البرنامج ادوات صيانه اذا انت حلو بالانجليزي .. راح تشوف من ضمن أحد الادوات

أعادة الصفحه الرئيسيه الى السابق واصلاحها (( على ماأذكر ))
 
توقيع : protection
وهذا تقرير الاداة الثانية

SmitFraudFix v2.416

Scan done at 8:29:23.89, Mon 05/18/2009
Run from C:\Documents and Settings\jws\Application Data\IDM\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in normal mode

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» hosts

127.0.0.1 localhost

»»»»»»»»»»»»»»»»»»»»»»»» VACFix

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix

S!Ri's WS2Fix: LSP not Found.


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files


»»»»»»»»»»»»»»»»»»»»»»»» IEDFix

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix

Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» RK


»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: محول SiS 900 PCI Fast Ethernet - منفذ مصغر لجدولة الحزم
DNS Server Search Order: 192.168.1.254

HKLM\SYSTEM\CCS\Services\Tcpip\..\{C07E664A-D4AE-4F01-990E-63A6B762C36D}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS1\Services\Tcpip\..\{C07E664A-D4AE-4F01-990E-63A6B762C36D}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS2\Services\Tcpip\..\{C07E664A-D4AE-4F01-990E-63A6B762C36D}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254


»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!

"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» RK.2



»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End
 
مشكور اخوي
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


حالا رح انفذ الي قلتلي عليه
واوافيك بالي يصير معي

وعلى فكرة لما طبقت الاداة الثانية اختفت الصورة حق سطح المكتب وصارت الشاشة سوداء
ايش معنى هذا الشي؟؟
هل الصورة كان فيها مشكلة؟ مع العلم انه الي حطها لي المهندس لما عملي فورمات قبل اسبوع تقريبا
وطبعا المصايب الي في الجهاز كلها بعد الفورمات:cr:
 
انتهت الاداة من عملها ولكني ماعرفت كيف احذف الاشياء الي لقتها وقاعدة احاول ارفع صورة مو راضية مادري ايش المشكلة
اعمل تصفح وبعدين رفع يقعد يحمل وبعدين ترجع الصفحة فاضية ويطلب تصفح من جديد
 
خلاص مشكور حذفت الفايروسات الي قبضت عليها الاداة
وبالنسبة لصفحة البداية اعتقد انه التطبيق كان على الانترنت اكسبلورر فقط
عموما انا عملتلها ازالة واعدت الصفحة الافتراضية حق الفايرفوكس
 
جزاكم الله خير ظهر سطح المكتب كلك يمين وتحديث:q:
 
هل المشكلة أنتهت ؟!
 
توقيع : protection
عودة
أعلى