Vir Win 7 Home Security
Napsal: 06 čer 2011 13:15
Dobry den,
mam problem s timto virem. Uz to bylo reseno v http://www.viry.cz/forum/viewtopic.php?f=13&t=111310
Prosím o kontrolu logu:
Logfile of random's system information tool 1.08 (written by random/random)
Run by donknutson at 2011-06-06 13:18:51
Microsoft Windows 7 Enterprise Service Pack 1
System drive C: has 85 GB (35%) free of 244 GB
Total RAM: 8180 MB (74% free)
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_e085d3cd5b474ba6\STacSV64.exe
C:\Windows\system32\svchost.exe -k LocalService
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c1c9e8e5-b988-4064-8899-740e24a64280 -SystemEventPortName:HostProcess-30671e5e-392b-4b3c-b794-1ec0fa4ab3c0 -IoCancelEventPortName:HostProcess-d8947f76-8ec5-4870-853b-e181833a694a -NonStateChangingEventPortName:HostProcess-21b83a89-3f24-4632-9212-3cae10998c2a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:48f1d131-22a2-4ba1-b90c-ac49909f7d63
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Smc.exe"
"C:\Program Files (x86)\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon
C:\Windows\System32\spoolsv.exe
"C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe"
"C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_e085d3cd5b474ba6\AESTSr64.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\SysWOW64\lkcitdl.exe
C:\Windows\SysWOW64\lkads.exe
C:\Windows\SysWOW64\lktsrv.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sUTSSQLEXPRESS
"C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe"
C:\Windows\SysWOW64\nisvcloc.exe -s
"C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe"
C:\Windows\system32\svchost.exe -k regsvc
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Rtvscan.exe"
"C:\Program Files\UltraVNC\WinVNC.exe" -service
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\UltraVNC\WinVNC.exe" -service_run
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k bthsvcs
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
\\.\pipe\SygateSecurityAgentR41T50247 \\.\pipe\SygateSecurityAgentW18467T50247
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe" {EE68EAFC-BF28-4017-8A92-D17DACF0B459} -Embedding
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe" /fromrunkey
"C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe" /auto
"C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Users\donknutson\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Users\donknutson\AppData\Local\eye.exe -dtm -a
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\UI0Detect.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\agent.exe" -Embedding
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -Embedding
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\SavUI.exe" -Embedding
"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\donknutson\Desktop\Construction\APSplanbook.pdf"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" /PRODUCT:Reader /VERSION:9.0 /MODE:2
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ea161fb2-82d7-4341-9933-65e3dafeb23a -SystemEventPortName:HostProcess-f95a662f-f36e-43e1-a269-1a7f38fdf26a -IoCancelEventPortName:HostProcess-3936ee6d-110d-4441-bb5e-0ab55fdeb275 -NonStateChangingEventPortName:HostProcess-bd418c48-fd40-4962-a87d-91ede5d71107 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7b75483a-51b3-4cd6-a4ff-d9d0e423a424
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"E:\other\RSITx64.exe"
wmiadap.exe /R /T
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\trend micro\donknutson.exe" /silentautolog
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1274732764-53309532-4069937376-1633Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1274732764-53309532-4069937376-1633UA.job
C:\Windows\tasks\Microsoft.Management.Services.HostProtection.FullScan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-04-04 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-06-14 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-10 487424]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-11 1890088]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2010-07-07 1875048]
"NVHotkey"=C:\Windows\system32\nvHotkey.dll [2010-07-09 282728]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"ISUSPM"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-11 218032]
"Google Update"=C:\Users\donknutson\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-16 136176]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2009-07-14 9728]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files (x86)\uTorrent\uTorrent.exe [2010-07-24 319280]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-04-04 36272]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"Communicator"=C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe [2011-03-07 5150560]
"DataFinder"=C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe [2009-06-01 3103264]
"ccApp"=C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe [2011-05-03 115624]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccEvtMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccSetMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Symantec Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Symantec Antvirus]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ccEvtMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ccSetMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmcService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Symantec Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Symantec Antvirus]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"consentpromptbehavioradmin"=0
"enableinstallerdetection"=0
"enablelua"=0
"enablesecureuiapaths"=0
"legalnoticecaption"=IT IS AN OFFENSE TO CONTINUE WITHOUT PROPER AUTHORIZATION
"legalnoticetext"=This system is restricted to authorized users. Individuals attempting
unauthorized access will be prosecuted. If unauthorized, terminate
access now! Clicking OK indicates your acceptance of the information
in the background.
"enableuiadesktoptoggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"HideSCAHealth"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.exe - open - "C:\Users\donknutson\AppData\Local\eye.exe" -a "%1" %*
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2011-06-06 13:18:52 ----D---- C:\Program Files\trend micro
2011-06-06 13:18:51 ----D---- C:\rsit
2011-06-03 17:47:48 ----SHD---- C:\Config.Msi
2011-06-03 17:31:18 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2011-06-03 17:31:17 ----D---- C:\Program Files\Symantec
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\MSVCR71.DLL
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\MSVCP71.DLL
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\MFC71.DLL
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\capicom.dll
2011-06-03 17:30:39 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-06-03 17:30:38 ----D---- C:\ProgramData\Symantec
2011-06-03 17:30:38 ----D---- C:\Program Files (x86)\Symantec
2011-05-13 08:22:07 ----D---- C:\Windows\system32\SPReview
2011-05-13 07:55:25 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2011-05-13 07:55:25 ----A---- C:\Windows\system32\mprddm.dll
2011-05-13 07:55:24 ----A---- C:\Windows\system32\mobsync.exe
2011-05-13 07:55:23 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\mstask.dll
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\mscories.dll
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\mstime.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\msdri.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\KernelBase.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\kernel32.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\KBDBLR.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\system32\itircl.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\inseng.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\inetmib1.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-05-13 07:55:21 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\raschap.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\qedit.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\propsys.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\logagent.exe
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2011-05-13 07:55:20 ----A---- C:\Windows\system32\printui.dll
2011-05-13 07:55:20 ----A---- C:\Windows\system32\pnidui.dll
2011-05-13 07:55:20 ----A---- C:\Windows\system32\pifmgr.dll
2011-05-13 07:55:18 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2011-05-13 07:55:18 ----A---- C:\Windows\SYSWOW64\samcli.dll
2011-05-13 07:55:18 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2011-05-13 07:55:18 ----A---- C:\Windows\system32\sdcpl.dll
2011-05-13 07:55:18 ----A---- C:\Windows\system32\drivers\scsiport.sys
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\RDPENCDD.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\rdpclip.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\OobeFldr.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\odbctrac.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\ntdll.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\nslookup.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\nlasvc.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\nlaapi.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\netshell.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\netlogon.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\netjoin.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\ncsi.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\MultiDigiMon.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\msxml6.dll
2011-05-13 07:55:16 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2011-05-13 07:55:16 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2011-05-13 07:55:16 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\cmd.exe
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2011-05-13 07:55:15 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-05-13 07:55:15 ----A---- C:\Windows\system32\drivers\cdrom.sys
2011-05-13 07:55:15 ----A---- C:\Windows\system32\CertPolEng.dll
2011-05-13 07:55:15 ----A---- C:\Windows\system32\certmgr.dll
2011-05-13 07:55:15 ----A---- C:\Windows\system32\certcli.dll
2011-05-13 07:55:15 ----A---- C:\Windows\system32\cdd.dll
2011-05-13 07:55:14 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2011-05-13 07:55:14 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2011-05-13 07:55:14 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-05-13 07:55:14 ----A---- C:\Windows\system32\diagperf.dll
2011-05-13 07:55:14 ----A---- C:\Windows\system32\d3d10level9.dll
2011-05-13 07:55:13 ----A---- C:\Windows\system32\dbgeng.dll
2011-05-13 07:55:12 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2011-05-13 07:55:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\dbghelp.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\d3d9.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\consent.exe
2011-05-13 07:55:12 ----A---- C:\Windows\system32\conhost.exe
2011-05-13 07:55:12 ----A---- C:\Windows\system32\comdlg32.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\AdmTmpl.dll
2011-05-13 07:55:11 ----A---- C:\Windows\system32\aepdu.dll
2011-05-13 07:55:11 ----A---- C:\Windows\system32\aeinv.dll
2011-05-13 07:55:10 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2011-05-13 07:55:10 ----A---- C:\Windows\SYSWOW64\authui.dll
2011-05-13 07:55:10 ----A---- C:\Windows\SYSWOW64\activeds.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\bcdsrv.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\bcdedit.exe
2011-05-13 07:55:10 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\authui.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\acppage.dll
2011-05-13 07:55:09 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2011-05-13 07:55:09 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2011-05-13 07:55:09 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2011-05-13 07:55:09 ----A---- C:\Windows\system32\imapi2fs.dll
2011-05-13 07:55:09 ----A---- C:\Windows\system32\ftp.exe
2011-05-13 07:55:09 ----A---- C:\Windows\system32\fsquirt.exe
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\http.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\appid.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\BdeHdCfg.exe
2011-05-13 07:55:09 ----A---- C:\Windows\system32\appinfo.dll
2011-05-13 07:55:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-05-13 07:55:08 ----A---- C:\Windows\SYSWOW64\evr.dll
2011-05-13 07:55:08 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2011-05-13 07:55:08 ----A---- C:\Windows\system32\iepeers.dll
2011-05-13 07:55:08 ----A---- C:\Windows\system32\elsTrans.dll
2011-05-13 07:55:08 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-05-13 07:55:08 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-05-13 07:55:07 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2011-05-13 07:55:07 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2011-05-13 07:55:07 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2011-05-13 07:55:07 ----A---- C:\Windows\system32\SearchFolder.dll
2011-05-13 07:55:07 ----A---- C:\Windows\system32\Faultrep.dll
2011-05-13 07:55:07 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-05-13 07:55:07 ----A---- C:\Windows\system32\Display.dll
2011-05-13 07:55:06 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2011-05-13 07:55:06 ----A---- C:\Windows\system32\tscfgwmi.dll
2011-05-13 07:55:05 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2011-05-13 07:55:05 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2011-05-13 07:55:05 ----A---- C:\Windows\system32\thumbcache.dll
2011-05-13 07:55:05 ----A---- C:\Windows\system32\taskschd.dll
2011-05-13 07:55:05 ----A---- C:\Windows\system32\tabcal.exe
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\spp.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sysmain.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sysclass.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\srchadmin.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sqmapi.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sppsvc.exe
2011-05-13 07:55:04 ----A---- C:\Windows\system32\spp.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\shwebsvc.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\shell32.dll
2011-05-13 07:55:03 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2011-05-13 07:55:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-05-13 07:55:03 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wmpeffects.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wmdrmnet.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wmdrmdev.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\WMADMOD.DLL
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wkssvc.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\drivers\winusb.sys
2011-05-13 07:55:01 ----A---- C:\Windows\system32\winhttp.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\wvc.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wwanconn.dll
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wsqmcons.exe
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wpdwcn.dll
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wpd_ci.dll
2011-05-13 07:54:57 ----A---- C:\Windows\system32\wsdchngr.dll
2011-05-13 07:54:57 ----A---- C:\Windows\system32\ws2_32.dll
2011-05-13 07:54:57 ----A---- C:\Windows\system32\userinit.exe
2011-05-13 07:54:56 ----A---- C:\Windows\system32\VPCWizard.exe
2011-05-13 07:54:56 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-05-13 07:54:54 ----A---- C:\Windows\twain_32.dll
2011-05-13 07:54:54 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2011-05-13 07:54:54 ----A---- C:\Windows\system32\umb.dll
2011-05-13 07:54:53 ----A---- C:\Windows\SYSWOW64\untfs.dll
2011-05-13 07:54:53 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2011-05-13 07:54:53 ----A---- C:\Windows\system32\umrdp.dll
2011-05-13 07:54:53 ----A---- C:\Windows\system32\drivers\umbus.sys
2011-05-13 07:54:52 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2011-05-13 07:54:52 ----A---- C:\Windows\SYSWOW64\webio.dll
2011-05-13 07:54:52 ----A---- C:\Windows\SYSWOW64\wdc.dll
2011-05-13 07:54:52 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-05-13 07:54:52 ----A---- C:\Windows\system32\webio.dll
2011-05-13 07:54:52 ----A---- C:\Windows\system32\VSSVC.exe
2011-05-13 07:54:52 ----A---- C:\Windows\system32\vssapi.dll
2011-05-13 07:54:52 ----A---- C:\Windows\system32\vss_ps.dll
2011-05-13 07:54:51 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2011-05-13 07:54:51 ----A---- C:\Windows\SYSWOW64\shacct.dll
2011-05-13 07:54:47 ----A---- C:\Windows\SYSWOW64\secproc.dll
2011-05-13 07:54:45 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2011-05-13 07:54:45 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2011-05-13 07:54:43 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2011-05-13 07:54:43 ----A---- C:\Windows\system32\mimefilt.dll
2011-05-13 07:54:43 ----A---- C:\Windows\system32\mf.dll
2011-05-13 07:54:43 ----A---- C:\Windows\system32\Mcx2Svc.dll
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\itircl.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\mscorier.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\mfps.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\MFPlay.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\mfds.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\KBDTUF.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\KBDINBEN.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\KBDGKL.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-05-13 07:54:41 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2011-05-13 07:54:41 ----A---- C:\Windows\SYSWOW64\logman.exe
2011-05-13 07:54:41 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-05-13 07:54:41 ----A---- C:\Windows\system32\mblctr.exe
2011-05-13 07:54:41 ----A---- C:\Windows\system32\luainstall.dll
2011-05-13 07:54:41 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2011-05-13 07:54:41 ----A---- C:\Windows\system32\LogonUI.exe
2011-05-13 07:54:41 ----A---- C:\Windows\system32\logoff.exe
2011-05-13 07:54:41 ----A---- C:\Windows\system32\KBDUS.DLL
2011-05-13 07:54:40 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2011-05-13 07:54:40 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2011-05-13 07:54:40 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2011-05-13 07:54:40 ----A---- C:\Windows\system32\netutils.dll
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\OpcServices.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\ole32.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\msrle32.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\mspbda.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\msdmo.dll
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\netapi32.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2011-05-13 07:54:38 ----A---- C:\Windows\system32\muifontsetup.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msvidc32.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msfeedssync.exe
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msdrm.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2011-05-13 07:54:38 ----A---- C:\Windows\system32\drivers\msdsm.sys
2011-05-13 07:54:38 ----A---- C:\Windows\system32\CscMig.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\credui.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\drivers\csc.sys
2011-05-13 07:54:37 ----A---- C:\Windows\system32\dot3cfg.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\d3d11.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\cryptsvc.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\choice.exe
2011-05-13 07:54:37 ----A---- C:\Windows\system32\chgusr.exe
2011-05-13 07:54:36 ----A---- C:\Windows\SYSWOW64\autochk.exe
2011-05-13 07:54:36 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2011-05-13 07:54:36 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\diskraid.exe
2011-05-13 07:54:36 ----A---- C:\Windows\system32\cca.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\asycfilt.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\apphelp.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\cabview.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\browcli.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\IcCoinstall.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\iasrad.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\iasacct.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\fvecpl.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\fveapi.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2011-05-13 07:54:35 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-05-13 07:54:35 ----A---- C:\Windows\system32\chgport.exe
2011-05-13 07:54:35 ----A---- C:\Windows\system32\chglogon.exe
2011-05-13 07:54:35 ----A---- C:\Windows\system32\change.exe
2011-05-13 07:54:34 ----A---- C:\Windows\SYSWOW64\imm32.dll
2011-05-13 07:54:34 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2011-05-13 07:54:34 ----A---- C:\Windows\system32\imapi2.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2011-05-13 07:54:33 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2011-05-13 07:54:32 ----A---- C:\Windows\SYSWOW64\fde.dll
2011-05-13 07:54:32 ----A---- C:\Windows\system32\fontext.dll
2011-05-13 07:54:32 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\themeui.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\efscore.dll
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tsmf.dll
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tskill.exe
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tsdiscon.exe
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tscon.exe
2011-05-13 07:54:31 ----A---- C:\Windows\system32\TRAPI.dll
2011-05-13 07:54:30 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2011-05-13 07:54:30 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\UIRibbon.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-05-13 07:54:30 ----A---- C:\Windows\system32\tssrvlic.dll
2011-05-13 07:54:28 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2011-05-13 07:54:27 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2011-05-13 07:54:26 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2011-05-13 07:54:26 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2011-05-13 07:54:26 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\termsrv.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\taskmgr.exe
2011-05-13 07:54:26 ----A---- C:\Windows\system32\taskbarcpl.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\takeown.exe
2011-05-13 07:54:26 ----A---- C:\Windows\system32\t2embed.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\syssetup.dll
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\winmm.dll
2011-05-13 07:54:25 ----A---- C:\Windows\system32\wvc.dll
2011-05-13 07:54:25 ----A---- C:\Windows\system32\wusa.exe
2011-05-13 07:54:25 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-05-13 07:54:25 ----A---- C:\Windows\system32\WinSAT.exe
2011-05-13 07:54:23 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wsnmp32.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wpdshext.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wow64win.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wow64cpu.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wow64.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\user32.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\win32spl.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\wdc.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\usp10.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\drivers\wanarp.sys
2011-05-13 07:54:22 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-05-13 07:54:22 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2011-05-13 07:54:20 ----A---- C:\Windows\SYSWOW64\relog.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\VPCSettings.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\vmicsvc.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\vmicres.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\SyncCenter.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\runonce.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\rtutils.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\Robocopy.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\riched32.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\riched20.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\reset.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\regapi.dll
2011-05-13 07:54:19 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\schedsvc.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\scesrv.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\scansetting.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\rwinsta.exe
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\rastls.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\pla.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\pdh.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rdpudd.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rdpdd.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rdpcorets.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rasmans.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\perfmon.exe
2011-05-13 07:54:17 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2011-05-13 07:54:17 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-05-13 07:54:17 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2011-05-13 07:54:15 ----A---- C:\Windows\SYSWOW64\qcap.dll
2011-05-13 07:54:15 ----A---- C:\Windows\system32\qappsrv.exe
2011-05-13 07:54:14 ----A---- C:\Windows\SYSWOW64\quartz.dll
2011-05-13 07:54:14 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2011-05-13 07:54:14 ----A---- C:\Windows\system32\query.exe
2011-05-13 07:54:14 ----A---- C:\Windows\system32\qprocess.exe
2011-05-13 07:54:14 ----A---- C:\Windows\system32\qdv.dll
2011-05-13 07:54:14 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2011-05-13 07:54:13 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2011-05-13 07:54:13 ----A---- C:\Windows\system32\spinstall.exe
2011-05-13 07:54:11 ----A---- C:\Windows\system32\sppcomapi.dll
2011-05-13 07:54:11 ----A---- C:\Windows\system32\spoolsv.exe
2011-05-13 07:54:11 ----A---- C:\Windows\system32\slui.exe
2011-05-13 07:54:11 ----A---- C:\Windows\splwow64.exe
2011-05-13 07:54:08 ----A---- C:\Windows\SYSWOW64\sud.dll
2011-05-13 07:54:08 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-05-13 07:54:08 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-05-13 07:54:08 ----A---- C:\Windows\system32\spreview.exe
2011-05-13 07:54:08 ----A---- C:\Windows\system32\SmiEngine.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\srrstr.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\spwizui.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\sppwinob.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\shunimpl.dll
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\sharemediacpl.dll
2011-05-13 07:54:06 ----A---- C:\Windows\system32\shadow.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\mcbuilder.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\manage-bde.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\lsasrv.dll
2011-05-13 07:54:06 ----A---- C:\Windows\system32\lpksetup.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\logman.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\localspl.dll
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KMSVC.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KBDSG.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2011-05-13 07:54:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2011-05-13 07:54:05 ----A---- C:\Windows\SYSWOW64\migisol.dll
2011-05-13 07:54:05 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2011-05-13 07:54:04 ----A---- C:\Windows\SYSWOW64\inseng.dll
2011-05-13 07:54:04 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-05-13 07:54:04 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-05-13 07:54:04 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\netshell.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\odbc32.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDNEPR.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\kbdlk41a.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDINKAN.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDINHIN.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDBULG.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\iTVData.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\iprtrmgr.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2011-05-13 07:54:02 ----A---- C:\Windows\system32\nrpsrv.dll
2011-05-13 07:54:02 ----A---- C:\Windows\system32\nlsbres.dll
2011-05-13 07:54:02 ----A---- C:\Windows\system32\netid.dll
2011-05-13 07:54:02 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-05-13 07:54:01 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2011-05-13 07:54:01 ----A---- C:\Windows\system32\PnPUnattend.exe
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\ole32.dll
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\mscoree.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\mscms.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\MPSSVC.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-05-13 07:53:59 ----A---- C:\Windows\SYSWOW64\nci.dll
2011-05-13 07:53:59 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2011-05-13 07:53:59 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2011-05-13 07:53:59 ----A---- C:\Windows\system32\NAPHLPR.DLL
2011-05-13 07:53:59 ----A---- C:\Windows\system32\napdsnap.dll
2011-05-13 07:53:59 ----A---- C:\Windows\system32\mswsock.dll
2011-05-13 07:53:59 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-05-13 07:53:59 ----A---- C:\Windows\system32\drivers\mpio.sys
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msv1_0.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\mstask.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msscp.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msnetobj.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msiexec.exe
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msftedit.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msfeeds.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\credssp.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\calc.exe
2011-05-13 07:53:57 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-05-13 07:53:57 ----A---- C:\Windows\system32\drivers\cng.sys
2011-05-13 07:53:57 ----A---- C:\Windows\system32\dhcpcore.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\cscobj.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\cryptui.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\clusapi.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\certprop.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\CertEnroll.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\cabview.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\browseui.dll
2011-05-13 07:53:55 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2011-05-13 07:53:55 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2011-05-13 07:53:55 ----A---- C:\Windows\SYSWOW64\acppage.dll
2011-05-13 07:53:55 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-05-13 07:53:54 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2011-05-13 07:53:54 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2011-05-13 07:53:54 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\hgcpl.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\gdi32.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\BlbEvents.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\blackbox.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\biocpl.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\BFE.DLL
2011-05-13 07:53:54 ----A---- C:\Windows\system32\bcryptprimitives.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\basecsp.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\AxInstSv.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\autochk.exe
2011-05-13 07:53:54 ----A---- C:\Windows\bfsvc.exe
2011-05-13 07:53:53 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2011-05-13 07:53:53 ----A---- C:\Windows\SYSWOW64\findstr.exe
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FXSUNATD.exe
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FXSSVC.exe
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FXSMON.dll
2011-05-13 07:53:53 ----A---- C:\Windows\system32\fphc.dll
2011-05-13 07:53:53 ----A---- C:\Windows\system32\fms.dll
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\ftp.exe
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\dpx.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\hgprint.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\DXP.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\drmmgrtn.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\drivers\hidusb.sys
2011-05-13 07:53:52 ----A---- C:\Windows\system32\drivers\hidclass.sys
2011-05-13 07:53:52 ----A---- C:\Windows\system32\diskpart.exe
2011-05-13 07:53:51 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2011-05-13 07:53:51 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2011-05-13 07:53:51 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2011-05-13 07:53:51 ----A---- C:\Windows\system32\eudcedit.exe
2011-05-13 07:53:51 ----A---- C:\Windows\system32\dot3ui.dll
2011-05-13 07:53:50 ----A---- C:\Windows\system32\DxpTaskSync.dll
2011-05-13 07:53:48 ----A---- C:\Windows\system32\tlscsp.dll
2011-05-13 07:53:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2011-05-13 07:53:44 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2011-05-13 07:53:44 ----A---- C:\Windows\SYSWOW64\takeown.exe
2011-05-13 07:53:44 ----A---- C:\Windows\system32\upnp.dll
2011-05-13 07:53:44 ----A---- C:\Windows\system32\untfs.dll
2011-05-13 07:53:44 ----A---- C:\Windows\system32\themecpl.dll
2011-05-13 07:53:44 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-05-13 07:53:44 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2011-05-13 07:53:44 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2011-05-13 07:53:43 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2011-05-13 07:53:43 ----A---- C:\Windows\SYSWOW64\twext.dll
2011-05-13 07:53:43 ----A---- C:\Windows\system32\tzutil.exe
2011-05-13 07:53:43 ----A---- C:\Windows\system32\twext.dll
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\tunnel.sys
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-05-13 07:53:41 ----A---- C:\Windows\SYSWOW64\stobject.dll
2011-05-13 07:53:41 ----A---- C:\Windows\system32\sspisrv.dll
2011-05-13 07:53:41 ----A---- C:\Windows\system32\sspicli.dll
2011-05-13 07:53:39 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2011-05-13 07:53:39 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wmpsrcwp.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\WMPhoto.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wmdrmsdk.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wlanmsm.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wlangpui.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wkscli.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wintrust.dll
2011-05-13 07:53:38 ----A---- C:\Windows\system32\winlogon.exe
2011-05-13 07:53:38 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\wusa.exe
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2011-05-13 07:53:37 ----A---- C:\Windows\system32\wwanprotdim.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\WsmSvc.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\WSDApi.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\WPDSp.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wer.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\webservices.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\Vault.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\userinit.exe
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\userenv.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wiadefui.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wevtsvc.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\werconcpl.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\webservices.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wcncsvc.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wavemsp.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\VMWindow.exe
2011-05-13 07:53:36 ----A---- C:\Windows\system32\vfwwdm32.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\vdsutil.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\vds.exe
2011-05-13 07:53:36 ----A---- C:\Windows\system32\VAN.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\drivers\vpcusb.sys
2011-05-13 07:53:34 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2011-05-13 07:53:33 ----A---- C:\Windows\system32\relog.exe
2011-05-13 07:53:33 ----A---- C:\Windows\system32\rastls.dll
2011-05-13 07:53:33 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2011-05-13 07:53:32 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-05-13 07:53:32 ----A---- C:\Windows\system32\schannel.dll
2011-05-13 07:53:32 ----A---- C:\Windows\system32\drivers\scfilter.sys
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\scecli.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\secur32.dll
2011-05-13 07:53:31 ----A---- C:\Windows\system32\scecli.dll
2011-05-13 07:53:31 ----A---- C:\Windows\system32\rstrui.exe
2011-05-13 07:53:31 ----A---- C:\Windows\system32\rpcrt4.dll
2011-05-13 07:53:31 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-05-13 07:53:31 ----A---- C:\Windows\system32\QCLIPROV.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\QAGENT.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\proquota.exe
2011-05-13 07:53:31 ----A---- C:\Windows\system32\propsys.dll
2011-05-13 07:53:30 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2011-05-13 07:53:30 ----A---- C:\Windows\system32\raschap.dll
2011-05-13 07:53:29 ----A---- C:\Windows\system32\Query.dll
2011-05-13 07:53:28 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2011-05-13 07:53:28 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2011-05-13 07:53:28 ----A---- C:\Windows\system32\qmgr.dll
2011-05-13 07:53:26 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2011-05-13 07:53:26 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2011-05-13 07:53:26 ----A---- C:\Windows\system32\shsvcs.dll
2011-05-13 07:53:26 ----A---- C:\Windows\system32\RacEngn.dll
2011-05-13 07:53:25 ----A---- C:\Windows\system32\srcore.dll
2011-05-13 07:53:25 ----A---- C:\Windows\system32\sqlcese30.dll
2011-05-13 07:53:24 ----A---- C:\Windows\system32\sppnp.dll
2011-05-13 07:53:24 ----A---- C:\Windows\system32\spopk.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mfds.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mf.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-05-13 07:53:19 ----A---- C:\Windows\system32\KBDMON.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\KBDINMAR.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\KBDGEO.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\iyuv_32.dll
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\netid.dll
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2011-05-13 07:53:18 ----A---- C:\Windows\system32\ntlanman.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\netplwiz.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\netfxperf.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\logoncli.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\KBDSF.DLL
2011-05-13 07:53:18 ----A---- C:\Windows\system32\KBDPO.DLL
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\onexui.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\onex.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\occache.dll
2011-05-13 07:53:17 ----A---- C:\Windows\system32\odbcconf.dll
2011-05-13 07:53:17 ----A---- C:\Windows\system32\ocsetup.exe
2011-05-13 07:53:17 ----A---- C:\Windows\system32\ocsetapi.dll
2011-05-13 07:53:17 ----A---- C:\Windows\system32\ntshrui.dll
2011-05-13 07:53:16 ----A---- C:\Windows\system32\msieftp.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\msrating.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2011-05-13 07:53:15 ----A---- C:\Windows\system32\mssphtb.dll
2011-05-13 07:53:15 ----A---- C:\Windows\system32\msasn1.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\net1.exe
2011-05-13 07:53:14 ----A---- C:\Windows\system32\ncryptui.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mydocs.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\msyuv.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mstsc.exe
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mssvp.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mssrch.dll
2011-05-13 07:53:13 ----A---- C:\Windows\system32\cmstp.exe
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\certcli.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\DeviceCenter.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\davclnt.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\cdosys.dll
2011-05-13 07:53:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2011-05-13 07:53:10 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2011-05-13 07:53:10 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2011-05-13 07:53:10 ----A---- C:\Windows\system32\drivers\afd.sys
2011-05-13 07:53:10 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-05-13 07:53:10 ----A---- C:\Windows\system32\d3d10warp.dll
2011-05-13 07:53:10 ----A---- C:\Windows\system32\ActionQueue.dll
2011-05-13 07:53:10 ----A---- C:\Windows\system32\accessibilitycpl.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\hal.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\gpsvc.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\cabinet.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\browser.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\bcdboot.exe
2011-05-13 07:53:09 ----A---- C:\Windows\system32\autoplay.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\autofmt.exe
2011-05-13 07:53:09 ----A---- C:\Windows\system32\actxprxy.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\ActionCenter.dll
2011-05-13 07:53:08 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2011-05-13 07:53:08 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2011-05-13 07:53:08 ----A---- C:\Windows\system32\inetpp.dll
2011-05-13 07:53:05 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2011-05-13 07:53:05 ----A---- C:\Windows\SYSWOW64\Display.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\evr.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\efscore.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\dwmredir.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\dsauth.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\drvstore.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\dot3msm.dll
2011-05-13 07:53:04 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2011-05-13 07:53:04 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2011-05-13 07:53:04 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2011-05-13 07:53:04 ----A---- C:\Windows\system32\dot3svc.dll
2011-05-13 07:53:04 ----A---- C:\Windows\system32\dot3api.dll
2011-05-13 07:53:02 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2011-05-13 07:53:02 ----A---- C:\Windows\SYSWOW64\fontext.dll
2011-05-13 07:53:02 ----A---- C:\Windows\system32\fde.dll
2011-05-13 07:53:01 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-05-13 07:53:01 ----A---- C:\Windows\system32\syncui.dll
2011-05-13 07:53:01 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-05-13 07:53:01 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-05-13 07:52:58 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2011-05-13 07:52:58 ----A---- C:\Windows\system32\tquery.dll
2011-05-13 07:52:58 ----A---- C:\Windows\system32\SndVol.exe
2011-05-13 07:52:57 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2011-05-13 07:52:57 ----A---- C:\Windows\SYSWOW64\sppc.dll
2011-05-13 07:52:57 ----A---- C:\Windows\system32\srvcli.dll
2011-05-13 07:52:57 ----A---- C:\Windows\system32\SndVolSSO.dll
2011-05-13 07:52:57 ----A---- C:\Windows\system32\drivers\storvsc.sys
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\WinSCard.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\WebClnt.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\wbengine.exe
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2011-05-13 07:52:53 ----A---- C:\Windows\system32\wmpdxm.dll
2011-05-13 07:52:52 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2011-05-13 07:52:52 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2011-05-13 07:52:52 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2011-05-13 07:52:52 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-05-13 07:52:52 ----A---- C:\Windows\system32\tzres.dll
2011-05-13 07:52:52 ----A---- C:\Windows\system32\tspubwmi.dll
2011-05-13 07:52:52 ----A---- C:\Windows\system32\tsbyuv.dll
2011-05-13 07:52:51 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2011-05-13 07:52:51 ----A---- C:\Windows\SYSWOW64\utildll.dll
2011-05-13 07:52:51 ----A---- C:\Windows\SYSWOW64\usp10.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\wbemcomn.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vpnikeapi.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vpnike.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vpc.exe
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vmstorfltres.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vmsal.exe
2011-05-13 07:52:51 ----A---- C:\Windows\system32\Vault.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2011-05-13 07:52:50 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2011-05-13 07:52:50 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2011-05-13 07:52:50 ----A---- C:\Windows\system32\VmdCoinstall.dll
2011-05-13 07:52:50 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-05-13 07:52:50 ----A---- C:\Windows\system32\drivers\sdbus.sys
2011-05-13 07:52:49 ----A---- C:\Windows\SYSWOW64\schannel.dll
2011-05-13 07:52:49 ----A---- C:\Windows\system32\schtasks.exe
2011-05-13 07:52:49 ----A---- C:\Windows\system32\schedcli.dll
2011-05-13 07:52:48 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2011-05-13 07:52:48 ----A---- C:\Windows\system32\rdpcore.dll
2011-05-13 07:52:48 ----A---- C:\Windows\system32\QUTIL.DLL
2011-05-13 07:52:48 ----A---- C:\Windows\system32\quartz.dll
2011-05-13 07:52:46 ----A---- C:\Windows\SYSWOW64\qdv.dll
2011-05-13 07:52:46 ----A---- C:\Windows\SYSWOW64\proquota.exe
2011-05-13 07:52:46 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2011-05-13 07:52:46 ----A---- C:\Windows\system32\prncache.dll
2011-05-13 07:52:46 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\riched32.dll
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\riched20.dll
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\qasf.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\SensorsCpl.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\rpchttp.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-05-13 07:52:45 ----A---- C:\Windows\system32\recovery.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\rdpsign.exe
2011-05-13 07:52:45 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2011-05-13 07:52:44 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\shlwapi.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\shdocvw.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\shacct.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\setupapi.dll
2011-05-13 07:52:38 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2011-05-13 07:52:38 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2011-05-13 07:52:38 ----A---- C:\Windows\system32\MdSched.exe
2011-05-13 07:52:38 ----A---- C:\Windows\system32\mciqtz32.dll
2011-05-13 07:52:38 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2011-05-13 07:52:38 ----A---- C:\Windows\system32\lsmproxy.dll
2011-05-13 07:52:37 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2011-05-13 07:52:37 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2011-05-13 07:52:36 ----A---- C:\Windows\SYSWOW64\input.dll
2011-05-13 07:52:36 ----A---- C:\Windows\system32\iasrecst.dll
2011-05-13 07:52:36 ----A---- C:\Windows\system32\httpapi.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\localsec.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\netiohlp.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\netcfgx.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\netcenter.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\msxml3.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\ListSvc.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\licmgr10.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDTURME.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDMAORI.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDINTAM.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDGR1.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDCZ1.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\isoburn.exe
pokracovani dale
Předem děkuji.
Michal
mam problem s timto virem. Uz to bylo reseno v http://www.viry.cz/forum/viewtopic.php?f=13&t=111310
Prosím o kontrolu logu:
Logfile of random's system information tool 1.08 (written by random/random)
Run by donknutson at 2011-06-06 13:18:51
Microsoft Windows 7 Enterprise Service Pack 1
System drive C: has 85 GB (35%) free of 244 GB
Total RAM: 8180 MB (74% free)
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_e085d3cd5b474ba6\STacSV64.exe
C:\Windows\system32\svchost.exe -k LocalService
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c1c9e8e5-b988-4064-8899-740e24a64280 -SystemEventPortName:HostProcess-30671e5e-392b-4b3c-b794-1ec0fa4ab3c0 -IoCancelEventPortName:HostProcess-d8947f76-8ec5-4870-853b-e181833a694a -NonStateChangingEventPortName:HostProcess-21b83a89-3f24-4632-9212-3cae10998c2a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:48f1d131-22a2-4ba1-b90c-ac49909f7d63
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Smc.exe"
"C:\Program Files (x86)\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe"
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon
C:\Windows\System32\spoolsv.exe
"C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe"
"C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_e085d3cd5b474ba6\AESTSr64.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
C:\Windows\SysWOW64\lkcitdl.exe
C:\Windows\SysWOW64\lkads.exe
C:\Windows\SysWOW64\lktsrv.exe
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sUTSSQLEXPRESS
"C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe"
C:\Windows\SysWOW64\nisvcloc.exe -s
"C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe"
C:\Windows\system32\svchost.exe -k regsvc
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\Rtvscan.exe"
"C:\Program Files\UltraVNC\WinVNC.exe" -service
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\UltraVNC\WinVNC.exe" -service_run
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k bthsvcs
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
\\.\pipe\SygateSecurityAgentR41T50247 \\.\pipe\SygateSecurityAgentW18467T50247
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\ProtectionUtilSurrogate.exe" {EE68EAFC-BF28-4017-8A92-D17DACF0B459} -Embedding
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe" /fromrunkey
"C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe" /auto
"C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Users\donknutson\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Users\donknutson\AppData\Local\eye.exe -dtm -a
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\UI0Detect.exe
"C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\agent.exe" -Embedding
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -Embedding
"C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\SavUI.exe" -Embedding
"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\donknutson\Desktop\Construction\APSplanbook.pdf"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" /PRODUCT:Reader /VERSION:9.0 /MODE:2
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ea161fb2-82d7-4341-9933-65e3dafeb23a -SystemEventPortName:HostProcess-f95a662f-f36e-43e1-a269-1a7f38fdf26a -IoCancelEventPortName:HostProcess-3936ee6d-110d-4441-bb5e-0ab55fdeb275 -NonStateChangingEventPortName:HostProcess-bd418c48-fd40-4962-a87d-91ede5d71107 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7b75483a-51b3-4cd6-a4ff-d9d0e423a424
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
"C:\Users\donknutson\AppData\Local\eye.exe" -a "C:\Windows\System32\dinotify.exe" pnpui.dll,SimplifiedDINotification
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"E:\other\RSITx64.exe"
wmiadap.exe /R /T
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\trend micro\donknutson.exe" /silentautolog
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1274732764-53309532-4069937376-1633Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1274732764-53309532-4069937376-1633UA.job
C:\Windows\tasks\Microsoft.Management.Services.HostProtection.FullScan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-04-04 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-06-14 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-10 487424]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-12-11 1890088]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2010-07-07 1875048]
"NVHotkey"=C:\Windows\system32\nvHotkey.dll [2010-07-09 282728]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"ISUSPM"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-11 218032]
"Google Update"=C:\Users\donknutson\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-16 136176]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2009-07-14 9728]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Program Files (x86)\uTorrent\uTorrent.exe [2010-07-24 319280]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-04-04 36272]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"Communicator"=C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe [2011-03-07 5150560]
"DataFinder"=C:\Program Files (x86)\National Instruments\Shared\DataFinderDesktop\bin\DataFinder.exe [2009-06-01 3103264]
"ccApp"=C:\Program Files (x86)\Common Files\Symantec Shared\ccApp.exe [2011-05-03 115624]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccEvtMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ccSetMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Symantec Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Symantec Antvirus]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ccEvtMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ccSetMgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmcService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Symantec Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Symantec Antvirus]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"consentpromptbehavioradmin"=0
"enableinstallerdetection"=0
"enablelua"=0
"enablesecureuiapaths"=0
"legalnoticecaption"=IT IS AN OFFENSE TO CONTINUE WITHOUT PROPER AUTHORIZATION
"legalnoticetext"=This system is restricted to authorized users. Individuals attempting
unauthorized access will be prosecuted. If unauthorized, terminate
access now! Clicking OK indicates your acceptance of the information
in the background.
"enableuiadesktoptoggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"HideSCAHealth"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=255
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.exe - open - "C:\Users\donknutson\AppData\Local\eye.exe" -a "%1" %*
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2011-06-06 13:18:52 ----D---- C:\Program Files\trend micro
2011-06-06 13:18:51 ----D---- C:\rsit
2011-06-03 17:47:48 ----SHD---- C:\Config.Msi
2011-06-03 17:31:18 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2011-06-03 17:31:17 ----D---- C:\Program Files\Symantec
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\MSVCR71.DLL
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\MSVCP71.DLL
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\MFC71.DLL
2011-06-03 17:30:51 ----A---- C:\Windows\SYSWOW64\capicom.dll
2011-06-03 17:30:39 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-06-03 17:30:38 ----D---- C:\ProgramData\Symantec
2011-06-03 17:30:38 ----D---- C:\Program Files (x86)\Symantec
2011-05-13 08:22:07 ----D---- C:\Windows\system32\SPReview
2011-05-13 07:55:25 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2011-05-13 07:55:25 ----A---- C:\Windows\system32\mprddm.dll
2011-05-13 07:55:24 ----A---- C:\Windows\system32\mobsync.exe
2011-05-13 07:55:23 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\mstask.dll
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2011-05-13 07:55:22 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\mscories.dll
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\mstime.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\msdri.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\KernelBase.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\kernel32.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\KBDBLR.DLL
2011-05-13 07:55:21 ----A---- C:\Windows\system32\itircl.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\inseng.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\inetmib1.dll
2011-05-13 07:55:21 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-05-13 07:55:21 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\raschap.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\qedit.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\propsys.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\logagent.exe
2011-05-13 07:55:20 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2011-05-13 07:55:20 ----A---- C:\Windows\system32\printui.dll
2011-05-13 07:55:20 ----A---- C:\Windows\system32\pnidui.dll
2011-05-13 07:55:20 ----A---- C:\Windows\system32\pifmgr.dll
2011-05-13 07:55:18 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2011-05-13 07:55:18 ----A---- C:\Windows\SYSWOW64\samcli.dll
2011-05-13 07:55:18 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2011-05-13 07:55:18 ----A---- C:\Windows\system32\sdcpl.dll
2011-05-13 07:55:18 ----A---- C:\Windows\system32\drivers\scsiport.sys
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2011-05-13 07:55:17 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\RDPENCDD.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\rdpclip.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\OobeFldr.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\odbctrac.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\ntdll.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\nslookup.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\nlasvc.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\nlaapi.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\netshell.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\netlogon.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\netjoin.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\ncsi.dll
2011-05-13 07:55:17 ----A---- C:\Windows\system32\MultiDigiMon.exe
2011-05-13 07:55:17 ----A---- C:\Windows\system32\msxml6.dll
2011-05-13 07:55:16 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2011-05-13 07:55:16 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2011-05-13 07:55:16 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\cmd.exe
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2011-05-13 07:55:15 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2011-05-13 07:55:15 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-05-13 07:55:15 ----A---- C:\Windows\system32\drivers\cdrom.sys
2011-05-13 07:55:15 ----A---- C:\Windows\system32\CertPolEng.dll
2011-05-13 07:55:15 ----A---- C:\Windows\system32\certmgr.dll
2011-05-13 07:55:15 ----A---- C:\Windows\system32\certcli.dll
2011-05-13 07:55:15 ----A---- C:\Windows\system32\cdd.dll
2011-05-13 07:55:14 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2011-05-13 07:55:14 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2011-05-13 07:55:14 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-05-13 07:55:14 ----A---- C:\Windows\system32\diagperf.dll
2011-05-13 07:55:14 ----A---- C:\Windows\system32\d3d10level9.dll
2011-05-13 07:55:13 ----A---- C:\Windows\system32\dbgeng.dll
2011-05-13 07:55:12 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2011-05-13 07:55:12 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\dbghelp.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\d3d9.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\consent.exe
2011-05-13 07:55:12 ----A---- C:\Windows\system32\conhost.exe
2011-05-13 07:55:12 ----A---- C:\Windows\system32\comdlg32.dll
2011-05-13 07:55:12 ----A---- C:\Windows\system32\AdmTmpl.dll
2011-05-13 07:55:11 ----A---- C:\Windows\system32\aepdu.dll
2011-05-13 07:55:11 ----A---- C:\Windows\system32\aeinv.dll
2011-05-13 07:55:10 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2011-05-13 07:55:10 ----A---- C:\Windows\SYSWOW64\authui.dll
2011-05-13 07:55:10 ----A---- C:\Windows\SYSWOW64\activeds.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\bcdsrv.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\bcdedit.exe
2011-05-13 07:55:10 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\authui.dll
2011-05-13 07:55:10 ----A---- C:\Windows\system32\acppage.dll
2011-05-13 07:55:09 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2011-05-13 07:55:09 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2011-05-13 07:55:09 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2011-05-13 07:55:09 ----A---- C:\Windows\system32\imapi2fs.dll
2011-05-13 07:55:09 ----A---- C:\Windows\system32\ftp.exe
2011-05-13 07:55:09 ----A---- C:\Windows\system32\fsquirt.exe
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\http.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\drivers\appid.sys
2011-05-13 07:55:09 ----A---- C:\Windows\system32\BdeHdCfg.exe
2011-05-13 07:55:09 ----A---- C:\Windows\system32\appinfo.dll
2011-05-13 07:55:08 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-05-13 07:55:08 ----A---- C:\Windows\SYSWOW64\evr.dll
2011-05-13 07:55:08 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2011-05-13 07:55:08 ----A---- C:\Windows\system32\iepeers.dll
2011-05-13 07:55:08 ----A---- C:\Windows\system32\elsTrans.dll
2011-05-13 07:55:08 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-05-13 07:55:08 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-05-13 07:55:07 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2011-05-13 07:55:07 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2011-05-13 07:55:07 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2011-05-13 07:55:07 ----A---- C:\Windows\system32\SearchFolder.dll
2011-05-13 07:55:07 ----A---- C:\Windows\system32\Faultrep.dll
2011-05-13 07:55:07 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-05-13 07:55:07 ----A---- C:\Windows\system32\Display.dll
2011-05-13 07:55:06 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2011-05-13 07:55:06 ----A---- C:\Windows\system32\tscfgwmi.dll
2011-05-13 07:55:05 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2011-05-13 07:55:05 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2011-05-13 07:55:05 ----A---- C:\Windows\system32\thumbcache.dll
2011-05-13 07:55:05 ----A---- C:\Windows\system32\taskschd.dll
2011-05-13 07:55:05 ----A---- C:\Windows\system32\tabcal.exe
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\spp.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2011-05-13 07:55:04 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sysmain.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sysclass.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\srchadmin.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sqmapi.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\sppsvc.exe
2011-05-13 07:55:04 ----A---- C:\Windows\system32\spp.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\shwebsvc.dll
2011-05-13 07:55:04 ----A---- C:\Windows\system32\shell32.dll
2011-05-13 07:55:03 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2011-05-13 07:55:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-05-13 07:55:03 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wmpeffects.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wmdrmnet.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wmdrmdev.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\WMADMOD.DLL
2011-05-13 07:55:03 ----A---- C:\Windows\system32\wkssvc.dll
2011-05-13 07:55:03 ----A---- C:\Windows\system32\drivers\winusb.sys
2011-05-13 07:55:01 ----A---- C:\Windows\system32\winhttp.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\wvc.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2011-05-13 07:54:58 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wwanconn.dll
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wsqmcons.exe
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wpdwcn.dll
2011-05-13 07:54:58 ----A---- C:\Windows\system32\wpd_ci.dll
2011-05-13 07:54:57 ----A---- C:\Windows\system32\wsdchngr.dll
2011-05-13 07:54:57 ----A---- C:\Windows\system32\ws2_32.dll
2011-05-13 07:54:57 ----A---- C:\Windows\system32\userinit.exe
2011-05-13 07:54:56 ----A---- C:\Windows\system32\VPCWizard.exe
2011-05-13 07:54:56 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-05-13 07:54:54 ----A---- C:\Windows\twain_32.dll
2011-05-13 07:54:54 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2011-05-13 07:54:54 ----A---- C:\Windows\system32\umb.dll
2011-05-13 07:54:53 ----A---- C:\Windows\SYSWOW64\untfs.dll
2011-05-13 07:54:53 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2011-05-13 07:54:53 ----A---- C:\Windows\system32\umrdp.dll
2011-05-13 07:54:53 ----A---- C:\Windows\system32\drivers\umbus.sys
2011-05-13 07:54:52 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2011-05-13 07:54:52 ----A---- C:\Windows\SYSWOW64\webio.dll
2011-05-13 07:54:52 ----A---- C:\Windows\SYSWOW64\wdc.dll
2011-05-13 07:54:52 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-05-13 07:54:52 ----A---- C:\Windows\system32\webio.dll
2011-05-13 07:54:52 ----A---- C:\Windows\system32\VSSVC.exe
2011-05-13 07:54:52 ----A---- C:\Windows\system32\vssapi.dll
2011-05-13 07:54:52 ----A---- C:\Windows\system32\vss_ps.dll
2011-05-13 07:54:51 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2011-05-13 07:54:51 ----A---- C:\Windows\SYSWOW64\shacct.dll
2011-05-13 07:54:47 ----A---- C:\Windows\SYSWOW64\secproc.dll
2011-05-13 07:54:45 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2011-05-13 07:54:45 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2011-05-13 07:54:43 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2011-05-13 07:54:43 ----A---- C:\Windows\system32\mimefilt.dll
2011-05-13 07:54:43 ----A---- C:\Windows\system32\mf.dll
2011-05-13 07:54:43 ----A---- C:\Windows\system32\Mcx2Svc.dll
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\SYSWOW64\itircl.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\mscorier.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\mfps.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\MFPlay.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\mfds.dll
2011-05-13 07:54:42 ----A---- C:\Windows\system32\KBDTUF.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\KBDINBEN.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\KBDGKL.DLL
2011-05-13 07:54:42 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-05-13 07:54:41 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2011-05-13 07:54:41 ----A---- C:\Windows\SYSWOW64\logman.exe
2011-05-13 07:54:41 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-05-13 07:54:41 ----A---- C:\Windows\system32\mblctr.exe
2011-05-13 07:54:41 ----A---- C:\Windows\system32\luainstall.dll
2011-05-13 07:54:41 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2011-05-13 07:54:41 ----A---- C:\Windows\system32\LogonUI.exe
2011-05-13 07:54:41 ----A---- C:\Windows\system32\logoff.exe
2011-05-13 07:54:41 ----A---- C:\Windows\system32\KBDUS.DLL
2011-05-13 07:54:40 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2011-05-13 07:54:40 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2011-05-13 07:54:40 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2011-05-13 07:54:40 ----A---- C:\Windows\system32\netutils.dll
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2011-05-13 07:54:39 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\OpcServices.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\ole32.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\msrle32.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\mspbda.dll
2011-05-13 07:54:39 ----A---- C:\Windows\system32\msdmo.dll
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2011-05-13 07:54:38 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\netapi32.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2011-05-13 07:54:38 ----A---- C:\Windows\system32\muifontsetup.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msvidc32.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msfeedssync.exe
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\msdrm.dll
2011-05-13 07:54:38 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2011-05-13 07:54:38 ----A---- C:\Windows\system32\drivers\msdsm.sys
2011-05-13 07:54:38 ----A---- C:\Windows\system32\CscMig.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\credui.dll
2011-05-13 07:54:37 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\drivers\csc.sys
2011-05-13 07:54:37 ----A---- C:\Windows\system32\dot3cfg.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\d3d11.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\cryptsvc.dll
2011-05-13 07:54:37 ----A---- C:\Windows\system32\choice.exe
2011-05-13 07:54:37 ----A---- C:\Windows\system32\chgusr.exe
2011-05-13 07:54:36 ----A---- C:\Windows\SYSWOW64\autochk.exe
2011-05-13 07:54:36 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2011-05-13 07:54:36 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\diskraid.exe
2011-05-13 07:54:36 ----A---- C:\Windows\system32\cca.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\asycfilt.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\apphelp.dll
2011-05-13 07:54:36 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\cabview.dll
2011-05-13 07:54:35 ----A---- C:\Windows\SYSWOW64\browcli.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\IcCoinstall.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\iasrad.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\iasacct.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\fvecpl.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\fveapi.dll
2011-05-13 07:54:35 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2011-05-13 07:54:35 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-05-13 07:54:35 ----A---- C:\Windows\system32\chgport.exe
2011-05-13 07:54:35 ----A---- C:\Windows\system32\chglogon.exe
2011-05-13 07:54:35 ----A---- C:\Windows\system32\change.exe
2011-05-13 07:54:34 ----A---- C:\Windows\SYSWOW64\imm32.dll
2011-05-13 07:54:34 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2011-05-13 07:54:34 ----A---- C:\Windows\system32\imapi2.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2011-05-13 07:54:33 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2011-05-13 07:54:33 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2011-05-13 07:54:32 ----A---- C:\Windows\SYSWOW64\fde.dll
2011-05-13 07:54:32 ----A---- C:\Windows\system32\fontext.dll
2011-05-13 07:54:32 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\themeui.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2011-05-13 07:54:31 ----A---- C:\Windows\SYSWOW64\efscore.dll
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tsmf.dll
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tskill.exe
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tsdiscon.exe
2011-05-13 07:54:31 ----A---- C:\Windows\system32\tscon.exe
2011-05-13 07:54:31 ----A---- C:\Windows\system32\TRAPI.dll
2011-05-13 07:54:30 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2011-05-13 07:54:30 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\UIRibbon.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-05-13 07:54:30 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-05-13 07:54:30 ----A---- C:\Windows\system32\tssrvlic.dll
2011-05-13 07:54:28 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2011-05-13 07:54:27 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2011-05-13 07:54:26 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2011-05-13 07:54:26 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2011-05-13 07:54:26 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\termsrv.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\taskmgr.exe
2011-05-13 07:54:26 ----A---- C:\Windows\system32\taskbarcpl.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\takeown.exe
2011-05-13 07:54:26 ----A---- C:\Windows\system32\t2embed.dll
2011-05-13 07:54:26 ----A---- C:\Windows\system32\syssetup.dll
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2011-05-13 07:54:25 ----A---- C:\Windows\SYSWOW64\winmm.dll
2011-05-13 07:54:25 ----A---- C:\Windows\system32\wvc.dll
2011-05-13 07:54:25 ----A---- C:\Windows\system32\wusa.exe
2011-05-13 07:54:25 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-05-13 07:54:25 ----A---- C:\Windows\system32\WinSAT.exe
2011-05-13 07:54:23 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wsnmp32.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wpdshext.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wow64win.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wow64cpu.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\wow64.dll
2011-05-13 07:54:23 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\user32.dll
2011-05-13 07:54:22 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\win32spl.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\wdc.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\usp10.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2011-05-13 07:54:22 ----A---- C:\Windows\system32\drivers\wanarp.sys
2011-05-13 07:54:22 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-05-13 07:54:22 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2011-05-13 07:54:20 ----A---- C:\Windows\SYSWOW64\relog.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\VPCSettings.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\vmicsvc.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\vmicres.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\SyncCenter.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\runonce.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\rtutils.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\Robocopy.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\riched32.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\riched20.dll
2011-05-13 07:54:20 ----A---- C:\Windows\system32\reset.exe
2011-05-13 07:54:20 ----A---- C:\Windows\system32\regapi.dll
2011-05-13 07:54:19 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\schedsvc.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\scesrv.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\scansetting.dll
2011-05-13 07:54:19 ----A---- C:\Windows\system32\rwinsta.exe
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\rastls.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\pla.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2011-05-13 07:54:17 ----A---- C:\Windows\SYSWOW64\pdh.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rdpudd.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rdpdd.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rdpcorets.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\rasmans.dll
2011-05-13 07:54:17 ----A---- C:\Windows\system32\perfmon.exe
2011-05-13 07:54:17 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2011-05-13 07:54:17 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-05-13 07:54:17 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2011-05-13 07:54:15 ----A---- C:\Windows\SYSWOW64\qcap.dll
2011-05-13 07:54:15 ----A---- C:\Windows\system32\qappsrv.exe
2011-05-13 07:54:14 ----A---- C:\Windows\SYSWOW64\quartz.dll
2011-05-13 07:54:14 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2011-05-13 07:54:14 ----A---- C:\Windows\system32\query.exe
2011-05-13 07:54:14 ----A---- C:\Windows\system32\qprocess.exe
2011-05-13 07:54:14 ----A---- C:\Windows\system32\qdv.dll
2011-05-13 07:54:14 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2011-05-13 07:54:13 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2011-05-13 07:54:13 ----A---- C:\Windows\system32\spinstall.exe
2011-05-13 07:54:11 ----A---- C:\Windows\system32\sppcomapi.dll
2011-05-13 07:54:11 ----A---- C:\Windows\system32\spoolsv.exe
2011-05-13 07:54:11 ----A---- C:\Windows\system32\slui.exe
2011-05-13 07:54:11 ----A---- C:\Windows\splwow64.exe
2011-05-13 07:54:08 ----A---- C:\Windows\SYSWOW64\sud.dll
2011-05-13 07:54:08 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-05-13 07:54:08 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-05-13 07:54:08 ----A---- C:\Windows\system32\spreview.exe
2011-05-13 07:54:08 ----A---- C:\Windows\system32\SmiEngine.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\srrstr.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\spwizui.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\sppwinob.dll
2011-05-13 07:54:07 ----A---- C:\Windows\system32\shunimpl.dll
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\sharemediacpl.dll
2011-05-13 07:54:06 ----A---- C:\Windows\system32\shadow.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\mcbuilder.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\manage-bde.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\lsasrv.dll
2011-05-13 07:54:06 ----A---- C:\Windows\system32\lpksetup.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\logman.exe
2011-05-13 07:54:06 ----A---- C:\Windows\system32\localspl.dll
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KMSVC.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\KBDSG.DLL
2011-05-13 07:54:06 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2011-05-13 07:54:06 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2011-05-13 07:54:05 ----A---- C:\Windows\SYSWOW64\migisol.dll
2011-05-13 07:54:05 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2011-05-13 07:54:04 ----A---- C:\Windows\SYSWOW64\inseng.dll
2011-05-13 07:54:04 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-05-13 07:54:04 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-05-13 07:54:04 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\netshell.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2011-05-13 07:54:03 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\odbc32.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDNEPR.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\kbdlk41a.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDINKAN.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDINHIN.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\KBDBULG.DLL
2011-05-13 07:54:03 ----A---- C:\Windows\system32\iTVData.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\iprtrmgr.dll
2011-05-13 07:54:03 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2011-05-13 07:54:02 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2011-05-13 07:54:02 ----A---- C:\Windows\system32\nrpsrv.dll
2011-05-13 07:54:02 ----A---- C:\Windows\system32\nlsbres.dll
2011-05-13 07:54:02 ----A---- C:\Windows\system32\netid.dll
2011-05-13 07:54:02 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-05-13 07:54:01 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2011-05-13 07:54:01 ----A---- C:\Windows\system32\PnPUnattend.exe
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\ole32.dll
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2011-05-13 07:54:00 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\mscoree.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\mscms.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\MPSSVC.dll
2011-05-13 07:54:00 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-05-13 07:53:59 ----A---- C:\Windows\SYSWOW64\nci.dll
2011-05-13 07:53:59 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2011-05-13 07:53:59 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2011-05-13 07:53:59 ----A---- C:\Windows\system32\NAPHLPR.DLL
2011-05-13 07:53:59 ----A---- C:\Windows\system32\napdsnap.dll
2011-05-13 07:53:59 ----A---- C:\Windows\system32\mswsock.dll
2011-05-13 07:53:59 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-05-13 07:53:59 ----A---- C:\Windows\system32\drivers\mpio.sys
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2011-05-13 07:53:58 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msv1_0.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\mstask.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msscp.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msnetobj.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msiexec.exe
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msftedit.dll
2011-05-13 07:53:58 ----A---- C:\Windows\system32\msfeeds.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\credssp.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2011-05-13 07:53:57 ----A---- C:\Windows\SYSWOW64\calc.exe
2011-05-13 07:53:57 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-05-13 07:53:57 ----A---- C:\Windows\system32\drivers\cng.sys
2011-05-13 07:53:57 ----A---- C:\Windows\system32\dhcpcore.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\cscobj.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\cryptui.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\clusapi.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\certprop.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\CertEnroll.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\cabview.dll
2011-05-13 07:53:57 ----A---- C:\Windows\system32\browseui.dll
2011-05-13 07:53:55 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2011-05-13 07:53:55 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2011-05-13 07:53:55 ----A---- C:\Windows\SYSWOW64\acppage.dll
2011-05-13 07:53:55 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-05-13 07:53:54 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2011-05-13 07:53:54 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2011-05-13 07:53:54 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\hgcpl.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\gdi32.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\BlbEvents.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\blackbox.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\biocpl.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\BFE.DLL
2011-05-13 07:53:54 ----A---- C:\Windows\system32\bcryptprimitives.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\basecsp.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\AxInstSv.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-05-13 07:53:54 ----A---- C:\Windows\system32\autochk.exe
2011-05-13 07:53:54 ----A---- C:\Windows\bfsvc.exe
2011-05-13 07:53:53 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2011-05-13 07:53:53 ----A---- C:\Windows\SYSWOW64\findstr.exe
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FXSUNATD.exe
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FXSSVC.exe
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FXSMON.dll
2011-05-13 07:53:53 ----A---- C:\Windows\system32\fphc.dll
2011-05-13 07:53:53 ----A---- C:\Windows\system32\fms.dll
2011-05-13 07:53:53 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\ftp.exe
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\dpx.dll
2011-05-13 07:53:52 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\hgprint.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\DXP.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\drmmgrtn.dll
2011-05-13 07:53:52 ----A---- C:\Windows\system32\drivers\hidusb.sys
2011-05-13 07:53:52 ----A---- C:\Windows\system32\drivers\hidclass.sys
2011-05-13 07:53:52 ----A---- C:\Windows\system32\diskpart.exe
2011-05-13 07:53:51 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2011-05-13 07:53:51 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2011-05-13 07:53:51 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2011-05-13 07:53:51 ----A---- C:\Windows\system32\eudcedit.exe
2011-05-13 07:53:51 ----A---- C:\Windows\system32\dot3ui.dll
2011-05-13 07:53:50 ----A---- C:\Windows\system32\DxpTaskSync.dll
2011-05-13 07:53:48 ----A---- C:\Windows\system32\tlscsp.dll
2011-05-13 07:53:46 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2011-05-13 07:53:44 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2011-05-13 07:53:44 ----A---- C:\Windows\SYSWOW64\takeown.exe
2011-05-13 07:53:44 ----A---- C:\Windows\system32\upnp.dll
2011-05-13 07:53:44 ----A---- C:\Windows\system32\untfs.dll
2011-05-13 07:53:44 ----A---- C:\Windows\system32\themecpl.dll
2011-05-13 07:53:44 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-05-13 07:53:44 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2011-05-13 07:53:44 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2011-05-13 07:53:43 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2011-05-13 07:53:43 ----A---- C:\Windows\SYSWOW64\twext.dll
2011-05-13 07:53:43 ----A---- C:\Windows\system32\tzutil.exe
2011-05-13 07:53:43 ----A---- C:\Windows\system32\twext.dll
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\tunnel.sys
2011-05-13 07:53:43 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-05-13 07:53:41 ----A---- C:\Windows\SYSWOW64\stobject.dll
2011-05-13 07:53:41 ----A---- C:\Windows\system32\sspisrv.dll
2011-05-13 07:53:41 ----A---- C:\Windows\system32\sspicli.dll
2011-05-13 07:53:39 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2011-05-13 07:53:39 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wmpsrcwp.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\WMPhoto.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wmdrmsdk.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wlanmsm.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wlangpui.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wkscli.dll
2011-05-13 07:53:39 ----A---- C:\Windows\system32\wintrust.dll
2011-05-13 07:53:38 ----A---- C:\Windows\system32\winlogon.exe
2011-05-13 07:53:38 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\wusa.exe
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2011-05-13 07:53:37 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2011-05-13 07:53:37 ----A---- C:\Windows\system32\wwanprotdim.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\WsmSvc.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\WSDApi.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\WPDSp.dll
2011-05-13 07:53:37 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\wer.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\webservices.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\Vault.dll
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\userinit.exe
2011-05-13 07:53:36 ----A---- C:\Windows\SYSWOW64\userenv.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wiadefui.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wevtsvc.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\werconcpl.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\webservices.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wcncsvc.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\wavemsp.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\VMWindow.exe
2011-05-13 07:53:36 ----A---- C:\Windows\system32\vfwwdm32.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\vdsutil.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\vds.exe
2011-05-13 07:53:36 ----A---- C:\Windows\system32\VAN.dll
2011-05-13 07:53:36 ----A---- C:\Windows\system32\drivers\vpcusb.sys
2011-05-13 07:53:34 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2011-05-13 07:53:33 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2011-05-13 07:53:33 ----A---- C:\Windows\system32\relog.exe
2011-05-13 07:53:33 ----A---- C:\Windows\system32\rastls.dll
2011-05-13 07:53:33 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2011-05-13 07:53:32 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-05-13 07:53:32 ----A---- C:\Windows\system32\schannel.dll
2011-05-13 07:53:32 ----A---- C:\Windows\system32\drivers\scfilter.sys
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\scecli.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2011-05-13 07:53:31 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\secur32.dll
2011-05-13 07:53:31 ----A---- C:\Windows\system32\scecli.dll
2011-05-13 07:53:31 ----A---- C:\Windows\system32\rstrui.exe
2011-05-13 07:53:31 ----A---- C:\Windows\system32\rpcrt4.dll
2011-05-13 07:53:31 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-05-13 07:53:31 ----A---- C:\Windows\system32\QCLIPROV.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\QAGENT.DLL
2011-05-13 07:53:31 ----A---- C:\Windows\system32\proquota.exe
2011-05-13 07:53:31 ----A---- C:\Windows\system32\propsys.dll
2011-05-13 07:53:30 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2011-05-13 07:53:30 ----A---- C:\Windows\system32\raschap.dll
2011-05-13 07:53:29 ----A---- C:\Windows\system32\Query.dll
2011-05-13 07:53:28 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2011-05-13 07:53:28 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2011-05-13 07:53:28 ----A---- C:\Windows\system32\qmgr.dll
2011-05-13 07:53:26 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2011-05-13 07:53:26 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2011-05-13 07:53:26 ----A---- C:\Windows\system32\shsvcs.dll
2011-05-13 07:53:26 ----A---- C:\Windows\system32\RacEngn.dll
2011-05-13 07:53:25 ----A---- C:\Windows\system32\srcore.dll
2011-05-13 07:53:25 ----A---- C:\Windows\system32\sqlcese30.dll
2011-05-13 07:53:24 ----A---- C:\Windows\system32\sppnp.dll
2011-05-13 07:53:24 ----A---- C:\Windows\system32\spopk.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mfds.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mf.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2011-05-13 07:53:20 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-05-13 07:53:19 ----A---- C:\Windows\system32\KBDMON.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\KBDINMAR.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\KBDGEO.DLL
2011-05-13 07:53:19 ----A---- C:\Windows\system32\iyuv_32.dll
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\netid.dll
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2011-05-13 07:53:18 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2011-05-13 07:53:18 ----A---- C:\Windows\system32\ntlanman.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\netplwiz.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\netfxperf.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\logoncli.dll
2011-05-13 07:53:18 ----A---- C:\Windows\system32\KBDSF.DLL
2011-05-13 07:53:18 ----A---- C:\Windows\system32\KBDPO.DLL
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\onexui.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\onex.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2011-05-13 07:53:17 ----A---- C:\Windows\SYSWOW64\occache.dll
2011-05-13 07:53:17 ----A---- C:\Windows\system32\odbcconf.dll
2011-05-13 07:53:17 ----A---- C:\Windows\system32\ocsetup.exe
2011-05-13 07:53:17 ----A---- C:\Windows\system32\ocsetapi.dll
2011-05-13 07:53:17 ----A---- C:\Windows\system32\ntshrui.dll
2011-05-13 07:53:16 ----A---- C:\Windows\system32\msieftp.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\msrating.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2011-05-13 07:53:15 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2011-05-13 07:53:15 ----A---- C:\Windows\system32\mssphtb.dll
2011-05-13 07:53:15 ----A---- C:\Windows\system32\msasn1.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\net1.exe
2011-05-13 07:53:14 ----A---- C:\Windows\system32\ncryptui.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mydocs.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\msyuv.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mstsc.exe
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mssvp.dll
2011-05-13 07:53:14 ----A---- C:\Windows\system32\mssrch.dll
2011-05-13 07:53:13 ----A---- C:\Windows\system32\cmstp.exe
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2011-05-13 07:53:12 ----A---- C:\Windows\SYSWOW64\certcli.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\DeviceCenter.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\davclnt.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-05-13 07:53:12 ----A---- C:\Windows\system32\cdosys.dll
2011-05-13 07:53:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2011-05-13 07:53:10 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2011-05-13 07:53:10 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2011-05-13 07:53:10 ----A---- C:\Windows\system32\drivers\afd.sys
2011-05-13 07:53:10 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-05-13 07:53:10 ----A---- C:\Windows\system32\d3d10warp.dll
2011-05-13 07:53:10 ----A---- C:\Windows\system32\ActionQueue.dll
2011-05-13 07:53:10 ----A---- C:\Windows\system32\accessibilitycpl.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2011-05-13 07:53:09 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\hal.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\gpsvc.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\cabinet.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\browser.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\bcdboot.exe
2011-05-13 07:53:09 ----A---- C:\Windows\system32\autoplay.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\autofmt.exe
2011-05-13 07:53:09 ----A---- C:\Windows\system32\actxprxy.dll
2011-05-13 07:53:09 ----A---- C:\Windows\system32\ActionCenter.dll
2011-05-13 07:53:08 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2011-05-13 07:53:08 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2011-05-13 07:53:08 ----A---- C:\Windows\system32\inetpp.dll
2011-05-13 07:53:05 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2011-05-13 07:53:05 ----A---- C:\Windows\SYSWOW64\Display.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\evr.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\efscore.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\dwmredir.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\dsauth.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\drvstore.dll
2011-05-13 07:53:05 ----A---- C:\Windows\system32\dot3msm.dll
2011-05-13 07:53:04 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2011-05-13 07:53:04 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2011-05-13 07:53:04 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2011-05-13 07:53:04 ----A---- C:\Windows\system32\dot3svc.dll
2011-05-13 07:53:04 ----A---- C:\Windows\system32\dot3api.dll
2011-05-13 07:53:02 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2011-05-13 07:53:02 ----A---- C:\Windows\SYSWOW64\fontext.dll
2011-05-13 07:53:02 ----A---- C:\Windows\system32\fde.dll
2011-05-13 07:53:01 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-05-13 07:53:01 ----A---- C:\Windows\system32\syncui.dll
2011-05-13 07:53:01 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-05-13 07:53:01 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-05-13 07:52:58 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2011-05-13 07:52:58 ----A---- C:\Windows\system32\tquery.dll
2011-05-13 07:52:58 ----A---- C:\Windows\system32\SndVol.exe
2011-05-13 07:52:57 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2011-05-13 07:52:57 ----A---- C:\Windows\SYSWOW64\sppc.dll
2011-05-13 07:52:57 ----A---- C:\Windows\system32\srvcli.dll
2011-05-13 07:52:57 ----A---- C:\Windows\system32\SndVolSSO.dll
2011-05-13 07:52:57 ----A---- C:\Windows\system32\drivers\storvsc.sys
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2011-05-13 07:52:56 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\WinSCard.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\WebClnt.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2011-05-13 07:52:55 ----A---- C:\Windows\system32\wbengine.exe
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2011-05-13 07:52:53 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2011-05-13 07:52:53 ----A---- C:\Windows\system32\wmpdxm.dll
2011-05-13 07:52:52 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2011-05-13 07:52:52 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2011-05-13 07:52:52 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2011-05-13 07:52:52 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-05-13 07:52:52 ----A---- C:\Windows\system32\tzres.dll
2011-05-13 07:52:52 ----A---- C:\Windows\system32\tspubwmi.dll
2011-05-13 07:52:52 ----A---- C:\Windows\system32\tsbyuv.dll
2011-05-13 07:52:51 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2011-05-13 07:52:51 ----A---- C:\Windows\SYSWOW64\utildll.dll
2011-05-13 07:52:51 ----A---- C:\Windows\SYSWOW64\usp10.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\wbemcomn.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vpnikeapi.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vpnike.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vpc.exe
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vmstorfltres.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\vmsal.exe
2011-05-13 07:52:51 ----A---- C:\Windows\system32\Vault.dll
2011-05-13 07:52:51 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2011-05-13 07:52:50 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2011-05-13 07:52:50 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2011-05-13 07:52:50 ----A---- C:\Windows\system32\VmdCoinstall.dll
2011-05-13 07:52:50 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-05-13 07:52:50 ----A---- C:\Windows\system32\drivers\sdbus.sys
2011-05-13 07:52:49 ----A---- C:\Windows\SYSWOW64\schannel.dll
2011-05-13 07:52:49 ----A---- C:\Windows\system32\schtasks.exe
2011-05-13 07:52:49 ----A---- C:\Windows\system32\schedcli.dll
2011-05-13 07:52:48 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2011-05-13 07:52:48 ----A---- C:\Windows\system32\rdpcore.dll
2011-05-13 07:52:48 ----A---- C:\Windows\system32\QUTIL.DLL
2011-05-13 07:52:48 ----A---- C:\Windows\system32\quartz.dll
2011-05-13 07:52:46 ----A---- C:\Windows\SYSWOW64\qdv.dll
2011-05-13 07:52:46 ----A---- C:\Windows\SYSWOW64\proquota.exe
2011-05-13 07:52:46 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2011-05-13 07:52:46 ----A---- C:\Windows\system32\prncache.dll
2011-05-13 07:52:46 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\riched32.dll
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\riched20.dll
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2011-05-13 07:52:45 ----A---- C:\Windows\SYSWOW64\qasf.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\SensorsCpl.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\rpchttp.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-05-13 07:52:45 ----A---- C:\Windows\system32\recovery.dll
2011-05-13 07:52:45 ----A---- C:\Windows\system32\rdpsign.exe
2011-05-13 07:52:45 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2011-05-13 07:52:44 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\shlwapi.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\shdocvw.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\shacct.dll
2011-05-13 07:52:44 ----A---- C:\Windows\system32\setupapi.dll
2011-05-13 07:52:38 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2011-05-13 07:52:38 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2011-05-13 07:52:38 ----A---- C:\Windows\system32\MdSched.exe
2011-05-13 07:52:38 ----A---- C:\Windows\system32\mciqtz32.dll
2011-05-13 07:52:38 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2011-05-13 07:52:38 ----A---- C:\Windows\system32\lsmproxy.dll
2011-05-13 07:52:37 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2011-05-13 07:52:37 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2011-05-13 07:52:36 ----A---- C:\Windows\SYSWOW64\input.dll
2011-05-13 07:52:36 ----A---- C:\Windows\system32\iasrecst.dll
2011-05-13 07:52:36 ----A---- C:\Windows\system32\httpapi.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\localsec.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\netiohlp.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\netcfgx.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\netcenter.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\msxml3.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\ListSvc.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\licmgr10.dll
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDTURME.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDMAORI.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDINTAM.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDGR1.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\KBDCZ1.DLL
2011-05-13 07:52:35 ----A---- C:\Windows\system32\isoburn.exe
pokracovani dale
Předem děkuji.
Michal