Prosím o kontrolu logu :o
Napsal: 18 pro 2010 12:02
Logfile of random's system information tool 1.08 (written by random/random)
Run by family at 2010-12-18 12:00:54
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 60 GB (92%) free of 65 GB
Total RAM: 2046 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:01:06, on 18.12.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\family\Desktop\RSIT.exe
C:\Program Files\trend micro\family.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
--
End of file - 3577 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-05-28 16132608]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"AzMixerSel"=C:\Program Files\Realtek\InstallShield\AzMixerSel.exe [2005-06-11 53248]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-09-29 2054360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-09-16 1164584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe [2007-04-01 568176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2008-05-30 126976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\BitLord\BitLord.exe"="C:\Program Files\BitLord\BitLord.exe:*:Enabled:BitLord"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.0"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.0"
======List of files/folders created in the last 1 months======
2010-12-18 12:00:55 ----D---- C:\Program Files\trend micro
2010-12-18 12:00:54 ----D---- C:\rsit
2010-12-17 00:25:03 ----A---- C:\WINDOWS\ntbtlog.txt
2010-12-13 00:28:35 ----D---- C:\WINDOWS\pss
2010-12-02 23:14:04 ----D---- C:\WINDOWS\system32\appmgmt
2010-11-30 22:39:29 ----A---- C:\WINDOWS\iun6002.exe
2010-11-30 22:39:25 ----D---- C:\WINDOWS\system32\languages
2010-11-30 22:39:25 ----D---- C:\Program Files\Codec Pack - All In 1
2010-11-25 21:14:31 ----D---- C:\Program Files\Common Files\DivX Shared
2010-11-25 21:13:20 ----D---- C:\Program Files\DivX
2010-11-25 21:12:44 ----D---- C:\Documents and Settings\All Users\Application Data\DivX
2010-11-25 14:37:00 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2010-11-24 19:04:38 ----D---- C:\Documents and Settings\family\Application Data\Macromedia
2010-11-24 19:04:38 ----D---- C:\Documents and Settings\family\Application Data\Adobe
2010-11-24 13:32:08 ----D---- C:\WINDOWS\RegisteredPackages
2010-11-24 13:31:44 ----D---- C:\Documents and Settings\family\Application Data\Foxit Software
2010-11-24 13:31:24 ----D---- C:\Program Files\Foxit Software
2010-11-24 13:28:40 ----D---- C:\Program Files\BitLord
2010-11-24 13:27:47 ----A---- C:\WINDOWS\ODBC.INI
2010-11-24 13:27:44 ----A---- C:\WINDOWS\system32\mdimon.dll
2010-11-24 13:27:13 ----D---- C:\Program Files\Common Files\DESIGNER
2010-11-24 13:27:01 ----D---- C:\WINDOWS\SHELLNEW
2010-11-24 13:27:01 ----D---- C:\Program Files\Microsoft.NET
2010-11-24 13:27:01 ----D---- C:\Program Files\Microsoft Office
2010-11-24 13:21:21 ----D---- C:\Documents and Settings\family\Application Data\WinRAR
2010-11-24 13:21:08 ----SHD---- C:\RECYCLER
2010-11-24 13:20:21 ----D---- C:\Program Files\WinRAR
2010-11-24 13:16:15 ----D---- C:\Documents and Settings\family\Application Data\Mozilla
2010-11-24 13:16:10 ----D---- C:\Program Files\Mozilla Firefox
2010-11-24 13:13:44 ----D---- C:\Program Files\CCleaner
2010-11-24 13:03:40 ----A---- C:\WINDOWS\system32\WMErrSKY.dll
2010-11-24 13:03:34 ----D---- C:\WINDOWS\system32\1051
2010-11-24 13:00:51 ----D---- C:\Program Files\ESET
2010-11-24 13:00:51 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2010-11-24 12:57:35 ----D---- C:\Documents and Settings\family\Application Data\ATI
2010-11-24 12:57:35 ----D---- C:\Documents and Settings\All Users\Application Data\ATI
2010-11-24 12:57:34 ----D---- C:\WINDOWS\system32\Lang
2010-11-24 12:55:28 ----RA---- C:\WINDOWS\system32\NETw4r32.dll
2010-11-24 12:55:28 ----RA---- C:\WINDOWS\system32\NETw4c32.dll
2010-11-24 12:55:28 ----RA---- C:\WINDOWS\system32\drivers\NETw4x32.sys
2010-11-24 12:53:54 ----A---- C:\WINDOWS\system32\hidserv.dll
2010-11-24 12:52:22 ----A---- C:\WINDOWS\system32\drivers\btwusb.sys
2010-11-24 12:52:22 ----A---- C:\WINDOWS\system32\btw_ci.dll
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btwhid.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btwdndis.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btport.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btkrnl.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btaudio.sys
2010-11-24 12:52:13 ----D---- C:\Program Files\WIDCOMM
2010-11-24 12:51:47 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2010-11-24 12:51:46 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2010-11-24 12:51:45 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys
2010-11-24 12:51:44 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2010-11-24 12:51:43 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2010-11-24 12:51:42 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2010-11-24 12:51:42 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2010-11-24 12:51:41 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2010-11-24 12:51:28 ----RA---- C:\WINDOWS\system32\drivers\b57xp32.sys
2010-11-24 12:51:21 ----D---- C:\Program Files\Broadcom
2010-11-24 12:50:27 ----R---- C:\WINDOWS\system32\ChCfg.exe
2010-11-24 12:50:05 ----D---- C:\WINDOWS\system32\RTCOM
2010-11-24 12:50:03 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2010-11-24 12:50:02 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2010-11-24 12:49:59 ----R---- C:\WINDOWS\SoundMan.exe
2010-11-24 12:49:59 ----R---- C:\WINDOWS\SkyTel.exe
2010-11-24 12:49:58 ----R---- C:\WINDOWS\RtlUpd.exe
2010-11-24 12:49:57 ----R---- C:\WINDOWS\RTLCPL.exe
2010-11-24 12:49:56 ----R---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2010-11-24 12:49:53 ----R---- C:\WINDOWS\RTHDCPL.exe
2010-11-24 12:49:53 ----R---- C:\WINDOWS\MicCal.exe
2010-11-24 12:49:51 ----R---- C:\WINDOWS\alcwzrd.exe
2010-11-24 12:49:51 ----R---- C:\WINDOWS\Alcmtr.exe
2010-11-24 12:49:50 ----D---- C:\Program Files\Realtek
2010-11-24 12:49:45 ----R---- C:\WINDOWS\RtlExUpd.dll
2010-11-24 12:49:45 ----A---- C:\WINDOWS\HideWin.exe
2010-11-24 12:48:59 ----D---- C:\Documents and Settings\family\Application Data\InstallShield
2010-11-24 12:44:16 ----RSD---- C:\WINDOWS\assembly
2010-11-24 12:43:58 ----D---- C:\WINDOWS\Microsoft.NET
2010-11-24 12:43:32 ----RA---- C:\WINDOWS\system32\atiiiexx.dll
2010-11-24 12:43:30 ----RA---- C:\WINDOWS\system32\ATIDEMGX.dll
2010-11-24 12:43:13 ----D---- C:\Program Files\ATI Technologies
2010-11-24 12:43:10 ----HD---- C:\Program Files\InstallShield Installation Information
2010-11-24 12:42:44 ----D---- C:\Program Files\Common Files\InstallShield
2010-11-24 12:38:30 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-11-24 12:38:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-11-24 12:38:28 ----D---- C:\Program Files\Intel
2010-11-24 12:38:20 ----D---- C:\Intel
2010-11-23 20:59:07 ----A---- C:\WINDOWS\system32\h323log.txt
2010-11-23 20:57:43 ----A---- C:\WINDOWS\system32\drivers\MSTEE.sys
2010-11-23 20:57:37 ----A---- C:\WINDOWS\system32\drivers\SLIP.sys
2010-11-23 20:57:35 ----A---- C:\WINDOWS\system32\drivers\NABTSFEC.sys
2010-11-23 20:57:34 ----A---- C:\WINDOWS\system32\drivers\NdisIP.sys
2010-11-23 20:57:33 ----A---- C:\WINDOWS\system32\drivers\CCDECODE.sys
2010-11-23 20:57:31 ----A---- C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2010-11-23 20:57:30 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys
2010-11-23 20:57:28 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010-11-23 20:57:26 ----A---- C:\WINDOWS\system32\drivers\StreamIP.sys
2010-11-23 20:57:25 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys
2010-11-23 20:57:21 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2010-11-23 20:56:58 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-11-23 20:56:58 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-11-23 20:56:58 ----A---- C:\WINDOWS\system32\drivers\usbvideo.sys
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\wshirda.dll
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\irmon.dll
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\irftp.exe
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\drivers\rasirda.sys
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\drivers\irda.sys
2010-11-23 20:56:47 ----A---- C:\WINDOWS\system32\drivers\nscirda.sys
2010-11-23 20:56:35 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2010-11-23 20:56:30 ----A---- C:\WINDOWS\system32\drivers\compbatt.sys
2010-11-23 20:56:30 ----A---- C:\WINDOWS\system32\drivers\battc.sys
2010-11-23 20:56:29 ----A---- C:\WINDOWS\system32\drivers\CmBatt.sys
2010-11-23 20:56:00 ----A---- C:\WINDOWS\system32\drivers\enum1394.sys
2010-11-23 20:55:44 ----A---- C:\WINDOWS\system32\usbui.dll
2010-11-23 20:55:24 ----A---- C:\WINDOWS\system32\drivers\wmiacpi.sys
2010-11-23 20:54:30 ----SHD---- C:\WINDOWS\Installer
2010-11-23 20:54:30 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-11-23 20:54:29 ----D---- C:\Program Files\Common Files\ODBC
2010-11-23 20:54:29 ----A---- C:\WINDOWS\ODBCINST.INI
2010-11-23 20:54:25 ----RD---- C:\Program Files
2010-11-23 20:54:25 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-11-23 20:54:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-11-23 20:54:25 ----D---- C:\Program Files\Common Files
2010-11-23 20:54:21 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-11-23 20:54:21 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-11-23 20:54:21 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdro.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2010-11-23 20:54:06 ----A---- C:\WINDOWS\system32\irclass.dll
2010-11-23 20:54:06 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-11-23 20:54:05 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-11-23 20:54:05 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-11-23 20:54:05 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-11-23 20:54:03 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-11-23 20:54:02 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-11-23 20:54:02 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2010-11-23 20:54:02 ----A---- C:\WINDOWS\system32\batt.dll
2010-11-23 20:54:01 ----A---- C:\WINDOWS\system32\storprop.dll
2010-11-23 20:54:01 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-11-23 20:53:54 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2010-11-23 20:53:50 ----RA---- C:\WINDOWS\SET8.tmp
2010-11-23 20:53:47 ----RA---- C:\WINDOWS\SET4.tmp
2010-11-23 20:53:46 ----RA---- C:\WINDOWS\SET3.tmp
2010-11-23 20:53:39 ----D---- C:\WINDOWS\system32\CatRoot2
2010-11-23 20:53:39 ----D---- C:\WINDOWS\system32\CatRoot
2010-11-23 20:53:33 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2010-11-23 20:53:05 ----D---- C:\Documents and Settings
2010-11-23 20:53:04 ----SHD---- C:\System Volume Information
2010-11-23 20:52:19 ----SH---- C:\boot.ini
2010-11-23 20:47:52 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-11-23 20:47:52 ----RSD---- C:\WINDOWS\Fonts
2010-11-23 20:47:52 ----RD---- C:\WINDOWS\Web
2010-11-23 20:47:52 ----HD---- C:\WINDOWS\inf
2010-11-23 20:47:52 ----D---- C:\WINDOWS\WinSxS
2010-11-23 20:47:52 ----D---- C:\WINDOWS\twain_32
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Temp
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\wins
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\wbem
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\usmt
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\spool
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\ShellExt
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\Setup
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\scripting
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\ras
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\oobe
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\npp
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\mui
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\inetsrv
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\IME
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\icsxml
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\ias
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\export
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\en
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\drivers\etc
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\drivers\disdn
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\drivers
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\dhcp
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\config
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\3com_dmi
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\3076
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\2052
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1054
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1042
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1041
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1037
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1033
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1031
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1028
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1025
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system
2010-11-23 20:47:52 ----D---- C:\WINDOWS\security
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Resources
2010-11-23 20:47:52 ----D---- C:\WINDOWS\repair
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Provisioning
2010-11-23 20:47:52 ----D---- C:\WINDOWS\pchealth
2010-11-23 20:47:52 ----D---- C:\WINDOWS\PeerNet
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Network Diagnostic
2010-11-23 20:47:52 ----D---- C:\WINDOWS\mui
2010-11-23 20:47:52 ----D---- C:\WINDOWS\msapps
2010-11-23 20:47:52 ----D---- C:\WINDOWS\msagent
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Media
2010-11-23 20:47:52 ----D---- C:\WINDOWS\L2Schemas
2010-11-23 20:47:52 ----D---- C:\WINDOWS\java
2010-11-23 20:47:52 ----D---- C:\WINDOWS\ime
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Help
2010-11-23 20:47:52 ----D---- C:\WINDOWS\ehome
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Driver Cache
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Debug
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Cursors
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Connection Wizard
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Config
2010-11-23 20:47:52 ----D---- C:\WINDOWS\AppPatch
2010-11-23 20:47:52 ----D---- C:\WINDOWS\addins
2010-11-23 20:47:52 ----D---- C:\WINDOWS
2010-11-23 20:47:52 ----ASH---- C:\pagefile.sys
2010-11-23 20:10:54 ----D---- C:\Documents and Settings\family\Application Data\Identities
2010-11-23 20:10:52 ----HD---- C:\Program Files\Uninstall Information
2010-11-23 20:10:47 ----SD---- C:\Documents and Settings\family\Application Data\Microsoft
2010-11-23 20:10:47 ----ASH---- C:\Documents and Settings\family\Application Data\desktop.ini
2010-11-23 20:09:02 ----D---- C:\WINDOWS\SoftwareDistribution
2010-11-23 20:09:00 ----SD---- C:\WINDOWS\system32\Microsoft
2010-11-23 20:09:00 ----D---- C:\WINDOWS\Prefetch
2010-11-23 20:09:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-11-23 20:05:22 ----D---- C:\WINDOWS\system32\xircom
2010-11-23 20:05:22 ----D---- C:\Program Files\xerox
2010-11-23 20:05:22 ----D---- C:\Program Files\microsoft frontpage
2010-11-23 20:05:06 ----RASH---- C:\MSDOS.SYS
2010-11-23 20:05:06 ----RASH---- C:\IO.SYS
2010-11-23 20:05:06 ----A---- C:\WINDOWS\control.ini
2010-11-23 20:05:06 ----A---- C:\CONFIG.SYS
2010-11-23 20:05:06 ----A---- C:\AUTOEXEC.BAT
2010-11-23 20:04:53 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-11-23 20:04:07 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-11-23 20:04:07 ----RD---- C:\WINDOWS\Offline Web Pages
2010-11-23 20:04:07 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-11-23 20:04:02 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-11-23 20:03:58 ----HD---- C:\Program Files\WindowsUpdate
2010-11-23 20:03:35 ----D---- C:\WINDOWS\system32\DirectX
2010-11-23 20:03:28 ----A---- C:\WINDOWS\system32\atrace.dll
2010-11-23 20:03:25 ----A---- C:\WINDOWS\system32\desktop.ini
2010-11-23 20:03:25 ----A---- C:\WINDOWS\desktop.ini
2010-11-23 20:03:17 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-11-23 20:03:16 ----A---- C:\WINDOWS\system32\acctres.dll
2010-11-23 20:03:15 ----D---- C:\Program Files\Common Files\Services
2010-11-23 20:03:12 ----SD---- C:\WINDOWS\Tasks
2010-11-23 20:03:12 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-11-23 20:03:10 ----D---- C:\Program Files\Common Files\MSSoap
2010-11-23 20:03:06 ----D---- C:\WINDOWS\srchasst
2010-11-23 20:03:05 ----D---- C:\WINDOWS\system32\Macromed
2010-11-23 20:03:02 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-11-23 20:03:02 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wups.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-11-23 20:02:55 ----D---- C:\Program Files\Movie Maker
2010-11-23 20:02:35 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-11-23 20:02:35 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-11-23 20:02:34 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-11-23 20:02:34 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-11-23 20:02:30 ----D---- C:\WINDOWS\system32\Restore
2010-11-23 20:02:30 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-11-23 20:02:30 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-11-23 20:02:30 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\srclient.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\ils.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\msconf.dll
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-11-23 20:02:24 ----D---- C:\Program Files\NetMeeting
2010-11-23 20:02:24 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-11-23 20:02:24 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-11-23 20:02:23 ----A---- C:\WINDOWS\system32\inetres.dll
2010-11-23 20:02:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-11-23 20:02:21 ----D---- C:\Program Files\Outlook Express
2010-11-23 20:02:21 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-11-23 20:02:21 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\mstask.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\isign32.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-11-23 20:02:13 ----D---- C:\Program Files\Common Files\System
2010-11-23 20:02:08 ----D---- C:\Program Files\Internet Explorer
2010-11-23 20:01:36 ----D---- C:\Program Files\ComPlus Applications
2010-11-23 20:01:34 ----A---- C:\WINDOWS\vbaddin.ini
2010-11-23 20:01:34 ----A---- C:\WINDOWS\vb.ini
2010-11-23 20:01:30 ----D---- C:\WINDOWS\Registration
2010-11-23 20:01:22 ----D---- C:\Program Files\Windows Media Player
2010-11-23 20:01:22 ----D---- C:\Program Files\Online Services
2010-11-23 20:01:16 ----D---- C:\Program Files\Messenger
2010-11-23 20:01:11 ----D---- C:\Program Files\MSN Gaming Zone
2010-11-23 20:01:11 ----A---- C:\WINDOWS\system32\write.exe
2010-11-23 20:01:00 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-11-23 20:01:00 ----A---- C:\WINDOWS\system32\hticons.dll
2010-11-23 20:01:00 ----A---- C:\WINDOWS\system32\avwav.dll
2010-11-23 20:00:59 ----A---- C:\WINDOWS\system32\winchat.exe
2010-11-23 20:00:59 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-11-23 20:00:59 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-11-23 20:00:51 ----A---- C:\WINDOWS\system32\charmap.exe
2010-11-23 20:00:51 ----A---- C:\WINDOWS\system32\getuname.dll
2010-11-23 20:00:50 ----A---- C:\WINDOWS\system32\winmine.exe
2010-11-23 20:00:50 ----A---- C:\WINDOWS\system32\sol.exe
2010-11-23 20:00:50 ----A---- C:\WINDOWS\system32\calc.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\tskill.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\reset.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\freecell.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\tscon.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\shadow.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\regini.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\msg.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\logoff.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-11-23 20:00:47 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-11-23 20:00:41 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-11-23 20:00:27 ----D---- C:\Program Files\MSN
2010-11-23 20:00:26 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-11-23 20:00:26 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-11-23 20:00:25 ----D---- C:\Program Files\Windows NT
2010-11-23 20:00:25 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-11-23 20:00:25 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-11-23 20:00:24 ----A---- C:\WINDOWS\system32\spider.exe
2010-11-23 20:00:24 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-11-23 20:00:24 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-11-23 20:00:23 ----D---- C:\WINDOWS\system32\en-US
2010-11-23 20:00:23 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2010-11-23 20:00:23 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2010-11-23 20:00:23 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\tsgqec.dll
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\aaclient.dll
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-11-23 20:00:19 ----D---- C:\WINDOWS\system32\MsDtc
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-11-23 20:00:16 ----D---- C:\WINDOWS\system32\Com
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\stclient.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\colbact.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-11-23 20:00:15 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-11-23 20:00:15 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-11-23 20:00:15 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-11-23 20:00:14 ----A---- C:\WINDOWS\system32\comuid.dll
2010-11-23 20:00:14 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-11-23 20:00:14 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-11-23 20:00:02 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2010-11-23 20:00:01 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
======List of files/folders modified in the last 1 months======
2010-11-24 13:27:32 ----A---- C:\WINDOWS\win.ini
2010-11-24 13:10:07 ----A---- C:\WINDOWS\system.ini
2010-11-23 20:04:42 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-09-29 108792]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2009-09-29 96408]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-09-29 116008]
R2 irda;IrDA Protocol; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-14 88192]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2008-05-30 2880512]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2007-02-16 160256]
R3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2007-03-23 539072]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2007-03-23 37424]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2007-03-31 876384]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-05-30 4424192]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2007-02-18 12160]
R3 NETw4x32;Intel(R) Wireless WiFi Link Adapter Driver for Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-04-29 2206976]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 NSCIRDA;NSC Infrared Device Driver; C:\WINDOWS\system32\DRIVERS\nscirda.sys [2008-04-14 28672]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-14 79232]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2007-03-23 149123]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2007-03-31 55352]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2007-03-23 67960]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2008-05-30 536576]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2007-04-01 273256]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-09-29 735960]
R2 Irmon;Infrared Monitor; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-09-29 20680]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------
Run by family at 2010-12-18 12:00:54
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 60 GB (92%) free of 65 GB
Total RAM: 2046 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:01:06, on 18.12.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\family\Desktop\RSIT.exe
C:\Program Files\trend micro\family.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
--
End of file - 3577 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-05-28 16132608]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"AzMixerSel"=C:\Program Files\Realtek\InstallShield\AzMixerSel.exe [2005-06-11 53248]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-09-29 2054360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-09-16 1164584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Bluetooth.lnk]
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTTray.exe [2007-04-01 568176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2008-05-30 126976]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\BitLord\BitLord.exe"="C:\Program Files\BitLord\BitLord.exe:*:Enabled:BitLord"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.0"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.0"
======List of files/folders created in the last 1 months======
2010-12-18 12:00:55 ----D---- C:\Program Files\trend micro
2010-12-18 12:00:54 ----D---- C:\rsit
2010-12-17 00:25:03 ----A---- C:\WINDOWS\ntbtlog.txt
2010-12-13 00:28:35 ----D---- C:\WINDOWS\pss
2010-12-02 23:14:04 ----D---- C:\WINDOWS\system32\appmgmt
2010-11-30 22:39:29 ----A---- C:\WINDOWS\iun6002.exe
2010-11-30 22:39:25 ----D---- C:\WINDOWS\system32\languages
2010-11-30 22:39:25 ----D---- C:\Program Files\Codec Pack - All In 1
2010-11-25 21:14:31 ----D---- C:\Program Files\Common Files\DivX Shared
2010-11-25 21:13:20 ----D---- C:\Program Files\DivX
2010-11-25 21:12:44 ----D---- C:\Documents and Settings\All Users\Application Data\DivX
2010-11-25 14:37:00 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2010-11-24 19:04:38 ----D---- C:\Documents and Settings\family\Application Data\Macromedia
2010-11-24 19:04:38 ----D---- C:\Documents and Settings\family\Application Data\Adobe
2010-11-24 13:32:08 ----D---- C:\WINDOWS\RegisteredPackages
2010-11-24 13:31:44 ----D---- C:\Documents and Settings\family\Application Data\Foxit Software
2010-11-24 13:31:24 ----D---- C:\Program Files\Foxit Software
2010-11-24 13:28:40 ----D---- C:\Program Files\BitLord
2010-11-24 13:27:47 ----A---- C:\WINDOWS\ODBC.INI
2010-11-24 13:27:44 ----A---- C:\WINDOWS\system32\mdimon.dll
2010-11-24 13:27:13 ----D---- C:\Program Files\Common Files\DESIGNER
2010-11-24 13:27:01 ----D---- C:\WINDOWS\SHELLNEW
2010-11-24 13:27:01 ----D---- C:\Program Files\Microsoft.NET
2010-11-24 13:27:01 ----D---- C:\Program Files\Microsoft Office
2010-11-24 13:21:21 ----D---- C:\Documents and Settings\family\Application Data\WinRAR
2010-11-24 13:21:08 ----SHD---- C:\RECYCLER
2010-11-24 13:20:21 ----D---- C:\Program Files\WinRAR
2010-11-24 13:16:15 ----D---- C:\Documents and Settings\family\Application Data\Mozilla
2010-11-24 13:16:10 ----D---- C:\Program Files\Mozilla Firefox
2010-11-24 13:13:44 ----D---- C:\Program Files\CCleaner
2010-11-24 13:03:40 ----A---- C:\WINDOWS\system32\WMErrSKY.dll
2010-11-24 13:03:34 ----D---- C:\WINDOWS\system32\1051
2010-11-24 13:00:51 ----D---- C:\Program Files\ESET
2010-11-24 13:00:51 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2010-11-24 12:57:35 ----D---- C:\Documents and Settings\family\Application Data\ATI
2010-11-24 12:57:35 ----D---- C:\Documents and Settings\All Users\Application Data\ATI
2010-11-24 12:57:34 ----D---- C:\WINDOWS\system32\Lang
2010-11-24 12:55:28 ----RA---- C:\WINDOWS\system32\NETw4r32.dll
2010-11-24 12:55:28 ----RA---- C:\WINDOWS\system32\NETw4c32.dll
2010-11-24 12:55:28 ----RA---- C:\WINDOWS\system32\drivers\NETw4x32.sys
2010-11-24 12:53:54 ----A---- C:\WINDOWS\system32\hidserv.dll
2010-11-24 12:52:22 ----A---- C:\WINDOWS\system32\drivers\btwusb.sys
2010-11-24 12:52:22 ----A---- C:\WINDOWS\system32\btw_ci.dll
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btwhid.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btwdndis.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btport.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btkrnl.sys
2010-11-24 12:52:21 ----A---- C:\WINDOWS\system32\drivers\btaudio.sys
2010-11-24 12:52:13 ----D---- C:\Program Files\WIDCOMM
2010-11-24 12:51:47 ----A---- C:\WINDOWS\system32\drivers\splitter.sys
2010-11-24 12:51:46 ----A---- C:\WINDOWS\system32\drivers\wdmaud.sys
2010-11-24 12:51:45 ----A---- C:\WINDOWS\system32\drivers\DMusic.sys
2010-11-24 12:51:44 ----A---- C:\WINDOWS\system32\drivers\swmidi.sys
2010-11-24 12:51:43 ----A---- C:\WINDOWS\system32\drivers\aec.sys
2010-11-24 12:51:42 ----A---- C:\WINDOWS\system32\drivers\kmixer.sys
2010-11-24 12:51:42 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2010-11-24 12:51:41 ----A---- C:\WINDOWS\system32\drivers\sysaudio.sys
2010-11-24 12:51:28 ----RA---- C:\WINDOWS\system32\drivers\b57xp32.sys
2010-11-24 12:51:21 ----D---- C:\Program Files\Broadcom
2010-11-24 12:50:27 ----R---- C:\WINDOWS\system32\ChCfg.exe
2010-11-24 12:50:05 ----D---- C:\WINDOWS\system32\RTCOM
2010-11-24 12:50:03 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2010-11-24 12:50:02 ----A---- C:\WINDOWS\system32\drivers\drmk.sys
2010-11-24 12:49:59 ----R---- C:\WINDOWS\SoundMan.exe
2010-11-24 12:49:59 ----R---- C:\WINDOWS\SkyTel.exe
2010-11-24 12:49:58 ----R---- C:\WINDOWS\RtlUpd.exe
2010-11-24 12:49:57 ----R---- C:\WINDOWS\RTLCPL.exe
2010-11-24 12:49:56 ----R---- C:\WINDOWS\system32\drivers\RtkHDAud.sys
2010-11-24 12:49:53 ----R---- C:\WINDOWS\RTHDCPL.exe
2010-11-24 12:49:53 ----R---- C:\WINDOWS\MicCal.exe
2010-11-24 12:49:51 ----R---- C:\WINDOWS\alcwzrd.exe
2010-11-24 12:49:51 ----R---- C:\WINDOWS\Alcmtr.exe
2010-11-24 12:49:50 ----D---- C:\Program Files\Realtek
2010-11-24 12:49:45 ----R---- C:\WINDOWS\RtlExUpd.dll
2010-11-24 12:49:45 ----A---- C:\WINDOWS\HideWin.exe
2010-11-24 12:48:59 ----D---- C:\Documents and Settings\family\Application Data\InstallShield
2010-11-24 12:44:16 ----RSD---- C:\WINDOWS\assembly
2010-11-24 12:43:58 ----D---- C:\WINDOWS\Microsoft.NET
2010-11-24 12:43:32 ----RA---- C:\WINDOWS\system32\atiiiexx.dll
2010-11-24 12:43:30 ----RA---- C:\WINDOWS\system32\ATIDEMGX.dll
2010-11-24 12:43:13 ----D---- C:\Program Files\ATI Technologies
2010-11-24 12:43:10 ----HD---- C:\Program Files\InstallShield Installation Information
2010-11-24 12:42:44 ----D---- C:\Program Files\Common Files\InstallShield
2010-11-24 12:38:30 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-11-24 12:38:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-11-24 12:38:28 ----D---- C:\Program Files\Intel
2010-11-24 12:38:20 ----D---- C:\Intel
2010-11-23 20:59:07 ----A---- C:\WINDOWS\system32\h323log.txt
2010-11-23 20:57:43 ----A---- C:\WINDOWS\system32\drivers\MSTEE.sys
2010-11-23 20:57:37 ----A---- C:\WINDOWS\system32\drivers\SLIP.sys
2010-11-23 20:57:35 ----A---- C:\WINDOWS\system32\drivers\NABTSFEC.sys
2010-11-23 20:57:34 ----A---- C:\WINDOWS\system32\drivers\NdisIP.sys
2010-11-23 20:57:33 ----A---- C:\WINDOWS\system32\drivers\CCDECODE.sys
2010-11-23 20:57:31 ----A---- C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2010-11-23 20:57:30 ----A---- C:\WINDOWS\system32\drivers\MSKSSRV.sys
2010-11-23 20:57:28 ----A---- C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010-11-23 20:57:26 ----A---- C:\WINDOWS\system32\drivers\StreamIP.sys
2010-11-23 20:57:25 ----A---- C:\WINDOWS\system32\drivers\MSPQM.sys
2010-11-23 20:57:21 ----A---- C:\WINDOWS\system32\drivers\audstub.sys
2010-11-23 20:56:58 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-11-23 20:56:58 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-11-23 20:56:58 ----A---- C:\WINDOWS\system32\drivers\usbvideo.sys
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\wshirda.dll
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\irmon.dll
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\irftp.exe
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\drivers\rasirda.sys
2010-11-23 20:56:50 ----A---- C:\WINDOWS\system32\drivers\irda.sys
2010-11-23 20:56:47 ----A---- C:\WINDOWS\system32\drivers\nscirda.sys
2010-11-23 20:56:35 ----A---- C:\WINDOWS\system32\drivers\redbook.sys
2010-11-23 20:56:30 ----A---- C:\WINDOWS\system32\drivers\compbatt.sys
2010-11-23 20:56:30 ----A---- C:\WINDOWS\system32\drivers\battc.sys
2010-11-23 20:56:29 ----A---- C:\WINDOWS\system32\drivers\CmBatt.sys
2010-11-23 20:56:00 ----A---- C:\WINDOWS\system32\drivers\enum1394.sys
2010-11-23 20:55:44 ----A---- C:\WINDOWS\system32\usbui.dll
2010-11-23 20:55:24 ----A---- C:\WINDOWS\system32\drivers\wmiacpi.sys
2010-11-23 20:54:30 ----SHD---- C:\WINDOWS\Installer
2010-11-23 20:54:30 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-11-23 20:54:29 ----D---- C:\Program Files\Common Files\ODBC
2010-11-23 20:54:29 ----A---- C:\WINDOWS\ODBCINST.INI
2010-11-23 20:54:25 ----RD---- C:\Program Files
2010-11-23 20:54:25 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-11-23 20:54:25 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-11-23 20:54:25 ----D---- C:\Program Files\Common Files
2010-11-23 20:54:21 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-11-23 20:54:21 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-11-23 20:54:21 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-11-23 20:54:19 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-11-23 20:54:18 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-11-23 20:54:16 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-11-23 20:54:14 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdro.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2010-11-23 20:54:12 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2010-11-23 20:54:06 ----A---- C:\WINDOWS\system32\irclass.dll
2010-11-23 20:54:06 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-11-23 20:54:05 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-11-23 20:54:05 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-11-23 20:54:05 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-11-23 20:54:03 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-11-23 20:54:02 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-11-23 20:54:02 ----A---- C:\WINDOWS\system32\drivers\irenum.sys
2010-11-23 20:54:02 ----A---- C:\WINDOWS\system32\batt.dll
2010-11-23 20:54:01 ----A---- C:\WINDOWS\system32\storprop.dll
2010-11-23 20:54:01 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-11-23 20:53:54 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2010-11-23 20:53:50 ----RA---- C:\WINDOWS\SET8.tmp
2010-11-23 20:53:47 ----RA---- C:\WINDOWS\SET4.tmp
2010-11-23 20:53:46 ----RA---- C:\WINDOWS\SET3.tmp
2010-11-23 20:53:39 ----D---- C:\WINDOWS\system32\CatRoot2
2010-11-23 20:53:39 ----D---- C:\WINDOWS\system32\CatRoot
2010-11-23 20:53:33 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2010-11-23 20:53:05 ----D---- C:\Documents and Settings
2010-11-23 20:53:04 ----SHD---- C:\System Volume Information
2010-11-23 20:52:19 ----SH---- C:\boot.ini
2010-11-23 20:47:52 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-11-23 20:47:52 ----RSD---- C:\WINDOWS\Fonts
2010-11-23 20:47:52 ----RD---- C:\WINDOWS\Web
2010-11-23 20:47:52 ----HD---- C:\WINDOWS\inf
2010-11-23 20:47:52 ----D---- C:\WINDOWS\WinSxS
2010-11-23 20:47:52 ----D---- C:\WINDOWS\twain_32
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Temp
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\wins
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\wbem
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\usmt
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\spool
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\ShellExt
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\Setup
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\scripting
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\ras
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\oobe
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\npp
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\mui
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\inetsrv
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\IME
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\icsxml
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\ias
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\export
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\en
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\drivers\etc
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\drivers\disdn
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\drivers
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\dhcp
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\config
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\3com_dmi
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\3076
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\2052
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1054
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1042
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1041
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1037
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1033
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1031
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1028
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32\1025
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system32
2010-11-23 20:47:52 ----D---- C:\WINDOWS\system
2010-11-23 20:47:52 ----D---- C:\WINDOWS\security
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Resources
2010-11-23 20:47:52 ----D---- C:\WINDOWS\repair
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Provisioning
2010-11-23 20:47:52 ----D---- C:\WINDOWS\pchealth
2010-11-23 20:47:52 ----D---- C:\WINDOWS\PeerNet
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Network Diagnostic
2010-11-23 20:47:52 ----D---- C:\WINDOWS\mui
2010-11-23 20:47:52 ----D---- C:\WINDOWS\msapps
2010-11-23 20:47:52 ----D---- C:\WINDOWS\msagent
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Media
2010-11-23 20:47:52 ----D---- C:\WINDOWS\L2Schemas
2010-11-23 20:47:52 ----D---- C:\WINDOWS\java
2010-11-23 20:47:52 ----D---- C:\WINDOWS\ime
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Help
2010-11-23 20:47:52 ----D---- C:\WINDOWS\ehome
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Driver Cache
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Debug
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Cursors
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Connection Wizard
2010-11-23 20:47:52 ----D---- C:\WINDOWS\Config
2010-11-23 20:47:52 ----D---- C:\WINDOWS\AppPatch
2010-11-23 20:47:52 ----D---- C:\WINDOWS\addins
2010-11-23 20:47:52 ----D---- C:\WINDOWS
2010-11-23 20:47:52 ----ASH---- C:\pagefile.sys
2010-11-23 20:10:54 ----D---- C:\Documents and Settings\family\Application Data\Identities
2010-11-23 20:10:52 ----HD---- C:\Program Files\Uninstall Information
2010-11-23 20:10:47 ----SD---- C:\Documents and Settings\family\Application Data\Microsoft
2010-11-23 20:10:47 ----ASH---- C:\Documents and Settings\family\Application Data\desktop.ini
2010-11-23 20:09:02 ----D---- C:\WINDOWS\SoftwareDistribution
2010-11-23 20:09:00 ----SD---- C:\WINDOWS\system32\Microsoft
2010-11-23 20:09:00 ----D---- C:\WINDOWS\Prefetch
2010-11-23 20:09:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-11-23 20:05:22 ----D---- C:\WINDOWS\system32\xircom
2010-11-23 20:05:22 ----D---- C:\Program Files\xerox
2010-11-23 20:05:22 ----D---- C:\Program Files\microsoft frontpage
2010-11-23 20:05:06 ----RASH---- C:\MSDOS.SYS
2010-11-23 20:05:06 ----RASH---- C:\IO.SYS
2010-11-23 20:05:06 ----A---- C:\WINDOWS\control.ini
2010-11-23 20:05:06 ----A---- C:\CONFIG.SYS
2010-11-23 20:05:06 ----A---- C:\AUTOEXEC.BAT
2010-11-23 20:04:53 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-11-23 20:04:07 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-11-23 20:04:07 ----RD---- C:\WINDOWS\Offline Web Pages
2010-11-23 20:04:07 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-11-23 20:04:02 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-11-23 20:03:58 ----HD---- C:\Program Files\WindowsUpdate
2010-11-23 20:03:35 ----D---- C:\WINDOWS\system32\DirectX
2010-11-23 20:03:28 ----A---- C:\WINDOWS\system32\atrace.dll
2010-11-23 20:03:25 ----A---- C:\WINDOWS\system32\desktop.ini
2010-11-23 20:03:25 ----A---- C:\WINDOWS\desktop.ini
2010-11-23 20:03:17 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-11-23 20:03:16 ----A---- C:\WINDOWS\system32\acctres.dll
2010-11-23 20:03:15 ----D---- C:\Program Files\Common Files\Services
2010-11-23 20:03:12 ----SD---- C:\WINDOWS\Tasks
2010-11-23 20:03:12 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-11-23 20:03:10 ----D---- C:\Program Files\Common Files\MSSoap
2010-11-23 20:03:06 ----D---- C:\WINDOWS\srchasst
2010-11-23 20:03:05 ----D---- C:\WINDOWS\system32\Macromed
2010-11-23 20:03:02 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-11-23 20:03:02 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wups.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-11-23 20:03:01 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-11-23 20:03:00 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-11-23 20:02:55 ----D---- C:\Program Files\Movie Maker
2010-11-23 20:02:35 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-11-23 20:02:35 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-11-23 20:02:34 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-11-23 20:02:34 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-11-23 20:02:30 ----D---- C:\WINDOWS\system32\Restore
2010-11-23 20:02:30 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-11-23 20:02:30 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-11-23 20:02:30 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\srclient.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\ils.dll
2010-11-23 20:02:29 ----A---- C:\WINDOWS\system32\drivers\sr.sys
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\msconf.dll
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-11-23 20:02:28 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-11-23 20:02:24 ----D---- C:\Program Files\NetMeeting
2010-11-23 20:02:24 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-11-23 20:02:24 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-11-23 20:02:23 ----A---- C:\WINDOWS\system32\inetres.dll
2010-11-23 20:02:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-11-23 20:02:21 ----D---- C:\Program Files\Outlook Express
2010-11-23 20:02:21 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-11-23 20:02:21 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\mstask.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\isign32.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-11-23 20:02:20 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-11-23 20:02:13 ----D---- C:\Program Files\Common Files\System
2010-11-23 20:02:08 ----D---- C:\Program Files\Internet Explorer
2010-11-23 20:01:36 ----D---- C:\Program Files\ComPlus Applications
2010-11-23 20:01:34 ----A---- C:\WINDOWS\vbaddin.ini
2010-11-23 20:01:34 ----A---- C:\WINDOWS\vb.ini
2010-11-23 20:01:30 ----D---- C:\WINDOWS\Registration
2010-11-23 20:01:22 ----D---- C:\Program Files\Windows Media Player
2010-11-23 20:01:22 ----D---- C:\Program Files\Online Services
2010-11-23 20:01:16 ----D---- C:\Program Files\Messenger
2010-11-23 20:01:11 ----D---- C:\Program Files\MSN Gaming Zone
2010-11-23 20:01:11 ----A---- C:\WINDOWS\system32\write.exe
2010-11-23 20:01:00 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-11-23 20:01:00 ----A---- C:\WINDOWS\system32\hticons.dll
2010-11-23 20:01:00 ----A---- C:\WINDOWS\system32\avwav.dll
2010-11-23 20:00:59 ----A---- C:\WINDOWS\system32\winchat.exe
2010-11-23 20:00:59 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-11-23 20:00:59 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-11-23 20:00:51 ----A---- C:\WINDOWS\system32\charmap.exe
2010-11-23 20:00:51 ----A---- C:\WINDOWS\system32\getuname.dll
2010-11-23 20:00:50 ----A---- C:\WINDOWS\system32\winmine.exe
2010-11-23 20:00:50 ----A---- C:\WINDOWS\system32\sol.exe
2010-11-23 20:00:50 ----A---- C:\WINDOWS\system32\calc.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\tskill.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\reset.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-11-23 20:00:49 ----A---- C:\WINDOWS\system32\freecell.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\tscon.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\shadow.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\regini.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\msg.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\logoff.exe
2010-11-23 20:00:48 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-11-23 20:00:47 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-11-23 20:00:41 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-11-23 20:00:27 ----D---- C:\Program Files\MSN
2010-11-23 20:00:26 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-11-23 20:00:26 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-11-23 20:00:25 ----D---- C:\Program Files\Windows NT
2010-11-23 20:00:25 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-11-23 20:00:25 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-11-23 20:00:24 ----A---- C:\WINDOWS\system32\spider.exe
2010-11-23 20:00:24 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-11-23 20:00:24 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-11-23 20:00:23 ----D---- C:\WINDOWS\system32\en-US
2010-11-23 20:00:23 ----A---- C:\WINDOWS\system32\drivers\tdtcp.sys
2010-11-23 20:00:23 ----A---- C:\WINDOWS\system32\drivers\tdpipe.sys
2010-11-23 20:00:23 ----A---- C:\WINDOWS\system32\drivers\rdpwd.sys
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\tsgqec.dll
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2010-11-23 20:00:22 ----A---- C:\WINDOWS\system32\aaclient.dll
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-11-23 20:00:21 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-11-23 20:00:20 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-11-23 20:00:19 ----D---- C:\WINDOWS\system32\MsDtc
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-11-23 20:00:19 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-11-23 20:00:18 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-11-23 20:00:17 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-11-23 20:00:16 ----D---- C:\WINDOWS\system32\Com
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\stclient.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\colbact.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-11-23 20:00:16 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-11-23 20:00:15 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-11-23 20:00:15 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-11-23 20:00:15 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-11-23 20:00:14 ----A---- C:\WINDOWS\system32\comuid.dll
2010-11-23 20:00:14 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-11-23 20:00:14 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-11-23 20:00:06 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-11-23 20:00:02 ----A---- C:\WINDOWS\system32\drivers\rdpdr.sys
2010-11-23 20:00:01 ----A---- C:\WINDOWS\system32\drivers\termdd.sys
======List of files/folders modified in the last 1 months======
2010-11-24 13:27:32 ----A---- C:\WINDOWS\win.ini
2010-11-24 13:10:07 ----A---- C:\WINDOWS\system.ini
2010-11-23 20:04:42 ----ASH---- C:\WINDOWS\fonts\desktop.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-09-29 108792]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2009-09-29 96408]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-09-29 116008]
R2 irda;IrDA Protocol; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-14 88192]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2008-05-30 2880512]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2007-02-16 160256]
R3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys [2007-03-23 539072]
R3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys [2007-03-23 37424]
R3 BTKRNL;Bluetooth Bus Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2007-03-31 876384]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-05-30 4424192]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2007-02-18 12160]
R3 NETw4x32;Intel(R) Wireless WiFi Link Adapter Driver for Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-04-29 2206976]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 NSCIRDA;NSC Infrared Device Driver; C:\WINDOWS\system32\DRIVERS\nscirda.sys [2008-04-14 28672]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-14 79232]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2007-03-23 149123]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2007-03-31 55352]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2007-03-23 67960]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2008-05-30 536576]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2007-04-01 273256]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-09-29 735960]
R2 Irmon;Infrared Monitor; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-09-29 20680]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
-----------------EOF-----------------