OTL log (part 2)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
========== Files/Folders - Created Within 30 Days ==========
[2011/10/31 22:40:45 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Vianca\Desktop\OTL.exe
[2011/10/31 22:22:35 | 001,564,464 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Vianca\Desktop\tdsskiller.exe
[2011/10/31 21:59:10 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/10/31 21:56:51 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011/10/31 21:56:51 | 000,000,000 | ---D | C] -- C:\Users\Vianca\AppData\Local\temp
[2011/10/31 21:43:58 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/10/31 21:43:58 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/10/31 21:43:58 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/10/31 21:43:53 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/10/31 21:43:50 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/10/31 21:25:08 | 004,279,921 | R--- | C] (Swearware) -- C:\Users\Vianca\Desktop\ComboFix.exe
[2011/10/31 07:07:15 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\WindowsPowerShell
[2011/10/31 07:07:11 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\WindowsPowerShell
[2011/10/30 16:42:40 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2011/10/30 16:37:58 | 001,916,416 | ---- | C] (AVAST Software) -- C:\Users\Vianca\Desktop\aswMBR.exe
[2011/10/30 16:13:03 | 000,607,260 | R--- | C] (Swearware) -- C:\Users\Vianca\Desktop\dds.scr
[2011/10/30 15:29:02 | 000,000,000 | ---D | C] -- C:\Users\Vianca\Desktop\Infection
[2011/10/30 15:17:44 | 000,000,000 | ---D | C] -- C:\Users\Vianca\AppData\Roaming\Malwarebytes
[2011/10/30 15:16:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/10/30 15:16:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/10/30 15:16:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011/10/30 15:15:37 | 000,000,000 | ---D | C] -- C:\Users\Vianca\AppData\Roaming\Avira
[2011/10/30 15:13:53 | 009,852,544 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Vianca\Desktop\mbam-setup-1.51.2.1300.exe
[2011/10/30 15:00:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2011/10/30 14:59:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2011/10/30 14:59:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2011/10/28 12:53:03 | 000,000,000 | ---D | C] -- C:\Users\Vianca\Desktop\CAPC
[2011/10/07 12:00:08 | 000,000,000 | ---D | C] -- C:\Users\Vianca\Documents\RCA Detective
[2011/10/07 12:00:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RCA Detective
[2011/10/07 11:59:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RCA Digital Voice Recorder
[2011/10/07 11:59:54 | 000,000,000 | ---D | C] -- C:\Users\Vianca\Documents\RCA Digital Voice Manager
[1 C:\Users\Vianca\AppData\Local\*.tmp files -> C:\Users\Vianca\AppData\Local\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/10/31 22:40:47 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Vianca\Desktop\OTL.exe
[2011/10/31 22:28:00 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1188132796-2589654712-3005709553-1000UA.job
[2011/10/31 22:22:40 | 001,564,464 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Vianca\Desktop\tdsskiller.exe
[2011/10/31 22:11:01 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/10/31 22:04:25 | 000,595,684 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/10/31 22:04:25 | 000,101,350 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/10/31 22:04:24 | 000,690,960 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/10/31 21:59:15 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/10/31 21:59:14 | 000,003,616 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/10/31 21:59:05 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/10/31 21:58:39 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/10/31 21:58:32 | 4024,258,560 | -HS- | M] () -- C:\hiberfil.sys
[2011/10/31 21:54:11 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/10/31 21:40:45 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2011/10/31 21:25:09 | 004,279,921 | R--- | M] (Swearware) -- C:\Users\Vianca\Desktop\ComboFix.exe
[2011/10/31 17:52:55 | 000,302,592 | ---- | M] () -- C:\Users\Vianca\Desktop\6teqoz3k.exe
[2011/10/31 16:28:00 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1188132796-2589654712-3005709553-1000Core.job
[2011/10/31 13:13:56 | 000,000,330 | ---- | M] () -- C:\Windows\tasks\WebReg Officejet 6500 E709n Series.job
[2011/10/31 12:00:31 | 000,000,732 | ---- | M] () -- C:\Users\Vianca\AppData\Local\d3d9caps64.dat
[2011/10/31 07:13:38 | 000,397,808 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/10/30 18:17:24 | 282,950,735 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011/10/30 16:38:07 | 001,916,416 | ---- | M] (AVAST Software) -- C:\Users\Vianca\Desktop\aswMBR.exe
[2011/10/30 16:13:04 | 000,607,260 | R--- | M] (Swearware) -- C:\Users\Vianca\Desktop\dds.scr
[2011/10/30 15:16:54 | 000,000,948 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/10/30 15:14:38 | 009,852,544 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Vianca\Desktop\mbam-setup-1.51.2.1300.exe
[2011/10/30 15:00:08 | 000,001,901 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2011/10/29 12:10:40 | 000,000,448 | ---- | M] () -- C:\ProgramData\6DSS92c31Apgjk
[2011/10/29 12:09:31 | 000,000,192 | ---- | M] () -- C:\ProgramData\~6DSS92c31Apgjk
[2011/10/29 12:09:30 | 000,000,088 | ---- | M] () -- C:\ProgramData\~6DSS92c31Apgjkr
[2011/10/28 11:16:31 | 000,007,052 | ---- | M] () -- C:\Users\Vianca\AppData\Local\d3d9caps.dat
[2011/10/21 13:31:35 | 000,933,758 | ---- | M] () -- C:\Users\Vianca\Desktop\Scan004.jpg
[2011/10/21 13:26:52 | 005,108,422 | ---- | M] () -- C:\Users\Vianca\Desktop\Scan003.jpg
[2011/10/19 16:56:50 | 000,027,760 | ---- | M] () -- C:\Windows\SysNative\drivers\avkmgr.sys
[2011/10/19 16:56:49 | 000,130,760 | ---- | M] () -- C:\Windows\SysNative\drivers\avipbb.sys
[2011/10/19 16:56:49 | 000,097,312 | ---- | M] () -- C:\Windows\SysNative\drivers\avgntflt.sys
[2011/10/07 12:04:48 | 000,000,000 | ---- | M] () -- C:\Windows\DVM.INI
[2011/10/07 12:00:08 | 000,000,781 | ---- | M] () -- C:\Users\Vianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RCA Detective.lnk
[2011/10/06 17:50:12 | 000,006,656 | ---- | M] () -- C:\Users\Vianca\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[1 C:\Users\Vianca\AppData\Local\*.tmp files -> C:\Users\Vianca\AppData\Local\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/10/31 21:58:32 | 4024,258,560 | -HS- | C] () -- C:\hiberfil.sys
[2011/10/31 21:43:58 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011/10/31 21:43:58 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011/10/31 21:43:58 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/10/31 21:43:58 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/10/31 21:43:58 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/10/31 17:52:54 | 000,302,592 | ---- | C] () -- C:\Users\Vianca\Desktop\6teqoz3k.exe
[2011/10/31 13:13:55 | 000,000,330 | ---- | C] () -- C:\Windows\tasks\WebReg Officejet 6500 E709n Series.job
[2011/10/31 06:34:24 | 000,316,416 | ---- | C] () -- C:\Windows\SysNative\msshsq.dll
[2011/10/31 04:32:17 | 000,049,160 | ---- | C] () -- C:\Windows\SysNative\infocardcpl.cpl
[2011/10/31 04:32:09 | 000,011,264 | ---- | C] () -- C:\Windows\SysNative\icardres.dll
[2011/10/31 04:32:07 | 000,052,760 | ---- | C] () -- C:\Windows\SysNative\PresentationHostProxy.dll
[2011/10/31 04:32:04 | 001,168,928 | ---- | C] () -- C:\Windows\SysNative\PresentationNative_v0300.dll
[2011/10/31 04:32:04 | 000,167,432 | ---- | C] () -- C:\Windows\SysNative\infocardapi.dll
[2011/10/31 04:32:03 | 001,383,936 | ---- | C] () -- C:\Windows\SysNative\icardagt.exe
[2011/10/31 04:31:33 | 000,126,520 | ---- | C] () -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2011/10/31 04:31:24 | 000,357,904 | ---- | C] () -- C:\Windows\SysNative\PresentationHost.exe
[2011/10/31 04:13:00 | 000,013,824 | ---- | C] () -- C:\Windows\SysNative\netfxperf.dll
[2011/10/31 04:12:40 | 000,112,120 | ---- | C] () -- C:\Windows\SysNative\dfshim.dll
[2011/10/31 04:12:16 | 000,406,528 | ---- | C] () -- C:\Windows\SysNative\mscoree.dll
[2011/10/31 04:12:01 | 000,158,208 | ---- | C] () -- C:\Windows\SysNative\mscorier.dll
[2011/10/31 04:11:54 | 000,076,288 | ---- | C] () -- C:\Windows\SysNative\mscories.dll
[2011/10/31 03:58:28 | 000,032,768 | ---- | C] () -- C:\Windows\SysNative\nshhttp.dll
[2011/10/31 03:58:23 | 000,610,304 | ---- | C] () -- C:\Windows\SysNative\drivers\http.sys
[2011/10/31 03:58:22 | 000,033,792 | ---- | C] () -- C:\Windows\SysNative\httpapi.dll
[2011/10/31 03:26:45 | 000,101,376 | ---- | C] () -- C:\Windows\SysNative\MSNP.ax
[2011/10/31 03:26:35 | 000,375,808 | ---- | C] () -- C:\Windows\SysNative\psisdecd.dll
[2011/10/31 03:26:33 | 000,289,792 | ---- | C] () -- C:\Windows\SysNative\psisrndr.ax
[2011/10/31 03:22:05 | 000,002,048 | ---- | C] () -- C:\Windows\SysNative\winrsmgr.dll
[2011/10/31 03:22:01 | 000,013,312 | ---- | C] () -- C:\Windows\SysNative\wsmplpxy.dll
[2011/10/31 03:22:01 | 000,013,312 | ---- | C] () -- C:\Windows\SysNative\winrssrv.dll
[2011/10/31 03:21:32 | 000,053,760 | ---- | C] () -- C:\Windows\SysNative\pwrshplugin.dll
[2011/10/31 03:21:31 | 000,051,200 | ---- | C] () -- C:\Windows\SysNative\winrs.exe
[2011/10/31 03:21:31 | 000,024,064 | ---- | C] () -- C:\Windows\SysNative\winrshost.exe
[2011/10/31 03:21:31 | 000,013,824 | ---- | C] () -- C:\Windows\SysNative\wsmprovhost.exe
[2011/10/31 03:21:16 | 000,232,960 | ---- | C] () -- C:\Windows\SysNative\wecsvc.dll
[2011/10/31 03:21:16 | 000,113,152 | ---- | C] () -- C:\Windows\SysNative\wevtfwd.dll
[2011/10/31 03:21:16 | 000,113,152 | ---- | C] () -- C:\Windows\SysNative\wecutil.exe
[2011/10/31 03:21:16 | 000,084,992 | ---- | C] () -- C:\Windows\SysNative\wecapi.dll
[2011/10/31 03:21:16 | 000,054,272 | ---- | C] () -- C:\Windows\SysNative\WsmRes.dll
[2011/10/31 03:21:03 | 000,201,184 | ---- | C] () -- C:\Windows\SysWow64\winrm.vbs
[2011/10/31 03:21:03 | 000,201,184 | ---- | C] () -- C:\Windows\SysNative\winrm.vbs
[2011/10/31 03:21:03 | 000,004,675 | ---- | C] () -- C:\Windows\SysWow64\wsmanconfig_schema.xml
[2011/10/31 03:21:03 | 000,004,675 | ---- | C] () -- C:\Windows\SysNative\wsmanconfig_schema.xml
[2011/10/31 03:21:03 | 000,002,426 | ---- | C] () -- C:\Windows\SysWow64\WsmTxt.xsl
[2011/10/31 03:21:03 | 000,002,426 | ---- | C] () -- C:\Windows\SysNative\WsmTxt.xsl
[2011/10/31 03:20:59 | 000,310,272 | ---- | C] () -- C:\Windows\SysNative\WsmWmiPl.dll
[2011/10/31 03:20:59 | 000,180,736 | ---- | C] () -- C:\Windows\SysNative\WsmAuto.dll
[2011/10/31 03:20:58 | 000,370,688 | ---- | C] () -- C:\Windows\SysNative\winrscmd.dll
[2011/10/31 03:20:58 | 000,348,672 | ---- | C] () -- C:\Windows\SysNative\WSManHTTPConfig.exe
[2011/10/31 03:20:57 | 002,050,048 | ---- | C] () -- C:\Windows\SysNative\WsmSvc.dll
[2011/10/31 03:20:57 | 000,352,768 | ---- | C] () -- C:\Windows\SysNative\WSManMigrationPlugin.dll
[2011/10/30 16:41:51 | 282,950,735 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2011/10/30 15:16:54 | 000,000,948 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/10/30 15:16:45 | 000,025,416 | ---- | C] () -- C:\Windows\SysNative\drivers\mbam.sys
[2011/10/30 15:00:08 | 000,001,901 | ---- | C] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2011/10/30 14:59:49 | 000,130,760 | ---- | C] () -- C:\Windows\SysNative\drivers\avipbb.sys
[2011/10/30 14:59:49 | 000,097,312 | ---- | C] () -- C:\Windows\SysNative\drivers\avgntflt.sys
[2011/10/30 14:59:49 | 000,027,760 | ---- | C] () -- C:\Windows\SysNative\drivers\avkmgr.sys
[2011/10/30 14:55:30 | 000,372,736 | ---- | C] () -- C:\Windows\SysNative\unregmp2.exe
[2011/10/30 14:54:48 | 001,420,176 | ---- | C] () -- C:\Windows\SysNative\drivers\tcpip.sys
[2011/10/30 14:54:45 | 001,923,584 | ---- | C] () -- C:\Windows\SysNative\ole32.dll
[2011/10/30 14:54:42 | 000,461,312 | ---- | C] () -- C:\Windows\SysNative\drivers\srv.sys
[2011/10/30 14:54:31 | 005,702,144 | ---- | C] () -- C:\Windows\SysNative\mshtml.dll
[2011/10/30 14:54:27 | 007,016,960 | ---- | C] () -- C:\Windows\SysNative\ieframe.dll
[2011/10/30 14:54:26 | 002,452,872 | ---- | C] () -- C:\Windows\SysNative\ieapfltr.dat
[2011/10/30 14:54:24 | 001,427,968 | ---- | C] () -- C:\Windows\SysNative\urlmon.dll
[2011/10/30 14:54:24 | 001,032,704 | ---- | C] () -- C:\Windows\SysNative\wininet.dll
[2011/10/30 14:54:23 | 001,129,984 | ---- | C] () -- C:\Windows\SysNative\mstime.dll
[2011/10/30 14:54:22 | 000,759,808 | ---- | C] () -- C:\Windows\SysNative\mshtmled.dll
[2011/10/30 14:54:22 | 000,590,848 | ---- | C] () -- C:\Windows\SysNative\msfeeds.dll
[2011/10/30 14:54:21 | 000,480,256 | ---- | C] () -- C:\Windows\SysNative\iedkcs32.dll
[2011/10/30 14:54:21 | 000,375,296 | ---- | C] () -- C:\Windows\SysNative\iertutil.dll
[2011/10/30 14:54:21 | 000,208,896 | ---- | C] () -- C:\Windows\SysNative\occache.dll
[2011/10/30 14:54:19 | 000,422,400 | ---- | C] () -- C:\Windows\SysNative\ieapfltr.dll
[2011/10/30 14:54:19 | 000,267,776 | ---- | C] () -- C:\Windows\SysNative\ieaksie.dll
[2011/10/30 14:54:19 | 000,249,856 | ---- | C] () -- C:\Windows\SysNative\iepeers.dll
[2011/10/30 14:54:18 | 000,485,376 | ---- | C] () -- C:\Windows\SysNative\html.iec
[2011/10/30 14:54:18 | 000,032,768 | ---- | C] () -- C:\Windows\SysNative\ieUnatt.exe
[2011/10/30 14:54:18 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\jsproxy.dll
[2011/10/30 14:54:17 | 001,383,424 | ---- | C] () -- C:\Windows\SysNative\mshtml.tlb
[2011/10/30 14:54:17 | 000,086,528 | ---- | C] () -- C:\Windows\SysNative\ieencode.dll
[2011/10/30 14:53:50 | 000,818,688 | ---- | C] () -- C:\Windows\SysNative\WMSPDMOD.DLL
[2011/10/30 14:53:48 | 000,084,480 | ---- | C] () -- C:\Windows\SysNative\asycfilt.dll
[2011/10/30 14:53:44 | 000,189,952 | ---- | C] () -- C:\Windows\SysNative\t2embed.dll
[2011/10/30 14:53:35 | 001,208,832 | ---- | C] () -- C:\Windows\SysNative\kernel32.dll
[2011/10/30 14:53:32 | 002,762,240 | ---- | C] () -- C:\Windows\SysNative\win32k.sys
[2011/10/30 14:53:29 | 000,274,432 | ---- | C] () -- C:\Windows\SysNative\drivers\mrxsmb10.sys
[2011/10/30 14:53:29 | 000,135,168 | ---- | C] () -- C:\Windows\SysNative\drivers\mrxsmb.sys
[2011/10/30 14:53:29 | 000,105,984 | ---- | C] () -- C:\Windows\SysNative\drivers\mrxsmb20.sys
[2011/10/30 14:53:20 | 013,425,152 | ---- | C] () -- C:\Windows\SysNative\wmp.dll
[2011/10/30 14:53:11 | 008,147,968 | ---- | C] () -- C:\Windows\SysNative\wmploc.DLL
[2011/10/30 14:52:46 | 000,087,552 | ---- | C] () -- C:\Windows\SysNative\consent.exe
[2011/10/30 14:52:31 | 000,301,568 | ---- | C] () -- C:\Windows\SysNative\shsvcs.dll
[2011/10/30 14:52:21 | 000,753,152 | ---- | C] () -- C:\Windows\SysNative\jscript.dll
[2011/10/30 14:52:20 | 000,603,648 | ---- | C] () -- C:\Windows\SysNative\vbscript.dll
[2011/10/30 14:52:16 | 000,090,624 | ---- | C] () -- C:\Windows\SysNative\drivers\bowser.sys
[2011/10/30 14:52:14 | 000,560,128 | ---- | C] () -- C:\Windows\SysNative\EncDec.dll
[2011/10/30 14:52:13 | 000,416,768 | ---- | C] () -- C:\Windows\SysNative\sbe.dll
[2011/10/30 14:52:12 | 000,226,816 | ---- | C] () -- C:\Windows\SysNative\mpg2splt.ax
[2011/10/30 14:52:12 | 000,210,944 | ---- | C] () -- C:\Windows\SysNative\sbeio.dll
[2011/10/30 14:52:00 | 000,097,792 | ---- | C] () -- C:\Windows\SysNative\drivers\dfsc.sys
[2011/10/30 14:51:56 | 001,875,456 | ---- | C] () -- C:\Windows\SysNative\msxml3.dll
[2011/10/30 14:51:51 | 001,570,816 | ---- | C] () -- C:\Windows\SysNative\quartz.dll
[2011/10/30 14:51:42 | 000,295,936 | ---- | C] () -- C:\Windows\SysNative\raschap.dll
[2011/10/30 14:51:42 | 000,280,576 | ---- | C] () -- C:\Windows\SysNative\rastls.dll
[2011/10/30 14:51:34 | 001,075,600 | ---- | C] () -- C:\Windows\SysNative\winload.efi
[2011/10/30 14:51:34 | 001,062,800 | ---- | C] () -- C:\Windows\SysNative\winload.exe
[2011/10/30 14:51:34 | 000,990,096 | ---- | C] () -- C:\Windows\SysNative\winresume.efi
[2011/10/30 14:51:34 | 000,979,344 | ---- | C] () -- C:\Windows\SysNative\winresume.exe
[2011/10/30 14:51:33 | 000,020,880 | ---- | C] () -- C:\Windows\SysNative\kdusb.dll
[2011/10/30 14:51:33 | 000,018,832 | ---- | C] () -- C:\Windows\SysNative\kd1394.dll
[2011/10/30 14:51:33 | 000,018,320 | ---- | C] () -- C:\Windows\SysNative\kdcom.dll
[2011/10/30 14:51:22 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\Apphlpdm.dll
[2011/10/30 14:51:20 | 004,240,384 | ---- | C] () -- C:\Windows\SysNative\GameUXLegacyGDFs.dll
[2011/10/30 14:51:15 | 001,280,512 | ---- | C] () -- C:\Windows\SysNative\rpcrt4.dll
[2011/10/30 14:51:09 | 000,633,856 | ---- | C] () -- C:\Windows\SysNative\comctl32.dll
[2011/10/30 14:51:06 | 000,267,776 | ---- | C] () -- C:\Windows\SysNative\spoolsv.exe
[2011/10/30 14:51:02 | 002,424,320 | ---- | C] () -- C:\Windows\SysNative\mstscax.dll
[2011/10/30 14:51:01 | 000,730,624 | ---- | C] () -- C:\Windows\SysNative\mstsc.exe
[2011/10/30 14:50:58 | 000,082,944 | ---- | C] () -- C:\Windows\SysNative\msasn1.dll
[2011/10/30 14:50:52 | 000,038,400 | ---- | C] () -- C:\Windows\SysNative\msvidc32.dll
[2011/10/30 14:50:51 | 000,108,544 | ---- | C] () -- C:\Windows\SysNative\avifil32.dll
[2011/10/30 14:50:51 | 000,093,184 | ---- | C] () -- C:\Windows\SysNative\mciavi32.dll
[2011/10/30 14:50:51 | 000,076,800 | ---- | C] () -- C:\Windows\SysNative\avicap32.dll
[2011/10/30 14:50:51 | 000,054,272 | ---- | C] () -- C:\Windows\SysNative\iyuv_32.dll
[2011/10/30 14:50:51 | 000,025,600 | ---- | C] () -- C:\Windows\SysNative\msyuv.dll
[2011/10/30 14:50:51 | 000,015,872 | ---- | C] () -- C:\Windows\SysNative\msrle32.dll
[2011/10/30 14:50:51 | 000,013,824 | ---- | C] () -- C:\Windows\SysNative\tsbyuv.dll
[2011/10/30 14:50:50 | 000,143,360 | ---- | C] () -- C:\Windows\SysNative\msvfw32.dll
[2011/10/30 14:50:46 | 000,880,640 | ---- | C] () -- C:\Windows\SysNative\timedate.cpl
[2011/10/30 14:50:41 | 001,030,656 | ---- | C] () -- C:\Windows\SysNative\printfilterpipelinesvc.exe
[2011/10/30 14:50:39 | 000,718,336 | ---- | C] () -- C:\Windows\SysNative\rpcss.dll
[2011/10/30 14:50:37 | 000,036,352 | ---- | C] () -- C:\Windows\SysNative\printfilterpipelineprxy.dll
[2011/10/30 14:50:36 | 000,231,424 | ---- | C] () -- C:\Windows\SysNative\sdohlp.dll
[2011/10/30 14:50:36 | 000,163,840 | ---- | C] () -- C:\Windows\SysNative\iasrecst.dll
[2011/10/30 14:50:36 | 000,075,776 | ---- | C] () -- C:\Windows\SysNative\iasads.dll
[2011/10/30 14:50:36 | 000,061,440 | ---- | C] () -- C:\Windows\SysNative\iasdatastore.dll
[2011/10/30 14:50:36 | 000,024,576 | ---- | C] () -- C:\Windows\SysNative\iashost.exe
[2011/10/30 14:50:18 | 002,900,480 | ---- | C] () -- C:\Windows\SysNative\WMVCORE.DLL
[2011/10/30 14:50:11 | 003,547,136 | ---- | C] () -- C:\Windows\SysNative\mf.dll
[2011/10/30 14:49:48 | 000,407,552 | ---- | C] () -- C:\Windows\SysNative\drivers\afd.sys
[2011/10/30 14:49:46 | 000,050,688 | ---- | C] () -- C:\Windows\SysNative\rtutils.dll
[2011/10/30 14:49:43 | 000,847,872 | ---- | C] () -- C:\Windows\SysNative\oleaut32.dll
[2011/10/30 14:49:39 | 000,439,808 | ---- | C] () -- C:\Windows\SysNative\winhttp.dll
[2011/10/30 14:49:36 | 000,295,424 | ---- | C] () -- C:\Windows\SysNative\MP4SDECD.DLL
[2011/10/30 14:49:33 | 001,692,160 | ---- | C] () -- C:\Windows\SysNative\lsasrv.dll
[2011/10/30 14:49:33 | 000,268,800 | ---- | C] () -- C:\Windows\SysNative\msv1_0.dll
[2011/10/30 14:49:32 | 000,515,656 | ---- | C] () -- C:\Windows\SysNative\drivers\ksecdd.sys
[2011/10/30 14:49:32 | 000,205,312 | ---- | C] () -- C:\Windows\SysNative\wdigest.dll
[2011/10/30 14:49:31 | 000,094,720 | ---- | C] () -- C:\Windows\SysNative\secur32.dll
[2011/10/30 14:49:31 | 000,011,264 | ---- | C] () -- C:\Windows\SysNative\lsass.exe
[2011/10/30 14:49:27 | 000,088,576 | ---- | C] () -- C:\Windows\SysNative\atl.dll
[2011/10/30 14:49:23 | 000,791,552 | ---- | C] () -- C:\Windows\SysNative\localspl.dll
[2011/10/30 14:49:21 | 000,176,128 | ---- | C] () -- C:\Windows\SysNative\drivers\srv2.sys
[2011/10/30 14:49:21 | 000,144,896 | ---- | C] () -- C:\Windows\SysNative\drivers\srvnet.sys
[2011/10/30 14:49:18 | 000,202,752 | ---- | C] () -- C:\Windows\SysNative\wkssvc.dll
[2011/10/30 14:49:12 | 000,462,848 | ---- | C] () -- C:\Windows\SysNative\odbc32.dll
[2011/10/30 14:48:58 | 012,898,304 | ---- | C] () -- C:\Windows\SysNative\shell32.dll
[2011/10/30 14:48:56 | 000,454,144 | ---- | C] () -- C:\Windows\SysNative\shlwapi.dll
[2011/10/30 14:48:41 | 000,141,312 | ---- | C] () -- C:\Windows\SysNative\netiohlp.dll
[2011/10/30 14:48:41 | 000,032,256 | ---- | C] () -- C:\Windows\SysNative\NETSTAT.EXE
[2011/10/30 14:48:40 | 000,023,040 | ---- | C] () -- C:\Windows\SysNative\ARP.EXE
[2011/10/30 14:48:40 | 000,012,800 | ---- | C] () -- C:\Windows\SysNative\MRINFO.EXE
[2011/10/30 14:48:40 | 000,011,264 | ---- | C] () -- C:\Windows\SysNative\finger.exe
[2011/10/30 14:48:40 | 000,010,752 | ---- | C] () -- C:\Windows\SysNative\TCPSVCS.EXE
[2011/10/30 14:48:40 | 000,010,240 | ---- | C] () -- C:\Windows\SysNative\HOSTNAME.EXE
[2011/10/30 14:48:39 | 000,021,504 | ---- | C] () -- C:\Windows\SysNative\ROUTE.EXE
[2011/10/30 14:48:39 | 000,017,920 | ---- | C] () -- C:\Windows\SysNative\netevent.dll
[2011/10/30 14:47:52 | 000,975,360 | ---- | C] () -- C:\Windows\SysNative\inetcomm.dll
[2011/10/30 14:47:46 | 000,656,384 | ---- | C] () -- C:\Windows\SysNative\kerberos.dll
[2011/10/30 14:47:36 | 000,437,248 | ---- | C] () -- C:\Windows\SysNative\WSDApi.dll
[2011/10/30 14:47:24 | 000,025,600 | ---- | C] () -- C:\Windows\SysNative\amxread.dll
[2011/10/30 14:47:24 | 000,015,872 | ---- | C] () -- C:\Windows\SysNative\apilogen.dll
[2011/10/30 14:47:13 | 001,794,560 | ---- | C] () -- C:\Windows\SysNative\msxml6.dll
[2011/10/30 14:47:07 | 000,324,608 | ---- | C] () -- C:\Windows\SysNative\PortableDeviceApi.dll
[2011/10/30 14:47:01 | 000,594,944 | ---- | C] () -- C:\Windows\SysNative\RMActivate_isv.exe
[2011/10/30 14:47:01 | 000,594,432 | ---- | C] () -- C:\Windows\SysNative\RMActivate.exe
[2011/10/30 14:47:00 | 000,413,696 | ---- | C] () -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2011/10/30 14:47:00 | 000,409,600 | ---- | C] () -- C:\Windows\SysNative\RMActivate_ssp.exe
[2011/10/30 14:46:59 | 000,535,040 | ---- | C] () -- C:\Windows\SysNative\secproc.dll
[2011/10/30 14:46:59 | 000,534,016 | ---- | C] () -- C:\Windows\SysNative\secproc_isv.dll
[2011/10/30 14:46:58 | 000,457,216 | ---- | C] () -- C:\Windows\SysNative\msdrm.dll
[2011/10/30 14:46:58 | 000,159,232 | ---- | C] () -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2011/10/30 14:46:58 | 000,158,720 | ---- | C] () -- C:\Windows\SysNative\secproc_ssp.dll
[2011/10/30 14:46:53 | 000,344,576 | ---- | C] () -- C:\Windows\SysNative\schannel.dll
[2011/10/30 14:46:49 | 004,678,032 | ---- | C] () -- C:\Windows\SysNative\ntoskrnl.exe
[2011/10/30 14:46:48 | 001,562,008 | ---- | C] () -- C:\Windows\SysNative\ntdll.dll
[2011/10/30 14:46:44 | 001,251,840 | ---- | C] () -- C:\Windows\SysNative\sdclt.exe
[2011/10/30 14:46:39 | 000,367,616 | ---- | C] () -- C:\Windows\SysNative\atmfd.dll
[2011/10/30 14:46:38 | 000,096,256 | ---- | C] () -- C:\Windows\SysNative\fontsub.dll
[2011/10/30 14:46:37 | 000,048,128 | ---- | C] () -- C:\Windows\SysNative\atmlib.dll
[2011/10/30 14:46:35 | 000,730,112 | ---- | C] () -- C:\Windows\SysNative\msdtcprx.dll
[2011/10/30 14:46:34 | 000,048,640 | ---- | C] () -- C:\Windows\SysNative\xolehlp.dll
[2011/10/30 14:46:27 | 000,002,048 | ---- | C] () -- C:\Windows\SysNative\tzres.dll
[2011/10/30 14:46:07 | 000,072,192 | ---- | C] () -- C:\Windows\SysNative\l3codeca.acm
[2011/10/30 14:46:04 | 000,450,048 | ---- | C] () -- C:\Windows\SysNative\winsrv.dll
[2011/10/30 14:46:03 | 000,085,504 | ---- | C] () -- C:\Windows\SysNative\csrsrv.dll
[2011/10/30 14:46:02 | 000,622,080 | ---- | C] () -- C:\Windows\SysNative\usp10.dll
[2011/10/30 14:45:37 | 000,368,128 | ---- | C] () -- C:\Windows\SysNative\wmpdxm.dll
[2011/10/30 14:45:34 | 000,009,216 | ---- | C] () -- C:\Windows\SysNative\spwmp.dll
[2011/10/30 14:45:34 | 000,005,120 | ---- | C] () -- C:\Windows\SysNative\msdxm.ocx
[2011/10/30 14:45:34 | 000,005,120 | ---- | C] () -- C:\Windows\SysNative\dxmasf.dll
[2011/10/30 14:45:31 | 000,043,520 | ---- | C] () -- C:\Windows\SysNative\msdxm.tlb
[2011/10/30 14:45:30 | 000,018,432 | ---- | C] () -- C:\Windows\SysNative\amcompat.tlb
[2011/10/30 14:45:23 | 001,360,384 | ---- | C] () -- C:\Windows\SysNative\mfc42u.dll
[2011/10/30 14:45:22 | 001,398,784 | ---- | C] () -- C:\Windows\SysNative\mfc42.dll
[2011/10/30 14:45:16 | 000,176,640 | ---- | C] () -- C:\Windows\SysNative\Faultrep.dll
[2011/10/30 14:45:16 | 000,120,832 | ---- | C] () -- C:\Windows\SysNative\wersvc.dll
[2011/10/30 14:45:14 | 001,090,048 | ---- | C] () -- C:\Windows\SysNative\wmpmde.dll
[2011/10/30 14:45:12 | 000,221,184 | ---- | C] () -- C:\Windows\SysNative\dnsapi.dll
[2011/10/30 14:45:11 | 000,117,760 | ---- | C] () -- C:\Windows\SysNative\dnsrslvr.dll
[2011/10/30 14:45:11 | 000,028,672 | ---- | C] () -- C:\Windows\SysNative\dnscacheugc.exe
[2011/10/30 14:45:08 | 002,608,803 | ---- | C] () -- C:\Windows\SysNative\wlan.tmf
[2011/10/30 14:45:07 | 000,376,832 | ---- | C] () -- C:\Windows\SysNative\wlansec.dll
[2011/10/30 14:45:07 | 000,353,280 | ---- | C] () -- C:\Windows\SysNative\wlanmsm.dll
[2011/10/30 14:45:06 | 000,615,936 | ---- | C] () -- C:\Windows\SysNative\wlansvc.dll
[2011/10/30 14:45:06 | 000,157,184 | ---- | C] () -- C:\Windows\SysNative\L2SecHC.dll
[2011/10/30 14:45:06 | 000,097,792 | ---- | C] () -- C:\Windows\SysNative\wlanhlp.dll
[2011/10/30 14:45:06 | 000,086,528 | ---- | C] () -- C:\Windows\SysNative\wlanapi.dll
[2011/10/30 14:21:10 | 000,854,528 | ---- | C] () -- C:\Windows\SysNative\schedsvc.dll
[2011/10/30 14:21:09 | 000,655,872 | ---- | C] () -- C:\Windows\SysNative\taskschd.dll
[2011/10/30 14:21:09 | 000,499,712 | ---- | C] () -- C:\Windows\SysNative\wmicmiplugin.dll
[2011/10/30 14:21:08 | 000,410,112 | ---- | C] () -- C:\Windows\SysNative\taskcomp.dll
[2011/10/30 14:21:08 | 000,267,776 | ---- | C] () -- C:\Windows\SysNative\taskeng.exe
[2011/10/30 14:11:51 | 000,270,720 | ---- | C] () -- C:\Windows\SysNative\MpSigStub.exe
[2011/10/29 17:49:23 | 000,104,960 | ---- | C] () -- C:\Windows\SysNative\cabview.dll
[2011/10/29 17:49:20 | 000,218,112 | ---- | C] () -- C:\Windows\SysNative\wintrust.dll
[2011/10/29 17:39:30 | 000,043,744 | ---- | C] () -- C:\Windows\SysNative\wups2.dll
[2011/10/29 17:39:29 | 002,621,440 | ---- | C] () -- C:\Windows\SysNative\wucltux.dll
[2011/10/29 17:39:29 | 002,424,024 | ---- | C] () -- C:\Windows\SysNative\wuaueng.dll
[2011/10/29 17:39:29 | 000,057,560 | ---- | C] () -- C:\Windows\SysNative\wuauclt.exe
[2011/10/29 17:39:09 | 000,098,816 | ---- | C] () -- C:\Windows\SysNative\wudriver.dll
[2011/10/29 17:39:09 | 000,038,112 | ---- | C] () -- C:\Windows\SysNative\wups.dll
[2011/10/29 17:39:08 | 000,700,640 | ---- | C] () -- C:\Windows\SysNative\wuapi.dll
[2011/10/29 17:38:57 | 000,185,416 | ---- | C] () -- C:\Windows\SysNative\wuwebv.dll
[2011/10/29 17:38:57 | 000,036,864 | ---- | C] () -- C:\Windows\SysNative\wuapp.exe
[2011/10/29 12:09:30 | 000,000,192 | ---- | C] () -- C:\ProgramData\~6DSS92c31Apgjk
[2011/10/29 12:09:30 | 000,000,088 | ---- | C] () -- C:\ProgramData\~6DSS92c31Apgjkr
[2011/10/29 12:09:27 | 000,000,448 | ---- | C] () -- C:\ProgramData\6DSS92c31Apgjk
[2011/10/21 13:29:48 | 000,933,758 | ---- | C] () -- C:\Users\Vianca\Desktop\Scan004.jpg
[2011/10/21 13:26:52 | 005,108,422 | ---- | C] () -- C:\Users\Vianca\Desktop\Scan003.jpg
[2011/10/07 12:04:48 | 000,000,000 | ---- | C] () -- C:\Windows\DVM.INI
[2011/10/07 12:00:08 | 000,000,781 | ---- | C] () -- C:\Users\Vianca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RCA Detective.lnk
[2011/09/10 17:42:42 | 000,186,604 | ---- | C] () -- C:\Windows\hpwins23.dat.temp
[2011/09/10 17:42:42 | 000,001,847 | ---- | C] () -- C:\Windows\hpwmdl23.dat.temp
[2011/08/31 18:58:25 | 000,000,732 | ---- | C] () -- C:\Users\Vianca\AppData\Local\d3d9caps64.dat
[2010/01/27 12:03:37 | 000,000,056 | ---- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/01/01 14:49:01 | 000,006,656 | ---- | C] () -- C:\Users\Vianca\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/11/25 18:37:54 | 000,228,982 | ---- | C] () -- C:\Windows\hpwins23.dat
[2009/10/25 00:30:45 | 000,007,052 | ---- | C] () -- C:\Users\Vianca\AppData\Local\d3d9caps.dat
[2009/10/23 14:38:05 | 000,002,902 | ---- | C] () -- C:\Users\Vianca\AppData\Roaming\wklnhst.dat
[2009/08/12 20:32:03 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2009/04/08 03:15:12 | 000,106,605 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchema.bin
[2009/04/08 03:15:12 | 000,018,904 | ---- | C] () -- C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
[2009/04/08 03:04:50 | 000,000,012 | ---- | C] () -- C:\Windows\bthservsdp.dat
[2008/12/10 09:28:16 | 003,107,788 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.dat
[2008/10/25 05:30:45 | 000,002,075 | ---- | C] () -- C:\Windows\hpwmdl23.dat
[2008/01/20 22:50:05 | 000,060,124 | ---- | C] () -- C:\Windows\SysWow64\tcpmon.ini
[2008/01/20 22:49:49 | 000,368,640 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2006/11/02 11:37:05 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 08:37:14 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2006/11/02 08:24:17 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2006/11/02 08:18:17 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2006/11/02 05:47:54 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin