Just nu i M3-nätverket
Gå till innehåll

Sjuuukt långsam vista-dator


evaprivat

Rekommendera Poster

 

 

Sen jag köpte min dator för ett år sedan har den blivit så enormt långsam! Jag har kört virus-, adware- och spywareprogram till leda. Defragmenterat och rensat hårddisken. Rensat cookies och annat gammalt. Tagit bort vissa autostartprogram. CPU-användningen ligger ofta på 100%. Det som ligger högst på listan är nästan alltid sidopanelen. Men man tycker ju att datorn borde vara dimensionerad för att klara den, den var ju trots allt förinstallerad med sidopanelen (och den var ju inte långsam i början!). På andra plats ligger oftast Crazy Browser.

Dessutom blir dator ofta mkt varm! CPU-tempen kan gå upp emot 80 grader, hårddisken 60 grader...! Men det har jag nu löst med en fläkt (ska man verkligen behöva det???). Den blev dock inte snabbare.

 

Har det någon betydelse att min D-drive är väldigt full (5% ledigt)? Inga program körs ju från D.

 

Info om datorn:

Acer Aspire 5100

Processor AMD Turion 64 Mobile technology MK-38 2.20 GHz

Minne (RAM) 2,00 GB

32-bitars operativsystem

 

Tacksam för tips.

 

 

Länk till kommentar
Dela på andra webbplatser

Det som ligger högst på listan är nästan alltid sidopanelen.
Och om du stänger av den?

 

Dessutom blir dator ofta mkt varm! CPU-tempen kan gå upp emot 80 grader,
Beror väl på att den ligger och kör så vansinnigt mycket.

 

Länk till kommentar
Dela på andra webbplatser

En anledning till att sidpanelen börjar snurra extra mycket kan vara för att någon enstaka gadget inte beter sig som den ska. Så prova med att plocka bort gadgets och se om cpuanvändningen går ned.

 

Länk till kommentar
Dela på andra webbplatser

Bara för det så låg sidpanelen på blott 7% nu när jag kollade.... Crazy Browser låg på ca 22%. Kör sladdlöst nu (se nedan).

 

Men en skum grej slog mig så sent som igår (vet därför inte riktigt om det stämmer eller inte). Varje gång jag kör sladdlöst är den normalsnabb. Sen när strömkabeln sitter i är den seg. Måste köra lite till för att se om det stämmer...... Tyvärr har den här datorn usel batterikapacitet (typ 1 timme) så man kör i princip alltid med sladd. Men kan det vara så????

 

Länk till kommentar
Dela på andra webbplatser

Crazy Browser låg på ca 22%.
Hmm, en webbläsare som inte håller på att ladda sidor eller håller på och visar rörliga bilder ska ju inte dra så mycket CPU. Är du säker på att du inte har fått in något skadligt tillägg till webbläsaren? Vad har du använt för program för att kolla upp datorn?

 

Länk till kommentar
Dela på andra webbplatser

Gick in och kollade en stund, jag har bara en sida öppen (Aftonbladet). Först låg det runt 10 i någon minut. Sen gick det upp till ca 60 (!!) i ca 2 minuter. Sen gick det ner till 10 igen.

 

 

Nu gjorde jag samma sak men med en mer "normal" hemsida öppen, utan en massa blinkande jox. Då låg det still mellan 0 och 2...... Är aftonbladet så himla krävande???

 

 

Samma sak när jag öppnade Aftonbladet i i-explorer, i-e gick upp till 60 direkt..

 

Det var ett tag sen jag körde alla dessa rensningsprogram så jag kommer inte ihåg längre vilka det var.....

 

[inlägget ändrat 2008-09-09 09:44:26 av evaprivat]

[inlägget ändrat 2008-09-09 09:47:58 av evaprivat]

Länk till kommentar
Dela på andra webbplatser

Men obs! Jag har inte aftonbladet el fyl öppet jämt, den är långsam ändå!!! Men som sagt, värre när den är nätansluten ?!??!?

 

Länk till kommentar
Dela på andra webbplatser

Det är ju många bärbara som stänger ner funktioner när de går på batteri.

 

Men visst kan jag kolla om det syns till något skadligt tillägg.

Ladda ner HijackThis:

http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe

Installera, starta och välj "Do a system scan and save a logfile", kopiera loggen som kommer upp (inget annat).

 

I ditt svar bifogar du HijackThis-loggen på detta sätt:

Tryck på LOG-knappen i Besvara-fönstret

Klistra in loggen

Tryck igen på LOG-knappen

 

Länk till kommentar
Dela på andra webbplatser

[log]

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 11:18:50, on 2008-09-09

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

 

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\Grisoft\AVG7\avgcc.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Windows\RtHDVCpl.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\Personal\bin\Personal.exe

C:\Program Files\Option\Telenor Mobilt Bredband\Telenor Mobilt Bredband.exe

C:\Program Files\WinZip\WZQKPICK.EXE

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

C:\Windows\ehome\ehmsas.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

C:\Program Files\Huawei technologies\Mobile Connect\Mobile Connect.exe

C:\Program Files\Crazy Browser\Crazy Browser.exe

C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE

C:\Program Files\Internet Explorer\IEUser.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.rd.yahoo.com/customize/ycomp/defaults/sp/*http://uk.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aftonbladet.se/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://sv.intl.acer.yahoo.com'>http://sv.intl.acer.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://sv.intl.acer.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.yahoo.com/customize/ycomp/defaults/su/*http://uk.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O1 - Hosts: ::1 localhost

O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe

O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [startCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKCU\..\Run: [?????????] ??????????????e

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O4 - Global Startup: Personal.lnk = C:\Program Files\Personal\bin\Personal.exe

O4 - Global Startup: Telenor Mobilt Bredband.lnk = C:\Program Files\Option\Telenor Mobilt Bredband\Telenor Mobilt Bredband.exe

O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Skicka till &Bluetooth - C:\Program Files\D-Link\Bluetooth-programvara\btsendto_ie_ctx.htm

O8 - Extra context menu item: Skicka till &Bluetooth-enhet... - C:\Program Files\D-Link\Bluetooth Software\btsendto_ie_ctx.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra button: Skicka till OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Ski&cka till OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: HP Klippbok - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: HP Smart markering - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O13 - Gopher Prefix:

O15 - Trusted Zone: *.handelsbanken.se

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab

O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab

O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/FacebookPhotoUploader4_5.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{73E5F585-4E3B-4FE2-B59E-753ECC0BFAF4}: NameServer = 194.230.1.103 194.230.1.71

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O20 - AppInit_DLLs: eNetHook.dll

O20 - Winlogon Notify: avgwlntf - C:\Windows\SYSTEM32\avgwlntf.dll

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe

O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe

O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe

O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe

O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe

O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe

O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe

O23 - Service: GtDetectSc - OptionNV - C:\Program Files\Option\Telenor Mobilt Bredband\GtDetectSc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe

O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

 

--

End of file - 10643 bytes[/log]

 

 

Tack snälla!!

 

Länk till kommentar
Dela på andra webbplatser

Befinner du dig i Schweiz? Det finns DNS-inställningar som pekar på en DNS-server där.

 

Använder sig Crazy Browser av de tillägg som är installerade i Internet Explorer? Du har t ex HPs Smart Web Printing installerat i IE.

 

Det är en gammal Java-version med säkerhetshål i datorn. Jag rekommenderar dig att installera en ny från http://www.java.com/sv/ och därefter avinstallera alla Java/J2SE/JRE utom den senaste i Kontrollpanelen - Lägg till eller ta bort program (inga webbläsare igång).

 

Det har kommit en ny version av AVG antivirus så det är bra att uppgradera.

AVG Anti-Spyware är på väg bort så det är dags att tänka på att byta ut det till ett annat program.

 

Kontrollpanelen - Administrationsverktyg - Tjänster

Leta upp Symantec Lic NetConnect service i listan, dubbelklicka och välj Startmetod Inaktiverad.

 

Den här raden ser ju väldigt skum ut:

O4 - HKCU\..\Run: [?????????] ??????????????e

Har du någon aning om vad det kan vara? Får du något meddelande när du loggar in?

 

Länk till kommentar
Dela på andra webbplatser

Japp, jag är i Schweiz!

 

Tror att Crazy Brozser använder sig av Internet Explorers tillägg. Men vad ska jag med HP Smart Web Printing till? Hur tar jag bort eländet??

 

04 - HKCU....... ingen aning!!! Nej, jag får inget meddelande!

 

 

 

Ska fixa det du sa (JAVA, AVG och Inaktivera startmetod) men måste ge bebisen mat och en promenad nu! Återkommer!

 

Länk till kommentar
Dela på andra webbplatser

Men vad ska jag med HP Smart Web Printing till?
Det är inget elände, det var bara ett exempel på ett installerat tillägg.

http://www.idg.se/2.1085/1.143947

http://www.idg.se/2.1085/1.160747

 

Vi får väl kolla upp den där ?-raden lite mer då.

Ladda ner RSIT (random's system information tool) till Skrivbordet

http://images.malwareremoval.com/random/RSIT.exe

Starta programmet och klistra in båda loggarna som kommer ut. Om de inte kommer upp automatiskt så finns de i mappen C:\rsit som log.txt och info.txt.

 

 

Länk till kommentar
Dela på andra webbplatser

Om jag går in på Kontrollpanelen -- avinstallera program så har jag (efter installation av nyaste versionen) endast dessa 4 i listan;

Java 6 Update 2

Java 6 Update 3

Java 6 Update 7

Java SE Runtime Environment 6 Update 1

 

Avinstallera nåt?

 

Länk till kommentar
Dela på andra webbplatser

[log]

Logfile of random's system information tool (written by random/random)

Run by eva at 2008-09-09 12:29:54

Microsoft® Windows Vista™ Home Premium Service Pack 1

System drive C: has 30 GB (42%) free of 72 GB

Total RAM: 1789 MB (50% free)

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 12:29:56, on 2008-09-09

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

 

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\Grisoft\AVG7\avgcc.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Windows\RtHDVCpl.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\Personal\bin\Personal.exe

C:\Program Files\Option\Telenor Mobilt Bredband\Telenor Mobilt Bredband.exe

C:\Program Files\WinZip\WZQKPICK.EXE

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

C:\Windows\ehome\ehmsas.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

C:\Program Files\Huawei technologies\Mobile Connect\Mobile Connect.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\Windows\system32\NOTEPAD.EXE

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE

C:\Program Files\Internet Explorer\IEUser.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\HP\Smart Web Printing\hpswp_clipbook.exe

C:\Windows\system32\conime.exe

C:\Windows\system32\Macromed\Flash\FlashUtil9f.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Users\eva\Desktop\RSIT.exe

C:\Program Files\Trend Micro\HijackThis\eva.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.rd.yahoo.com/customize/ycomp/defaults/sp/*http://uk.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aftonbladet.se/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://sv.intl.acer.yahoo.com'>http://sv.intl.acer.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://sv.intl.acer.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.yahoo.com/customize/ycomp/defaults/su/*http://uk.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O1 - Hosts: ::1 localhost

O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe

O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [startCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKCU\..\Run: [?????????] ??????????????e

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O4 - Global Startup: Personal.lnk = C:\Program Files\Personal\bin\Personal.exe

O4 - Global Startup: Telenor Mobilt Bredband.lnk = C:\Program Files\Option\Telenor Mobilt Bredband\Telenor Mobilt Bredband.exe

O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Skicka till &Bluetooth - C:\Program Files\D-Link\Bluetooth-programvara\btsendto_ie_ctx.htm

O8 - Extra context menu item: Skicka till &Bluetooth-enhet... - C:\Program Files\D-Link\Bluetooth Software\btsendto_ie_ctx.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~4.0_0\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~4.0_0\bin\ssv.dll

O9 - Extra button: Skicka till OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Ski&cka till OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: HP Klippbok - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: HP Smart markering - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O13 - Gopher Prefix:

O15 - Trusted Zone: *.handelsbanken.se

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab

O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab

O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/FacebookPhotoUploader4_5.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{73E5F585-4E3B-4FE2-B59E-753ECC0BFAF4}: NameServer = 194.230.1.103 194.230.1.71

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O20 - AppInit_DLLs: eNetHook.dll

O20 - Winlogon Notify: avgwlntf - C:\Windows\SYSTEM32\avgwlntf.dll

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe

O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe

O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe

O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe

O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe

O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe

O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe

O23 - Service: GtDetectSc - OptionNV - C:\Program Files\Option\Telenor Mobilt Bredband\GtDetectSc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe

O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

 

--

End of file - 10942 bytes

 

Registry dump

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]

HP Print Clips - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]

Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Windows Live inloggningshjälpen - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2007-09-20 328752]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Windows\system32\eDStoolbar.dll [2007-01-02 151552]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]

"Acer Tour"= []

"SetPanel"= []

"WarReg_PopUp"=C:\Acer\WR_PopUp\WarReg_PopUp.exe [2006-11-05 57344]

"eRecoveryService"= []

"Acer Tour Reminder"=C:\Acer\AcerTour\Reminder.exe [2007-01-14 151552]

"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2007-08-24 33648]

"AVG7_CC"=C:\PROGRA~1\Grisoft\AVG7\avgcc.exe [2008-04-15 579584]

"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-23 815104]

"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2006-12-01 4186112]

"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2008-07-10 116040]

"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-05-27 413696]

"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-07-30 289064]

"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

 

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-19 1233920]

""= []

"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]

"????r"= []

"?????????"=??????????????e []

"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]

 

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup

Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

Personal.lnk - C:\Program Files\Personal\bin\Personal.exe

Telenor Mobilt Bredband.lnk - C:\Program Files\Option\Telenor Mobilt Bredband\Telenor Mobilt Bredband.exe

WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLS"="eNetHook.dll"

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgwlntf]

C:\Windows\system32\avgwlntf.dll [2007-10-20 9216]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"=C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [2007-05-30 79408]

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Driver]

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Guard]

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AVG Anti-Spyware Driver]

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AVG Anti-Spyware Guard]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"dontdisplaylastusername"=0

"legalnoticecaption"=

"legalnoticetext"=

"shutdownwithoutlogon"=1

"undockwithoutlogon"=1

"EnableUIADesktopToggle"=0

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

"C:\Acer\Empowering Technology\eDataSecurity\eDSfsu.exe"="C:\Acer\Empowering Technology\eDataSecurity\eDSfsu.exe:*:Enabled:eDSfsu"

"C:\Acer\Empowering Technology\eDataSecurity\encryption.exe"="C:\Acer\Empowering Technology\eDataSecurity\encryption.exe:*:Enabled:encryption"

"C:\Acer\Empowering Technology\eDataSecurity\decryption.exe"="C:\Acer\Empowering Technology\eDataSecurity\decryption.exe:*:Enabled:decryption"

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{183af78f-6c27-11dc-ae03-d222f7194c18}]

shell\AutoRun\command - F:\Programs\nu2menu\nu2menu.exe

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{447c32da-6395-11dd-b8e3-806e6f6e6963}]

shell\AutoRun\command - F:\AutoRun.exe

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4c57fa78-41be-11dd-b541-0016d4d52eb7}]

shell\AutoRun\command - F:\AutoRun.exe

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{65c16bcb-3cfa-11dc-9eff-0016d4d52eb7}]

shell\AutoRun\command - F:\.\setup.exe AUTORUN=1

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{877d3200-e874-11dc-b10e-0016d4d52eb7}]

shell\AutoRun\command - F:\AutoRun.exe

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{877d3227-e874-11dc-b10e-0016d4d52eb7}]

shell\AutoRun\command - F:\AutoRun.exe

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ac6948e6-ee9f-11dc-97af-0016d4d52eb7}]

shell\AutoRun\command - F:\AutoRun.exe

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ac694904-ee9f-11dc-97af-0016d4d52eb7}]

shell\AutoRun\command - F:\AutoRun.exe

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d8b91491-281a-11dd-8dbd-0016d4d52eb7}]

shell\AutoRun\command - F:\setup.exe AUTORUN=1

 

 

List of files/folders created in the last three months

 

2008-09-09 12:29:54 ----D---- C:\rsit

2008-09-09 12:29:54 ----D---- \rsit

2008-09-09 12:18:38 ----A---- C:\Windows\system32\javaws.exe

2008-09-09 12:18:38 ----A---- C:\Windows\system32\javaw.exe

2008-09-09 12:18:38 ----A---- C:\Windows\system32\java.exe

2008-09-09 11:17:30 ----D---- C:\Program Files\Trend Micro

2008-08-28 14:07:48 ----D---- C:\Program Files\Paint.NET

2008-08-21 09:07:37 ----A---- C:\Windows\system32\wups2.dll

2008-08-21 09:07:37 ----A---- C:\Windows\system32\wucltux.dll

2008-08-21 09:07:37 ----A---- C:\Windows\system32\wuaueng.dll

2008-08-21 09:07:37 ----A---- C:\Windows\system32\wuauclt.exe

2008-08-21 09:07:06 ----A---- C:\Windows\system32\wups.dll

2008-08-21 09:07:06 ----A---- C:\Windows\system32\wudriver.dll

2008-08-21 09:07:06 ----A---- C:\Windows\system32\wuapi.dll

2008-08-21 09:06:57 ----A---- C:\Windows\system32\wuwebv.dll

2008-08-21 09:06:57 ----A---- C:\Windows\system32\wuapp.exe

2008-08-14 12:01:48 ----A---- C:\Windows\system32\tzres.dll

2008-08-14 08:46:58 ----A---- C:\Windows\system32\IPSECSVC.DLL

2008-08-14 08:46:54 ----A---- C:\Windows\system32\es.dll

2008-08-14 08:46:46 ----A---- C:\Windows\system32\mshtml.dll

2008-08-14 08:46:26 ----A---- C:\Windows\system32\ieframe.dll

2008-08-14 08:46:19 ----A---- C:\Windows\system32\wininet.dll

2008-08-14 08:46:18 ----A---- C:\Windows\system32\urlmon.dll

2008-08-14 08:46:15 ----A---- C:\Windows\system32\mstime.dll

2008-08-14 08:46:15 ----A---- C:\Windows\system32\jsproxy.dll

2008-08-14 08:45:01 ----A---- C:\Windows\system32\inetcomm.dll

2008-08-09 20:14:20 ----D---- C:\Program Files\Apple Software Update

2008-08-02 15:47:09 ----D---- C:\Program Files\iPod

2008-08-02 15:47:05 ----D---- C:\Program Files\iTunes

2008-07-29 08:33:44 ----A---- C:\Windows\system32\msshooks.dll

2008-07-29 08:33:42 ----A---- C:\Windows\system32\msscb.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\thawbrkr.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\SearchFilterHost.exe

2008-07-29 08:33:36 ----A---- C:\Windows\system32\propsys.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\propdefs.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\msstrc.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\mssprxy.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\mssitlb.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\msshsq.dll

2008-07-29 08:33:36 ----A---- C:\Windows\system32\korwbrkr.dll

2008-07-29 08:33:35 ----A---- C:\Windows\system32\srchadmin.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\xmlfilter.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\wsepno.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\rtffilt.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\offfilt.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\nlhtml.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\msscntrs.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\mimefilt.dll

2008-07-29 08:33:33 ----A---- C:\Windows\system32\chsbrkr.dll

2008-07-29 08:33:32 ----A---- C:\Windows\system32\SearchProtocolHost.exe

2008-07-29 08:33:32 ----A---- C:\Windows\system32\SearchIndexer.exe

2008-07-29 08:33:32 ----A---- C:\Windows\system32\chtbrkr.dll

2008-07-29 08:33:31 ----A---- C:\Windows\system32\tquery.dll

2008-07-29 08:33:31 ----A---- C:\Windows\system32\mssvp.dll

2008-07-29 08:33:31 ----A---- C:\Windows\system32\mssrch.dll

2008-07-29 08:33:31 ----A---- C:\Windows\system32\mssphtb.dll

2008-07-29 08:33:31 ----A---- C:\Windows\system32\mssph.dll

2008-07-14 13:19:45 ----A---- C:\Windows\system32\NlsLexicons0007.dll

2008-07-14 13:19:42 ----A---- C:\Windows\system32\NlsLexicons0009.dll

2008-07-14 13:19:31 ----A---- C:\Windows\system32\NaturalLanguage6.dll

2008-07-13 17:48:31 ----D---- C:\Program Files\Bonjour

2008-07-13 17:47:38 ----D---- C:\Program Files\QuickTime

2008-07-09 13:24:11 ----A---- C:\Windows\system32\rpcrt4.dll

2008-07-09 13:24:10 ----A---- C:\Windows\system32\ntoskrnl.exe

2008-07-09 13:24:10 ----A---- C:\Windows\system32\ntkrnlpa.exe

2008-07-09 13:24:10 ----A---- C:\Windows\system32\emdmgmt.dll

2008-07-09 13:24:09 ----A---- C:\Windows\system32\pacerprf.dll

2008-07-09 13:24:04 ----A---- C:\Windows\system32\shell32.dll

2008-07-09 13:23:05 ----A---- C:\Windows\system32\vbscript.dll

2008-07-09 13:23:04 ----A---- C:\Windows\system32\wshext.dll

2008-07-09 13:23:04 ----A---- C:\Windows\system32\wscript.exe

2008-07-09 13:23:04 ----A---- C:\Windows\system32\scrrun.dll

2008-07-09 13:23:04 ----A---- C:\Windows\system32\scrobj.dll

2008-07-09 13:23:04 ----A---- C:\Windows\system32\jscript.dll

2008-07-09 13:23:04 ----A---- C:\Windows\system32\cscript.exe

2008-06-26 19:31:05 ----D---- C:\PerfLogs

2008-06-26 19:31:05 ----D---- \PerfLogs

2008-06-26 18:31:21 ----A---- C:\Windows\system32\SLsvc.exe

2008-06-26 18:31:21 ----A---- C:\Windows\system32\onex.dll

2008-06-26 18:30:34 ----A---- C:\Windows\system32\PSHED.DLL

2008-06-26 18:30:29 ----A---- C:\Windows\system32\imagesp1.dll

2008-06-26 18:30:24 ----A---- C:\Windows\system32\dfsr.exe

2008-06-26 18:30:22 ----A---- C:\Windows\system32\pidgenx.dll

2008-06-26 18:30:19 ----A---- C:\Windows\system32\sstpsvc.dll

2008-06-26 18:30:19 ----A---- C:\Windows\system32\mstscax.dll

2008-06-26 18:30:14 ----A---- C:\Windows\system32\WsmSvc.dll

2008-06-26 18:30:14 ----A---- C:\Windows\system32\winrscmd.dll

2008-06-26 18:30:13 ----A---- C:\Windows\system32\sysmain.dll

2008-06-26 18:30:12 ----A---- C:\Windows\system32\RMActivate.exe

2008-06-26 18:30:11 ----A---- C:\Windows\system32\vssapi.dll

2008-06-26 18:30:10 ----A---- C:\Windows\system32\VSSVC.exe

2008-06-26 18:30:10 ----A---- C:\Windows\system32\PresentationNative_v0300.dll

2008-06-26 18:30:09 ----A---- C:\Windows\system32\secproc.dll

2008-06-26 18:30:09 ----A---- C:\Windows\system32\RMActivate_isv.exe

2008-06-26 18:30:08 ----A---- C:\Windows\system32\iesetup.dll

2008-06-26 18:30:02 ----A---- C:\Windows\system32\secproc_isv.dll

2008-06-26 18:29:58 ----A---- C:\Windows\system32\icardres.dll

2008-06-26 18:29:58 ----A---- C:\Windows\system32\drmv2clt.dll

2008-06-26 18:29:57 ----A---- C:\Windows\system32\icardagt.exe

2008-06-26 18:29:57 ----A---- C:\Windows\system32\blackbox.dll

2008-06-26 18:29:56 ----A---- C:\Windows\system32\xpssvcs.dll

2008-06-26 18:29:54 ----A---- C:\Windows\system32\RacEngn.dll

2008-06-26 18:29:53 ----A---- C:\Windows\system32\RMActivate_ssp.exe

2008-06-26 18:29:52 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe

2008-06-26 18:29:52 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL

2008-06-26 18:29:50 ----A---- C:\Windows\system32\spwizimg.dll

2008-06-26 18:29:50 ----A---- C:\Windows\system32\rdpencom.dll

2008-06-26 18:29:49 ----A---- C:\Windows\system32\lpremove.exe

2008-06-26 18:29:49 ----A---- C:\Windows\bfsvc.exe

2008-06-26 18:29:48 ----A---- C:\Windows\system32\msxml6.dll

2008-06-26 18:29:48 ----A---- C:\Windows\system32\msxml3.dll

2008-06-26 18:29:47 ----A---- C:\Windows\system32\msjet40.dll

2008-06-26 18:29:46 ----A---- C:\Windows\system32\ntdll.dll

2008-06-26 18:29:46 ----A---- C:\Windows\system32\lsasrv.dll

2008-06-26 18:29:45 ----A---- C:\Windows\system32\qmgr.dll

2008-06-26 18:29:45 ----A---- C:\Windows\system32\localspl.dll

2008-06-26 18:29:43 ----A---- C:\Windows\system32\wevtsvc.dll

2008-06-26 18:29:43 ----A---- C:\Windows\system32\IKEEXT.DLL

2008-06-26 18:29:42 ----A---- C:\Windows\system32\wcncsvc.dll

2008-06-26 18:29:42 ----A---- C:\Windows\system32\TsWpfWrp.exe

2008-06-26 18:29:42 ----A---- C:\Windows\system32\recdisc.exe

2008-06-26 18:29:42 ----A---- C:\Windows\system32\mscoree.dll

2008-06-26 18:29:42 ----A---- C:\Windows\system32\kernel32.dll

2008-06-26 18:29:39 ----A---- C:\Windows\system32\CompMgmtLauncher.exe

2008-06-26 18:29:38 ----A---- C:\Windows\system32\vds.exe

2008-06-26 18:29:31 ----A---- C:\Windows\system32\wmp.dll

2008-06-26 18:29:29 ----A---- C:\Windows\system32\wcnwiz.dll

2008-06-26 18:29:29 ----A---- C:\Windows\system32\SMBHelperClass.dll

2008-06-26 18:29:29 ----A---- C:\Windows\system32\msvbvm60.dll

2008-06-26 18:29:29 ----A---- C:\Windows\system32\mstsc.exe

2008-06-26 18:29:28 ----A---- C:\Windows\system32\msdtctm.dll

2008-06-26 18:29:28 ----A---- C:\Windows\system32\mf.dll

2008-06-26 18:29:27 ----A---- C:\Windows\system32\termsrv.dll

2008-06-26 18:29:27 ----A---- C:\Windows\system32\kerberos.dll

2008-06-26 18:29:27 ----A---- C:\Windows\system32\IMJP10K.DLL

2008-06-26 18:29:27 ----A---- C:\Windows\system32\advapi32.dll

2008-06-26 18:29:26 ----A---- C:\Windows\system32\mmcndmgr.dll

2008-06-26 18:29:25 ----A---- C:\Windows\system32\Query.dll

2008-06-26 18:29:25 ----A---- C:\Windows\system32\MSMPEG2ADEC.DLL

2008-06-26 18:29:25 ----A---- C:\Windows\system32\MPSSVC.dll

2008-06-26 18:29:25 ----A---- C:\Windows\system32\CertEnroll.dll

2008-06-26 18:29:24 ----A---- C:\Windows\system32\xolehlp.dll

2008-06-26 18:29:24 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll

2008-06-26 18:29:24 ----A---- C:\Windows\system32\ole32.dll

2008-06-26 18:29:24 ----A---- C:\Windows\system32\msdtcprx.dll

2008-06-26 18:29:23 ----A---- C:\Windows\system32\SSShim.dll

2008-06-26 18:29:23 ----A---- C:\Windows\system32\netlogon.dll

2008-06-26 18:29:23 ----A---- C:\Windows\system32\msvcrt.dll

2008-06-26 18:29:23 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll

2008-06-26 18:29:22 ----A---- C:\Windows\system32\shlwapi.dll

2008-06-26 18:29:22 ----A---- C:\Windows\system32\sdclt.exe

2008-06-26 18:29:22 ----A---- C:\Windows\system32\schedsvc.dll

2008-06-26 18:29:22 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe

2008-06-26 18:29:22 ----A---- C:\Windows\system32\nlmgp.dll

2008-06-26 18:29:22 ----A---- C:\Windows\system32\IasMigPlugin.dll

2008-06-26 18:29:22 ----A---- C:\Windows\system32\DfsShlEx.dll

2008-06-26 18:29:21 ----A---- C:\Windows\system32\wer.dll

2008-06-26 18:29:21 ----A---- C:\Windows\system32\user32.dll

2008-06-26 18:29:21 ----A---- C:\Windows\system32\milcore.dll

2008-06-26 18:29:21 ----A---- C:\Windows\system32\clusapi.dll

2008-06-26 18:29:20 ----A---- C:\Windows\system32\WSDApi.dll

2008-06-26 18:29:20 ----A---- C:\Windows\system32\vdsdyn.dll

2008-06-26 18:29:20 ----A---- C:\Windows\system32\QAGENTRT.DLL

2008-06-26 18:29:20 ----A---- C:\Windows\system32\diagperf.dll

2008-06-26 18:29:20 ----A---- C:\Windows\system32\d3d9.dll

2008-06-26 18:29:19 ----A---- C:\Windows\system32\winrsmgr.dll

2008-06-26 18:29:19 ----A---- C:\Windows\system32\mmc.exe

2008-06-26 18:29:18 ----A---- C:\Windows\system32\vdsbas.dll

2008-06-26 18:29:18 ----A---- C:\Windows\system32\swprv.dll

2008-06-26 18:29:18 ----A---- C:\Windows\system32\SLC.dll

2008-06-26 18:29:18 ----A---- C:\Windows\system32\mtxclu.dll

2008-06-26 18:29:18 ----A---- C:\Windows\system32\msi.dll

2008-06-26 18:29:17 ----A---- C:\Windows\system32\comctl32.dll

2008-06-26 18:29:16 ----A---- C:\Windows\system32\XPSSHHDR.dll

2008-06-26 18:29:16 ----A---- C:\Windows\system32\MSVidCtl.dll

2008-06-26 18:29:16 ----A---- C:\Windows\system32\msdtckrm.dll

2008-06-26 18:29:16 ----A---- C:\Windows\system32\gpsvc.dll

2008-06-26 18:29:15 ----A---- C:\Windows\system32\wecutil.exe

2008-06-26 18:29:15 ----A---- C:\Windows\system32\sbe.dll

2008-06-26 18:29:15 ----A---- C:\Windows\system32\samsrv.dll

2008-06-26 18:29:15 ----A---- C:\Windows\system32\mfc42u.dll

2008-06-26 18:29:15 ----A---- C:\Windows\system32\FWPUCLNT.DLL

2008-06-26 18:29:15 ----A---- C:\Windows\system32\esent.dll

2008-06-26 18:29:14 ----A---- C:\Windows\system32\usp10.dll

2008-06-26 18:29:14 ----A---- C:\Windows\system32\sdengin2.dll

2008-06-26 18:29:14 ----A---- C:\Windows\system32\mfc42.dll

2008-06-26 18:29:14 ----A---- C:\Windows\system32\gacinstall.dll

2008-06-26 18:29:14 ----A---- C:\Windows\system32\cmipnpinstall.dll

2008-06-26 18:29:14 ----A---- C:\Windows\system32\cmicryptinstall.dll

2008-06-26 18:29:13 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll

2008-06-26 18:29:13 ----A---- C:\Windows\system32\crypt32.dll

2008-06-26 18:29:13 ----A---- C:\Windows\system32\comsvcs.dll

2008-06-26 18:29:13 ----A---- C:\Windows\system32\certutil.exe

2008-06-26 18:29:12 ----A---- C:\Windows\system32\mswsock.dll

2008-06-26 18:29:12 ----A---- C:\Windows\explorer.exe

2008-06-26 18:29:11 ----A---- C:\Windows\system32\wmdrmsdk.dll

2008-06-26 18:29:11 ----A---- C:\Windows\system32\sqlceqp30.dll

2008-06-26 18:29:11 ----A---- C:\Windows\system32\setupapi.dll

2008-06-26 18:29:11 ----A---- C:\Windows\system32\oleaut32.dll

2008-06-26 18:29:11 ----A---- C:\Windows\system32\lsm.exe

2008-06-26 18:29:11 ----A---- C:\Windows\system32\FirewallAPI.dll

2008-06-26 18:29:11 ----A---- C:\Windows\system32\bcrypt.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\wecsvc.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\sdohlp.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\schannel.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\p2psvc.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\netapi32.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\msv1_0.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\iphlpsvc.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\eapp3hst.dll

2008-06-26 18:29:10 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll

2008-06-26 18:29:09 ----A---- C:\Windows\system32\wmpmde.dll

2008-06-26 18:29:09 ----A---- C:\Windows\system32\thumbcache.dll

2008-06-26 18:29:09 ----A---- C:\Windows\system32\riched20.dll

2008-06-26 18:29:09 ----A---- C:\Windows\system32\mcmde.dll

2008-06-26 18:29:09 ----A---- C:\Windows\system32\autofmt.exe

2008-06-26 18:29:09 ----A---- C:\Windows\system32\autoconv.exe

2008-06-26 18:29:09 ----A---- C:\Windows\system32\autochk.exe

2008-06-26 18:29:08 ----A---- C:\Windows\system32\WinSAT.exe

2008-06-26 18:29:08 ----A---- C:\Windows\system32\vdsutil.dll

2008-06-26 18:29:08 ----A---- C:\Windows\system32\imapi2fs.dll

2008-06-26 18:29:08 ----A---- C:\Windows\system32\d3d10_1.dll

2008-06-26 18:29:08 ----A---- C:\Windows\system32\authui.dll

2008-06-26 18:29:08 ----A---- C:\Windows\system32\authfwcfg.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\WSDMon.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\wevtapi.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\mscories.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\eapphost.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\dmvdsitf.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\d3d10_1core.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\comuid.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\comdlg32.dll

2008-06-26 18:29:07 ----A---- C:\Windows\system32\browseui.dll

2008-06-26 18:29:06 ----A---- C:\Windows\system32\wevtfwd.dll

2008-06-26 18:29:06 ----A---- C:\Windows\system32\uexfat.dll

2008-06-26 18:29:06 ----A---- C:\Windows\system32\rasmans.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\wlansvc.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\whealogr.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\untfs.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\sqlcese30.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\pcaui.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\iassam.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\eappcfg.dll

2008-06-26 18:29:05 ----A---- C:\Windows\system32\DfrgNtfs.exe

2008-06-26 18:29:03 ----A---- C:\Windows\system32\dot3svc.dll

2008-06-26 18:29:02 ----A---- C:\Windows\system32\rdpwsx.dll

2008-06-26 18:29:01 ----A---- C:\Windows\system32\mssha.dll

2008-06-26 18:29:01 ----A---- C:\Windows\system32\msdrm.dll

2008-06-26 18:29:00 ----A---- C:\Windows\system32\zipfldr.dll

2008-06-26 18:29:00 ----A---- C:\Windows\system32\WsmAuto.dll

2008-06-26 18:29:00 ----A---- C:\Windows\system32\winhttp.dll

2008-06-26 18:29:00 ----A---- C:\Windows\system32\rpcss.dll

2008-06-26 18:29:00 ----A---- C:\Windows\system32\nlasvc.dll

2008-06-26 18:29:00 ----A---- C:\Windows\system32\evr.dll

2008-06-26 18:29:00 ----A---- C:\Windows\system32\dfrgui.exe

2008-06-26 18:28:59 ----A---- C:\Windows\system32\rasppp.dll

2008-06-26 18:28:59 ----A---- C:\Windows\system32\ncrypt.dll

2008-06-26 18:28:59 ----A---- C:\Windows\system32\BFE.DLL

2008-06-26 18:28:59 ----A---- C:\Windows\system32\audiosrv.dll

2008-06-26 18:28:58 ----A---- C:\Windows\system32\WMVCORE.DLL

2008-06-26 18:28:58 ----A---- C:\Windows\system32\wmdrmdev.dll

2008-06-26 18:28:58 ----A---- C:\Windows\system32\msrepl40.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\WsmWmiPl.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\win32spl.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\WebClnt.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\rastls.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\printui.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\objsel.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\dhcpcsvc6.dll

2008-06-26 18:28:57 ----A---- C:\Windows\system32\ddraw.dll

2008-06-26 18:28:56 ----A---- C:\Windows\system32\themecpl.dll

2008-06-26 18:28:55 ----A---- C:\Windows\system32\w32time.dll

2008-06-26 18:28:55 ----A---- C:\Windows\system32\sqlsrv32.dll

2008-06-26 18:28:55 ----A---- C:\Windows\system32\QAGENT.DLL

2008-06-26 18:28:55 ----A---- C:\Windows\system32\iasnap.dll

2008-06-26 18:28:55 ----A---- C:\Windows\system32\dbghelp.dll

2008-06-26 18:28:54 ----A---- C:\Windows\system32\PresentationHost.exe

2008-06-26 18:28:54 ----A---- C:\Windows\system32\ncryptui.dll

2008-06-26 18:28:54 ----A---- C:\Windows\system32\icm32.dll

2008-06-26 18:28:53 ----A---- C:\Windows\system32\wmdrmnet.dll

2008-06-26 18:28:53 ----A---- C:\Windows\system32\WerFaultSecure.exe

2008-06-26 18:28:53 ----A---- C:\Windows\system32\spoolss.dll

2008-06-26 18:28:53 ----A---- C:\Windows\system32\iprtrmgr.dll

2008-06-26 18:28:53 ----A---- C:\Windows\system32\azroles.dll

2008-06-26 18:28:52 ----A---- C:\Windows\system32\msctf.dll

2008-06-26 18:28:52 ----A---- C:\Windows\system32\infocardapi.dll

2008-06-26 18:28:52 ----A---- C:\Windows\system32\basecsp.dll

2008-06-26 18:28:51 ----A---- C:\Windows\system32\winsrv.dll

2008-06-26 18:28:51 ----A---- C:\Windows\system32\taskschd.dll

2008-06-26 18:28:51 ----A---- C:\Windows\system32\bcdedit.exe

2008-06-26 18:28:50 ----A---- C:\Windows\system32\wlangpui.dll

2008-06-26 18:28:47 ----A---- C:\Windows\system32\mstlsapi.dll

2008-06-26 18:28:46 ----A---- C:\Windows\system32\scksp.dll

2008-06-26 18:28:46 ----A---- C:\Windows\system32\AudioEng.dll

2008-06-26 18:28:43 ----A---- C:\Windows\system32\winsta.dll

2008-06-26 18:28:43 ----A---- C:\Windows\system32\netprofm.dll

2008-06-26 18:28:42 ----A---- C:\Windows\system32\dbgeng.dll

2008-06-26 18:28:40 ----A---- C:\Windows\system32\rsaenh.dll

2008-06-26 18:28:40 ----A---- C:\Windows\system32\netcfgx.dll

2008-06-26 18:28:35 ----A---- C:\Windows\system32\taskcomp.dll

2008-06-26 18:28:34 ----A---- C:\Windows\system32\cdosys.dll

2008-06-26 18:28:33 ----A---- C:\Windows\system32\winlogon.exe

2008-06-26 18:28:32 ----A---- C:\Windows\system32\wercon.exe

2008-06-26 18:28:32 ----A---- C:\Windows\system32\lpksetup.exe

2008-06-26 18:28:31 ----A---- C:\Windows\system32\sqmapi.dll

2008-06-26 18:28:31 ----A---- C:\Windows\system32\dfshim.dll

2008-06-26 18:28:30 ----A---- C:\Windows\system32\wlansec.dll

2008-06-26 18:28:30 ----A---- C:\Windows\system32\msdtcuiu.dll

2008-06-26 18:28:30 ----A---- C:\Windows\system32\apds.dll

2008-06-26 18:28:29 ----A---- C:\Windows\system32\mprddm.dll

2008-06-26 18:28:29 ----A---- C:\Windows\system32\iasrad.dll

2008-06-26 18:28:29 ----A---- C:\Windows\system32\certcli.dll

2008-06-26 18:28:28 ----A---- C:\Windows\system32\tsgqec.dll

2008-06-26 18:28:28 ----A---- C:\Windows\system32\shdocvw.dll

2008-06-26 18:28:28 ----A---- C:\Windows\system32\eapsvc.dll

2008-06-26 18:28:28 ----A---- C:\Windows\system32\AUDIOKSE.dll

2008-06-26 18:28:28 ----A---- C:\Windows\system32\aaclient.dll

2008-06-26 18:28:27 ----A---- C:\Windows\system32\certmgr.dll

2008-06-26 18:28:27 ----A---- C:\Windows\system32\bcdsrv.dll

2008-06-26 18:28:26 ----A---- C:\Windows\system32\Wldap32.dll

2008-06-26 18:28:26 ----A---- C:\Windows\system32\uDWM.dll

2008-06-26 18:28:26 ----A---- C:\Windows\system32\msidcrl30.dll

2008-06-26 18:28:26 ----A---- C:\Windows\system32\dnsapi.dll

2008-06-26 18:28:25 ----A---- C:\Windows\system32\umpnpmgr.dll

2008-06-26 18:28:24 ----A---- C:\Windows\system32\WMVDECOD.DLL

2008-06-26 18:28:24 ----A---- C:\Windows\system32\pla.dll

2008-06-26 18:28:23 ----A---- C:\Windows\system32\dxgi.dll

2008-06-26 18:28:22 ----A---- C:\Windows\system32\netshell.dll

2008-06-26 18:28:22 ----A---- C:\Windows\system32\dot3gpui.dll

2008-06-26 18:28:21 ----A---- C:\Windows\system32\wmicmiplugin.dll

2008-06-26 18:28:20 ----A---- C:\Windows\system32\shsvcs.dll

2008-06-26 18:28:20 ----A---- C:\Windows\system32\ntprint.dll

2008-06-26 18:28:20 ----A---- C:\Windows\system32\cryptnet.dll

2008-06-26 18:28:20 ----A---- C:\Windows\system32\comsnap.dll

2008-06-26 18:28:19 ----A---- C:\Windows\system32\MMDevAPI.dll

2008-06-26 18:28:18 ----A---- C:\Windows\system32\winmm.dll

2008-06-26 18:28:18 ----A---- C:\Windows\system32\NlsData0009.dll

2008-06-26 18:28:17 ----A---- C:\Windows\system32\wscsvc.dll

2008-06-26 18:28:17 ----A---- C:\Windows\system32\synceng.dll

2008-06-26 18:28:17 ----A---- C:\Windows\system32\services.exe

2008-06-26 18:28:17 ----A---- C:\Windows\system32\cmifw.dll

2008-06-26 18:28:16 ----A---- C:\Windows\system32\wscisvif.dll

2008-06-26 18:28:16 ----A---- C:\Windows\system32\pnidui.dll

2008-06-26 18:28:15 ----A---- C:\Windows\system32\taskeng.exe

2008-06-26 18:28:15 ----A---- C:\Windows\system32\msconfig.exe

2008-06-26 18:28:15 ----A---- C:\Windows\system32\iassdo.dll

2008-06-26 18:28:14 ----A---- C:\Windows\system32\WMVSDECD.DLL

2008-06-26 18:28:14 ----A---- C:\Windows\system32\msjtes40.dll

2008-06-26 18:28:14 ----A---- C:\Windows\system32\cipher.exe

2008-06-26 18:28:13 ----A---- C:\Windows\system32\wersvc.dll

2008-06-26 18:28:13 ----A---- C:\Windows\system32\tdh.dll

2008-06-26 18:28:13 ----A---- C:\Windows\system32\rasapi32.dll

2008-06-26 18:28:13 ----A---- C:\Windows\system32\imapi2.dll

2008-06-26 18:28:12 ----A---- C:\Windows\system32\uxtheme.dll

2008-06-26 18:28:12 ----A---- C:\Windows\system32\SessEnv.dll

2008-06-26 18:28:12 ----A---- C:\Windows\system32\dot3api.dll

2008-06-26 18:28:12 ----A---- C:\Windows\system32\dmdskmgr.dll

2008-06-26 18:28:12 ----A---- C:\Windows\system32\cmd.exe

2008-06-26 18:28:11 ----A---- C:\Windows\system32\cbsra.exe

2008-06-26 18:28:11 ----A---- C:\Windows\system32\AuthFWSnapin.dll

2008-06-26 18:28:09 ----A---- C:\Windows\system32\qdvd.dll

2008-06-26 18:28:09 ----A---- C:\Windows\system32\msscp.dll

2008-06-26 18:28:07 ----A---- C:\Windows\system32\wlanmsm.dll

2008-06-26 18:28:07 ----A---- C:\Windows\system32\wlancfg.dll

2008-06-26 18:28:07 ----A---- C:\Windows\system32\wkssvc.dll

2008-06-26 18:28:07 ----A---- C:\Windows\system32\wevtutil.exe

2008-06-26 18:28:07 ----A---- C:\Windows\system32\srvsvc.dll

2008-06-26 18:28:07 ----A---- C:\Windows\system32\loadperf.dll

2008-06-26 18:28:06 ----A---- C:\Windows\system32\WUDFx.dll

2008-06-26 18:28:06 ----A---- C:\Windows\system32\msdtcVSp1res.dll

2008-06-26 18:28:06 ----A---- C:\Windows\system32\diskpart.exe

2008-06-26 18:28:06 ----A---- C:\Windows\system32\comres.dll

2008-06-26 18:28:05 ----A---- C:\Windows\system32\rpchttp.dll

2008-06-26 18:28:05 ----A---- C:\Windows\system32\rdpdd.dll

2008-06-26 18:28:05 ----A---- C:\Windows\system32\mshtmled.dll

2008-06-26 18:28:05 ----A---- C:\Windows\system32\localsec.dll

2008-06-26 18:28:05 ----A---- C:\Windows\system32\fontext.dll

2008-06-26 18:28:04 ----A---- C:\Windows\system32\wlanapi.dll

2008-06-26 18:28:03 ----A---- C:\Windows\system32\WinSATAPI.dll

2008-06-26 18:28:03 ----A---- C:\Windows\system32\hnetcfg.dll

2008-06-26 18:28:03 ----A---- C:\Windows\system32\dsound.dll

2008-06-26 18:28:02 ----A---- C:\Windows\system32\wsqmcons.exe

2008-06-26 18:28:02 ----A---- C:\Windows\system32\WMADMOD.DLL

2008-06-26 18:28:01 ----A---- C:\Windows\system32\wlanpref.dll

2008-06-26 18:28:01 ----A---- C:\Windows\system32\NAPMONTR.DLL

2008-06-26 18:28:00 ----A---- C:\Windows\system32\avifil32.dll

2008-06-26 18:27:59 ----A---- C:\Windows\system32\profprov.dll

2008-06-26 18:27:58 ----A---- C:\Windows\system32\RDPENCDD.dll

2008-06-26 18:27:58 ----A---- C:\Windows\system32\filemgmt.dll

2008-06-26 18:27:57 ----A---- C:\Windows\system32\WindowsCodecs.dll

2008-06-26 18:27:57 ----A---- C:\Windows\system32\tracerpt.exe

2008-06-26 18:27:57 ----A---- C:\Windows\system32\PresentationHostProxy.dll

2008-06-26 18:27:57 ----A---- C:\Windows\system32\MuiUnattend.exe

2008-06-26 18:27:57 ----A---- C:\Windows\system32\dnsrslvr.dll

2008-06-26 18:27:56 ----A---- C:\Windows\system32\wsecedit.dll

2008-06-26 18:27:56 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll

2008-06-26 18:27:56 ----A---- C:\Windows\system32\SLCommDlg.dll

2008-06-26 18:27:56 ----A---- C:\Windows\system32\dwmredir.dll

2008-06-26 18:27:56 ----A---- C:\Windows\system32\dhcpcsvc.dll

2008-06-26 18:27:56 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll

2008-06-26 18:27:55 ----A---- C:\Windows\system32\WMSPDMOD.DLL

2008-06-26 18:27:55 ----A---- C:\Windows\system32\wininit.exe

2008-06-26 18:27:55 ----A---- C:\Windows\system32\P2PGraph.dll

2008-06-26 18:27:55 ----A---- C:\Windows\system32\gpresult.exe

2008-06-26 18:27:55 ----A---- C:\Windows\system32\dwm.exe

2008-06-26 18:27:55 ----A---- C:\Windows\system32\apphelp.dll

2008-06-26 18:27:54 ----A---- C:\Windows\system32\spp.dll

2008-06-26 18:27:54 ----A---- C:\Windows\system32\rasdlg.dll

2008-06-26 18:27:54 ----A---- C:\Windows\system32\QSHVHOST.DLL

2008-06-26 18:27:54 ----A---- C:\Windows\system32\iassvcs.dll

2008-06-26 18:27:54 ----A---- C:\Windows\system32\azroleui.dll

2008-06-26 18:27:53 ----A---- C:\Windows\system32\mscorier.dll

2008-06-26 18:27:53 ----A---- C:\Windows\system32\iashost.exe

2008-06-26 18:27:53 ----A---- C:\Windows\HelpPane.exe

2008-06-26 18:27:52 ----A---- C:\Windows\system32\SLUI.exe

2008-06-26 18:27:52 ----A---- C:\Windows\system32\PortableDeviceApi.dll

2008-06-26 18:27:52 ----A---- C:\Windows\system32\mcbuilder.exe

2008-06-26 18:27:51 ----A---- C:\Windows\system32\srrstr.dll

2008-06-26 18:27:51 ----A---- C:\Windows\system32\spwizeng.dll

2008-06-26 18:27:51 ----A---- C:\Windows\system32\rasmontr.dll

2008-06-26 18:27:51 ----A---- C:\Windows\system32\lltdsvc.dll

2008-06-26 18:27:50 ----A---- C:\Windows\system32\wecapi.dll

2008-06-26 18:27:50 ----A---- C:\Windows\system32\unbcl.dll

2008-06-26 18:27:50 ----A---- C:\Windows\system32\tcpmon.dll

2008-06-26 18:27:50 ----A---- C:\Windows\system32\shrink.dll

2008-06-26 18:27:50 ----A---- C:\Windows\system32\msra.exe

2008-06-26 18:27:49 ----A---- C:\Windows\system32\WMPEncEn.dll

2008-06-26 18:27:49 ----A---- C:\Windows\system32\IPHLPAPI.DLL

2008-06-26 18:27:49 ----A---- C:\Windows\system32\iashlpr.dll

2008-06-26 18:27:49 ----A---- C:\Windows\system32\gpedit.dll

2008-06-26 18:27:49 ----A---- C:\Windows\system32\brcpl.dll

2008-06-26 18:27:48 ----A---- C:\Windows\system32\oleacc.dll

2008-06-26 18:27:48 ----A---- C:\Windows\system32\msdri.dll

2008-06-26 18:27:48 ----A---- C:\Windows\system32\iertutil.dll

2008-06-26 18:27:47 ----A---- C:\Windows\system32\raschap.dll

2008-06-26 18:27:47 ----A---- C:\Windows\system32\framedynos.dll

2008-06-26 18:27:46 ----A---- C:\Windows\system32\regsvc.dll

2008-06-26 18:27:43 ----A---- C:\Windows\system32\ntvdm.exe

2008-06-26 18:27:43 ----A---- C:\Windows\system32\fdWSD.dll

2008-06-26 18:27:43 ----A---- C:\Windows\system32\advpack.dll

2008-06-26 18:27:42 ----A---- C:\Windows\system32\vsstrace.dll

2008-06-26 18:27:42 ----A---- C:\Windows\system32\wdc.dll

2008-06-26 18:27:42 ----A---- C:\Windows\system32\PerfCenterCPL.dll

2008-06-26 18:27:42 ----A---- C:\Windows\system32\ntlanman.dll

2008-06-26 18:27:42 ----A---- C:\Windows\system32\ipsmsnap.dll

2008-06-26 18:27:42 ----A---- C:\Windows\system32\Faultrep.dll

2008-06-26 18:27:41 ----A---- C:\Windows\system32\wpdshext.dll

2008-06-26 18:27:41 ----A---- C:\Windows\system32\Storprop.dll

2008-06-26 18:27:41 ----A---- C:\Windows\system32\NetProjW.dll

2008-06-26 18:27:41 ----A---- C:\Windows\system32\netman.dll

2008-06-26 18:27:41 ----A---- C:\Windows\system32\l2nacp.dll

2008-06-26 18:27:41 ----A---- C:\Windows\system32\iedkcs32.dll

2008-06-26 18:27:40 ----A---- C:\Windows\system32\ieapfltr.dll

2008-06-26 18:27:40 ----A---- C:\Windows\system32\framedyn.dll

2008-06-26 18:27:40 ----A---- C:\Windows\system32\dssenh.dll

2008-06-26 18:27:39 ----A---- C:\Windows\system32\WlanMM.dll

2008-06-26 18:27:39 ----A---- C:\Windows\system32\tcpipcfg.dll

2008-06-26 18:27:39 ----A---- C:\Windows\system32\certreq.exe

2008-06-26 18:27:39 ----A---- C:\Windows\system32\adsnt.dll

2008-06-26 18:27:38 ----A---- C:\Windows\system32\WsmProv.dll

2008-06-26 18:27:38 ----A---- C:\Windows\system32\WLanConn.dll

2008-06-26 18:27:38 ----A---- C:\Windows\system32\sxs.dll

2008-06-26 18:27:38 ----A---- C:\Windows\system32\profsvc.dll

2008-06-26 18:27:38 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll

2008-06-26 18:27:38 ----A---- C:\Windows\system32\KMSVC.DLL

2008-06-26 18:27:37 ----A---- C:\Windows\system32\wusa.exe

2008-06-26 18:27:37 ----A---- C:\Windows\system32\WUDFHost.exe

2008-06-26 18:27:37 ----A---- C:\Windows\system32\wlanhlp.dll

2008-06-26 18:27:37 ----A---- C:\Windows\system32\VAN.dll

2008-06-26 18:27:37 ----A---- C:\Windows\system32\userenv.dll

2008-06-26 18:27:37 ----A---- C:\Windows\system32\umb.dll

2008-06-26 18:27:37 ----A---- C:\Windows\system32\ncsi.dll

2008-06-26 18:27:37 ----A---- C:\Windows\system32\IPBusEnum.dll

2008-06-26 18:27:36 ----A---- C:\Windows\system32\WerFault.exe

2008-06-26 18:27:36 ----A---- C:\Windows\system32\ie4uinit.exe

2008-06-26 18:27:36 ----A---- C:\Windows\system32\fundisc.dll

2008-06-26 18:27:35 ----A---- C:\Windows\system32\puiobj.dll

2008-06-26 18:27:35 ----A---- C:\Windows\system32\cryptui.dll

2008-06-26 18:27:35 ----A---- C:\Windows\system32\catsrvut.dll

2008-06-26 18:27:34 ----A---- C:\Windows\system32\NlsData000c.dll

2008-06-26 18:27:33 ----A---- C:\Windows\system32\NlsData0007.dll

2008-06-26 18:27:33 ----A---- C:\Windows\system32\netid.dll

2008-06-26 18:27:33 ----A---- C:\Windows\system32\dps.dll

2008-06-26 18:27:32 ----A---- C:\Windows\system32\photowiz.dll

2008-06-26 18:27:32 ----A---- C:\Windows\system32\NlsData0011.dll

2008-06-26 18:27:32 ----A---- C:\Windows\system32\netcenter.dll

2008-06-26 18:27:32 ----A---- C:\Windows\system32\MdSched.exe

2008-06-26 18:27:32 ----A---- C:\Windows\system32\InkEd.dll

2008-06-26 18:27:30 ----A---- C:\Windows\system32\NlsData004b.dll

2008-06-26 18:27:30 ----A---- C:\Windows\system32\NlsData0047.dll

2008-06-26 18:27:29 ----A---- C:\Windows\system32\NlsData0046.dll

2008-06-26 18:27:29 ----A---- C:\Windows\system32\ipsecsnp.dll

2008-06-26 18:27:28 ----A---- C:\Windows\system32\NlsData004a.dll

2008-06-26 18:27:28 ----A---- C:\Windows\system32\NlsData0049.dll

2008-06-26 18:27:28 ----A---- C:\Windows\system32\NlsData0045.dll

2008-06-26 18:27:27 ----A---- C:\Windows\system32\WinSCard.dll

2008-06-26 18:27:27 ----A---- C:\Windows\system32\NlsData004e.dll

2008-06-26 18:27:27 ----A---- C:\Windows\system32\NlsData004c.dll

2008-06-26 18:27:26 ----A---- C:\Windows\system32\spbcd.dll

2008-06-26 18:27:26 ----A---- C:\Windows\system32\NlsData000a.dll

2008-06-26 18:27:25 ----A---- C:\Windows\system32\ws2_32.dll

2008-06-26 18:27:25 ----A---- C:\Windows\system32\NlsData0c1a.dll

2008-06-26 18:27:25 ----A---- C:\Windows\system32\NlsData0018.dll

2008-06-26 18:27:25 ----A---- C:\Windows\system32\msinfo32.exe

2008-06-26 18:27:24 ----A---- C:\Windows\system32\NlsData001b.dll

2008-06-26 18:27:24 ----A---- C:\Windows\system32\NlsData001a.dll

2008-06-26 18:27:24 ----A---- C:\Windows\system32\NlsData000f.dll

2008-06-26 18:27:23 ----A---- C:\Windows\system32\ntdsapi.dll

2008-06-26 18:27:23 ----A---- C:\Windows\system32\NlsData0416.dll

2008-06-26 18:27:23 ----A---- C:\Windows\system32\NlsData0414.dll

2008-06-26 18:27:22 ----A---- C:\Windows\system32\winrs.exe

2008-06-26 18:27:22 ----A---- C:\Windows\system32\secur32.dll

2008-06-26 18:27:22 ----A---- C:\Windows\system32\NlsData0039.dll

2008-06-26 18:27:22 ----A---- C:\Windows\system32\NlsData0020.dll

2008-06-26 18:27:21 ----A---- C:\Windows\system32\odbcjt32.dll

2008-06-26 18:27:21 ----A---- C:\Windows\system32\NlsData003e.dll

2008-06-26 18:27:21 ----A---- C:\Windows\system32\NlsData0022.dll

2008-06-26 18:27:21 ----A---- C:\Windows\system32\NlsData0021.dll

2008-06-26 18:27:21 ----A---- C:\Windows\system32\NAPSTAT.EXE

2008-06-26 18:27:20 ----A---- C:\Windows\system32\NlsData0816.dll

2008-06-26 18:27:20 ----A---- C:\Windows\system32\NlsData002a.dll

2008-06-26 18:27:20 ----A---- C:\Windows\system32\NlsData001d.dll

2008-06-26 18:27:19 ----A---- C:\Windows\system32\NlsData0019.dll

2008-06-26 18:27:19 ----A---- C:\Windows\system32\NlsData0010.dll

2008-06-26 18:27:18 ----A---- C:\Windows\system32\NlsData0026.dll

2008-06-26 18:27:18 ----A---- C:\Windows\system32\NlsData0024.dll

2008-06-26 18:27:17 ----A---- C:\Windows\system32\NlsData0027.dll

2008-06-26 18:27:17 ----A---- C:\Windows\system32\NlsData0001.dll

2008-06-26 18:27:16 ----A---- C:\Windows\system32\prnntfy.dll

2008-06-26 18:27:16 ----A---- C:\Windows\system32\NlsData0013.dll

2008-06-26 18:27:16 ----A---- C:\Windows\system32\NlsData000d.dll

2008-06-26 18:27:15 ----A---- C:\Windows\system32\NlsData081a.dll

2008-06-26 18:27:15 ----A---- C:\Windows\system32\NlsData0003.dll

2008-06-26 18:27:15 ----A---- C:\Windows\system32\NlsData0002.dll

2008-06-26 18:27:15 ----A---- C:\Windows\system32\mblctr.exe

2008-06-26 18:27:15 ----A---- C:\Windows\system32\cryptsvc.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\schtasks.exe

2008-06-26 18:27:14 ----A---- C:\Windows\system32\RelMon.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\pdh.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\netdiagfx.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\msfeeds.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\iasacct.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\dmdlgs.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\dhcpsapi.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\catsrv.dll

2008-06-26 18:27:14 ----A---- C:\Windows\system32\activeds.dll

2008-06-26 18:27:13 ----A---- C:\Windows\system32\wvc.dll

2008-06-26 18:27:13 ----A---- C:\Windows\system32\winrm.vbs

2008-06-26 18:27:13 ----A---- C:\Windows\system32\TSpkg.dll

2008-06-26 18:27:13 ----A---- C:\Windows\system32\qwave.dll

2008-06-26 18:27:13 ----A---- C:\Windows\system32\FirewallControlPanel.exe

2008-06-26 18:27:13 ----A---- C:\Windows\system32\fdWCN.dll

2008-06-26 18:27:13 ----A---- C:\Windows\system32\dot3msm.dll

2008-06-26 18:27:13 ----A---- C:\Windows\system32\dfrgfat.exe

2008-06-26 18:27:13 ----A---- C:\Windows\system32\AudioSes.dll

2008-06-26 18:27:12 ----A---- C:\Windows\system32\rastapi.dll

2008-06-26 18:27:12 ----A---- C:\Windows\system32\netcorehc.dll

2008-06-26 18:27:12 ----A---- C:\Windows\system32\NAPHLPR.DLL

2008-06-26 18:27:12 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL

2008-06-26 18:27:12 ----A---- C:\Windows\system32\msacm32.dll

2008-06-26 18:27:12 ----A---- C:\Windows\system32\ifmon.dll

2008-06-26 18:27:12 ----A---- C:\Windows\system32\dot3cfg.dll

2008-06-26 18:27:11 ----A---- C:\Windows\system32\wow32.dll

2008-06-26 18:27:11 ----A---- C:\Windows\system32\shsetup.dll

2008-06-26 18:27:11 ----A---- C:\Windows\system32\adsldp.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\wscntfy.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\WMNetMgr.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\stobject.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\sdrsvc.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\QUTIL.DLL

2008-06-26 18:27:10 ----A---- C:\Windows\system32\ntshrui.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\msdt.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\iasrecst.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\iasdatastore.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\fdSSDP.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\els.dll

2008-06-26 18:27:10 ----A---- C:\Windows\system32\clbcatq.dll

2008-06-26 18:27:09 ----A---- C:\Windows\system32\wlanui.dll

2008-06-26 18:27:09 ----A---- C:\Windows\system32\net1.exe

2008-06-26 18:27:09 ----A---- C:\Windows\system32\ipnathlp.dll

2008-06-26 18:27:09 ----A---- C:\Windows\system32\dsprop.dll

2008-06-26 18:27:09 ----A---- C:\Windows\system32\Defrag.exe

2008-06-26 18:27:08 ----A---- C:\Windows\system32\wlgpclnt.dll

2008-06-26 18:27:08 ----A---- C:\Windows\system32\upnphost.dll

2008-06-26 18:27:08 ----A---- C:\Windows\system32\systemcpl.dll

2008-06-26 18:27:08 ----A---- C:\Windows\system32\smss.exe

2008-06-26 18:27:08 ----A---- C:\Windows\system32\rasman.dll

2008-06-26 18:27:08 ----A---- C:\Windows\system32\nci.dll

2008-06-26 18:27:08 ----A---- C:\Windows\system32\mprmsg.dll

2008-06-26 18:27:08 ----A---- C:\Windows\system32\adsldpc.dll

2008-06-26 18:27:08 ----A---- C:\Windows\system32\ActiveContentWizard.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\t2embed.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\rascfg.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\PresentationSettings.exe

2008-06-26 18:27:07 ----A---- C:\Windows\system32\P2P.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\oleprn.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\msftedit.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\MSAC3ENC.DLL

2008-06-26 18:27:07 ----A---- C:\Windows\system32\loghours.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\L2SecHC.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\fde.dll

2008-06-26 18:27:07 ----A---- C:\Windows\system32\CompatUI.dll

2008-06-26 18:27:06 ----A---- C:\Windows\system32\Wpc.dll

2008-06-26 18:27:06 ----A---- C:\Windows\system32\MigAutoPlay.exe

2008-06-26 18:27:06 ----A---- C:\Windows\system32\dxdiag.exe

2008-06-26 18:27:05 ----A---- C:\Windows\system32\wdigest.dll

2008-06-26 18:27:05 ----A---- C:\Windows\system32\setupcl.exe

2008-06-26 18:27:05 ----A---- C:\Windows\system32\msutb.dll

2008-06-26 18:27:05 ----A---- C:\Windows\system32\mprdim.dll

2008-06-26 18:27:05 ----A---- C:\Windows\system32\gpapi.dll

2008-06-26 18:27:05 ----A---- C:\Windows\system32\DFDWiz.exe

2008-06-26 18:27:05 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll

2008-06-26 18:27:04 ----A---- C:\Windows\system32\wiaservc.dll

2008-06-26 18:27:04 ----A---- C:\Windows\system32\scansetting.dll

2008-06-26 18:27:04 ----A---- C:\Windows\system32\rtm.dll

2008-06-26 18:27:04 ----A---- C:\Windows\system32\NAPCRYPT.DLL

2008-06-26 18:27:04 ----A---- C:\Windows\system32\msihnd.dll

2008-06-26 18:27:04 ----A---- C:\Windows\system32\devmgr.dll

2008-06-26 18:27:04 ----A---- C:\Windows\system32\CertEnrollUI.dll

2008-06-26 18:27:03 ----A---- C:\Windows\system32\wdi.dll

2008-06-26 18:27:03 ----A---- C:\Windows\system32\kdusb.dll

2008-06-26 18:27:03 ----A---- C:\Windows\system32\ifsutil.dll

2008-06-26 18:27:03 ----A---- C:\Windows\system32\dimsroam.dll

2008-06-26 18:27:03 ----A---- C:\Windows\system32\actxprxy.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\vssadmin.exe

2008-06-26 18:27:02 ----A---- C:\Windows\system32\wscapi.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\wlandlg.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\WinFXDocObj.exe

2008-06-26 18:27:02 ----A---- C:\Windows\system32\usbmon.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\SyncCenter.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\spoolsv.exe

2008-06-26 18:27:02 ----A---- C:\Windows\system32\mswmdm.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\msls31.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\imagehlp.dll

2008-06-26 18:27:02 ----A---- C:\Windows\system32\BOOTVID.DLL

2008-06-26 18:27:02 ----A---- C:\Windows\system32\audiodg.exe

2008-06-26 18:27:01 ----A---- C:\Windows\system32\uudf.dll

2008-06-26 18:27:01 ----A---- C:\Windows\system32\scecli.dll

2008-06-26 18:27:01 ----A---- C:\Windows\system32\regapi.dll

2008-06-26 18:27:01 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll

2008-06-26 18:27:01 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll

2008-06-26 18:27:01 ----A---- C:\Windows\system32\newdev.dll

2008-06-26 18:27:01 ----A---- C:\Windows\system32\mycomput.dll

2008-06-26 18:27:01 ----A---- C:\Windows\system32\mspaint.exe

2008-06-26 18:27:00 ----A---- C:\Windows\system32\termmgr.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\sud.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\ssdpsrv.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\SCardSvr.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\samlib.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\puiapi.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\mtxoci.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\mstask.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\kdcom.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\duser.dll

2008-06-26 18:27:00 ----A---- C:\Windows\system32\adtschema.dll

2008-06-26 18:26:59 ----A---- C:\Windows\system32\tapisrv.dll

2008-06-26 18:26:59 ----A---- C:\Windows\system32\SLUINotify.dll

2008-06-26 18:26:59 ----A---- C:\Windows\system32\Robocopy.exe

2008-06-26 18:26:59 ----A---- C:\Windows\system32\input.dll

2008-06-26 18:26:59 ----A---- C:\Windows\system32\inetpp.dll

2008-06-26 18:26:59 ----A---- C:\Windows\system32\cic.dll

2008-06-26 18:26:59 ----A---- C:\Windows\system32\AzSqlExt.dll

2008-06-26 18:26:58 ----A---- C:\Windows\system32\wisptis.exe

2008-06-26 18:26:58 ----A---- C:\Windows\system32\PortableDeviceTypes.dll

2008-06-26 18:26:58 ----A---- C:\Windows\system32\netiohlp.dll

2008-06-26 18:26:58 ----A---- C:\Windows\system32\iasads.dll

2008-06-26 18:26:58 ----A---- C:\Windows\system32\cscapi.dll

2008-06-26 18:26:58 ----A---- C:\Windows\system32\authz.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\WUDFPlatform.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\verifier.exe

2008-06-26 18:26:57 ----A---- C:\Windows\system32\webcheck.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\themeui.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\sdshext.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\NlsData0000.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\msdtclog.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\msdt.exe

2008-06-26 18:26:57 ----A---- C:\Windows\system32\d3d8.dll

2008-06-26 18:26:57 ----A---- C:\Windows\system32\cmdial32.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\wpcsvc.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\wpccpl.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\WMPhoto.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\wintrust.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\vdsldr.exe

2008-06-26 18:26:56 ----A---- C:\Windows\system32\SnippingTool.exe

2008-06-26 18:26:56 ----A---- C:\Windows\system32\SndVol.exe

2008-06-26 18:26:56 ----A---- C:\Windows\system32\slcinst.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\rasgcw.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\pnpsetup.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\oledlg.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\ntmarta.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\mmcbase.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\icfupgd.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\icardie.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\dxtmsft.dll

2008-06-26 18:26:56 ----A---- C:\Windows\system32\clfsw32.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\wpd_ci.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\slmgr.vbs

2008-06-26 18:26:55 ----A---- C:\Windows\system32\rasqec.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\polstore.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\nslookup.exe

2008-06-26 18:26:55 ----A---- C:\Windows\system32\ncobjapi.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\msrd3x40.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\msaatext.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\mpr.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\mlang.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\ieui.dll

2008-06-26 18:26:55 ----A---- C:\Windows\system32\diskraid.exe

2008-06-26 18:26:54 ----A---- C:\Windows\system32\wtsapi32.dll

2008-06-26 18:26:54 ----A---- C:\Windows\system32\unlodctr.exe

2008-06-26 18:26:54 ----A---- C:\Windows\system32\syssetup.dll

2008-06-26 18:26:54 ----A---- C:\Windows\system32\mscms.dll

2008-06-26 18:26:54 ----A---- C:\Windows\system32\lodctr.exe

2008-06-26 18:26:54 ----A---- C:\Windows\system32\extmgr.dll

2008-06-26 18:26:54 ----A---- C:\Windows\system32\accessibilitycpl.dll

2008-06-26 18:26:53 ----A---- C:\Windows\system32\ulib.dll

2008-06-26 18:26:53 ----A---- C:\Windows\system32\sethc.exe

2008-06-26 18:26:53 ----A---- C:\Windows\system32\pnpui.dll

2008-06-26 18:26:53 ----A---- C:\Windows\system32\iaspolcy.dll

2008-06-26 18:26:53 ----A---- C:\Windows\system32\fontsub.dll

2008-06-26 18:26:53 ----A---- C:\Windows\system32\dxdiagn.dll

2008-06-26 18:26:53 ----A---- C:\Windows\system32\cabinet.dll

2008-06-26 18:26:52 ----A---- C:\Windows\system32\oobefldr.dll

2008-06-26 18:26:52 ----A---- C:\Windows\system32\Mcx2Svc.dll

2008-06-26 18:26:51 ----A---- C:\Windows\system32\WSManHTTPConfig.exe

2008-06-26 18:26:51 ----A---- C:\Windows\system32\Utilman.exe

2008-06-26 18:26:51 ----A---- C:\Windows\system32\unattend.dll

2008-06-26 18:26:51 ----A---- C:\Windows\system32\trkwks.dll

2008-06-26 18:26:51 ----A---- C:\Windows\system32\scesrv.dll

2008-06-26 18:26:51 ----A---- C:\Windows\system32\occache.dll

2008-06-26 18:26:51 ----A---- C:\Windows\system32\lnkstub.exe

2008-06-26 18:26:50 ----A---- C:\Windows\system32\wpcao.dll

2008-06-26 18:26:50 ----A---- C:\Windows\system32\wermgr.exe

2008-06-26 18:26:50 ----A---- C:\Windows\system32\ogldrv.dll

2008-06-26 18:26:50 ----A---- C:\Windows\system32\dfdts.dll

2008-06-26 18:26:50 ----A---- C:\Windows\system32\cabview.dll

2008-06-26 18:26:50 ----A---- C:\Windows\system32\bthci.dll

2008-06-26 18:26:49 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll

2008-06-26 18:26:49 ----A---- C:\Windows\system32\p2pcollab.dll

2008-06-26 18:26:49 ----A---- C:\Windows\system32\msnetobj.dll

2008-06-26 18:26:49 ----A---- C:\Windows\system32\iepeers.dll

2008-06-26 18:26:49 ----A---- C:\Windows\system32\eappgnui.dll

2008-06-26 18:26:48 ----A---- C:\Windows\system32\ieaksie.dll

2008-06-26 18:26:48 ----A---- C:\Windows\system32\drvinst.exe

2008-06-26 18:26:48 ----A---- C:\Windows\system32\dispdiag.exe

2008-06-26 18:26:48 ----A---- C:\Windows\system32\DHCPQEC.DLL

2008-06-26 18:26:48 ----A---- C:\Windows\system32\basesrv.dll

2008-06-26 18:26:47 ----A---- C:\Windows\system32\dsquery.dll

2008-06-26 18:26:46 ----A---- C:\Windows\system32\verifier.dll

2008-06-26 18:26:46 ----A---- C:\Windows\system32\secproc_ssp.dll

2008-06-26 18:26:46 ----A---- C:\Windows\system32\RstrtMgr.dll

2008-06-26 18:26:46 ----A---- C:\Windows\system32\mprapi.dll

2008-06-26 18:26:46 ----A---- C:\Windows\system32\mmcss.dll

2008-06-26 18:26:46 ----A---- C:\Windows\system32\efsadu.dll

2008-06-26 18:26:45 ----A---- C:\Windows\system32\wmpeffects.dll

2008-06-26 18:26:45 ----A---- C:\Windows\system32\wercplsupport.dll

2008-06-26 18:26:45 ----A---- C:\Windows\system32\secproc_ssp_isv.dll

2008-06-26 18:26:45 ----A---- C:\Windows\system32\qedit.dll

2008-06-26 18:26:44 ----A---- C:\Windows\system32\WPDSp.dll

2008-06-26 18:26:44 ----A---- C:\Windows\system32\WPDShServiceObj.dll

2008-06-26 18:26:44 ----A---- C:\Windows\system32\WMVENCOD.DLL

2008-06-26 18:26:44 ----A---- C:\Windows\system32\setupugc.exe

2008-06-26 18:26:44 ----A---- C:\Windows\system32\msoeacct.dll

2008-06-26 18:26:44 ----A---- C:\Windows\system32\icacls.exe

2008-06-26 18:26:44 ----A---- C:\Windows\system32\d3d10core.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\wiascanprofiles.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\wiaaut.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\usercpl.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\QSVRMGMT.DLL

2008-06-26 18:26:43 ----A---- C:\Windows\system32\pnrpnsp.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\pngfilt.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\p2pnetsh.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\networkmap.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\msdmo.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\iscsiexe.dll

2008-06-26 18:26:43 ----A---- C:\Windows\system32\consent.exe

2008-06-26 18:26:42 ----A---- C:\Windows\system32\xactsrv.dll

2008-06-26 18:26:42 ----A---- C:\Windows\system32\PNPXAssocPrx.dll

2008-06-26 18:26:42 ----A---- C:\Windows\system32\PNPXAssoc.dll

2008-06-26 18:26:42 ----A---- C:\Windows\system32\msrdc.dll

2008-06-26 18:26:42 ----A---- C:\Windows\system32\lsass.exe

2008-06-26 18:26:42 ----A---- C:\Windows\system32\conime.exe

2008-06-26 18:26:42 ----A---- C:\Windows\system32\autoplay.dll

2008-06-26 18:26:41 ----A---- C:\Windows\system32\eappprxy.dll

2008-06-26 18:26:41 ----A---- C:\Windows\system32\drmmgrtn.dll

2008-06-26 18:26:38 ----A---- C:\Windows\system32\systeminfo.exe

2008-06-26 18:26:38 ----A---- C:\Windows\system32\pcadm.dll

2008-06-26 18:26:38 ----A---- C:\Windows\system32\lpk.dll

2008-06-26 18:26:38 ----A---- C:\Windows\system32\findstr.exe

2008-06-26 18:26:38 ----A---- C:\Windows\system32\dpapimig.exe

2008-06-26 18:26:37 ----A---- C:\Windows\system32\xwizards.dll

2008-06-26 18:26:37 ----A---- C:\Windows\system32\resutils.dll

2008-06-26 18:26:37 ----A---- C:\Windows\system32\netcfg.exe

2008-06-26 18:26:37 ----A---- C:\Windows\system32\msrating.dll

2008-06-26 18:26:37 ----A---- C:\Windows\system32\mfplat.dll

2008-06-26 18:26:37 ----A---- C:\Windows\system32\DWWIN.EXE

2008-06-26 18:26:37 ----A---- C:\Windows\system32\cmdl32.exe

2008-06-26 18:26:37 ----A---- C:\Windows\system32\alg.exe

2008-06-26 18:26:36 ----A---- C:\Windows\system32\powercpl.dll

2008-06-26 18:26:36 ----A---- C:\Windows\system32\netprof.dll

2008-06-26 18:26:36 ----A---- C:\Windows\system32\MFWMAAEC.DLL

2008-06-26 18:26:36 ----A---- C:\Windows\system32\dssec.dll

2008-06-26 18:26:36 ----A---- C:\Windows\system32\dot3ui.dll

2008-06-26 18:26:36 ----A---- C:\Windows\system32\dfrgifc.exe

2008-06-26 18:26:36 ----A---- C:\Windows\system32\dbnetlib.dll

2008-06-26 18:26:35 ----A---- C:\Windows\system32\txflog.dll

2008-06-26 18:26:35 ----A---- C:\Windows\system32\odbc32.dll

2008-06-26 18:26:35 ----A---- C:\Windows\system32\nshhttp.dll

2008-06-26 18:26:35 ----A---- C:\Windows\system32\imm32.dll

2008-06-26 18:26:35 ----A---- C:\Windows\system32\feclient.dll

2008-06-26 18:26:35 ----A---- C:\Windows\system32\btpanui.dll

2008-06-26 18:26:35 ----A---- C:\Windows\system32\apircl.dll

2008-06-26 18:26:35 ----A---- C:\Windows\regedit.exe

2008-06-26 18:26:34 ----A---- C:\Windows\system32\tbssvc.dll

2008-06-26 18:26:34 ----A---- C:\Windows\system32\taskkill.exe

2008-06-26 18:26:34 ----A---- C:\Windows\system32\RASMM.dll

2008-06-26 18:26:34 ----A---- C:\Windows\system32\msieftp.dll

2008-06-26 18:26:34 ----A---- C:\Windows\system32\iexpress.exe

2008-06-26 18:26:34 ----A---- C:\Windows\system32\dxva2.dll

2008-06-26 18:26:34 ----A---- C:\Windows\system32\dwmapi.dll

2008-06-26 18:26:34 ----A---- C:\Windows\system32\d3d10.dll

2008-06-26 18:26:34 ----A---- C:\Windows\system32\bcdprov.dll

2008-06-26 18:26:34 ----A---- C:\Windows\system32\ActionQueue.dll

2008-06-26 18:26:33 ----A---- C:\Windows\system32\syncui.dll

2008-06-26 18:26:33 ----A---- C:\Windows\system32\svchost.exe

2008-06-26 18:26:33 ----A---- C:\Windows\system32\slwmi.dll

2008-06-26 18:26:33 ----A---- C:\Windows\system32\slcc.dll

2008-06-26 18:26:33 ----A---- C:\Windows\system32\shwebsvc.dll

2008-06-26 18:26:33 ----A---- C:\Windows\system32\provthrd.dll

2008-06-26 18:26:33 ----A---- C:\Windows\system32\MediaMetadataHandler.dll

2008-06-26 18:26:33 ----A---- C:\Windows\system32\EAPQEC.DLL

2008-06-26 18:26:33 ----A---- C:\Windows\system32\dmocx.dll

2008-06-26 18:26:32 ----A---- C:\Windows\system32\WMASF.DLL

2008-06-26 18:26:32 ----A---- C:\Windows\system32\SLCExt.dll

2008-06-26 18:26:32 ----A---- C:\Windows\system32\raserver.exe

2008-06-26 18:26:32 ----A---- C:\Windows\system32\PnPUnattend.exe

2008-06-26 18:26:32 ----A---- C:\Windows\system32\olepro32.dll

2008-06-26 18:26:32 ----A---- C:\Windows\system32\networkexplorer.dll

2008-06-26 18:26:32 ----A---- C:\Windows\system32\connect.dll

2008-06-26 18:26:32 ----A---- C:\Windows\system32\aclui.dll

2008-06-26 18:26:31 ----A---- C:\Windows\system32\xcopy.exe

2008-06-26 18:26:31 ----A---- C:\Windows\system32\uxsms.dll

2008-06-26 18:26:31 ----A---- C:\Windows\system32\UIHub.dll

2008-06-26 18:26:31 ----A---- C:\Windows\system32\taskmgr.exe

2008-06-26 18:26:31 ----A---- C:\Windows\system32\ias.dll

2008-06-26 18:26:31 ----A---- C:\Windows\system32\dnscacheugc.exe

2008-06-26 18:26:31 ----A---- C:\Windows\system32\brcplsdw.dll

2008-06-26 18:26:31 ----A---- C:\Windows\system32\audiodev.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\upnp.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\reg.exe

2008-06-26 18:26:30 ----A---- C:\Windows\system32\QCLIPROV.DLL

2008-06-26 18:26:30 ----A---- C:\Windows\system32\NapiNSP.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\msoert2.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\msjetoledb40.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\mountvol.exe

2008-06-26 18:26:30 ----A---- C:\Windows\system32\mmcshext.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\icsfiltr.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\cmstp.exe

2008-06-26 18:26:30 ----A---- C:\Windows\system32\browser.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\atl.dll

2008-06-26 18:26:30 ----A---- C:\Windows\system32\appinfo.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\WMVXENCD.DLL

2008-06-26 18:26:29 ----A---- C:\Windows\system32\wmpdxm.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\wlanext.exe

2008-06-26 18:26:29 ----A---- C:\Windows\system32\PING.EXE

2008-06-26 18:26:29 ----A---- C:\Windows\system32\perfts.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\netplwiz.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\inetmib1.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\dskquoui.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\cewmdm.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\certprop.dll

2008-06-26 18:26:29 ----A---- C:\Windows\system32\bitsadmin.exe

2008-06-26 18:26:29 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\WUDFCoinstaller.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\WpdMtpUS.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\SysFxUI.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\SoundRecorder.exe

2008-06-26 18:26:28 ----A---- C:\Windows\system32\rekeywiz.exe

2008-06-26 18:26:28 ----A---- C:\Windows\system32\qcap.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\qasf.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\ieakeng.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\httpapi.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\dsuiext.dll

2008-06-26 18:26:28 ----A---- C:\Windows\system32\dmusic.dll

2008-06-26 18:26:27 ----A---- C:\Windows\system32\WUDFSvc.dll

2008-06-26 18:26:27 ----A---- C:\Windows\system32\wmpsrcwp.dll

2008-06-26 18:26:27 ----A---- C:\Windows\system32\SecEdit.exe

2008-06-26 18:26:27 ----A---- C:\Windows\system32\mtstocom.exe

2008-06-26 18:26:27 ----A---- C:\Windows\system32\mscandui.dll

2008-06-26 18:26:27 ----A---- C:\Windows\system32\auditpol.exe

2008-06-26 18:26:27 ----A---- C:\Windows\system32\adsmsext.dll

2008-06-26 18:26:26 ----A---- C:\Windows\system32\WMVSENCD.DLL

2008-06-26 18:26:26 ----A---- C:\Windows\system32\shimgvw.dll

2008-06-26 18:26:26 ----A---- C:\Windows\system32\Sens.dll

2008-06-26 18:26:26 ----A---- C:\Windows\system32\sbeio.dll

2008-06-26 18:26:26 ----A---- C:\Windows\system32\makecab.exe

2008-06-26 18:26:26 ----A---- C:\Windows\system32\lsmproxy.dll

2008-06-26 18:26:26 ----A---- C:\Windows\system32\dot3gpclnt.dll

2008-06-26 18:26:26 ----A---- C:\Windows\system32\batt.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\xwtpw32.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\wzcdlg.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\wscmisetup.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\wiashext.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\wiadefui.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\sppnp.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\seclogon.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\printcom.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\ndfapi.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\msorcl32.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\msdadiag.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\dxtrans.dll

2008-06-26 18:26:25 ----A---- C:\Windows\system32\apss.dll

2008-06-26 18:26:24 ----A---- C:\Windows\system32\wpdwcn.dll

2008-06-26 18:26:24 ----A---- C:\Windows\system32\WMSPDMOE.DLL

2008-06-26 18:26:24 ----A---- C:\Windows\system32\userinit.exe

2008-06-26 18:26:24 ----A---- C:\Windows\system32\sxstrace.exe

2008-06-26 18:26:24 ----A---- C:\Windows\system32\shacct.dll

2008-06-26 18:26:24 ----A---- C:\Windows\system32\rrinstaller.exe

2008-06-26 18:26:24 ----A---- C:\Windows\system32\perfmon.exe

2008-06-26 18:26:24 ----A---- C:\Windows\system32\p2phost.exe

2008-06-26 18:26:24 ----A---- C:\Windows\system32\napipsec.dll

2008-06-26 18:26:24 ----A---- C:\Windows\system32\keymgr.dll

2008-06-26 18:26:24 ----A---- C:\Windows\system32\HelpPaneProxy.dll

2008-06-26 18:26:23 ----A---- C:\Windows\system32\winrshost.exe

2008-06-26 18:26:23 ----A---- C:\Windows\system32\tasklist.exe

2008-06-26 18:26:23 ----A---- C:\Windows\system32\TapiMigPlugin.dll

2008-06-26 18:26:23 ----A---- C:\Windows\system32\prntvpt.dll

2008-06-26 18:26:23 ----A---- C:\Windows\system32\notepad.exe

2008-06-26 18:26:23 ----A---- C:\Windows\system32\MP4SDECD.DLL

2008-06-26 18:26:23 ----A---- C:\Windows\system32\ktmutil.exe

2008-06-26 18:26:23 ----A---- C:\Windows\system32\ftp.exe

2008-06-26 18:26:23 ----A---- C:\Windows\system32\fmifs.dll

2008-06-26 18:26:23 ----A---- C:\Windows\system32\csrsrv.dll

2008-06-26 18:26:23 ----A---- C:\Windows\system32\colorui.dll

2008-06-26 18:26:23 ----A---- C:\Windows\notepad.exe

2008-06-26 18:26:22 ----A---- C:\Windows\system32\wscproxystub.dll

2008-06-26 18:26:22 ----A---- C:\Windows\system32\UIAutomationCore.dll

2008-06-26 18:26:22 ----A---- C:\Windows\system32\netiougc.exe

2008-06-26 18:26:22 ----A---- C:\Windows\system32\msiexec.exe

2008-06-26 18:26:22 ----A---- C:\Windows\system32\mfps.dll

2008-06-26 18:26:22 ----A---- C:\Windows\system32\FwRemoteSvr.dll

2008-06-26 18:26:22 ----A---- C:\Windows\system32\driverquery.exe

2008-06-26 18:26:22 ----A---- C:\Windows\system32\d3dim700.dll

2008-06-26 18:26:22 ----A---- C:\Windows\system32\cryptdll.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\wmiprop.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\winethc.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\txfw32.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\takeown.exe

2008-06-26 18:26:21 ----A---- C:\Windows\system32\pots.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\PnPutil.exe

2008-06-26 18:26:21 ----A---- C:\Windows\system32\pcasvc.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\nshipsec.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\msimtf.dll

2008-06-26 18:26:21 ----A---- C:\Windows\system32\logagent.exe

2008-06-26 18:26:21 ----A---- C:\Windows\system32\inseng.dll

2008-06-26 18:26:20 ----A---- C:\Windows\system32\wpdbusenum.dll

2008-06-26 18:26:20 ----A---- C:\Windows\system32\WindowsCodecsExt.dll

2008-06-26 18:26:20 ----A---- C:\Windows\system32\shrpubw.exe

2008-06-26 18:26:20 ----A---- C:\Windows\system32\rasplap.dll

2008-06-26 18:26:20 ----A---- C:\Windows\system32\powrprof.dll

2008-06-26 18:26:20 ----A---- C:\Windows\system32\mfpmp.exe

2008-06-26 18:26:20 ----A---- C:\Windows\system32\fsutil.exe

2008-06-26 18:26:20 ----A---- C:\Windows\system32\findnetprinters.dll

2008-06-26 18:26:20 ----A---- C:\Windows\system32\dnshc.dll

2008-06-26 18:26:20 ----A---- C:\Windows\system32\capisp.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\WLanHC.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\wextract.exe

2008-06-26 18:26:19 ----A---- C:\Windows\system32\TMM.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\shgina.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\sfc_os.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\sendmail.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\rshx32.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\RpcPing.exe

2008-06-26 18:26:19 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL

2008-06-26 18:26:19 ----A---- C:\Windows\system32\perfnet.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\olecli32.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\nsisvc.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\luainstall.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\ktmw32.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\imapi.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\fdPHost.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\d3dim.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\compstui.dll

2008-06-26 18:26:19 ----A---- C:\Windows\system32\cmmon32.exe

2008-06-26 18:26:18 ----A---- C:\Windows\system32\WMADMOE.DLL

2008-06-26 18:26:18 ----A---- C:\Windows\system32\wiaacmgr.exe

2008-06-26 18:26:18 ----A---- C:\Windows\system32\version.dll

2008-06-26 18:26:18 ----A---- C:\Windows\system32\unregmp2.exe

2008-06-26 18:26:18 ----A---- C:\Windows\system32\UI0Detect.exe

2008-06-26 18:26:18 ----A---- C:\Windows\system32\runonce.exe

2008-06-26 18:26:18 ----A---- C:\Windows\system32\mdminst.dll

2008-06-26 18:26:18 ----A---- C:\Windows\system32\getmac.exe

2008-06-26 18:26:18 ----A---- C:\Windows\system32\dsauth.dll

2008-06-26 18:26:18 ----A---- C:\Windows\system32\dimsjob.dll

2008-06-26 18:26:18 ----A---- C:\Windows\system32\cmlua.dll

2008-06-26 18:26:17 ----A---- C:\Windows\system32\wmpshell.dll

2008-06-26 18:26:17 ----A---- C:\Windows\system32\w32tm.exe

2008-06-26 18:26:17 ----A---- C:\Windows\system32\tscupgrd.exe

2008-06-26 18:26:17 ----A---- C:\Windows\system32\net.exe

2008-06-26 18:26:17 ----A---- C:\Windows\system32\msvfw32.dll

2008-06-26 18:26:17 ----A---- C:\Windows\system32\MPG4DECD.DLL

2008-06-26 18:26:17 ----A---- C:\Windows\system32\MP43DECD.DLL

2008-06-26 18:26:17 ----A---- C:\Windows\system32\imgutil.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\sfc.exe

2008-06-26 18:26:16 ----A---- C:\Windows\system32\sdchange.exe

2008-06-26 18:26:16 ----A---- C:\Windows\system32\PortableDeviceWiaCompat.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\pnpts.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\migisol.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\ipconfig.exe

2008-06-26 18:26:16 ----A---- C:\Windows\system32\fdeploy.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\dispci.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\diantz.exe

2008-06-26 18:26:16 ----A---- C:\Windows\system32\credui.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\comrepl.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\cmutil.dll

2008-06-26 18:26:16 ----A---- C:\Windows\system32\ACW.exe

2008-06-26 18:26:15 ----A---- C:\Windows\system32\TSTheme.exe

2008-06-26 18:26:15 ----A---- C:\Windows\system32\remotepg.dll

2008-06-26 18:26:15 ----A---- C:\Windows\system32\nlaapi.dll

2008-06-26 18:26:15 ----A---- C:\Windows\system32\ExplorerFrame.dll

2008-06-26 18:26:15 ----A---- C:\Windows\system32\EncDump.dll

2008-06-26 18:26:15 ----A---- C:\Windows\system32\dinput8.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\WPDShextAutoplay.exe

2008-06-26 18:26:14 ----A---- C:\Windows\system32\wmidx.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\vdmredir.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\utildll.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\TpmInit.exe

2008-06-26 18:26:14 ----A---- C:\Windows\system32\softkbd.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\pdhui.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\modemui.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\hlink.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\fwcfg.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\expand.exe

2008-06-26 18:26:14 ----A---- C:\Windows\system32\colbact.dll

2008-06-26 18:26:14 ----A---- C:\Windows\system32\cfgbkend.dll

2008-06-26 18:26:13 ----A---- C:\Windows\system32\wmvdspa.dll

2008-06-26 18:26:13 ----A---- C:\Windows\system32\sti_ci.dll

2008-06-26 18:26:13 ----A---- C:\Windows\system32\msfeedsbs.dll

2008-06-26 18:26:13 ----A---- C:\Windows\system32\McxDriv.dll

2008-06-26 18:26:13 ----A---- C:\Windows\system32\iernonce.dll

2008-06-26 18:26:13 ----A---- C:\Windows\system32\bridgeunattend.exe

2008-06-26 18:26:13 ----A---- C:\Windows\system32\bootcfg.exe

2008-06-26 18:26:13 ----A---- C:\Windows\system32\amstream.dll

2008-06-26 18:26:12 ----A---- C:\Windows\system32\wsnmp32.dll

2008-06-26 18:26:12 ----A---- C:\Windows\system32\vds_ps.dll

2008-06-26 18:26:12 ----A---- C:\Windows\system32\waitfor.exe

2008-06-26 18:26:12 ----A---- C:\Windows\system32\tabcal.exe

2008-06-26 18:26:12 ----A---- C:\Windows\system32\rdrleakdiag.exe

2008-06-26 18:26:12 ----A---- C:\Windows\system32\qdv.dll

2008-06-26 18:26:12 ----A---- C:\Windows\system32\logman.exe

2008-06-26 18:26:12 ----A---- C:\Windows\system32\iscsium.dll

2008-06-26 18:26:12 ----A---- C:\Windows\system32\esentutl.exe

2008-06-26 18:26:12 ----A---- C:\Windows\system32\cmcfg32.dll

2008-06-26 18:26:12 ----A---- C:\Windows\system32\admparse.dll

2008-06-26 18:26:11 ----A---- C:\Windows\system32\WsmCl.dll

2008-06-26 18:26:11 ----A---- C:\Windows\system32\wfapigp.dll

2008-06-26 18:26:11 ----A---- C:\Windows\system32\shutdown.exe

2008-06-26 18:26:11 ----A---- C:\Windows\system32\osblprov.dll

2008-06-26 18:26:11 ----A---- C:\Windows\system32\odbccp32.dll

2008-06-26 18:26:11 ----A---- C:\Windows\system32\dpnet.dll

2008-06-26 18:26:11 ----A---- C:\Windows\system32\cacls.exe

2008-06-26 18:26:10 ----A---- C:\Windows\system32\wpnpinst.exe

2008-06-26 18:26:10 ----A---- C:\Windows\system32\wmpcm.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\werdiagcontroller.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\rasauto.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\olethk32.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\olesvr32.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\mstext40.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\msdtc.exe

2008-06-26 18:26:10 ----A---- C:\Windows\system32\mfvdsp.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\iscsiwmi.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\DpiScaling.exe

2008-06-26 18:26:10 ----A---- C:\Windows\system32\dmsynth.dll

2008-06-26 18:26:10 ----A---- C:\Windows\system32\COLORCNV.DLL

2008-06-26 18:26:09 ----A---- C:\Windows\system32\wavemsp.dll

2008-06-26 18:26:09 ----A---- C:\Windows\system32\ufat.dll

2008-06-26 18:26:09 ----A---- C:\Windows\system32\sxproxy.dll

2008-06-26 18:26:09 ----A---- C:\Windows\system32\SLLUA.exe

2008-06-26 18:26:09 ----A---- C:\Windows\system32\msctfui.dll

2008-06-26 18:26:09 ----A---- C:\Windows\system32\at.exe

2008-06-26 18:26:08 ----A---- C:\Windows\system32\xmlprovi.dll

2008-06-26 18:26:08 ----A---- C:\Windows\system32\WpdConns.dll

2008-06-26 18:26:08 ----A---- C:\Windows\system32\ucsvc.exe

2008-06-26 18:26:08 ----A---- C:\Windows\system32\rgb9rast.dll

2008-06-26 18:26:08 ----A---- C:\Windows\system32\RegCtrl.dll

2008-06-26 18:26:08 ----A---- C:\Windows\system32\odbctrac.dll

2008-06-26 18:26:08 ----A---- C:\Windows\system32\networkitemfactory.dll

2008-06-26 18:26:08 ----A---- C:\Windows\system32\mshta.exe

2008-06-26 18:26:08 ----A---- C:\Windows\system32\itss.dll

2008-06-26 18:26:08 ----A---- C:\Windows\system32\convert.exe

2008-06-26 18:26:07 ----A---- C:\Windows\system32\TimeDateMUICallback.dll

2008-06-26 18:26:07 ----A---- C:\Windows\system32\prevhost.exe

2008-06-26 18:26:07 ----A---- C:\Windows\system32\mobsync.exe

2008-06-26 18:26:07 ----A---- C:\Windows\system32\licmgr10.dll

2008-06-26 18:26:07 ----A---- C:\Windows\system32\iscsied.dll

2008-06-26 18:26:07 ----A---- C:\Windows\system32\csrstub.exe

2008-06-26 18:26:07 ----A---- C:\Windows\system32\bitsigd.dll

2008-06-26 18:26:07 ----A---- C:\Windows\system32\AuthFWGP.dll

2008-06-26 18:26:06 ----A---- C:\Windows\system32\netbtugc.exe

2008-06-26 18:26:06 ----A---- C:\Windows\system32\dskquota.dll

2008-06-26 18:26:04 ----A---- C:\Windows\system32\tbs.dll

2008-06-26 18:26:04 ----A---- C:\Windows\system32\rasdiag.dll

2008-06-26 18:26:04 ----A---- C:\Windows\system32\AtBroker.exe

2008-06-26 18:26:02 ----A---- C:\Windows\system32\cscdll.dll

2008-06-26 18:26:01 ----A---- C:\Windows\system32\unattendedjoin.exe

2008-06-26 18:26:01 ----A---- C:\Windows\system32\setupcln.dll

2008-06-26 18:26:01 ----A---- C:\Windows\system32\ocsetup.exe

2008-06-26 18:26:01 ----A---- C:\Windows\system32\GuidedHelp.dll

2008-06-26 18:26:01 ----A---- C:\Windows\system32\fphc.dll

2008-06-26 18:26:00 ----A---- C:\Windows\system32\winnsi.dll

2008-06-26 18:26:00 ----A---- C:\Windows\system32\mydocs.dll

2008-06-26 18:26:00 ----A---- C:\Windows\system32\l2gpstore.dll

2008-06-26 18:26:00 ----A---- C:\Windows\system32\dmime.dll

2008-06-26 18:26:00 ----A---- C:\Windows\system32\cmpbk32.dll

2008-06-26 18:25:55 ----A---- C:\Windows\system32\dsdmo.dll

2008-06-26 18:25:54 ----A---- C:\Windows\system32\regini.exe

2008-06-26 18:25:54 ----A---- C:\Windows\system32\napdsnap.dll

2008-06-26 18:25:54 ----A---- C:\Windows\system32\dot3dlg.dll

2008-06-26 18:25:54 ----A---- C:\Windows\system32\devenum.dll

2008-06-26 18:25:54 ----A---- C:\Windows\system32\apilogen.dll

2008-06-26 18:25:54 ----A---- C:\Windows\system32\amxread.dll

2008-06-26 18:25:53 ----A---- C:\Windows\system32\VIDRESZR.DLL

2008-06-26 18:25:53 ----A---- C:\Windows\system32\usbui.dll

2008-06-26 18:25:53 ----A---- C:\Windows\system32\odbccu32.dll

2008-06-26 18:25:53 ----A---- C:\Windows\system32\odbccr32.dll

2008-06-26 18:25:53 ----A---- C:\Windows\system32\msident.dll

2008-06-26 18:25:53 ----A---- C:\Windows\system32\msdart.dll

2008-06-26 18:25:53 ----A---- C:\Windows\system32\cmstplua.dll

2008-06-26 18:25:52 ----A---- C:\Windows\system32\wpclsp.dll

2008-06-26 18:25:52 ----A---- C:\Windows\system32\WINSRPC.DLL

2008-06-26 18:25:52 ----A---- C:\Windows\system32\RacAgent.exe

2008-06-26 18:25:52 ----A---- C:\Windows\system32\mtxlegih.dll

2008-06-26 18:25:52 ----A---- C:\Windows\system32\mtxdm.dll

2008-06-26 18:25:52 ----A---- C:\Windows\system32\MsCtfMonitor.dll

2008-06-26 18:25:52 ----A---- C:\Windows\system32\gpupdate.exe

2008-06-26 18:25:52 ----A---- C:\Windows\system32\avrt.dll

2008-06-26 18:25:51 ----A---- C:\Windows\system32\vss_ps.dll

2008-06-26 18:25:51 ----A---- C:\Windows\system32\upnpcont.exe

2008-06-26 18:25:51 ----A---- C:\Windows\system32\srwmi.dll

2008-06-26 18:25:51 ----A---- C:\Windows\system32\nsi.dll

2008-06-26 18:25:51 ----A---- C:\Windows\system32\nbtstat.exe

2008-06-26 18:25:50 ----A---- C:\Windows\system32\mfcsubs.dll

2008-06-26 18:25:50 ----A---- C:\Windows\system32\graftabl.com

2008-06-26 18:25:49 ----A---- C:\Windows\system32\wsock32.dll

2008-06-26 18:25:49 ----A---- C:\Windows\system32\vfwwdm32.dll

2008-06-26 18:25:49 ----A---- C:\Windows\system32\WavDest.dll

2008-06-26 18:25:49 ----A---- C:\Windows\system32\syskey.exe

2008-06-26 18:25:49 ----A---- C:\Windows\system32\rasphone.exe

2008-06-26 18:25:49 ----A---- C:\Windows\system32\netevent.dll

2008-06-26 18:25:48 ----A---- C:\Windows\system32\wiarpc.dll

2008-06-26 18:25:48 ----A---- C:\Windows\system32\ROUTE.EXE

2008-06-26 18:25:48 ----A---- C:\Windows\system32\odbcbcp.dll

2008-06-26 18:25:48 ----A---- C:\Windows\system32\ndfetw.dll

2008-06-26 18:25:48 ----A---- C:\Windows\system32\msexcl40.dll

2008-06-26 18:25:48 ----A---- C:\Windows\system32\extrac32.exe

2008-06-26 18:25:47 ----A---- C:\Windows\system32\procinst.dll

2008-06-26 18:25:47 ----A---- C:\Windows\system32\MP3DMOD.DLL

2008-06-26 18:25:47 ----A---- C:\Windows\system32\eventcls.dll

2008-06-26 18:25:47 ----A---- C:\Windows\system32\csrss.exe

2008-06-26 18:25:46 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe

2008-06-26 18:25:46 ----A---- C:\Windows\system32\wiadss.dll

2008-06-26 18:25:46 ----A---- C:\Windows\system32\TabbtnEx.dll

2008-06-26 18:25:46 ----A---- C:\Windows\system32\inetppui.dll

2008-06-26 18:25:46 ----A---- C:\Windows\system32\dmscript.dll

2008-06-26 18:25:46 ----A---- C:\Windows\system32\d3dxof.dll

2008-06-26 18:25:46 ----A---- C:\Windows\system32\cdd.dll

2008-06-26 18:25:46 ----A---- C:\Windows\system32\atmfd.dll

2008-06-26 18:25:46 ----A---- C:\Windows\system32\Apphlpdm.dll

2008-06-26 18:25:45 ----A---- C:\Windows\system32\WlanMmHC.dll

2008-06-26 18:25:45 ----A---- C:\Windows\system32\Tabbtn.dll

2008-06-26 18:25:45 ----A---- C:\Windows\system32\psbase.dll

2008-06-26 18:25:45 ----A---- C:\Windows\system32\CertEnrollCtrl.exe

2008-06-26 18:25:44 ----A---- C:\Windows\system32\msxbde40.dll

2008-06-26 18:25:44 ----A---- C:\Windows\system32\dmloader.dll

2008-06-26 18:25:44 ----A---- C:\Windows\fveupdate.exe

2008-06-26 18:25:43 ----A---- C:\Windows\system32\wshcon.dll

2008-06-26 18:25:43 ----A---- C:\Windows\system32\Netplwiz.exe

2008-06-26 18:25:43 ----A---- C:\Windows\system32\mspbde40.dll

2008-06-26 18:25:43 ----A---- C:\Windows\system32\msltus40.dll

2008-06-26 18:25:43 ----A---- C:\Windows\system32\credssp.dll

2008-06-26 18:25:42 ----A---- C:\Windows\system32\PlaySndSrv.dll

2008-06-26 18:25:42 ----A---- C:\Windows\system32\icsunattend.exe

2008-06-26 18:25:41 ----A---- C:\Windows\system32\WsmRes.dll

2008-06-26 18:25:41 ----A---- C:\Windows\system32\WSHTCPIP.DLL

2008-06-26 18:25:41 ----A---- C:\Windows\system32\wship6.dll

2008-06-26 18:25:41 ----A---- C:\Windows\system32\sxsstore.dll

2008-06-26 18:25:41 ----A---- C:\Windows\system32\msvidc32.dll

2008-06-26 18:25:41 ----A---- C:\Windows\system32\lltdapi.dll

2008-06-26 18:25:41 ----A---- C:\Windows\system32\HotStartUserAgent.dll

2008-06-26 18:25:41 ----A---- C:\Windows\system32\ComputerDefaults.exe

2008-06-26 18:25:40 ----A---- C:\Windows\system32\tcpmon.ini

2008-06-26 18:25:40 ----A---- C:\Windows\system32\setupSNK.exe

2008-06-26 18:25:40 ----A---- C:\Windows\system32\localui.dll

2008-06-26 18:25:40 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll

2008-06-26 18:25:40 ----A---- C:\Windows\system32\icaapi.dll

2008-06-26 18:25:39 ----A---- C:\Windows\system32\slwga.dll

2008-06-26 18:25:39 ----A---- C:\Windows\system32\OptionalFeatures.exe

2008-06-26 18:25:38 ----A---- C:\Windows\system32\sbunattend.exe

2008-06-26 18:25:38 ----A---- C:\Windows\system32\dmutil.dll

2008-06-26 18:25:37 ----A---- C:\Windows\system32\usbperf.dll

2008-06-26 18:25:37 ----A---- C:\Windows\system32\spopk.dll

2008-06-26 18:25:37 ----A---- C:\Windows\system32\serialui.dll

2008-06-26 18:25:36 ----A---- C:\Windows\system32\NcdProp.dll

2008-06-26 18:25:35 ----A---- C:\Windows\system32\cofiredm.dll

2008-06-26 18:25:34 ----A---- C:\Windows\system32\odbcconf.dll

2008-06-26 18:25:34 ----A---- C:\Windows\system32\msfeedssync.exe

2008-06-26 18:25:34 ----A---- C:\Windows\system32\hbaapi.dll

2008-06-26 18:25:33 ----A---- C:\Windows\system32\rasctrs.dll

2008-06-26 18:25:33 ----A---- C:\Windows\system32\msobjs.dll

2008-06-26 18:25:33 ----A---- C:\Windows\system32\ieencode.dll

2008-06-26 18:25:32 ----A---- C:\Windows\system32\hnetmon.dll

2008-06-26 18:25:32 ----A---- C:\Windows\system32\corpol.dll

2008-06-26 18:25:31 ----A---- C:\Windows\system32\vdmdbg.dll

2008-06-26 18:25:31 ----A---- C:\Windows\system32\midimap.dll

2008-06-26 18:25:31 ----A---- C:\Windows\system32\InfDefaultInstall.exe

2008-06-26 18:25:31 ----A---- C:\Windows\system32\esentprf.dll

2008-06-26 18:25:30 ----A---- C:\Windows\system32\winipsec.dll

2008-06-26 18:25:30 ----A---- C:\Windows\system32\url.dll

2008-06-26 18:25:30 ----A---- C:\Windows\system32\nlsbres.dll

2008-06-26 18:25:30 ----A---- C:\Windows\system32\LogonUI.exe

2008-06-26 18:25:30 ----A---- C:\Windows\system32\iprtprio.dll

2008-06-26 18:25:28 ----A---- C:\Windows\system32\sdspres.dll

2008-06-26 18:25:27 ----A---- C:\Windows\system32\osbaseln.dll

2008-06-26 18:25:27 ----A---- C:\Windows\system32\cfgmgr32.dll

2008-06-26 18:25:25 ----A---- C:\Windows\system32\msmmsp.dll

2008-06-26 18:25:25 ----A---- C:\Windows\system32\msisip.dll

2008-06-26 18:25:23 ----A---- C:\Windows\system32\winusb.dll

2008-06-26 18:25:23 ----A---- C:\Windows\system32\dispex.dll

2008-06-26 18:25:22 ----A---- C:\Windows\system32\rdpcfgex.dll

2008-06-26 18:25:18 ----A---- C:\Windows\system32\Nlsdl.dll

2008-06-26 18:25:17 ----A---- C:\Windows\system32\spwmp.dll

2008-06-26 18:25:17 ----A---- C:\Windows\system32\riched32.dll

2008-06-26 18:25:17 ----A---- C:\Windows\system32\msidle.dll

2008-06-26 18:25:17 ----A---- C:\Windows\system32\idndl.dll

2008-06-26 18:25:14 ----A---- C:\Windows\system32\KBDKOR.DLL

2008-06-26 18:25:14 ----A---- C:\Windows\system32\KBDJPN.DLL

2008-06-26 18:25:11 ----A---- C:\Windows\system32\iscsilog.dll

2008-06-26 18:25:09 ----A---- C:\Windows\system32\wmploc.DLL

2008-06-26 18:25:09 ----A---- C:\Windows\system32\vga256.dll

2008-06-26 18:25:09 ----A---- C:\Windows\system32\tsddd.dll

2008-06-26 18:25:09 ----A---- C:\Windows\system32\framebuf.dll

2008-06-26 18:25:09 ----A---- C:\Windows\system32\dxmasf.dll

2008-06-26 18:25:08 ----A---- C:\Windows\system32\vga64k.dll

2008-06-26 18:25:07 ----A---- C:\Windows\system32\vga.dll

2008-06-26 18:25:06 ----A---- C:\Windows\system32\dmdskres2.dll

2008-06-26 18:25:06 ----A---- C:\Windows\system32\bootstr.dll

2008-06-26 18:25:05 ----A---- C:\Windows\system32\spwizres.dll

2008-06-26 18:25:05 ----A---- C:\Windows\system32\f3ahvoas.dll

2008-06-26 18:25:03 ----A---- C:\Windows\system32\gatherWiredInfo.vbs

2008-06-26 18:25:01 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs

2008-06-26 18:25:01 ----A---- C:\Windows\system32\fsmgmt.msc

2008-06-26 18:24:54 ----A---- C:\Windows\system32\vsp1cln.exe

2008-06-26 18:24:54 ----A---- C:\Windows\system32\perfmon.msc

2008-06-26 18:24:01 ----A---- C:\Windows\system32\xmllite.dll

2008-06-26 18:23:58 ----A---- C:\Windows\system32\wbemcomn.dll

2008-06-26 18:23:25 ----A---- C:\Windows\system32\SmiInstaller.dll

2008-06-26 18:23:25 ----A---- C:\Windows\system32\SmiEngine.dll

2008-06-26 18:22:48 ----A---- C:\Windows\system32\wdscore.dll

2008-06-26 18:22:47 ----A---- C:\Windows\system32\PkgMgr.exe

2008-06-26 18:21:12 ----A---- C:\Windows\system32\drvstore.dll

2008-06-26 18:21:09 ----A---- C:\Windows\system32\mspatcha.dll

2008-06-26 18:21:09 ----A---- C:\Windows\system32\msdelta.dll

2008-06-26 18:21:09 ----A---- C:\Windows\system32\dpx.dll

2008-06-25 22:46:26 ----D---- C:\Program Files\Hewlett-Packard

2008-06-25 22:46:26 ----D---- C:\Program Files\Common Files\Hewlett-Packard

2008-06-25 22:23:48 ----A---- C:\Windows\system32\hpzids01.dll

2008-06-25 22:23:47 ----A---- C:\Windows\system32\hpovst01.dll

2008-06-25 22:23:47 ----A---- C:\Windows\system32\hpowiav1.dll

2008-06-25 22:23:47 ----A---- C:\Windows\system32\hpotscl1.dll

2008-06-25 21:15:53 ----HD---- C:\Config.Msi

2008-06-25 21:15:53 ----HD---- \Config.Msi

2008-06-17 10:57:05 ----D---- C:\Program Files\EuroTalk

2008-06-15 10:13:58 ----A---- C:\Windows\system32\psisdecd.dll

2008-06-15 10:13:58 ----A---- C:\Windows\system32\EncDec.dll

2008-06-11 13:38:18 ----A---- C:\Windows\system32\quartz.dll

 

List of drivers

 

R1 AVG Anti-Spyware Driver;AVG Anti-Spyware Driver; \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys [2007-05-30 11000]

R1 AvgAsCln;AVG Anti-Spyware Clean Driver; C:\Windows\System32\DRIVERS\AvgAsCln.sys [2007-05-30 10872]

R1 AvgClean;AVG7 Clean Driver; C:\Windows\system32\System32\Drivers\avgclean.sys []

R1 AvgMfx86;AVG Minifilter x86 Resident Driver; C:\Windows\system32\System32\Drivers\avgmfx86.sys []

R1 DritekPortIO;Dritek General Port I/O; \??\C:\PROGRA~1\LAUNCH~1\DPortIO.sys [2006-11-03 20112]

R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2007-09-01 395312]

R1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2008-05-03 5632]

R2 int15;int15; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys [2006-12-07 76584]

R2 irda;IrDA Protocol; C:\Windows\system32\DRIVERS\irda.sys [2008-01-19 95744]

R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-20 12672]

R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-05 8192]

R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-01-30 764416]

R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]

R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-03 21264]

R3 EMSCR;EMSCR; C:\Windows\system32\DRIVERS\EMS7SK.sys [2006-10-25 62208]

R3 ESDCR;ESDCR; C:\Windows\system32\DRIVERS\ESD7SK.sys [2006-10-25 42240]

R3 ESMCR;ESMCR; C:\Windows\system32\DRIVERS\ESM7SK.sys [2006-10-25 76928]

R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2008-01-29 16168]

R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-11-09 986624]

R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-11-09 206848]

R3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2007-07-19 92032]

R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2006-12-01 1655464]

R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2007-01-11 6144]

R3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-01-08 2313216]

R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2006-11-06 51200]

R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-19 88576]

R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-23 179896]

R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-11-09 659968]

R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]

S3 btaudio;Bluetooth-ljudenhet; C:\Windows\system32\drivers\btaudio.sys []

S3 BTDriver;Virtuell Bluetooth-kommunikationsdrivrutin; C:\Windows\system32\DRIVERS\btport.sys []

S3 BTWDNDIS;Bluetooth-server för nätverksåtkomst; C:\Windows\system32\DRIVERS\btwdndis.sys []

S3 btwhid;btwhid; C:\Windows\system32\DRIVERS\btwhid.sys []

S3 btwmodem;Bluetooth-modem; C:\Windows\system32\DRIVERS\btwmodem.sys [2006-04-12 30285]

S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\Windows\System32\Drivers\btwusb.sys []

S3 Dot4;MS IEEE-1284.4-drivrutin; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-19 131584]

S3 Dot4Print;Utskriftsklassdrivrutin för IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-19 16384]

S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-19 36864]

S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]

S3 GT72NDISIPXP;GT 72 IP NDIS; C:\Windows\system32\DRIVERS\Gt51Ip.sys [2008-02-18 106624]

S3 GT72UBUS;GT 72 U BUS; C:\Windows\system32\DRIVERS\gt72ubus.sys [2008-02-08 59648]

S3 GTPTSER;GT PT SER; C:\Windows\system32\DRIVERS\gtptser.sys [2007-03-30 8064]

S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]

S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]

S3 irsir;Microsoft Serial Infrared Driver; C:\Windows\system32\DRIVERS\irsir.sys [2006-11-02 20992]

S3 MSKSSRV;Tjänstproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]

S3 MSPCLOCK;Klockproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]

S3 MSPQM;Kvalitetshanteringsproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]

S3 MSTEE;Tee/Sink-to-Sink-konverterare för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]

S3 s616bus;Sony Ericsson Device 616 driver (WDM); C:\Windows\system32\DRIVERS\s616bus.sys [2007-04-03 83208]

S3 s616mdfl;Sony Ericsson Device 616 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s616mdfl.sys [2007-04-03 15112]

S3 s616mdm;Sony Ericsson Device 616 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s616mdm.sys [2007-04-03 108680]

S3 s616mgmt;Sony Ericsson Device 616 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s616mgmt.sys [2007-04-03 100360]

S3 s616nd5;Sony Ericsson Device 616 USB Ethernet Emulation SEMC616 (NDIS); C:\Windows\system32\DRIVERS\s616nd5.sys [2007-04-03 23176]

S3 s616obex;Sony Ericsson Device 616 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s616obex.sys [2007-04-03 98568]

S3 s616unic;Sony Ericsson Device 616 USB Ethernet Emulation SEMC616 (WDM); C:\Windows\system32\DRIVERS\s616unic.sys [2007-04-03 99080]

S3 SMSCIRDA;SMSC Infrared Device Driver; C:\Windows\system32\DRIVERS\SMSCirda.sys [2006-10-18 31232]

S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\Windows\system32\DRIVERS\ss_bus.sys [2007-05-02 83592]

S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\Windows\system32\DRIVERS\ss_mdfl.sys [2007-05-02 15112]

S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\Windows\system32\DRIVERS\ss_mdm.sys [2007-05-02 109704]

S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []

S3 usbscan;Drivrutin för USB-skanner; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]

S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]

S3 WSVD;WSVD; \??\C:\Windows\system32\drivers\WSVD.sys [2006-09-19 80744]

S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]

 

List of services

 

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-07-22 116040]

R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-01-08 557056]

R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2007-09-12 554352]

R2 AVG Anti-Spyware Guard;AVG Anti-Spyware Guard; C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe [2007-05-30 312880]

R2 Avg7Alrt;AVG7 Alert Manager Server; C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe [2007-10-22 418816]

R2 Avg7UpdSvc;AVG7 Update Service; C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe [2007-10-20 49664]

R2 AvgCoreSvc;AVG7 Resident Shield Service; C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe [2007-10-20 192512]

R2 Bonjour Service;Bonjour-tjänst; C:\Program Files\Bonjour\mDNSResponder.exe [2007-07-24 229376]

R2 eDataSecurity Service;eDSService.exe; C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe [2007-01-02 457512]

R2 eLockService;eLock Service; C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe [2006-12-22 24576]

R2 eNet Service;eNet Service; C:\Acer\Empowering Technology\eNet\eNet Service.exe [2006-12-28 126976]

R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2006-12-28 49152]

R2 eSettingsService;eSettings Service; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [2007-01-02 24576]

R2 GtDetectSc;GtDetectSc; C:\Program Files\Option\Telenor Mobilt Bredband\GtDetectSc.exe [2007-12-18 196704]

R2 hpqddsvc;Tjänsten HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504]

R2 Irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2008-01-19 21504]

R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]

R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2006-11-24 107008]

R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]

R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]

R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2006-07-19 262247]

R2 WMIService;ePower Service; C:\Acer\Empowering Technology\ePower\ePowerSvc.exe [2007-01-02 135168]

R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-05 386560]

R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]

R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-07-30 532264]

S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]

S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2007-09-12 2999664]

S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2007-08-24 68464]

S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]

S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

S3 usnjsvc;Messenger Sharing Folders USN Journal Reader Service; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]

S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]

S4 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []

 

-----------------EOF-----------------

[/log]

 

Länk till kommentar
Dela på andra webbplatser

[log]info.txt logfile of random's system information tool 2008-09-09 12:30:05

 

Uninstall list

 

-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B145EC69-66F5-11D8-9D75-000129760D75}\setup.exe" -uninstall

-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B804C424-B66D-447A-84BD-C6B88C392C3A}\setup.exe" -uninstall

-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F79A208D-D929-11D9-9D77-000129760D75}\setup.exe" -uninstall

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040B-0000-0000000FF1CE} /uninstall {F14C929B-E0E6-4EB5-8BFD-FC71AAC7D39C}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-041D-0000-0000000FF1CE} /uninstall {A8626CEF-CB0A-4BC2-8F51-210A43B6158D}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-041D-0000-0000000FF1CE} /uninstall {C41B2E34-C30E-4989-8A9D-6B0805B33EC1}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-00A1-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-00BA-041D-0000-0000000FF1CE} /uninstall {E6B1E9D4-FBDC-44B2-B825-246D1B466C5B}

32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}

Acer Arcade Deluxe-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}\setup.exe" -uninstall

Acer eDataSecurity Management-->C:\Acer\Empowering Technology\eDataSecurity\eDSnstHelper.exe -Operation UNINSTALL

Acer eLock Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{116FF17B-1A30-4FC2-9B01-5BC5BD46B0B3}\setup.exe" -l0x1d -removeonly

Acer Empowering Technology-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB6097D9-D722-4987-BD9E-A076E2848EE2}\setup.exe" -l0x1d -removeonly

Acer eNet Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C06554A1-2C1E-4D20-B613-EE62C79927CC}\setup.exe" -l0x1d -removeonly

Acer ePower Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{58E5844B-7CE2-413D-83D1-99294BF6C74F}\setup.exe" -l0x1d -removeonly

Acer ePresentation Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BF839132-BD43-4056-ACBF-4377F4A88E2A}\setup.exe" -l0x1d -removeonly

Acer eSettings Management-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CE65A9A0-9686-45C6-9098-3C9543A412F0}\setup.exe" -l0x1d -removeonly

Acer GridVista-->C:\Windows\UnInst32.exe GridV.UNI

Acer Mobility Center Plug-In-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{11316260-6666-467B-AC34-183FCB5D4335}\setup.exe" -l0x1d -removeonly

Acer ScreenSaver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}\setup.exe" -l0x9 -removeonly

Acer Tour-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{94389919-B0AA-4882-9BE8-9F0B004ECA35}\setup.exe" -l0x1d -removeonly

Adobe Flash Player ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe

Adobe Reader 7.1.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A71000000002}

Apple Mobile Device Support-->MsiExec.exe /I{49C88E44-1B38-4FC6-824E-2BDA3063B0E3}

Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}

Atheros for Acer Driver v7.2.0.127_Foxconn Installation Program-->C:\Program Files\InstallShield Installation Information\{28006915-2739-4EBE-B5E8-49B25D32EB33}\SETUP.exe -runfromtemp -l0x0009 -removeonly

ATI Uninstaller-->C:\Program Files\ATI\CIM\Bin\Atisetup.exe -uninstall all

AVG 7.5-->C:\Program Files\Grisoft\AVG7\setup.exe /UNINSTALL

AVG Anti-Spyware 7.5-->C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe

Bonjour-->MsiExec.exe /I{47BF1BD6-DCAC-468F-A0AD-E5DECC2211C3}

Broadcom Driver v4.102.15.63_Foxconn Installation Program-->C:\Program Files\InstallShield Installation Information\{88410D8F-8529-492B-B556-2394A29B811B}\SETUP.exe -runfromtemp -l0x0009 -removeonly

Crazy Browser version 2.0.1-->"C:\Program Files\Crazy Browser\unins000.exe"

DC++ 0.707-->"C:\Program Files\DC++\uninstall.exe"

EuroTalk Talk Now Plus!-->C:\PROGRA~1\EuroTalk\TALKNO~1\UNWISE.EXE C:\PROGRA~1\EuroTalk\TALKNO~1\INSTALL.LOG

ExtraFilm Hemma 2-->C:\Program Files\ExtraFilm Hemma\Uninstall.exe

Handelsbanken Installationsguide-->"C:\Program Files\TiFiC\TiFiC Client G1\ShbGuide.exe" /OFFLINE /HIDE /LANG Svenska /UNINSTALL "ShbGuide" /LINK guide.handelsbanken.se#117222:1414929$Uninstall

HDAUDIO Soft Data Fax Modem with SmartCP-->C:\Program Files\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFAOR2C06_118\HXFSETUP.EXE -U -IAcrZUn32z.inf

HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall

HP Customer Participation Program 9.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat

HP Deskjet Printer Driver Software 9.0-->C:\Program Files\HP\Digital Imaging\{F5936267-D467-4e7b-8940-A7D9F0398EF3}\setup\hpzscr01.exe -datfile hphscr15.dat -showdisconnect -forcereboot

HP Imaging Device Functions 9.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat

HP OCR Software 8.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat

HP Photosmart Essential 2.01-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat

HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}

HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B-->C:\Program Files\HP\Digital Imaging\{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}\setup\hpzscr01.exe -datfile hposcr19.dat -onestop -showdisconnect -forcereboot

HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}

HP Solution Center 9.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat

HP Update-->MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134}

HPSSupply-->MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}

iTunes-->MsiExec.exe /I{3DE0053C-FD9A-483E-B7C9-B06E4392206E}

Java 6 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}

Java 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}

Java 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}

Java SE Runtime Environment 6 Update 1-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160010}

Launch Manager-->C:\Windows\UnInst32.exe LManager.UNI

LiveUpdate 3.2 (Symantec Corporation)-->"C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U

Microsoft Office Access MUI (Swedish) 2007-->MsiExec.exe /X{90120000-0015-041D-0000-0000000FF1CE}

Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL

Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}

Microsoft Office Excel MUI (Swedish) 2007-->MsiExec.exe /X{90120000-0016-041D-0000-0000000FF1CE}

Microsoft Office Groove MUI (Swedish) 2007-->MsiExec.exe /X{90120000-00BA-041D-0000-0000000FF1CE}

Microsoft Office InfoPath MUI (Swedish) 2007-->MsiExec.exe /X{90120000-0044-041D-0000-0000000FF1CE}

Microsoft Office OneNote MUI (Swedish) 2007-->MsiExec.exe /X{90120000-00A1-041D-0000-0000000FF1CE}

Microsoft Office Outlook MUI (Swedish) 2007-->MsiExec.exe /X{90120000-001A-041D-0000-0000000FF1CE}

Microsoft Office PowerPoint MUI (Swedish) 2007-->MsiExec.exe /X{90120000-0018-041D-0000-0000000FF1CE}

Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}

Microsoft Office Proof (Finnish) 2007-->MsiExec.exe /X{90120000-001F-040B-0000-0000000FF1CE}

Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}

Microsoft Office Proof (Swedish) 2007-->MsiExec.exe /X{90120000-001F-041D-0000-0000000FF1CE}

Microsoft Office Proofing (Swedish) 2007-->MsiExec.exe /X{90120000-002C-041D-0000-0000000FF1CE}

Microsoft Office Publisher MUI (Swedish) 2007-->MsiExec.exe /X{90120000-0019-041D-0000-0000000FF1CE}

Microsoft Office Shared MUI (Swedish) 2007-->MsiExec.exe /X{90120000-006E-041D-0000-0000000FF1CE}

Microsoft Office Word MUI (Swedish) 2007-->MsiExec.exe /X{90120000-001B-041D-0000-0000000FF1CE}

Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}

Mobile Connect-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3EAAC5FD-E209-4856-8C49-D4EA40F85032}\setup.exe" -l0x9 -removeonly

MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}

MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}

MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}

NetOp Guest-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\NetOp Remote Control\GUEST\DeIsL1.isu" -c"C:\Program Files\NetOp Remote Control\GUEST\UNINSTLL.DLL"

NTI Backup NOW! 4.7-->"C:\Program Files\InstallShield Installation Information\{67ADE9AF-5CD9-4089-8825-55DE4B366799}\setup.exe" -removeonly

NTI CD & DVD-Maker-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2} /l1033 CDM7

Paint.NET v3.36-->MsiExec.exe /X{43602F34-1AA3-44FB-AEB2-D08C2C73743F}

Personal 4.8.1-->"C:\Program Files\Personal\bin\persinst.exe" -u

PowerProducer-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\Setup.exe" -uninstall

QuickTime-->MsiExec.exe /I{08CA9554-B5FE-4313-938F-D4A417B81175}

Realtek High Definition Audio Driver-->RtlUpd.exe -r -m

SAMSUNG Mobile Modem Driver Set-->C:\Windows\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe

Samsung Mobile phone USB driver Software-->C:\Windows\system32\Samsung_USB_Drivers\5\SSSDUninstall.exe

SAMSUNG Mobile USB Modem 1.0 Software-->C:\Windows\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe

SAMSUNG Mobile USB Modem Software-->C:\Windows\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe

Samsung PC Studio 3 USB Driver Installer-->"C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -runfromtemp -l0x001d -removeonly

Samsung PC Studio 3-->"C:\Program Files\InstallShield Installation Information\{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe" -runfromtemp -l0x001d -removeonly

Security Task Manager 1.7e-->C:\Program Files\Security Task Manager\Uninstal.exe "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security Task Manager"

Security Update for 2007 Microsoft Office System (KB951596)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1AFF2298-CC00-4A3B-866A-C62B8373794E}

Security Update for Microsoft Office Excel 2007 (KB951546)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7399DD71-8E24-4E60-B6A8-6CED89C0AC26}

Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}

Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}

Security Update for Microsoft Office system 2007 (KB951808)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F375E11-4FD6-4B89-9E2B-A76D48B51E00}

Security Update for Microsoft Office Word 2007 (KB950113)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AD72BABE-C733-4FCF-9674-4314466191B9}

Security Update for Visio 2007 (KB947590)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6BAD036C-261F-4BEF-96CF-C20678D07A41}

Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall

Telenor Mobilt Bredband-->MsiExec.exe /X{2C557BF1-86DA-4DE7-BD73-BDBB5EFB32C6}

Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}

Update for Office 2007 (KB946691)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}

Update for Outlook 2007 Junk Email Filter (kb955433)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {D9806966-6AA1-4B55-9528-6748E37CEE86}

VideoLAN VLC media player 0.8.6b-->C:\Program Files\VideoLAN\VLC\uninstall.exe

Windows Live inloggningsassistenten-->MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}

Windows Live installer-->MsiExec.exe /X{E17F76BE-50E9-4E7C-ADF6-6D8F44A9C6F3}

Windows Live Messenger-->MsiExec.exe /X{20503DFE-E5B2-491E-B2C5-8BCB5BF5B9E9}

WinZip 11.1-->MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}

 

Security center information

 

AV: AVG 7.5.524

AS: AVG Anti-Spyware (outdated)

AS: Windows Defender

 

Environment variables

 

"ComSpec"=%SystemRoot%\system32\cmd.exe

"FP_NO_HOST_CHECK"=NO

"OS"=Windows_NT

"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\QuickTime\QTSystem"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC

"PROCESSOR_ARCHITECTURE"=x86

"TEMP"=%SystemRoot%\TEMP

"TMP"=%SystemRoot%\TEMP

"USERNAME"=SYSTEM

"windir"=%SystemRoot%

"PROCESSOR_LEVEL"=15

"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 76 Stepping 2, AuthenticAMD

"PROCESSOR_REVISION"=4c02

"NUMBER_OF_PROCESSORS"=1

"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip

"QTJAVA"=C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip

 

-----------------EOF-----------------

[/log]

 

Länk till kommentar
Dela på andra webbplatser

Det var inte länge du var borta från datorn ;)

 

Avinstallera

Java ™ 6 Update 2

Java ™ 6 Update 3

Java ™ SE Runtime Environment 6 Update 1

 

 

Länk till kommentar
Dela på andra webbplatser

Tydligen bara någon rest efter t ex en avinstallation eller så.

Skanna med HijackThis och bocka för:

 

O4 - HKCU\..\Run: [?????????] ??????????????e

 

Avsluta alla andra program.

Tryck Fix checked.

 

Starta om datorn och så en ny HijackThis-logg.

 

Länk till kommentar
Dela på andra webbplatser

Done!

[log]

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 12:29:56, on 2008-09-09

Platform: Windows Vista SP1 (WinNT 6.00.1905)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Boot mode: Normal

 

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\Grisoft\AVG7\avgcc.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Windows\RtHDVCpl.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\Personal\bin\Personal.exe

C:\Program Files\Option\Telenor Mobilt Bredband\Telenor Mobilt Bredband.exe

C:\Program Files\WinZip\WZQKPICK.EXE

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE

C:\Windows\ehome\ehmsas.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

C:\Program Files\Huawei technologies\Mobile Connect\Mobile Connect.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\Windows\system32\NOTEPAD.EXE

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE

C:\Program Files\Internet Explorer\IEUser.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\HP\Smart Web Printing\hpswp_clipbook.exe

C:\Windows\system32\conime.exe

C:\Windows\system32\Macromed\Flash\FlashUtil9f.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Users\eva\Desktop\RSIT.exe

C:\Program Files\Trend Micro\HijackThis\eva.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://uk.rd.yahoo.com/customize/ycomp/defaults/sp/*http://uk.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aftonbladet.se/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://sv.intl.acer.yahoo.com'>http://sv.intl.acer.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896'>http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://sv.intl.acer.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://uk.rd.yahoo.com/customize/ycomp/defaults/su/*http://uk.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O1 - Hosts: ::1 localhost

O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live inloggningshjälpen - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe

O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [startCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

O4 - HKCU\..\Run: [?????????] ??????????????e

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOKAL TJÄNST')

O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O4 - Global Startup: Personal.lnk = C:\Program Files\Personal\bin\Personal.exe

O4 - Global Startup: Telenor Mobilt Bredband.lnk = C:\Program Files\Option\Telenor Mobilt Bredband\Telenor Mobilt Bredband.exe

O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

O8 - Extra context menu item: E&xportera till Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Skicka till &Bluetooth - C:\Program Files\D-Link\Bluetooth-programvara\btsendto_ie_ctx.htm

O8 - Extra context menu item: Skicka till &Bluetooth-enhet... - C:\Program Files\D-Link\Bluetooth Software\btsendto_ie_ctx.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~4.0_0\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java-konsol - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~4.0_0\bin\ssv.dll

O9 - Extra button: Skicka till OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: Ski&cka till OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: HP Klippbok - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: HP Smart markering - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O13 - Gopher Prefix:

O15 - Trusted Zone: *.handelsbanken.se

O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab

O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab

O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

O16 - DPF: {D6E7CFB5-C074-4D1C-B647-663D1A8D96BF} (Facebook Photo Uploader 4) - http://upload.facebook.com/controls/FacebookPhotoUploader4_5.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{73E5F585-4E3B-4FE2-B59E-753ECC0BFAF4}: NameServer = 194.230.1.103 194.230.1.71

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O20 - AppInit_DLLs: eNetHook.dll

O20 - Winlogon Notify: avgwlntf - C:\Windows\SYSTEM32\avgwlntf.dll

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe

O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe

O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe

O23 - Service: Bonjour-tjänst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe

O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe

O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe

O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe

O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe

O23 - Service: GtDetectSc - OptionNV - C:\Program Files\Option\Telenor Mobilt Bredband\GtDetectSc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE

O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe

O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

 

--

End of file - 10942 bytes

[/log]

 

Promenaddags!

 

Länk till kommentar
Dela på andra webbplatser

Du måste stänga av Defender innan du fixar med HijackThis kom jag just ihåg.

 

Byt till någon annan startsida än Aftonbladet.

 

Bocka för:

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O4 - HKCU\..\Run: [?????????] ??????????????e

O13 - Gopher Prefix:

 

Stäng av program inklusive Defender och tryck sedan på Fix checked.

Starta om.

 

 

Länk till kommentar
Dela på andra webbplatser

Arkiverat

Det här ämnet är nu arkiverat och är stängt för ytterligare svar.

×
×
  • Skapa nytt...