1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive [InActive] can not get rid of virus

Discussion in 'Malware and Virus Removal Archive' started by hanqba1, 2008/10/12.

  1. 2008/10/12
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    think i have a virus can someone please help me get rid of it thanks. here are my logs.
    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-05-16 26944]
    R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 78416]
    R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-05-16 42912]
    R1 cmdGuard;COMODO Firewall Pro Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2008-06-28 87056]
    R1 cmdHlp;COMODO Firewall Pro Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2008-06-28 24208]
    R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys []
    R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 36096]
    R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
    R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 20560]
    R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-05-16 94416]
    R2 dsunidrv;DellSupport UniDriver; C:\WINDOWS\system32\DRIVERS\dsunidrv.sys [2007-02-25 5376]
    R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2003-04-09 11043]
    R2 tmcomm;tmcomm; \??\C:\WINDOWS\system32\drivers\tmcomm.sys []
    R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-05-16 23152]
    R3 DSproct;DSproct; \??\C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys []
    R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2004-02-10 154112]
    R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
    R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
    R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2003-11-17 1042432]
    R3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys [2003-11-17 212224]
    R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
    R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
    R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
    R3 senfilt;senfilt; C:\WINDOWS\system32\drivers\senfilt.sys [2004-09-17 732928]
    R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2005-01-27 260352]
    R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-04 26624]
    R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
    R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
    R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
    R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2003-11-17 680704]
    S1 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2004-08-03 31744]
    S3 bvrp_pci;bvrp_pci; C:\WINDOWS\system32\drivers\bvrp_pci.sys []
    S3 catchme;catchme; \??\C:\DOCUME~1\JOYCEH~1\LOCALS~1\Temp\catchme.sys []
    S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
    S3 SDDMI2;SDDMI2; C:\WINDOWS\system32\drivers\SDDMI2.sys []
    S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ss_bus.sys [2005-08-30 58320]
    S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ss_mdfl.sys [2005-08-30 8304]
    S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ss_mdm.sys [2005-08-30 94000]
    S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
    S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
    S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
    S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
    S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\drivers\wanatw.sys []
    S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2004-08-03 42368]
    S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2004-08-03 44928]
    S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2004-08-03 42752]
    S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2004-08-03 43008]
    S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
    S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2004-08-03 41088]
    S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2004-08-03 42240]
    S4 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-04 12032]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2007-09-06 110592]
    R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-05-16 17272]
    R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [2008-02-10 238968]
    R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-05-16 144760]
    R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2007-07-24 229376]
    R2 cmdAgent;COMODO Firewall Pro Helper Service; C:\Program Files\COMODO\Firewall\cmdagent.exe [2008-06-28 519936]
    R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2004-03-04 311296]
    R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-05-16 247160]
    R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-05-16 349560]
    R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-02-19 504104]
    S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2004-08-04 267776]
    S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
    S3 DSBrokerService;DSBrokerService; C:\Program Files\DellSupport\brkrsvc.exe [2007-03-07 76848]
    S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-06-24 138168]
    S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
    S3 LiveUpdate;LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [2008-02-10 3220856]
    S3 NetSvc;Intel NCS NetService; C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe [2003-12-17 143360]
    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
    S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]

    -----------------EOF-----------------
     
  2. 2008/10/12
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    second log in sections as too long.
    Logfile of random's system information tool 1.04 (written by random/random)
    Run by joyce hanquinioux at 2008-10-12 20:58:43
    Microsoft Windows XP Professional Service Pack 2
    System drive C: has 17 GB (48%) free of 35 GB
    Total RAM: 254 MB (21% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 20:59:09, on 12/10/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16705)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\COMODO\Firewall\cmdagent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Analog Devices\Core\smax4pnp.exe
    C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\COMODO\SafeSurf\cssurf.exe
    C:\Program Files\COMODO\Firewall\cfp.exe
    C:\Program Files\DellSupport\DSAgnt.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\internet explorer\iexplore.exe
    C:\Documents and Settings\joyce hanquinioux\Desktop\RSIT.exe
    C:\Program Files\Trend Micro\HijackThis\joyce hanquinioux.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.virginmedia.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.virginmedia.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBR
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://v4.windowsupdate.microsoft.com/
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
    O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
    O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe "
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [Broadbandadvisor.exe] "C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe" /AUTORUN
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe "
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe "
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [COMODO SafeSurf] "C:\Program Files\COMODO\SafeSurf\cssurf.exe" -s
    O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\COMODO\Firewall\cfp.exe" -h
    O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Digital Line Detect.lnk = ?
    O4 - Global Startup: dlbcserv.lnk = C:\Program Files\Dell Photo Printer 720\dlbcserv.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} (DjVuCtl Class) - http://www.1837online.com/downloads/windows/DjVuControl_en_US.cab
    O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Hotel%20Mahjong/Images/stg_drm.ocx
    O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.av.aolsvc.co.uk/molbin/shared/mcinsctl/en-us/4,0,0,84/mcinsctl.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B7D07999-2ADB-4AEB-997E-F61CB7B2E2CD} (TSEasyInstallX Control) - http://www.trendsecure.com/easy_install/_activex/en-US/TSEasyInstallX.CAB
    O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.av.aolsvc.co.uk/molbin/shared/mcgdmgr/en-us/1,0,0,21/mcgdmgr.cab
    O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game05.zylom.com/activex/zylomgamesplayer.cab
    O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - http://www.telewest.co.uk/motive/files/MotivePreQual.cab
    O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Hotel%20Mahjong/Images/armhelper.ocx
    O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712...amai.com/6712/player/install3.5/installer.exe
    O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games-uk.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
    O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll C:\WINDOWS\system32\cssdll32.dll
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\Firewall\cmdagent.exe
    O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe

    --
    End of file - 9911 bytes

    ======Scheduled tasks folder======

    C:\WINDOWS\tasks\AppleSoftwareUpdate.job

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}]
    Ask Search Assistant BHO - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL [2008-06-28 66912]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
    SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
    Google Toolbar Helper - c:\program files\google\googletoolbar2.dll [2008-06-24 2403392]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
    Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-10-08 737776]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}]
    Ask Toolbar BHO - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2008-06-28 262144]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-07-19 342600]
    {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar2.dll [2008-06-24 2403392]
    {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - Ask Toolbar - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2008-06-28 262144]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "SoundMAXPnP "=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2004-10-14 1404928]
    "SunJavaUpdateSched "=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]
    "igfxtray "=C:\WINDOWS\system32\igfxtray.exe [2005-09-20 94208]
    "igfxhkcmd "=C:\WINDOWS\system32\hkcmd.exe [2005-09-20 77824]
    "igfxpers "=C:\WINDOWS\system32\igfxpers.exe [2005-09-20 114688]
    "TkBellExe "=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2007-09-14 185632]
    "Broadbandadvisor.exe "=C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe [2007-08-07 2061552]
    "QuickTime Task "=C:\Program Files\QuickTime\qttask.exe [2008-02-01 385024]
    "iTunesHelper "=C:\Program Files\iTunes\iTunesHelper.exe [2008-02-19 267048]
    "Adobe Reader Speed Launcher "=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
    "avast! "=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2008-05-16 79224]
    "COMODO SafeSurf "=C:\Program Files\COMODO\SafeSurf\cssurf.exe [2008-06-28 278264]
    "COMODO Firewall Pro "=C:\Program Files\COMODO\Firewall\cfp.exe [2008-06-28 1655552]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "DellSupport "=C:\Program Files\DellSupport\DSAgnt.exe [2007-03-15 460784]
    "ctfmon.exe "=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]

    C:\Documents and Settings\All Users\Start Menu\Programs\Startup
    Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
    dlbcserv.lnk - C:\Program Files\Dell Photo Printer 720\dlbcserv.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLS "=" C:\WINDOWS\system32\guard32.dll C:\WINDOWS\system32\cssdll32.dll "

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
    C:\WINDOWS\system32\igfxdev.dll [2005-09-20 135168]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
    C:\WINDOWS\system32\WgaLogon.dll [2007-03-15 236928]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
    "notification packages "=
    scecli

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
    "SecurityProviders "=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "dontdisplaylastusername "=0
    "legalnoticecaption "=
    "legalnoticetext "=
    "shutdownwithoutlogon "=1
    "undockwithoutlogon "=1

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoDriveTypeAutoRun "=145
    "NoDrives "=0

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoDriveAutoRun "=
    "NoDriveTypeAutoRun "=
    "NoDrives "=

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "%windir%\system32\sessmgr.exe "= "%windir%\system32\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019 "
    "C:\Program Files\Messenger\msmsgs.exe "= "C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger "
    "%windir%\Network Diagnostic\xpnetdiag.exe "= "%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:mad:xpsp3res.dll,-20000 "
    "C:\Program Files\MSN Messenger\msnmsgr.exe "= "C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1 "
    "C:\Program Files\MSN Messenger\livecall.exe "= "C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) "
    "C:\Program Files\Bonjour\mDNSResponder.exe "= "C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour "
    "C:\Program Files\iTunes\iTunes.exe "= "C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes "

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    "%windir%\system32\sessmgr.exe "= "%windir%\system32\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019 "
    "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe "= "C:\Program Files\Common Files\AOL\ACS\AOLDial.exe:*:Enabled:AOL "
    "C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe "= "C:\Program Files\Common Files\AOL\ACS\AOLacsd.exe:*:Enabled:AOL "
    "%windir%\Network Diagnostic\xpnetdiag.exe "= "%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:mad:xpsp3res.dll,-20000 "
    "C:\Program Files\MSN Messenger\msnmsgr.exe "= "C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1 "
    "C:\Program Files\MSN Messenger\livecall.exe "= "C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone) "

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{194c2028-aaf7-11db-b97f-0013206e0eb3}]
    shell\AutoRun\command - E:\LaunchU3.exe


    ======File associations======

    .reg - open - regedit.exe "%1" %*
     

  3. to hide this advert.

  4. 2008/10/12
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    ======File associations======

    .reg - open - regedit.exe "%1" %*

    ======List of files/folders created in the last 3 months======

    2008-10-12 19:55:45 ----D---- C:\rsit
    2008-09-10 20:19:52 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
    2008-09-05 16:09:23 ----D---- C:\WINDOWS\Prefetch
    2008-09-05 12:43:56 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
    2008-09-05 12:43:56 ----A---- C:\WINDOWS\system32\wmspdmoe.dll
    2008-09-05 12:43:56 ----A---- C:\WINDOWS\system32\wmspdmod.dll
    2008-09-05 12:43:55 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
    2008-09-05 12:43:55 ----A---- C:\WINDOWS\system32\wmpdxm.dll
    2008-09-05 12:43:55 ----A---- C:\WINDOWS\system32\wmpasf.dll
    2008-09-05 12:43:55 ----A---- C:\WINDOWS\system32\wmp.dll
    2008-09-05 12:43:55 ----A---- C:\WINDOWS\system32\wmidx.dll
    2008-09-05 12:43:55 ----A---- C:\WINDOWS\system32\wmerror.dll
    2008-09-05 12:43:54 ----A---- C:\WINDOWS\system32\mspmsnsv.dll
    2008-09-05 12:43:54 ----A---- C:\WINDOWS\system32\mp4sdmod.dll
    2008-09-05 12:43:54 ----A---- C:\WINDOWS\system32\mp43dmod.dll
    2008-09-05 12:43:47 ----A---- C:\WINDOWS\system32\spiisupd.exe
    2008-09-05 12:43:47 ----A---- C:\WINDOWS\system32\asr_pfu.exe
    2008-09-05 12:43:46 ----A---- C:\WINDOWS\system32\secedit.exe
    2008-09-05 12:43:44 ----A---- C:\WINDOWS\system32\bthci.dll
    2008-09-05 12:43:44 ----A---- C:\WINDOWS\system32\blastcln.exe
    2008-09-05 12:43:44 ----A---- C:\WINDOWS\system32\bitsprx3.dll
    2008-09-05 12:43:44 ----A---- C:\WINDOWS\system32\bitsprx2.dll
    2008-09-05 12:43:44 ----A---- C:\WINDOWS\system32\auditusr.exe
    2008-09-05 12:43:43 ----A---- C:\WINDOWS\system32\dxdiagn.dll
    2008-09-05 12:43:43 ----A---- C:\WINDOWS\system32\dsprpres.dll
    2008-09-05 12:43:43 ----A---- C:\WINDOWS\system32\d3d9.dll
    2008-09-05 12:43:43 ----A---- C:\WINDOWS\system32\cmsetacl.dll
    2008-09-05 12:43:43 ----A---- C:\WINDOWS\system32\btpanui.dll
    2008-09-05 12:43:43 ----A---- C:\WINDOWS\system32\bthserv.dll
    2008-09-05 12:43:41 ----A---- C:\WINDOWS\system32\fsquirt.exe
    2008-09-05 12:43:41 ----A---- C:\WINDOWS\system32\encdec.dll
    2008-09-05 12:43:41 ----A---- C:\WINDOWS\system32\encapi.dll
    2008-09-05 12:43:40 ----A---- C:\WINDOWS\system32\ir41_qc.dll
    2008-09-05 12:43:40 ----A---- C:\WINDOWS\system32\httpapi.dll
    2008-09-05 12:43:40 ----A---- C:\WINDOWS\system32\hccoin.dll
    2008-09-05 12:43:40 ----A---- C:\WINDOWS\system32\fwcfg.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdukx.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdno1.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdmaori.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdinmal.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdinben.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\kbdfi1.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\ir50_qc.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\ir50_32.dll
    2008-09-05 12:43:39 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
    2008-09-05 12:43:38 ----A---- C:\WINDOWS\system32\nv4_disp.dll
    2008-09-05 12:43:38 ----A---- C:\WINDOWS\system32\mstscax.dll
    2008-09-05 12:43:38 ----A---- C:\WINDOWS\system32\mstsc.exe
    2008-09-05 12:43:38 ----A---- C:\WINDOWS\system32\mssap.dll
    2008-09-05 12:43:38 ----A---- C:\WINDOWS\system32\msdadiag.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\w3ssl.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\verclsid.exe
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\tzchange.exe
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\twext.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\strmfilt.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\spnpinst.exe
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\smbinst.exe
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\sdhcinst.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\sbeio.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\sbe.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\powercfg.exe
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\p2psvc.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\p2pgraph.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
    2008-09-05 12:43:37 ----A---- C:\WINDOWS\system32\p2p.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\xpsp3res.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\xpsp1res.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\xpob2res.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\xmlprovi.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\xmlprov.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\xmllite.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\wuauserv.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\wshbth.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\wscsvc.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\wscntfy.exe
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\winshfhc.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\winhttp.dll
    2008-09-05 12:43:36 ----A---- C:\WINDOWS\system32\winbrand.dll
    2008-09-05 12:43:25 ----A---- C:\WINDOWS\system32\xpsp2res.dll
    2008-09-05 12:43:25 ----A---- C:\WINDOWS\system32\qmgr.dll
    2008-09-05 12:43:23 ----A---- C:\WINDOWS\system32\pidgen.dll
    2008-09-05 12:43:23 ----A---- C:\WINDOWS\system32\dpcdll.dll
    2008-09-05 12:43:09 ----A---- C:\WINDOWS\system32\msftedit.dll
    2008-09-05 12:43:09 ----A---- C:\WINDOWS\system32\fltlib.dll
    2008-09-05 12:43:08 ----A---- C:\WINDOWS\system32\ieencode.dll
    2008-09-05 12:43:07 ----A---- C:\WINDOWS\system32\fltmc.exe
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\fdeploy.dll
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\fde.dll
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\eventtriggers.exe
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\eventcreate.exe
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\efsadu.dll
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\driverquery.exe
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\cipher.exe
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\bootcfg.exe
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\asr_fmt.exe
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\appmgr.dll
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\appmgmts.dll
    2008-09-05 12:43:04 ----A---- C:\WINDOWS\system32\adsnw.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqtrig.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqtgsvc.exe
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqsvc.exe
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqsnap.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqrtdep.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqoa.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\mqbkup.exe
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\logman.exe
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\gptext.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\gpresult.exe
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\gpedit.dll
    2008-09-05 12:43:03 ----A---- C:\WINDOWS\system32\getmac.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\tlntsvr.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\tlntsess.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\tlntadmn.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\tasklist.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\taskkill.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\systeminfo.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\schtasks.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\rsnotify.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\proxycfg.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\openfiles.exe
    2008-09-05 12:43:02 ----A---- C:\WINDOWS\system32\ntbackup.exe
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\wsecedit.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\tracerpt.exe
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\tlntsvrp.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqutil.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqupgrd.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqsec.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqrt.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqqm.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqise.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqdscli.dll
    2008-09-05 12:43:01 ----A---- C:\WINDOWS\system32\mqad.dll
    2008-09-05 12:43:00 ----A---- C:\WINDOWS\system32\nwwks.dll
    2008-09-05 12:43:00 ----A---- C:\WINDOWS\system32\nwapi32.dll
    2008-09-05 12:42:25 ----A---- C:\WINDOWS\explorer.exe
    2008-09-05 12:42:24 ----A---- C:\WINDOWS\winhlp32.exe
    2008-09-05 12:42:24 ----A---- C:\WINDOWS\twain_32.dll
    2008-09-05 12:42:24 ----A---- C:\WINDOWS\regedit.exe
    2008-09-05 12:42:24 ----A---- C:\WINDOWS\hh.exe
    2008-09-05 12:42:18 ----A---- C:\WINDOWS\system32\actmovie.exe
    2008-09-05 12:42:18 ----A---- C:\WINDOWS\system32\activeds.dll
    2008-09-05 12:42:18 ----A---- C:\WINDOWS\system32\aclui.dll
    2008-09-05 12:42:18 ----A---- C:\WINDOWS\system32\accwiz.exe
    2008-09-05 12:42:18 ----A---- C:\WINDOWS\system32\6to4svc.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\apphelp.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\amstream.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\alrsvc.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\alg.exe
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\ahui.exe
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\adsnt.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\adsmsext.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\adsldpc.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\adsldp.dll
    2008-09-05 12:42:17 ----A---- C:\WINDOWS\system32\actxprxy.dll
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\autofmt.exe
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\authz.dll
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\attrib.exe
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\atmlib.dll
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\atmfd.dll
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\atmadm.exe
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\atl.dll
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\at.exe
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\asycfilt.dll
    2008-09-05 12:42:16 ----A---- C:\WINDOWS\system32\asferror.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\browsewm.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\browseui.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\browser.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\browselc.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\blackbox.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\bidispl.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\batt.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\batmeter.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\basesrv.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\avifil32.dll
    2008-09-05 12:42:15 ----A---- C:\WINDOWS\system32\autolfn.exe
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\cdfview.dll
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\catsrvut.dll
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\catsrvps.dll
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\catsrv.dll
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\capesnpn.dll
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\camocx.dll
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\cabview.dll
    2008-09-05 12:42:14 ----A---- C:\WINDOWS\system32\cabinet.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\ciodm.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\cic.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\cfgbkend.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\cewmdm.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\certmgr.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\certcli.dll
    2008-09-05 12:42:13 ----A---- C:\WINDOWS\system32\cdosys.dll
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cmmon32.exe
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cmdl32.exe
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cmdial32.dll
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cmcfg32.dll
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\clusapi.dll
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\clipsrv.exe
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\clipbrd.exe
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cliconfg.exe
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cliconfg.dll
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cleanmgr.exe
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\clbcatq.dll
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\clbcatex.dll
    2008-09-05 12:42:12 ----A---- C:\WINDOWS\system32\cisvc.exe
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\comsnap.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\comres.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\comrepl.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\compstui.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\compatui.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\comaddin.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\colbact.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\cnbjmon.dll
     
  5. 2008/10/12
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\cmutil.dll
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\cmstp.exe
    2008-09-05 12:42:11 ----A---- C:\WINDOWS\system32\cmprops.dll
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\cryptdlg.dll
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\crypt32.dll
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\credui.dll
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\corpol.dll
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\conime.exe
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\confmsp.dll
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\comuid.dll
    2008-09-05 12:42:10 ----A---- C:\WINDOWS\system32\comsvcs.dll
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\ctfmon.exe
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\csrss.exe
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cscui.dll
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cscript.exe
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cscdll.dll
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cryptui.dll
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cryptsvc.dll
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cryptnet.dll
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cryptext.dll
    2008-09-05 12:42:09 ----A---- C:\WINDOWS\system32\cryptdll.dll
    2008-09-05 12:42:08 ----A---- C:\WINDOWS\system32\davclnt.dll
    2008-09-05 12:42:08 ----A---- C:\WINDOWS\system32\datime.dll
    2008-09-05 12:42:08 ----A---- C:\WINDOWS\system32\dataclen.dll
    2008-09-05 12:42:08 ----A---- C:\WINDOWS\system32\danim.dll
    2008-09-05 12:42:08 ----A---- C:\WINDOWS\system32\d3dim700.dll
    2008-09-05 12:42:08 ----A---- C:\WINDOWS\system32\d3d8thk.dll
    2008-09-05 12:42:08 ----A---- C:\WINDOWS\system32\d3d8.dll
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\ddrawex.dll
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\ddraw.dll
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\ddeshare.exe
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\dciman32.dll
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\dbnetlib.dll
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
    2008-09-05 12:42:07 ----A---- C:\WINDOWS\system32\dbghelp.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dinput.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\digest.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\diantz.exe
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dhcpmon.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dgnet.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dfsshlex.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dfrgui.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\dfrgfat.exe
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\devmgr.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\devenum.dll
    2008-09-05 12:42:06 ----A---- C:\WINDOWS\system32\defrag.exe
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dmloader.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dmime.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dmdlgs.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dmcompos.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dmband.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dmadmin.exe
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dllhost.exe
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dispex.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\diskpart.exe
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\diskcopy.dll
    2008-09-05 12:42:05 ----A---- C:\WINDOWS\system32\dinput8.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dplayx.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dplaysvr.exe
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\docprop2.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dnsapi.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dmutil.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dmusic.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dmsynth.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dmstyle.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dmserver.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dmscript.dll
    2008-09-05 12:42:04 ----A---- C:\WINDOWS\system32\dmremote.exe
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpwsockx.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpvvox.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpvsetup.exe
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpvoice.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpvacm.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpnsvr.exe
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpnlobby.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpnhpast.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpnet.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpnaddr.dll
    2008-09-05 12:42:03 ----A---- C:\WINDOWS\system32\dpmodemx.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\dsound.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\dskquoui.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\dskquota.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\dsdmo.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\ds32gt.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\drprov.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\drmv2clt.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\drmstor.dll
    2008-09-05 12:42:02 ----A---- C:\WINDOWS\system32\drmclien.dll
    2008-09-05 12:42:01 ----A---- C:\WINDOWS\system32\dswave.dll
    2008-09-05 12:42:01 ----A---- C:\WINDOWS\system32\dsuiext.dll
    2008-09-05 12:42:01 ----A---- C:\WINDOWS\system32\dssenh.dll
    2008-09-05 12:42:01 ----A---- C:\WINDOWS\system32\dssec.dll
    2008-09-05 12:42:01 ----A---- C:\WINDOWS\system32\dsquery.dll
    2008-09-05 12:42:01 ----A---- C:\WINDOWS\system32\dsprop.dll
    2008-09-05 12:42:01 ----A---- C:\WINDOWS\system32\dsound3d.dll
    2008-09-05 12:42:00 ----A---- C:\WINDOWS\system32\dxdiag.exe
    2008-09-05 12:42:00 ----A---- C:\WINDOWS\system32\dx8vb.dll
    2008-09-05 12:42:00 ----A---- C:\WINDOWS\system32\dx7vb.dll
    2008-09-05 12:42:00 ----A---- C:\WINDOWS\system32\dwwin.exe
    2008-09-05 12:42:00 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
    2008-09-05 12:42:00 ----A---- C:\WINDOWS\system32\duser.dll
    2008-09-05 12:42:00 ----A---- C:\WINDOWS\system32\dumprep.exe
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\extrac32.exe
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\expsrv.dll
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\eventlog.dll
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\eudcedit.exe
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\esent.dll
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\es.dll
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\ersvc.dll
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\els.dll
    2008-09-05 12:41:59 ----A---- C:\WINDOWS\system32\dxmasf.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\framebuf.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\forcedos.exe
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\fontview.exe
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\fontsub.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\fontext.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\fldrclnr.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\findstr.exe
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\filemgmt.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\feclient.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\faultrep.dll
    2008-09-05 12:41:58 ----A---- C:\WINDOWS\system32\exts.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxssvc.exe
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsst.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsres.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsperf.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsmon.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsext32.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsevent.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsdrv.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxscover.exe
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxscomex.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxscom.dll
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsclnt.exe
    2008-09-05 12:41:57 ----A---- C:\WINDOWS\system32\fxsapi.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\h323msp.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\grpconv.exe
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\glu32.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\gdi32.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\fxsxp32.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\fxswzrd.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\fxsui.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\fxstiff.dll
    2008-09-05 12:41:56 ----A---- C:\WINDOWS\system32\fxst30.dll
    2008-09-05 12:41:55 ----A---- C:\WINDOWS\system32\hnetcfg.dll
    2008-09-05 12:41:55 ----A---- C:\WINDOWS\system32\hlink.dll
    2008-09-05 12:41:55 ----A---- C:\WINDOWS\system32\hid.dll
    2008-09-05 12:41:55 ----A---- C:\WINDOWS\system32\hhsetup.dll
    2008-09-05 12:41:55 ----A---- C:\WINDOWS\system32\help.exe
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\ifmon.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\iexpress.exe
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\idq.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\icwphbk.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\icwdial.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\icmp.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\icm32.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\iccvid.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\icaapi.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\iasrad.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\hypertrm.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\htui.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\hotplug.dll
    2008-09-05 12:41:54 ----A---- C:\WINDOWS\system32\hnetwiz.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\initpki.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\inetres.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\inetppui.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\inetpp.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\inetmib1.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\inetcomm.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\inetcfg.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\imm32.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\imeshare.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\imapi.exe
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\ils.dll
    2008-09-05 12:41:53 ----A---- C:\WINDOWS\system32\igmpagnt.dll
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\ippromon.dll
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\ipnathlp.dll
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\ipmontr.dll
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\iphlpapi.dll
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\ipconfig.exe
    2008-09-05 12:41:52 ----A---- C:\WINDOWS\system32\input.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\jgpl400.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\jgdw400.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\iyuv_32.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\ixsso.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\itss.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\itircl.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\isrdbg32.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\isign32.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\ipxwan.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\ipxroute.exe
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\ipv6mon.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\ipv6.exe
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
    2008-09-05 12:41:51 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\licdll.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\laprxy.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\ksuser.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\keymgr.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\kerberos.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\kd1394.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\kbdnec.dll
    2008-09-05 12:41:50 ----A---- C:\WINDOWS\system32\jscript.dll
    2008-09-05 12:41:49 ----A---- C:\WINDOWS\system32\logagent.exe
    2008-09-05 12:41:49 ----A---- C:\WINDOWS\system32\localui.dll
    2008-09-05 12:41:49 ----A---- C:\WINDOWS\system32\localsec.dll
    2008-09-05 12:41:49 ----A---- C:\WINDOWS\system32\loadperf.dll
    2008-09-05 12:41:49 ----A---- C:\WINDOWS\system32\lmrt.dll
    2008-09-05 12:41:49 ----A---- C:\WINDOWS\system32\linkinfo.dll
    2008-09-05 12:41:49 ----A---- C:\WINDOWS\system32\licwmi.dll
    2008-09-05 12:41:48 ----A---- C:\WINDOWS\system32\lpk.dll
    2008-09-05 12:41:48 ----A---- C:\WINDOWS\system32\logonui.exe
    2008-09-05 12:41:47 ----A---- C:\WINDOWS\system32\mciqtz32.dll
    2008-09-05 12:41:47 ----A---- C:\WINDOWS\system32\mciavi32.dll
    2008-09-05 12:41:47 ----A---- C:\WINDOWS\system32\mcastmib.dll
    2008-09-05 12:41:47 ----A---- C:\WINDOWS\system32\makecab.exe
    2008-09-05 12:41:47 ----A---- C:\WINDOWS\system32\magnify.exe
    2008-09-05 12:41:47 ----A---- C:\WINDOWS\system32\lsass.exe
    2008-09-05 12:41:47 ----A---- C:\WINDOWS\system32\lprhelp.dll
    2008-09-05 12:41:46 ----A---- C:\WINDOWS\system32\mfc40u.dll
    2008-09-05 12:41:46 ----A---- C:\WINDOWS\system32\mf3216.dll
    2008-09-05 12:41:46 ----A---- C:\WINDOWS\system32\mdminst.dll
    2008-09-05 12:41:46 ----A---- C:\WINDOWS\system32\mciwave.dll
    2008-09-05 12:41:46 ----A---- C:\WINDOWS\system32\mciseq.dll
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\mmcbase.dll
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\mmc.exe
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\mlang.dll
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\mimefilt.dll
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\miglibnt.dll
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\midimap.dll
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\mfcsubs.dll
    2008-09-05 12:41:45 ----A---- C:\WINDOWS\system32\mfc42.dll
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\moricons.dll
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\more.com
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\modemui.dll
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\mobsync.exe
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\mobsync.dll
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\mnmdd.dll
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\mmfutil.dll
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\mmcshext.dll
    2008-09-05 12:41:44 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\msconf.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\mscms.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\msasn1.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\msapsspc.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\msafd.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\msacm32.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\mprdim.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\mprapi.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\mpr.dll
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\mplay32.exe
    2008-09-05 12:41:43 ----A---- C:\WINDOWS\system32\mpg4dmod.dll
    2008-09-05 12:41:42 ----A---- C:\WINDOWS\system32\msdtc.exe
    2008-09-05 12:41:42 ----A---- C:\WINDOWS\system32\msdmo.dll
    2008-09-05 12:41:42 ----A---- C:\WINDOWS\system32\msdart.dll
    2008-09-05 12:41:42 ----A---- C:\WINDOWS\system32\msctfp.dll
    2008-09-05 12:41:42 ----A---- C:\WINDOWS\system32\msctf.dll
    2008-09-05 12:41:42 ----A---- C:\WINDOWS\system32\mscpxl32.dll
    2008-09-05 12:41:42 ----A---- C:\WINDOWS\system32\mscpx32r.dll
    2008-09-05 12:41:41 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
    2008-09-05 12:41:41 ----A---- C:\WINDOWS\system32\msdtctm.dll
    2008-09-05 12:41:41 ----A---- C:\WINDOWS\system32\msdtcprx.dll
    2008-09-05 12:41:41 ----A---- C:\WINDOWS\system32\msdtclog.dll
    2008-09-05 12:41:40 ----A---- C:\WINDOWS\system32\msiexec.exe
    2008-09-05 12:41:40 ----A---- C:\WINDOWS\system32\msieftp.dll
    2008-09-05 12:41:40 ----A---- C:\WINDOWS\system32\msidle.dll
    2008-09-05 12:41:40 ----A---- C:\WINDOWS\system32\msident.dll
    2008-09-05 12:41:40 ----A---- C:\WINDOWS\system32\msi.dll
    2008-09-05 12:41:40 ----A---- C:\WINDOWS\system32\msgina.dll
    2008-09-05 12:41:40 ----A---- C:\WINDOWS\system32\msdxmlc.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\msnetobj.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\mslbui.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\msjint40.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\msisip.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\msimtf.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\msimsg.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\msimg32.dll
    2008-09-05 12:41:39 ----A---- C:\WINDOWS\system32\msihnd.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\msprivs.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\mspmsp.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\mspatcha.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\mspaint.exe
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\msorcl32.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\msorc32r.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\msoert2.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\msoeacct.dll
    2008-09-05 12:41:38 ----A---- C:\WINDOWS\system32\msnsspc.dll
    2008-09-05 12:41:37 ----A---- C:\WINDOWS\system32\mstinit.exe
    2008-09-05 12:41:37 ----A---- C:\WINDOWS\system32\mstask.dll
    2008-09-05 12:41:37 ----A---- C:\WINDOWS\system32\msscp.dll
    2008-09-05 12:41:37 ----A---- C:\WINDOWS\system32\msrle32.dll
    2008-09-05 12:41:36 ----A---- C:\WINDOWS\system32\msvcrt.dll
    2008-09-05 12:41:36 ----A---- C:\WINDOWS\system32\msvcp60.dll
    2008-09-05 12:41:36 ----A---- C:\WINDOWS\system32\msvcirt.dll
    2008-09-05 12:41:36 ----A---- C:\WINDOWS\system32\msvbvm60.dll
    2008-09-05 12:41:36 ----A---- C:\WINDOWS\system32\msutb.dll
    2008-09-05 12:41:36 ----A---- C:\WINDOWS\system32\mstlsapi.dll
    2008-09-05 12:41:35 ----A---- C:\WINDOWS\system32\mswsock.dll
    2008-09-05 12:41:35 ----A---- C:\WINDOWS\system32\mswmdm.dll
    2008-09-05 12:41:35 ----A---- C:\WINDOWS\system32\mswebdvd.dll
    2008-09-05 12:41:35 ----A---- C:\WINDOWS\system32\msw3prt.dll
    2008-09-05 12:41:35 ----A---- C:\WINDOWS\system32\msvidctl.dll
    2008-09-05 12:41:35 ----A---- C:\WINDOWS\system32\msvfw32.dll
    2008-09-05 12:41:35 ----A---- C:\WINDOWS\system32\msvcrt40.dll
    2008-09-05 12:41:34 ----A---- C:\WINDOWS\system32\mtxex.dll
    2008-09-05 12:41:34 ----A---- C:\WINDOWS\system32\mtxdm.dll
    2008-09-05 12:41:34 ----A---- C:\WINDOWS\system32\mtxclu.dll
    2008-09-05 12:41:34 ----A---- C:\WINDOWS\system32\msyuv.dll
    2008-09-05 12:41:34 ----A---- C:\WINDOWS\system32\msxml3.dll
    2008-09-05 12:41:34 ----A---- C:\WINDOWS\system32\msxml2.dll
    2008-09-05 12:41:34 ----A---- C:\WINDOWS\system32\msxml.dll
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\net1.exe
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\net.exe
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\nddenb32.dll
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\nddeapir.exe
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\nddeapi.dll
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\ncobjapi.dll
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\narrator.exe
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\mydocs.dll
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\mtxoci.dll
    2008-09-05 12:41:33 ----A---- C:\WINDOWS\system32\mtxlegih.dll
    2008-09-05 12:41:32 ----A---- C:\WINDOWS\system32\netman.dll
    2008-09-05 12:41:32 ----A---- C:\WINDOWS\system32\netlogon.dll
    2008-09-05 12:41:32 ----A---- C:\WINDOWS\system32\netid.dll
    2008-09-05 12:41:32 ----A---- C:\WINDOWS\system32\netdde.exe
    2008-09-05 12:41:32 ----A---- C:\WINDOWS\system32\netcfgx.dll
    2008-09-05 12:41:32 ----A---- C:\WINDOWS\system32\netapi32.dll
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\nlhtml.dll
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\newdev.dll
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netui1.dll
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netui0.dll
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netstat.exe
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netshell.dll
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netsh.exe
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netsetup.exe
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netrap.dll
    2008-09-05 12:41:31 ----A---- C:\WINDOWS\system32\netplwiz.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\ntmsdba.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\ntmsapi.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\ntmarta.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\ntlanman.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\ntdsapi.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\npptools.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\notepad.exe
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\system32\nmmkcert.dll
    2008-09-05 12:41:30 ----A---- C:\WINDOWS\notepad.exe
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\odbc32gt.dll
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\odbc32.dll
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\ocmanage.dll
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\objsel.dll
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\oakley.dll
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\ntvdmd.dll
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\ntshrui.dll
    2008-09-05 12:41:29 ----A---- C:\WINDOWS\system32\ntmssvc.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbcjt32.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbcji32.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbcint.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbccu32.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbccr32.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbccp32.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbcconf.exe
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbcconf.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbcbcp.dll
    2008-09-05 12:41:28 ----A---- C:\WINDOWS\system32\odbcad32.exe
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\olepro32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\oleprn.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\oledlg.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\olecli32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\ole32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\offfilt.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\odtext32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\odpdx32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\odfox32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\odexl32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\oddbse32.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\odbctrac.dll
    2008-09-05 12:41:27 ----A---- C:\WINDOWS\system32\odbcp32r.dll
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\perfmon.exe
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\perfdisk.dll
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\pdh.dll
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\pautoenr.dll
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\packager.exe
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\osuninst.dll
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\osk.exe
    2008-09-05 12:41:26 ----A---- C:\WINDOWS\system32\opengl32.dll
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\polstore.dll
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\pjlmon.dll
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\ping.exe
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\pid.dll
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\photowiz.dll
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\perfproc.dll
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\perfos.dll
    2008-09-05 12:41:25 ----A---- C:\WINDOWS\system32\perfnet.dll
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\pstorsvc.dll
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\pstorec.dll
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\psbase.dll
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\psapi.dll
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\proquota.exe
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\progman.exe
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\profmap.dll
    2008-09-05 12:41:24 ----A---- C:\WINDOWS\system32\powrprof.dll
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qprocess.exe
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qedwipes.dll
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qedit.dll
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qdvd.dll
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qdv.dll
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qcap.dll
    2008-09-05 12:41:23 ----A---- C:\WINDOWS\system32\qasf.dll
    2008-09-05 12:41:22 ----A---- C:\WINDOWS\system32\rasphone.exe
    2008-09-05 12:41:22 ----A---- C:\WINDOWS\system32\rasmans.dll
    2008-09-05 12:41:22 ----A---- C:\WINDOWS\system32\raschap.dll
    2008-09-05 12:41:22 ----A---- C:\WINDOWS\system32\rasadhlp.dll
    2008-09-05 12:41:22 ----A---- C:\WINDOWS\system32\racpldlg.dll
    2008-09-05 12:41:22 ----A---- C:\WINDOWS\system32\query.dll
    2008-09-05 12:41:22 ----A---- C:\WINDOWS\system32\quartz.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rdpwsx.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rdpsnd.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rdpdd.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rdpclip.exe
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rdchost.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rcp.exe
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rcimlby.exe
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rcbdyctl.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rastls.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rassapi.dll
    2008-09-05 12:41:21 ----A---- C:\WINDOWS\system32\rasppp.dll
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\rexec.exe
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\resutils.dll
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\remotepg.dll
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\regwizc.dll
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\regsvr32.exe
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\regsvc.dll
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\regapi.dll
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\reg.exe
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\rdshost.exe
    2008-09-05 12:41:20 ----A---- C:\WINDOWS\system32\rdsaddin.exe
    2008-09-05 12:41:19 ----A---- C:\WINDOWS\system32\rpcss.dll
    2008-09-05 12:41:19 ----A---- C:\WINDOWS\system32\rpcrt4.dll
    2008-09-05 12:41:19 ----A---- C:\WINDOWS\system32\riched20.dll
    2008-09-05 12:41:18 ----A---- C:\WINDOWS\system32\rtipxmib.dll
    2008-09-05 12:41:18 ----A---- C:\WINDOWS\system32\rtcshare.exe
    2008-09-05 12:41:18 ----A---- C:\WINDOWS\system32\rsvpsp.dll
    2008-09-05 12:41:18 ----A---- C:\WINDOWS\system32\rsmps.dll
    2008-09-05 12:41:18 ----A---- C:\WINDOWS\system32\rsh.exe
    2008-09-05 12:41:18 ----A---- C:\WINDOWS\system32\rsaenh.dll
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\scecli.dll
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\sccsccp.dll
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\scarddlg.dll
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\safrslv.dll
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\safrdm.dll
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\safrcdlg.dll
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\runonce.exe
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\rundll32.exe
    2008-09-05 12:41:17 ----A---- C:\WINDOWS\system32\rtutils.dll
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\secur32.dll
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\seclogon.dll
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\sdbinst.exe
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\scrrun.dll
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\scrobj.dll
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\sclgntfy.dll
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\schedsvc.dll
    2008-09-05 12:41:16 ----A---- C:\WINDOWS\system32\scesrv.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sfcfiles.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sfc_os.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sfc.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\setup.exe
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sethc.exe
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\servdeps.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sensapi.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sens.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sendmail.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\sendcmsg.dll
    2008-09-05 12:41:15 ----A---- C:\WINDOWS\system32\security.dll
    2008-09-05 12:41:13 ----A---- C:\WINDOWS\system32\shdoclc.dll
    2008-09-05 12:41:12 ----A---- C:\WINDOWS\system32\shdocvw.dll
    2008-09-05 12:41:11 ----A---- C:\WINDOWS\system32\shimgvw.dll
    2008-09-05 12:41:11 ----A---- C:\WINDOWS\system32\shimeng.dll
    2008-09-05 12:41:11 ----A---- C:\WINDOWS\system32\shgina.dll
    2008-09-05 12:41:11 ----A---- C:\WINDOWS\system32\shfolder.dll
    2008-09-05 12:41:11 ----A---- C:\WINDOWS\system32\shell32.dll
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\sigverif.exe
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\sigtab.dll
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\shutdown.exe
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\shsvcs.dll
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\shscrap.dll
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\shrpubw.exe
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\shmgrate.exe
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\shmedia.dll
    2008-09-05 12:41:10 ----A---- C:\WINDOWS\system32\shlwapi.dll
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\spider.exe
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\sort.exe
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\snmpsnap.dll
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\snmpapi.dll
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\sndrec32.exe
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\smlogsvc.exe
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\smlogcfg.dll
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\slbiop.dll
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\slayerxp.dll
    2008-09-05 12:41:09 ----A---- C:\WINDOWS\system32\skeys.exe
    2008-09-05 12:41:08 ----A---- C:\WINDOWS\system32\srsvc.dll
    2008-09-05 12:41:08 ----A---- C:\WINDOWS\system32\srrstr.dll
    2008-09-05 12:41:08 ----A---- C:\WINDOWS\system32\srclient.dll
    2008-09-05 12:41:08 ----A---- C:\WINDOWS\system32\sqlunirl.dll
    2008-09-05 12:41:08 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
    2008-09-05 12:41:08 ----A---- C:\WINDOWS\system32\spoolsv.exe
    2008-09-05 12:41:08 ----A---- C:\WINDOWS\system32\spoolss.dll
    2008-09-05 12:41:07 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
    2008-09-05 12:41:07 ----A---- C:\WINDOWS\system32\ssdpapi.dll
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\svchost.exe
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\strmdll.dll
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\storprop.dll
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\stobject.dll
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\stimon.exe
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\sti_ci.dll
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\sti.dll
    2008-09-05 12:41:06 ----A---- C:\WINDOWS\system32\stclient.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\tcpmib.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\tapisrv.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\tapi32.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\tapi3.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\t2embed.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\sysocmgr.exe
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\syncui.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\synceng.dll
    2008-09-05 12:41:05 ----A---- C:\WINDOWS\system32\sxs.dll
    2008-09-05 12:41:04 ----A---- C:\WINDOWS\system32\tourstart.exe
    2008-09-05 12:41:04 ----A---- C:\WINDOWS\system32\themeui.dll
    2008-09-05 12:41:04 ----A---- C:\WINDOWS\system32\termsrv.dll
    2008-09-05 12:41:04 ----A---- C:\WINDOWS\system32\termmgr.dll
    2008-09-05 12:41:04 ----A---- C:\WINDOWS\system32\telnet.exe
    2008-09-05 12:41:04 ----A---- C:\WINDOWS\system32\tcpmon.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\umandlg.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\udhisapi.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\txflog.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\tsddd.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\trkwks.dll
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\tree.com
    2008-09-05 12:41:03 ----A---- C:\WINDOWS\system32\tracert.exe
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\usbmon.dll
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\ups.exe
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\upnpui.dll
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\upnphost.dll
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\upnpcont.exe
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\upnp.dll
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\uniplat.dll
    2008-09-05 12:41:02 ----A---- C:\WINDOWS\system32\unimdmat.dll
    2008-09-05 12:41:01 ----A---- C:\WINDOWS\system32\uxtheme.dll
    2008-09-05 12:41:01 ----A---- C:\WINDOWS\system32\utilman.exe
    2008-09-05 12:41:01 ----A---- C:\WINDOWS\system32\usp10.dll
    2008-09-05 12:41:01 ----A---- C:\WINDOWS\system32\userenv.dll
    2008-09-05 12:41:01 ----A---- C:\WINDOWS\system32\user32.dll
    2008-09-05 12:41:01 ----A---- C:\WINDOWS\system32\usbui.dll
    2008-09-05 12:41:00 ----A---- C:\WINDOWS\system32\vssapi.dll
    2008-09-05 12:41:00 ----A---- C:\WINDOWS\system32\version.dll
    2008-09-05 12:41:00 ----A---- C:\WINDOWS\system32\verifier.dll
    2008-09-05 12:41:00 ----A---- C:\WINDOWS\system32\vdmredir.dll
    2008-09-05 12:41:00 ----A---- C:\WINDOWS\system32\vdmdbg.dll
    2008-09-05 12:41:00 ----A---- C:\WINDOWS\system32\vbscript.dll
    2008-09-05 12:41:00 ----A---- C:\WINDOWS\system32\vbajet32.dll
    2008-09-05 12:40:59 ----A---- C:\WINDOWS\system32\webclnt.dll
    2008-09-05 12:40:59 ----A---- C:\WINDOWS\system32\wdigest.dll
    2008-09-05 12:40:59 ----A---- C:\WINDOWS\system32\wavemsp.dll
    2008-09-05 12:40:59 ----A---- C:\WINDOWS\system32\w32time.dll
    2008-09-05 12:40:59 ----A---- C:\WINDOWS\system32\vssvc.exe
    2008-09-05 12:40:58 ----A---- C:\WINDOWS\system32\wiadefui.dll
    2008-09-05 12:40:58 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
    2008-09-05 12:40:58 ----A---- C:\WINDOWS\system32\wextract.exe
    2008-09-05 12:40:58 ----A---- C:\WINDOWS\system32\webvw.dll
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\winmm.dll
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\winlogon.exe
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\winipsec.dll
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\wiavideo.dll
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\wiashext.dll
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\wiaservc.dll
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\wiascr.dll
    2008-09-05 12:40:57 ----A---- C:\WINDOWS\system32\wiadss.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\wmadmoe.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\wmadmod.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\wlnotify.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\wldap32.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\winver.exe
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\wintrust.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\winsta.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\winsrv.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\winscard.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\winrnr.dll
    2008-09-05 12:40:56 ----A---- C:\WINDOWS\system32\winntbbu.dll
    2008-09-05 12:40:55 ----A---- C:\WINDOWS\system32\wmi.dll
    2008-09-05 12:40:55 ----A---- C:\WINDOWS\system32\wmdmps.dll
    2008-09-05 12:40:55 ----A---- C:\WINDOWS\system32\wmdmlog.dll
    2008-09-05 12:40:55 ----A---- C:\WINDOWS\system32\wmasf.dll
    2008-09-05 12:40:54 ----A---- C:\WINDOWS\system32\wmpshell.dll
    2008-09-05 12:40:54 ----A---- C:\WINDOWS\system32\wmploc.dll
    2008-09-05 12:40:54 ----A---- C:\WINDOWS\system32\wmpcore.dll
    2008-09-05 12:40:54 ----A---- C:\WINDOWS\system32\wmpcd.dll
    2008-09-05 12:40:54 ----A---- C:\WINDOWS\system32\wmnetmgr.dll
    2008-09-05 12:40:53 ----A---- C:\WINDOWS\system32\wmvdmod.dll
    2008-09-05 12:40:53 ----A---- C:\WINDOWS\system32\wmvcore.dll
    2008-09-05 12:40:53 ----A---- C:\WINDOWS\system32\wmstream.dll
    2008-09-05 12:40:53 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
    2008-09-05 12:40:53 ----A---- C:\WINDOWS\system32\wmsdmod.dll
    2008-09-05 12:40:53 ----A---- C:\WINDOWS\system32\wmpui.dll
    2008-09-05 12:40:52 ----A---- C:\WINDOWS\system32\wshcon.dll
    2008-09-05 12:40:52 ----A---- C:\WINDOWS\system32\wscript.exe
    2008-09-05 12:40:52 ----A---- C:\WINDOWS\system32\ws2help.dll
    2008-09-05 12:40:52 ----A---- C:\WINDOWS\system32\ws2_32.dll
    2008-09-05 12:40:52 ----A---- C:\WINDOWS\system32\wpnpinst.exe
    2008-09-05 12:40:52 ----A---- C:\WINDOWS\system32\wpabaln.exe
    2008-09-05 12:40:52 ----A---- C:\WINDOWS\system32\wow32.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wzcsapi.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wzcdlg.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wtsapi32.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wstdecod.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wsock32.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wsnmp32.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wshtcpip.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wshrm.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wship6.dll
    2008-09-05 12:40:51 ----A---- C:\WINDOWS\system32\wshext.dll
    2008-09-05 12:40:50 ----A---- C:\WINDOWS\system32\zipfldr.dll
    2008-09-05 12:40:50 ----A---- C:\WINDOWS\system32\xolehlp.dll
    2008-09-05 12:40:50 ----A---- C:\WINDOWS\system32\xcopy.exe
    2008-09-05 12:40:50 ----A---- C:\WINDOWS\system32\xactsrv.dll
    2008-09-05 12:40:50 ----A---- C:\WINDOWS\system32\wzcsvc.dll
    2008-09-05 12:40:48 ----A---- C:\WINDOWS\system32\cmd.exe
    2008-09-05 12:40:48 ----A---- C:\WINDOWS\system32\cacls.exe
    2008-09-05 12:40:48 ----A---- C:\WINDOWS\system32\autoconv.exe
    2008-09-05 12:40:48 ----A---- C:\WINDOWS\system32\autochk.exe
    2008-09-05 12:40:48 ----A---- C:\WINDOWS\system32\advapi32.dll
    2008-09-05 12:40:47 ----A---- C:\WINDOWS\system32\imagehlp.dll
    2008-09-05 12:40:47 ----A---- C:\WINDOWS\system32\ftp.exe
    2008-09-05 12:40:47 ----A---- C:\WINDOWS\system32\format.com
    2008-09-05 12:40:47 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
    2008-09-05 12:40:47 ----A---- C:\WINDOWS\system32\csrsrv.dll
    2008-09-05 12:40:47 ----A---- C:\WINDOWS\system32\comdlg32.dll
    2008-09-05 12:40:47 ----A---- C:\WINDOWS\system32\comctl32.dll
    2008-09-05 12:40:46 ----A---- C:\WINDOWS\system32\locator.exe
    2008-09-05 12:40:46 ----A---- C:\WINDOWS\system32\localspl.dll
    2008-09-05 12:40:46 ----A---- C:\WINDOWS\system32\lmhsvc.dll
    2008-09-05 12:40:46 ----A---- C:\WINDOWS\system32\kernel32.dll
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\ntprint.dll
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\ntlsapi.dll
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\ntdll.dll
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\nslookup.exe
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\msv1_0.dll
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\msgsvc.dll
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\mgmtapi.dll
    2008-09-05 12:40:45 ----A---- C:\WINDOWS\system32\lsasrv.dll
    2008-09-05 12:40:44 ----A---- C:\WINDOWS\system32\printui.dll
    2008-09-05 12:40:44 ----A---- C:\WINDOWS\system32\perfctrs.dll
    2008-09-05 12:40:44 ----A---- C:\WINDOWS\system32\olecnv32.dll
    2008-09-05 12:40:44 ----A---- C:\WINDOWS\system32\oleaut32.dll
    2008-09-05 12:40:44 ----A---- C:\WINDOWS\system32\nwprovau.dll
    2008-09-05 12:40:44 ----A---- C:\WINDOWS\system32\ntvdm.exe
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\savedump.exe
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\samsrv.dll
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\samlib.dll
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\rshx32.dll
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\rastapi.dll
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\rasman.dll
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\rasdlg.dll
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\rasauto.dll
    2008-09-05 12:40:43 ----A---- C:\WINDOWS\system32\rasapi32.dll
    2008-09-05 12:40:42 ----A---- C:\WINDOWS\system32\srvsvc.dll
    2008-09-05 12:40:42 ----A---- C:\WINDOWS\system32\smss.exe
    2008-09-05 12:40:42 ----A---- C:\WINDOWS\system32\setupapi.dll
    2008-09-05 12:40:42 ----A---- C:\WINDOWS\system32\sessmgr.exe
    2008-09-05 12:40:42 ----A---- C:\WINDOWS\system32\services.exe
    2008-09-05 12:40:42 ----A---- C:\WINDOWS\system32\schannel.dll
    2008-09-05 12:40:42 ----A---- C:\WINDOWS\system32\scardsvr.exe
    2008-09-05 12:40:41 ----A---- C:\WINDOWS\system32\userinit.exe
    2008-09-05 12:40:41 ----A---- C:\WINDOWS\system32\untfs.dll
    2008-09-05 12:40:41 ----A---- C:\WINDOWS\system32\ulib.dll
    2008-09-05 12:40:41 ----A---- C:\WINDOWS\system32\tcpmonui.dll
    2008-09-05 12:40:41 ----A---- C:\WINDOWS\system32\syssetup.dll
    2008-09-05 12:40:40 ----A---- C:\WINDOWS\system32\wkssvc.dll
    2008-09-05 12:40:40 ----A---- C:\WINDOWS\system32\win32spl.dll
    2008-09-05 12:40:24 ----A---- C:\WINDOWS\system32\hal.dll
    2008-09-05 12:40:23 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe
    2008-09-05 12:40:22 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
    2008-08-30 17:55:18 ----A---- C:\WINDOWS\002988_.tmp
    2008-08-21 19:41:15 ----D---- C:\Documents and Settings\joyce hanquinioux\Application Data\Oberon Media
    2008-08-21 19:36:08 ----D---- C:\Program Files\Oberon Media
    2008-08-21 19:35:25 ----D---- C:\Program Files\FREE Games Extras
    2008-08-16 19:26:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
    2008-08-16 19:24:16 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
    2008-08-16 19:23:35 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
    2008-08-16 19:22:31 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
    2008-08-16 19:12:04 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
    2008-08-16 19:10:24 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
    2008-08-16 19:03:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
    2008-08-05 17:26:07 ----D---- C:\Program Files\Sun
    2008-08-05 17:25:26 ----A---- C:\WINDOWS\system32\javaws.exe
    2008-08-05 17:25:26 ----A---- C:\WINDOWS\system32\javaw.exe
    2008-08-05 17:25:25 ----A---- C:\WINDOWS\system32\java.exe
    2008-07-18 18:39:55 ----D---- C:\Program Files\Microsoft Silverlight
     
  6. 2008/10/12
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    ======List of files/folders modified in the last 3 months======

    2008-10-12 18:20:00 ----D---- C:\WINDOWS\system32\CatRoot2
    2008-10-12 15:55:43 ----A---- C:\WINDOWS\ModemLog_Conexant D850 56K V.9x DFVc Modem.txt
    2008-10-12 15:55:12 ----D---- C:\WINDOWS\TEMP
    2008-10-12 15:30:27 ----A---- C:\WINDOWS\SchedLgU.Txt
    2008-10-11 23:13:17 ----A---- C:\WINDOWS\ntbtlog.txt
    2008-10-11 23:12:53 ----D---- C:\WINDOWS
    2008-10-11 21:42:55 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
    2008-10-11 21:42:21 ----D---- C:\WINDOWS\system32\drivers
    2008-10-11 21:38:42 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
    2008-10-11 19:52:57 ----D---- C:\WINDOWS\security
    2008-10-11 14:21:54 ----A---- C:\WINDOWS\dellstat.ini
    2008-09-13 09:11:58 ----SHD---- C:\WINDOWS\Installer
    2008-09-13 09:11:58 ----D---- C:\Config.Msi
    2008-09-10 20:20:09 ----HD---- C:\WINDOWS\inf
    2008-09-10 20:19:55 ----D---- C:\WINDOWS\WinSxS
    2008-09-10 20:19:53 ----D---- C:\WINDOWS\system32
    2008-09-10 20:19:15 ----HD---- C:\WINDOWS\$hf_mig$
    2008-09-05 20:41:06 ----D---- C:\Program Files\Messenger
    2008-09-05 20:41:04 ----D---- C:\WINDOWS\system32\CatRoot
    2008-09-05 19:23:56 ----D---- C:\WINDOWS\system32\CatRoot_bak
    2008-09-05 16:08:26 ----D---- C:\WINDOWS\system32\wbem
    2008-09-05 16:08:26 ----D---- C:\WINDOWS\AppPatch
    2008-09-05 16:08:18 ----RSD---- C:\WINDOWS\Fonts
    2008-09-05 15:57:41 ----RSHD---- C:\WINDOWS\system32\dllcache
    2008-09-05 15:57:34 ----D---- C:\Program Files\Windows Media Player
    2008-09-05 15:57:21 ----D---- C:\WINDOWS\system32\usmt
    2008-09-05 15:57:17 ----D---- C:\WINDOWS\system32\Setup
    2008-09-05 15:57:13 ----D---- C:\WINDOWS\system32\Restore
    2008-09-05 15:57:10 ----D---- C:\WINDOWS\system32\oobe
    2008-09-05 15:57:08 ----D---- C:\WINDOWS\system32\npp
    2008-09-05 15:55:07 ----D---- C:\WINDOWS\system32\Com
    2008-09-05 15:50:25 ----D---- C:\WINDOWS\system
    2008-09-05 15:50:24 ----D---- C:\WINDOWS\srchasst
    2008-09-05 15:50:23 ----D---- C:\WINDOWS\PeerNet
    2008-09-05 15:50:20 ----D---- C:\WINDOWS\network diagnostic
    2008-09-05 15:50:20 ----D---- C:\WINDOWS\mui
    2008-09-05 15:50:18 ----D---- C:\WINDOWS\msagent
    2008-09-05 15:49:56 ----D---- C:\WINDOWS\ime
    2008-09-05 15:49:55 ----D---- C:\WINDOWS\Help
    2008-09-05 15:49:43 ----D---- C:\Program Files\Windows NT
    2008-09-05 15:49:39 ----D---- C:\Program Files\Outlook Express
    2008-09-05 15:49:34 ----D---- C:\Program Files\NetMeeting
    2008-09-05 15:49:30 ----D---- C:\Program Files\Movie Maker
    2008-09-05 15:49:11 ----D---- C:\Program Files\Common Files\System
    2008-09-05 15:47:31 ----SD---- C:\WINDOWS\Tasks
    2008-09-05 15:35:10 ----D---- C:\WINDOWS\system32\scripting
    2008-09-05 15:35:09 ----D---- C:\WINDOWS\system32\inetsrv
    2008-09-05 15:35:09 ----D---- C:\WINDOWS\system32\en-US
    2008-09-05 15:35:09 ----D---- C:\WINDOWS\system32\en
    2008-09-05 15:35:05 ----D---- C:\WINDOWS\system32\bits
    2008-09-05 15:34:05 ----D---- C:\WINDOWS\l2schemas
    2008-09-05 13:16:49 ----AC---- C:\WINDOWS\setuplog.txt
    2008-09-05 12:46:20 ----A---- C:\WINDOWS\imsins.BAK
    2008-09-05 12:46:10 ----D---- C:\WINDOWS\system32\ReinstallBackups
    2008-09-05 12:39:38 ----D---- C:\WINDOWS\ehome
    2008-08-30 18:07:28 ----SD---- C:\WINDOWS\Downloaded Program Files
    2008-08-26 21:28:12 ----A---- C:\WINDOWS\system32\MRT.exe
    2008-08-21 19:36:08 ----RD---- C:\Program Files
    2008-08-16 19:07:30 ----D---- C:\Program Files\Internet Explorer
    2008-08-16 19:06:24 ----D---- C:\WINDOWS\ie7updates
    2008-08-16 18:55:05 ----A---- C:\WINDOWS\win.ini
    2008-08-05 19:25:32 ----D---- C:\Documents and Settings\joyce hanquinioux\Application Data\Adobe
    2008-08-05 18:47:26 ----D---- C:\WINDOWS\system32\Macromed
    2008-08-05 17:25:20 ----D---- C:\Program Files\Java
    2008-07-18 22:10:48 ----A---- C:\WINDOWS\system32\cdm.dll
    2008-07-18 22:10:42 ----A---- C:\WINDOWS\system32\wuauclt.exe
    2008-07-18 22:10:40 ----A---- C:\WINDOWS\system32\wups2.dll
    2008-07-18 22:10:24 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
    2008-07-18 22:10:20 ----A---- C:\WINDOWS\system32\wups.dll
    2008-07-18 22:09:46 ----A---- C:\WINDOWS\system32\wucltui.dll
    2008-07-18 22:09:44 ----A---- C:\WINDOWS\system32\wuweb.dll
    2008-07-18 22:09:44 ----A---- C:\WINDOWS\system32\wuapi.dll
    2008-07-18 22:09:42 ----A---- C:\WINDOWS\system32\wuaueng.dll
    2008-07-18 22:09:42 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
    2008-07-18 22:08:34 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
    2008-07-18 22:07:34 ----A---- C:\WINDOWS\system32\mucltui.dll
    2008-07-18 22:07:32 ----A---- C:\WINDOWS\system32\muweb.dll
    2008-07-18 22:07:32 ----A---- C:\WINDOWS\system32\mucltui.dll.mui

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-05-16 26944]
    R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 78416]
    R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-05-16 42912]
    R1 cmdGuard;COMODO Firewall Pro Sandbox Driver; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [2008-06-28 87056]
    R1 cmdHlp;COMODO Firewall Pro Helper Driver; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [2008-06-28 24208]
    R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys []
    R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 36096]
    R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
    R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 20560]
    R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-05-16 94416]
    R2 dsunidrv;DellSupport UniDriver; C:\WINDOWS\system32\DRIVERS\dsunidrv.sys [2007-02-25 5376]
    R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2003-04-09 11043]
    R2 tmcomm;tmcomm; \??\C:\WINDOWS\system32\drivers\tmcomm.sys []
    R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-05-16 23152]
    R3 DSproct;DSproct; \??\C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys []
    R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2004-02-10 154112]
    R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
    R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
    R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2003-11-17 1042432]
    R3 HSFHWBS2;HSFHWBS2; C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys [2003-11-17 212224]
    R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-09-20 1302332]
    R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
    R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
    R3 senfilt;senfilt; C:\WINDOWS\system32\drivers\senfilt.sys [2004-09-17 732928]
    R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2005-01-27 260352]
    R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-04 26624]
    R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
    R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
    R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
    R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2003-11-17 680704]
    S1 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2004-08-03 31744]
    S3 bvrp_pci;bvrp_pci; C:\WINDOWS\system32\drivers\bvrp_pci.sys []
    S3 catchme;catchme; \??\C:\DOCUME~1\JOYCEH~1\LOCALS~1\Temp\catchme.sys []
    S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
    S3 SDDMI2;SDDMI2; C:\WINDOWS\system32\drivers\SDDMI2.sys []
    S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ss_bus.sys [2005-08-30 58320]
    S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ss_mdfl.sys [2005-08-30 8304]
    S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ss_mdm.sys [2005-08-30 94000]
    S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
    S3 SymIMMP;SymIMMP; C:\WINDOWS\system32\DRIVERS\SymIM.sys []
    S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
    S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
    S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\drivers\wanatw.sys []
    S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2004-08-03 42368]
    S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2004-08-03 44928]
    S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2004-08-03 42752]
    S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2004-08-03 43008]
    S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
    S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2004-08-03 41088]
    S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2004-08-03 42240]
    S4 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-04 12032]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2007-09-06 110592]
    R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-05-16 17272]
    R2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe [2008-02-10 238968]
    R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-05-16 144760]
    R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2007-07-24 229376]
    R2 cmdAgent;COMODO Firewall Pro Helper Service; C:\Program Files\COMODO\Firewall\cmdagent.exe [2008-06-28 519936]
    R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2004-03-04 311296]
    R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-02-19 504104]
    S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2004-08-04 267776]
    S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
    S3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-05-16 247160]
    S3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-05-16 349560]
    S3 DSBrokerService;DSBrokerService; C:\Program Files\DellSupport\brkrsvc.exe [2007-03-07 76848]
    S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-06-24 138168]
    S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
    S3 LiveUpdate;LiveUpdate; C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE [2008-02-10 3220856]
    S3 NetSvc;Intel NCS NetService; C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe [2003-12-17 143360]
    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
    S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]

    -----------------EOF----------------- hope these are the right logs thanks again
     
  7. 2008/10/12
    wildfire

    wildfire Getting Old

    Joined:
    2008/04/21
    Messages:
    4,649
    Likes Received:
    124
    What makes you think so?
     
  8. 2008/10/13
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    swithched computer on it went straight to a data screan which said machine dirty CHKOSK checking files. It then deleted some files, then restored some orphan files. ran avast which found one suspicious item not sure if it got rid of it. thanks. joyce
     
  9. 2008/10/13
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    have run a malewarebytes full scan which found trojan vundo. removed this but do I need to do anything else. malMalwarebytes' Anti-Malware 1.28
    Database version: 1261
    Windows 5.1.2600 Service Pack 2

    13/10/2008 18:17:49
    mbam-log-2008-10-13 (18-17-49).txt

    Scan type: Full Scan (C:\|)
    Objects scanned: 143675
    Time elapsed: 5 hour(s), 36 minute(s), 51 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 1
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)
    thanks
     
  10. 2008/10/13
    wildfire

    wildfire Getting Old

    Joined:
    2008/04/21
    Messages:
    4,649
    Likes Received:
    124
    I'd say you were safe, the initial scans removed the trojan but left traces in the registry. That has since been removed by MBAM.

    Best wait for confirmation from more experienced users though.
     
  11. 2008/10/15
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Hi Joyce,

    Your logs appear clean. The error was likely notifying you of some sort of file or file structure inconsistency, which could be the result of many things - from something as simple as a program not closing itself properly, to hardware failure, and anything in between. Since diskcheck has already run, I'd recommend you also do a diskcleanup and defrag. If you continue to have problems, some further diagnosis may be in order.
     
  12. 2008/10/16
    hanqba1

    hanqba1 Inactive Thread Starter

    Joined:
    2008/06/21
    Messages:
    93
    Likes Received:
    0
    will do thanks for your time
     
  13. 2008/10/16
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    You're quite welcome. :)
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.