• بادئ الموضوع بادئ الموضوع salee7
  • تاريخ البدء تاريخ البدء
  • المشاهدات 2,471
الحالة
مغلق و غير مفتوح للمزيد من الردود.

salee7

زيزوومي جديد
إنضم
10 مايو 2008
المشاركات
40
مستوى التفاعل
0
النقاط
40
الإقامة
Riyadh
غير متصل
السلام عليكم ورحمة الله وبركاته ..

احبتي في الاونة الاخيرة ظهرت لي مشكله وهي عندما اريد فتح احد برامج النصوص ( Adobe Reader & Microsoft Office ...الخ ) وبرنامج الماسنجر


وهذه صورة للمشكله .
.
77777

i18717_.bmp



وهذا تقرير الهاي جك :

PHP:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:55:57 م, on 22/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
 
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\AppServ\Apache\Apache.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\AppServ\Apache\Apache.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
C:\PROGRA~1\MYWEBS~1\bar\3.bin\m3SrchMn.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\AppServ\mysql\bin\mysqld-nt.exe
C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\andLinux\Launcher\menu.exe
C:\Program Files\andLinux\Xming\Xming.exe
C:\Program Files\andLinux\colinux-daemon.exe
C:\Program Files\andLinux\colinux-slirp-net-daemon.exe
C:\Program Files\andLinux\colinux-net-daemon.exe
C:\Program Files\andLinux\pulseaudio\pulseaudio.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: LeapFTP Internet Explorer Hook - {A5479DA1-7843-43A7-B5C0-BE342C77B629} - C:\PROGRA~1\LEAPFT~1.0\lftpie.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: My Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UVS11 Preload] C:\Program Files\Ulead Systems\Ulead VideoStudio 11\uvPL.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [MyWebSearch Plugin] rundll32 C:\PROGRA~1\MYWEBS~1\bar\3.bin\M3PLUGIN.DLL,UPF
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
O4 - HKLM\..\Run: [My Web Search Bar Search Scope Monitor] "C:\PROGRA~1\MYWEBS~1\bar\3.bin\m3SrchMn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\RunOnce: [rpbrowserrecordplugin.dll OCX] regsvr32.exe /s "C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\RunOnce: [RealUpgradeHelper] "C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe" "RealNetworks|RealPlayer|6.0"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: XFCE Menu (andLinux).lnk = C:\Program Files\andLinux\Launcher\menu.exe
O4 - Global Startup: Xming (andLinux).lnk = C:\Program Files\andLinux\Xming\Xming.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZSfox000
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1229094743588
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1232335664640
O16 - DPF: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA} (ReadUid.UserControlMacEntry) - http://209.11.247.218/ReadUid.CAB
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DD18AE59-EA36-461E-ADD2-5CD79FD22833} (Abdullah ActiveX Control) - http://nbk.net/nbk.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll
O23 - Service: andLinux - Unknown owner - C:\Program Files\andLinux\colinux-daemon.exe
O23 - Service: Apache - Unknown owner - C:\AppServ\Apache\Apache.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files\GIGABYTE\GEST\GSvr.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MySQL - Unknown owner - C:\AppServ\mysql\bin\mysqld-nt.exe
O23 - Service: My Web Search Service (MyWebSearchService) - MyWebSearch.com - C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwssvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Unknown owner - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (file missing)
 
--
End of file - 12151 bytes


اتمنى منكم المساعدة ،،،
 

أعد التقرير دون وضعه في كود
 
توقيع : samirzehani
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:55:57 م, on 22/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\AppServ\Apache\Apache.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\AppServ\Apache\Apache.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
C:\PROGRA~1\MYWEBS~1\bar\3.bin\m3SrchMn.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\AppServ\mysql\bin\mysqld-nt.exe
C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\andLinux\Launcher\menu.exe
C:\Program Files\andLinux\Xming\Xming.exe
C:\Program Files\andLinux\colinux-daemon.exe
C:\Program Files\andLinux\colinux-slirp-net-daemon.exe
C:\Program Files\andLinux\colinux-net-daemon.exe
C:\Program Files\andLinux\pulseaudio\pulseaudio.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: LeapFTP Internet Explorer Hook - {A5479DA1-7843-43A7-B5C0-BE342C77B629} - C:\PROGRA~1\LEAPFT~1.0\lftpie.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: My Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UVS11 Preload] C:\Program Files\Ulead Systems\Ulead VideoStudio 11\uvPL.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [MyWebSearch Plugin] rundll32 C:\PROGRA~1\MYWEBS~1\bar\3.bin\M3PLUGIN.DLL,UPF
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
O4 - HKLM\..\Run: [My Web Search Bar Search Scope Monitor] "C:\PROGRA~1\MYWEBS~1\bar\3.bin\m3SrchMn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\RunOnce: [rpbrowserrecordplugin.dll OCX] regsvr32.exe /s "C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\RunOnce: [RealUpgradeHelper] "C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe" "RealNetworks|RealPlayer|6.0"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: XFCE Menu (andLinux).lnk = C:\Program Files\andLinux\Launcher\menu.exe
O4 - Global Startup: Xming (andLinux).lnk = C:\Program Files\andLinux\Xming\Xming.exe
O8 - Extra context menu item: &Search -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA} (ReadUid.UserControlMacEntry) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {DD18AE59-EA36-461E-ADD2-5CD79FD22833} (Abdullah ActiveX Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll
O23 - Service: andLinux - Unknown owner - C:\Program Files\andLinux\colinux-daemon.exe
O23 - Service: Apache - Unknown owner - C:\AppServ\Apache\Apache.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files\GIGABYTE\GEST\GSvr.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MySQL - Unknown owner - C:\AppServ\mysql\bin\mysqld-nt.exe
O23 - Service: My Web Search Service (MyWebSearchService) - MyWebSearch.com - C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwssvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Unknown owner - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (file missing)
--
End of file - 12151 bytes
 
حمل هذا البرنامج

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


ثبته على الجهاز ،، ثم شغله واعمل كما الشرح التالي لفحص الجهاز وعمل تقرير

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


وبعد انتهاء الفحص اعمل التالي

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


انسخ ما بداخل التقرير والصقه بمشاركتك القادمة
 
Malwarebytes' Anti-Malware 1.38
Database version: 2323
Windows 5.1.2600 Service Pack 3
22/06/2009 08:54:47 م
mbam-log-2009-06-22 (20-54-47).txt
Scan type: Full Scan (C:\|D:\|)
Objects scanned: 176332
Time elapsed: 19 minute(s), 11 second(s)
Memory Processes Infected: 1
Memory Modules Infected: 2
Registry Keys Infected: 157
Registry Values Infected: 11
Registry Data Items Infected: 2
Folders Infected: 21
Files Infected: 99
Memory Processes Infected:
C:\Program Files\MyWebSearch\bar\3.bin\MWSOEMON.EXE (Adware.MyWebSearch) -> Unloaded process successfully.
Memory Modules Infected:
C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL (Adware.MyWeb) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL (Adware.MyWeb) -> Delete on reboot.
Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f87d7fb5-9dc5-4c8c-b998-d8dfe02e2978} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{53ced2d0-5e9a-4761-9005-648404e6f7e5} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.datacontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c8cecde3-1ae1-4c4a-ad82-6d5b00212144} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1f52a5fa-a705-4415-b975-88503b291728} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a626cdbd-3d13-4f78-b819-440a28d7e8fc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.datacontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{0f8ecf4f-3646-4c3a-8881-8e138ffcaf70} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{b813095c-81c0-4e40-aa14-67520372b987} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c9d7be3e-141a-4c85-8cd6-32461f3df2c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cff4ce82-3aa2-451f-9b77-7165605fb835} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.2 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{8e6f1832-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a9571378-68a1-443d-b082-284f960c6d17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e79dfbc0-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{72ee7f04-15bd-4845-a005-d6711144d86a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbc9-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbcb-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.htmlpanel (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.htmlpanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.outlookaddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{adb01e81-3c79-4272-a0f1-7b2be7a782dc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.outlookaddin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d293-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d297-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d292-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d296-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\pk.ie (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\pk.ie.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{938aa51a-996c-4884-98ce-80dd16a5c9da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1e1b2878-88ff-11d3-8d96-d7acac95951a} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25f} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{1e0de227-5ce4-4ea3-ab0c-8b03e1aa76bc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d9fffb27-d62a-4d64-8cec-1ff006528805} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{0d26bc71-a633-4e71-ad31-eadc3a1b6a3a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{1e1b286c-88ff-11d3-8d96-d7acac95951a} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6226ba26-c017-4007-928c-de9715c6fa67} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{9d71d88c-c598-4935-c5d1-43aa4db90836} (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mywebsearchservice (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\mywebsearchservice (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mywebsearchservice (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWay) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Bifrost (Backdoor.Bifrose) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Bifrost (Backdoor.Bifrose) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\BIFROST1.2 (Backdoor.Bifrose) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mywebsearch email plugin (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mywebsearch email plugin (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\my web search bar search scope monitor (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mywebsearch plugin (Adware.MyWeb) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{6226ba26-c017-4007-928c-de9715c6fa67} (Adware.BullseyeToolbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\ (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3PopularScreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\mywebsearch\bar (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\mywebsearch\bar\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\2.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin (Adware.MyWebSearch) -> Delete on reboot.
c:\program files\mywebsearch\bar\Avatar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Game (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\icons (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Message (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\PopSwatr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\PopSwatr\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\screensaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\Cache (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\Bifrost (Backdoor.Bifrose) -> Quarantined and deleted successfully.
Files Infected:
C:\Program Files\MyWebSearch\bar\3.bin\F3HKSTUB.DLL (Adware.MyWeb) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSOESTB.DLL (Adware.MyWeb) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL (Adware.MyWeb) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL (Adware.MyWeb) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSOEMON.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3SRCHMN.EXE (Adware.MyWeb) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\F3REGHK.DLL (Adware.MyWeb) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\M3PLUGIN.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3DTACTL.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3HISTSW.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3HTMLMU.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3POPSWT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3MSG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3HTML.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3OUTLCN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3SKIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3SCRCTR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3CJPEG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3HTTPCT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3REPROX.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\MWSOEPLG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\documents and settings\salee7\local settings\Temp\IXP000.TMP\fvsexe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\documents and settings\salee7\local settings\Temp\IXP001.TMP\fvsexe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\documents and settings\salee7\local settings\Temp\IXP002.TMP\fvsexe.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\documents and settings\salee7\my documents\downloads\Programs\SmileyCentralSetup2.3.50.45.ZSfox000.exe (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\plugins\NPMyWebS.dll (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\1.bin\F3HKSTUB.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\1.bin\M3SRCHMN.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\1.bin\MWSOEMON.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\1.bin\MWSOESTB.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\F3PSSAVR.SCR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\F3RESTUB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3HIGHIN.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3IDLE.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3IMPIPE.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3MEDINT.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3SKPLAY.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3SLSRCH.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\MWSSVC.EXE (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\NPMYWEBS.DLL (Adware.MyWeb) -> Quarantined and deleted successfully.
c:\program files\windows live\messenger\riched20.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\f3PSSavr.scr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\F3BKGERR.JPG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\F3SCHMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\F3SPACER.WMV (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\F3WALLPP.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\F3WPHOOK.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\FWPBUDDY.PNG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3FFXTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3FFXTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3NTSTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\3.bin\M3NTSTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Avatar\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\03AD5F74 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\03AD67F0 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\03AD6A71.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\03AD6D01.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\03AD6F62.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\03AD71E3.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\083AF336.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\083AF70E.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\083AFBB2.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\083AFE23.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\0844CC25.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\0847464D (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Cache\files.ini (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Game\CHECKERS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Game\CHESS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Game\REVERSI.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\History\search3 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\icons\CM.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\icons\MFC.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\icons\PSS.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\icons\SMILEY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\icons\WB.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\icons\ZWINKY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Message\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\DOG.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\FISH.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\KUNGFU.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\LIFEGARD.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\MAID.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\MAILBOX.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\OPERA.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\ROBOT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\SEDUCT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Notifier\SURFER.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Settings\prevcfg2.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\mywebsearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\PopSwatr\History\allowed (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\PopSwatr\History\notallow (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\Cache\CursorManiaBtn-new.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\Cache\CursorManiaBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\Cache\MyFunCardsIMBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\Cache\SmileyCentralBtn-new.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\Cache\SmileyCentralBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\program files\funwebproducts\Shared\Cache\WebfettiBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\Bifrost\logg.dat (Backdoor.Bifrose) -> Quarantined and deleted successfully.
 
عطل برامج الحماية عن العمل
ثم
حمل الاداة التالية واحفظها على سطح المكتب
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

عند تشغيلها بتظهر لك رسالة ,, اضغط على >> Yes
بعدها بتظهر لك رساله ثانيه ,, اضغط على >> Yes
اثناء الفحص ممكن يعاد تشغيل الجهاز
وبعد اعادة التشغيل ,, سوف تبدأ الاداة بالفحص مرره ثانيه
لا تقم بتشغيل اي برنامج ،، ومهما طالت عملية الفحص انتظر حتى تنتهي
انتظر حتى يظهر لك تقرير ،،انسخه والصقه بمشاركتك القادمة
 
توقيع : AbOdy
ComboFix 08-12-20.05 - salee7 06/22/2009 21:22:46.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1256.966.1025.18.3070.2500 [GMT 3:00]
Running from: c:\documents and settings\salee7\My Documents\Downloads\Programs\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
- REDUCED FUNCTIONALITY MODE -
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\docume~1\salee7\LOCALS~1\Temp\install_flash_player.exe
.
((((((((((((((((((((((((( Files Created from 2009-05-22 to 2009-06-22 )))))))))))))))))))))))))))))))
.
No new files created in this timespan
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-22 18:20 --------- d-----w c:\documents and settings\salee7\Application Data\DMCache
2009-06-22 18:19 --------- d-----w c:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-06-22 17:26 --------- d-----w c:\program files\Malwarebytes' Anti-Malware
2009-06-22 17:25 --------- d-----w c:\documents and settings\salee7\Application Data\Malwarebytes
2009-06-22 17:25 --------- d-----w c:\documents and settings\All Users\Application Data\Malwarebytes
2009-06-22 17:19 --------- d-----w c:\documents and settings\salee7\Application Data\QuickScan
2009-06-22 16:55 --------- d-----w c:\program files\Trend Micro
2009-06-21 08:08 --------- d-----w c:\program files\Common Files\xing shared
2009-06-21 08:08 --------- d-----w c:\program files\Common Files\Real
2009-06-20 08:53 --------- d--h--w c:\program files\InstallShield Installation Information
2009-06-20 08:53 --------- d-----w c:\program files\Symbian OS Tools
2009-06-20 08:53 --------- d-----w c:\program files\Common Files\Symbian
2009-06-18 12:00 761,888 --sha-w c:\windows\system32\drivers\fidbox2.dat
2009-06-18 12:00 4,732 --sha-w c:\windows\system32\drivers\fidbox2.idx
2009-06-18 12:00 31,440 --sha-w c:\windows\system32\drivers\fidbox.idx
2009-06-18 12:00 3,483,680 --sha-w c:\windows\system32\drivers\fidbox.dat
2009-06-18 02:03 --------- d-----w c:\program files\FTP
2009-06-17 08:27 38,160 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-17 08:27 19,096 ----a-w c:\windows\system32\drivers\mbam.sys
2009-06-12 20:03 --------- d-----w c:\documents and settings\salee7\Application Data\IDM
2009-06-05 11:58 --------- d-----w c:\program files\Apple Software Update
2009-06-05 11:58 --------- d-----w c:\documents and settings\salee7\Application Data\Apple Computer
2009-06-05 11:57 --------- d-----w c:\program files\iTunes
2009-06-05 11:57 --------- d-----w c:\program files\iPod
2009-06-05 11:57 --------- d-----w c:\program files\Common Files\Apple
2009-06-05 11:57 --------- d-----w c:\program files\Bonjour
2009-06-05 11:57 --------- d-----w c:\documents and settings\All Users\Application Data\Apple Computer
2009-06-05 11:57 --------- d-----w c:\documents and settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-06-05 11:50 --------- d-----w c:\program files\QuickTime
2009-06-03 10:54 --------- d-----w c:\documents and settings\salee7\Application Data\uTorrent
2009-05-31 21:27 --------- d-----w c:\documents and settings\All Users\Application Data\Apple
2009-05-24 11:19 --------- d-----w c:\program files\Messenger Plus! Live
2009-05-24 11:19 --------- d-----w c:\program files\Circle Deveopement
2009-05-20 13:25 94,643 ----a-w c:\windows\system32\drivers\klick.dat
2009-05-20 13:25 105,395 ----a-w c:\windows\system32\drivers\klin.dat
2009-05-20 12:24 --------- d-----w c:\program files\ALT-DVB STAR
2009-05-18 11:44 --------- d-----w c:\program files\Nokia
2009-05-18 11:44 --------- d-----w c:\program files\Common Files\Nokia
2009-05-18 11:44 --------- d-----w c:\documents and settings\All Users\Application Data\Installations
2009-05-18 09:55 --------- d-----w c:\program files\Common Files\PCSuite
2009-05-18 09:53 --------- d-----w c:\program files\PC Connectivity Solution
2009-05-18 02:11 --------- d-----w c:\program files\Internet Download Manager
2009-05-17 09:43 --------- d-----w c:\program files\DivX
2009-05-17 03:35 --------- d-----w c:\program files\DietMP3
2009-05-17 03:32 --------- d-----w c:\program files\Counter-Strike Source
2009-05-15 09:53 --------- d-----w c:\program files\Google
2009-05-14 11:01 --------- d-----w c:\documents and settings\salee7\Application Data\Hamachi
2009-05-14 10:45 25,280 ----a-w c:\windows\system32\drivers\hamachi.sys
2009-05-14 10:41 --------- d-----w c:\program files\Common Files\Thraex Software
2009-04-27 13:49 --------- d-----w c:\program files\ProgDVB
2009-04-24 07:12 --------- d-----w c:\program files\SEO Studio
2009-04-24 07:09 --------- d-----w c:\program files\Common Files\Wise Installation Wizard
2009-04-22 22:52 33,808 ----a-w c:\windows\system32\drivers\klbg.sys
2009-03-30 06:24 14,912 --sha-w c:\windows\system32\KGyGaAvL.sys
2009-03-26 15:35 210,352 ----a-w c:\windows\system32\idmmbc.dll
.
((((((((((((((((((((((((((((( snapshot@Sun 12-21-2008_18.10.25.37 )))))))))))))))))))))))))))))))))))))))))
.
+ 2005-02-25 03:34:29 14,560 ----a-w c:\windows\$hf_mig$\KB898461\spmsg.dll
+ 2005-02-25 03:34:29 209,120 ----a-w c:\windows\$hf_mig$\KB898461\spuninst.exe
+ 2005-02-25 03:34:29 22,752 ----a-w c:\windows\$hf_mig$\KB898461\spupdsvc.exe
+ 2005-02-25 03:34:29 22,240 ----a-w c:\windows\$hf_mig$\KB898461\update\spcustom.dll
+ 2005-02-25 03:34:29 714,976 ----a-w c:\windows\$hf_mig$\KB898461\update\update.exe
+ 2005-02-25 03:34:30 369,888 ----a-w c:\windows\$hf_mig$\KB898461\update\updspapi.dll
+ 2008-05-27 17:31:17 765,952 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\SP2QFE\vgx.dll
+ 2007-03-06 00:57:33 14,560 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spmsg.dll
+ 2007-03-06 00:57:38 213,216 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\spuninst.exe
+ 2007-03-06 00:57:32 22,752 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\spcustom.dll
+ 2007-03-06 00:57:55 712,928 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\update.exe
+ 2007-03-06 00:58:46 369,376 ----a-w c:\windows\$hf_mig$\KB938127-v2-IE7\update\updspapi.dll
+ 2008-05-02 13:42:54 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
+ 2007-11-30 11:18:13 752,504 ----a-w c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
+ 2008-05-08 13:58:17 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
+ 2008-07-07 20:23:57 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
+ 2007-11-30 12:38:55 752,504 ----a-w c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2007-11-30 12:38:55 380,792 ----a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
+ 2008-04-11 21:22:32 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
+ 2007-12-03 15:25:13 752,504 ----a-w c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
+ 2008-06-14 17:37:45 271,616 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
+ 2007-11-30 11:18:13 752,504 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
+ 2007-11-30 11:18:13 380,792 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
+ 2008-05-07 05:04:17 1,286,144 ----a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB951698\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
+ 2008-06-20 11:48:03 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
+ 2008-06-20 17:43:07 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
+ 2008-06-20 17:43:07 245,248 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
+ 2008-06-20 11:59:02 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
+ 2008-06-20 11:16:44 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
+ 2007-11-30 12:38:55 752,504 ----a-w c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2007-11-30 12:38:55 380,792 ----a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
+ 2008-05-07 09:07:23 135,168 ----a-w c:\windows\$hf_mig$\KB951978\SP3QFE\cscript.exe
+ 2008-05-09 10:50:04 512,000 ----a-w c:\windows\$hf_mig$\KB951978\SP3QFE\jscript.dll
+ 2008-05-09 10:50:04 180,224 ----a-w c:\windows\$hf_mig$\KB951978\SP3QFE\scrobj.dll
+ 2008-05-09 10:50:04 172,032 ----a-w c:\windows\$hf_mig$\KB951978\SP3QFE\scrrun.dll
+ 2008-05-09 10:50:04 430,080 ----a-w c:\windows\$hf_mig$\KB951978\SP3QFE\vbscript.dll
+ 2008-05-08 11:24:44 155,648 ----a-w c:\windows\$hf_mig$\KB951978\SP3QFE\wscript.exe
+ 2008-05-09 10:50:04 90,112 ----a-w c:\windows\$hf_mig$\KB951978\SP3QFE\wshext.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB951978\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB951978\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB951978\update\spcustom.dll
+ 2007-11-30 12:38:55 752,504 ----a-w c:\windows\$hf_mig$\KB951978\update\update.exe
+ 2007-11-30 12:38:55 380,792 ----a-w c:\windows\$hf_mig$\KB951978\update\updspapi.dll
+ 2008-05-01 14:38:27 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
+ 2007-11-30 11:18:13 752,504 ----a-w c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2007-11-30 11:18:13 380,792 ----a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
+ 2008-06-24 16:53:22 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB952954\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
+ 2008-09-15 15:18:38 1,846,656 ----a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
+ 2008-07-09 07:34:22 752,504 ----a-w c:\windows\$hf_mig$\KB954211\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
+ 2008-09-10 01:11:11 1,379,840 ----a-w c:\windows\$hf_mig$\KB954459\SP3QFE\msxml6.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB954459\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB954459\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB954459\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB954459\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB954459\update\updspapi.dll
+ 2008-10-03 09:49:34 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
+ 2008-09-04 17:12:05 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2008-07-09 10:04:32 380,792 ----a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
+ 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB956391\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
+ 2008-10-23 12:42:41 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
+ 2008-07-08 12:58:08 17,784 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
+ 2008-07-08 12:58:09 231,288 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2008-07-08 12:58:08 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
+ 2008-07-09 07:34:22 752,504 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2008-07-09 07:34:30 380,792 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
+ 2008-08-14 10:34:26 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
+ 2007-11-30 11:18:13 752,504 ----a-w c:\windows\$hf_mig$\KB956803\update\update.exe
+ 2007-11-30 11:18:13 380,792 ----a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
+ 2008-08-14 13:54:25 2,146,816 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
+ 2008-08-14 16:24:30 2,067,584 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
+ 2008-08-14 13:54:24 2,025,472 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
+ 2008-08-14 16:24:28 2,190,720 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB956841\update\update.exe
+ 2008-07-09 07:34:30 380,792 ----a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
+ 2008-10-24 11:41:11 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
+ 2008-07-08 12:58:08 17,784 ----a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
+ 2008-07-08 12:58:09 231,288 ----a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
+ 2008-07-08 12:58:08 26,488 ----a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
+ 2008-07-08 12:58:12 752,504 ----a-w c:\windows\$hf_mig$\KB957097\update\update.exe
+ 2008-07-08 12:58:19 380,792 ----a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
+ 2008-10-15 16:26:10 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
+ 2007-11-30 11:18:13 752,504 ----a-w c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2007-11-30 11:18:13 380,792 ----a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
+ 2008-12-11 12:33:59 333,952 ----a-w c:\windows\$hf_mig$\KB958687\SP3QFE\srv.sys
+ 2007-11-30 12:39:01 17,784 ----a-w c:\windows\$hf_mig$\KB958687\spmsg.dll
+ 2007-11-30 12:39:01 231,288 ----a-w c:\windows\$hf_mig$\KB958687\spuninst.exe
+ 2007-11-30 12:39:01 26,488 ----a-w c:\windows\$hf_mig$\KB958687\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB958687\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB958687\update\updspapi.dll
+ 2009-02-09 13:58:37 1,847,424 ----a-w c:\windows\$hf_mig$\KB958690\SP3QFE\win32k.sys
+ 2008-07-09 07:34:18 17,784 ----a-w c:\windows\$hf_mig$\KB958690\spmsg.dll
+ 2008-07-09 07:34:19 231,288 ----a-w c:\windows\$hf_mig$\KB958690\spuninst.exe
+ 2008-07-09 07:34:18 26,488 ----a-w c:\windows\$hf_mig$\KB958690\update\spcustom.dll
+ 2008-07-09 07:34:22 752,504 ----a-w c:\windows\$hf_mig$\KB958690\update\update.exe
+ 2008-07-09 07:34:30 380,792 ----a-w c:\windows\$hf_mig$\KB958690\update\updspapi.dll
+ 2008-12-05 06:58:51 144,896 ----a-w c:\windows\$hf_mig$\KB960225\SP3QFE\schannel.dll
+ 2007-11-30 11:18:09 17,784 ----a-w c:\windows\$hf_mig$\KB960225\spmsg.dll
+ 2007-11-30 11:18:09 231,288 ----a-w c:\windows\$hf_mig$\KB960225\spuninst.exe
+ 2007-11-30 11:18:09 26,488 ----a-w c:\windows\$hf_mig$\KB960225\update\spcustom.dll
+ 2007-11-30 12:39:03 752,504 ----a-w c:\windows\$hf_mig$\KB960225\update\update.exe
+ 2007-11-30 12:39:04 380,792 ----a-w c:\windows\$hf_mig$\KB960225\update\updspapi.dll
+ 2008-12-13 06:27:09 3,594,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
+ 2007-03-06 00:57:33 14,560 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spmsg.dll
+ 2007-03-06 00:57:38 213,216 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spuninst.exe
+ 2007-03-06 00:57:32 22,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\spcustom.dll
+ 2007-03-06 00:57:55 712,928 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\update.exe
+ 2007-03-06 00:58:46 369,376 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\updspapi.dll
+ 2008-07-09 07:34:18 17,784 ----a-w c:\windows\$hf_mig$\KB960715\spmsg.dll
+ 2008-07-09 07:34:19 231,288 ----a-w c:\windows\$hf_mig$\KB960715\spuninst.exe
+ 2008-07-09 07:34:18 26,488 ----a-w c:\windows\$hf_mig$\KB960715\update\spcustom.dll
+ 2008-11-15 17:17:36 752,504 ----a-w c:\windows\$hf_mig$\KB960715\update\update.exe
+ 2008-07-09 07:34:30 380,792 ----a-w c:\windows\$hf_mig$\KB960715\update\updspapi.dll
+ 2008-12-20 23:45:53 124,928 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\advpack.dll
+ 2008-12-20 23:45:54 347,136 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\dxtmsft.dll
+ 2008-12-20 23:45:54 214,528 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\dxtrans.dll
+ 2008-12-20 23:45:54 132,608 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\extmgr.dll
+ 2008-12-20 23:45:54 63,488 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\icardie.dll
+ 2008-12-19 09:41:51 70,656 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ie4uinit.exe
+ 2008-12-20 23:45:54 153,088 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieakeng.dll
+ 2008-12-20 23:45:54 230,400 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieaksie.dll
+ 2008-12-19 05:24:02 161,792 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieapfltr.dat
+ 2008-12-20 23:45:55 380,928 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieapfltr.dll
+ 2008-12-20 23:45:55 388,608 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iedkcs32.dll
+ 2008-12-20 23:45:58 6,068,736 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieframe.dll
+ 2008-12-20 23:45:58 44,544 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iernonce.dll
+ 2008-12-20 23:45:58 267,776 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iertutil.dll
+ 2008-12-19 09:41:52 13,824 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieudinit.exe
+ 2008-12-19 05:25:30 634,024 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iexplore.exe
+ 2008-12-20 23:45:59 27,648 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\jsproxy.dll
+ 2008-12-20 23:45:59 459,264 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msfeeds.dll
+ 2008-12-20 23:45:59 52,224 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msfeedsbs.dll
+ 2009-01-16 16:14:08 3,596,288 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll
+ 2008-12-20 23:46:03 477,696 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtmled.dll
+ 2008-12-20 23:46:03 193,024 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msrating.dll
+ 2008-12-20 23:46:04 671,232 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mstime.dll
+ 2008-12-20 23:46:04 102,912 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\occache.dll
+ 2008-12-20 23:46:04 44,544 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\pngfilt.dll
+ 2008-12-20 23:46:04 105,984 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\url.dll
+ 2008-12-20 23:46:05 1,163,264 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\urlmon.dll
+ 2008-12-20 23:46:05 233,472 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\webcheck.dll
+ 2008-12-20 23:46:06 827,904 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll
+ 2007-03-06 00:57:34 14,560 ----a-w c:\windows\$hf_mig$\KB961260-IE7\spmsg.dll
+ 2007-03-06 00:57:39 213,216 ----a-w c:\windows\$hf_mig$\KB961260-IE7\spuninst.exe
+ 2007-03-06 00:57:32 22,752 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\spcustom.dll
+ 2007-03-06 00:57:56 712,928 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\update.exe
+ 2007-03-06 00:58:46 369,376 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\updspapi.dll
+ 2008-06-17 19:03:58 8,447,488 ----a-w c:\windows\$hf_mig$\KB967715\SP3QFE\shell32.dll
+ 2008-07-09 07:34:18 17,784 ----a-w c:\windows\$hf_mig$\KB967715\spmsg.dll
+ 2008-07-09 07:34:19 231,288 ----a-w c:\windows\$hf_mig$\KB967715\spuninst.exe
+ 2008-07-09 07:34:18 26,488 ----a-w c:\windows\$hf_mig$\KB967715\update\spcustom.dll
+ 2008-07-09 07:34:22 752,504 ----a-w c:\windows\$hf_mig$\KB967715\update\update.exe
+ 2008-07-09 07:34:30 380,792 ----a-w c:\windows\$hf_mig$\KB967715\update\updspapi.dll
+ 2009-04-25 05:30:30 102,400 ----a-w c:\windows\$hf_mig$\KB969497-IE8\SP3QFE\iecompat.dll
+ 2008-07-09 07:34:18 17,784 ----a-w c:\windows\$hf_mig$\KB969497-IE8\spmsg.dll
+ 2008-07-09 07:34:19 231,288 ----a-w c:\windows\$hf_mig$\KB969497-IE8\spuninst.exe
+ 2008-07-09 07:34:18 26,488 ----a-w c:\windows\$hf_mig$\KB969497-IE8\update\spcustom.dll
+ 2008-07-08 12:58:12 752,504 ----a-w c:\windows\$hf_mig$\KB969497-IE8\update\update.exe
+ 2008-07-09 07:34:30 380,792 ----a-w c:\windows\$hf_mig$\KB969497-IE8\update\updspapi.dll
+ 2005-02-25 03:34:29 209,120 -c----w c:\windows\$NtUninstallKB898461$\spuninst\spuninst.exe
+ 2005-02-25 03:34:30 369,888 -c----w c:\windows\$NtUninstallKB898461$\spuninst\updspapi.dll
+ 2006-10-18 18:47:16 414,208 -c----w c:\windows\$NtUninstallKB929399$\msscp.dll
+ 2005-06-28 07:23:26 213,216 -c----w c:\windows\$NtUninstallKB929399$\spuninst\spuninst.exe
+ 2005-06-28 07:23:54 371,424 -c----w c:\windows\$NtUninstallKB929399$\spuninst\updspapi.dll
+ 2005-06-28 07:23:28 213,216 -c----w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe
+ 2005-06-28 07:23:54 371,424 -c----w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\updspapi.dll
+ 2006-10-18 18:47:20 10,834,432 -c----w c:\windows\$NtUninstallKB936782_WMP11$\wmp.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB938464$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB938464$\spuninst\updspapi.dll
+ 2005-06-28 07:23:28 213,216 -c----w c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
+ 2005-06-28 07:23:54 371,424 -c----w c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
+ 2006-12-01 09:03:18 316,416 -c----w c:\windows\$NtUninstallKB939683$\unregmp2.exe
+ 2005-06-28 07:23:28 213,216 -c----w c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
+ 2005-06-28 07:23:54 371,424 -c----w c:\windows\$NtUninstallKB941569$\spuninst\updspapi.dll
+ 2006-10-18 18:47:18 222,208 -c----w c:\windows\$NtUninstallKB941569$\wmasf.dll
+ 2008-04-14 18:29:38 82,944 -c----w c:\windows\$NtUninstallKB946648$\msgsc.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB946648$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB946648$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 202,624 -c----w c:\windows\$NtUninstallKB950762$\rmcast.sys
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB950762$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB950762$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 246,272 -c----w c:\windows\$NtUninstallKB950974$\es.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB950974$\spuninst\spuninst.exe
+ 2007-11-30 12:38:55 380,792 -c----w c:\windows\$NtUninstallKB950974$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 691,712 -c----w c:\windows\$NtUninstallKB951066$\inetcomm.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB951066$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB951066$\spuninst\updspapi.dll
+ 2008-04-14 18:06:10 272,512 -c----w c:\windows\$NtUninstallKB951376-v2$\bthport.sys
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB951376-v2$\spuninst\spuninst.exe
+ 2007-11-30 11:18:13 380,792 -c----w c:\windows\$NtUninstallKB951376-v2$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 1,286,144 -c----w c:\windows\$NtUninstallKB951698$\quartz.dll
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB951698$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB951698$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 138,112 -c----w c:\windows\$NtUninstallKB951748$\afd.sys
+ 2008-04-15 12:00:00 147,968 -c----w c:\windows\$NtUninstallKB951748$\dnsapi.dll
+ 2008-04-15 12:00:00 245,248 -c----w c:\windows\$NtUninstallKB951748$\mswsock.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB951748$\spuninst\spuninst.exe
+ 2007-11-30 12:38:55 380,792 -c----w c:\windows\$NtUninstallKB951748$\spuninst\updspapi.dll
+ 2009-01-16 13:28:53 361,344 -c----w c:\windows\$NtUninstallKB951748$\tcpip.sys
+ 2008-04-15 12:00:00 225,664 -c----w c:\windows\$NtUninstallKB951748$\tcpip6.sys
+ 2008-04-15 12:00:00 139,264 -c----w c:\windows\$NtUninstallKB951978$\cscript.exe
+ 2008-04-15 12:00:00 512,000 -c----w c:\windows\$NtUninstallKB951978$\jscript.dll
+ 2008-04-15 12:00:00 180,224 -c----w c:\windows\$NtUninstallKB951978$\scrobj.dll
+ 2008-04-15 12:00:00 172,032 -c----w c:\windows\$NtUninstallKB951978$\scrrun.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB951978$\spuninst\spuninst.exe
+ 2007-11-30 12:38:55 380,792 -c----w c:\windows\$NtUninstallKB951978$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 434,176 -c----w c:\windows\$NtUninstallKB951978$\vbscript.dll
+ 2008-04-15 12:00:00 155,648 -c----w c:\windows\$NtUninstallKB951978$\wscript.exe
+ 2008-04-15 12:00:00 90,112 -c----w c:\windows\$NtUninstallKB951978$\wshext.dll
+ 2006-10-18 17:03:58 100,864 -c----w c:\windows\$NtUninstallKB952069_WM9$\logagent.exe
+ 2007-07-27 06:42:32 231,288 -c----w c:\windows\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe
+ 2007-07-27 06:41:48 382,840 -c----w c:\windows\$NtUninstallKB952069_WM9$\spuninst\updspapi.dll
+ 2006-10-18 18:47:20 937,984 -c----w c:\windows\$NtUninstallKB952069_WM9$\wmnetmgr.dll
+ 2006-10-18 18:47:22 2,450,944 -c----w c:\windows\$NtUninstallKB952069_WM9$\wmvcore.dll
+ 2008-04-15 12:00:00 331,776 -c----w c:\windows\$NtUninstallKB952287$\msadce.dll
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB952287$\spuninst\spuninst.exe
+ 2007-11-30 11:18:13 380,792 -c----w c:\windows\$NtUninstallKB952287$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 73,728 -c----w c:\windows\$NtUninstallKB952954$\mscms.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB952954$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB952954$\spuninst\updspapi.dll
+ 2007-07-27 07:42:32 231,288 -c----w c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
+ 2007-07-27 07:41:48 382,840 -c----w c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
+ 2006-10-18 18:47:20 295,936 -c----w c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
+ 2007-07-27 07:42:32 231,288 -c----w c:\windows\$NtUninstallKB954156_WM9L$\spuninst\spuninst.exe
+ 2007-07-27 07:41:48 382,840 -c----w c:\windows\$NtUninstallKB954156_WM9L$\spuninst\updspapi.dll
+ 2002-12-11 16:38:52 929,280 -c----w c:\windows\$NtUninstallKB954156_WM9L$\wmex.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB954211$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB954211$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 1,845,504 -c----w c:\windows\$NtUninstallKB954211$\win32k.sys
+ 2008-04-15 12:00:00 1,306,624 -c----w c:\windows\$NtUninstallKB954459$\msxml6.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB954459$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB954459$\spuninst\updspapi.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB954600$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB954600$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 246,814 -c----w c:\windows\$NtUninstallKB954600$\strmdll.dll
+ 2008-04-15 12:00:00 1,104,896 -c----w c:\windows\$NtUninstallKB955069$\msxml3.dll
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB955069$\spuninst\spuninst.exe
+ 2008-07-09 10:04:32 380,792 -c----w c:\windows\$NtUninstallKB955069$\spuninst\updspapi.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB955839$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB955839$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 60,416 -c----w c:\windows\$NtUninstallKB955839$\tzchange.exe
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB956391$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB956391$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 285,184 -c----w c:\windows\$NtUninstallKB956802$\gdi32.dll
+ 2008-07-08 12:58:09 231,288 -c----w c:\windows\$NtUninstallKB956802$\spuninst\spuninst.exe
+ 2008-07-09 07:34:30 380,792 -c----w c:\windows\$NtUninstallKB956802$\spuninst\updspapi.dll
+ 2008-06-20 11:40:08 138,496 -c----w c:\windows\$NtUninstallKB956803$\afd.sys
+ 2008-06-20 11:40:08 138,496 -c----w c:\windows\$NtUninstallKB956803$\afd.sys.000
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB956803$\spuninst\spuninst.exe
+ 2007-11-30 11:18:13 380,792 -c----w c:\windows\$NtUninstallKB956803$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 2,025,472 -c----w c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe
+ 2008-04-15 12:00:00 2,146,816 -c----w c:\windows\$NtUninstallKB956841$\ntoskrnl.exe
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB956841$\spuninst\spuninst.exe
+ 2008-07-09 07:34:30 380,792 -c----w c:\windows\$NtUninstallKB956841$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 456,576 -c----w c:\windows\$NtUninstallKB957097$\mrxsmb.sys
+ 2008-07-08 12:58:09 231,288 -c----w c:\windows\$NtUninstallKB957097$\spuninst\spuninst.exe
+ 2008-07-08 12:58:19 380,792 -c----w c:\windows\$NtUninstallKB957097$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 337,408 -c----w c:\windows\$NtUninstallKB958644$\netapi32.dll
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB958644$\spuninst\spuninst.exe
+ 2007-11-30 11:18:13 380,792 -c----w c:\windows\$NtUninstallKB958644$\spuninst\updspapi.dll
+ 2007-11-30 12:39:01 231,288 -c----w c:\windows\$NtUninstallKB958687$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB958687$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 334,848 -c----w c:\windows\$NtUninstallKB958687$\srv.sys
+ 2008-07-09 07:34:19 231,288 -c----w c:\windows\$NtUninstallKB958690$\spuninst\spuninst.exe
+ 2008-07-09 07:34:30 380,792 -c----w c:\windows\$NtUninstallKB958690$\spuninst\updspapi.dll
+ 2008-09-15 15:24:21 1,846,272 -c----w c:\windows\$NtUninstallKB958690$\win32k.sys
+ 2007-07-27 06:42:32 231,288 -c----w c:\windows\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe
+ 2007-07-27 06:41:48 382,840 -c----w c:\windows\$NtUninstallKB959772_WM11$\spuninst\updspapi.dll
+ 2007-06-11 20:51:12 10,834,944 -c----w c:\windows\$NtUninstallKB959772_WM11$\wmp.dll
+ 2008-04-15 12:00:00 144,384 -c----w c:\windows\$NtUninstallKB960225$\schannel.dll
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB960225$\spuninst\spuninst.exe
+ 2007-11-30 12:39:04 380,792 -c----w c:\windows\$NtUninstallKB960225$\spuninst\updspapi.dll
+ 2008-07-09 07:34:19 231,288 -c----w c:\windows\$NtUninstallKB960715$\spuninst\spuninst.exe
+ 2008-07-09 07:34:30 380,792 -c----w c:\windows\$NtUninstallKB960715$\spuninst\updspapi.dll
+ 2007-11-30 11:18:09 231,288 -c----w c:\windows\$NtUninstallKB961118$\spuninst\spuninst.exe
+ 2007-11-30 11:18:13 380,792 -c----w c:\windows\$NtUninstallKB961118$\spuninst\updspapi.dll
+ 2008-04-15 12:00:00 8,446,976 -c----w c:\windows\$NtUninstallKB967715$\shell32.dll
+ 2008-07-09 07:34:19 231,288 -c----w c:\windows\$NtUninstallKB967715$\spuninst\spuninst.exe
+ 2008-07-09 07:34:30 380,792 -c----w c:\windows\$NtUninstallKB967715$\spuninst\updspapi.dll
+ 2008-03-21 10:57:18 221,488 -c----w c:\windows\$NtUninstallWdf01007$\spuninst\spuninst.exe
+ 2008-03-21 10:57:18 379,184 -c----w c:\windows\$NtUninstallWdf01007$\spuninst\updspapi.dll
+ 2006-09-16 00:02:34 221,488 -c----w c:\windows\$NtUninstallWudf01005$\spuninst\spuninst.exe
+ 2006-09-16 00:02:36 379,184 -c----w c:\windows\$NtUninstallWudf01005$\spuninst\updspapi.dll
+ 2006-09-15 19:30:12 70,656 -c----w c:\windows\$NtUninstallWudf01005$\spuninst\WudfCustom.dll
+ 2006-09-28 17:13:26 95,344 -c----w c:\windows\$NtUninstallWudf01005$\wudfcoinstaller.dll
+ 2006-09-28 15:56:38 146,432 -c----w c:\windows\$NtUninstallWudf01005$\wudfhost.exe
+ 2006-09-28 15:55:50 77,568 -c----w c:\windows\$NtUninstallWudf01005$\wudfpf.sys
+ 2006-09-28 15:56:16 165,376 -c----w c:\windows\$NtUninstallWudf01005$\wudfplatform.dll
+ 2006-09-28 16:00:34 82,944 -c----w c:\windows\$NtUninstallWudf01005$\wudfrd.sys
+ 2006-09-28 15:56:14 55,808 -c----w c:\windows\$NtUninstallWudf01005$\wudfsvc.dll
+ 2006-09-28 15:56:38 316,416 -c----w c:\windows\$NtUninstallWudf01005$\wudfx.dll
+ 2006-06-29 10:07:36 213,216 -c----w c:\windows\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe
+ 2006-06-29 10:07:36 371,424 -c----w c:\windows\$NtUninstallXPSEPSCLP$\spuninst\updspapi.dll
+ 2009-03-14 20:55:56 7,680 ----a-w c:\windows\assembly\GAC\Accessibility\1.0.5000.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2009-03-14 20:55:53 12,288 ----a-w c:\windows\assembly\GAC\cscompmgd\7.0.5000.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2009-03-14 20:55:57 33,792 ----a-w c:\windows\assembly\GAC\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2009-04-12 11:19:53 8,192 ----a-w c:\windows\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-04-12 11:19:54 32,768 ----a-w c:\windows\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
+ 2009-03-14 20:55:58 4,608 ----a-w c:\windows\assembly\GAC\IIEHost\1.0.5000.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2009-03-14 20:55:58 26,112 ----a-w c:\windows\assembly\GAC\ISymWrapper\1.0.5000.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-04-12 11:20:00 720,896 ----a-w c:\windows\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2009-03-14 20:55:53 28,672 ----a-w c:\windows\assembly\GAC\Microsoft.VisualBasic.Vsa\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2009-04-12 11:19:54 299,008 ----a-w c:\windows\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2009-03-14 20:55:54 6,144 ----a-w c:\windows\assembly\GAC\Microsoft.VisualC\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualC.dll
+ 2009-03-14 20:55:53 11,264 ----a-w c:\windows\assembly\GAC\Microsoft.Vsa.Vb.CodeDOMProcessor\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-03-14 20:55:53 32,768 ----a-w c:\windows\assembly\GAC\Microsoft.Vsa\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2009-03-14 20:55:53 6,656 ----a-w c:\windows\assembly\GAC\Microsoft_VsaVb\7.0.5000.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-03-14 20:55:58 1,564,672 ----a-w c:\windows\assembly\GAC\mscorcfg\1.0.5000.0__b03f5f7f11d50a3a\mscorcfg.dll
+ 2009-04-12 11:19:58 32,768 ----a-w c:\windows\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
+ 2009-03-14 20:55:58 77,824 ----a-w c:\windows\assembly\GAC\System.Configuration.Install\1.0.5000.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2009-04-12 11:19:56 303,104 ----a-w c:\windows\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2009-04-12 11:19:58 1,294,336 ----a-w c:\windows\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
+ 2009-04-12 11:19:53 1,703,936 ----a-w c:\windows\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
+ 2009-04-12 11:19:59 90,112 ----a-w c:\windows\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2009-03-14 20:55:59 65,536 ----a-w c:\windows\assembly\GAC\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-04-12 11:19:56 466,944 ----a-w c:\windows\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2009-04-12 11:19:55 241,664 ----a-w c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2009-04-12 11:19:55 66,560 ----a-w c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
+ 2009-04-12 11:19:58 372,736 ----a-w c:\windows\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
+ 2009-04-12 11:20:00 241,664 ----a-w c:\windows\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-04-12 11:19:57 323,584 ----a-w c:\windows\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2009-04-12 11:19:55 131,072 ----a-w c:\windows\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2009-04-12 11:19:56 77,824 ----a-w c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2009-04-12 11:19:59 126,976 ----a-w c:\windows\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2009-04-12 11:19:52 819,200 ----a-w c:\windows\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2009-04-12 11:19:54 57,344 ----a-w c:\windows\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2009-04-12 11:19:53 573,440 ----a-w c:\windows\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2009-04-12 11:19:59 1,257,472 ----a-w c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2009-04-12 11:19:55 2,052,096 ----a-w c:\windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2009-04-12 11:19:57 1,339,392 ----a-w c:\windows\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
+ 2009-04-12 11:20:00 1,224,704 ----a-w c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2009-03-14 12:02:40 69,120 ----a-w c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2009-03-14 12:02:42 72,192 ----a-w c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-03-14 11:59:53 163,840 ----a-w c:\windows\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2009-03-14 12:02:46 4,546,560 ----a-w c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2009-03-14 11:59:55 4,210,688 ----a-w c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2009-03-14 12:02:47 486,400 ----a-w c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2009-03-14 12:02:47 2,933,248 ----a-w c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2009-03-14 12:02:44 258,048 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2009-03-14 12:02:44 113,664 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2009-03-14 11:59:56 368,640 ----a-w c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2009-03-14 12:02:43 261,632 ----a-w c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2009-03-14 12:02:36 5,242,880 ----a-w c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2009-03-14 12:02:40 10,752 ----a-w c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2009-03-14 12:04:07 319,488 ----a-w c:\windows\assembly\GAC_MSIL\AspNetMMCExt.resources\2.0.0.0_ar_b03f5f7f11d50a3a\aspnetmmcext.resources.dll
+ 2009-03-14 12:02:37 507,904 ----a-w c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2009-03-14 12:02:40 13,312 ----a-w c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2009-03-14 12:02:40 8,192 ----a-w c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-03-14 12:02:40 77,824 ----a-w c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2009-03-14 12:02:41 6,656 ----a-w c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2009-03-14 12:00:44 106,496 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Conversion.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Conversion.v3.5.dll
+ 2009-03-14 12:02:44 348,160 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2009-03-14 12:00:45 733,184 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2009-03-14 12:02:45 36,864 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-03-14 12:00:45 36,864 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-03-14 12:00:46 802,816 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.v3.5.dll
+ 2009-03-14 12:02:45 655,360 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2009-03-14 12:00:46 94,208 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.v3.5.dll
+ 2009-03-14 12:02:45 77,824 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2009-03-14 12:02:42 749,568 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2009-03-14 12:04:28 5,120 ----a-w c:\windows\assembly\GAC_MSIL\microsoft.transactions.bridge.dtc.resources\3.0.0.0_ar_b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.Resources.dll
+ 2009-03-14 12:04:28 32,768 ----a-w c:\windows\assembly\GAC_MSIL\microsoft.transactions.bridge.resources\3.0.0.0_ar_b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Resources.dll
+ 2009-03-14 11:59:52 397,312 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2009-03-14 12:04:17 9,728 ----a-w c:\windows\assembly\GAC_MSIL\microsoft.visualbasic.compatibility.data.resources\8.0.0.0_ar_b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.resources.dll
+ 2009-03-14 12:02:42 110,592 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2009-03-14 12:04:17 10,240 ----a-w c:\windows\assembly\GAC_MSIL\microsoft.visualbasic.compatibility.resources\8.0.0.0_ar_b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.resources.dll
+ 2009-03-14 12:02:42 372,736 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2009-03-14 12:04:17 65,536 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_ar_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dll
+ 2009-03-14 12:02:43 28,672 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2009-03-14 12:02:41 659,456 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2009-03-14 12:00:44 41,984 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualC.STLCLR\1.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.STLCLR.dll
+ 2009-03-14 12:02:46 5,632 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2009-03-14 12:02:43 12,800 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-03-14 12:02:41 32,768 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2009-03-14 12:02:41 7,168 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-03-14 12:04:10 352,256 ----a-w c:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_ar_b77a5c561934e089\mscorlib.resources.dll
+ 2009-03-14 12:04:30 49,152 ----a-w c:\windows\assembly\GAC_MSIL\PresentationBuildTasks.resources\3.0.0.0_ar_31bf3856ad364e35\PresentationBuildTasks.resources.dll
+ 2009-03-14 11:59:58 598,016 ----a-w c:\windows\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
+ 2009-03-14 11:59:55 32,768 ----a-w c:\windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
+ 2009-03-14 12:04:29 102,400 ----a-w c:\windows\assembly\GAC_MSIL\PresentationCore.resources\3.0.0.0_ar_31bf3856ad364e35\PresentationCore.resources.dll
+ 2009-03-14 11:59:58 46,104 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFontCache\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe
+ 2009-03-14 11:59:59 196,608 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
+ 2009-03-14 11:59:59 139,264 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2009-03-14 11:59:59 397,312 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
+ 2009-03-14 12:04:30 229,376 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_ar_31bf3856ad364e35\PresentationFramework.resources.dll
+ 2009-03-14 11:59:59 163,840 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
+ 2009-03-14 12:03:14 5,283,840 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2009-03-14 12:04:30 372,736 ----a-w c:\windows\assembly\GAC_MSIL\PresentationUI.resources\3.0.0.0_ar_31bf3856ad364e35\PresentationUI.resources.dll
+ 2009-03-14 12:00:00 864,256 ----a-w c:\windows\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
+ 2009-03-14 12:04:29 36,864 ----a-w c:\windows\assembly\GAC_MSIL\ReachFramework.resources\3.0.0.0_ar_31bf3856ad364e35\ReachFramework.resources.dll
+ 2009-03-14 11:59:56 528,384 ----a-w c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
+ 2009-03-14 12:00:46 5,632 ----a-w c:\windows\assembly\GAC_MSIL\Sentinel.v3.5Client\3.5.0.0__b03f5f7f11d50a3a\Sentinel.v3.5Client.dll
+ 2009-03-14 12:04:29 5,120 ----a-w c:\windows\assembly\GAC_MSIL\smdiagnostics.resources\3.0.0.0_ar_b77a5c561934e089\SMDiagnostics.resources.dll
+ 2009-03-14 11:59:53 110,592 ----a-w c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
+ 2009-03-14 12:04:14 12,288 ----a-w c:\windows\assembly\GAC_MSIL\sysglobl.resources\2.0.0.0_ar_b03f5f7f11d50a3a\sysglobl.resources.dll
+ 2009-03-14 12:02:46 110,592 ----a-w c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2009-03-14 12:00:47 45,056 ----a-w c:\windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2009-03-14 12:00:47 163,840 ----a-w c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
+ 2009-03-14 12:04:42 8,704 ----a-w c:\windows\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations.resources\3.5.0.0_ar_31bf3856ad364e35\System.ComponentModel.DataAnnotations.Resources.dll
+ 2009-03-14 12:00:51 57,344 ----a-w c:\windows\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\3.5.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
+ 2009-03-14 12:04:10 19,968 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration.Install.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Configuration.Install.resources.dll
+ 2009-03-14 12:02:47 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2009-03-14 12:04:14 53,248 ----a-w c:\windows\assembly\GAC_MSIL\system.configuration.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Configuration.resources.dll
+ 2009-03-14 12:02:47 425,984 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2009-03-14 12:04:42 65,536 ----a-w c:\windows\assembly\GAC_MSIL\System.Core.resources\3.5.0.0_ar_b77a5c561934e089\System.Core.Resources.dll
+ 2009-03-14 12:00:48 667,648 ----a-w c:\windows\assembly\GAC_MSIL\System.Core\3.5.0.0__b77a5c561934e089\System.Core.dll
+ 2009-03-14 12:04:42 5,120 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.DataSetExtensions.resources\3.5.0.0_ar_b77a5c561934e089\System.Data.DataSetExtensions.Resources.dll
+ 2009-03-14 12:00:48 53,248 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.DataSetExtensions\3.5.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
+ 2009-03-14 12:04:42 28,672 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Entity.Design.resources\3.5.0.0_ar_b77a5c561934e089\System.Data.Entity.Design.Resources.dll
+ 2009-03-14 12:00:48 229,376 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Entity.Design\3.5.0.0__b77a5c561934e089\System.Data.Entity.Design.dll
+ 2009-03-14 12:04:42 434,176 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Entity.resources\3.5.0.0_ar_b77a5c561934e089\System.Data.Entity.Resources.dll
+ 2009-03-14 12:00:49 2,879,488 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Entity\3.5.0.0__b77a5c561934e089\System.Data.Entity.dll
+ 2009-03-14 12:04:42 61,440 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Linq.resources\3.5.0.0_ar_b77a5c561934e089\System.Data.Linq.Resources.dll
+ 2009-03-14 12:00:43 684,032 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Linq\3.5.0.0__b77a5c561934e089\System.Data.Linq.dll
+ 2009-03-14 12:04:10 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.OracleClient.resources\2.0.0.0_ar_b77a5c561934e089\System.Data.OracleClient.resources.dll
+ 2009-03-14 12:04:15 372,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.resources\2.0.0.0_ar_b77a5c561934e089\System.Data.resources.dll
+ 2009-03-14 12:04:41 36,864 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services.Client.resources\3.5.0.0_ar_b77a5c561934e089\System.Data.Services.Client.resources.dll
+ 2009-03-14 12:03:29 294,912 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services.Client\3.5.0.0__b77a5c561934e089\System.Data.Services.Client.dll
+ 2009-03-14 12:04:41 8,192 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services.Design.resources\3.5.0.0_ar_b77a5c561934e089\System.Data.Services.Design.resources.dll
+ 2009-03-14 12:00:43 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services.Design\3.5.0.0__b77a5c561934e089\System.Data.Services.Design.dll
+ 2009-03-14 12:04:41 73,728 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services.resources\3.5.0.0_ar_b77a5c561934e089\System.Data.Services.resources.dll
+ 2009-03-14 12:03:29 442,368 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.Services\3.5.0.0__b77a5c561934e089\System.Data.Services.dll
+ 2009-03-14 12:04:11 40,960 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.SqlXml.resources\2.0.0.0_ar_b77a5c561934e089\system.data.sqlxml.resources.dll
+ 2009-03-14 12:02:48 745,472 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2009-03-14 12:04:07 417,792 ----a-w c:\windows\assembly\GAC_MSIL\System.Deployment.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Deployment.resources.dll
+ 2009-03-14 12:02:48 970,752 ----a-w c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2009-03-14 12:04:15 565,248 ----a-w c:\windows\assembly\GAC_MSIL\System.Design.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Design.resources.dll
+ 2009-03-14 12:02:39 5,062,656 ----a-w c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2009-03-14 12:04:42 40,960 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement.resources\3.5.0.0_ar_b77a5c561934e089\System.DirectoryServices.AccountManagement.resources.dll
+ 2009-03-14 12:00:43 286,720 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\3.5.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
+ 2009-03-14 12:04:08 19,456 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.DirectoryServices.Protocols.resources.dll
+ 2009-03-14 12:02:39 188,416 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2009-03-14 12:04:08 49,152 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.DirectoryServices.resources.dll
+ 2009-03-14 12:02:43 401,408 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2009-03-14 12:04:11 6,144 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing.Design.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Drawing.Design.resources.dll
+ 2009-03-14 12:02:38 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-03-14 12:04:16 16,384 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Drawing.resources.dll
+ 2009-03-14 12:02:45 626,688 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2009-03-14 12:04:11 36,864 ----a-w c:\windows\assembly\GAC_MSIL\System.EnterpriseServices.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.EnterpriseServices.resources.dll
+ 2009-03-14 12:04:29 69,632 ----a-w c:\windows\assembly\GAC_MSIL\system.identitymodel.resources\3.0.0.0_ar_b77a5c561934e089\System.IdentityModel.Resources.dll
+ 2009-03-14 12:04:28 61,440 ----a-w c:\windows\assembly\GAC_MSIL\system.identitymodel.selectors.resources\3.0.0.0_ar_b77a5c561934e089\System.IdentityModel.Selectors.Resources.dll
+ 2009-03-14 12:00:01 126,976 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2009-03-14 11:59:53 430,080 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
+ 2009-03-14 12:04:29 12,288 ----a-w c:\windows\assembly\GAC_MSIL\system.io.log.resources\3.0.0.0_ar_b03f5f7f11d50a3a\System.IO.Log.Resources.dll
+ 2009-03-14 11:59:53 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
+ 2009-03-14 12:04:42 12,288 ----a-w c:\windows\assembly\GAC_MSIL\System.Management.Instrumentation.resources\3.5.0.0_ar_b77a5c561934e089\System.Management.Instrumentation.Resources.dll
+ 2009-03-14 12:00:49 143,360 ----a-w c:\windows\assembly\GAC_MSIL\System.Management.Instrumentation\3.5.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
+ 2009-03-14 12:04:12 24,576 ----a-w c:\windows\assembly\GAC_MSIL\system.management.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Management.resources.dll
+ 2009-03-14 12:02:45 372,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2009-03-14 12:04:16 86,016 ----a-w c:\windows\assembly\GAC_MSIL\System.Messaging.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Messaging.resources.dll
+ 2009-03-14 12:02:45 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-03-14 12:04:43 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.Net.resources\3.5.0.0_ar_b03f5f7f11d50a3a\System.Net.Resources.dll
+ 2009-03-14 12:00:52 233,472 ----a-w c:\windows\assembly\GAC_MSIL\System.Net\3.5.0.0__b03f5f7f11d50a3a\System.Net.dll
+ 2009-03-14 12:04:29 16,384 ----a-w c:\windows\assembly\GAC_MSIL\System.Printing.resources\3.0.0.0_ar_31bf3856ad364e35\System.Printing.resources.dll
+ 2009-03-14 12:04:16 241,664 ----a-w c:\windows\assembly\GAC_MSIL\System.resources\2.0.0.0_ar_b77a5c561934e089\system.resources.dll
+ 2009-03-14 12:04:12 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_ar_b77a5c561934e089\System.Runtime.Remoting.resources.dll
+ 2009-03-14 12:02:44 303,104 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2009-03-14 12:04:13 12,800 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.resources.dll
+ 2009-03-14 12:02:44 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2009-03-14 12:04:29 110,592 ----a-w c:\windows\assembly\GAC_MSIL\system.runtime.serialization.resources\3.0.0.0_ar_b77a5c561934e089\System.RunTime.Serialization.Resources.dll
+ 2009-03-14 11:59:53 966,656 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
+ 2009-03-14 12:04:07 28,672 ----a-w c:\windows\assembly\GAC_MSIL\System.Security.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Security.resources.dll
+ 2009-03-14 12:02:43 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2009-03-14 12:04:29 36,864 ----a-w c:\windows\assembly\GAC_MSIL\system.servicemodel.install.resources\3.0.0.0_ar_b77a5c561934e089\System.ServiceModel.Install.Resources.dll
+ 2009-03-14 11:59:55 73,728 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
+ 2009-03-14 12:04:29 528,384 ----a-w c:\windows\assembly\GAC_MSIL\system.servicemodel.resources\3.0.0.0_ar_b77a5c561934e089\System.ServiceModel.Resources.dll
+ 2009-03-14 11:59:55 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
+ 2009-03-14 12:04:41 77,824 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Web.resources\3.5.0.0_ar_31bf3856ad364e35\System.ServiceModel.Web.resources.dll
+ 2009-03-14 12:00:42 569,344 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Web\3.5.0.0__31bf3856ad364e35\System.ServiceModel.Web.dll
+ 2009-03-14 12:03:12 5,931,008 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
+ 2009-03-14 12:04:13 40,960 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll
+ 2009-03-14 12:02:41 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2009-03-14 12:04:30 57,344 ----a-w c:\windows\assembly\GAC_MSIL\System.Speech.resources\3.0.0.0_ar_31bf3856ad364e35\System.Speech.resources.dll
+ 2009-01-19 04:15:06 688,128 ----a-w c:\windows\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2009-03-14 12:04:13 28,672 ----a-w c:\windows\assembly\GAC_MSIL\System.Transactions.resources\2.0.0.0_ar_b77a5c561934e089\System.Transactions.resources.dll
+ 2009-03-14 12:04:42 3,584 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Abstractions.resources\3.5.0.0_ar_31bf3856ad364e35\System.Web.Abstractions.Resources.dll
+ 2009-03-14 12:00:52 77,824 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Abstractions\3.5.0.0__31bf3856ad364e35\System.Web.Abstractions.dll
+ 2009-03-14 12:04:43 4,096 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.DynamicData.Design.resources\3.5.0.0_ar_31bf3856ad364e35\System.Web.DynamicData.Design.Resources.dll
+ 2009-03-14 12:00:52 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.DynamicData.Design\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.Design.dll
+ 2009-03-14 12:04:43 28,672 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.DynamicData.resources\3.5.0.0_ar_31bf3856ad364e35\System.Web.DynamicData.Resources.dll
+ 2009-03-14 12:03:29 229,376 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.DynamicData\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.dll
+ 2009-03-14 12:04:43 11,776 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Entity.Design.resources\3.5.0.0_ar_b77a5c561934e089\System.Web.Entity.Design.Resources.dll
+ 2009-03-14 12:00:50 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Entity.Design\3.5.0.0__b77a5c561934e089\System.Web.Entity.Design.dll
+ 2009-03-14 12:04:43 15,872 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Entity.resources\3.5.0.0_ar_b77a5c561934e089\System.Web.Entity.Resources.dll
+ 2009-03-14 12:03:29 139,264 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Entity\3.5.0.0__b77a5c561934e089\System.Web.Entity.dll
+ 2009-03-14 12:04:43 49,152 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Extensions.Design.resources\3.5.0.0_ar_31bf3856ad364e35\System.Web.Extensions.Design.Resources.dll
+ 2009-03-14 12:00:53 335,872 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Extensions.Design\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.Design.dll
+ 2009-03-14 12:04:43 647,168 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Extensions.resources\3.5.0.0_ar_31bf3856ad364e35\System.Web.Extensions.Resources.dll
+ 2009-03-14 12:03:29 1,277,952 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
+ 2009-03-14 12:02:37 835,584 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2009-03-14 12:02:37 77,824 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2009-03-14 12:04:08 684,032 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Web.resources.dll
+ 2009-03-14 12:04:43 8,192 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Routing.resources\3.5.0.0_ar_31bf3856ad364e35\System.Web.Routing.Resources.dll
+ 2009-03-14 12:00:54 61,440 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Routing\3.5.0.0__31bf3856ad364e35\System.Web.Routing.dll
+ 2009-03-14 12:04:09 94,208 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Services.resources\2.0.0.0_ar_b03f5f7f11d50a3a\System.Web.Services.resources.dll
+ 2009-03-14 12:02:37 839,680 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2009-03-14 12:04:14 479,232 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_ar_b77a5c561934e089\System.Windows.Forms.resources.dll
+ 2009-03-14 12:02:38 5,025,792 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2009-03-14 12:04:43 3,584 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Presentation.resources\3.5.0.0_ar_b77a5c561934e089\System.Windows.Presentation.resources.dll
+ 2009-03-14 12:00:50 12,288 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Presentation\3.5.0.0__b77a5c561934e089\System.Windows.Presentation.dll
+ 2009-03-14 12:04:30 188,416 ----a-w c:\windows\assembly\GAC_MSIL\system.workflow.activities.resources\3.0.0.0_ar_31bf3856ad364e35\System.Workflow.Activities.resources.dll
+ 2009-03-14 11:59:57 1,138,688 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
+ 2009-03-14 12:04:30 323,584 ----a-w c:\windows\assembly\GAC_MSIL\system.workflow.componentmodel.resources\3.0.0.0_ar_31bf3856ad364e35\System.Workflow.ComponentModel.resources.dll
+ 2009-03-14 11:59:57 1,630,208 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
+ 2009-03-14 12:04:30 36,864 ----a-w c:\windows\assembly\GAC_MSIL\system.workflow.runtime.resources\3.0.0.0_ar_31bf3856ad364e35\System.Workflow.Runtime.resources.dll
+ 2009-03-14 11:59:57 540,672 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
+ 2009-03-14 12:04:41 110,592 ----a-w c:\windows\assembly\GAC_MSIL\System.WorkflowServices.resources\3.5.0.0_ar_31bf3856ad364e35\System.WorkflowServices.resources.dll
+ 2009-03-14 12:00:42 507,904 ----a-w c:\windows\assembly\GAC_MSIL\System.WorkflowServices\3.5.0.0__31bf3856ad364e35\System.WorkflowServices.dll
+ 2009-03-14 12:04:43 8,704 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml.Linq.resources\3.5.0.0_ar_b77a5c561934e089\System.Xml.Linq.Resources.dll
+ 2009-03-14 12:00:51 139,264 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml.Linq\3.5.0.0__b77a5c561934e089\System.Xml.Linq.dll
+ 2009-03-14 12:04:09 184,320 ----a-w c:\windows\assembly\GAC_MSIL\System.XML.resources\2.0.0.0_ar_b77a5c561934e089\System.xml.resources.dll
+ 2009-03-14 12:02:49 2,048,000 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2009-03-14 12:02:48 3,149,824 ----a-w c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2009-03-14 12:04:30 4,096 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClient.resources\3.0.0.0_ar_31bf3856ad364e35\UIAutomationClient.resources.dll
+ 2009-03-14 11:59:58 167,936 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
+ 2009-03-14 12:04:30 12,800 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClientsideProviders.resources\3.0.0.0_ar_31bf3856ad364e35\UIAutomationClientsideProviders.resources.dll
+ 2009-03-14 11:59:58 385,024 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
+ 2009-03-14 12:04:29 4,096 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationProvider.resources\3.0.0.0_ar_31bf3856ad364e35\UIAutomationProvider.resources.dll
+ 2009-03-14 11:59:56 40,960 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2009-03-14 12:04:30 10,752 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationTypes.resources\3.0.0.0_ar_31bf3856ad364e35\UIAutomationTypes.resources.dll
+ 2009-03-14 11:59:56 98,304 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
+ 2009-03-14 12:04:30 81,920 ----a-w c:\windows\assembly\GAC_MSIL\WindowsBase.resources\3.0.0.0_ar_31bf3856ad364e35\WindowsBase.resources.dll
+ 2009-03-14 11:59:56 1,245,184 ----a-w c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
+ 2009-03-14 12:04:30 4,608 ----a-w c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration.resources\3.0.0.0_ar_31bf3856ad364e35\WindowsFormsIntegration.resources.dll
+ 2009-03-14 11:59:58 94,208 ----a-w c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2009-03-14 12:39:42 25,600 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\11eb4f6606ba01e5128805759121ea6c\Accessibility.ni.dll
+ 2009-03-14 12:39:44 842,240 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\b5b2feadc3943e3976daebc0bcd2b5e2\AspNetMMCExt.ni.dll
+ 2009-03-14 12:39:35 410,112 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\12629e2f3e315459bee67cbbaac85cb2\ComSvcConfig.ni.exe
+ 2009-03-14 12:39:51 220,672 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\9bea05938bee3555c5aa8763d89a68f9\CustomMarshalers.ni.dll
+ 2009-03-14 12:39:44 14,336 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\f4e38208e88cb4cc314a1d6543b9fcc6\dfsvc.ni.exe
+ 2009-04-18 21:49:39 57,856 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\0c3687c431b090b643b9cc774a070311\DriversHQ.DriverDetective.ExceptionLogging.ni.dll
+ 2009-04-18 21:49:38 233,472 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\34031dcbf400dee07dc3907790925717\DriversHQ.DriverDetective.Common.ni.dll
+ 2009-04-18 21:49:34 3,406,336 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\5f4739a168de1f24409748bccf8a52da\DriversHQ.DriverDetective.Client.ni.exe
+ 2009-04-18 21:49:41 46,080 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\738c345666c0dbd20532315daa8e1d22\DriversHQ.DriverDetective.Client.DirectX.ni.dll
+ 2009-04-18 21:49:35 268,800 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\DriversHQ.DriverDet#\8c9a2a30b4e78ed0002eb41dca119157\DriversHQ.DriverDetective.Client.Communication.ni.dll
+ 2009-04-18 21:49:39 227,328 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Applicati#\fc097e3905d706a9272c75f73e9c571e\Microsoft.ApplicationBlocks.Updater.ni.dll
+ 2009-03-14 12:39:51 222,720 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\9b321ebf67587237f576df6104a32588\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2009-03-14 12:39:47 1,888,768 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\6cfe582681724965fb817e8ece5f0909\Microsoft.Build.Engine.ni.dll
+ 2009-03-14 12:39:52 839,680 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\96825c34d7e1f7df1923ff2123bed8da\Microsoft.Build.Engine.ni.dll
+ 2009-03-14 12:39:45 74,752 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\28343d470d992f169ca0e7cdb3cc3117\Microsoft.Build.Framework.ni.dll
+ 2009-03-14 12:39:53 65,024 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e9aba2eab90d647356f65e66053da02b\Microsoft.Build.Framework.ni.dll
+ 2009-03-14 12:39:56 1,966,080 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\a47100d8f4574bed2d49d83d0ab8964e\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2009-03-14 12:39:55 1,620,992 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\bd241492d96db39f20e758c13c845033\Microsoft.Build.Tasks.ni.dll
+ 2009-03-14 12:39:57 175,104 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\4217124db1ea5de5f1a1f3eea75e8d32\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2009-03-14 12:39:57 144,384 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\55b9eff9e23359faed4351386c062238\Microsoft.Build.Utilities.ni.dll
+ 2009-03-14 12:40:47 2,332,160 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\b261961046545831aa60963e84905968\Microsoft.JScript.ni.dll
+ 2009-04-18 21:49:40 309,248 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Practices#\833f7d166a4617c568676dcc5d710a74\Microsoft.Practices.EnterpriseLibrary.Common.ni.dll
+ 2009-04-18 21:49:41 148,480 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Practices#\a0da2486dbe2187fae8d0de1628f6e23\Microsoft.Practices.EnterpriseLibrary.Security.Cryptography.ni.dll
+ 2009-04-18 21:49:41 304,128 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Practices#\a31e53f07e077bdcad3ddcf5b78c9531\Microsoft.Practices.ObjectBuilder.ni.dll
+ 2009-03-14 12:39:37 386,560 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\1820d6a012fc0e16c3e1d29d973cd2d0\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2009-03-14 12:39:36 1,093,120 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\6b2f62f5e981913fce1d223f645d9ddf\Microsoft.Transactions.Bridge.ni.dll
+ 2009-03-14 12:39:58 1,712,128 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\1c86afc399d0fdd8e069266ffbe748d1\Microsoft.VisualBasic.ni.dll
+ 2009-04-18 21:49:35 15,872 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\ec83ec80653eb20ccc6ed42075c90aee\Microsoft.VisualC.ni.dll
+ 2009-03-14 12:40:48 55,296 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\790cf1edb17ee41b59be62ecbd59613b\Microsoft.Vsa.ni.dll
+ 2009-03-14 12:39:45 133,632 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\6d38e317128608bc4516ea46ab94590e\MSBuild.ni.exe
+ 2009-03-14 12:03:21 11,486,720 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\6d667f19d687361886990f3ca0f49816\mscorlib.ni.dll
+ 2009-03-14 12:05:10 1,451,008 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\e634bc4c4a00635a0a254febab0e2e2c\PresentationBuildTasks.ni.dll
+ 2009-03-14 12:05:11 39,424 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\c8fd2d9233f8ea3031fb16f697635231\PresentationCFFRasterizer.ni.dll
+ 2009-03-14 12:05:27 12,216,320 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\956375d487cbef36165b3250030e3574\PresentationCore.ni.dll
+ 2009-03-14 12:05:09 47,104 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\2d7408a0232f2e2efd0d7adf5dfa733a\PresentationFontCache.ni.exe
+ 2009-03-14 12:05:52 258,048 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\2c980c9a5051d723c6ec2a78a3d0e2b3\PresentationFramework.Royale.ni.dll
+ 2009-03-14 12:05:51 368,128 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\59a67874d8d8475faa5be1d993083d12\PresentationFramework.Aero.ni.dll
+ 2009-03-14 12:05:52 539,648 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8003abaf6bcf70f7eb620d06837e897b\PresentationFramework.Luna.ni.dll
+ 2009-03-14 12:05:48 14,327,808 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\96e710f47c601cba3f2348a8d11ddede\PresentationFramework.ni.dll
+ 2009-03-14 12:05:51 224,768 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\f475294d8c7dc2dd4febeef27bc0417e\PresentationFramework.Classic.ni.dll
+ 2009-03-14 12:05:55 1,657,856 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\6bafb1a2a73794ddb9761cb321c9e7e2\PresentationUI.ni.dll
+ 2009-03-14 12:05:58 2,128,896 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\4bfb3048bf200a6a8592d1b4ba861a7f\ReachFramework.ni.dll
+ 2009-03-14 12:39:38 320,512 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\10a0c9707876fc1f65e64b811a28b020\ServiceModelReg.ni.exe
+ 2009-03-14 12:39:39 256,000 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\9790551187e294b4ed3aaa1c221891c7\SMDiagnostics.ni.dll
+ 2009-03-14 12:39:40 366,080 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\045dd501b7257b1cc26083538ae69045\SMSvcHost.ni.exe
+ 2009-03-14 12:40:00 82,944 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\597b20e1b053d6a510cfe033c07a63e6\System.AddIn.Contract.ni.dll
+ 2009-03-14 12:40:00 633,856 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\ce984d754e3c0b6be4504b785cc43574\System.AddIn.ni.dll
+ 2009-03-14 12:40:00 94,208 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\532438e2acfcadc469a4d468c51f8451\System.ComponentModel.DataAnnotations.ni.dll
+ 2009-03-14 12:40:44 141,312 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\de514e484e49b04b016949d57ffac03e\System.Configuration.Install.ni.dll
+ 2009-03-14 12:39:47 971,264 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\b82c00e2d24305ad6cb08556e3779b75\System.Configuration.ni.dll
+ 2009-03-14 12:06:01 2,295,296 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\47d87251e93256c635eb73403b8db33e\System.Core.ni.dll
+ 2009-03-14 12:40:01 135,680 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\1db495ff00bbd14df4af6680c4de0653\System.Data.DataSetExtensions.ni.dll
+ 2009-03-14 12:40:35 756,736 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\392de34573f9f8ec885714f2f3e7f07f\System.Data.Entity.Design.ni.dll
+ 2009-03-14 12:40:33 9,924,096 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\6479f975b105808a8d9e7a7fdc762551\System.Data.Entity.ni.dll
+ 2009-03-14 12:06:14 2,516,480 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\0bbec79460b1137df5313f9baf7b246f\System.Data.Linq.ni.dll
+ 2009-04-18 21:49:38 1,115,136 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\283ecfbaa6a6fab76c8b544a4a89d5ce\System.Data.OracleClient.ni.dll
+ 2009-03-14 12:40:39 354,816 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\1cf3acad6553d6c59df576794f4e8bd6\System.Data.Services.Design.ni.dll
+ 2009-03-14 12:40:38 939,008 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\a4b887f476fa4b8746a93a9fc2208560\System.Data.Services.Client.ni.dll
+ 2009-03-14 12:40:37 1,328,128 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\956a513dcbd44d5a6801840ef2b0b47b\System.Data.Services.ni.dll
+ 2009-03-14 12:39:50 2,510,336 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\826b09ab0d0e36f4d631b4cd335df511\System.Data.SqlXml.ni.dll
+ 2009-03-14 12:06:08 6,616,576 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\c70731047b0022638b3f9fb158948a03\System.Data.ni.dll
+ 2009-03-14 12:40:40 1,801,216 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\a6b58624486714fa71e5e35186850ff0\System.Deployment.ni.dll
+ 2009-03-14 12:06:24 10,683,392 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\8ee220bc3cce4f7bbd7818946519ed7f\System.Design.ni.dll
+ 2009-03-14 12:40:41 1,116,672 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\543aced762f6b0c3f8e037955941afc6\System.DirectoryServices.ni.dll
+ 2009-03-14 12:40:42 881,152 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\8b3bb7a2c2f3ffe94c866283f1cd5957\System.DirectoryServices.AccountManagement.ni.dll
+ 2009-03-14 12:40:42 455,680 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\c434a07332ce490711c27fd0edb7562f\System.DirectoryServices.Protocols.ni.dll
+ 2009-03-14 12:06:27 208,384 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\18bbe2b6717e7f1d1dd672526e9889ee\System.Drawing.Design.ni.dll
+ 2009-03-14 12:06:27 1,587,200 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3da96ee075bab9202626ae44c18d226c\System.Drawing.ni.dll
+ 2009-03-14 12:40:43 627,712 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\4267bd908175603006c6c90bb5d900c7\System.EnterpriseServices.ni.dll
+ 2009-03-14 12:40:43 280,064 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\4267bd908175603006c6c90bb5d900c7\System.EnterpriseServices.Wrapper.dll
+ 2009-03-14 12:39:10 212,992 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\68e71147704ef0d34d9a4bece7767fc5\System.IdentityModel.Selectors.ni.dll
+ 2009-03-14 12:39:10 1,056,768 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\c2de8479e54852f56996f79bc93acb13\System.IdentityModel.ni.dll
+ 2009-03-14 12:39:11 381,440 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\7c367a96b10d626ec8cbf8149272d845\System.IO.Log.ni.dll
+ 2009-03-14 12:40:44 330,752 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\1d3fbbd23ce1e8637ef4f40a8d23cd32\System.Management.Instrumentation.ni.dll
+ 2009-03-14 12:40:46 998,400 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\8642fdfbf02a6cb6f01169fe6fdb5d11\System.Management.ni.dll
+ 2009-03-14 12:40:49 621,056 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\519d9c618341b136f9b963ffb7495308\System.Net.ni.dll
+ 2009-03-14 12:06:29 1,035,264 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\646ab52eef343380aa002c220dc31e13\System.Printing.ni.dll
+ 2009-04-18 21:49:36 771,584 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\2abd876a3c8a6b088fa6d8d39d901e3c\System.Runtime.Remoting.ni.dll
+ 2009-03-14 12:39:14 2,338,304 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\034c91b133dee73d452652c52767b5ea\System.Runtime.Serialization.ni.dll
+ 2009-03-14 12:40:45 311,296 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\bfd6e16d8c3589cd2bd3f8d46f0a5402\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2009-03-14 12:39:51 676,352 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\1c8df2da33222c048d683017f2095f04\System.Security.ni.dll
+ 2009-03-14 12:40:51 1,706,496 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\340cad17fe57947eacbc8fa2cea780da\System.ServiceModel.Web.ni.dll
+ 2009-03-14 12:39:33 17,317,888 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\4146033013edebd7e0cb604e504ebfee\System.ServiceModel.ni.dll
+ 2009-03-14 12:40:52 212,992 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\ea3366939280c1715f1c620e33ee3c8a\System.ServiceProcess.ni.dll
+ 2009-03-14 12:40:54 1,917,440 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\63cf639b6e0a3c25c1643c85016e7422\System.Speech.ni.dll
+ 2009-03-14 12:40:54 627,200 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\5a555c9ae6984c40157cf940bb519f7c\System.Transactions.ni.dll
+ 2009-03-14 12:41:03 141,312 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\00ec08741a765c707bd9169346064a81\System.Web.Abstractions.ni.dll
+ 2009-03-14 12:41:06 36,864 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\19ca1747c1ea18a3b639b302bca8df93\System.Web.DynamicData.Design.ni.dll
+ 2009-03-14 12:41:06 547,328 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\b7891f5659db299dbd1b3c72db7edb9f\System.Web.DynamicData.ni.dll
+ 2009-03-14 12:41:07 301,056 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\d3d65e34fa60f0b6c72ca0d12ec89933\System.Web.Entity.Design.ni.dll
+ 2009-03-14 12:41:07 328,704 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\79c29ac85dd57dd485ab60118ac292ff\System.Web.Entity.ni.dll
+ 2009-03-14 12:41:09 859,648 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\58f62044fa702ea6f936071aa5520baa\System.Web.Extensions.Design.ni.dll
+ 2009-03-14 12:41:05 2,403,328 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\7f64c9d25471b72e1e957bdfe67947c8\System.Web.Extensions.ni.dll
+ 2009-03-14 12:41:11 2,209,280 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\81197e32ec931f439b3114e9031b65d6\System.Web.Mobile.ni.dll
+ 2009-03-14 12:41:11 202,240 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\6ee255220d90dcbe80c990e443051cc5\System.Web.RegularExpressions.ni.dll
+ 2009-03-14 12:41:03 129,536 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\bb77ea11f46ab438b2b7ed7c180011a1\System.Web.Routing.ni.dll
+ 2009-03-14 12:41:13 1,840,640 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\b57bb002a655920cbfa2bee29d1e22b7\System.Web.Services.ni.dll
+ 2009-03-14 12:41:02 11,796,992 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\3963ce03d445a8619abbf388d590134b\System.Web.ni.dll
+ 2009-03-14 12:06:37 12,430,848 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\63406259e94d5c0ff5b79401dfe113ce\System.Windows.Forms.ni.dll
+ 2009-03-14 12:41:15 37,888 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\423f794d1f4ed6e120fbb02e436491cb\System.Windows.Presentation.ni.dll
+ 2009-03-14 12:41:18 2,992,640 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\cc99fbbac0b6e4e9ca62093e49b0c16b\System.Workflow.Activities.ni.dll
+ 2009-03-14 12:41:22 4,514,304 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\693a8fbe6f7ad6e4e429052da4317e59\System.Workflow.ComponentModel.ni.dll
+ 2009-03-14 12:41:25 1,908,224 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\d265da36954fcb4cb7ad5adc693ea0f2\System.Workflow.Runtime.ni.dll
+ 2009-03-14 12:41:27 1,356,288 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\ac1750e78d79520dcf19195772eff1b6\System.WorkflowServices.ni.dll
+ 2009-03-14 12:41:27 400,896 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\c338a470b14851ce5987bb0f0869c310\System.Xml.Linq.ni.dll
+ 2009-03-14 12:06:43 5,450,752 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\773a9786013451d3baaeff003dc4230f\System.Xml.ni.dll
+ 2009-03-14 12:05:06 7,868,416 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System\80978a322d7dd39f0a71be1251ae395a\System.ni.dll
+ 2009-03-14 12:06:44 447,488 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\5c028c3d8db6c0f0277673ea4a2d89fb\UIAutomationClient.ni.dll
+ 2009-03-14 12:06:46 1,049,600 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\f3c7957351aec85f526a3350c9718b1e\UIAutomationClientsideProviders.ni.dll
+ 2009-03-14 12:06:47 60,928 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\a715aa442ef87ae99b3ade185599249d\UIAutomationProvider.ni.dll
+ 2009-03-14 12:06:48 187,904 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a6d9503962d47c722231c1478f180695\UIAutomationTypes.ni.dll
+ 2009-03-14 12:05:15 3,313,664 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\14cd5f4b61d35f9b76327d6be9853755\WindowsBase.ni.dll
+ 2009-03-14 12:06:49 240,128 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\6a818099f0386e2356ae94f886a2196f\WindowsFormsIntegration.ni.dll
+ 2009-03-14 12:39:40 321,536 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\2ef5bc3a2edd7570bb23886a4f32294a\WsatConfig.ni.exe
+ 2009-04-18 21:49:39 119,296 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\XPBurnComponent\99e485e0c3eb0435c1282ad4ef40b385\XPBurnComponent.ni.dll
+ 2009-04-12 11:20:32 118,784 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_aed28861\CustomMarshalers.dll
+ 2009-04-12 11:20:08 61,440 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_b3f49654\CustomMarshalers.dll
+ 2009-04-12 11:20:27 3,379,200 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_2c3ec4eb\mscorlib.dll
+ 2009-04-12 11:20:40 8,880,128 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_9bbef4c8\mscorlib.dll
+ 2009-04-12 11:20:24 1,470,464 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_4b5400f2\System.Design.dll
+ 2009-04-12 11:20:38 3,395,584 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_aadb84fd\System.Design.dll
+ 2009-04-12 11:20:32 192,512 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_b64a7b3e\System.Drawing.Design.dll
+ 2009-04-12 11:20:10 90,112 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_d3f783b1\System.Drawing.Design.dll
+ 2009-04-12 11:20:25 835,584 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_3973cb6f\System.Drawing.dll
+ 2009-04-12 11:20:38 2,244,608 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_7d234324\System.Drawing.dll
+ 2009-04-12 11:20:15 3,014,656 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_43f79836\System.Windows.Forms.dll
+ 2009-04-12 11:20:35 7,880,704 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_fb554d76\System.Windows.Forms.dll
+ 2009-04-12 11:20:20 2,088,960 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_c181a888\System.Xml.dll
+ 2009-04-12 11:20:37 5,505,024 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_c203a0e5\System.Xml.dll
+ 2009-04-12 11:20:07 1,953,792 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_3f9d55a6\System.dll
+ 2009-04-12 11:20:31 4,763,648 ----a-w c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_6f731148\System.dll
+ 2002-01-15 11:56:12 49,152 ----a-w c:\windows\ATA Live Update.exe
+ 2002-01-15 11:10:42 147,456 ----a-w c:\windows\ataLiveUpdate.dll
+ 2008-01-09 12:01:48 53,248 ----a-w c:\windows\bdoscandel.exe
+ 2009-02-15 08:59:23 4,096 ----a-w c:\windows\d3dx.dat
+ 1999-01-12 08:39:16 6,656 ----a-w c:\windows\delttsul.exe
+ 2008-06-30 07:39:58 128,256 ----a-w c:\windows\Downloaded Program Files\as2stubie.dll
+ 2008-01-09 12:01:48 118,784 ----a-w c:\windows\Downloaded Program Files\bdupd.dll
+ 2002-07-25 14:13:18 24,576 ----a-w c:\windows\Downloaded Program Files\dwusplay.dll
+ 2002-07-25 14:13:12 196,608 ----a-w c:\windows\Downloaded Program Files\dwusplay.exe
+ 2008-01-09 12:01:48 53,248 ----a-w c:\windows\Downloaded Program Files\ipsupd.dll
+ 2005-02-16 13:15:20 401,408 ----a-w c:\windows\Downloaded Program Files\isusweb.dll
+ 2008-06-14 17:31:55 271,616 ------w c:\windows\Driver Cache\i386\bthport.sys
+ 2008-07-06 12:06:10 89,088 ------w c:\windows\Driver Cache\i386\filterpipelineprintproc.dll
+ 2008-10-24 11:21:09 455,296 ------w c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2008-07-06 12:06:10 765,440 ------w c:\windows\Driver Cache\i386\mxdwdrv.dll
+ 2008-07-06 12:06:10 198,656 ------w c:\windows\Driver Cache\i386\mxdwdui.dll
+ 2008-08-14 13:20:31 2,146,816 ------w c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2008-08-14 13:20:34 2,067,584 ------w c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2008-08-14 13:20:30 2,025,472 ------w c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2008-08-14 13:20:33 2,190,720 ------w c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2008-07-06 12:06:10 373,248 ------w c:\windows\Driver Cache\i386\unidrv.dll
+ 2008-07-06 12:06:10 744,960 ------w c:\windows\Driver Cache\i386\unidrvui.dll
+ 2008-03-13 04:52:36 761,344 ------w c:\windows\Driver Cache\i386\unires.dll
+ 2004-03-23 09:23:30 352,256 ----a-w c:\windows\eSellerateEngine.dll
+ 2007-03-06 00:57:38 213,216 -c----w c:\windows\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe
+ 2007-03-06 00:58:46 369,376 -c----w c:\windows\ie7updates\KB938127-v2-IE7\spuninst\updspapi.dll
+ 2007-08-13 15:54:10 765,952 -c----w c:\windows\ie7updates\KB938127-v2-IE7\vgx.dll
+ 2008-10-16 22:34:18 3,593,216 -c----w c:\windows\ie7updates\KB960714-IE7\mshtml.dll
+ 2007-03-06 00:57:38 213,216 -c----w c:\windows\ie7updates\KB960714-IE7\spuninst\spuninst.exe
+ 2007-03-06 00:58:46 369,376 -c----w c:\windows\ie7updates\KB960714-IE7\spuninst\updspapi.dll
+ 2008-10-16 20:04:07 124,928 -c----w c:\windows\ie7updates\KB961260-IE7\advpack.dll
+ 2008-10-16 20:04:07 347,136 -c----w c:\windows\ie7updates\KB961260-IE7\dxtmsft.dll
+ 2008-10-16 20:04:07 214,528 -c----w c:\windows\ie7updates\KB961260-IE7\dxtrans.dll
+ 2008-10-16 20:04:08 133,120 -c----w c:\windows\ie7updates\KB961260-IE7\extmgr.dll
+ 2008-10-16 20:04:08 63,488 -c----w c:\windows\ie7updates\KB961260-IE7\icardie.dll
+ 2008-10-16 13:09:53 70,656 -c----w c:\windows\ie7updates\KB961260-IE7\ie4uinit.exe
+ 2008-10-16 20:04:08 153,088 -c----w c:\windows\ie7updates\KB961260-IE7\ieakeng.dll
+ 2008-10-16 20:04:08 230,400 -c----w c:\windows\ie7updates\KB961260-IE7\ieaksie.dll
+ 2008-10-15 07:04:53 161,792 -c----w c:\windows\ie7updates\KB961260-IE7\ieakui.dll
+ 2008-10-16 20:04:08 383,488 -c----w c:\windows\ie7updates\KB961260-IE7\ieapfltr.dll
+ 2008-10-16 20:04:09 384,512 -c----w c:\windows\ie7updates\KB961260-IE7\iedkcs32.dll
+ 2008-10-16 20:04:12 6,066,176 -c----w c:\windows\ie7updates\KB961260-IE7\ieframe.dll
+ 2008-10-16 20:04:12 44,544 -c----w c:\windows\ie7updates\KB961260-IE7\iernonce.dll
+ 2008-10-16 20:04:12 267,776 -c----w c:\windows\ie7updates\KB961260-IE7\iertutil.dll
+ 2008-10-16 13:11:09 13,824 -c----w c:\windows\ie7updates\KB961260-IE7\ieudinit.exe
+ 2008-10-15 07:06:26 633,632 -c----w c:\windows\ie7updates\KB961260-IE7\iexplore.exe
+ 2008-10-16 20:04:13 27,648 -c----w c:\windows\ie7updates\KB961260-IE7\jsproxy.dll
+ 2008-10-16 20:04:13 459,264 -c----w c:\windows\ie7updates\KB961260-IE7\msfeeds.dll
+ 2008-10-16 20:04:13 52,224 -c----w c:\windows\ie7updates\KB961260-IE7\msfeedsbs.dll
+ 2008-12-13 06:36:43 3,593,216 -c----w c:\windows\ie7updates\KB961260-IE7\mshtml.dll
+ 2008-10-16 20:04:16 477,696 -c----w c:\windows\ie7updates\KB961260-IE7\mshtmled.dll
+ 2008-10-16 20:04:17 193,024 -c----w c:\windows\ie7updates\KB961260-IE7\msrating.dll
+ 2008-10-16 20:04:17 671,232 -c----w c:\windows\ie7updates\KB961260-IE7\mstime.dll
+ 2008-10-16 20:04:17 102,912 -c----w c:\windows\ie7updates\KB961260-IE7\occache.dll
+ 2008-10-16 20:04:17 44,544 -c----w c:\windows\ie7updates\KB961260-IE7\pngfilt.dll
+ 2007-03-06 00:57:39 213,216 -c----w c:\windows\ie7updates\KB961260-IE7\spuninst\spuninst.exe
+ 2007-03-06 00:58:46 369,376 -c----w c:\windows\ie7updates\KB961260-IE7\spuninst\updspapi.dll
+ 2008-10-16 20:04:17 105,984 -c----w c:\windows\ie7updates\KB961260-IE7\url.dll
+ 2008-10-16 20:04:18 1,160,192 -c----w c:\windows\ie7updates\KB961260-IE7\urlmon.dll
+ 2008-10-16 20:04:18 233,472 -c----w c:\windows\ie7updates\KB961260-IE7\webcheck.dll
+ 2008-10-16 20:04:19 826,368 -c----w c:\windows\ie7updates\KB961260-IE7\wininet.dll
- 2006-12-01 09:03:18 316,416 ----a-w c:\windows\inf\unregmp2.exe
+ 2007-06-27 13:34:56 317,952 ----a-w c:\windows\inf\unregmp2.exe
+ 2006-10-26 17:12:56 396,592 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\MOC.EXE
+ 2007-05-08 08:10:18 16,874,376 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\MSO.DLL
+ 2007-03-21 15:56:50 8,425,856 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\OARTCONV.DLL
+ 2006-10-27 12:18:34 1,658,152 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\OGL.DLL
+ 2007-05-10 06:04:28 846,248 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\OICE.EXE
+ 2007-05-10 07:11:42 1,767,256 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\PPCNV.DLL
+ 2007-03-21 16:00:06 72,096 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\PXBCOM.EXE
+ 2007-03-21 15:58:40 4,145,520 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\WRD12CNV.DLL
+ 2007-03-21 15:58:46 24,416 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\WRD12EXE.EXE
+ 2007-05-10 07:25:40 14,677,368 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\XL12CNV.EXE
+ 2007-09-14 18:45:58 16,901,168 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\MSO.DLL
+ 2007-08-28 21:19:24 1,654,648 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\OGL.DLL
+ 2007-08-24 02:00:34 1,767,768 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\PPCNV.DLL
+ 2007-08-24 02:00:48 72,096 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\PXBCOM.EXE
+ 2007-09-06 15:03:02 4,280,176 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\WRD12CNV.DLL
+ 2007-08-28 21:07:58 24,928 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\WRD12EXE.EXE
+ 2007-10-02 17:00:06 14,708,760 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\XL12CNV.EXE
+ 2007-03-22 16:07:54 80,224 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\DLGSETP.DLL
+ 2007-04-19 10:53:52 137,568 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\ENVELOPE.DLL
+ 2007-05-31 10:41:06 10,352,472 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\EXCEL.EXE
+ 2007-04-19 10:53:52 127,328 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\IMPMAIL.DLL
+ 2007-04-19 10:54:04 183,136 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\MIMEDIR.DLL
+ 2007-05-10 10:35:04 6,747,480 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\MSPUB.EXE
+ 2003-07-07 13:36:00 2,058,343 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLFLTR.DAT
+ 2003-07-08 11:48:00 115,288 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLFLTR.DLL
+ 2007-05-31 10:43:46 7,613,280 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLLIB.DLL
+ 2007-04-19 10:53:44 106,336 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLMIME.DLL
+ 2007-05-31 10:42:14 200,032 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLOOK.EXE
+ 2007-04-19 10:53:56 149,856 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLPH.DLL
+ 2007-04-19 10:53:24 69,984 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\OUTLRPC.DLL
+ 2007-05-31 10:35:22 6,420,320 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\POWERPNT.EXE
+ 2007-05-31 10:35:46 133,976 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\PRTF9.DLL
+ 2007-05-31 10:36:08 612,184 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\PTXT9.DLL
+ 2007-05-10 10:34:48 562,528 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\PUBCONV.DLL
+ 2007-05-31 10:37:40 12,310,368 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040110900063D11C8EF10054038389C\11.0.8173\WINWORD.EXE
+ 2007-06-18 14:16:32 12,259,160 ----a-r c:\windows\Installer\$PatchCache$\Managed\1040710900063D11C8EF10054038389C\11.0.8173\MSO.DLL
+ 2008-10-14 21:42:46 13,219,184 ----a-r c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B7448A3100000030\8.1.3\AcroRd32.dll
+ 2007-01-23 08:39:44 443,904 ----a-r c:\windows\Installer\$PatchCache$\Managed\68AB67CA7DA73301B7448A3100000030\8.1.3\JP2KLib.dll
+ 2009-02-09 07:45:31 65,536 ----a-r c:\windows\Installer\{00000000-5736-4205-1000-781CD0E19F00}\DTLNKDE00_00000000573642051000781CD0E19F00.exe
+ 2009-02-09 07:45:31 65,536 ----a-r c:\windows\Installer\{00000000-5736-4205-1000-781CD0E19F00}\DTLNKFR00_00000000573642051000781CD0E19F00.exe
+ 2009-02-09 07:45:31 65,536 ----a-r c:\windows\Installer\{00000000-5736-4205-1000-781CD0E19F00}\DTLNKJP00_00000000573642051000781CD0E19F00.exe
+ 2009-02-09 07:45:31 65,536 ----a-r c:\windows\Installer\{00000000-5736-4205-1000-781CD0E19F00}\DTLNKPL00_00000000573642051000781CD0E19F00.exe
+ 2009-06-05 11:57:30 86,016 ----a-r c:\windows\Installer\{07287123-B8AC-41CE-8346-3D777245C35B}\PrntWzrdIco.exe
+ 2009-04-24 07:09:56 18,432 ----a-r c:\windows\Installer\{3BF37F52-6545-475F-BDC8-5278A93B7B8C}\Icon3BF37F527.exe
+ 2009-06-05 11:58:40 27,136 ----a-r c:\windows\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe
+ 2009-05-18 11:44:57 10,134 ----a-r c:\windows\Installer\{7169FA93-66C2-43BD-86E0-CD332A686B29}\ARPPRODUCTICON.exe
+ 2009-05-18 11:44:57 458,752 ----a-r c:\windows\Installer\{7169FA93-66C2-43BD-86E0-CD332A686B29}\NewShortcut16_F7578A24A4B240E4BA057EF931EB25B5.exe
+ 2009-05-18 11:44:57 8,854 ----a-r c:\windows\Installer\{7169FA93-66C2-43BD-86E0-CD332A686B29}\NewShortcut2_1C7B7089989A424FB39D41A32581C775.exe
+ 2009-05-18 11:44:57 458,752 ----a-r c:\windows\Installer\{7169FA93-66C2-43BD-86E0-CD332A686B29}\NewShortcut20_F7578A24A4B240E4BA057EF931EB25B5.exe
+ 2009-05-18 11:44:57 8,854 ----a-r c:\windows\Installer\{7169FA93-66C2-43BD-86E0-CD332A686B29}\NewShortcut21_E2CBBE559A074AF98E8596196B075190.exe
+ 2009-05-18 11:44:57 8,854 ----a-r c:\windows\Installer\{7169FA93-66C2-43BD-86E0-CD332A686B29}\Uninstall_QA_OTI_H_FE5D756F71E147C4972AD6775344B40B.exe
+ 2009-04-18 21:49:27 58,680 ----a-r c:\windows\Installer\{7395D650-AE5D-4D68-B8FE-D3FA6B51467F}\ARPPRODUCTICON.exe
+ 2009-04-18 21:49:27 75,064 ----a-r c:\windows\Installer\{7395D650-AE5D-4D68-B8FE-D3FA6B51467F}\DriverDetective.ch_DAAFDDFF93AA466CACD62F4E9C078965.exe
+ 2009-04-18 21:49:27 75,064 ----a-r c:\windows\Installer\{7395D650-AE5D-4D68-B8FE-D3FA6B51467F}\NewShortcut2_FF242F65E1144F0EA5F662B2F97BAB93.exe
+ 2009-04-18 21:49:27 75,064 ----a-r c:\windows\Installer\{7395D650-AE5D-4D68-B8FE-D3FA6B51467F}\NewShortcut6_1E788E6250654D1BABBC6104456224C6.exe
+ 2009-04-18 21:49:27 75,064 ----a-r c:\windows\Installer\{7395D650-AE5D-4D68-B8FE-D3FA6B51467F}\NewShortcut7_E24EC019DC92417DB56586A10F3F9B25.exe
+ 2009-04-18 21:49:27 50,488 ----a-r c:\windows\Installer\{7395D650-AE5D-4D68-B8FE-D3FA6B51467F}\UNINST_Uninstall_D_14B80FD6E9C643FD97E49DA646E134A5.exe
+ 2009-05-18 09:55:30 15,086 ----a-r c:\windows\Installer\{7694EC32-CB0E-4B35-9088-7B320CB1F4FE}\ARPPRODUCTICON.exe
+ 2009-05-18 09:53:28 3,262 ----a-r c:\windows\Installer\{82427977-8776-4087-90CA-9F65174D3C4D}\ARPPRODUCTICON.exe
+ 2009-02-16 13:30:28 80,395 ----a-r c:\windows\Installer\{83502B7E-BE3F-436D-8F5D-268560AA3681}\MsblIco.Exe
+ 2009-03-14 11:56:01 32,768 ----a-r c:\windows\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe
- 2008-12-12 21:26:45 593,920 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2009-03-14 12:05:43 593,920 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\accicons.exe
- 2008-12-12 21:26:45 12,288 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2009-03-14 12:05:43 12,288 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2008-12-12 21:26:45 86,016 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\inficon.exe
+ 2009-03-14 12:05:43 86,016 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\inficon.exe
- 2008-12-12 21:26:45 135,168 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-03-14 12:05:43 135,168 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2008-12-12 21:26:45 11,264 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\mspicons.exe
+ 2009-03-14 12:05:43 11,264 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\mspicons.exe
- 2008-12-12 21:26:45 27,136 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2009-03-14 12:05:43 27,136 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2008-12-12 21:26:45 4,096 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-03-14 12:05:43 4,096 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2008-12-12 21:26:45 794,624 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\outicon.exe
+ 2009-03-14 12:05:43 794,624 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\outicon.exe
- 2008-12-12 21:26:45 249,856 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pptico.exe
+ 2009-03-14 12:05:43 249,856 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pptico.exe
- 2008-12-12 21:26:45 61,440 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pubs.exe
+ 2009-03-14 12:05:43 61,440 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\pubs.exe
- 2008-12-12 21:26:45 23,040 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\unbndico.exe
+ 2009-03-14 12:05:43 23,040 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2008-12-12 21:26:45 286,720 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\wordicon.exe
+ 2009-03-14 12:05:43 286,720 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\wordicon.exe
- 2008-12-12 21:26:45 409,600 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2009-03-14 12:05:43 409,600 ----a-r c:\windows\Installer\{90110401-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2009-03-14 12:05:50 38,240 ----a-r c:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
- 2008-12-12 21:22:34 12,288 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2009-01-19 03:49:38 12,288 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2008-12-12 21:22:34 282,624 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\fpicon.exe
+ 2009-01-19 03:49:38 282,624 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\fpicon.exe
- 2008-12-12 21:22:34 135,168 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2009-01-19 03:49:38 135,168 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2008-12-12 21:22:34 27,136 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2009-01-19 03:49:38 27,136 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2008-12-12 21:22:34 4,096 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-01-19 03:49:38 4,096 ----a-r c:\windows\Installer\{90170401-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2009-06-22 07:59:52 295,606 ----a-r c:\windows\Installer\{AC76BA86-7AD7-1033-7B44-A81300000003}\SC_Reader.exe
+ 2009-05-18 09:53:58 10,134 ----a-r c:\windows\Installer\{B7CB0BF3-791E-44D3-9F04-786E36D51C9D}\ARPPRODUCTICON.exe
+ 2009-06-05 11:58:07 102,400 ----a-r c:\windows\Installer\{CC5702D7-86E2-45A8-99D7-E8B976ADCC56}\iTunesIco.exe
+ 2009-04-18 21:28:07 7,406 ----a-r c:\windows\Installer\{DEE88727-779B-47A9-ACEF-F87CA5F92A65}\ARPPRODUCTICON.exe
+ 2009-04-18 21:28:07 49,152 ----a-r c:\windows\Installer\{DEE88727-779B-47A9-ACEF-F87CA5F92A65}\NewShortcut14_27BC537B086D42E19CB39D115FA043BF.exe
+ 2009-04-18 21:28:07 450,560 ----a-r c:\windows\Installer\{DEE88727-779B-47A9-ACEF-F87CA5F92A65}\NewShortcut15_27BC537B086D42E19CB39D115FA043BF.exe
+ 2009-04-18 21:28:07 65,536 ----a-r c:\windows\Installer\{DEE88727-779B-47A9-ACEF-F87CA5F92A65}\Shortcut0.C3A146F5_4B48_11D5_A819_00B0D0428C0C.exe
+ 2009-03-30 09:18:39 292,878 ----a-r c:\windows\Installer\{F99F9E24-EE2F-47FD-AEB0-FDB82859B5C9}\ARPPRODUCTICON.exe
+ 1998-10-29 13:45:06 306,688 ----a-w c:\windows\IsUninst.exe
+ 2009-03-21 13:25:16 2,678 ----a-w c:\windows\java\Packages\Data\2W85BJNH.DAT
+ 2009-03-21 13:25:16 2,678 ----a-w c:\windows\java\Packages\Data\A5VJZ7LN.DAT
+ 2009-03-21 13:25:22 2,678 ----a-w c:\windows\java\Packages\Data\J3FJRXJ7.DAT
+ 2009-03-21 13:25:17 2,678 ----a-w c:\windows\java\Packages\Data\M733FFHR.DAT
+ 2009-03-21 13:25:16 2,678 ----a-w c:\windows\java\Packages\Data\MFT3ZPB3.DAT
+ 2008-07-25 08:16:58 82,944 ----a-w c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2007-10-23 22:47:48 14,352 ----a-w c:\windows\Microsoft.NET\Framework\sbs_diasymreader.dll
+ 2007-10-23 22:47:48 14,336 ----a-w c:\windows\Microsoft.NET\Framework\sbs_iehost.dll
+ 2007-10-23 22:47:48 14,360 ----a-w c:\windows\Microsoft.NET\Framework\sbs_microsoft.jscript.dll
+ 2007-10-23 22:47:48 14,904 ----a-w c:\windows\Microsoft.NET\Framework\sbs_microsoft.vsa.vb.codedomprocessor.dll
+ 2007-10-23 22:47:48 14,344 ----a-w c:\windows\Microsoft.NET\Framework\sbs_mscordbi.dll
+ 2007-10-23 22:47:48 14,344 ----a-w c:\windows\Microsoft.NET\Framework\sbs_mscorrc.dll
+ 2007-10-23 22:47:48 14,344 ----a-w c:\windows\Microsoft.NET\Framework\sbs_mscorsec.dll
+ 2007-10-23 22:47:48 14,384 ----a-w c:\windows\Microsoft.NET\Framework\sbs_system.configuration.install.dll
+ 2007-10-23 22:47:48 14,352 ----a-w c:\windows\Microsoft.NET\Framework\sbs_system.data.dll
+ 2007-10-23 22:47:48 14,376 ----a-w c:\windows\Microsoft.NET\Framework\sbs_system.enterpriseservices.dll
+ 2007-10-23 22:47:48 14,344 ----a-w c:\windows\Microsoft.NET\Framework\sbs_VsaVb7rt.dll
+ 2007-10-23 22:47:48 14,352 ----a-w c:\windows\Microsoft.NET\Framework\sbs_wminet_utils.dll
+ 2008-07-25 08:16:58 16,896 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp10.dll
+ 2008-07-25 08:17:02 16,896 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2008-07-25 08:17:02 16,896 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2008-07-25 08:17:02 16,896 ----a-w c:\windows\Microsoft.NET\Framework\SharedReg12.dll
+ 2008-07-25 08:16:58 96,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
+ 2003-02-20 23:59:44 16,896 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\alinkui.dll
+ 2003-02-21 00:55:06 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\cscompui.dll
+ 2003-02-21 00:02:16 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\vbc7ui.dll
+ 2003-02-21 02:04:20 155,648 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\Vsavb7rtUI.dll
+ 2003-02-21 04:24:08 7,680 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Accessibility.dll
+ 2003-02-21 02:00:36 98,304 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\alink.dll
+ 2003-02-20 16:19:42 24,576 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2004-07-14 22:49:16 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2003-02-20 16:19:22 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_rc.dll
+ 2004-07-14 22:49:18 20,480 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
+ 2004-07-14 22:49:26 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
+ 2004-07-14 22:49:22 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2002-07-29 08:11:50 219,136 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\c_g18030.dll
+ 2003-02-21 04:24:10 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\CasPol.exe
+ 2003-02-21 04:24:32 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\ConfigWizards.exe
+ 2004-07-14 21:32:22 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2004-07-15 08:23:28 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\csc.exe
+ 2004-07-15 08:23:44 626,688 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
+ 2003-02-21 04:24:34 12,288 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\cscompmgd.dll
+ 2003-02-21 04:24:36 33,792 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\CustomMarshalers.dll
+ 2003-02-21 01:12:24 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\cvtres.exe
+ 2003-02-21 07:21:40 524,288 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\diasymreader.dll
+ 2003-02-20 16:16:32 798,720 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\EventLogMessages.dll
+ 2004-07-14 21:24:30 282,624 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2003-10-08 11:30:14 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\gacutil.exe
+ 2003-02-21 04:24:38 7,680 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IEExec.exe
+ 2004-07-15 11:31:00 8,192 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
+ 2004-07-15 11:31:04 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
+ 2003-02-21 04:24:40 4,608 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\IIEHost.dll
+ 2004-07-14 21:35:30 196,608 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
+ 2003-02-21 04:24:42 15,872 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\InstallUtil.exe
+ 2003-02-20 16:22:24 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\InstallUtilLib.dll
+ 2003-02-21 04:24:44 26,112 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\ISymWrapper.dll
+ 2003-02-21 04:24:52 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\jsc.exe
+ 2004-07-15 11:28:58 720,896 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
+ 2004-07-15 11:28:56 299,008 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
+ 2003-02-21 04:24:54 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.Vsa.dll
+ 2003-02-21 04:25:02 6,144 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualC.Dll
+ 2003-02-21 04:24:58 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.Vsa.dll
+ 2003-02-21 04:25:06 11,264 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2003-02-21 04:25:02 6,656 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft_VsaVb.dll
+ 2004-07-15 11:28:50 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
+ 2004-07-15 11:28:50 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
+ 2003-02-21 04:25:06 1,564,672 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorcfg.dll
+ 2004-07-14 21:32:44 86,016 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
+ 2004-07-14 21:32:46 233,472 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
+ 2003-02-20 16:09:14 86,016 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2004-07-14 21:25:06 315,392 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2004-07-14 21:33:04 102,400 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2004-07-15 11:29:02 2,138,112 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2003-02-20 15:43:52 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscormmc.dll
+ 2003-02-20 16:06:34 65,536 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorpe.dll
+ 2004-07-14 21:33:22 143,360 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
+ 2004-07-14 21:33:24 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
+ 2003-02-20 16:09:18 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2004-07-14 21:26:52 2,510,848 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2003-02-20 16:09:24 9,216 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscortim.dll
+ 2004-07-14 21:28:34 2,502,656 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2003-02-21 01:42:22 348,160 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\msvcr71.dll
+ 2003-02-20 16:18:34 20,480 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\mtxoci8.dll
+ 2003-02-20 15:43:36 22,528 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\MUI\0409\mscorsecr.dll
+ 2004-08-10 13:20:00 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
+ 2003-02-20 16:09:46 73,728 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\ngen.exe
+ 2004-07-14 21:34:50 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
+ 2003-02-21 04:25:24 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\RegAsm.exe
+ 2004-07-15 11:28:48 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
+ 2003-02-21 04:25:30 12,288 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\RegSvcs.exe
+ 2003-02-20 16:09:34 253,952 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\shfusion.dll
+ 2003-02-20 16:09:34 122,880 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\shfusres.dll
+ 2004-07-14 21:35:04 319,488 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\SOS.dll
+ 2003-02-21 04:26:38 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Configuration.Install.dll
+ 2004-07-15 11:32:00 1,294,336 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
+ 2004-07-15 11:31:14 303,104 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
+ 2004-07-15 11:29:02 1,703,936 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
+ 2004-07-15 11:28:54 90,112 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
+ 2004-07-15 11:31:16 1,224,704 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2003-02-21 04:26:48 65,536 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Drawing.Design.dll
+ 2004-07-15 11:28:58 466,944 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2004-07-15 11:28:56 241,664 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
+ 2004-07-14 21:35:12 66,560 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
+ 2004-07-15 11:31:58 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
+ 2004-07-15 11:31:12 241,664 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
+ 2004-07-15 11:28:58 323,584 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
+ 2004-07-15 11:31:54 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
+ 2004-07-15 11:28:52 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2004-07-15 11:28:54 126,976 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
+ 2004-07-15 11:29:00 1,257,472 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2004-07-15 11:28:58 819,200 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
+ 2004-07-15 11:28:52 57,344 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
+ 2004-07-15 11:31:16 573,440 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
+ 2004-07-15 11:32:02 2,052,096 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2004-07-15 11:29:00 1,339,392 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-06-22 10:51:38 53,248 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
+ 2004-07-15 08:23:20 737,280 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\vbc.exe
+ 2004-07-15 05:15:14 1,032,192 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
+ 2004-07-14 23:11:56 31,744 ----a-w c:\windows\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
+ 2008-09-10 14:42:22 19,456 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1025\alinkui.dll
+ 2008-09-10 14:42:22 136,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1025\cscompui.dll
+ 2008-09-10 14:42:24 4,608 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1025\CvtResUI.dll
+ 2008-09-10 14:42:28 183,808 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1025\vbc7ui.dll
+ 2008-09-10 14:42:20 208,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1025\Vsavb7rtUI.dll
+ 2008-07-25 08:16:42 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
+ 2008-07-25 08:16:48 145,408 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll
+ 2008-07-25 08:16:50 13,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
+ 2008-07-25 08:17:10 193,016 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll
+ 2008-07-25 08:16:36 218,112 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll
+ 2008-07-25 08:17:00 10,752 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
+ 2008-07-25 08:17:02 147,968 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll
+ 2008-07-25 08:16:44 98,808 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\alink.dll
+ 2008-07-25 08:17:02 58,880 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2008-09-10 14:42:20 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\aspnet_rc.dll
+ 2008-09-10 14:42:20 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\aspnet_regsql.resources.dll
+ 2008-09-10 14:42:20 319,488 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\aspnetmmcext.resources.dll
+ 2008-09-10 14:42:30 65,536 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\Microsoft.VisualBasic.resources.dll
+ 2008-09-10 14:42:28 352,256 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\mscorlib.resources.dll
+ 2008-09-10 14:42:28 340,480 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\mscorrc.dll
+ 2008-09-10 14:42:28 95,232 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\ShFusRes.dll
+ 2008-09-10 14:42:28 12,288 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\sysglobl.resources.dll
+ 2008-09-10 14:42:28 19,968 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Configuration.Install.resources.dll
+ 2008-09-10 14:42:28 53,248 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Configuration.resources.dll
+ 2008-09-10 14:42:28 114,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Data.OracleClient.resources.dll
+ 2008-09-10 14:42:28 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Data.resources.dll
+ 2008-09-10 14:42:28 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\system.data.sqlxml.resources.dll
+ 2008-09-10 14:42:22 417,792 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Deployment.resources.dll
+ 2008-09-10 14:42:28 565,248 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Design.resources.dll
+ 2008-09-10 14:42:28 19,456 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.DirectoryServices.Protocols.resources.dll
+ 2008-09-10 14:42:28 49,152 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.DirectoryServices.resources.dll
+ 2008-09-10 14:42:28 6,144 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Drawing.Design.resources.dll
+ 2008-09-10 14:42:28 16,384 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Drawing.resources.dll
+ 2008-09-10 14:42:28 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.EnterpriseServices.resources.dll
+ 2008-09-10 14:42:28 24,576 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Management.resources.dll
+ 2008-09-10 14:42:28 86,016 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Messaging.resources.dll
+ 2008-09-10 14:42:28 241,664 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\system.resources.dll
+ 2008-09-10 14:42:28 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Runtime.Remoting.resources.dll
+ 2008-09-10 14:42:28 12,800 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Runtime.Serialization.Formatters.Soap.resources.dll
+ 2008-09-10 14:42:28 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Security.resources.dll
+ 2008-09-10 14:42:28 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.ServiceProcess.resources.dll
+ 2008-09-10 14:42:28 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Transactions.resources.dll
+ 2008-09-10 14:42:28 684,032 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Web.resources.dll
+ 2008-09-10 14:42:28 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Web.Services.resources.dll
+ 2008-09-10 14:42:28 479,232 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.Windows.Forms.resources.dll
+ 2008-09-10 14:42:28 184,320 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ar\System.xml.resources.dll
+ 2008-07-25 08:16:40 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-07-25 08:16:40 22,024 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
+ 2008-07-25 08:16:40 17,416 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
+ 2008-07-25 08:16:40 33,800 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
+ 2008-07-25 08:16:38 84,480 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
+ 2008-07-25 08:16:40 24,576 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
+ 2008-07-25 08:16:40 33,288 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2008-07-25 08:16:40 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2008-07-25 08:16:40 34,312 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2008-11-25 01:59:18 31,560 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2008-07-25 08:16:40 507,904 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
+ 2008-07-25 08:17:00 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
+ 2008-07-25 08:17:00 89,608 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
+ 2008-07-25 08:16:50 80,376 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2008-07-25 08:16:50 1,163,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cscomp.dll
+ 2008-07-25 08:16:50 13,312 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
+ 2008-07-25 08:17:02 27,136 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
+ 2008-07-25 08:17:00 69,120 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
+ 2008-07-25 08:16:50 35,320 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2008-07-25 08:16:46 62,968 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
+ 2008-07-25 08:16:46 5,120 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2008-07-25 08:17:16 575,496 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
+ 2008-07-25 08:17:00 798,224 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll
+ 2008-07-25 08:16:58 18,936 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\fusion.dll
+ 2008-09-10 14:42:30 9,728 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\GAC\ar\Microsoft.VisualBasic.Compatibility.Data.resources.dll
+ 2008-09-10 14:42:30 10,240 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\GAC\ar\Microsoft.VisualBasic.Compatibility.resources.dll
+ 2008-07-25 08:17:00 9,728 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2008-07-25 08:17:02 8,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
+ 2008-07-25 08:17:00 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
+ 2008-07-25 08:17:00 6,656 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
+ 2008-07-25 08:17:00 230,904 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
+ 2008-07-25 08:17:00 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 08:17:00 65,032 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
+ 2008-07-25 08:17:00 72,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
+ 2008-07-25 08:16:54 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2008-07-25 08:16:56 348,160 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll
+ 2008-07-25 08:16:56 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
+ 2008-07-25 08:16:56 655,360 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll
+ 2008-07-25 08:16:56 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
+ 2008-07-25 08:16:54 749,568 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
+ 2008-07-25 08:17:14 110,592 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2008-07-25 08:17:14 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
+ 2008-07-25 08:17:12 659,456 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll
+ 2008-07-25 08:16:38 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
+ 2008-07-25 08:17:16 5,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
+ 2008-07-25 08:16:38 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
+ 2008-07-25 08:16:38 12,800 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2008-07-25 08:16:38 7,168 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
+ 2008-07-25 08:16:40 97,792 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
+ 2008-07-25 08:16:56 69,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2008-11-25 01:59:40 990,032 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2008-07-25 08:17:00 83,456 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
+ 2008-07-25 08:17:00 308,224 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll
+ 2008-07-25 08:17:00 46,592 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
+ 2008-11-25 01:59:40 364,872 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2008-07-25 08:17:00 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
+ 2008-11-25 01:59:40 4,546,560 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2008-07-25 08:17:00 114,176 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll
+ 2008-07-25 08:17:04 345,600 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
+ 2008-07-25 08:17:00 77,312 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
+ 2008-07-25 08:16:58 18,944 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
+ 2008-07-25 08:17:02 230,912 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll
+ 2008-07-25 08:17:02 69,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2008-07-25 08:17:02 19,456 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
+ 2008-11-25 01:59:36 5,813,576 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2008-09-10 14:42:28 31,232 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MUI\0401\mscorsecr.dll
+ 2008-07-25 08:17:04 31,744 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
+ 2008-07-25 08:17:02 100,856 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe
+ 2008-07-25 08:17:02 24,584 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\normalization.dll
+ 2008-07-25 08:17:02 88,584 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
+ 2008-07-25 08:16:58 143,360 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\peverify.dll
+ 2008-07-25 08:17:00 53,248 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 08:17:00 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2008-07-25 08:17:06 61,952 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
+ 2008-07-25 08:17:02 16,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2008-07-25 08:17:00 118,784 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\shfusion.dll
+ 2008-07-25 08:17:04 95,232 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
+ 2008-07-25 08:17:02 392,184 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2008-07-25 08:17:02 110,592 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
+ 2008-07-25 08:17:02 425,984 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll
+ 2008-07-25 08:17:00 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
+ 2008-07-25 08:17:00 2,933,248 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.dll
+ 2008-11-25 01:59:40 486,400 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll
+ 2008-07-25 08:17:02 745,472 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll
+ 2008-07-25 08:16:46 970,752 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll
+ 2008-07-25 08:17:00 5,062,656 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2008-07-25 08:17:00 401,408 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll
+ 2008-07-25 08:17:02 188,416 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
+ 2008-07-25 08:17:00 3,149,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
+ 2008-07-25 08:17:00 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
+ 2008-07-25 08:17:00 626,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2008-07-25 08:17:02 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
+ 2008-07-25 08:17:02 57,392 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
+ 2008-07-25 08:17:02 113,664 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll
+ 2008-07-25 08:17:00 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
+ 2008-07-25 08:17:00 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
+ 2008-07-25 08:17:00 303,104 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll
+ 2008-07-25 08:17:00 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-07-25 08:17:00 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
+ 2008-07-25 08:17:00 114,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
+ 2008-07-25 08:17:02 261,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll
+ 2008-11-25 01:59:40 5,242,880 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2008-07-25 08:17:02 835,584 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
+ 2008-07-25 08:17:02 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
+ 2008-07-25 08:17:00 839,680 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
+ 2008-07-25 08:17:00 5,025,792 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2008-11-25 01:59:40 2,048,000 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.XML.dll
+ 2008-07-25 08:17:02 81,400 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
+ 2008-07-25 08:17:10 1,172,472 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\vbc.exe
+ 2008-07-25 08:16:38 1,344,000 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll
+ 2008-11-25 01:59:18 436,040 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2008-07-25 08:17:02 37,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
+ 2008-10-22 18:53:10 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ar\ComSvcConfig.resources.dll
+ 2008-05-14 19:38:44 864,256 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ar\infocard.resources.dll
+ 2008-10-22 18:53:10 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ar\ServiceModelReg.resources.dll
+ 2008-10-22 18:53:10 11,264 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ar\SMSvcHost.resources.dll
+ 2008-10-22 18:53:10 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ar\WsatConfig.resources.dll
+ 2008-07-29 16:16:38 168,968 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
+ 2008-07-29 16:24:50 881,664 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
+ 2008-07-29 16:16:38 397,312 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll
+ 2008-07-29 16:16:38 163,840 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll
+ 2008-07-29 16:16:38 11,280 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll
+ 2008-07-29 16:16:38 156,688 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
+ 2008-07-29 16:16:38 20,504 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll
+ 2008-07-29 16:16:38 110,592 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMdiagnostics.dll
+ 2008-07-29 16:16:38 132,096 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
+ 2008-07-29 16:16:38 966,656 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
+ 2008-12-05 17:12:12 5,931,008 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll
+ 2008-07-29 16:16:38 73,728 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll
+ 2008-07-29 16:16:38 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
+ 2008-07-29 16:16:38 152,576 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
+ 2008-07-29 16:32:52 17,448 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
+ 2008-10-22 19:10:22 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\ar\PresentationUI.resources.dll
+ 2007-08-05 19:30:12 797,696 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\NaturalLanguage6.dll
+ 2007-08-05 19:30:14 4,874,240 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\NlsData0009.dll
+ 2007-08-05 19:30:14 2,628,608 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\NlsLexicons0009.dll
+ 2008-07-29 18:10:04 71,160 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll
+ 2008-07-29 16:59:58 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll
+ 2008-07-29 18:10:04 46,104 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
+ 2008-07-29 16:59:58 132,120 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2008-07-29 17:35:46 864,256 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll
+ 2008-12-05 16:35:22 1,736,528 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll
+ 2008-10-22 21:52:32 151,880 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\1025\cscompui.dll
+ 2008-10-22 21:52:32 209,728 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\1025\vbc7ui.dll
+ 2008-07-29 20:40:48 168,448 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\1033\cscompui.dll
+ 2008-07-29 20:40:48 233,976 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\1033\vbc7ui.dll
+ 2008-07-29 20:40:48 41,992 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess.exe
+ 2008-07-29 20:40:48 41,992 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess32.exe
+ 2008-07-29 20:40:48 41,984 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\AddInUtil.exe
+ 2008-10-22 21:52:32 16,224 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\ar\DataSvcUtil.resources.dll
+ 2008-10-22 21:52:32 31,576 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\ar\EdmGen.Resources.dll
+ 2008-10-22 21:52:32 5,632 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\ar\Microsoft.Data.Entity.Build.Tasks.Resources.dll
+ 2008-07-29 20:40:48 1,548,280 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\csc.exe
+ 2008-07-29 20:40:48 78,856 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe
+ 2008-07-29 20:40:48 95,224 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\EdmGen.exe
+ 2008-10-22 21:50:32 27,912 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\baseline.dat
+ 2008-10-21 18:02:30 97,280 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\DeleteTemp.exe
+ 2008-10-21 18:02:30 276,984 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\dlmgr.dll
+ 2008-10-21 18:02:30 1,064,448 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\gencomp.dll
+ 2008-10-21 18:02:30 177,152 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\HtmlLite.dll
+ 2008-10-22 05:38:02 181,064 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\RebootStub.exe
+ 2008-10-21 18:02:30 269,304 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\setup.exe
+ 2008-10-22 17:27:24 110,920 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\setupres.dll
+ 2008-10-21 18:02:30 1,364,992 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\SITSetup.dll
+ 2008-10-21 18:02:30 1,054,208 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\vs_setup.dll
+ 2008-10-21 18:02:30 632,320 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\vs70uimgr.dll
+ 2008-10-21 18:02:30 413,184 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\vsbasereqs.dll
+ 2008-10-21 18:02:30 689,152 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\vsscenario.dll
+ 2008-10-22 17:27:24 100,672 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\WapRes.dll
+ 2008-10-21 18:02:30 984,056 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - ara\WapUI.dll
+ 2008-07-29 20:15:24 225,490 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\baseline.dat
+ 2008-07-29 15:47:34 97,280 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\DeleteTemp.exe
+ 2008-07-29 15:47:34 276,984 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\dlmgr.dll
+ 2008-07-29 15:47:34 1,064,448 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\gencomp.dll
+ 2008-07-29 15:47:34 177,152 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\HtmlLite.dll
+ 2008-07-29 15:47:34 269,304 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
+ 2008-07-29 15:47:34 113,152 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1025.dll
+ 2008-07-29 15:47:34 84,992 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1028.dll
+ 2008-07-29 15:47:34 125,440 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1029.dll
+ 2008-07-29 15:47:34 126,464 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1030.dll
+ 2008-07-29 15:47:34 130,048 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1031.dll
+ 2008-07-29 15:47:34 137,728 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1032.dll
+ 2008-07-29 15:47:34 122,368 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1035.dll
+ 2008-07-29 15:47:34 133,120 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1036.dll
+ 2008-07-29 15:47:34 111,104 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1037.dll
+ 2008-07-29 15:47:34 132,096 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1038.dll
+ 2008-07-29 15:47:34 128,512 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1040.dll
+ 2008-07-29 15:47:34 97,792 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1041.dll
+ 2008-07-29 15:47:34 94,720 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1042.dll
+ 2008-07-29 15:47:34 129,024 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1043.dll
+ 2008-07-29 15:47:34 121,856 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1044.dll
+ 2008-07-29 15:47:34 128,512 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1045.dll
+ 2008-07-29 15:47:34 122,880 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1046.dll
+ 2008-07-29 15:47:34 123,904 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1049.dll
+ 2008-07-29 15:47:34 121,344 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1053.dll
+ 2008-07-29 15:47:34 121,344 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1055.dll
+ 2008-07-29 15:47:34 84,480 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.2052.dll
+ 2008-07-29 15:47:34 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.2070.dll
+ 2008-07-29 15:47:34 131,584 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.3082.dll
+ 2008-07-29 15:47:34 110,080 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.dll
+ 2008-07-29 15:47:34 1,364,992 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\SITSetup.dll
+ 2008-07-29 15:47:34 1,054,208 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vs_setup.dll
+ 2008-07-29 15:47:34 632,320 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vs70uimgr.dll
+ 2008-07-29 15:47:34 413,184 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vsbasereqs.dll
+ 2008-07-29 15:47:34 689,152 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vsscenario.dll
+ 2008-07-29 15:47:34 102,904 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1025.dll
+ 2008-07-29 15:47:34 89,592 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1028.dll
+ 2008-07-29 15:47:34 108,536 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1029.dll
+ 2008-07-29 15:47:34 108,536 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1030.dll
+ 2008-07-29 15:47:34 111,608 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1031.dll
+ 2008-07-29 15:47:34 113,656 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1032.dll
+ 2008-07-29 15:47:34 106,488 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1035.dll
+ 2008-07-29 15:47:34 112,120 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1036.dll
+ 2008-07-29 15:47:34 101,368 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1037.dll
+ 2008-07-29 15:47:34 111,096 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1038.dll
+ 2008-07-29 15:47:34 110,072 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1040.dll
+ 2008-07-29 15:47:34 95,224 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1041.dll
+ 2008-07-29 15:47:34 92,664 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1042.dll
+ 2008-07-29 15:47:34 108,536 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1043.dll
+ 2008-07-29 15:47:34 106,488 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1044.dll
+ 2008-07-29 15:47:34 109,048 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1045.dll
+ 2008-07-29 15:47:34 107,512 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1046.dll
+ 2008-07-29 15:47:34 107,000 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1049.dll
+ 2008-07-29 15:47:34 105,976 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1053.dll
+ 2008-07-29 15:47:34 106,488 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1055.dll
+ 2008-07-29 15:47:34 89,080 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.2052.dll
+ 2008-07-29 15:47:34 110,072 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.2070.dll
+ 2008-07-29 15:47:34 111,096 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.3082.dll
+ 2008-07-29 15:47:34 107,512 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.dll
+ 2008-07-29 15:47:34 984,056 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapUI.dll
+ 2008-07-29 20:40:48 802,816 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.Build.Tasks.v3.5.dll
+ 2008-07-29 20:40:48 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.Data.Entity.Build.Tasks.dll
+ 2008-07-29 20:40:48 41,984 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.VisualC.STLCLR.dll
+ 2008-07-29 20:40:48 91,136 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\MSBuild.exe
+ 2008-07-29 20:40:48 5,632 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Sentinel.v3.5Client.dll
+ 2008-07-29 20:40:48 1,720,824 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\vbc.exe
+ 2008-07-29 20:40:48 196,104 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\WFServicesReg.exe
+ 2008-07-29 20:40:48 70,648 ----a-w c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
+ 2009-02-16 18:47:14 524,288 ----a-w c:\windows\opuc.dll
+ 2002-12-11 12:16:58 7,680 ----a-w c:\windows\RegisteredPackages\{3695EB93-6443-448D-8E2E-1F6F4FC79BC1}\asferror.dll
+ 2002-11-05 23:10:14 167,936 ----a-w c:\windows\RegisteredPackages\{89FDAB62-6F46-4C7E-A559-E00B9A0BACB6}\wmserror.dll
+ 2002-11-05 23:45:32 327,680 ----a-w c:\windows\RegisteredPackages\{89FDAB62-6F46-4C7E-A559-E00B9A0BACB6}\wmsservertypelib.dll
+ 2004-08-10 00:38:56 372,736 ----a-w c:\windows\Resources\Themes\Royale\Royale\Shell\NormalColor\ShellStyle.dll
+ 2004-08-10 00:38:56 372,736 ----a-w c:\windows\Resources\Themes\Royale\Shell\NormalColor\ShellStyle.dll
+ 2009-01-07 10:42:52 172,032 ------w c:\windows\Setup1.exe
+ 1999-01-12 12:19:12 248,832 ----a-w c:\windows\speech\spchtel.dll
+ 1999-01-12 12:19:12 562,176 ----a-w c:\windows\speech\speech.dll
+ 1999-01-12 12:09:36 380,928 ----a-w c:\windows\speech\vcmd.exe
+ 1999-01-12 12:19:12 156,160 ----a-w c:\windows\speech\vcmshl.dll
+ 1999-01-12 12:19:12 179,712 ----a-w c:\windows\speech\Vdict.dll
+ 1999-01-12 12:19:12 173,056 ----a-w c:\windows\speech\VText.dll
+ 1999-01-12 08:35:30 53,760 ----a-w c:\windows\speech\WrapSAPI.dll
+ 1999-01-12 12:19:12 128,000 ----a-w c:\windows\speech\Xcommand.dll
+ 1999-01-12 12:19:12 208,896 ----a-w c:\windows\speech\Xlisten.dll
+ 1999-01-12 12:19:12 203,776 ----a-w c:\windows\speech\XTel.Dll
+ 1999-01-12 12:19:12 195,584 ----a-w c:\windows\speech\Xvoice.dll
+ 2009-01-07 10:42:51 73,216 ----a-w c:\windows\ST6UNST.EXE
+ 2009-02-15 19:48:29 53,760 ----a-w c:\windows\system\ppacklib.dll
+ 2006-03-18 22:49:10 1,241,159 ----a-w c:\windows\system32\264dc.dll
+ 2006-03-18 22:49:10 1,130,567 ----a-w c:\windows\system32\264dmmx.dll
+ 2006-03-18 22:49:10 1,134,663 ----a-w c:\windows\system32\264dsse.dll
+ 2006-03-18 22:49:10 1,142,856 ----a-w c:\windows\system32\264dsse2.dll
- 2008-10-16 20:04:07 124,928 ----a-w c:\windows\system32\advpack.dll
+ 2008-12-20 22:30:52 124,928 ----a-w c:\windows\system32\advpack.dll
+ 2009-03-15 12:46:44 372,736 ----a-w c:\windows\system32\agsaamc.dll
+ 2009-03-15 12:46:44 610,304 ----a-w c:\windows\system32\agsaamg.dll
+ 2009-03-15 12:46:44 90,112 ----a-w c:\windows\system32\agsaami.dll
+ 2009-03-15 12:46:44 2,535,424 ----a-w c:\windows\system32\agsaamj.dll
+ 2009-03-15 12:46:44 1,986,560 ----a-w c:\windows\system32\akll.dll
- 2006-12-01 07:51:06 6,656 ----a-w c:\windows\system32\asferror.dll
+ 2002-12-11 12:16:58 7,680 ----a-w c:\windows\system32\asferror.dll
+ 1999-08-09 11:39:20 14,832 ----a-w c:\windows\system32\asfsipc.dll
+ 2009-03-15 12:46:44 1,245,184 ----a-w c:\windows\system32\bkll.dll
+ 2003-10-28 08:24:22 484,496 ----a-w c:\windows\system32\capicom.dll
+ 2009-03-15 12:46:44 1,212,416 ----a-w c:\windows\system32\ckll.dll
+ 2008-02-06 02:00:00 216,064 ----a-w c:\windows\system32\CNMLM8R.DLL
- 2008-12-12 14:50:53 16,384 ----a-w c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2009-06-22 18:19:05 16,384 ----a-w c:\windows\system32\config\systemprofile\Cookies\index.dat
- 2008-12-12 14:50:53 32,768 ----a-w c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2009-06-22 18:19:05 32,768 ----a-w c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2008-12-12 14:50:53 32,768 ----a-w c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2009-06-22 18:19:05 32,768 ----a-w c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2008-04-15 12:00:00 139,264 ----a-w c:\windows\system32\cscript.exe
+ 2008-05-07 09:07:23 135,168 ----a-w c:\windows\system32\cscript.exe
+ 2008-07-25 08:16:46 96,760 ----a-w c:\windows\system32\dfshim.dll
+ 2004-10-26 22:38:18 94,208 ----a-w c:\windows\system32\divxdec_0407.dll
+ 2004-10-26 22:38:18 94,208 ----a-w c:\windows\system32\divxdec_040c.dll
+ 2004-10-26 22:38:18 94,208 ----a-w c:\windows\system32\divxdec_0411.dll
+ 2006-10-02 15:24:00 487,424 ----a-w c:\windows\system32\DLLAV32.dll
- 2008-10-16 20:04:07 124,928 -c----w c:\windows\system32\dllcache\advpack.dll
+ 2008-12-20 22:30:52 124,928 -c--a-w c:\windows\system32\dllcache\advpack.dll
- 2008-04-15 12:00:00 138,112 -c--a-w c:\windows\system32\dllcache\afd.sys
+ 2008-08-14 10:04:36 138,496 -c----w c:\windows\system32\dllcache\afd.sys
- 2006-12-01 07:51:06 6,656 -c--a-w c:\windows\system32\dllcache\asferror.dll
+ 2002-12-11 12:16:58 7,680 -c--a-w c:\windows\system32\dllcache\asferror.dll
+ 2008-04-13 21:16:34 37,888 -c--a-w c:\windows\system32\dllcache\bthmodem.sys
- 2008-04-14 18:06:10 272,512 -c--a-w c:\windows\system32\dllcache\bthport.sys
+ 2008-06-14 17:31:55 271,616 -c--a-w c:\windows\system32\dllcache\bthport.sys
- 2008-04-15 12:00:00 139,264 -c--a-w c:\windows\system32\dllcache\cscript.exe
+ 2008-05-07 09:07:23 135,168 -c--a-w c:\windows\system32\dllcache\cscript.exe
- 2008-04-15 12:00:00 147,968 -c--a-w c:\windows\system32\dllcache\dnsapi.dll
+ 2008-06-20 17:47:47 147,968 -c--a-w c:\windows\system32\dllcache\dnsapi.dll
- 2008-10-16 20:04:07 347,136 -c----w c:\windows\system32\dllcache\dxtmsft.dll
+ 2008-12-20 22:30:52 347,136 -c--a-w c:\windows\system32\dllcache\dxtmsft.dll
- 2008-10-16 20:04:07 214,528 -c----w c:\windows\system32\dllcache\dxtrans.dll
+ 2008-12-20 22:30:53 214,528 -c--a-w c:\windows\system32\dllcache\dxtrans.dll
- 2008-04-15 12:00:00 246,272 -c--a-w c:\windows\system32\dllcache\es.dll
+ 2008-07-07 20:27:47 253,952 -c--a-w c:\windows\system32\dllcache\es.dll
- 2008-10-16 20:04:08 133,120 -c----w c:\windows\system32\dllcache\extmgr.dll
+ 2008-12-20 22:30:53 133,120 -c----w c:\windows\system32\dllcache\extmgr.dll
+ 2008-07-06 12:06:10 89,088 -c--a-w c:\windows\system32\dllcache\filterpipelineprintproc.dll
- 2008-04-15 12:00:00 285,184 -c--a-w c:\windows\system32\dllcache\gdi32.dll
+ 2008-10-23 12:36:22 286,720 -c--a-w c:\windows\system32\dllcache\gdi32.dll
- 2008-10-16 20:04:08 63,488 -c----w c:\windows\system32\dllcache\icardie.dll
+ 2008-12-20 22:30:53 63,488 -c--a-w c:\windows\system32\dllcache\icardie.dll
- 2008-10-16 13:09:53 70,656 -c----w c:\windows\system32\dllcache\ie4uinit.exe
+ 2008-12-19 09:08:41 70,656 -c--a-w c:\windows\system32\dllcache\ie4uinit.exe
- 2008-10-16 20:04:08 153,088 -c----w c:\windows\system32\dllcache\ieakeng.dll
+ 2008-12-20 22:30:53 153,088 -c--a-w c:\windows\system32\dllcache\ieakeng.dll
- 2008-10-16 20:04:08 230,400 -c----w c:\windows\system32\dllcache\ieaksie.dll
+ 2008-12-20 22:30:53 230,400 -c--a-w c:\windows\system32\dllcache\ieaksie.dll
- 2008-10-15 07:04:53 161,792 -c----w c:\windows\system32\dllcache\ieakui.dll
+ 2008-12-19 05:23:56 161,792 -c--a-w c:\windows\system32\dllcache\ieakui.dll
- 2008-10-16 20:04:08 383,488 -c----w c:\windows\system32\dllcache\ieapfltr.dll
+ 2008-12-20 22:30:54 383,488 -c--a-w c:\windows\system32\dllcache\ieapfltr.dll
+ 2009-04-25 05:30:39 102,400 -c----w c:\windows\system32\dllcache\iecompat.dll
- 2008-10-16 20:04:09 384,512 -c----w c:\windows\system32\dllcache\iedkcs32.dll
+ 2008-12-20 22:30:54 384,512 -c--a-w c:\windows\system32\dllcache\iedkcs32.dll
- 2008-10-16 20:04:12 6,066,176 -c----w c:\windows\system32\dllcache\ieframe.dll
+ 2008-12-20 22:30:58 6,066,688 -c--a-w c:\windows\system32\dllcache\ieframe.dll
- 2008-10-16 20:04:12 44,544 -c----w c:\windows\system32\dllcache\iernonce.dll
+ 2008-12-20 22:30:59 44,544 -c--a-w c:\windows\system32\dllcache\iernonce.dll
- 2008-10-16 20:04:12 267,776 -c----w c:\windows\system32\dllcache\iertutil.dll
+ 2008-12-20 22:30:59 267,776 -c--a-w c:\windows\system32\dllcache\iertutil.dll
- 2008-10-16 13:11:09 13,824 -c----w c:\windows\system32\dllcache\ieudinit.exe
+ 2008-12-19 09:10:15 13,824 -c----w c:\windows\system32\dllcache\ieudinit.exe
- 2008-10-15 07:06:26 633,632 -c----w c:\windows\system32\dllcache\iexplore.exe
+ 2008-12-19 05:25:25 634,024 -c--a-w c:\windows\system32\dllcache\iexplore.exe
- 2008-04-15 12:00:00 691,712 -c--a-w c:\windows\system32\dllcache\inetcomm.dll
+ 2008-04-11 19:04:32 691,712 -c--a-w c:\windows\system32\dllcache\inetcomm.dll
- 2008-04-15 12:00:00 512,000 -c--a-w c:\windows\system32\dllcache\jscript.dll
+ 2008-05-09 10:53:39 512,000 -c--a-w c:\windows\system32\dllcache\jscript.dll
- 2008-10-16 20:04:13 27,648 -c----w c:\windows\system32\dllcache\jsproxy.dll
+ 2008-12-20 22:31:01 27,648 -c--a-w c:\windows\system32\dllcache\jsproxy.dll
+ 2001-08-17 11:55:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd101b.dll
+ 2001-08-17 11:55:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd101c.dll
+ 2001-08-17 11:55:56 5,632 -c--a-w c:\windows\system32\dllcache\kbd103.dll
+ 2008-04-14 18:28:26 6,144 -c--a-w c:\windows\system32\dllcache\kbd106.dll
+ 2001-08-17 19:36:18 8,704 -c--a-w c:\windows\system32\dllcache\kbdjpn.dll
+ 2001-08-17 19:36:18 8,192 -c--a-w c:\windows\system32\dllcache\kbdkor.dll
- 2006-10-18 17:03:58 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-06-17 22:09:22 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-10-24 11:21:09 455,296 -c----w c:\windows\system32\dllcache\mrxsmb.sys
- 2008-04-15 12:00:00 331,776 -c--a-w c:\windows\system32\dllcache\msadce.dll
+ 2008-05-01 14:34:51 331,776 -c--a-w c:\windows\system32\dllcache\msadce.dll
- 2008-04-15 12:00:00 73,728 -c--a-w c:\windows\system32\dllcache\mscms.dll
+ 2008-06-24 16:43:12 74,240 -c--a-w c:\windows\system32\dllcache\mscms.dll
- 2008-10-16 20:04:13 459,264 -c----w c:\windows\system32\dllcache\msfeeds.dll
+ 2008-12-20 22:31:01 459,264 -c--a-w c:\windows\system32\dllcache\msfeeds.dll
- 2008-10-16 20:04:13 52,224 -c----w c:\windows\system32\dllcache\msfeedsbs.dll
+ 2008-12-20 22:31:01 52,224 -c--a-w c:\windows\system32\dllcache\msfeedsbs.dll
- 2008-10-16 22:34:18 3,593,216 -c----w c:\windows\system32\dllcache\mshtml.dll
+ 2009-01-16 18:01:16 3,594,752 -c--a-w c:\windows\system32\dllcache\mshtml.dll
- 2008-10-16 20:04:16 477,696 -c----w c:\windows\system32\dllcache\mshtmled.dll
+ 2008-12-20 22:31:06 477,696 -c--a-w c:\windows\system32\dllcache\mshtmled.dll
- 2008-10-16 20:04:17 193,024 -c----w c:\windows\system32\dllcache\msrating.dll
+ 2008-12-20 22:31:06 193,024 -c--a-w c:\windows\system32\dllcache\msrating.dll
- 2006-10-18 18:47:16 414,208 -c--a-w c:\windows\system32\dllcache\msscp.dll
+ 2006-12-04 13:21:50 414,720 -c--a-w c:\windows\system32\dllcache\msscp.dll
- 2008-10-16 20:04:17 671,232 -c----w c:\windows\system32\dllcache\mstime.dll
+ 2008-12-20 22:31:07 671,232 -c--a-w c:\windows\system32\dllcache\mstime.dll
- 2008-04-15 12:00:00 245,248 -c--a-w c:\windows\system32\dllcache\mswsock.dll
+ 2008-06-20 17:47:47 245,248 -c--a-w c:\windows\system32\dllcache\mswsock.dll
- 2008-04-15 12:00:00 1,104,896 -c--a-w c:\windows\system32\dllcache\msxml3.dll
+ 2008-09-04 17:15:18 1,106,944 -c--a-w c:\windows\system32\dllcache\msxml3.dll
- 2008-04-15 12:00:00 1,306,624 -c--a-w c:\windows\system32\dllcache\msxml6.dll
+ 2008-09-10 01:14:30 1,307,648 -c--a-w c:\windows\system32\dllcache\msxml6.dll
- 2008-04-15 12:00:00 337,408 -c--a-w c:\windows\system32\dllcache\netapi32.dll
+ 2008-10-15 16:35:25 337,408 -c--a-w c:\windows\system32\dllcache\netapi32.dll
+ 2008-08-14 13:20:31 2,146,816 -c----w c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2008-08-14 13:20:34 2,067,584 -c----w c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2008-08-14 13:20:30 2,025,472 -c----w c:\windows\system32\dllcache\ntkrpamp.exe
+ 2008-08-14 13:20:33 2,190,720 -c----w c:\windows\system32\dllcache\ntoskrnl.exe
- 2008-10-16 20:04:17 102,912 -c----w c:\windows\system32\dllcache\occache.dll
+ 2008-12-20 22:31:08 102,912 -c--a-w c:\windows\system32\dllcache\occache.dll
- 2008-10-16 20:04:17 44,544 -c----w c:\windows\system32\dllcache\pngfilt.dll
+ 2008-12-20 22:31:08 44,544 -c--a-w c:\windows\system32\dllcache\pngfilt.dll
+ 2008-07-06 10:50:03 597,504 -c--a-w c:\windows\system32\dllcache\printfilterpipelinesvc.exe
- 2008-04-15 12:00:00 1,286,144 -c--a-w c:\windows\system32\dllcache\quartz.dll
+ 2008-05-07 05:10:16 1,286,144 -c--a-w c:\windows\system32\dllcache\quartz.dll
- 2008-04-15 12:00:00 202,624 -c--a-w c:\windows\system32\dllcache\rmcast.sys
+ 2008-05-08 14:02:52 203,136 -c--a-w c:\windows\system32\dllcache\rmcast.sys
- 2008-04-15 12:00:00 144,384 -c--a-w c:\windows\system32\dllcache\schannel.dll
+ 2008-12-05 06:56:00 144,896 -c--a-w c:\windows\system32\dllcache\schannel.dll
- 2008-04-15 12:00:00 180,224 -c--a-w c:\windows\system32\dllcache\scrobj.dll
+ 2008-05-09 10:53:39 180,224 -c--a-w c:\windows\system32\dllcache\scrobj.dll
- 2008-04-15 12:00:00 172,032 -c--a-w c:\windows\system32\dllcache\scrrun.dll
+ 2008-05-09 10:53:40 172,032 -c--a-w c:\windows\system32\dllcache\scrrun.dll
- 2008-04-15 12:00:00 8,446,976 -c--a-w c:\windows\system32\dllcache\shell32.dll
+ 2008-06-17 19:01:29 8,446,976 -c--a-w c:\windows\system32\dllcache\shell32.dll
- 2008-04-15 12:00:00 334,848 -c--a-w c:\windows\system32\dllcache\srv.sys
+ 2008-12-11 10:57:09 333,952 -c--a-w c:\windows\system32\dllcache\srv.sys
- 2008-04-15 12:00:00 246,814 -c--a-w c:\windows\system32\dllcache\strmdll.dll
+ 2008-10-03 10:03:03 247,326 -c--a-w c:\windows\system32\dllcache\strmdll.dll
- 2008-04-15 12:00:00 361,344 -c--a-w c:\windows\system32\dllcache\tcpip.sys
+ 2008-06-20 11:51:12 361,600 -c--a-w c:\windows\system32\dllcache\tcpip.sys
- 2008-04-15 12:00:00 225,664 -c--a-w c:\windows\system32\dllcache\tcpip6.sys
+ 2008-06-20 11:08:27 225,856 -c--a-w c:\windows\system32\dllcache\tcpip6.sys
- 2006-12-01 09:03:18 316,416 -c--a-w c:\windows\system32\dllcache\unregmp2.exe
+ 2007-06-27 13:34:56 317,952 -c--a-w c:\windows\system32\dllcache\unregmp2.exe
- 2008-10-16 20:04:17 105,984 -c----w c:\windows\system32\dllcache\url.dll
+ 2008-12-20 22:31:08 105,984 -c--a-w c:\windows\system32\dllcache\url.dll
- 2008-10-16 20:04:18 1,160,192 -c----w c:\windows\system32\dllcache\urlmon.dll
+ 2008-12-20 22:31:09 1,160,192 -c--a-w c:\windows\system32\dllcache\urlmon.dll
+ 2008-04-13 21:15:40 32,128 -c--a-w c:\windows\system32\dllcache\usbccgp.sys
+ 2008-04-13 21:17:38 25,856 -c--a-w c:\windows\system32\dllcache\usbprint.sys
+ 2008-04-13 21:15:36 15,104 -c--a-w c:\windows\system32\dllcache\usbscan.sys
+ 2008-04-13 21:15:38 26,112 -c--a-w c:\windows\system32\dllcache\usbser.sys
- 2008-04-15 12:00:00 434,176 -c--a-w c:\windows\system32\dllcache\vbscript.dll
+ 2008-05-09 10:53:40 430,080 -c--a-w c:\windows\system32\dllcache\vbscript.dll
- 2007-08-13 15:54:10 765,952 -c--a-w c:\windows\system32\dllcache\VGX.dll
+ 2008-05-27 17:23:58 765,952 -c--a-w c:\windows\system32\dllcache\vgx.dll
- 2008-10-16 20:04:18 233,472 -c----w c:\windows\system32\dllcache\webcheck.dll
+ 2008-12-20 22:31:09 233,472 -c--a-w c:\windows\system32\dllcache\webcheck.dll
+ 2008-09-05 20:30:46 266,792 -c----w c:\windows\system32\dllcache\wgaLogon.dll
+ 2008-09-05 20:29:58 942,632 -c----w c:\windows\system32\dllcache\WgaTray.exe
- 2008-04-15 12:00:00 1,845,504 -c--a-w c:\windows\system32\dllcache\win32k.sys
+ 2009-02-09 14:04:04 1,846,656 -c--a-w c:\windows\system32\dllcache\win32k.sys
- 2008-10-16 20:04:19 826,368 -c----w c:\windows\system32\dllcache\wininet.dll
+ 2008-12-20 22:31:10 826,368 -c--a-w c:\windows\system32\dllcache\wininet.dll
- 2006-10-18 18:47:18 222,208 -c--a-w c:\windows\system32\dllcache\WMASF.dll
+ 2007-10-25 06:28:30 222,720 -c--a-w c:\windows\system32\dllcache\wmasf.dll
- 2006-10-18 18:47:20 937,984 -c--a-w c:\windows\system32\dllcache\WMNetMgr.dll
+ 2008-06-18 02:03:08 938,496 -c--a-w c:\windows\system32\dllcache\WMNetmgr.dll
- 2006-10-18 18:47:20 10,834,432 -c--a-w c:\windows\system32\dllcache\wmp.dll
+ 2008-11-11 15:34:42 10,838,016 -c--a-w c:\windows\system32\dllcache\wmp.dll
- 2006-10-18 18:47:22 2,450,944 -c--a-w c:\windows\system32\dllcache\wmvcore.dll
+ 2008-06-18 02:03:14 2,458,112 -c--a-w c:\windows\system32\dllcache\WMVCore.dll
- 2008-04-15 12:00:00 155,648 -c--a-w c:\windows\system32\dllcache\wscript.exe
+ 2008-05-08 11:24:44 155,648 -c--a-w c:\windows\system32\dllcache\wscript.exe
- 2008-04-15 12:00:00 90,112 -c--a-w c:\windows\system32\dllcache\wshext.dll
+ 2008-05-09 10:53:40 90,112 -c--a-w c:\windows\system32\dllcache\wshext.dll
+ 2008-07-06 12:06:10 575,488 -c--a-w c:\windows\system32\dllcache\xpsshhdr.dll
+ 2008-07-06 12:06:10 1,676,288 -c--a-w c:\windows\system32\dllcache\xpssvcs.dll
+ 2003-03-14 08:33:12 114,688 ----a-w c:\windows\system32\DLLCDA32.dll
+ 2003-03-14 08:33:00 61,440 ----a-w c:\windows\system32\DLLCDF32.dll
+ 2006-10-02 15:24:00 94,208 ----a-w c:\windows\system32\DLLCPY32.dll
+ 2006-10-02 15:24:00 163,840 ----a-w c:\windows\system32\DLLDEV32.dll
+ 2007-04-27 07:43:58 120,200 ----a-w c:\windows\system32\DLLDEV32i.dll
+ 2003-03-14 08:32:44 32,768 ----a-w c:\windows\system32\DLLDIR32.dll
+ 2006-10-02 15:24:00 151,552 ----a-w c:\windows\system32\DLLDRV32.dll
+ 2003-03-14 08:33:02 45,056 ----a-w c:\windows\system32\DLLIMG32.dll
+ 2006-10-02 15:24:00 53,248 ----a-w c:\windows\system32\DLLIO32.dll
+ 2003-03-14 08:32:46 32,768 ----a-w c:\windows\system32\DLLISO32.dll
+ 2003-03-14 08:32:40 24,576 ----a-w c:\windows\system32\DLLIX.dll
+ 2003-03-14 08:32:42 32,768 ----a-w c:\windows\system32\DLLMSC32.dll
+ 2006-10-02 15:24:00 36,864 ----a-w c:\windows\system32\DLLPNT32.dll
+ 2003-03-14 08:32:44 49,152 ----a-w c:\windows\system32\DLLPRF32.dll
+ 2003-03-14 08:33:04 53,248 ----a-w c:\windows\system32\DLLPRJ32.dll
+ 2003-03-14 08:32:50 65,536 ----a-w c:\windows\system32\DLLPTL32.dll
+ 2003-03-14 08:35:00 40,960 ----a-w c:\windows\system32\DLLRD32.dll
+ 2006-10-02 15:24:00 188,416 ----a-w c:\windows\system32\DLLRES32.dll
+ 2003-03-14 08:32:54 57,344 ----a-w c:\windows\system32\DLLTPO32.dll
+ 2008-12-12 08:18:16 87,336 ----a-w c:\windows\system32\dns-sd.exe
- 2008-04-15 12:00:00 147,968 ----a-w c:\windows\system32\dnsapi.dll
+ 2008-06-20 17:47:47 147,968 ----a-w c:\windows\system32\dnsapi.dll
+ 2008-12-12 08:11:46 61,440 ----a-w c:\windows\system32\dnssd.dll
- 2008-04-15 12:00:00 138,112 ----a-w c:\windows\system32\drivers\afd.sys
+ 2008-08-14 10:04:36 138,496 ----a-w c:\windows\system32\drivers\afd.sys
+ 2008-04-13 21:16:34 37,888 ----a-w c:\windows\system32\drivers\bthmodem.sys
- 2008-04-14 18:06:10 272,512 ----a-w c:\windows\system32\drivers\bthport.sys
+ 2008-06-14 17:31:55 271,616 ----a-w c:\windows\system32\drivers\bthport.sys
+ 2009-01-27 01:35:40 9,336 ------w c:\windows\system32\drivers\cdr4_xp.sys
+ 2009-01-27 01:35:40 9,464 ------w c:\windows\system32\drivers\cdralw2k.sys
+ 2009-03-19 13:32:48 23,400 ----a-w c:\windows\system32\drivers\GEARAspiWDM.sys
+ 2004-03-22 02:35:48 51,088 ----a-w c:\windows\system32\drivers\hpzid412.sys
+ 2004-03-22 02:35:52 16,496 ----a-w c:\windows\system32\drivers\HPZipr12.sys
+ 2004-03-22 02:35:58 21,744 ----a-w c:\windows\system32\drivers\HPZius12.sys
+ 2008-07-21 14:34:36 121,872 ----a-w c:\windows\system32\drivers\kl1.sys
+ 2009-04-22 22:52:24 226,832 ----a-w c:\windows\system32\drivers\klif.sys
+ 2008-04-30 14:06:48 24,592 ----a-w c:\windows\system32\drivers\klim5.sys
+ 2008-11-11 16:58:54 25,601 ----a-w c:\windows\system32\drivers\klopp.dat
- 2008-04-15 12:00:00 456,576 ----a-w c:\windows\system32\drivers\mrxsmb.sys
+ 2008-10-24 11:21:09 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
+ 2008-06-19 13:24:30 28,544 ----a-w c:\windows\system32\drivers\pavboot.sys
+ 2008-08-26 07:26:12 18,816 ----a-w c:\windows\system32\drivers\pccsmcfd.sys
+ 2009-01-27 01:35:40 43,528 ------w c:\windows\system32\drivers\PxHelp20.sys
- 2008-04-15 12:00:00 202,624 ----a-w c:\windows\system32\drivers\RMCast.sys
+ 2008-05-08 14:02:52 203,136 ----a-w c:\windows\system32\drivers\rmcast.sys
- 2008-04-15 12:00:00 334,848 ----a-w c:\windows\system32\drivers\srv.sys
+ 2008-12-11 10:57:09 333,952 ----a-w c:\windows\system32\drivers\srv.sys
+ 2006-08-31 00:47:00 25,856 ----a-w c:\windows\system32\drivers\tap0801co.sys
- 2008-04-15 12:00:00 361,344 ----a-w c:\windows\system32\drivers\tcpip.sys
+ 2008-06-20 11:51:12 361,600 ----a-w c:\windows\system32\drivers\tcpip.sys
- 2008-04-15 12:00:00 225,664 ----a-w c:\windows\system32\drivers\tcpip6.sys
+ 2008-06-20 11:08:27 225,856 ----a-w c:\windows\system32\drivers\tcpip6.sys
+ 2008-10-29 09:29:54 531,968 ----a-w c:\windows\system32\drivers\UMDF\PCCSWpdDriver.dll
+ 2008-04-13 21:15:40 32,128 ----a-w c:\windows\system32\drivers\usbccgp.sys
+ 2008-04-13 21:17:38 25,856 ----a-w c:\windows\system32\drivers\usbprint.sys
+ 2008-04-13 21:15:36 15,104 ----a-w c:\windows\system32\drivers\usbscan.sys
+ 2008-04-13 21:15:38 26,112 ----a-w c:\windows\system32\drivers\usbser.sys
+ 2008-03-27 13:27:46 503,008 ------w c:\windows\system32\drivers\wdf01000.sys
+ 2008-03-27 13:27:48 35,040 ------w c:\windows\system32\drivers\wdfldr.sys
- 2006-09-28 15:55:50 77,568 ------w c:\windows\system32\drivers\WudfPf.sys
+ 2006-09-15 19:29:52 76,544 ------w c:\windows\system32\drivers\WudfPf.sys
- 2006-09-28 16:00:34 82,944 ------w c:\windows\system32\drivers\WudfRd.sys
+ 2006-09-15 19:30:10 82,688 ------w c:\windows\system32\drivers\WudfRd.sys
+ 2009-02-09 04:37:46 17,664 -c--a-w c:\windows\system32\DRVSTORE\ccdcmb_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\ccdcmb.sys
+ 2009-02-09 04:37:48 91,136 -c--a-w c:\windows\system32\DRVSTORE\ccdcmb_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\nmwcdcls.dll
+ 2009-02-09 04:37:50 659,968 -c--a-w c:\windows\system32\DRVSTORE\ccdcmb_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\nmwcdcocls.dll
+ 2009-02-09 04:32:36 1,112,288 -c--a-w c:\windows\system32\DRVSTORE\ccdcmb_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\wdfcoinstaller01007.dll
+ 2009-02-09 04:37:56 7,808 -c--a-w c:\windows\system32\DRVSTORE\ccdcmbcj_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\usbser_lowerfltj.sys
+ 2009-02-09 04:37:48 7,808 -c--a-w c:\windows\system32\DRVSTORE\ccdcmbm_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\usbser_lowerflt.sys
+ 2009-02-09 04:37:46 22,016 -c--a-w c:\windows\system32\DRVSTORE\ccdcmbo_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\ccdcmbo.sys
+ 2008-04-17 09:12:54 107,368 -c--a-w c:\windows\system32\DRVSTORE\GEARAspiWD_F475AF659D36685632E9BD97B57E9D9661FF3FFD\x86\GEARAspi.dll
+ 2009-03-19 13:32:48 23,400 -c--a-w c:\windows\system32\DRVSTORE\GEARAspiWD_F475AF659D36685632E9BD97B57E9D9661FF3FFD\x86\GEARAspiWDM.sys
+ 2009-05-29 10:36:06 17,408 -c--a-w c:\windows\system32\DRVSTORE\netaapl_F433E854B3FF3BEE74986FDE8E16A64162342BFF\netaapl.sys
+ 2009-05-29 10:36:10 1,419,232 -c--a-w c:\windows\system32\DRVSTORE\netaapl_F433E854B3FF3BEE74986FDE8E16A64162342BFF\wdfcoinstaller01005.dll
+ 2009-03-19 10:48:18 136,704 -c--a-w c:\windows\system32\DRVSTORE\nmwcdnsu_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\nmwcdnsu.sys
+ 2009-03-19 10:48:12 8,320 -c--a-w c:\windows\system32\DRVSTORE\nmwcdnsuc_A1774E014D770CB0E09594945F8CE0BA1E16FE0B\nmwcdnsuc.sys
+ 2008-08-26 07:26:12 18,816 -c--a-w c:\windows\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.sys
+ 2008-10-29 09:29:54 531,968 -c--a-w c:\windows\system32\DRVSTORE\pccswpddri_3E7DA20DF10674E832F650CC36C8BD55CB7CB42E\PCCSWpdDriver.dll
+ 2008-10-29 09:24:36 831,048 -c--a-w c:\windows\system32\DRVSTORE\pccswpddri_3E7DA20DF10674E832F650CC36C8BD55CB7CB42E\WudfUpdate_01005.dll
+ 2009-05-29 10:36:16 39,424 -c--a-w c:\windows\system32\DRVSTORE\usbaapl_872A2434B7205D4BD84BBE53811BDCE15F347D5B\usbaapl.sys
+ 2009-05-29 10:36:16 2,060,288 -c--a-w c:\windows\system32\DRVSTORE\usbaapl_872A2434B7205D4BD84BBE53811BDCE15F347D5B\usbaaplrc.dll
- 2008-10-16 20:04:07 347,136 ------w c:\windows\system32\dxtmsft.dll
+ 2008-12-20 22:30:52 347,136 ----a-w c:\windows\system32\dxtmsft.dll
- 2008-10-16 20:04:07 214,528 ------w c:\windows\system32\dxtrans.dll
+ 2008-12-20 22:30:53 214,528 ----a-w c:\windows\system32\dxtrans.dll
+ 2007-10-09 10:03:00 73,752 ----a-w c:\windows\system32\dxva2.dll
+ 2006-12-19 12:06:00 1,495,552 ----a-w c:\windows\system32\epoPGPsdk.dll
- 2008-04-15 12:00:00 246,272 ----a-w c:\windows\system32\es.dll
+ 2008-07-07 20:27:47 253,952 ----a-w c:\windows\system32\es.dll
+ 2007-10-09 10:03:12 493,080 ----a-w c:\windows\system32\evr.dll
- 2008-10-16 20:04:08 133,120 ------w c:\windows\system32\extmgr.dll
+ 2008-12-20 22:30:53 133,120 ------w c:\windows\system32\extmgr.dll
- 2008-11-24 14:32:44 57,344 ----a-w c:\windows\system32\ff_vfw.dll
+ 2008-06-12 18:36:38 7,680 ----a-w c:\windows\system32\ff_vfw.dll
- 2008-12-15 21:44:25 282,928 ----a-w c:\windows\system32\FNTCACHE.DAT
+ 2009-06-18 12:02:01 1,795,744 ----a-w c:\windows\system32\FNTCACHE.DAT
- 2008-04-15 12:00:00 285,184 ----a-w c:\windows\system32\gdi32.dll
+ 2008-10-23 12:36:22 286,720 ----a-w c:\windows\system32\gdi32.dll
+ 2001-09-05 18:00:58 1,700,352 ----a-w c:\windows\system32\gdiplus.dll
+ 2008-04-17 09:12:54 107,368 ----a-w c:\windows\system32\GEARAspi.dll
+ 2004-03-14 00:32:06 278,528 ----a-w c:\windows\system32\hpgwiamd.dll
+ 2004-03-14 00:34:10 270,336 ----a-w c:\windows\system32\HPZc3212.dll
+ 2004-04-07 04:34:26 196,608 ----a-w c:\windows\system32\hpzcoi10.dll
+ 2004-04-07 04:33:20 344,064 ----a-w c:\windows\system32\hpzcon10.dll
+ 2004-03-18 13:53:54 278,584 ----a-w c:\windows\system32\HPZidr12.dll
+ 2004-03-18 13:38:00 61,440 ----a-w c:\windows\system32\HPZinw12.exe
+ 2004-03-18 13:55:48 65,536 ----a-w c:\windows\system32\HPZipm12.exe
+ 2004-03-18 13:56:28 204,800 ----a-w c:\windows\system32\HPZipr12.dll
+ 2004-03-18 13:39:24 94,208 ----a-w c:\windows\system32\HPZipt12.dll
+ 2004-03-18 13:39:30 57,344 ----a-w c:\windows\system32\HPZisn12.dll
+ 2008-07-29 16:24:50 622,080 ----a-w c:\windows\system32\icardagt.exe
- 2008-10-16 20:04:08 63,488 ----a-w c:\windows\system32\icardie.dll
+ 2008-12-20 22:30:53 63,488 ----a-w c:\windows\system32\icardie.dll
+ 2008-07-29 16:24:50 11,264 ----a-w c:\windows\system32\icardres.dll
+ 2004-12-14 14:52:02 888,832 ----a-w c:\windows\system32\iconv.dll
- 2006-06-29 05:05:44 26,112 ------w c:\windows\system32\idndl.dll
+ 2009-01-07 15:20:36 26,112 ----a-w c:\windows\system32\idndl.dll
- 2008-10-16 13:09:53 70,656 ------w c:\windows\system32\ie4uinit.exe
+ 2008-12-19 09:08:41 70,656 ----a-w c:\windows\system32\ie4uinit.exe
- 2008-10-16 20:04:08 153,088 ------w c:\windows\system32\ieakeng.dll
+ 2008-12-20 22:30:53 153,088 ----a-w c:\windows\system32\ieakeng.dll
- 2008-10-16 20:04:08 230,400 ------w c:\windows\system32\ieaksie.dll
+ 2008-12-20 22:30:53 230,400 ----a-w c:\windows\system32\ieaksie.dll
- 2008-10-15 07:04:53 161,792 ------w c:\windows\system32\ieakui.dll
+ 2008-12-19 05:23:56 161,792 ----a-w c:\windows\system32\ieakui.dll
- 2008-10-16 20:04:08 383,488 ----a-w c:\windows\system32\ieapfltr.dll
+ 2008-12-20 22:30:54 383,488 ----a-w c:\windows\system32\ieapfltr.dll
- 2008-10-16 20:04:09 384,512 ------w c:\windows\system32\iedkcs32.dll
+ 2008-12-20 22:30:54 384,512 ----a-w c:\windows\system32\iedkcs32.dll
- 2008-10-16 20:04:12 6,066,176 ----a-w c:\windows\system32\ieframe.dll
+ 2008-12-20 22:30:58 6,066,688 ----a-w c:\windows\system32\ieframe.dll
- 2008-10-16 20:04:12 44,544 ------w c:\windows\system32\iernonce.dll
+ 2008-12-20 22:30:59 44,544 ----a-w c:\windows\system32\iernonce.dll
- 2008-10-16 20:04:12 267,776 ----a-w c:\windows\system32\iertutil.dll
+ 2008-12-20 22:30:59 267,776 ----a-w c:\windows\system32\iertutil.dll
- 2008-10-16 13:11:09 13,824 ----a-w c:\windows\system32\ieudinit.exe
+ 2009-03-08 01:32:52 36,864 ----a-w c:\windows\system32\ieudinit.exe
- 2008-04-15 12:00:00 691,712 ----a-w c:\windows\system32\inetcomm.dll
+ 2008-04-11 19:04:32 691,712 ----a-w c:\windows\system32\inetcomm.dll
+ 2008-07-29 16:24:50 97,800 ----a-w c:\windows\system32\infocardapi.dll
+ 2007-03-06 08:58:26 26,136 ----a-w c:\windows\system32\IVIresize.dll
+ 2007-03-06 08:58:30 206,360 ----a-w c:\windows\system32\IVIresizeA6.dll
+ 2007-03-06 08:58:32 198,168 ----a-w c:\windows\system32\IVIresizeM6.dll
+ 2007-03-06 08:58:34 198,168 ----a-w c:\windows\system32\IVIresizeP6.dll
+ 2007-03-06 08:58:36 194,072 ----a-w c:\windows\system32\IVIresizePX.dll
+ 2007-03-06 08:58:38 210,456 ----a-w c:\windows\system32\IVIresizeW7.dll
- 2008-04-15 12:00:00 512,000 ----a-w c:\windows\system32\jscript.dll
+ 2008-05-09 10:53:39 512,000 ----a-w c:\windows\system32\jscript.dll
- 2008-10-16 20:04:13 27,648 ------w c:\windows\system32\jsproxy.dll
+ 2008-12-20 22:31:01 27,648 ----a-w c:\windows\system32\jsproxy.dll
+ 2001-08-17 11:55:56 6,144 ----a-w c:\windows\system32\kbd101b.dll
+ 2001-08-17 11:55:56 6,144 ----a-w c:\windows\system32\kbd101c.dll
+ 2001-08-17 11:55:56 5,632 ----a-w c:\windows\system32\kbd103.dll
+ 2008-04-14 18:28:26 6,144 ----a-w c:\windows\system32\kbd106.dll
+ 2001-08-17 19:36:18 8,704 ----a-w c:\windows\system32\kbdjpn.dll
+ 2001-08-17 19:36:18 8,192 ----a-w c:\windows\system32\kbdkor.dll
+ 2008-11-11 17:00:04 218,376 ----a-w c:\windows\system32\klogon.dll
- 2008-03-20 15:06:36 1,480,232 ----a-w c:\windows\system32\LegitCheckControl.DLL
+ 2008-09-05 20:30:06 1,480,232 ----a-w c:\windows\system32\LegitCheckControl.dll
- 2006-10-18 17:03:58 100,864 ----a-w c:\windows\system32\logagent.exe
+ 2008-06-17 22:09:22 100,864 ----a-w c:\windows\system32\logagent.exe
+ 2009-03-15 12:46:44 196,608 ----a-w c:\windows\system32\maag.dll
+ 2009-02-03 02:07:18 240,544 ----a-r c:\windows\system32\Macromed\Flash\FlashUtil10b.exe
+ 2003-09-04 11:14:28 94,208 ----a-w c:\windows\system32\Macromed\Flash\GetFlash.exe
+ 2008-10-05 03:24:02 3,695,008 ----a-w c:\windows\system32\Macromed\Flash\NPSWF32.dll
+ 2008-10-05 03:24:04 235,936 ----a-w c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
- 2008-12-12 15:58:26 89,102 ----a-w c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
+ 2009-03-15 11:50:23 88,590 ----a-w c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
+ 2009-02-15 17:08:54 84,661 ----a-w c:\windows\system32\Macromed\Flash\uninstall_plugin.exe
+ 2002-01-05 03:48:16 974,848 ----a-w c:\windows\system32\mfc70.dll
+ 2002-01-05 01:36:38 964,608 ----a-w c:\windows\system32\mfc70u.dll
+ 2008-05-18 09:15:24 1,060,864 ----a-w c:\windows\system32\mfc71.dll
+ 2003-03-18 17:44:36 40,960 ----a-w c:\windows\system32\MFC71CHS.DLL
+ 2003-03-18 17:44:36 45,056 ----a-w c:\windows\system32\MFC71CHT.DLL
+ 2003-03-18 17:44:34 65,536 ----a-w c:\windows\system32\MFC71DEU.DLL
+ 2003-03-18 17:44:38 57,344 ----a-w c:\windows\system32\MFC71ENU.DLL
+ 2003-03-18 17:44:36 61,440 ----a-w c:\windows\system32\MFC71ESP.DLL
+ 2003-03-18 17:44:34 61,440 ----a-w c:\windows\system32\MFC71FRA.DLL
+ 2003-03-18 17:44:36 61,440 ----a-w c:\windows\system32\MFC71ITA.DLL
+ 2003-03-18 17:44:34 49,152 ----a-w c:\windows\system32\MFC71JPN.DLL
+ 2003-03-18 17:44:38 49,152 ----a-w c:\windows\system32\MFC71KOR.DLL
+ 2008-05-18 09:15:26 1,053,184 ----a-w c:\windows\system32\mfc71u.dll
+ 2007-06-19 13:26:44 667,648 ----a-w c:\windows\system32\mgxoschk.dll
+ 2001-05-11 10:18:14 420,240 ----a-w c:\windows\system32\mpg4c32.dll
- 2008-12-09 12:24:38 17,593,280 ----a-w c:\windows\system32\MRT.exe
+ 2009-04-06 04:57:26 24,921,544 ----a-w c:\windows\system32\MRT.exe
- 2008-04-15 12:00:00 73,728 ----a-w c:\windows\system32\mscms.dll
+ 2008-06-24 16:43:12 74,240 ----a-w c:\windows\system32\mscms.dll
+ 2008-07-25 08:16:58 282,112 ----a-w c:\windows\system32\mscoree.dll
+ 2008-07-25 08:16:58 158,720 ----a-w c:\windows\system32\mscorier.dll
+ 2008-07-25 08:16:58 83,968 ----a-w c:\windows\system32\mscories.dll
+ 2009-01-07 15:20:18 265,720 ----a-w c:\windows\system32\msdbg2.dll
- 2008-10-16 20:04:13 459,264 ----a-w c:\windows\system32\msfeeds.dll
+ 2008-12-20 22:31:01 459,264 ----a-w c:\windows\system32\msfeeds.dll
- 2008-10-16 20:04:13 52,224 ----a-w c:\windows\system32\msfeedsbs.dll
+ 2008-12-20 22:31:01 52,224 ----a-w c:\windows\system32\msfeedsbs.dll
- 2008-10-16 22:34:18 3,593,216 ----a-w c:\windows\system32\mshtml.dll
+ 2009-01-16 18:01:16 3,594,752 ----a-w c:\windows\system32\mshtml.dll
- 2008-10-16 20:04:16 477,696 ------w c:\windows\system32\mshtmled.dll
+ 2008-12-20 22:31:06 477,696 ----a-w c:\windows\system32\mshtmled.dll
- 2008-10-16 20:04:17 193,024 ------w c:\windows\system32\msrating.dll
+ 2008-12-20 22:31:06 193,024 ----a-w c:\windows\system32\msrating.dll
- 2006-10-18 18:47:16 414,208 ----a-w c:\windows\system32\msscp.dll
+ 2006-12-04 13:21:50 414,720 ----a-w c:\windows\system32\msscp.dll
- 2000-05-23 22:45:58 118,784 ----a-w c:\windows\system32\MSSTDFMT.DLL
+ 2000-04-03 17:05:58 118,784 ----a-w c:\windows\system32\msstdfmt.dll
- 2008-10-16 20:04:17 671,232 ------w c:\windows\system32\mstime.dll
+ 2008-12-20 22:31:07 671,232 ----a-w c:\windows\system32\mstime.dll
+ 2002-01-05 00:38:38 54,784 ----a-w c:\windows\system32\msvci70.dll
+ 2002-01-05 02:40:20 487,424 ----a-w c:\windows\system32\msvcp70.dll
- 2008-12-13 16:47:16 499,712 ----a-w c:\windows\system32\msvcp71.dll
+ 2004-10-11 03:29:54 499,712 ----a-w c:\windows\system32\msvcp71.dll
+ 2002-01-05 08:37:28 344,064 ----a-w c:\windows\system32\msvcr70.dll
- 2008-12-13 16:47:16 348,160 ----a-w c:\windows\system32\msvcr71.dll
+ 2004-04-20 20:01:56 348,160 ----a-w c:\windows\system32\msvcr71.dll
- 2008-04-15 12:00:00 245,248 ----a-w c:\windows\system32\mswsock.dll
+ 2008-06-20 17:47:47 245,248 ----a-w c:\windows\system32\mswsock.dll
- 2008-04-15 12:00:00 1,104,896 ----a-w c:\windows\system32\msxml3.dll
+ 2008-09-04 17:15:18 1,106,944 ----a-w c:\windows\system32\msxml3.dll
+ 2008-09-30 13:43:34 1,286,152 ------w c:\windows\system32\msxml4.dll
+ 2003-04-18 13:29:26 44,544 ----a-w c:\windows\system32\msxml4a.dll
+ 2003-04-18 13:29:26 82,432 ----a-w c:\windows\system32\msxml4r.dll
- 2008-04-15 12:00:00 1,306,624 ----a-w c:\windows\system32\msxml6.dll
+ 2008-09-10 01:14:30 1,307,648 ----a-w c:\windows\system32\msxml6.dll
+ 2008-09-10 14:42:28 14,848 ----a-w c:\windows\system32\mui\0401\mscorees.dll
+ 2003-02-20 15:43:36 4,096 ----a-w c:\windows\system32\mui\0409\mscoreer.dll
+ 2008-07-25 08:17:04 15,360 ----a-w c:\windows\system32\mui\0409\mscorees.dll
+ 2008-10-16 11:07:48 208,744 ----a-w c:\windows\system32\muweb.dll
+ 2006-03-31 12:57:40 430,080 ----a-w c:\windows\system32\MXRestore.exe
- 2008-04-15 12:00:00 337,408 ----a-w c:\windows\system32\netapi32.dll
+ 2008-10-15 16:35:25 337,408 ----a-w c:\windows\system32\netapi32.dll
+ 2007-10-23 22:47:40 41,984 ----a-w c:\windows\system32\netfxperf.dll
- 2006-06-28 14:59:26 24,576 ------w c:\windows\system32\nlsdl.dll
+ 2009-01-07 15:20:38 24,576 ----a-w c:\windows\system32\nlsdl.dll
+ 2009-02-09 04:37:48 91,136 ----a-w c:\windows\system32\nmwcdcls.dll
- 2006-06-29 05:05:44 23,552 ------w c:\windows\system32\normaliz.dll
+ 2009-01-07 15:20:36 23,552 ----a-w c:\windows\system32\normaliz.dll
- 2008-04-15 12:00:00 2,025,472 ----a-w c:\windows\system32\ntkrnlpa.exe
+ 2008-08-14 13:20:30 2,025,472 ----a-w c:\windows\system32\ntkrnlpa.exe
- 2008-04-15 12:00:00 2,146,816 ----a-w c:\windows\system32\ntoskrnl.exe
+ 2008-08-14 13:20:31 2,146,816 ----a-w c:\windows\system32\ntoskrnl.exe
- 2008-10-16 20:04:17 102,912 ------w c:\windows\system32\occache.dll
+ 2008-12-20 22:31:08 102,912 ----a-w c:\windows\system32\occache.dll
+ 2008-12-31 14:04:40 502,120 ----a-w c:\windows\system32\OGAAddin.dll
+ 2009-02-21 05:25:20 691,592 ----a-w c:\windows\system32\OGACheckControl.DLL
+ 2008-12-31 14:04:42 528,744 ----a-w c:\windows\system32\OGAVerify.exe
- 2008-12-21 15:06:04 40,940 ----a-w c:\windows\system32\perfc001.dat
+ 2009-04-12 11:19:45 71,950 ----a-w c:\windows\system32\perfc001.dat
- 2008-12-21 15:06:04 40,836 ----a-w c:\windows\system32\perfc009.dat
+ 2009-04-12 11:19:45 71,846 ----a-w c:\windows\system32\perfc009.dat
- 2008-12-21 15:06:04 254,130 ----a-w c:\windows\system32\perfh001.dat
+ 2009-04-12 11:19:45 377,462 ----a-w c:\windows\system32\perfh001.dat
- 2008-12-21 15:06:04 314,508 ----a-w c:\windows\system32\perfh009.dat
+ 2009-04-12 11:19:45 443,588 ----a-w c:\windows\system32\perfh009.dat
+ 2004-12-14 14:52:10 1,343,488 ----a-w c:\windows\system32\php4ts.dll
- 2008-12-13 16:47:16 278,528 ----a-w c:\windows\system32\pncrt.dll
+ 2009-06-21 08:07:59 278,528 ----a-w c:\windows\system32\pncrt.dll
- 2008-12-13 16:47:16 6,656 ----a-w c:\windows\system32\pndx5016.dll
+ 2009-06-21 08:08:00 6,656 ----a-w c:\windows\system32\pndx5016.dll
- 2008-12-13 16:47:16 5,632 ----a-w c:\windows\system32\pndx5032.dll
+ 2009-06-21 08:08:00 5,632 ----a-w c:\windows\system32\pndx5032.dll
- 2008-10-16 20:04:17 44,544 ------w c:\windows\system32\pngfilt.dll
+ 2008-12-20 22:31:08 44,544 ----a-w c:\windows\system32\pngfilt.dll
+ 2008-07-29 16:59:58 105,016 ----a-w c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
+ 2008-07-29 17:35:46 326,160 ----a-w c:\windows\system32\PresentationHost.exe
+ 2008-07-29 16:59:58 43,544 ----a-w c:\windows\system32\PresentationHostProxy.dll
+ 2008-07-29 16:59:58 781,344 ----a-w c:\windows\system32\PresentationNative_v0300.dll
+ 2008-07-06 12:06:10 117,760 ----a-w c:\windows\system32\prntvpt.dll
+ 2004-10-26 22:38:24 1,335,296 ----a-w c:\windows\system32\PSIKey.dll
+ 2006-03-18 22:49:12 86,070 ----a-w c:\windows\system32\pthreadVC2.dll
+ 2001-09-18 11:04:58 5,632 ----a-w c:\windows\system32\ptpusb.dll
+ 2008-04-14 18:29:42 159,232 ----a-w c:\windows\system32\ptpusd.dll
+ 2009-01-27 01:35:40 551,672 ------w c:\windows\system32\px.dll
+ 2009-01-27 01:35:40 129,784 ------w c:\windows\system32\pxafs.dll
+ 2009-01-27 01:35:40 66,296 ------w c:\windows\system32\pxcpya64.exe
+ 2009-01-27 01:35:40 120,056 ------w c:\windows\system32\pxcpyi64.exe
+ 2009-01-27 01:35:40 518,904 ------w c:\windows\system32\pxdrv.dll
+ 2009-01-27 01:35:40 72,440 ------w c:\windows\system32\pxhpinst.exe
+ 2009-01-27 01:35:40 64,760 ------w c:\windows\system32\pxinsa64.exe
+ 2009-01-27 01:35:40 118,520 ------w c:\windows\system32\pxinsi64.exe
+ 2009-01-27 01:35:40 187,128 ------w c:\windows\system32\pxmas.dll
+ 2009-01-27 01:35:40 1,628,920 ------w c:\windows\system32\pxsfs.dll
+ 2009-01-27 01:35:40 379,640 ------w c:\windows\system32\pxwave.dll
- 2008-04-15 12:00:00 1,286,144 ----a-w c:\windows\system32\quartz.dll
+ 2008-05-07 05:10:16 1,286,144 ----a-w c:\windows\system32\quartz.dll
+ 2006-08-24 13:15:06 150,808 ----a-w c:\windows\system32\rgb9rast_2.dll
+ 2003-05-21 22:50:42 73,793 ----a-w c:\windows\system32\RMBin\codecs\atrc.dll
+ 2004-04-05 20:04:30 548,919 ----a-w c:\windows\system32\RMBin\codecs\colorcvt.dll
+ 2004-04-05 20:05:10 65,602 ----a-w c:\windows\system32\RMBin\codecs\cook.dll
+ 2004-07-02 13:33:30 102,464 ----a-w c:\windows\system32\RMBin\codecs\drv1.dll
+ 2004-07-02 13:33:30 176,195 ----a-w c:\windows\system32\RMBin\codecs\drv2.dll
+ 2004-07-02 13:33:30 327,749 ----a-w c:\windows\system32\RMBin\codecs\drvc.dll
+ 2005-01-19 13:45:56 376,899 ----a-w c:\windows\system32\RMBin\codecs\erv2.dll
+ 2004-04-05 20:07:04 266,306 ----a-w c:\windows\system32\RMBin\codecs\erv3.dll
+ 2004-04-05 20:08:06 479,298 ----a-w c:\windows\system32\RMBin\codecs\erv4.dll
+ 2004-04-05 20:05:38 548,940 ----a-w c:\windows\system32\RMBin\codecs\raac.dll
+ 2004-04-05 20:05:34 155,702 ----a-w c:\windows\system32\RMBin\codecs\ralf.dll
+ 2004-04-05 20:05:20 102,465 ----a-w c:\windows\system32\RMBin\codecs\sipr.dll
+ 2002-12-06 10:02:58 49,152 ----a-w c:\windows\system32\RMBin\plugins\auth3260.dll
+ 2002-12-06 10:02:58 40,960 ----a-w c:\windows\system32\RMBin\plugins\basc3260.dll
+ 2004-04-05 20:06:28 262,204 ----a-w c:\windows\system32\RMBin\plugins\rmwrtr.dll
+ 2002-12-06 10:02:58 45,056 ----a-w c:\windows\system32\RMBin\plugins\rn5a3260.dll
+ 2002-12-06 10:02:58 61,440 ----a-w c:\windows\system32\RMBin\plugins\sdpp3260.dll
+ 2004-04-05 20:08:10 61,493 ----a-w c:\windows\system32\RMBin\plugins\smplfsys.dll
+ 2002-12-06 10:02:58 272,896 ----a-w c:\windows\system32\RMBin\pncrt.dll
+ 2004-04-05 20:01:02 53,341 ----a-w c:\windows\system32\RMBin\tools\audiofmtconverter.dll
+ 2004-04-05 20:01:08 49,235 ----a-w c:\windows\system32\RMBin\tools\audiolimiter.dll
+ 2004-04-05 20:04:14 65,634 ----a-w c:\windows\system32\RMBin\tools\audiolosslesscodec.dll
+ 2004-04-05 20:01:16 53,327 ----a-w c:\windows\system32\RMBin\tools\audiometer.dll
+ 2004-04-05 20:01:22 327,767 ----a-w c:\windows\system32\RMBin\tools\audioresampler.dll
+ 2004-04-05 19:59:18 856,132 ----a-w c:\windows\system32\RMBin\tools\encsession.dll
+ 2002-12-06 10:02:58 36,864 ----a-w c:\windows\system32\RMBin\tools\enlv3260.dll
+ 2004-04-05 20:01:28 53,325 ----a-w c:\windows\system32\RMBin\tools\eventpack.dll
+ 2004-04-05 19:59:38 53,321 ----a-w c:\windows\system32\RMBin\tools\mediasink.dll
+ 2004-04-05 20:01:42 57,443 ----a-w c:\windows\system32\RMBin\tools\mpeg4audiopacketizer.dll
+ 2004-02-24 06:19:38 548,864 ----a-w c:\windows\system32\RMBin\tools\rmme3260.dll
+ 2004-04-05 20:02:18 86,110 ----a-w c:\windows\system32\RMBin\tools\rmsessionformat.dll
+ 2004-02-24 06:19:38 356,352 ----a-w c:\windows\system32\RMBin\tools\rmto3260.dll
+ 2004-04-05 20:00:30 241,736 ----a-w c:\windows\system32\RMBin\tools\rmwriter.dll
+ 2004-04-05 20:03:42 69,718 ----a-w c:\windows\system32\RMBin\tools\rnaudiocodec.dll
+ 2004-04-05 20:03:48 77,920 ----a-w c:\windows\system32\RMBin\tools\rnaudiopacketizer.dll
+ 2004-04-05 20:04:00 106,582 ----a-w c:\windows\system32\RMBin\tools\rnvideocodec.dll
+ 2004-04-05 20:01:46 49,249 ----a-w c:\windows\system32\RMBin\tools\videocolorconverter.dll
+ 2004-04-05 20:01:54 45,139 ----a-w c:\windows\system32\RMBin\tools\videolumaadj.dll
- 2008-12-13 16:47:19 185,920 ----a-w c:\windows\system32\rmoc3260.dll
+ 2009-06-21 08:08:03 185,920 ----a-w c:\windows\system32\rmoc3260.dll
- 2008-04-15 12:00:00 144,384 ----a-w c:\windows\system32\schannel.dll
+ 2008-12-05 06:56:00 144,896 ----a-w c:\windows\system32\schannel.dll
- 2008-04-15 12:00:00 180,224 ----a-w c:\windows\system32\scrobj.dll
+ 2008-05-09 10:53:39 180,224 ----a-w c:\windows\system32\scrobj.dll
- 2008-04-15 12:00:00 172,032 ----a-w c:\windows\system32\scrrun.dll
+ 2008-05-09 10:53:40 172,032 ----a-w c:\windows\system32\scrrun.dll
- 2008-04-15 12:00:00 8,446,976 ----a-w c:\windows\system32\shell32.dll
+ 2008-06-17 19:01:29 8,446,976 ----a-w c:\windows\system32\shell32.dll
- 2007-10-18 08:31:46 51,224 ----a-w c:\windows\system32\sirenacm.dll
+ 2009-02-06 15:52:40 49,504 ----a-w c:\windows\system32\sirenacm.dll
- 2006-09-25 14:58:48 14,640 ------w c:\windows\system32\spmsg.dll
+ 2009-01-07 15:20:20 17,440 ------w c:\windows\system32\spmsg.dll
+ 2006-06-29 10:07:36 14,048 ------w c:\windows\system32\spmsg2.dll
+ 2008-03-21 10:57:18 14,640 ------w c:\windows\system32\spmsgXP_2k3.dll
+ 2008-07-06 12:06:10 765,440 ----a-w c:\windows\system32\spool\drivers\w32x86\3\mxdwdrv.dll
+ 2008-07-06 12:06:10 198,656 ----a-w c:\windows\system32\spool\drivers\w32x86\3\mxdwdui.dll
+ 2008-07-06 12:06:10 373,248 ----a-w c:\windows\system32\spool\drivers\w32x86\3\unidrv.dll
+ 2008-07-06 12:06:10 744,960 ----a-w c:\windows\system32\spool\drivers\w32x86\3\unidrvui.dll
+ 2008-03-13 04:52:36 761,344 ----a-w c:\windows\system32\spool\drivers\w32x86\3\unires.dll
+ 2008-07-06 12:06:10 1,676,288 ----a-w c:\windows\system32\spool\drivers\w32x86\3\XpsSvcs.dll
+ 2004-04-07 23:17:18 153,501 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpof5510.dat
+ 2004-04-12 22:10:12 36,864 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpofax08.dll
+ 2004-04-07 23:16:44 153,383 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpop5510.dat
+ 2004-03-14 00:43:28 196,608 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpz2ku10.dll
+ 2004-03-23 21:04:48 286,720 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzcfg10.exe
+ 2004-04-07 04:34:26 196,608 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzcoi10.dll
+ 2004-04-07 04:33:20 344,064 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzcon10.dll
+ 2004-03-23 21:04:54 647,168 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzeng10.exe
+ 2004-03-23 21:04:58 69,632 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzflt10.dll
+ 2004-03-23 21:05:00 1,589,248 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzimc10.dll
+ 2004-03-23 21:05:04 352,256 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzime10.dll
+ 2004-03-23 21:05:08 1,671,168 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzims10.dll
+ 2004-03-23 21:05:14 200,704 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzjui10.dll
+ 2004-03-14 00:43:30 135,249 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzlnt10.dll
+ 2004-03-23 21:05:18 143,360 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzpcl10.dll
+ 2004-03-14 00:43:30 487,424 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzpm310.dll
+ 2004-03-23 21:05:22 331,776 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzpre10.exe
+ 2004-03-14 00:44:34 3,182,592 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzr3210.dll
+ 2004-03-23 21:05:26 368,640 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzres10.dll
+ 2004-03-14 00:44:36 1,695,744 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzrm310.dll
+ 2004-03-23 21:05:28 679,936 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzslk10.dll
+ 2004-03-14 00:43:30 180,315 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzsnt10.dll
+ 2004-03-23 21:05:32 385,024 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzstc10.exe
+ 2004-03-23 21:05:36 163,840 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzstw10.exe
+ 2004-03-23 21:05:38 61,440 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpztbi10.dll
+ 2004-03-23 21:05:42 172,032 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpztbu10.exe
+ 2004-04-09 09:51:56 7,331,840 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpztbx10.exe
+ 2004-03-23 21:05:52 155,708 ----a-w c:\windows\system32\spool\drivers\w32x86\hpofficejet_5500_ser7a11\hpzvip10.dll
+ 2007-03-19 02:00:00 27,136 ----a-w c:\windows\system32\spool\prtprocs\w32x86\CNMPD8R.DLL
+ 2007-03-19 02:00:00 69,632 ----a-w c:\windows\system32\spool\prtprocs\w32x86\CNMPP8R.DLL
+ 2008-07-06 12:06:10 89,088 ----a-w c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
+ 2008-07-06 10:50:03 597,504 ----a-w c:\windows\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
+ 2008-07-06 12:06:10 147,456 ----a-w c:\windows\system32\spool\prtprocs\x64\filterpipelineprintproc.dll
+ 2008-07-06 12:06:10 748,032 ----a-w c:\windows\system32\spool\XPSEP\amd64\amd64\mxdwdrv.dll
+ 2008-07-06 14:36:12 2,936,832 ----a-w c:\windows\system32\spool\XPSEP\amd64\amd64\xpssvcs.dll
+ 2008-07-06 12:06:10 748,032 ----a-w c:\windows\system32\spool\XPSEP\amd64\mxdwdrv.dll
+ 2008-07-06 14:36:12 2,936,832 ----a-w c:\windows\system32\spool\XPSEP\amd64\xpssvcs.dll
+ 2008-07-06 12:06:10 765,440 ----a-w c:\windows\system32\spool\XPSEP\i386\i386\mxdwdrv.dll
+ 2008-07-06 12:06:10 1,676,288 ----a-w c:\windows\system32\spool\XPSEP\i386\i386\xpssvcs.dll
+ 2008-07-06 12:06:10 765,440 ----a-w c:\windows\system32\spool\XPSEP\i386\mxdwdrv.dll
+ 2008-07-06 12:06:10 1,676,288 ----a-w c:\windows\system32\spool\XPSEP\i386\xpssvcs.dll
- 2006-09-25 14:58:48 23,856 ----a-w c:\windows\system32\spupdsvc.exe
+ 2009-01-07 15:20:20 26,144 ----a-w c:\windows\system32\spupdsvc.exe
+ 2009-02-08 11:32:53 434,688 ----a-w c:\windows\system32\ss2uinst.exe
+ 2006-10-02 15:24:00 32,768 ----a-w c:\windows\system32\STRING32.dll
- 2008-04-15 12:00:00 246,814 ----a-w c:\windows\system32\strmdll.dll
+ 2008-10-03 10:03:03 247,326 ----a-w c:\windows\system32\strmdll.dll
+ 2007-10-09 09:58:20 16,896 ----a-w c:\windows\system32\tswpfwrp.exe
+ 2003-03-14 08:32:54 24,576 ----a-w c:\windows\system32\TTI32.dll
+ 2003-03-14 08:32:54 24,576 ----a-w c:\windows\system32\TTIC32.dll
+ 2007-11-01 01:45:32 77,312 ----a-w c:\windows\system32\TWAIN_32.DLL
+ 2007-11-01 01:45:32 48,560 ----a-w c:\windows\system32\TWUNK_16.EXE
+ 2007-11-01 01:45:32 69,632 ----a-w c:\windows\system32\TWUNK_32.EXE
- 2008-04-15 12:00:00 60,416 ----a-w c:\windows\system32\tzchange.exe
+ 2008-10-23 10:06:59 62,976 ----a-w c:\windows\system32\tzchange.exe
+ 2007-10-09 10:03:08 161,304 ----a-w c:\windows\system32\UIAutomationCore.dll
- 2008-10-16 20:04:17 105,984 ----a-w c:\windows\system32\url.dll
+ 2008-12-20 22:31:08 105,984 ----a-w c:\windows\system32\url.dll
- 2008-10-16 20:04:18 1,160,192 ----a-w c:\windows\system32\urlmon.dll
+ 2008-12-20 22:31:09 1,160,192 ----a-w c:\windows\system32\urlmon.dll
+ 2003-02-21 02:16:08 49,152 ----a-w c:\windows\system32\URTTEMP\regtlib.exe
+ 1999-03-25 21:00:00 101,888 ----a-w c:\windows\system32\VB6STKIT.DLL
+ 1996-12-13 21:00:00 78,848 ----a-w c:\windows\system32\VBA332ME.DLL
- 2008-04-15 12:00:00 434,176 ----a-w c:\windows\system32\vbscript.dll
+ 2008-05-09 10:53:40 430,080 ----a-w c:\windows\system32\vbscript.dll
+ 1999-01-12 12:19:12 173,056 ----a-w c:\windows\system32\VTEXT.DLL
+ 2009-01-27 01:35:40 88,824 ------w c:\windows\system32\vxblock.dll
- 2008-10-16 20:04:18 233,472 ----a-w c:\windows\system32\webcheck.dll
+ 2008-12-20 22:31:09 233,472 ----a-w c:\windows\system32\webcheck.dll
+ 2008-09-05 20:30:46 266,792 ----a-w c:\windows\system32\WgaLogon.dll
- 2008-04-15 12:00:00 1,845,504 ----a-w c:\windows\system32\win32k.sys
+ 2009-02-09 14:04:04 1,846,656 ----a-w c:\windows\system32\win32k.sys
+ 2002-11-05 23:45:32 327,680 ----a-w c:\windows\system32\windows media\server\wmsservertypelib.dll
- 2008-10-16 20:04:19 826,368 ----a-w c:\windows\system32\wininet.dll
+ 2008-12-20 22:31:10 826,368 ----a-w c:\windows\system32\wininet.dll
- 2006-10-18 18:47:18 222,208 ----a-w c:\windows\system32\WMASF.dll
+ 2007-10-25 06:28:30 222,720 ----a-w c:\windows\system32\wmasf.dll
+ 1999-08-09 11:40:56 163,600 ----a-w c:\windows\system32\wmaudsdk.dll
- 2006-10-18 18:47:20 937,984 ----a-w c:\windows\system32\WMNetMgr.dll
+ 2008-06-18 02:03:08 938,496 ----a-w c:\windows\system32\WMNetmgr.dll
- 2006-10-18 18:47:20 10,834,432 ----a-w c:\windows\system32\wmp.dll
+ 2008-11-11 15:34:42 10,838,016 ----a-w c:\windows\system32\wmp.dll
- 2006-10-18 18:47:20 295,936 ------w c:\windows\system32\wmpeffects.dll
+ 2008-06-24 15:12:58 295,936 ------w c:\windows\system32\wmpeffects.dll
+ 2002-11-05 23:10:14 167,936 ----a-w c:\windows\system32\wmserror.dll
+ 2001-05-16 14:54:44 309,616 ----a-w c:\windows\system32\wmv8dmod.dll
- 2006-10-18 18:47:22 2,450,944 ----a-w c:\windows\system32\wmvcore.dll
+ 2008-06-18 02:03:14 2,458,112 ----a-w c:\windows\system32\WMVCore.dll
- 2008-04-15 12:00:00 155,648 ----a-w c:\windows\system32\wscript.exe
+ 2008-05-08 11:24:44 155,648 ----a-w c:\windows\system32\wscript.exe
- 2008-04-15 12:00:00 90,112 ----a-w c:\windows\system32\wshext.dll
+ 2008-05-09 10:53:40 90,112 ----a-w c:\windows\system32\wshext.dll
- 2006-09-28 17:13:26 95,344 ------w c:\windows\system32\WUDFCoinstaller.dll
+ 2006-09-15 20:30:16 87,040 ------w c:\windows\system32\WUDFCoinstaller.dll
- 2006-09-28 15:56:38 146,432 ------w c:\windows\system32\WudfHost.exe
+ 2006-09-15 20:30:06 142,848 ------w c:\windows\system32\WudfHost.exe
- 2006-09-28 15:56:16 165,376 ------w c:\windows\system32\WudfPlatform.dll
+ 2006-09-15 19:29:54 163,840 ------w c:\windows\system32\WudfPlatform.dll
- 2006-09-28 15:56:14 55,808 ------w c:\windows\system32\WudfSvc.dll
+ 2006-09-15 20:30:16 55,296 ------w c:\windows\system32\WudfSvc.dll
+ 2008-10-29 09:24:36 831,048 ----a-w c:\windows\system32\WudfUpdate_01005.dll
- 2006-09-28 15:56:38 316,416 ------w c:\windows\system32\WUDFx.dll
+ 2006-09-15 20:30:16 308,224 ------w c:\windows\system32\WUDFx.dll
- 2008-11-25 08:45:52 2,283,027 ----a-w c:\windows\system32\x264vfw.dll
+ 2008-07-16 18:51:00 2,041,363 ----a-w c:\windows\system32\x264vfw.dll
- 2008-04-15 12:00:00 121,856 ----a-w c:\windows\system32\xmllite.dll
+ 2009-01-07 15:21:04 121,856 ----a-w c:\windows\system32\xmllite.dll
+ 2008-07-06 12:06:10 575,488 ----a-w c:\windows\system32\xpsshhdr.dll
+ 2008-07-06 12:06:10 1,676,288 ----a-w c:\windows\system32\xpssvcs.dll
+ 2008-07-29 18:26:06 301,568 ----a-w c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2003-03-15 20:15:04 90,112 ----a-w c:\windows\unvise32.exe
+ 2009-03-14 12:02:40 8,192 ----a-w c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2009-04-18 21:18:26 1,230,336 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.1.0.0_x-ww_b319d8da\msxml4.dll
+ 2008-09-30 13:42:08 1,286,152 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9870.0_x-ww_a32d74cf\msxml4.dll
+ 2009-02-01 14:54:24 82,432 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a\msxml4r.dll
+ 2008-09-30 13:45:12 91,656 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.1.0_x-ww_2a41bceb\msxml4r.dll
+ 2005-09-22 20:49:12 95,744 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_6e805841\ATL80.dll
+ 2006-12-01 19:56:00 96,256 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.dll
+ 2008-07-25 08:17:20 479,232 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcm80.dll
+ 2008-07-25 08:17:20 558,080 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcp80.dll
+ 2008-07-25 08:17:20 635,904 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcr80.dll
+ 2005-09-22 19:48:08 479,232 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcm80.dll
+ 2005-09-22 19:48:08 548,864 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcp80.dll
+ 2005-09-22 19:48:06 626,688 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcr80.dll
+ 2005-09-22 20:48:08 1,015,808 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugCRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_f75eb16c\msvcm80d.dll
+ 2005-09-22 20:48:08 1,028,096 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugCRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_f75eb16c\msvcp80d.dll
+ 2005-09-22 20:48:08 1,171,456 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugCRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_f75eb16c\msvcr80d.dll
+ 2005-09-22 22:16:02 2,375,680 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugMFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_c8452471\mfc80d.dll
+ 2005-09-22 22:16:06 2,379,264 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugMFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_c8452471\mfc80ud.dll
+ 2005-09-22 22:16:10 114,688 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugMFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_c8452471\mfcm80d.dll
+ 2005-09-22 22:16:12 102,400 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugMFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_c8452471\mfcm80ud.dll
+ 2005-09-22 22:35:10 102,400 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.DebugOpenMP_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_66b81908\vcompd.dll
+ 2005-09-22 22:16:02 1,093,632 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfc80.dll
+ 2005-09-22 22:16:06 1,079,808 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfc80u.dll
+ 2005-09-22 22:16:08 69,632 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfcm80.dll
+ 2005-09-22 22:16:10 57,344 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfcm80u.dll
+ 2005-09-22 21:58:06 40,960 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80CHS.dll
+ 2005-09-22 21:58:06 45,056 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80CHT.dll
+ 2005-09-22 21:58:06 65,536 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80DEU.dll
+ 2005-09-22 21:58:06 57,344 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80ENU.dll
+ 2005-09-22 21:58:06 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80ESP.dll
+ 2005-09-22 21:58:06 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80FRA.dll
+ 2005-09-22 21:58:06 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80ITA.dll
+ 2005-09-22 21:58:06 49,152 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80JPN.dll
+ 2005-09-22 21:58:06 49,152 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80KOR.dll
+ 2005-09-22 22:35:10 65,536 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0ee63867\vcomp.dll
+ 2006-12-01 21:46:44 65,536 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6c18549a\vcomp.dll
+ 2007-11-06 17:23:58 224,768 ----a-w c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcm90.dll
+ 2007-11-06 22:19:34 568,832 ----a-w c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcp90.dll
+ 2007-11-06 22:19:34 655,872 ----a-w c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcr90.dll
+ 2008-04-15 17:47:48 1,724,416 ----a-w c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5581_x-ww_dfbc4fc4\GdiPlus.dll
+ 2009-03-14 12:02:44 258,048 ----a-w c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2009-03-14 12:02:44 113,664 ----a-w c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A5479DA1-7843-43A7-B5C0-BE342C77B629}]
07/14/2008 01:36 AM 90888 --a------ c:\progra~1\LEAPFT~1.0\lftpie.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [04/15/2008 03:00 PM 15360]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [02/06/2009 06:53 PM 3885408]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [04/09/2009 01:23 AM 2794928]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [06/02/2009 04:09 PM 68856]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [03/20/2009 02:32 PM 1312256]
"Google Update"="c:\documents and settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [05/28/2009 11:45 AM 133104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [12/04/2007 08:41 PM 8523776]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [12/04/2007 08:41 PM 81920]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [03/20/2007 09:36 AM 36864]
"36X Raid Configurer"="c:\windows\system32\xRaidSetup.exe" [08/29/2007 11:55 AM 1966080]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [10/15/2008 01:04 AM 39792]
"UVS11 Preload"="c:\program files\Ulead Systems\Ulead VideoStudio 11\uvPL.exe" [03/03/2007 02:12 PM 341488]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [10/25/2006 09:03 AM 210472]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [02/04/2007 12:02 PM 79400]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [05/26/2009 05:18 PM 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [05/30/2009 12:30 PM 292136]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [06/21/2009 11:07 AM 198160]
"nwiz"="nwiz.exe" [12/04/2007 08:41 PM 1626112 c:\windows\system32\nwiz.exe]
"RTHDCPL"="RTHDCPL.EXE" [02/13/2008 09:31 AM 16857600 c:\windows\RTHDCPL.exe]
"BluetoothAuthenticationAgent"="bthprops.cpl" [04/15/2008 03:00 PM 110592 c:\windows\system32\bthprops.cpl]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [04/15/2008 03:00 PM 15360]
c:\documents and settings\All Users\çں‍ê، ں §ڑ\ںé ©ںê¤\ §ک ں颬نïé\
Adobe Gamma Loader.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2009-03-15 113664]
XFCE Menu (andLinux).lnk - c:\program files\andLinux\Launcher\menu.exe [2009-01-20 66560]
Xming (andLinux).lnk - c:\program files\andLinux\Xming\Xming.exe [2009-01-20 2106368]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\KASPER~1\KASPER~1\mzvkbd.dll,c:\progra~1\KASPER~1\KASPER~1\mzvkbd3.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3fhg"= mp3fhg.acm
"msacm.divxa32"= divxa32.acm
"VIDC.X264"= x264vfw.dll
"VIDC.HFYU"= huffyuv.dll
"vidc.i263"= i263_32.drv
"msacm.dvacm"= c:\progra~1\COMMON~1\ULEADS~1\Vio\Dvacm.acm
"msacm.MPEGacm"= c:\progra~1\COMMON~1\ULEADS~1\MPEG\MPEGacm.acm
"msacm.ulmp3acm"= c:\progra~1\COMMON~1\ULEADS~1\MPEG\ulmp3acm.acm
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^قائمة ابدأ^البرامج^بدء التشغيل^PalTalk.lnk]
path=c:\documents and settings\All Users\قائمة ابدأ\البرامج\بدء التشغيل\PalTalk.lnk
backup=c:\windows\pss\PalTalk.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^قائمة ابدأ^البرامج^بدء التشغيل^Server4PC.lnk]
path=c:\documents and settings\All Users\قائمة ابدأ\البرامج\بدء التشغيل\Server4PC.lnk
backup=c:\windows\pss\Server4PC.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 10/15/2008 01:04 AM 39792 c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
--a----t- 05/28/2009 11:45 AM 133104 c:\documents and settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDMan]
--a------ 04/09/2009 01:23 AM 2794928 c:\program files\Internet Download Manager\IDMan.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--------- 04/14/2008 09:30 PM 1695232 c:\program files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
--a------ 02/06/2009 06:53 PM 3885408 c:\program files\Windows Live\Messenger\msnmsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
--a------ 03/20/2009 02:32 PM 1312256 c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
--a------ 06/02/2009 04:09 PM 68856 c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 06/21/2009 11:07 AM 198160 c:\program files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

--a------ 04/22/2007 11:02 AM 1896448 c:\program files\
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\www.cproxy.com\\CPROXY.exe"=
"c:\\ProgDVB\\Gbox-By Pikiche\\webinterface\\bin\\apache\\mapache.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Paltalk Messenger\\paltalk.exe"=
"c:\\Program Files\\FTP\\LeapFTP1.exe"=
"c:\\Program Files\\andLinux\\Xming\\Xming.exe"=
"d:\\For Me\\ProgDVB\\ProgDVB.exe"=
"c:\\Program Files\\DVBViewerTE\\ts_winlirc.exe"=
"c:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Program Files\\Common Files\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Program Files\\Internet Explorer\\iexplore.exe"=
"c:\\Program Files\\andLinux\\pulseaudio\\pulseaudio.exe"=
"c:\\Program Files\\andLinux\\colinux-console-fltk.exe"=
"c:\\Program Files\\andLinux\\colinux-console-nt.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\ProgDVB\\Gbox-By Pikiche\\gboxx86.exe"=
"c:\\Program Files\\LeapFTP 3.0\\LeapFTP.exe"=
"c:\\Documents and Settings\\salee7\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.dll"=
"c:\\Documents and Settings\\salee7\\Local Settings\\Application Data\\Google\\Google Talk Plugin\\googletalkplugin.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:*:Disabled:@xpsp2res.dll,-22009
"4444:TCP"= 4444:TCP:*:Disabled:GBOX
"4444:UDP"= 4444:UDP:*:Disabled:GBOX
"81:TCP"= 81:TCP:no
"81:UDP"= 81:UDP:no
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-01-29 33808]
R0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys [2009-04-10 28544]
R2 andLinux;andLinux;"c:\program files\andLinux\colinux-daemon.exe" --run-service andLinux @c:\progra~1\andLinux\settings.txt [2009-01-20 81408]
R2 CoLinuxDriver;CoLinuxDriver;\??\c:\program files\andLinux\linux.sys [2009-01-20 68096]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\DRIVERS\klim5.sys [2008-04-30 24592]
R3 SKYNET;TechniSat DVB-PC TV Star PCI;c:\windows\system32\DRIVERS\SkyNET.SYS [2008-12-12 510992]
R3 tap0801co;TAP-Win32 Adapter V8 (coLinux);c:\windows\system32\DRIVERS\tap0801co.sys [2009-01-19 25856]
S0 qceawy;qceawy;c:\windows\system32\drivers\jkmtd.sys []
S1 Cinemsup;Cinemsup;\??\c:\windows\system32\drivers\cinemsup.sys []
S3 AVPsys;AVPsys;\??\c:\windows\system32\drivers\cdaudio.sys [2001-08-17 18688]
S3 GEST Service;GEST Service for program management.;"c:\program files\GIGABYTE\GEST\GSvr.exe" [2008-12-12 47624]
S3 getPlus(R) Helper;getPlus(R) Helper;c:\program files\NOS\bin\getPlus_HelperSvc.exe [2009-02-03 33752]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7e114ce6-10cf-11de-a22c-00158316bf61}]
\Shell\AUToplaY\coMMANd - J:\ufak.pif
\Shell\AutoRun\command - J:\ufak.pif
\Shell\explOrE\Command - J:\ufak.pif
\Shell\opEn\comMaND - J:\ufak.pif
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7e114ce7-10cf-11de-a22c-00158316bf61}]
\shELl\AUtoplaY\CoMMand - K:\curef.cmd
\shELl\AutoRun\command - K:\curef.cmd
\shELl\ExplorE\COMmand - K:\curef.cmd
\shELl\OpEn\commanD - K:\curef.cmd
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8aece24a-ff42-11dd-a21f-00158316bf61}]
\Shell\AutoRun\command - J:\iqe68o.bat
\Shell\explore\Command - J:\iqe68o.bat
\Shell\open\Command - J:\iqe68o.bat
.
Contents of the 'Scheduled Tasks' folder
2009-06-22 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [07/30/2008 12:34 PM]
2009-06-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-220523388-1757981266-1801674531-1003.job
- c:\documents and settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [05/28/2009 11:45 AM]
2009-06-22 c:\windows\Tasks\OGADaily.job
- c:\windows\system32\OGAVerify.exe [12/31/2008 05:04 PM]
2009-06-22 c:\windows\Tasks\OGALogon.job
- c:\windows\system32\OGAVerify.exe [12/31/2008 05:04 PM]
2009-06-22 c:\windows\Tasks\User_Feed_Synchronization-{BC7CE6B0-4D36-48B6-A989-04E419B2C6ED}.job
- c:\windows\system32\msfeedssync.exe [08/13/2007 06:36 PM]
2009-03-12 c:\windows\Tasks\كانسة الألغام.job
- c:\windows\system32\winmine.exe [04/15/2008 03:00 PM]
.
- - - - ORPHANS REMOVED - - - -
Toolbar-Locked - (no file)
SafeBoot-PEVSystemStart
MSConfigStartUp-DLD - c:\program files\Download Direct\DLD.exe
MSConfigStartUp-find trust seek mail - c:\documents and settings\All Users\Application Data\Defy Memo Find Trust\The Spam.exe
MSConfigStartUp-SIAPRO7 - c:\program files\Steganos Internet Anonym Pro 7\SIAPRO7.exe
MSConfigStartUp-TEAM GREY - c:\docume~1\salee7\APPLIC~1\INSIDE~1\BiasGlobal.exe

.
------- Supplementary Scan -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uStart Page = hxxp://www.google.com.sa/
uInternet Settings,ProxyOverride = <local>
IE: &Search
IE: تحميل الكل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetAll.htm
IE: تحميل بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEExt.htm
IE: تحميل محتوى FLV بواسطة Internet Download Manager - c:\program files\Internet Download Manager\IEGetVL.htm
LSP: c:\windows\system32\idmmbc.dll
O16 -: Microsoft XML Parser for Java -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

c:\windows\Downloaded Program Files\Microsoft XML Parser for Java.osd
c:\windows\Downloaded Program Files\ReadUid.ocx - O16 -: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA}
hxxp://209.11.247.218/ReadUid.CAB
c:\windows\Downloaded Program Files\ReadUid.INF
c:\windows\Downloaded Program Files\abdullah.ocx - O16 -: {DD18AE59-EA36-461E-ADD2-5CD79FD22833}
hxxp://nbk.net/nbk.cab
FF - ProfilePath - c:\documents and settings\salee7\Application Data\Mozilla\Firefox\Profiles\w91a8bm2.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com.sa/
FF - prefs.js: network.proxy.type - 4
FF - component: c:\documents and settings\salee7\Application Data\IDM\idmmzcc3\components\idmmzcc.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\components\nprpbrowserrecordplugin.dll
FF - plugin: c:\documents and settings\salee7\Application Data\Mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\documents and settings\salee7\Local Settings\Application Data\Google\Update\1.2.145.5\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPMyWebS.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

Rootkit scan 2009-06-22 21:23:49
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files:
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthxrrmijafu]
"imagepath"="\systemroot\system32\drivers\ovfsthxegtuotyt.sys"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'lsass.exe'(1948)
c:\windows\system32\idmmbc.dll
.
Completion time: 06/22/2009 21:24:18
ComboFix-quarantined-files.txt 2009-06-22 18:24:17
ComboFix2.txt 2008-12-21 15:10:52
Pre-Run: 17,906,761,728 bytes free
Post-Run: 18,432,614,400 bytes free
2283
 
اعمل تقرير هايجاك جديد الان
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:30:11 م, on 22/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\andLinux\Launcher\menu.exe
C:\Program Files\andLinux\Xming\Xming.exe
C:\AppServ\Apache\Apache.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\AppServ\Apache\Apache.exe
C:\AppServ\mysql\bin\mysqld-nt.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\andLinux\colinux-daemon.exe
C:\Program Files\andLinux\colinux-slirp-net-daemon.exe
C:\Program Files\andLinux\colinux-net-daemon.exe
C:\Program Files\andLinux\pulseaudio\pulseaudio.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\imapi.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: LeapFTP Internet Explorer Hook - {A5479DA1-7843-43A7-B5C0-BE342C77B629} - C:\PROGRA~1\LEAPFT~1.0\lftpie.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UVS11 Preload] C:\Program Files\Ulead Systems\Ulead VideoStudio 11\uvPL.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: XFCE Menu (andLinux).lnk = C:\Program Files\andLinux\Launcher\menu.exe
O4 - Global Startup: Xming (andLinux).lnk = C:\Program Files\andLinux\Xming\Xming.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA} (ReadUid.UserControlMacEntry) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {DD18AE59-EA36-461E-ADD2-5CD79FD22833} (Abdullah ActiveX Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {E001C731-5E37-4538-A5CB-8168736A2360} (ActiveQscan Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll
O23 - Service: andLinux - Unknown owner - C:\Program Files\andLinux\colinux-daemon.exe
O23 - Service: Apache - Unknown owner - C:\AppServ\Apache\Apache.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files\GIGABYTE\GEST\GSvr.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MySQL - Unknown owner - C:\AppServ\mysql\bin\mysqld-nt.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Unknown owner - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (file missing)
--
End of file - 10166 bytes
 
يمكن وجود ملف ناقص في stem خرج الملفات الناقصة بوضعك اسطوانة وندوز xp




2Aj2D-lj8I_65879520.gif
 
يمكن وجود ملف ناقص في sestemخرج الملفات الناقصة بوضعك اسطوانة وندوز xp




2Aj2D-lj8I_65879520.gif
 
حدد التالي واحذفه

O2 - BHO: LeapFTP Internet Explorer Hook - {A5479DA1-7843-43A7-B5C0-BE342C77B629} - C:\PROGRA~1\LEAPFT~1.0\lftpie.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O16 - DPF: {B7FDB0C3-4724-46D2-B8DB-6FA1DC63F7CA} (ReadUid.UserControlMacEntry) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


O16 - DPF: {DD18AE59-EA36-461E-ADD2-5CD79FD22833} (Abdullah ActiveX Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


طريقة الحذف

mg%20(3).png


mg%20(4).png


بعدها اذهب الى اضافة وازالة البرامج واحذف التولبار الموجود عندك (toolbar)>> ممكن ما يكون موجود

حمل هذا الملف وقوم بتشغيله
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي


واتبع التالي كما موجود بالصور

i15024_000.png


i15025_001.png



ثانيا / ولتنظيف الجهاز بالكامل من مخلفات الملفات المؤقته وتصفح الانترنت
حمل الملف هذا واتبع الارشادات

يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي




ثالثا / وبعد الانتهاء منم جميع ما سبق ,, اعمل تقرير هايجاك جديد
وارفقه بردك القادم
 
يمكن وجود ملف ناقص في sestemخرج الملفات الناقصة بوضعك اسطوانة وندوز xp




2aj2d-lj8i_65879520.gif


اشكرك اخي على تفاعلك معي ..

تم حل المشكله بفضل من الله .. ثم مساعدة الاخوان
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:55:19 م, on 22/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\AppServ\Apache\Apache.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\AppServ\Apache\Apache.exe
C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
C:\AppServ\mysql\bin\mysqld-nt.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\andLinux\colinux-daemon.exe
C:\Program Files\andLinux\colinux-slirp-net-daemon.exe
C:\Program Files\andLinux\colinux-net-daemon.exe
C:\Program Files\andLinux\pulseaudio\pulseaudio.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\andLinux\Launcher\menu.exe
C:\Program Files\andLinux\Xming\Xming.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: مساعد تسجيل الدخول إلى Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UVS11 Preload] C:\Program Files\Ulead Systems\Ulead VideoStudio 11\uvPL.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\salee7\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: XFCE Menu (andLinux).lnk = C:\Program Files\andLinux\Launcher\menu.exe
O4 - Global Startup: Xming (andLinux).lnk = C:\Program Files\andLinux\Xming\Xming.exe
O8 - Extra context menu item: تحميل الكل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: تحميل بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: تحميل محتوى FLV بواسطة Internet Download Manager - C:\Program Files\Internet Download Manager\IEGetVL.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: بحث - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O16 - DPF: {E001C731-5E37-4538-A5CB-8168736A2360} (ActiveQscan Control) -
يجب عليك تسجيل الدخول او تسجيل لمشاهدة الرابط المخفي

O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll
O23 - Service: andLinux - Unknown owner - C:\Program Files\andLinux\colinux-daemon.exe
O23 - Service: Apache - Unknown owner - C:\AppServ\Apache\Apache.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
O23 - Service: GEST Service for program management. (GEST Service) - Unknown owner - C:\Program Files\GIGABYTE\GEST\GSvr.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MySQL - Unknown owner - C:\AppServ\mysql\bin\mysqld-nt.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Unknown owner - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (file missing)
--
End of file - 9027 bytes
 
التقرير سليم
هل انتهت المشكلة ؟
 
8888888888888888
تم حل المشكله
كل الشكر لك اخي الفاضل
التقرير بالاعلى​

لي سؤال وهو ما نوع المشكله لدي ..؟
وهل يمكنني تركيب تول بار قوقل ..؟​
 
8888888888888888
تم حل المشكله
كل الشكر لك اخي الفاضل
التقرير بالاعلى

لي سؤال وهو ما نوع المشكله لدي ..؟
وهل بإمكاني​
 
كان عندك برنامج دعائي
Adware.MyWebSearch
وهو سبب المشكلة
 
الحالة
مغلق و غير مفتوح للمزيد من الردود.
عودة
أعلى