ComboFix 11-02-21.02 - Pc 22.02.2011 15:33:13.2.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2046.1440 [GMT 1:00]
Running from: c:\documents and settings\Pc\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Pc\Desktop\CFScript.txt
AV: ESET Smart Security 4.0 *Disabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
AV: Spyware Doctor with AntiVirus *Enabled/Updated* {D3C23B96-C9DC-477F-8EF1-69AF17A6EFF6}
FW: ESET personal firewall *Disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\.autoreg
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsIWebFF.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF.dll
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\components\nsWebFF15.dll
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\chrome\webff.jar
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\install.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{003D3EDC-99B9-4a34-9C20-60CB94F7E829}\install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\ConduitAutoCompleteSearch.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\ConduitAutoCompleteSearch.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\ConduitToolbar.idl
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\ConduitToolbar.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\ConduitToolbar.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\FFExternalAlert.dll
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\FFExternalAlert.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\RadioWMPCore.dll
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\RadioWMPCore.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\defaults\default_radio_skin.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\defaults\fbAlert.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\chrome\freecorder.jar
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\lib\xpcom.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\META-INF\manifest.mf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\META-INF\zigbert.rsa
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\META-INF\zigbert.sf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\searchplugin\conduit.gif
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\searchplugin\conduit.ico
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\searchplugin\conduit.PNG
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\searchplugin\conduit.src
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\searchplugin\conduit.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\version.txt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\defaults\preferences\defaults.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\chrome\chrome_user.jar
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}\install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
anttoolbar@ant.com
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
anttoolbar@ant.com\defaults\preferences\defaults.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
anttoolbar@ant.com\chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
anttoolbar@ant.com\chrome\antbar.jar
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
anttoolbar@ant.com\install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\components\fvd_single_site_detector.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\components\fvd_single_site_detector.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\defaults\preferences\fvd_single_setup.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_download.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_download.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_input_window.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_input_window.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_license.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_license.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_settings.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_settings.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_short_urls.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_short_urls.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_single.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\content\fvd_single.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.download.dtd
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.download.properties
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.dtd
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.input_window.properties
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.license.adult.txt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.license.dtd
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.license.properties
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.license.usage.txt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.properties
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.settings.dtd
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.settings.properties
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\locale\en-US\fvd.single.short_urls.dtd
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.buttons.small.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.css
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.download.css
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.download.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.icon.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.input_window.css
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.license.css
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.main_button.large.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.main_button.small.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.notify.unsupported.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.settings.css
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.settings.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\chrome\skin\fvd.single.short_urls.css
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
artur.dubovoy@gmail.com\install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\ConduitAutoCompleteSearch.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\ConduitAutoCompleteSearch.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\ConduitToolbar.idl
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\ConduitToolbar.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\ConduitToolbar.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\FFExternalAlert.dll
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\FFExternalAlert.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\RadioWMPCore.dll
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\components\RadioWMPCore.xpt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\alertSettingsComponent.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\appContextMenu.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\engineContextMenu.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\engineSettings.json
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\fbAlert.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\getAppsContextMenu.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\postAppsContextMenu.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\toolbarContextMenu.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\defaults\unsharedAppsContextMenu.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\DualPackage\install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\chrome\conduitengine.jar
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\lib\xpcom.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\META-INF\manifest.mf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\META-INF\zigbert.rsa
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\META-INF\zigbert.sf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\searchplugin\conduit.gif
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\searchplugin\conduit.ico
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\searchplugin\conduit.PNG
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\searchplugin\conduit.src
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\searchplugin\conduit.xml
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
engine@conduit.com\version.txt
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\._chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\._install.rdf
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\._.DS_Store
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\._.DS_Store
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\._disable_coupons.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\._main.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._.DS_Store
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._green.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._info.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._pb_logo.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._pb_logo_grey.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._pb_logo_small.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._spacer.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._status_bar_off.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._status_bar_on.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\images\._yellow.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\js\._disable_coupons.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\js\._jx.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\__MACOSX\chrome\content\js\._main.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome.manifest
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\.DS_Store
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\.DS_Store
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\disable_coupons.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\.DS_Store
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\green.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\info.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\pb_icon.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\pb_logo.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\pb_logo_grey.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\pb_logo_small.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\spacer.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\status_bar_off.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\status_bar_on.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\images\yellow.png
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\js\disable_coupons.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\js\jx.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\js\main.js
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\chrome\content\main.xul
c:\documents and settings\Pc\Application Data\Mozilla\Firefox\Profiles\hgrajoii.default\extensions\
info@priceblink.com\install.rdf
c:\documents and settings\Pc\Application Data\PriceGong
c:\documents and settings\Pc\Application Data\PriceGong\Data\1.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\a.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\b.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\c.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\d.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\e.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\f.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\g.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\h.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\i.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\J.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\k.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\l.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\m.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\mru.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\n.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\o.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\p.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\q.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\r.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\s.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\t.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\u.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\v.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\w.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\x.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\y.xml
c:\documents and settings\Pc\Application Data\PriceGong\Data\z.xml
c:\program files\Ask.com
c:\program files\Ask.com\cobrand.ico
c:\program files\Ask.com\config.xml
c:\program files\Ask.com\favicon.ico
c:\program files\Ask.com\fv_25.ico
c:\program files\Ask.com\GenericAskToolbar.dll
c:\program files\Ask.com\mupcfg.xml
c:\program files\Ask.com\SaUpdate.exe
c:\program files\Ask.com\UpdateTask.exe
c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\install.rdf
c:\program files\SM\FF
c:\program files\SM\FF\content\addDialog.xul
c:\program files\SM\FF\content\firefoxOverlay.xul
c:\program files\SM\FF\content\globals.js
c:\program files\SM\FF\content\main.js
c:\program files\SM\FF\content\overlay.js
c:\program files\SM\FF\content\prefs.xul
c:\program files\SM\FF\defaults\preferences\my_addon.js
c:\program files\SM\FF\chrome.manifest
c:\program files\SM\FF\install.rdf
c:\program files\SM\FF\locale\en-US\manyffaddon.dtd
c:\program files\SM\FF\locale\en-US\manyffaddon.properties
c:\program files\SM\FF\locale\en-US\my_addon.dtd
c:\program files\SM\FF\skin\my_addon.css
c:\program files\SM\FF\skin\overlay.css
c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\defaults\preferences\defaults.js
c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\chrome.manifest
c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\chrome\chrome.jar
c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\install.rdf
c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\MicrosoftDotNetFrameworkAssistant.xpi
c:\windows\system\winspool.drv
c:\windows\system32\msgsvc.dll . . . is infected!!
.
((((((((((((((((((((((((( Files Created from 2011-01-22 to 2011-02-22 )))))))))))))))))))))))))))))))
.
2011-02-21 15:33 . 2011-02-21 15:33 -------- d-sh--w- c:\documents and settings\Pc\PrivacIE
2011-02-21 15:33 . 2011-02-21 15:33 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2011-02-21 15:31 . 2011-02-21 15:31 -------- d-sh--w- c:\documents and settings\Pc\IETldCache
2011-02-21 15:23 . 2011-02-21 15:25 -------- dc-h--w- c:\windows\ie8
2011-02-21 15:20 . 2010-10-18 11:10 7680 -c----w- c:\windows\system32\dllcache\iecompat.dll
2011-02-21 15:20 . 2010-12-20 23:59 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-02-21 15:20 . 2010-12-20 23:59 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-02-21 15:20 . 2010-12-20 23:59 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-02-20 23:32 . 2011-02-20 23:32 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\PCHealth
2011-02-20 22:19 . 2011-02-20 22:19 -------- d-----w- c:\documents and settings\Pc\Application Data\AVG
2011-02-20 21:26 . 2011-02-20 21:26 388096 ----a-r- c:\documents and settings\Pc\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-02-13 23:49 . 2011-02-13 23:49 -------- d-----w- c:\documents and settings\Pc\Local Settings\Application Data\PCHealth
2011-02-13 23:23 . 2011-02-13 23:23 -------- d-----w- c:\documents and settings\Pc\Local Settings\Application Data\Threat Expert
2011-02-13 22:23 . 2011-02-13 22:22 138240 ----a-w- c:\windows\Lduvia.exe
2011-02-13 21:45 . 2010-01-21 23:21 767952 ----a-w- c:\windows\BDTSupport.dll
2011-02-13 21:45 . 2010-01-21 23:21 165840 ----a-w- c:\windows\PCTBDRes.dll
2011-02-13 21:45 . 2010-01-21 23:21 149456 ----a-w- c:\windows\SGDetectionTool.dll
2011-02-13 21:45 . 2010-01-21 23:21 1652688 ----a-w- c:\windows\PCTBDCore.dll
2011-02-13 21:41 . 2009-10-30 10:11 233136 ----a-w- c:\windows\system32\drivers\pctgntdi.sys
2011-02-13 21:41 . 2009-11-09 10:20 207792 ----a-w- c:\windows\system32\drivers\PCTCore.sys
2011-02-13 21:41 . 2009-10-06 15:31 87784 ----a-w- c:\windows\system32\drivers\PCTAppEvent.sys
2011-02-13 21:41 . 2009-09-03 08:45 70408 ----a-w- c:\windows\system32\drivers\pctplsg.sys
2011-02-13 21:41 . 2011-02-20 14:53 -------- d-----w- c:\program files\Spyware Doctor
2011-02-13 21:41 . 2011-02-13 21:46 -------- d-----w- c:\program files\Common Files\PC Tools
2011-02-13 21:41 . 2011-02-13 21:41 -------- d-----w- c:\documents and settings\Pc\Application Data\PC Tools
2011-02-13 21:41 . 2011-02-13 21:41 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Tools
2011-02-11 17:09 . 2011-02-11 17:14 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Adobe
2011-02-11 17:06 . 2011-02-11 17:06 -------- d-----w- c:\windows\system32\wbem\Repository
2011-02-10 17:58 . 2011-02-10 17:58 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Freecorder
2011-02-10 17:57 . 2011-02-10 17:57 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Apple
2011-02-08 21:24 . 2011-02-08 21:24 -------- d-----w- c:\documents and settings\Pc\Application Data\Apple Computer
2011-02-08 21:09 . 2011-02-08 21:09 -------- d-----w- c:\program files\Common Files\Apple
2011-02-08 21:09 . 2011-02-08 21:09 -------- d-----w- c:\documents and settings\Pc\Local Settings\Application Data\Apple
2011-02-08 21:09 . 2011-02-08 21:09 -------- d-----w- c:\program files\Apple Software Update
2011-02-08 21:09 . 2011-02-08 21:09 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
2011-02-08 21:09 . 2011-02-08 21:09 -------- d-----w- c:\documents and settings\Pc\Local Settings\Application Data\Apple Computer
2011-02-02 09:40 . 2011-02-02 09:40 -------- d-----w- c:\documents and settings\Pc\Application Data\Windows Search
2011-02-02 09:21 . 2011-02-02 09:21 -------- d-----w- c:\windows\system32\winrm
2011-02-02 09:21 . 2011-02-02 09:21 -------- dc-h--w- c:\windows\$968930Uinstall_KB968930$
2011-02-02 09:21 . 2011-02-02 09:21 -------- d-----w- c:\windows\system32\sk-SK
2011-02-02 09:20 . 2011-02-02 09:20 -------- d-----w- c:\documents and settings\Pc\Local Settings\Application Data\Identities
2011-02-02 09:20 . 2011-02-02 09:20 -------- d-----w- c:\documents and settings\Pc\Application Data\Windows Desktop Search
2011-02-02 09:20 . 2011-02-04 08:36 -------- d-----w- c:\program files\Windows Desktop Search
2011-02-02 09:20 . 2011-02-02 09:20 -------- d-----w- c:\windows\system32\GroupPolicy
2011-01-31 23:34 . 2011-01-31 23:34 -------- d-----w- c:\documents and settings\Pc\Application Data\Sonarca Sound Recorder XiFi
2011-01-31 23:14 . 2011-01-31 23:14 -------- d-----w- c:\documents and settings\Pc\Application Data\Free WMA MP3 Converter
2011-01-31 23:09 . 2011-01-31 23:09 -------- d-----w- c:\program files\Free WMA MP3 Converter
2011-01-31 23:09 . 2002-01-05 14:37 344064 ----a-w- c:\windows\system32\msvcr70.dll
2011-01-31 12:08 . 2011-02-20 22:00 -------- d-----w- c:\program files\trend micro
2011-01-31 12:08 . 2011-01-31 12:08 -------- d-----w- C:\rsit
2011-01-31 12:00 . 2011-01-31 12:00 -------- d-----w- c:\documents and settings\Pc\Local Settings\Application Data\ESET
2011-01-30 13:57 . 2011-01-30 13:57 103864 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll
2011-01-30 13:57 . 2011-01-30 13:57 103864 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
2011-01-29 18:45 . 2011-01-29 18:45 2713084 ----a-w- c:\windows\Volvo S40 (1995) Screensaver.scr
2011-01-29 18:45 . 2011-01-29 18:45 -------- d-----w- c:\program files\Volvo S40 (1995) Screensaver
2011-01-29 18:37 . 2011-01-29 18:37 2664476 ----a-w- c:\windows\Volvo S40 (2004) Screensaver.scr
2011-01-29 18:37 . 2011-01-29 18:37 -------- d-----w- c:\program files\Volvo S40 (2004) Screensaver
2011-01-29 18:23 . 2011-01-29 18:26 2983111 ----a-w- c:\windows\VOLVOS~1.exe
2011-01-29 18:23 . 2011-01-29 18:26 210372 ----a-w- c:\windows\VOLVOS~1.scr
2011-01-29 14:52 . 2011-01-29 14:52 -------- d-----w- c:\program files\AudioShell
2011-01-25 18:15 . 2011-01-25 18:15 -------- d-----w- c:\documents and settings\Pc\Local Settings\Application Data\Ahead
2011-01-24 21:34 . 2011-01-24 21:34 -------- d-----w- c:\program files\Autodesk
2011-01-23 21:17 . 2011-01-23 21:17 81920 ----a-w- c:\windows\system32\BIVBX11.DLL
2011-01-23 21:17 . 2011-01-31 23:56 -------- d-----w- C:\TEACHER
2011-01-23 20:25 . 2011-02-13 12:49 -------- d-----w- C:\TRANSLAT
2011-01-23 20:24 . 2011-01-23 21:57 -------- d-----w- c:\documents and settings\Pc\Application Data\LangSoft
2011-01-23 20:24 . 2011-01-23 20:24 -------- d-----w- c:\documents and settings\All Users\Application Data\LangSoft
2011-01-23 18:33 . 2011-01-23 18:33 -------- d-----w- c:\program files\Apperson
2011-01-23 17:38 . 2011-02-20 22:30 -------- d-----w- c:\program files\Searchster.Net
2011-01-23 17:38 . 2011-02-02 09:42 -------- d-----w- c:\program files\SM
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-02-13 23:35 . 2010-12-19 21:06 90112 ----a-w- c:\windows\DUMP4822.tmp
2011-01-21 14:42 . 2001-08-23 09:00 439808 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-07 14:09 . 2001-08-23 09:00 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-12-31 13:14 . 2001-08-23 09:00 1864064 ----a-w- c:\windows\system32\win32k.sys
2010-12-23 11:37 . 2010-12-23 11:33 10980832 ----a-w- c:\program files\FLV PlayerATBSetup.exe
2010-12-22 12:32 . 2001-08-23 09:00 301568 ----a-w- c:\windows\system32\kerberos.dll
2010-12-22 08:50 . 2010-12-22 08:50 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
2010-12-22 08:50 . 2010-12-22 08:50 47360 ----a-w- c:\documents and settings\Pc\Application Data\pcouffin.sys
2010-12-20 23:59 . 2001-08-23 09:00 916480 ----a-w- c:\windows\system32\wininet.dll
2010-12-20 23:59 . 2001-08-23 09:00 43520 ------w- c:\windows\system32\licmgr10.dll
2010-12-20 23:59 . 2001-08-23 09:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-12-20 17:24 . 2001-08-23 09:00 730112 ----a-w- c:\windows\system32\lsasrv.dll
2010-12-20 12:55 . 2001-08-23 09:00 385024 ------w- c:\windows\system32\html.iec
2010-12-10 17:29 . 2010-12-10 17:29 2248032 ----a-w- c:\windows\system32\sqlncli.dll
2010-12-09 17:39 . 2008-04-23 15:44 2069376 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-12-09 15:15 . 2001-08-23 09:00 718336 ----a-w- c:\windows\system32\ntdll.dll
2010-12-09 14:30 . 2001-08-23 09:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
2010-12-09 13:43 . 2001-08-23 09:00 2192768 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-12-03 11:02 . 2010-12-03 11:02 86016 ----a-w- c:\windows\system32\cgmopenbho.dll
2010-12-03 10:50 . 2010-12-23 15:06 126976 ----a-w- c:\windows\system32\CommHandlerJ2534.dll
2010-12-03 10:50 . 2010-12-23 15:06 102400 ----a-w- c:\windows\system32\CommHandlerVCT2000.dll
2010-12-03 10:50 . 2010-12-23 15:06 65536 ----a-w- c:\windows\system32\UtilityHandler.dll
2010-12-03 10:50 . 2010-12-23 15:05 45056 ----a-w- c:\windows\system32\VBFConverter.dll
2010-12-03 10:50 . 2010-12-23 15:05 53248 ----a-w- c:\windows\system32\VBFFactory.dll
2010-12-03 10:50 . 2010-12-23 15:05 61529 ----a-w- c:\windows\system32\VehicleCommunicator.dll
2010-12-03 10:50 . 2010-12-23 15:05 61529 ----a-w- c:\windows\system32\ProtocolHandlerD2.dll
2010-12-03 10:50 . 2010-12-23 15:05 77824 ----a-w- c:\windows\system32\ProtocolHandlerSwdlTCM.dll
2010-12-03 10:50 . 2010-12-23 15:05 45056 ----a-w- c:\windows\system32\VBFParser1.dll
2010-12-03 10:50 . 2010-12-23 15:05 106496 ----a-w- c:\windows\system32\CommHandlerJ2534Dec04.dll
2010-12-03 10:50 . 2010-12-23 15:05 49152 ----a-w- c:\windows\system32\VEMSDB.dll
2010-12-03 10:50 . 2010-12-23 15:05 49152 ----a-w- c:\windows\system32\X40ProgHandler.dll
2010-12-03 10:50 . 2010-12-23 15:05 86016 ----a-w- c:\windows\system32\ProtocolHandlerSwdlEMS.dll
2010-12-03 10:50 . 2010-12-23 15:05 430080 ----a-w- c:\windows\system32\libdb32.dll
2010-12-03 10:34 . 2010-12-23 15:05 98304 ----a-w- c:\windows\system32\fdi.DLL
2010-12-03 10:34 . 2010-12-23 15:05 81920 ----a-w- c:\windows\system32\fci.DLL
2010-12-03 10:34 . 2010-12-23 15:05 57344 ----a-w- c:\windows\system32\libdb_java32.dll
2010-12-03 10:34 . 2010-12-23 15:05 2560 ----a-w- c:\windows\system32\Invoke.dll
2010-12-03 10:34 . 2010-12-23 15:05 184320 ----a-w- c:\windows\system32\vctdrive.dll
2010-12-03 10:34 . 2010-12-23 15:05 140288 ----a-w- c:\windows\system32\Comdlg32.ocx
2010-12-03 10:34 . 2010-12-23 15:05 16384 ----a-w- c:\windows\system32\canlib32.dll
2010-12-03 10:33 . 2010-12-23 15:05 40517 ----a-w- c:\windows\system32\jRegistryKey.dll
2010-12-03 10:33 . 2010-12-23 15:05 278596 ----a-w- c:\windows\system32\vctdrive_vida.dll
2010-11-29 16:38 . 2010-11-29 16:38 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2010-11-29 16:38 . 2010-11-29 16:38 69632 ----a-w- c:\windows\system32\QuickTime.qts
.