Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2011-07-29 00:52:28
Microsoft(R) Windows(R) XP Professional x64 Edition Service Pack 2
System drive C: has 223 GB (93%) free of 239 GB
Total RAM: 2046 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 00:52:38, on 29/07/2011
Platform: Windows 2003 SP2 (WinNT 5.02.3790)
MSIE: Internet Explorer v7.00 (7.00.6000.17098)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
C:\Program Files (x86)\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrator\Desktop\RSIT\RSIT.exe
C:\Program Files (x86)\trend micro\Administrator.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = astroburn-search.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://update.microsoft.com/
F2 - REG:system.ini: UserInit=userinit
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files (x86)\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] "C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvlsp.dll
O15 - ESC Trusted Zone:
http://runonce.msn.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1310777631078
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\SysWOW64\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\SysWOW64\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe (file missing)
O23 - Service: Event Log (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: HTTP SSL (HTTPFilter) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: IMAPI CD-Burning COM Service (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe (file missing)
O23 - Service: Distributed Transaction Coordinator (MSDTC) - Unknown owner - C:\WINDOWS\system32\msdtc.exe (file missing)
O23 - Service: Net Logon (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NT LM Security Support Provider (NtLmSsp) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\WINDOWS\system32\nvsvc64.exe (file missing)
O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe (file missing)
O23 - Service: IPSEC Services (PolicyAgent) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Protected Storage (ProtectedStorage) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Remote Desktop Help Session Manager (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe (file missing)
O23 - Service: Security Accounts Manager (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Virtual Disk Service (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: Volume Shadow Copy (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe (file missing)
O23 - Service: WMI Performance Adapter (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe (file missing)
O23 - Service: Marvell Yukon Service (yksvc) - Unknown owner - RUNDLL32.EXE (file missing)
--
End of file - 6506 bytes
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\do6mrd27.default
prefs.js - "browser.startup.homepage" - "http://www.google.co.uk"
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
amazon-en-GB.xml
bing.xml
chambers-en-GB.xml
eBay-en-GB.xml
google.xml
wikipedia.xml
yahoo-en-GB.xml
C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\do6mrd27.default\extensions\
DTToolbar@toolbarnet.com
C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\do6mrd27.default\searchplugins\
absearch-search.xml
daemon-search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2011-01-20 988480]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"=C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe [2007-10-09 1036288]
"SoundMAX"=C:\Program Files (x86)\Analog Devices\SoundMAX\Smax4.exe [2007-10-08 864256]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2011-04-21 281768]
"{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"=C:\Program Files (x86)\Google\Gmail Notifier\gnotify.exe [2005-07-15 479232]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2005-03-25 15360]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\EFS]
C:\WINDOWS\system32\sclgntfy.dll [2005-03-25 19968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"system"=lsass.exe []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vds]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled
xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled
xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iv50"=C:\WINDOWS\SysWOW64\ir50_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.l3acm"=C:\WINDOWS\SysWOW64\l3codeca.acm
"msacm.pspgru"=pspgru.acm
======List of files/folders created in the last 1 month======
2011-07-28 18:47:33 ----D---- C:\Documents and Settings\Administrator\Application Data\Audacity
2011-07-28 18:38:48 ----D---- C:\Program Files (x86)\Common Files\Philips Speech Shared
2011-07-28 18:29:50 ----A---- C:\WINDOWS\SysWOW64\psplog.dll
2011-07-28 18:29:50 ----A---- C:\WINDOWS\SysWOW64\msvcr71.dll
2011-07-28 18:29:50 ----A---- C:\WINDOWS\SysWOW64\msvcp71.dll
2011-07-28 18:29:50 ----A---- C:\WINDOWS\SysWOW64\MFC71.dll
2011-07-28 18:29:50 ----A---- C:\WINDOWS\SysWOW64\DPMCtrl.dll
2011-07-28 18:29:18 ----A---- C:\WINDOWS\unins000.exe
2011-07-28 18:27:33 ----D---- C:\Program Files (x86)\AMR Player
2011-07-27 20:08:12 ----D---- C:\rsit
2011-07-27 20:08:12 ----D---- C:\Program Files (x86)\trend micro
2011-07-27 19:55:05 ----D---- C:\Program Files (x86)\Astroburn Toolbar
2011-07-27 19:55:03 ----D---- C:\Documents and Settings\All Users\Application Data\Astroburn Lite
2011-07-27 19:55:01 ----D---- C:\Program Files (x86)\Astroburn Lite
2011-07-27 19:49:38 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2011-07-27 19:49:32 ----D---- C:\Documents and Settings\Administrator\Application Data\DAEMON Tools Lite
2011-07-27 18:06:33 ----A---- C:\WINDOWS\wininit.ini
2011-07-27 17:46:33 ----D---- C:\Program Files (x86)\WinRAR
2011-07-26 20:33:27 ----A---- C:\WINDOWS\ntbtlog.txt
2011-07-26 20:28:42 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2011-07-26 20:28:42 ----D---- C:\Documents and Settings\Administrator\Application Data\SUPERAntiSpyware.com
2011-07-26 20:28:34 ----D---- C:\Documents and Settings\All Users\Application Data\!SASCORE
2011-07-25 15:34:17 ----D---- C:\Documents and Settings\Administrator\Application Data\Malwarebytes
2011-07-25 15:34:10 ----A---- C:\WINDOWS\SysWOW64\drivers\mbamswissarmy.sys
2011-07-25 15:34:06 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-07-25 15:28:58 ----D---- C:\Documents and Settings\Administrator\Application Data\Avira
2011-07-24 23:14:46 ----D---- C:\Program Files (x86)\Google
2011-07-24 20:30:34 ----D---- C:\WINDOWS\pss
2011-07-24 20:18:51 ----A---- C:\WINDOWS\ODBC.INI
2011-07-24 20:17:52 ----D---- C:\Program Files (x86)\Microsoft ActiveSync
2011-07-24 20:17:46 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2011-07-24 20:17:30 ----D---- C:\WINDOWS\SHELLNEW
2011-07-24 20:16:59 ----D---- C:\Program Files (x86)\Microsoft Office
2011-07-24 16:30:33 ----D---- C:\Documents and Settings\Administrator\Application Data\OpenOffice.org
2011-07-24 01:52:41 ----D---- C:\WINDOWS\SysWOW64\AGEIA
2011-07-24 01:52:38 ----D---- C:\Program Files (x86)\AGEIA Technologies
2011-07-24 01:52:27 ----D---- C:\Config.Msi
2011-07-24 01:52:23 ----D---- C:\WINDOWS\nview
2011-07-24 01:52:23 ----D---- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2011-07-24 01:52:23 ----D---- C:\Documents and Settings\All Users\Application Data\nView_Profiles
2011-07-24 01:31:55 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2011-07-24 01:10:05 ----D---- C:\Program Files (x86)\Audacity 1.3 Beta (Unicode)
2011-07-24 00:58:02 ----A---- C:\WINDOWS\unins000.dat
2011-07-24 00:57:46 ----D---- C:\Program Files (x86)\Philips Speech
2011-07-24 00:57:11 ----D---- C:\Program Files (x86)\DSS2Wave
2011-07-24 00:49:50 ----SHD---- C:\RECYCLER
2011-07-18 23:18:27 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2011-07-18 23:18:13 ----D---- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
2011-07-16 16:49:48 ----D---- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
2011-07-16 16:49:40 ----D---- C:\Documents and Settings\All Users\Application Data\NVIDIA
2011-07-16 16:49:23 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2011-07-16 16:44:22 ----D---- C:\NVIDIA
2011-07-16 16:36:36 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2011-07-16 16:35:13 ----A---- C:\WINDOWS\nsreg.dat
2011-07-16 16:35:12 ----D---- C:\Documents and Settings\Administrator\Application Data\Mozilla
2011-07-16 16:35:07 ----D---- C:\Program Files (x86)\Mozilla Firefox
2011-07-16 16:31:57 ----D---- C:\Program Files (x86)\Avira
2011-07-16 16:31:57 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2011-07-16 04:21:06 ----D---- C:\Program Files (x86)\Microsoft.NET
2011-07-16 03:53:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM11x64$
2011-07-16 03:42:59 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM11x64$
2011-07-16 03:42:49 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM11x64$
2011-07-16 03:42:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM11x64$
2011-07-16 03:42:24 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2011-07-16 03:41:45 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM11x64$
2011-07-16 03:41:31 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11x64$
2011-07-16 03:41:27 ----HDC---- C:\WINDOWS\$NtUninstallKB941569_WM11$
2011-07-16 03:41:21 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2011-07-16 03:41:12 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2011-07-16 03:26:28 ----SD---- C:\WINDOWS\SysWOW64\config
2011-07-16 03:24:18 ----D---- C:\WINDOWS\SysWOW64\XPSViewer
2011-07-16 03:24:15 ----D---- C:\Program Files (x86)\MSBuild
2011-07-16 03:24:05 ----D---- C:\Program Files (x86)\Reference Assemblies
2011-07-16 03:22:49 ----A---- C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2011-07-16 03:22:14 ----RSD---- C:\WINDOWS\assembly
2011-07-16 03:21:29 ----D---- C:\WINDOWS\Microsoft.NET
2011-07-16 03:20:36 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2011-07-16 03:20:29 ----D---- C:\Program Files (x86)\MSXML 6.0
2011-07-16 03:19:36 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2011-07-16 03:19:06 ----HDC---- C:\WINDOWS\$NtUninstallwmp11-64$
2011-07-16 03:18:39 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11-64$
2011-07-16 03:18:25 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2011-07-16 03:06:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$
2011-07-16 03:06:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2011-07-16 03:06:05 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2011-07-16 03:05:58 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\url.dll
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\mshtmled.dll
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\iepeers.dll
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\dxtrans.dll
2011-07-16 02:59:46 ----A---- C:\WINDOWS\SysWOW64\dxtmsft.dll
2011-07-16 02:59:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2011-07-16 02:59:09 ----D---- C:\WINDOWS\ie7updates
2011-07-16 02:58:21 ----D---- C:\WINDOWS\WBEM
2011-07-16 02:58:21 ----D---- C:\WINDOWS\SysWOW64\en-US
2011-07-16 02:55:36 ----HDC---- C:\WINDOWS\ie7
2011-07-16 02:55:27 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2011-07-16 02:55:17 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2011-07-16 02:46:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2544521$
2011-07-16 02:45:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-16 02:45:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-07-16 02:45:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2530548$
2011-07-16 02:45:05 ----HDC---- C:\WINDOWS\$NtUninstallKB2503665$
2011-07-16 02:45:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2011-07-16 02:44:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276$
2011-07-16 02:44:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2011-07-16 02:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893$
2011-07-16 02:44:45 ----HDC---- C:\WINDOWS\$NtUninstallKB2524375$
2011-07-16 02:44:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2011-07-16 02:44:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2011-07-16 02:44:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2510587$
2011-07-16 02:44:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2011-07-16 02:44:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2508272$
2011-07-16 02:44:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2011-07-16 02:44:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2011-07-16 02:44:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2011-07-16 02:44:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2011-07-16 02:44:00 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2011-07-16 02:43:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2011-07-16 02:43:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2011-07-16 02:43:35 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2011-07-16 02:43:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2011-07-16 02:43:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2419635$
2011-07-16 02:43:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2011-07-16 02:43:16 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2011-07-16 02:43:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2011-07-16 02:43:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2011-07-16 02:43:06 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2011-07-16 02:43:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-07-16 02:42:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111$
2011-07-16 02:42:48 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2011-07-16 02:42:44 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2011-07-16 02:42:38 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2011-07-16 02:42:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2011-07-16 02:42:31 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2011-07-16 02:42:27 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2011-07-16 02:42:23 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2011-07-16 02:42:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2011-07-16 02:42:13 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2011-07-16 02:42:09 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2011-07-16 02:42:05 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2011-07-16 02:42:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2011-07-16 02:41:57 ----HDC---- C:\WINDOWS\$NtUninstallKB978695$
2011-07-16 02:41:53 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2011-07-16 02:41:48 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2011-07-16 02:41:44 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2011-07-16 02:41:36 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2011-07-16 02:41:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2011-07-16 02:41:29 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2011-07-16 02:41:26 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2011-07-16 02:41:22 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2011-07-16 02:41:18 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2011-07-16 02:41:12 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2011-07-16 02:41:07 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2011-07-16 02:41:02 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2011-07-16 02:40:58 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2011-07-16 02:40:52 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2011-07-16 02:40:48 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2011-07-16 02:40:44 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2011-07-16 02:40:38 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2011-07-16 02:40:34 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2011-07-16 02:40:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2011-07-16 02:40:26 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2011-07-16 02:40:22 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2011-07-16 02:40:18 ----HDC---- C:\WINDOWS\$NtUninstallKB954155$
2011-07-16 02:40:15 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2011-07-16 02:40:11 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2011-07-16 02:40:07 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2011-07-16 02:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2011-07-16 02:40:00 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2011-07-16 02:39:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2011-07-16 02:39:48 ----HDC---- C:\WINDOWS\$NtUninstallKB958469$
2011-07-16 02:39:42 ----HDC---- C:\WINDOWS\$NtUninstallKB973540$
2011-07-16 02:39:34 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2011-07-16 02:39:25 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2011-07-16 02:39:15 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2011-07-16 02:39:10 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2011-07-16 02:39:07 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2011-07-16 02:38:59 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2011-07-16 02:38:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2011-07-16 02:38:40 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2011-07-16 02:38:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2011-07-16 02:38:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952069$
2011-07-16 02:38:28 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2011-07-16 02:38:24 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2011-07-16 02:38:20 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2011-07-16 02:38:17 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2011-07-16 02:38:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2011-07-16 02:38:11 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2011-07-16 02:38:08 ----HDC---- C:\WINDOWS\$NtUninstallKB946026$
2011-07-16 02:38:05 ----HDC---- C:\WINDOWS\$NtUninstallKB944653$
2011-07-16 02:38:02 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2011-07-16 02:37:58 ----HDC---- C:\WINDOWS\$NtUninstallKB925398_WMP64$
2011-07-16 02:37:44 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2011-07-16 02:37:40 ----HDC---- C:\WINDOWS\$NtUninstallKB924667-v2$
2011-07-16 02:37:34 ----HDC---- C:\WINDOWS\$NtUninstallKB927891$
2011-07-16 02:37:30 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2011-07-16 02:37:24 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2011-07-16 02:37:16 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2011-07-16 02:37:14 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdukx.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdsmsno.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdsmsfi.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdpash.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdno1.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdnepr.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdmlt48.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdmlt47.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdmaori.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdiultn.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdfi1.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\kbdbhc.dll
2011-07-16 02:17:19 ----N---- C:\WINDOWS\SysWOW64\icacls.exe
2011-07-16 02:17:18 ----N---- C:\WINDOWS\SysWOW64\xmllite.dll
2011-07-16 02:17:18 ----N---- C:\WINDOWS\SysWOW64\w03a2409.dll
2011-07-16 02:17:18 ----N---- C:\WINDOWS\SysWOW64\verclsid.exe
2011-07-16 02:17:18 ----N---- C:\WINDOWS\SysWOW64\setupn.exe
2011-07-16 02:17:17 ----D---- C:\WINDOWS\SysWOW64\en
2011-07-16 02:17:17 ----D---- C:\WINDOWS\adfs
2011-07-16 02:16:19 ----D---- C:\WINDOWS\ServicePackFiles
2011-07-16 02:15:54 ----A---- C:\WINDOWS\explorer.exe
2011-07-16 02:15:52 ----N---- C:\WINDOWS\SysWOW64\advpack.dll
2011-07-16 02:15:52 ----A---- C:\WINDOWS\SysWOW64\apphelp.dll
2011-07-16 02:15:51 ----A---- C:\WINDOWS\SysWOW64\cabinet.dll
2011-07-16 02:15:49 ----A---- C:\WINDOWS\SysWOW64\comdlg32.dll
2011-07-16 02:15:48 ----A---- C:\WINDOWS\SysWOW64\cryptui.dll
2011-07-16 02:15:48 ----A---- C:\WINDOWS\SysWOW64\cryptnet.dll
2011-07-16 02:15:48 ----A---- C:\WINDOWS\SysWOW64\crypt32.dll
2011-07-16 02:15:48 ----A---- C:\WINDOWS\SysWOW64\corpol.dll
2011-07-16 02:15:45 ----A---- C:\WINDOWS\SysWOW64\dsound.dll
2011-07-16 02:15:42 ----A---- C:\WINDOWS\SysWOW64\hnetcfg.dll
2011-07-16 02:15:41 ----A---- C:\WINDOWS\SysWOW64\imm32.dll
2011-07-16 02:15:41 ----A---- C:\WINDOWS\SysWOW64\imagehlp.dll
2011-07-16 02:15:40 ----A---- C:\WINDOWS\SysWOW64\iphlpapi.dll
2011-07-16 02:15:38 ----A---- C:\WINDOWS\SysWOW64\mlang.dll
2011-07-16 02:15:37 ----A---- C:\WINDOWS\SysWOW64\mpr.dll
2011-07-16 02:15:36 ----A---- C:\WINDOWS\SysWOW64\msacm32.dll
2011-07-16 02:15:34 ----A---- C:\WINDOWS\SysWOW64\msihnd.dll
2011-07-16 02:15:34 ----A---- C:\WINDOWS\SysWOW64\msiexec.exe
2011-07-16 02:15:32 ----A---- C:\WINDOWS\SysWOW64\msvcrt.dll
2011-07-16 02:15:32 ----A---- C:\WINDOWS\SysWOW64\msv1_0.dll
2011-07-16 02:15:27 ----A---- C:\WINDOWS\SysWOW64\olecnv32.dll
2011-07-16 02:15:27 ----A---- C:\WINDOWS\SysWOW64\olecli32.dll
2011-07-16 02:15:26 ----A---- C:\WINDOWS\SysWOW64\psapi.dll
2011-07-16 02:15:25 ----A---- C:\WINDOWS\SysWOW64\rasman.dll
2011-07-16 02:15:25 ----A---- C:\WINDOWS\SysWOW64\rasapi32.dll
2011-07-16 02:15:25 ----A---- C:\WINDOWS\SysWOW64\rasadhlp.dll
2011-07-16 02:15:24 ----A---- C:\WINDOWS\SysWOW64\rsaenh.dll
2011-07-16 02:15:22 ----A---- C:\WINDOWS\SysWOW64\sfc_os.dll
2011-07-16 02:15:22 ----A---- C:\WINDOWS\SysWOW64\setupapi.dll
2011-07-16 02:15:22 ----A---- C:\WINDOWS\SysWOW64\sensapi.dll
2011-07-16 02:15:19 ----A---- C:\WINDOWS\SysWOW64\tapi32.dll
2011-07-16 02:15:19 ----A---- C:\WINDOWS\SysWOW64\sxs.dll
2011-07-16 02:15:17 ----A---- C:\WINDOWS\SysWOW64\uxtheme.dll
2011-07-16 02:15:17 ----A---- C:\WINDOWS\SysWOW64\userenv.dll
2011-07-16 02:15:15 ----A---- C:\WINDOWS\SysWOW64\wldap32.dll
2011-07-16 02:15:15 ----A---- C:\WINDOWS\SysWOW64\winrnr.dll
2011-07-16 02:15:15 ----A---- C:\WINDOWS\SysWOW64\winmm.dll
2011-07-16 02:15:12 ----A---- C:\WINDOWS\SysWOW64\wshtcpip.dll
2011-07-16 02:15:12 ----A---- C:\WINDOWS\SysWOW64\ws2_32.dll
2011-07-16 02:15:12 ----A---- C:\WINDOWS\SysWOW64\ws03res.dll
2011-07-16 02:15:11 ----A---- C:\WINDOWS\SysWOW64\wups.dll
2011-07-16 02:15:11 ----A---- C:\WINDOWS\SysWOW64\wuapi.dll
2011-07-16 02:15:10 ----A---- C:\WINDOWS\SysWOW64\xpsp2res.dll
2011-07-16 02:09:31 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2011-07-16 02:09:30 ----AD---- C:\WINDOWS\PolicyBackup
2011-07-16 01:59:04 ----A---- C:\WINDOWS\imsins.BAK
2011-07-16 01:59:01 ----D---- C:\Program Files (x86)\Common Files\ODBC
2011-07-16 01:59:00 ----SHD---- C:\WINDOWS\Installer
2011-07-16 01:58:59 ----A---- C:\WINDOWS\ODBCINST.INI
2011-07-16 01:58:56 ----D---- C:\Program Files (x86)\Common Files\SpeechEngines
2011-07-16 01:58:56 ----D---- C:\Program Files (x86)\Common Files\Microsoft Shared
2011-07-16 01:58:55 ----RD---- C:\Program Files (x86)
2011-07-16 01:58:55 ----RD---- C:\Program Files
2011-07-16 01:58:55 ----D---- C:\Program Files (x86)\Common Files
2011-07-16 01:58:54 ----A---- C:\WINDOWS\SysWOW64\kbdtuq.dll
2011-07-16 01:58:54 ----A---- C:\WINDOWS\SysWOW64\kbdtuf.dll
2011-07-16 01:58:54 ----A---- C:\WINDOWS\SysWOW64\kbdazel.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdycc.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbduzb.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdur.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdtat.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdru1.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdru.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdmon.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdkyr.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdkaz.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdhept.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdhela3.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdhela2.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdhe319.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdhe220.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdhe.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdgkl.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdbu.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdblr.dll
2011-07-16 01:58:53 ----A---- C:\WINDOWS\SysWOW64\kbdaze.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdycl.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdsl1.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdsl.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdro.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdpl1.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdpl.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdlv1.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdlv.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdlt1.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdlt.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdhu1.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdhu.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdest.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdcz2.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdcz1.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdcz.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\kbdcr.dll
2011-07-16 01:58:52 ----A---- C:\WINDOWS\SysWOW64\KBDAL.DLL
2011-07-16 01:58:42 ----A---- C:\WINDOWS\SysWOW64\CONFIG.TMP
2011-07-16 01:58:42 ----A---- C:\WINDOWS\SysWOW64\AUTOEXEC.TMP
2011-07-16 01:58:42 ----A---- C:\WINDOWS\NOTEPAD.EXE
2011-07-16 01:58:41 ----A---- C:\WINDOWS\system.ini
2011-07-16 01:58:34 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2011-07-16 01:58:31 ----RA---- C:\WINDOWS\SET5.tmp
2011-07-16 01:58:30 ----RA---- C:\WINDOWS\SET3.tmp
2011-07-16 01:58:18 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2011-07-16 01:58:12 ----A---- C:\WINDOWS\setuplog.txt
2011-07-16 01:58:10 ----SHD---- C:\System Volume Information
2011-07-16 01:58:10 ----D---- C:\Documents and Settings
2011-07-16 01:56:52 ----RSH---- C:\boot.ini
2011-07-16 01:54:22 ----D---- C:\WINDOWS\SysWOW64\SoftwareDistribution
2011-07-16 01:51:18 ----D---- C:\Program Files (x86)\Marvell
2011-07-16 01:50:52 ----RSD---- C:\WINDOWS\Fonts
2011-07-16 01:50:52 ----RD---- C:\WINDOWS\Web
2011-07-16 01:50:52 ----HD---- C:\WINDOWS\inf
2011-07-16 01:50:52 ----D---- C:\WINDOWS\WinSxS
2011-07-16 01:50:52 ----D---- C:\WINDOWS\twain_32
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Temp
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\wbem
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\usmt
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\mui
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\InstallShield
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\ias
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\export
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\Drivers
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\3076
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\2052
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1054
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1042
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1041
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1037
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1033
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1031
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1028
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64\1025
2011-07-16 01:50:52 ----D---- C:\WINDOWS\SysWOW64
2011-07-16 01:50:52 ----D---- C:\WINDOWS\system32
2011-07-16 01:50:52 ----D---- C:\WINDOWS\system
2011-07-16 01:50:52 ----D---- C:\WINDOWS\srchasst
2011-07-16 01:50:52 ----D---- C:\WINDOWS\security
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Resources
2011-07-16 01:50:52 ----D---- C:\WINDOWS\repair
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Provisioning
2011-07-16 01:50:52 ----D---- C:\WINDOWS\mui
2011-07-16 01:50:52 ----D---- C:\WINDOWS\msapps
2011-07-16 01:50:52 ----D---- C:\WINDOWS\msagent64
2011-07-16 01:50:52 ----D---- C:\WINDOWS\msagent
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Media
2011-07-16 01:50:52 ----D---- C:\WINDOWS\ime (x86)
2011-07-16 01:50:52 ----D---- C:\WINDOWS\ime
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Help
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Driver Cache
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Debug
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Cursors
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Connection Wizard
2011-07-16 01:50:52 ----D---- C:\WINDOWS\Config
2011-07-16 01:50:52 ----D---- C:\WINDOWS\AppPatch
2011-07-16 01:50:52 ----D---- C:\WINDOWS\addins
2011-07-16 01:50:52 ----D---- C:\WINDOWS
2011-07-16 01:50:51 ----ASH---- C:\pagefile.sys
2011-07-16 01:33:12 ----N---- C:\WINDOWS\SysWOW64\wdmioctl.dll
2011-07-16 01:33:12 ----N---- C:\WINDOWS\SysWOW64\SMMedia.dll
2011-07-16 01:33:11 ----N---- C:\WINDOWS\SysWOW64\DSndUp.exe
2011-07-16 01:33:11 ----N---- C:\WINDOWS\SysWOW64\CleanUp.exe
2011-07-16 01:33:11 ----D---- C:\Program Files (x86)\Analog Devices
2011-07-16 01:32:51 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2011-07-16 01:30:28 ----HDC---- C:\WINDOWS\$NtUninstallKB901105$
2011-07-16 01:26:35 ----D---- C:\WINDOWS\AsusInstAll
2011-07-16 01:24:10 ----D---- C:\WINDOWS\NV30523056.TMP
2011-07-16 01:22:25 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-07-16 01:22:25 ----D---- C:\Program Files (x86)\AMD
2011-07-16 01:22:21 ----D---- C:\Documents and Settings\Administrator\Application Data\InstallShield
2011-07-16 01:22:00 ----A---- C:\WINDOWS\Ascd_log.ini
2011-07-16 01:21:08 ----A---- C:\WINDOWS\Language_trs.ini
2011-07-16 01:21:03 ----A---- C:\WINDOWS\SysWOW64\drivers\ASUSHWIO.SYS
2011-07-16 01:21:03 ----A---- C:\WINDOWS\Ascd_tmp.ini
2011-07-16 01:18:06 ----D---- C:\Documents and Settings\Administrator\Application Data\Identities
2011-07-16 01:17:59 ----SD---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2011-07-16 01:17:59 ----ASH---- C:\Documents and Settings\Administrator\Application Data\desktop.ini
2011-07-16 01:17:55 ----D---- C:\WINDOWS\SoftwareDistribution
2011-07-16 01:17:53 ----D---- C:\WINDOWS\Prefetch
2011-07-16 01:16:30 ----AS---- C:\WINDOWS\bootstat.dat
2011-07-16 01:13:45 ----D---- C:\WINDOWS\SysWOW64\inetsrv
2011-07-16 01:13:45 ----D---- C:\WINDOWS\SysWOW64\ime
2011-07-16 01:13:45 ----D---- C:\Program Files (x86)\system
2011-07-16 01:13:45 ----D---- C:\Program Files (x86)\speechengines
2011-07-16 01:13:45 ----D---- C:\Program Files (x86)\microsoft shared
2011-07-16 01:13:28 ----RASH---- C:\MSDOS.SYS
2011-07-16 01:13:28 ----RASH---- C:\IO.SYS
2011-07-16 01:13:28 ----A---- C:\WINDOWS\control.ini
2011-07-16 01:13:28 ----A---- C:\CONFIG.SYS
2011-07-16 01:13:28 ----A---- C:\AUTOEXEC.BAT
2011-07-16 01:13:18 ----A---- C:\WINDOWS\SysWOW64\mapi32.dll
2011-07-16 01:13:12 ----A---- C:\WINDOWS\OEWABLog.txt
2011-07-16 01:12:38 ----HD---- C:\Program Files (x86)\Uninstall Information
2011-07-16 01:12:28 ----RAH---- C:\WINDOWS\SysWOW64\drivers\hfile.txt
2011-07-16 01:11:53 ----A---- C:\WINDOWS\SysWOW64\nmevtmsg.dll
2011-07-16 01:11:53 ----A---- C:\WINDOWS\SysWOW64\isrdbg32.dll
2011-07-16 01:11:53 ----A---- C:\WINDOWS\SysWOW64\ils.dll
2011-07-16 01:11:52 ----A---- C:\WINDOWS\SysWOW64\nmmkcert.dll
2011-07-16 01:11:52 ----A---- C:\WINDOWS\SysWOW64\msconf.dll
2011-07-16 01:11:52 ----A---- C:\WINDOWS\SysWOW64\mnmsrvc.exe
2011-07-16 01:11:52 ----A---- C:\WINDOWS\SysWOW64\mnmdd.dll
2011-07-16 01:11:49 ----D---- C:\Program Files (x86)\NetMeeting
2011-07-16 01:11:46 ----SD---- C:\WINDOWS\Downloaded Program Files
2011-07-16 01:11:46 ----RD---- C:\WINDOWS\Offline Web Pages
2011-07-16 01:11:41 ----A---- C:\WINDOWS\SysWOW64\eula.txt
2011-07-16 01:11:30 ----A---- C:\WINDOWS\win.ini
2011-07-16 01:11:21 ----D---- C:\WINDOWS\SysWOW64\Macromed
2011-07-16 01:11:19 ----A---- C:\WINDOWS\SysWOW64\wuweb.dll
2011-07-16 01:11:19 ----A---- C:\WINDOWS\SysWOW64\wups2.dll
2011-07-16 01:11:19 ----A---- C:\WINDOWS\SysWOW64\wuaueng.dll
2011-07-16 01:11:18 ----A---- C:\WINDOWS\SysWOW64\qmgrprxy.dll
2011-07-16 01:11:18 ----A---- C:\WINDOWS\SysWOW64\bitsprx3.dll
2011-07-16 01:11:18 ----A---- C:\WINDOWS\SysWOW64\bitsprx2.dll
2011-07-16 01:11:15 ----D---- C:\Program Files (x86)\Movie Maker
2011-07-16 01:11:08 ----SH---- C:\Program Files (x86)\desktop.ini
2011-07-16 01:11:08 ----A---- C:\WINDOWS\desktop.ini
2011-07-16 01:11:03 ----A---- C:\WINDOWS\SysWOW64\srclient.dll
2011-07-16 01:11:02 ----D---- C:\WINDOWS\PCHEALTH
2011-07-16 01:11:02 ----A---- C:\WINDOWS\SysWOW64\msoert2.dll
2011-07-16 01:11:02 ----A---- C:\WINDOWS\SysWOW64\acctres.dll
2011-07-16 01:11:01 ----D---- C:\Program Files (x86)\Common Files\Services
2011-07-16 01:11:01 ----A---- C:\WINDOWS\SysWOW64\msoeacct.dll
2011-07-16 01:10:59 ----A---- C:\WINDOWS\SysWOW64\inetres.dll
2011-07-16 01:10:59 ----A---- C:\WINDOWS\SysWOW64\inetcomm.dll
2011-07-16 01:10:57 ----D---- C:\Program Files (x86)\Outlook Express
2011-07-16 01:10:54 ----A---- C:\WINDOWS\SysWOW64\schedsvc.dll
2011-07-16 01:10:54 ----A---- C:\WINDOWS\SysWOW64\mstinit.exe
2011-07-16 01:10:54 ----A---- C:\WINDOWS\SysWOW64\mstask.dll
2011-07-16 01:10:53 ----SD---- C:\WINDOWS\Tasks
2011-07-16 01:10:53 ----A---- C:\WINDOWS\SysWOW64\isign32.dll
2011-07-16 01:10:53 ----A---- C:\WINDOWS\SysWOW64\inetcfg.dll
2011-07-16 01:10:53 ----A---- C:\WINDOWS\SysWOW64\icwphbk.dll
2011-07-16 01:10:53 ----A---- C:\WINDOWS\SysWOW64\icwdial.dll
2011-07-16 01:10:53 ----A---- C:\WINDOWS\SysWOW64\icfgnt5.dll
2011-07-16 01:10:47 ----D---- C:\Program Files (x86)\Common Files\System
2011-07-16 01:10:43 ----D---- C:\Program Files (x86)\Internet Explorer
2011-07-16 01:10:13 ----A---- C:\WINDOWS\vbaddin.ini
2011-07-16 01:10:13 ----A---- C:\WINDOWS\vb.ini
2011-07-16 01:10:11 ----D---- C:\WINDOWS\Registration
2011-07-16 01:09:52 ----D---- C:\Program Files (x86)\Windows Media Player
2011-07-16 01:09:45 ----D---- C:\Program Files (x86)\MSN Gaming Zone
2011-07-16 01:09:45 ----A---- C:\WINDOWS\SysWOW64\write.exe
2011-07-16 01:09:43 ----D---- C:\Program Files (x86)\Windows NT
2011-07-16 01:09:41 ----A---- C:\WINDOWS\SysWOW64\accwiz.exe
2011-07-16 01:09:37 ----A---- C:\WINDOWS\SysWOW64\winchat.exe
2011-07-16 01:09:35 ----A---- C:\WINDOWS\SysWOW64\mspaint.exe
2011-07-16 01:09:29 ----A---- C:\WINDOWS\SysWOW64\clipbrd.exe
2011-07-16 01:09:28 ----A---- C:\WINDOWS\SysWOW64\getuname.dll
2011-07-16 01:09:28 ----A---- C:\WINDOWS\SysWOW64\charmap.exe
2011-07-16 01:09:27 ----A---- C:\WINDOWS\SysWOW64\calc.exe
2011-07-16 01:09:26 ----A---- C:\WINDOWS\SysWOW64\winmine.exe
2011-07-16 01:09:26 ----A---- C:\WINDOWS\SysWOW64\spider.exe
2011-07-16 01:09:26 ----A---- C:\WINDOWS\SysWOW64\sol.exe
2011-07-16 01:09:25 ----A---- C:\WINDOWS\SysWOW64\mshearts.exe
2011-07-16 01:09:25 ----A---- C:\WINDOWS\SysWOW64\freecell.exe
2011-07-16 01:09:20 ----D---- C:\Program Files (x86)\MSN
2011-07-16 01:09:18 ----A---- C:\WINDOWS\SysWOW64\qwinsta.exe
2011-07-16 01:09:18 ----A---- C:\WINDOWS\SysWOW64\qprocess.exe
2011-07-16 01:09:18 ----A---- C:\WINDOWS\SysWOW64\qappsrv.exe
2011-07-16 01:09:18 ----A---- C:\WINDOWS\SysWOW64\mstscax.dll
2011-07-16 01:09:16 ----D---- C:\WINDOWS\SysWOW64\Com
2011-07-16 01:09:16 ----A---- C:\WINDOWS\SysWOW64\mtxlegih.dll
2011-07-16 01:09:16 ----A---- C:\WINDOWS\SysWOW64\mtxex.dll
2011-07-16 01:09:16 ----A---- C:\WINDOWS\SysWOW64\mtxdm.dll
2011-07-16 01:09:16 ----A---- C:\WINDOWS\SysWOW64\comuid.dll
2011-07-16 01:09:16 ----A---- C:\WINDOWS\SysWOW64\comsnap.dll
2011-07-16 01:09:16 ----A---- C:\WINDOWS\SysWOW64\comadmin.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\stclient.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\comsvcs.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\comaddin.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\colbact.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\clbcatq.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\clbcatex.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\catsrvut.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\catsrvps.dll
2011-07-16 01:09:15 ----A---- C:\WINDOWS\SysWOW64\catsrv.dll
2011-07-16 01:09:12 ----A---- C:\WINDOWS\SysWOW64\xolehlp.dll
2011-07-16 01:09:12 ----A---- C:\WINDOWS\SysWOW64\mtxoci.dll
2011-07-16 01:09:11 ----A---- C:\WINDOWS\SysWOW64\msdtcuiu.dll
2011-07-16 01:09:11 ----A---- C:\WINDOWS\SysWOW64\msdtcprx.dll
2011-07-16 01:09:09 ----A---- C:\WINDOWS\SysWOW64\servdeps.dll
2011-07-16 01:09:08 ----A---- C:\WINDOWS\SysWOW64\mmfutil.dll