Bullguard Antivirus Forum Download A Free Copy Of Bullguard Antivirus Software
Free Antivirus Forum - Learn about antivirus, firewalls and personal security Free Antivirus Forum - Learn about antivirus, firewalls and personal security
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
How to remove trojan
   
BullGuard Antivirus Forum > General Security > Updates and Patches > How to remove trojan  
Forum Quick Jump
 
New Topic Post reply to : How to remove trojan Printable version of : How to remove trojan
[ << Previous Thread | Next Thread >> ]

Junaid Khan
New Member


Date Joined Mar 2008
Total Posts : 9
 
   Posted 3-18-2008 2:11 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
hello my window is infected and i dont know how to resolve the problem i have downloaded some antivirus but they are use less i then installed window two to three times but still my system is infected i dont know which software is good for this problem
 
my system is a victum of TROJANHORSE.ONLINEGAMES.AGTY
tell me what to do and i am new to this forum i dont know where to post if i have posted in wrong section then tell me too.
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13085
 
   Posted 3-18-2008 4:23 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
Hello cool
 
 
 
Click here - ->>  Before posting a log 
 
 
 After You have run the scan tools -
 
Reboot normally
 
Post Hijackthis log along with SuperAntiSpyware log, , C: combofix TXT  in this topic


Do NOT post your problem in someone elses thread.

Back to Top
 

Junaid Khan
New Member


Date Joined Mar 2008
Total Posts : 9
 
   Posted 3-31-2008 4:14 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
SORRY I HAVE POSTED IT IN TROJAN REMOVAL HELP I AM SO SORRY

HERE ARE THE POST
1- COMBO FIX
ComboFix 08-03-18.1 - ADMIN 2008-03-19 18:44:05.2 - FAT32x86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.139 [GMT -8:00]
Running from: C:\Documents and Settings\ADMIN\Desktop\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((( Files Created from 2008-02-20 to 2008-03-20 )))))))))))))))))))))))))))))))
.
2008-03-19 17:56 . 2008-03-19 17:56 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2008-03-19 17:56 . 2008-03-19 17:56 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-03-19 17:56 . 2008-03-19 17:56 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\SUPERAntiSpyware.com
2008-03-19 17:56 . 2008-03-19 17:57 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
2008-03-19 17:47 . 2008-03-19 17:47 <DIR> d-------- C:\Program Files\CCleaner
2008-03-19 17:47 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-03-19 17:47 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
2008-03-19 17:47 . 2007-07-30 19:19 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-03-19 17:13 . 2008-03-19 17:13 99,735 -r-hs---- C:\h6o0re.cmd
2008-03-19 13:08 . 2008-03-16 01:45 101,140 -r-hs---- C:\3o.exe
2008-03-18 18:27 . 2008-03-18 18:27 <DIR> d--hs---- C:\FOUND.000
2008-03-17 23:15 . 2008-03-17 23:15 <DIR> d--h----- C:\Program Files\Zenographics
2008-03-17 23:15 . 2008-03-17 23:15 <DIR> d-------- C:\Program Files\Hewlett-Packard
2008-03-17 23:15 . 2006-01-30 08:00 442,368 -ra------ C:\WINDOWS\system32\zshp1018.exe
2008-03-17 23:15 . 2006-01-30 08:00 143,360 -ra------ C:\WINDOWS\apptune1018.exe
2008-03-17 23:15 . 2006-01-30 08:00 129,092 -ra------ C:\WINDOWS\system32\hp1018.img
2008-03-17 23:15 . 2006-01-30 08:00 106,496 -ra------ C:\WINDOWS\system32\vshp1018.dll
2008-03-17 23:15 . 2006-01-30 08:00 102,400 -ra------ C:\WINDOWS\system32\zlhp1018.dll
2008-03-17 23:15 . 2006-01-30 08:00 86,016 -ra------ C:\WINDOWS\system32\ZSPOOL.DLL
2008-03-17 23:15 . 2006-01-30 08:00 28,672 -ra------ C:\WINDOWS\system32\zlm.dll
2008-03-17 23:15 . 2006-01-30 08:00 28,672 -ra------ C:\WINDOWS\system32\IMF32.DLL
2008-03-17 23:15 . 2006-01-30 08:00 24,576 -ra------ C:\WINDOWS\system32\ZTAG32.DLL
2008-03-17 23:15 . 2006-01-30 08:00 7,280 -ra------ C:\WINDOWS\system32\ZSHP1018.HLP
2008-03-17 23:09 . 2008-03-17 23:09 <DIR> d-------- C:\Documents and Settings\ADMIN\WINDOWS
2008-03-17 18:14 . 2008-03-17 18:14 268 --ah----- C:\sqmdata01.sqm
2008-03-17 18:14 . 2008-03-17 18:14 244 --ah----- C:\sqmnoopt02.sqm
2008-03-17 18:14 . 2008-03-17 18:14 244 --ah----- C:\sqmnoopt01.sqm
2008-03-17 18:14 . 2008-03-17 18:14 232 --ah----- C:\sqmdata02.sqm
2008-03-17 18:13 . 2008-03-17 18:13 <DIR> d-------- C:\Program Files\Windows Live
2008-03-17 18:13 . 2008-03-17 18:13 <DIR> d--hs---- C:\Program Files\Common Files\WindowsLiveInstaller
2008-03-17 18:13 . 2008-03-17 18:13 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
2008-03-17 18:08 . 2008-03-17 18:08 <DIR> d-------- C:\Documents and Settings\ADMIN\Contacts
2008-03-17 18:05 . 2008-03-17 18:05 268 --ah----- C:\sqmdata00.sqm
2008-03-17 18:05 . 2008-03-17 18:05 244 --ah----- C:\sqmnoopt00.sqm
2008-03-17 17:34 . 2008-03-17 17:34 <DIR> d-------- C:\WINDOWS\system32\DRVSTORE
2008-03-17 12:00 . 2008-03-17 12:00 <DIR> d-------- C:\Program Files\Common Files\Adobe
2008-03-17 12:00 . 2008-03-17 12:00 <DIR> dr-h----- C:\$VAULT$.AVG
2008-03-17 11:58 . 2004-08-03 23:08 26,496 --a------ C:\WINDOWS\system32\dllcache\usbstor.sys
2008-03-17 11:52 . 2008-03-17 11:52 <DIR> d-------- C:\Downloads
2008-03-17 11:33 . 2003-06-18 17:31 17,920 --a------ C:\WINDOWS\system32\mdimon.dll
2008-03-17 11:33 . 2008-03-17 11:33 376 --a------ C:\WINDOWS\ODBC.INI
2008-03-17 11:32 . 2008-03-17 11:32 <DIR> d-------- C:\Program Files\Microsoft.NET
2008-03-17 11:32 . 2008-03-17 11:32 <DIR> d-------- C:\Program Files\Common Files\L&H
2008-03-17 11:31 . 2008-03-17 11:31 <DIR> d-------- C:\Program Files\Microsoft Works
2008-03-17 11:31 . 2008-03-17 11:31 <DIR> d-------- C:\Program Files\Microsoft ActiveSync
2008-03-17 11:30 . 2008-03-17 11:30 <DIR> d-------- C:\WINDOWS\SHELLNEW
2008-03-16 14:42 . 2008-03-16 14:42 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2008-03-16 14:42 . 2005-02-24 19:35 22,752 --a------ C:\WINDOWS\system32\spupdsvc.exe
2008-03-16 04:00 . 2008-03-16 04:00 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\DivX
2008-03-16 03:58 . 2008-03-16 03:58 <DIR> d-------- C:\Program Files\Yahoo!
2008-03-16 03:58 . 2008-03-16 03:58 <DIR> d-------- C:\Program Files\DivX
2008-03-16 03:58 . 2008-03-16 03:58 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\Yahoo!
2008-03-16 03:36 . 2008-03-16 03:36 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\vlc
2008-03-16 03:35 . 2008-03-16 03:35 <DIR> d-------- C:\Program Files\VideoLAN
2008-03-16 03:06 . 2008-03-16 03:06 <DIR> d---s---- C:\Documents and Settings\ADMIN\UserData
2008-03-16 02:23 . 2008-03-16 02:23 <DIR> d-------- C:\Program Files\Free Download Manager
2008-03-16 02:23 . 2008-03-16 02:23 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\Free Download Manager
2008-03-16 02:23 . 2008-03-16 02:23 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\FreeDownloadManager.ORG
2008-03-16 02:17 . 2008-03-16 02:17 <DIR> d-------- C:\WINDOWS\Crystal
2008-03-16 02:17 . 2008-03-16 02:17 <DIR> d-------- C:\Program Files\PRAL
2008-03-16 02:16 . 1998-10-01 15:22 299,520 --a------ C:\WINDOWS\uninst.exe
2008-03-16 02:04 . 2008-03-16 02:04 <DIR> d--hs---- C:\Recycled
2008-03-16 02:02 . 2008-03-16 02:02 <DIR> d-------- C:\Program Files\Common Files\xing shared
2008-03-16 02:01 . 2008-03-16 02:01 <DIR> d-------- C:\Program Files\Real
2008-03-16 02:01 . 2008-03-16 02:01 <DIR> d-------- C:\Program Files\Common Files\Real
2008-03-16 01:57 . 2008-03-16 01:57 <DIR> d-------- C:\Program Files\VIA
2008-03-16 01:57 . 2004-07-06 06:45 60,672 -ra------ C:\WINDOWS\system32\drivers\viamraid.sys
2008-03-16 01:53 . 2008-03-16 01:53 <DIR> d-------- C:\Program Files\Realtek Sound Manager
2008-03-16 01:53 . 2008-03-16 01:53 <DIR> d-------- C:\Program Files\AvRack
2008-03-16 01:53 . 2005-01-24 04:32 17,592,320 --a------ C:\WINDOWS\system32\ALSNDMGR.CPL
2008-03-16 01:53 . 2005-01-24 04:22 9,294,336 --a------ C:\WINDOWS\system32\RTLCPL.EXE
2008-03-16 01:53 . 2005-01-28 01:48 2,310,272 --a------ C:\WINDOWS\system32\drivers\ALCXWDM.SYS
2008-03-16 01:53 . 2004-11-05 00:29 208,896 --------- C:\WINDOWS\alcupd.exe
2008-03-16 01:53 . 2004-09-06 22:23 156,672 --a------ C:\WINDOWS\system32\RtlCPAPI.dll
2008-03-16 01:53 . 2002-02-04 21:54 141,016 --a------ C:\WINDOWS\system32\ALSNDMGR.WAV
2008-03-16 01:53 . 2004-09-01 04:04 139,264 --------- C:\WINDOWS\alcrmv.exe
2008-03-16 01:53 . 2005-01-20 04:04 77,824 --a------ C:\WINDOWS\SOUNDMAN.EXE
2008-03-16 01:53 . 2004-10-26 23:47 40,960 --------- C:\WINDOWS\system32\ChCfg.exe
2008-03-16 01:53 . 2001-07-05 08:19 164 --------- C:\WINDOWS\avrack.ini
2008-03-16 01:49 . 2008-03-16 01:49 <DIR> d-------- C:\Program Files\S3
2008-03-16 01:46 . 2008-03-16 01:46 <DIR> d-------- C:\Program Files\On-line Help Console
2008-03-16 01:46 . 2008-03-16 01:46 <DIR> d--h----- C:\Program Files\InstallShield Installation Information
2008-03-16 01:46 . 2004-10-05 16:54 306,688 --a------ C:\WINDOWS\IsUninst.exe
2008-03-16 01:45 . 2008-03-16 01:45 <DIR> d-------- C:\WINDOWS\system32\Tools
2008-03-16 01:45 . 2008-03-16 01:45 <DIR> d-------- C:\Program Files\Common Files\InstallShield
2008-03-16 01:45 . 2008-03-14 16:19 100,791 -r-hs---- C:\v.cmd
2008-03-16 01:45 . 2004-12-28 21:57 17,505 -ra------ C:\DBI.EXE
2008-03-16 01:20 . 2008-03-16 01:20 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\Acronis
2008-03-16 01:20 . 2008-03-16 01:20 43,648 --a------ C:\WINDOWS\system32\drivers\pamondrv.sys
2008-03-16 01:19 . 2008-03-16 01:19 <DIR> d-------- C:\Program Files\Common Files\Acronis
2008-03-16 01:19 . 2008-03-16 01:19 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Acronis
2008-03-16 01:19 . 2008-03-16 01:19 82,464 --a------ C:\WINDOWS\system32\drivers\snapman.sys
2008-03-16 01:19 . 2008-03-16 01:19 77,824 --a------ C:\WINDOWS\system32\setupnt.dll
2008-03-16 01:18 . 2008-03-16 01:18 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\AVG7
2008-03-16 01:18 . 2008-03-16 01:18 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\AVG7
2008-03-16 01:18 . 2008-03-16 01:18 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
2008-03-16 01:18 . 2008-03-16 01:18 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
2008-03-16 01:18 . 2008-03-16 01:18 499,712 --a------ C:\WINDOWS\system32\msvcp71.dll
2008-03-16 01:18 . 2008-03-16 01:18 348,160 --a------ C:\WINDOWS\system32\msvcr71.dll
2008-03-16 01:16 . 2006-06-27 05:40 12,800 --------- C:\WINDOWS\system32\dllcache\WgaTray.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-16 23:29 --------- d-----w C:\Program Files\microsoft frontpage
2008-01-04 21:59 524,288 ----a-w C:\WINDOWS\system32\DivXsm.exe
2008-01-04 21:58 3,596,288 ----a-w C:\WINDOWS\system32\qt-dx331.dll
2008-01-04 21:58 200,704 ----a-w C:\WINDOWS\system32\ssldivx.dll
2008-01-04 21:58 129,784 ------w C:\WINDOWS\system32\pxafs.dll
2008-01-04 21:58 120,056 ------w C:\WINDOWS\system32\pxcpyi64.exe
2008-01-04 21:58 118,520 ------w C:\WINDOWS\system32\pxinsi64.exe
2008-01-04 21:58 1,044,480 ----a-w C:\WINDOWS\system32\libdivx.dll
2008-01-04 21:57 823,296 ----a-w C:\WINDOWS\system32\divx_xx0c.dll
2008-01-04 21:57 823,296 ----a-w C:\WINDOWS\system32\divx_xx07.dll
2008-01-04 21:57 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll
2008-01-04 21:57 802,816 ----a-w C:\WINDOWS\system32\divx_xx11.dll
2008-01-04 21:57 682,496 ----a-w C:\WINDOWS\system32\DivX.dll
2008-01-04 21:57 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll
2008-01-04 21:57 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll
2008-01-04 21:57 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll
2008-01-04 21:57 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll
2008-01-04 21:57 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll
2008-01-04 21:57 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll
2008-01-04 21:57 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll
2008-01-04 21:56 156,992 ----a-w C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2008-01-04 21:56 12,288 ----a-w C:\WINDOWS\system32\DivXWMPExtType.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Free Download Manager"="C:\Program Files\Free Download Manager\fdm.exe" [2008-02-13 18:02 2453551]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-03 22:56 15360]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2008-02-29 16:03 1481968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2008-03-16 14:23 579072]
"VTTimer"="VTTimer.exe" [2004-09-01 00:28 53248 C:\WINDOWS\system32\VTTimer.exe]
"SoundMan"="SOUNDMAN.EXE" [2005-01-20 04:04 77824 C:\WINDOWS\SOUNDMAN.EXE]
"RaidTool"="C:\Program Files\VIA\RAID\raid_tool.exe" [2004-10-10 22:54 589824]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-03-16 02:01 185896]
"OrderReminder"="C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe" [2006-01-30 08:00 98304]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 22:16 39792]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2008-03-16 01:18 219136]
C:\Documents and Settings\ADMIN\Start Menu\Programs\Startup\
Reboot.exe [2004-09-30 22:01:50 334336]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2006-12-20 12:55 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll 2007-04-19 12:41 294912 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avginet.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avgamsvr.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avgcc.exe"=
"C:\\Program Files\\Grisoft\\AVG7\\avgemc.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{96d84d1e-f45c-11dc-99c6-0016ec030e7f}]
\Shell\AutoRun\command - b.com
\Shell\explore\Command - b.com
\Shell\open\Command - b.com
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-19 18:46:14
Windows 5.1.2600 Service Pack 2 FAT NTAPI
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-03-19 18:46:45
ComboFix-quarantined-files.txt 2008-03-20 02:46:44
ComboFix2.txt 2008-03-20 02:28:38
.
2008-03-16 22:42:40 --- E O F ---



AND HIJACK ONE

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:32:43 PM, on 3/19/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
E:\software\hi jack this\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.fbr.gov.pk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [OrderReminder] C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
O4 - Startup: Reboot.exe
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download video with Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
--
End of file - 5074 bytes
Back to Top
 

Junaid Khan
New Member


Date Joined Mar 2008
Total Posts : 9
 
   Posted 3-31-2008 4:20 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
PLEASE TELL ME HOW TO PREVENT FROM THE USB AS I ALWAYS GET INFECTED OF VIRUS JUST BECAUSE OF IT AND IN MY WORK I HAVE TO USE IT DAILY
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13085
 
   Posted 4-1-2008 9:24 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
Download  DrWebCureit:
 
 
to your desktop.
 
Plug in ALL Your external drives/sticks
 
Doubleclick the "drweb-cureit.exe" and click "Start" in the prompt window that will open , asking "start the express scan now".
It will first make a quick scan of your system, let it clean what it find, and when it says "done"
Click on the Options->Change settings.
 
Actions Tab- Adware-Dialers-Riskware-Hacktools, use dropdown menu and select –Rename
Click – Apply - OK
Click on Scan Tab.  Move  dot from Express scan to Complete Scan.  Click on The Green arrow to the right.  It will now scan your  drive(s), say yes to all
 
After the scan, in the Dr.Web CureIt menu on top, click file and choose save report list
Save the report to your desktop. The report will be called DrWeb.csv
Close Dr.Web Cureit.
 
Reboot your computer!! Because it could be possible that files in use will be moved/deleted during reboot.
 
 
 
Please post drweb log along with new combofix log


Do NOT post your problem in someone elses thread.

Back to Top
 

Junaid Khan
New Member


Date Joined Mar 2008
Total Posts : 9
 
   Posted 4-2-2008 8:45 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
I HAVE DONE WHAT U SAID BUT AFTER CHANGING CURE IT TO EXPRESS SCAN TO COMPLETE SCAN I DONT FIND ANY GREEN ARROW TO TURN IT RIGHT TELL ME WHERE IS IT?
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13085
 
   Posted 4-2-2008 9:14 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
It is in front of  the black "arrow:
 
 
Turn caps lock OFF, as it sounds like you shout, when you post a reply


Do NOT post your problem in someone elses thread.

Back to Top
 

Junaid Khan
New Member


Date Joined Mar 2008
Total Posts : 9
 
   Posted 4-7-2008 8:48 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
Sorry for Caps Lock but i like to clear i was not shouting its my habbit as all my entries in office i use caps on sorry for that i do as u said and post it again
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 13085
 
   Posted 4-7-2008 9:07 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
No problem smilewinkgrin


Do NOT post your problem in someone elses thread.

Back to Top
 

Junaid Khan
New Member


Date Joined Mar 2008
Total Posts : 9
 
   Posted 4-7-2008 10:27 (GMT +2)    Quote: How to remove trojanAlert an admin about: How to remove trojan
nwe combofix log


ComboFix 08-04-06.1 - ADMIN 2008-04-07 13:03:19.3 - FAT32x86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.200 [GMT -7:00]
Running from: C:\Documents and Settings\ADMIN\Desktop\ComboFix.exe
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Program Files\PRAL\EGDXS2008\EGDXS2008\Desktop_.ini

.
((((((((((((((((((((((((( Files Created from 2008-03-07 to 2008-04-07 )))))))))))))))))))))))))))))))
.

2008-04-05 17:16 . 2008-04-05 17:16 <DIR> d--hs---- C:\FOUND.010
2008-04-05 15:28 . 2008-04-05 15:28 <DIR> d-------- C:\Program Files\Easy Uploader
2008-04-04 14:21 . 2008-02-22 02:33 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-04-04 13:51 . 2008-04-04 13:51 <DIR> d-------- C:\Program Files\Java
2008-04-04 13:51 . 2008-04-04 13:51 <DIR> d-------- C:\Program Files\Common Files\Java
2008-04-02 11:32 . 2008-04-02 11:32 <DIR> d-------- C:\Documents and Settings\ADMIN\DoctorWeb
2008-04-01 22:09 . 2008-04-01 22:09 <DIR> d-------- C:\Program Files\Windows Media Connect 2
2008-04-01 22:07 . 2008-04-01 22:07 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2008-04-01 22:07 . 2008-04-01 22:07 <DIR> d-------- C:\WINDOWS\system32\drivers\UMDF
2008-04-01 19:01 . 2008-04-01 19:01 <DIR> d--hs---- C:\FOUND.009
2008-04-01 14:20 . 2008-04-01 14:20 <DIR> d--hs---- C:\FOUND.008
2008-04-01 13:50 . 2008-04-01 13:50 <DIR> d-------- C:\Program Files\Jhoos
2008-03-31 21:04 . 2008-03-31 21:04 <DIR> d-------- C:\Program Files\Xara
2008-03-31 21:04 . 2008-03-31 21:04 <DIR> d-------- C:\Program Files\Common Files\Xara
2008-03-29 23:27 . 2006-01-30 09:00 143,360 -ra------ C:\WINDOWS\apptune1018.exe
2008-03-29 23:26 . 2008-03-29 23:26 <DIR> d--h----- C:\Program Files\Zenographics
2008-03-29 23:26 . 2008-03-29 23:27 <DIR> d-------- C:\Program Files\Hewlett-Packard
2008-03-29 23:26 . 2006-01-30 09:00 442,368 -ra------ C:\WINDOWS\system32\zshp1018.exe
2008-03-29 23:26 . 2006-01-30 09:00 129,092 -ra------ C:\WINDOWS\system32\hp1018.img
2008-03-29 23:26 . 2006-01-30 09:00 106,496 -ra------ C:\WINDOWS\system32\vshp1018.dll
2008-03-29 23:26 . 2006-01-30 09:00 7,280 -ra------ C:\WINDOWS\system32\ZSHP1018.HLP
2008-03-29 16:30 . 2008-03-29 16:30 <DIR> d-------- C:\Program Files\Total Video Player
2008-03-28 18:26 . 2008-03-28 18:26 <DIR> d--hs---- C:\FOUND.007
2008-03-27 17:50 . 2008-03-27 17:50 <DIR> d--hs---- C:\FOUND.006
2008-03-27 04:10 . 2008-03-27 04:10 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo!
2008-03-26 14:27 . 2008-03-26 14:27 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\FLEXnet
2008-03-26 12:55 . 2008-03-26 12:55 <DIR> d-------- C:\Program Files\Bonjour
2008-03-26 12:46 . 2008-03-26 12:46 <DIR> d-------- C:\Program Files\Common Files\Macrovision Shared
2008-03-26 12:35 . 2008-03-26 12:35 <DIR> d-------- C:\Program Files\PDF Editor 2
2008-03-26 12:35 . 2008-03-26 12:35 74,752 --a------ C:\WINDOWS\cadkasdeinst01e.exe
2008-03-26 12:29 . 2006-08-03 16:39 307,200 --------- C:\WINDOWS\system32\fppmon3.dll
2008-03-26 12:29 . 2006-08-03 16:43 122,880 --------- C:\WINDOWS\system32\fppr332.dll
2008-03-25 21:52 . 2008-03-25 21:52 <DIR> d--hs---- C:\FOUND.005
2008-03-25 16:40 . 2008-03-25 16:40 <DIR> d--hs---- C:\FOUND.004
2008-03-24 19:29 . 2008-03-24 19:29 <DIR> d--hs---- C:\FOUND.003
2008-03-24 19:22 . 2008-03-24 19:22 <DIR> d--hs---- C:\FOUND.002
2008-03-24 19:05 . 2008-03-24 19:05 <DIR> d--hs---- C:\FOUND.001
2008-03-22 13:05 . 2007-12-06 19:21 6,066,176 --------- C:\WINDOWS\system32\dllcache\ieframe.dll
2008-03-22 13:05 . 2007-06-30 20:31 2,455,488 --------- C:\WINDOWS\system32\dllcache\ieapfltr.dat
2008-03-22 13:05 . 2007-06-30 20:36 991,232 --------- C:\WINDOWS\system32\dllcache\ieframe.dll.mui
2008-03-22 13:05 . 2007-12-06 19:21 459,264 --------- C:\WINDOWS\system32\dllcache\msfeeds.dll
2008-03-22 13:05 . 2007-12-06 19:21 383,488 --------- C:\WINDOWS\system32\dllcache\ieapfltr.dll
2008-03-22 13:05 . 2007-12-06 19:21 267,776 --------- C:\WINDOWS\system32\dllcache\iertutil.dll
2008-03-22 13:05 . 2007-12-06 19:21 63,488 --------- C:\WINDOWS\system32\dllcache\icardie.dll
2008-03-22 13:05 . 2007-12-06 19:21 52,224 --------- C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2008-03-22 13:05 . 2007-12-06 04:00 13,824 --------- C:\WINDOWS\system32\dllcache\ieudinit.exe
2008-03-20 16:39 . 2008-03-20 16:39 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-03-20 16:35 . 2008-03-20 16:35 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-03-19 17:56 . 2008-03-19 17:56 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2008-03-19 17:56 . 2008-03-19 17:56 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-03-19 17:56 . 2008-03-19 17:57 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-03-19 17:56 . 2008-03-19 17:56 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\SUPERAntiSpyware.com
2008-03-19 17:47 . 2008-03-19 17:47 <DIR> d-------- C:\Program Files\CCleaner
2008-03-19 17:47 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-03-19 17:47 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
2008-03-19 17:47 . 2007-07-30 19:19 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-03-18 18:27 . 2008-03-18 18:27 <DIR> d--hs---- C:\FOUND.000
2008-03-17 23:15 . 2006-01-30 09:00 102,400 -ra------ C:\WINDOWS\system32\zlhp1018.dll
2008-03-17 23:15 . 2006-01-30 09:00 86,016 -ra------ C:\WINDOWS\system32\ZSPOOL.DLL
2008-03-17 23:15 . 2006-01-30 09:00 28,672 -ra------ C:\WINDOWS\system32\zlm.dll
2008-03-17 23:15 . 2006-01-30 09:00 28,672 -ra------ C:\WINDOWS\system32\IMF32.DLL
2008-03-17 23:15 . 2006-01-30 09:00 24,576 -ra------ C:\WINDOWS\system32\ZTAG32.DLL
2008-03-17 23:09 . 2008-03-17 23:09 <DIR> d-------- C:\Documents and Settings\ADMIN\WINDOWS
2008-03-17 18:14 . 2008-03-17 18:14 268 --ah----- C:\sqmdata01.sqm
2008-03-17 18:14 . 2008-03-17 18:14 244 --ah----- C:\sqmnoopt02.sqm
2008-03-17 18:14 . 2008-03-17 18:14 244 --ah----- C:\sqmnoopt01.sqm
2008-03-17 18:14 . 2008-03-17 18:14 232 --ah----- C:\sqmdata02.sqm
2008-03-17 18:13 . 2008-03-17 18:13 <DIR> d-------- C:\Program Files\Windows Live
2008-03-17 18:13 . 2008-03-17 18:13 <DIR> d--hs---- C:\Program Files\Common Files\WindowsLiveInstaller
2008-03-17 18:13 . 2008-03-17 18:13 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-03-17 18:08 . 2008-03-17 18:08 <DIR> d-------- C:\Documents and Settings\ADMIN\Contacts
2008-03-17 18:05 . 2008-03-17 18:05 268 --ah----- C:\sqmdata00.sqm
2008-03-17 18:05 . 2008-03-17 18:05 244 --ah----- C:\sqmnoopt00.sqm
2008-03-17 17:34 . 2008-03-17 17:34 <DIR> d-------- C:\WINDOWS\system32\DRVSTORE
2008-03-17 12:00 . 2008-03-17 12:00 <DIR> d-------- C:\Program Files\Common Files\Adobe
2008-03-17 12:00 . 2008-03-17 12:00 <DIR> dr-h----- C:\$VAULT$.AVG
2008-03-17 11:58 . 2004-08-03 23:08 26,496 --a------ C:\WINDOWS\system32\dllcache\usbstor.sys
2008-03-17 11:52 . 2008-03-17 11:52 <DIR> d-------- C:\Downloads
2008-03-17 11:33 . 2003-06-18 17:31 17,920 --a------ C:\WINDOWS\system32\mdimon.dll
2008-03-17 11:33 . 2008-03-17 11:33 376 --a------ C:\WINDOWS\ODBC.INI
2008-03-17 11:32 . 2008-03-17 11:32 <DIR> d-------- C:\Program Files\Microsoft.NET
2008-03-17 11:32 . 2008-03-17 11:32 <DIR> d-------- C:\Program Files\Common Files\L&H
2008-03-17 11:31 . 2008-03-17 11:31 <DIR> d-------- C:\Program Files\Microsoft Works
2008-03-17 11:31 . 2008-03-17 11:31 <DIR> d-------- C:\Program Files\Microsoft ActiveSync
2008-03-17 11:30 . 2008-03-17 11:30 <DIR> d-------- C:\WINDOWS\SHELLNEW
2008-03-16 14:42 . 2008-03-16 14:42 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2008-03-16 14:42 . 2006-09-25 17:58 23,856 --a------ C:\WINDOWS\system32\spupdsvc.exe
2008-03-16 04:00 . 2008-03-16 04:00 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\DivX
2008-03-16 03:58 . 2008-03-16 03:58 <DIR> d-------- C:\Program Files\Yahoo!
2008-03-16 03:58 . 2008-03-16 03:58 <DIR> d-------- C:\Program Files\DivX
2008-03-16 03:58 . 2008-03-16 03:58 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\Yahoo!
2008-03-16 03:36 . 2008-03-16 03:36 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\vlc
2008-03-16 03:35 . 2008-03-16 03:35 <DIR> d-------- C:\Program Files\VideoLAN
2008-03-16 03:06 . 2008-03-16 03:06 <DIR> d--hs---- C:\Documents and Settings\ADMIN\UserData
2008-03-16 02:23 . 2008-03-16 02:23 <DIR> d-------- C:\Program Files\Free Download Manager
2008-03-16 02:23 . 2008-03-16 02:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\FreeDownloadManager.ORG
2008-03-16 02:23 . 2008-03-16 02:23 <DIR> d-------- C:\Documents and Settings\ADMIN\Application Data\Free Download Manager
2008-03-16 02:17 . 2008-03-16 02:17 <DIR> d-------- C:\WINDOWS\Crystal
2008-03-16 02:17 . 2008-03-16 02:17 <DIR> d-------- C:\Program Files\PRAL
2008-03-16 02:16 . 1998-10-01 15:22 299,520 --a------ C:\WINDOWS\uninst.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-16 22:29 --------- d-----w C:\Program Files\microsoft frontpage
2008-01-11 05:53 44,544 ------w C:\WINDOWS\system32\dllcache\pngfilt.dll
.

((((((((((((((((((((((((((((( snapshot@2008-03-19_18.28.27.51 )))))))))))))))))))))))))))))))))))))))))
.
- 2005-02-25 03:35:06 14,048 ------w C:\WINDOWS\$hf_mig$\KB898461\spmsg.dll
- 2005-02-25 03:35:06 209,632 ------w C:\WINDOWS\$hf_mig$\KB898461\spuninst.exe
- 2005-02-25 03:35:06 22,752 ------w C:\WINDOWS\$hf_mig$\KB898461\spupdsvc.exe
- 2005-02-25 03:35:06 22,240 ------w C:\WINDOWS\$hf_mig$\KB898461\update\spcustom.dll
- 2005-02-25 03:35:06 718,048 ------w C:\WINDOWS\$hf_mig$\KB898461\update\update.exe
- 2005-02-25 03:35:06 371,936 ------w C:\WINDOWS\$hf_mig$\KB898461\update\updspapi.dll
- 2004-09-01 12:04:00 139,264 ------w C:\WINDOWS\alcrmv.exe
+ 2004-09-01 11:04:00 139,264 ------w C:\WINDOWS\alcrmv.exe
- 2004-11-05 08:29:00 208,896 ------w C:\WINDOWS\alcupd.exe
+ 2004-11-05 07:29:00 208,896 ------w C:\WINDOWS\alcupd.exe
+ 2006-10-04 14:05:26 39,424 ------w C:\WINDOWS\AppPatch\acadproc.dll
- 2004-08-04 06:56:42 1,852,416 ----a-w C:\WINDOWS\AppPatch\AcGenral.dll
+ 2004-08-04 05:56:42 1,852,416 ----a-w C:\WINDOWS\AppPatch\AcGenral.dll
- 2004-08-04 06:56:42 450,048 ----a-w C:\WINDOWS\AppPatch\AcLayers.dll
+ 2004-08-04 05:56:42 450,048 ----a-w C:\WINDOWS\AppPatch\AcLayers.dll
- 2004-08-04 06:56:42 137,728 ----a-w C:\WINDOWS\AppPatch\AcLua.dll
+ 2004-08-04 05:56:42 137,728 ----a-w C:\WINDOWS\AppPatch\AcLua.dll
- 2004-08-04 06:56:42 244,736 ----a-w C:\WINDOWS\AppPatch\AcSpecfc.dll
+ 2004-08-04 05:56:42 244,736 ----a-w C:\WINDOWS\AppPatch\AcSpecfc.dll
- 2004-08-04 06:56:42 116,224 ----a-w C:\WINDOWS\AppPatch\AcXtrnal.dll
+ 2004-08-04 05:56:42 116,224 ----a-w C:\WINDOWS\AppPatch\AcXtrnal.dll
- 1998-03-31 17:00:00 45,056 ----a-w C:\WINDOWS\Crystal\U2DDISK.DLL
+ 1998-03-31 16:00:00 45,056 ----a-w C:\WINDOWS\Crystal\U2DDISK.DLL
- 1998-03-31 17:00:00 125,901 ----a-w C:\WINDOWS\Crystal\U2DMAPI.DLL
+ 1998-03-31 16:00:00 125,901 ----a-w C:\WINDOWS\Crystal\U2DMAPI.DLL
- 1998-03-31 17:00:00 97,598 ----a-w C:\WINDOWS\Crystal\U2FCR.DLL
+ 1998-03-31 16:00:00 97,598 ----a-w C:\WINDOWS\Crystal\U2FCR.DLL
- 1998-03-31 17:00:00 53,248 ----a-w C:\WINDOWS\Crystal\U2FDIF.DLL
+ 1998-03-31 16:00:00 53,248 ----a-w C:\WINDOWS\Crystal\U2FDIF.DLL
- 1998-03-31 17:00:00 223,232 ----a-w C:\WINDOWS\Crystal\U2FHTML.DLL
+ 1998-03-31 16:00:00 223,232 ----a-w C:\WINDOWS\Crystal\U2FHTML.DLL
- 1998-03-31 17:00:00 49,152 ----a-w C:\WINDOWS\Crystal\U2FREC.DLL
+ 1998-03-31 16:00:00 49,152 ----a-w C:\WINDOWS\Crystal\U2FREC.DLL
- 1998-03-31 17:00:00 100,864 ----a-w C:\WINDOWS\Crystal\U2FRTF.DLL
+ 1998-03-31 16:00:00 100,864 ----a-w C:\WINDOWS\Crystal\U2FRTF.DLL
- 1998-03-31 17:00:00 53,248 ----a-w C:\WINDOWS\Crystal\U2FSEPV.DLL
+ 1998-03-31 16:00:00 53,248 ----a-w C:\WINDOWS\Crystal\U2FSEPV.DLL
- 1998-03-31 17:00:00 115,712 ----a-w C:\WINDOWS\Crystal\U2FTEXT.DLL
+ 1998-03-31 16:00:00 115,712 ----a-w C:\WINDOWS\Crystal\U2FTEXT.DLL
- 1998-03-31 17:00:00 57,344 ----a-w C:\WINDOWS\Crystal\U2FWKS.DLL
+ 1998-03-31 16:00:00 57,344 ----a-w C:\WINDOWS\Crystal\U2FWKS.DLL
- 1998-03-31 17:00:00 118,272 ----a-w C:\WINDOWS\Crystal\U2FWORDW.DLL
+ 1998-03-31 16:00:00 118,272 ----a-w C:\WINDOWS\Crystal\U2FWORDW.DLL
- 1998-03-31 17:00:00 137,216 ----a-w C:\WINDOWS\Crystal\U2FXLS.DLL
+ 1998-03-31 16:00:00 137,216 ----a-w C:\WINDOWS\Crystal\U2FXLS.DLL
- 2007-11-21 00:04:32 1,523,536 ----a-w C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
+ 2007-11-20 23:04:32 1,523,536 ----a-w C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
+ 2007-09-04 22:59:42 380,144 ----a-w C:\WINDOWS\Downloaded Program Files\sabspx.dll
+ 2006-02-14 23:22:26 142,464 ------w C:\WINDOWS\Driver Cache\i386\aec.sys
+ 2006-03-16 23:33:10 262,784 ------w C:\WINDOWS\Driver Cache\i386\http.sys
+ 2006-06-14 07:47:46 172,416 ------w C:\WINDOWS\Driver Cache\i386\kmixer.sys
+ 2006-05-05 08:41:46 453,120 ------w C:\WINDOWS\Driver Cache\i386\mrxsmb.sys
+ 2007-02-28 08:08:48 2,136,064 ------w C:\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
+ 2007-02-28 07:38:56 2,057,600 ------w C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
+ 2007-02-28 07:38:58 2,015,744 ------w C:\WINDOWS\Driver Cache\i386\ntkrpamp.exe
+ 2007-02-28 08:10:58 2,180,352 ------w C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe
+ 2006-06-14 07:47:46 6,400 ------w C:\WINDOWS\Driver Cache\i386\splitter.sys
+ 2006-06-14 08:00:46 82,944 ------w C:\WINDOWS\Driver Cache\i386\wdmaud.sys
- 2004-08-04 06:56:42 28,672 ----a-w C:\WINDOWS\ehome\custsat.dll
+ 2004-08-04 05:56:42 28,672 ----a-w C:\WINDOWS\ehome\custsat.dll
- 2000-08-31 16:00:00 163,328 ----a-w C:\WINDOWS\erdnt\Hiv-backup\ERDNT.EXE
+ 2005-10-21 03:02:28 163,328 ----a-w C:\WINDOWS\erdnt\Hiv-backup\ERDNT.EXE
- 2004-08-04 06:56:50 1,032,192 ----a-w C:\WINDOWS\explorer.exe
+ 2007-06-13 09:23:08 1,033,216 ----a-w C:\WINDOWS\explorer.exe
+ 2000-08-31 15:00:00 73,728 ----a-w C:\WINDOWS\fdsv.exe
+ 2000-08-31 15:00:00 80,412 ----a-w C:\WINDOWS\grep.exe
- 2001-08-23 20:00:00 152,576 ----a-w C:\WINDOWS\Help\bnts.dll
+ 2001-08-23 19:00:00 152,576 ----a-w C:\WINDOWS\Help\bnts.dll
- 2004-08-04 06:56:46 34,816 ----a-w C:\WINDOWS\Help\sniffpol.dll
+ 2004-08-04 05:56:46 34,816 ----a-w C:\WINDOWS\Help\sniffpol.dll
- 2004-08-04 06:56:46 33,280 ----a-w C:\WINDOWS\Help\sstub.dll
+ 2004-08-04 05:56:46 33,280 ----a-w C:\WINDOWS\Help\sstub.dll
- 2001-08-23 20:00:00 3,374,640 ----a-w C:\WINDOWS\Help\Tours\mmTour\tour.exe
+ 2001-08-23 19:00:00 3,374,640 ----a-w C:\WINDOWS\Help\Tours\mmTour\tour.exe
- 2004-08-04 06:56:48 279,040 ----a-w C:\WINDOWS\Help\tshoot.dll
+ 2004-08-04 05:56:48 279,040 ----a-w C:\WINDOWS\Help\tshoot.dll
- 2004-08-04 06:56:52 10,752 ----a-w C:\WINDOWS\hh.exe
+ 2005-05-26 22:22:02 10,752 ----a-w C:\WINDOWS\hh.exe
+ 2004-08-04 05:56:42 61,440 ------w C:\WINDOWS\ie7\admparse.dll
+ 2004-08-03 21:56:42 99,840 ------w C:\WINDOWS\ie7\advpack.dll
+ 2004-08-04 05:56:42 35,328 ------w C:\WINDOWS\ie7\corpol.dll
+ 2006-06-03 11:40:50 33,792 ------w C:\WINDOWS\ie7\custsat.dll
+ 2007-12-07 00:07:12 357,888 ------w C:\WINDOWS\ie7\dxtmsft.dll
+ 2007-12-07 00:07:12 205,312 ------w C:\WINDOWS\ie7\dxtrans.dll
+ 2007-12-07 00:07:12 55,808 ------w C:\WINDOWS\ie7\extmgr.dll
+ 2004-08-03 21:56:44 38,912 ------w C:\WINDOWS\ie7\hmmapi.dll
+ 2004-08-04 05:56:52 34,304 ------w C:\WINDOWS\ie7\ie4uinit.exe
+ 2004-08-04 05:56:44 139,264 ------w C:\WINDOWS\ie7\ieakeng.dll
+ 2004-08-04 05:56:44 216,576 ------w C:\WINDOWS\ie7\ieaksie.dll
+ 2001-08-23 19:00:00 221,184 ------w C:\WINDOWS\ie7\ieakui.dll
+ 2004-08-04 05:56:44 323,584 ------w C:\WINDOWS\ie7\iedkcs32.dll
+ 2007-12-06 12:07:08 18,432 ------w C:\WINDOWS\ie7\iedw.exe
+ 2004-08-04 05:56:44 81,920 ------w C:\WINDOWS\ie7\ieencode.dll
+ 2007-12-07 00:07:12 251,392 ------w C:\WINDOWS\ie7\iepeers.dll
+ 2004-08-04 05:56:44 48,640 ------w C:\WINDOWS\ie7\iernonce.dll
+ 2004-08-04 05:56:44 62,976 ------w C:\WINDOWS\ie7\iesetup.dll
+ 2004-08-03 21:56:52 93,184 ------w C:\WINDOWS\ie7\iexplore.exe
+ 2004-08-04 05:56:44 35,840 ------w C:\WINDOWS\ie7\imgutil.dll
+ 2007-12-07 00:07:12 96,256 ------w C:\WINDOWS\ie7\inseng.dll
+ 2007-11-14 06:26:56 450,560 ------w C:\WINDOWS\ie7\jscript.dll
+ 2007-12-07 00:07:12 16,384 ------w C:\WINDOWS\ie7\jsproxy.dll
+ 2004-08-04 05:56:44 22,016 ------w C:\WINDOWS\ie7\licmgr10.dll
+ 2004-08-04 05:56:54 29,184 ------w C:\WINDOWS\ie7\mshta.exe
+ 2007-12-07 13:37:14 3,059,200 ------w C:\WINDOWS\ie7\mshtml.dll
+ 2007-12-07 00:07:14 449,024 ------w C:\WINDOWS\ie7\mshtmled.dll
+ 2004-08-04 05:56:16 56,832 ------w C:\WINDOWS\ie7\mshtmler.dll
+ 2001-08-23 19:00:00 146,432 ------w C:\WINDOWS\ie7\msls31.dll
+ 2007-12-07 00:07:14 146,432 ------w C:\WINDOWS\ie7\msrating.dll
+ 2007-12-07 00:07:14 532,480 ------w C:\WINDOWS\ie7\mstime.dll
+ 2004-08-04 05:56:46 96,256 ------w C:\WINDOWS\ie7\occache.dll
+ 2007-12-07 00:07:14 39,424 ------w C:\WINDOWS\ie7\pngfilt.dll
+ 2007-08-14 01:54:42 32,960 ------w C:\WINDOWS\ie7\spuninst\iecustom.dll
+ 2007-08-14 01:52:06 66,048 ----a-w C:\WINDOWS\ie7\spuninst\ieResetIcons.exe
+ 2006-09-07 00:43:16 213,216 ------w C:\WINDOWS\ie7\spuninst\spuninst.exe
+ 2006-09-07 00:43:18 371,424 ------w C:\WINDOWS\ie7\spuninst\updspapi.dll
+ 2004-08-03 21:56:48 37,888 ------w C:\WINDOWS\ie7\url.dll
+ 2007-12-07 00:07:14 615,424 ------w C:\WINDOWS\ie7\urlmon.dll
+ 2004-08-04 05:56:48 417,792 ------w C:\WINDOWS\ie7\vbscript.dll
+ 2007-06-26 14:13:22 851,968 ------w C:\WINDOWS\ie7\vgx.dll
+ 2004-08-04 05:56:48 276,480 ------w C:\WINDOWS\ie7\webcheck.dll
+ 2007-12-07 00:07:14 659,456 ------w C:\WINDOWS\ie7\wininet.dll
+ 2007-03-06 01:22:42 213,216 ------w C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:23:52 371,424 ------w C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\updspapi.dll
+ 2007-08-14 01:54:10 765,952 ------w C:\WINDOWS\ie7updates\KB938127-IE7\vgx.dll
+ 2007-08-14 01:39:00 123,904 ------w C:\WINDOWS\ie7updates\KB942615-IE7\advpack.dll
+ 2007-08-14 01:35:38 214,528 ------w C:\WINDOWS\ie7updates\KB942615-IE7\dxtrans.dll
+ 2007-08-14 01:54:10 131,584 ------w C:\WINDOWS\ie7updates\KB942615-IE7\extmgr.dll
+ 2007-08-14 01:36:26 61,952 ------w C:\WINDOWS\ie7updates\KB942615-IE7\icardie.dll
+ 2007-08-14 01:39:06 54,784 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ie4uinit.exe
+ 2007-08-14 01:39:26 152,064 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ieakeng.dll
+ 2007-08-14 01:39:54 229,376 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ieaksie.dll
+ 2007-08-14 00:56:54 161,792 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ieakui.dll
+ 2007-02-12 23:10:12 2,451,312 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ieapfltr.dat
+ 2007-07-11 19:27:48 383,488 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ieapfltr.dll
+ 2007-08-14 01:39:50 382,976 ------w C:\WINDOWS\ie7updates\KB942615-IE7\iedkcs32.dll
+ 2007-08-14 01:54:10 6,049,280 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ieframe.dll
+ 2007-08-14 01:39:10 43,008 ------w C:\WINDOWS\ie7updates\KB942615-IE7\iernonce.dll
+ 2007-08-14 01:34:04 266,752 ------w C:\WINDOWS\ie7updates\KB942615-IE7\iertutil.dll
+ 2007-08-14 01:39:10 13,312 ------w C:\WINDOWS\ie7updates\KB942615-IE7\ieudinit.exe
+ 2007-08-14 01:43:56 622,080 ------w C:\WINDOWS\ie7updates\KB942615-IE7\iexplore.exe
+ 2007-08-14 01:54:10 27,136 ------w C:\WINDOWS\ie7updates\KB942615-IE7\jsproxy.dll
+ 2007-08-14 01:54:10 458,752 ------w C:\WINDOWS\ie7updates\KB942615-IE7\msfeeds.dll
+ 2007-08-14 01:54:10 50,688 ------w C:\WINDOWS\ie7updates\KB942615-IE7\msfeedsbs.dll
+ 2007-08-14 01:54:12 3,578,368 ------w C:\WINDOWS\ie7updates\KB942615-IE7\mshtml.dll
+ 2007-08-14 01:54:10 475,648 ------w C:\WINDOWS\ie7updates\KB942615-IE7\mshtmled.dll
+ 2007-08-14 01:44:26 192,000 ------w C:\WINDOWS\ie7updates\KB942615-IE7\msrating.dll
+ 2007-08-14 01:54:10 670,720 ------w C:\WINDOWS\ie7updates\KB942615-IE7\mstime.dll
+ 2007-08-14 01:44:06 101,376 ------w C:\WINDOWS\ie7updates\KB942615-IE7\occache.dll
+ 2007-03-06 01:22:40 213,216 ------w C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe
+ 2007-06-30 20:22:56 371,424 ------w C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\updspapi.dll
+ 2007-08-14 01:44:30 105,984 ------w C:\WINDOWS\ie7updates\KB942615-IE7\url.dll
+ 2007-08-14 01:54:10 1,162,240 ------w C:\WINDOWS\ie7updates\KB942615-IE7\urlmon.dll
+ 2007-08-14 01:54:10 231,424 ------w C:\WINDOWS\ie7updates\KB942615-IE7\webcheck.dll
+ 2007-08-14 01:54:10 818,688 ------w C:\WINDOWS\ie7updates\KB942615-IE7\wininet.dll
+ 2007-10-10 23:55:52 124,928 ------w C:\WINDOWS\ie7updates\KB944533-IE7\advpack.dll
+ 2007-10-10 23:55:52 124,928 ------w C:\WINDOWS\ie7updates\KB944533-IE7\advpack.dll.000
+ 2007-08-14 01:35:46 346,624 ------w C:\WINDOWS\ie7updates\KB944533-IE7\dxtmsft.dll
+ 2007-10-10 23:55:52 214,528 ------w C:\WINDOWS\ie7updates\KB944533-IE7\dxtrans.dll
+ 2007-10-10 23:55:52 132,608 ------w C:\WINDOWS\ie7updates\KB944533-IE7\extmgr.dll
+ 2007-10-10 23:55:52 63,488 ------w C:\WINDOWS\ie7updates\KB944533-IE7\icardie.dll
+ 2007-10-10 23:55:52 63,488 ------w C:\WINDOWS\ie7updates\KB944533-IE7\icardie.dll.000
+ 2007-10-10 10:59:40 70,656 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ie4uinit.exe
+ 2007-10-10 23:55:52 153,088 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieakeng.dll
+ 2007-10-10 23:55:52 230,400 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieaksie.dll
+ 2007-10-10 05:46:56 161,792 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieakui.dll
+ 2007-07-01 03:31:34 2,455,488 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieapfltr.dat
+ 2007-10-10 23:55:52 383,488 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieapfltr.dll
+ 2007-10-10 23:55:52 383,488 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieapfltr.dll.000
+ 2007-10-10 23:55:52 384,512 ------w C:\WINDOWS\ie7updates\KB944533-IE7\iedkcs32.dll
+ 2007-10-10 23:55:54 6,065,664 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieframe.dll
+ 2007-10-10 23:55:54 6,065,664 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieframe.dll.000
+ 2007-10-10 23:55:56 44,544 ------w C:\WINDOWS\ie7updates\KB944533-IE7\iernonce.dll
+ 2007-10-10 23:55:56 267,776 ------w C:\WINDOWS\ie7updates\KB944533-IE7\iertutil.dll
+ 2007-10-10 23:55:56 267,776 ------w C:\WINDOWS\ie7updates\KB944533-IE7\iertutil.dll.000
+ 2007-10-10 10:59:40 13,824 ------w C:\WINDOWS\ie7updates\KB944533-IE7\ieudinit.exe
+ 2007-10-10 10:59:52 625,152 ------w C:\WINDOWS\ie7updates\KB944533-IE7\iexplore.exe
+ 2007-10-10 23:55:56 27,648 ------w C:\WINDOWS\ie7updates\KB944533-IE7\jsproxy.dll
+ 2007-10-10 23:55:56 459,264 ------w C:\WINDOWS\ie7updates\KB944533-IE7\msfeeds.dll
+ 2007-10-10 23:55:56 459,264 ------w C:\WINDOWS\ie7updates\KB944533-IE7\msfeeds.dll.000
+ 2007-10-10 23:55:56 52,224 ------w C:\WINDOWS\ie7updates\KB944533-IE7\msfeedsbs.dll
+ 2007-10-10 23:55:56 52,224 ------w C:\WINDOWS\ie7updates\KB944533-IE7\msfeedsbs.dll.000
+ 2007-10-31 12:12:30 3,590,656 ------w C:\WINDOWS\ie7updates\KB944533-IE7\mshtml.dll
+ 2007-10-31 12:12:30 3,590,656 ------w C:\WINDOWS\ie7updates\KB944533-IE7\mshtml.dll.000
+ 2007-10-10 23:55:58 478,208 ------w C:\WINDOWS\ie7updates\KB944533-IE7\mshtmled.dll
+ 2007-10-10 23:55:58 193,024 ------w C:\WINDOWS\ie7updates\KB944533-IE7\msrating.dll
+ 2007-10-10 23:56:00 671,232 ------w C:\WINDOWS\ie7updates\KB944533-IE7\mstime.dll
+ 2007-10-10 23:56:00 102,400 ------w C:\WINDOWS\ie7updates\KB944533-IE7\occache.dll
+ 2007-08-14 01:36:12 44,544 ------w C:\WINDOWS\ie7updates\KB944533-IE7\pngfilt.dll
+ 2007-03-06 01:22:40 213,216 ------w C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:23:52 371,424 ------w C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\updspapi.dll
+ 2007-10-10 23:56:00 105,984 ------w C:\WINDOWS\ie7updates\KB944533-IE7\url.dll
+ 2007-10-10 23:56:00 105,984 ------w C:\WINDOWS\ie7updates\KB944533-IE7\url.dll.000
+ 2007-10-10 23:56:00 1,159,680 ------w C:\WINDOWS\ie7updates\KB944533-IE7\urlmon.dll
+ 2007-10-10 23:56:00 1,159,680 ------w C:\WINDOWS\ie7updates\KB944533-IE7\urlmon.dll.000
+ 2007-10-10 23:56:00 232,960 ------w C:\WINDOWS\ie7updates\KB944533-IE7\webcheck.dll
+ 2007-10-10 23:56:00 232,960 ------w C:\WINDOWS\ie7updates\KB944533-IE7\webcheck.dll.000
+ 2007-10-10 23:56:00 824,832 ------w C:\WINDOWS\ie7updates\KB944533-IE7\wininet.dll
+ 2007-10-10 23:56:00 824,832 ------w C:\WINDOWS\ie7updates\KB944533-IE7\wininet.dll.000
- 2004-08-04 06:56:44 220,160 ----a-w C:\WINDOWS\ime\mscandui.dll
+ 2004-08-04 05:56:44 220,160 ----a-w C:\WINDOWS\ime\mscandui.dll
- 2004-08-04 06:56:46 130,048 ----a-w C:\WINDOWS\ime\SOFTKBD.DLL
+ 2004-08-04 05:56:46 130,048 ----a-w C:\WINDOWS\ime\SOFTKBD.DLL
- 2004-08-04 06:56:30 62,976 ----a-w C:\WINDOWS\ime\SPGRMR.dll
+ 2004-08-04 05:56:30 62,976 ----a-w C:\WINDOWS\ime\SPGRMR.dll
- 2004-08-04 06:56:46 250,880 ----a-w C:\WINDOWS\ime\SPTIP.dll
+ 2004-08-04 05:56:46 250,880 ----a-w C:\WINDOWS\ime\SPTIP.dll
- 2004-08-04 06:56:58 208,896 ----a-w C:\WINDOWS\inf\unregmp2.exe
+ 2007-06-27 05:10:26 317,440 ----a-w C:\WINDOWS\inf\unregmp2.exe
+ 2003-07-07 20:36:00 2,058,343 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040110900063D11C8EF10054038389C\11.0.5614\OUTLFLTR.DAT
+ 2003-07-08 18:48:00 115,288 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040110900063D11C8EF10054038389C\11.0.5614\OUTLFLTR.DLL
- 2008-03-16 09:16:12 166,912 ----a-r C:\WINDOWS\Installer\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe
+ 2008-03-16 08:16:12 166,912 ----a-r C:\WINDOWS\Installer\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe
- 2008-03-18 02:14:00 29,926 ----a-r C:\WINDOWS\Installer\{508CE775-4BA4-4748-82DF-FE28DA9F03B0}\MsblIco.Exe
+ 2008-03-18 01:14:00 29,926 ----a-r C:\WINDOWS\Installer\{508CE775-4BA4-4748-82DF-FE28DA9F03B0}\MsblIco.Exe
- 2008-03-17 19:33:16 593,920 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\accicons.exe
+ 2008-03-20 23:41:28 593,920 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\accicons.exe
- 2008-03-17 19:33:16 12,288 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2008-03-20 23:41:28 12,288 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2008-03-17 19:33:16 86,016 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\inficon.exe
+ 2008-03-20 23:41:28 86,016 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\inficon.exe
- 2008-03-17 19:33:16 135,168 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2008-03-20 23:41:28 135,168 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2008-03-17 19:33:16 11,264 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\mspicons.exe
+ 2008-03-20 23:41:28 11,264 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\mspicons.exe
- 2008-03-17 19:33:16 27,136 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2008-03-20 23:41:28 27,136 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2008-03-17 19:33:16 4,096 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2008-03-20 23:41:28 4,096 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2008-03-17 19:33:16 794,624 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\outicon.exe
+ 2008-03-20 23:41:28 794,624 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\outicon.exe
- 2008-03-17 19:33:16 249,856 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\pptico.exe
+ 2008-03-20 23:41:28 249,856 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\pptico.exe
- 2008-03-17 19:33:16 61,440 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\pubs.exe
+ 2008-03-20 23:41:28 61,440 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\pubs.exe
- 2008-03-17 19:33:16 23,040 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\unbndico.exe
+ 2008-03-20 23:41:28 23,040 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2008-03-17 19:33:16 286,720 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\wordicon.exe
+ 2008-03-20 23:41:28 286,720 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\wordicon.exe
- 2008-03-17 19:33:16 409,600 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2008-03-20 23:41:28 409,600 ----a-r C:\WINDOWS\Installer\{90110409-6000-11D3-8CFE-0150048383C9}\xlicons.exe
- 2008-03-17 20:02:24 295,606 ----a-r C:\WINDOWS\Installer\{AC76BA86-7AD7-1033-7B44-A81200000003}\SC_Reader.exe
+ 2008-03-17 19:02:24 295,606 ----a-r C:\WINDOWS\Installer\{AC76BA86-7AD7-1033-7B44-A81200000003}\SC_Reader.exe
+ 2008-03-20 23:35:16 32,768 ----a-r C:\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}\icon.exe
- 2008-03-20 01:56:58 18,944 ----a-r C:\WINDOWS\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF13.exe
+ 2008-03-20 00:56:58 18,944 ----a-r C:\WINDOWS\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF13.exe
- 2008-03-20 01:56:58 65,024 ----a-r C:\WINDOWS\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF15.exe
+ 2008-03-20 00:56:58 65,024 ----a-r C:\WINDOWS\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF15.exe
- 2004-10-06 00:54:00 306,688 ----a-w C:\WINDOWS\IsUninst.exe
+ 2004-10-05 23:54:00 306,688 ----a-w C:\WINDOWS\IsUninst.exe
- 2004-08-04 06:56:42 24,064 ----a-w C:\WINDOWS\msagent\agentanm.dll
+ 2004-08-04 05:56:42 24,064 ----a-w C:\WINDOWS\msagent\agentanm.dll
- 2004-08-04 06:56:42 214,016 ----a-w C:\WINDOWS\msagent\agentctl.dll
+ 2004-08-04 05:56:42 214,016 ----a-w C:\WINDOWS\msagent\agentctl.dll
- 2004-08-04 06:56:42 41,984 ----a-w C:\WINDOWS\msagent\agentdp2.dll
+ 2006-10-12 13:02:52 42,496 ----a-w C:\WINDOWS\msagent\agentdp2.dll
- 2004-08-04 06:56:42 58,880 ----a-w C:\WINDOWS\msagent\agentdpv.dll
+ 2007-03-09 12:46:24 57,344 ----a-w C:\WINDOWS\msagent\agentdpv.dll
- 2004-08-04 06:56:42 49,152 ----a-w C:\WINDOWS\msagent\agentmpx.dll
+ 2004-08-04 05:56:42 49,152 ----a-w C:\WINDOWS\msagent\agentmpx.dll
- 2004-08-04 06:56:42 24,064 ----a-w C:\WINDOWS\msagent\agentpsh.dll
+ 2004-08-04 05:56:42 24,064 ----a-w C:\WINDOWS\msagent\agentpsh.dll
- 2004-08-04 06:56:42 44,032 ----a-w C:\WINDOWS\msagent\agentsr.dll
+ 2004-08-04 05:56:42 44,032 ----a-w C:\WINDOWS\msagent\agentsr.dll
- 2004-08-04 06:56:48 256,512 ----a-w C:\WINDOWS\msagent\agentsvr.exe
+ 2006-10-12 10:09:54 256,512 ----a-w C:\WINDOWS\msagent\agentsvr.exe
- 2004-08-04 06:56:42 24,064 ----a-w C:\WINDOWS\msagent\agtintl.dll
+ 2004-08-04 05:56:42 24,064 ----a-w C:\WINDOWS\msagent\agtintl.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0405.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0405.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0406.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0406.dll
- 2001-08-23 20:00:00 21,504 ----a-w C:\WINDOWS\msagent\intl\agt0407.dll
+ 2001-08-23 19:00:00 21,504 ----a-w C:\WINDOWS\msagent\intl\agt0407.dll
- 2001-08-23 20:00:00 22,016 ----a-w C:\WINDOWS\msagent\intl\agt0408.dll
+ 2001-08-23 19:00:00 22,016 ----a-w C:\WINDOWS\msagent\intl\agt0408.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0409.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0409.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt040b.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt040b.dll
- 2001-08-23 20:00:00 21,504 ----a-w C:\WINDOWS\msagent\intl\agt040c.dll
+ 2001-08-23 19:00:00 21,504 ----a-w C:\WINDOWS\msagent\intl\agt040c.dll
- 2001-08-23 20:00:00 19,968 ----a-w C:\WINDOWS\msagent\intl\agt040e.dll
+ 2001-08-23 19:00:00 19,968 ----a-w C:\WINDOWS\msagent\intl\agt040e.dll
- 2001-08-23 20:00:00 20,992 ----a-w C:\WINDOWS\msagent\intl\agt0410.dll
+ 2001-08-23 19:00:00 20,992 ----a-w C:\WINDOWS\msagent\intl\agt0410.dll
- 2001-08-23 20:00:00 20,992 ----a-w C:\WINDOWS\msagent\intl\agt0413.dll
+ 2001-08-23 19:00:00 20,992 ----a-w C:\WINDOWS\msagent\intl\agt0413.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0414.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0414.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0415.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0415.dll
- 2001-08-23 20:00:00 20,480 ----a-w C:\WINDOWS\msagent\intl\agt0416.dll
+ 2001-08-23 19:00:00 20,480 ----a-w C:\WINDOWS\msagent\intl\agt0416.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0419.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0419.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt041d.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt041d.dll
- 2001-08-23 20:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt041f.dll
+ 2001-08-23 19:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt041f.dll
- 2001-08-23 20:00:00 20,992 ----a-w C:\WINDOWS\msagent\intl\agt0816.dll
+ 2001-08-23 19:00:00 20,992 ----a-w C:\WINDOWS\msagent\intl\agt0816.dll
- 2001-08-23 20:00:00 20,480 ----a-w C:\WINDOWS\msagent\intl\agt0c0a.dll
+ 2001-08-23 19:00:00 20,480 ----a-w C:\WINDOWS\msagent\intl\agt0c0a.dll
- 2004-08-04 06:56:44 39,936 ----a-w C:\WINDOWS\msagent\mslwvtts.dll
+ 2004-08-04 05:56:44 39,936 ----a-w C:\WINDOWS\msagent\mslwvtts.dll
- 2004-08-04 06:56:54 90,624 ----a-w C:\WINDOWS\mui\muisetup.exe
+ 2004-08-04 05:56:54 90,624 ----a-w C:\WINDOWS\mui\muisetup.exe
+ 2006-06-03 11:40:50 33,792 ------w C:\WINDOWS\network diagnostic\custsat.dll
+ 2006-10-10 12:44:50 557,568 ------w C:\WINDOWS\network diagnostic\xpnetdiag.exe
- 2000-08-31 16:00:00 28,160 ----a-w C:\WINDOWS\Nircmd.exe
+ 2000-08-31 15:00:00 28,160 ----a-w C:\WINDOWS\Nircmd.exe
- 2004-08-04 06:56:56 69,120 ----a-w C:\WINDOWS\NOTEPAD.EXE
+ 2004-08-04 05:56:56 69,120 ----a-w C:\WINDOWS\NOTEPAD.EXE
- 2001-08-23 12:00:00 21,504 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\brpinfo.dll
+ 2001-08-23 11:00:00 21,504 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\brpinfo.dll
- 2001-08-23 12:00:00 6,656 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HCAppRes.dll
+ 2001-08-23 11:00:00 6,656 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HCAppRes.dll
- 2004-08-03 22:56:50 768,512 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe
+ 2004-08-03 21:56:50 768,512 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe
- 2001-08-23 12:00:00 99,840 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HelpHost.exe
+ 2001-08-23 11:00:00 99,840 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HelpHost.exe
- 2004-08-03 22:56:52 743,936 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HelpSvc.exe
+ 2004-08-03 21:56:52 743,936 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HelpSvc.exe
- 2004-08-03 22:56:52 18,944 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HscUpd.exe
+ 2004-08-03 21:56:52 18,944 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\HscUpd.exe
- 2004-08-03 22:56:54 158,208 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\msconfig.exe
+ 2004-08-03 21:56:54 158,208 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\msconfig.exe
- 2004-08-03 22:56:44 376,320 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\msinfo.dll
+ 2004-08-03 21:56:44 376,320 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\msinfo.dll
- 2001-08-23 12:00:00 35,328 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\notiflag.exe
+ 2001-08-23 11:00:00 35,328 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\notiflag.exe
- 2004-08-03 22:56:46 102,400 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\pchshell.dll
+ 2004-08-03 21:56:46 102,400 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\pchshell.dll
- 2004-08-03 22:56:46 38,912 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll
+ 2004-08-03 21:56:46 38,912 ----a-w C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll
- 2008-03-18 07:21:08 8,972 ----a-w C:\WINDOWS\pchealth\helpctr\Config\Cntstore.bin
+ 2008-03-18 06:21:08 8,972 ----a-w C:\WINDOWS\pchealth\helpctr\Config\Cntstore.bin
- 2008-03-18 07:22:10 86,327 ----a-w C:\WINDOWS\pchealth\helpctr\OfflineCache\index.dat
+ 2008-03-18 06:22:10 86,327 ----a-w C:\WINDOWS\pchealth\helpctr\OfflineCache\index.dat
- 2004-08-03 22:56:58 150,528 ----a-w C:\WINDOWS\pchealth\UploadLB\Binaries\UploadM.exe
+ 2004-08-03 21:56:58 150,528 ----a-w C:\WINDOWS\pchealth\UploadLB\Binaries\UploadM.exe
- 2004-08-04 06:56:46 151,552 ----a-w C:\WINDOWS\PeerNet\sqldb20.dll
+ 2004-08-04 05:56:46 151,552 ----a-w C:\WINDOWS\PeerNet\sqldb20.dll
- 2004-08-04 06:56:46 462,848 ----a-w C:\WINDOWS\PeerNet\sqlqp20.dll
+ 2004-08-04 05:56:46 462,848 ----a-w C:\WINDOWS\PeerNet\sqlqp20.dll
- 2004-08-04 06:56:46 110,592 ----a-w C:\WINDOWS\PeerNet\sqlse20.dll
+ 2004-08-04 05:56:46 110,592 ----a-w C:\WINDOWS\PeerNet\sqlse20.dll
- 2004-08-04 06:56:56 146,432 ----a-w C:\WINDOWS\regedit.exe
+ 2004-08-04 05:56:56 146,432 ----a-w C:\WINDOWS\regedit.exe
- 2008-03-16 23:28:48 229,376 ---ha-w C:\WINDOWS\repair\ntuser.dat
+ 2008-03-16 22:28:48 229,376 ---ha-w C:\WINDOWS\repair\ntuser.dat
- 2001-08-23 20:00:00 362,496 ----a-w C:\WINDOWS\Resources\Themes\Luna\Shell\Homestead\shellstyle.dll
+ 2001-08-23 19:00:00 362,496 ----a-w C:\WINDOWS\Resources\Themes\Luna\Shell\Homestead\shellstyle.dll
- 2001-08-23 20:00:00 362,496 ----a-w C:\WINDOWS\Resources\Themes\Luna\Shell\Metallic\shellstyle.dll
+ 2001-08-23 19:00:00 362,496 ----a-w C:\WINDOWS\Resources\Themes\Luna\Shell\Metallic\shellstyle.dll
- 2001-08-23 20:00:00 361,472 ----a-w C:\WINDOWS\Resources\Themes\Luna\Shell\NormalColor\shellstyle.dll
+ 2001-08-23 19:00:00 361,472 ----a-w C:\WINDOWS\Resources\Themes\Luna\Shell\NormalColor\shellstyle.dll
+ 2000-08-31 15:00:00 98,816 ----a-w C:\WINDOWS\sed.exe
- 2004-08-04 06:56:46 1,281,536 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2gdr\ole32.dll
- 2001-08-23 20:00:00 68,608 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2gdr\olecli32.dll
- 2001-08-23 20:00:00 34,304 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2gdr\olecnv32.dll
- 2004-08-04 06:56:46 395,776 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2gdr\rpcss.dll
- 2004-08-04 06:56:46 1,281,536 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2qfe\ole32.dll
- 2001-08-23 20:00:00 68,608 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2qfe\olecli32.dll
- 2001-08-23 20:00:00 34,304 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2qfe\olecnv32.dll
- 2004-08-04 06:56:46 395,776 ------w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\backup\sp2qfe\rpcss.dll
- 2005-02-25 04:35:06 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\spmsg.dll
- 2005-02-25 04:35:06 209,632 ----a-w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\spuninst.exe
- 2005-02-25 04:35:06 22,240 ----a-w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\update\spcustom.dll
- 2005-02-25 04:35:06 718,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\update\update.exe
- 2005-02-25 04:35:08 371,936 ----a-w C:\WINDOWS\SoftwareDistribution\Download\00766461b1b00d8469999536d8f8d6e4\update\updspapi.dll
- 2004-08-04 06:56:44 721,920 ------w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\backup\sp2gdr\lsasrv.dll
- 2004-08-04 05:15:18 451,456 ------w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\backup\sp2gdr\mrxsmb.sys
- 2004-08-04 05:20:08 176,512 ------w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\backup\sp2gdr\rdbss.sys
- 2004-08-04 06:56:44 721,920 ------w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\backup\sp2qfe\lsasrv.dll
- 2004-08-04 07:15:18 451,456 ------w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\backup\sp2qfe\mrxsmb.sys
- 2004-08-04 05:20:08 176,512 ------w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\backup\sp2qfe\rdbss.sys
- 2004-10-14 19:34:52 7,168 ----a-w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\spmsg.dll
- 2004-10-14 19:36:18 169,984 ----a-w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\spuninst.exe
- 2004-10-14 19:36:16 21,504 ----a-w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\update\spcustom.dll
- 2004-10-14 19:34:54 654,848 ----a-w C:\WINDOWS\SoftwareDistribution\Download\080070f6461c8001578e5e4cd4bb024b\update\update.exe
- 2001-08-23 20:00:00 144,896 ------w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\backup\sp2gdr\jgdw400.dll
- 2001-08-23 20:00:00 42,496 ------w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\backup\sp2gdr\jgpl400.dll
- 2001-08-23 20:00:00 144,896 ------w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\backup\sp2qfe\jgdw400.dll
- 2001-08-23 20:00:00 42,496 ------w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\backup\sp2qfe\jgpl400.dll
- 2005-10-12 23:12:26 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\spmsg.dll
- 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\spuninst.exe
- 2005-10-12 23:12:26 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\update\spcustom.dll
- 2005-10-12 23:12:30 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\update\update.exe
- 2005-10-12 23:12:34 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\0a120212db9f8797932f46def01672fc\update\updspapi.dll
- 2004-08-04 06:56:46 96,768 ------w C:\WINDOWS\SoftwareDistribution\Download\1d8773e3b9bba05290b442f31de09a2e\backup\sp2gdr\srvsvc.dll
- 2004-08-04 06:56:46 96,768 ------w C:\WINDOWS\SoftwareDistribution\Download\1d8773e3b9bba05290b442f31de09a2e\backup\sp2qfe\srvsvc.dll
- 2004-11-30 22:46:38 7,168 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1d8773e3b9bba05290b442f31de09a2e\spmsg.dll
- 2004-12-01 04:22:42 169,984 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1d8773e3b9bba05290b442f31de09a2e\spuninst.exe
- 2004-12-01 04:22:40 21,504 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1d8773e3b9bba05290b442f31de09a2e\update\spcustom.dll
- 2004-11-30 22:46:40 654,848 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1d8773e3b9bba05290b442f31de09a2e\update\update.exe
- 2004-08-03 22:56:44 345,088 ------w C:\WINDOWS\SoftwareDistribution\Download\1fb659e25c21839251d560da33cbcfad\backup\sp2gdr\hypertrm.dll
- 2004-08-03 22:56:44 345,088 ------w C:\WINDOWS\SoftwareDistribution\Download\1fb659e25c21839251d560da33cbcfad\backup\sp2qfe\hypertrm.dll
- 2004-10-14 18:34:52 7,168 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1fb659e25c21839251d560da33cbcfad\spmsg.dll
- 2004-10-14 18:36:18 169,984 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1fb659e25c21839251d560da33cbcfad\spuninst.exe
- 2004-10-14 18:36:16 21,504 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1fb659e25c21839251d560da33cbcfad\update\spcustom.dll
- 2004-10-14 18:34:54 654,848 ----a-w C:\WINDOWS\SoftwareDistribution\Download\1fb659e25c21839251d560da33cbcfad\update\update.exe
- 2004-08-04 06:56:42 58,880 ------w C:\WINDOWS\SoftwareDistribution\Download\208c1a8c52f47d7b2df4baa21f58d3da\backup\sp2gdr\agentdpv.dll
- 2004-08-04 06:56:42 58,880 ------w C:\WINDOWS\SoftwareDistribution\Download\208c1a8c52f47d7b2df4baa21f58d3da\backup\sp2qfe\agentdpv.dll
- 2005-02-25 04:35:06 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\208c1a8c52f47d7b2df4baa21f58d3da\spmsg.dll
- 2005-02-25 04:35:06 209,632 ----a-w C:\WINDOWS\SoftwareDistribution\Download\208c1a8c52f47d7b2df4baa21f58d3da\spuninst.exe
- 2005-02-25 04:35:06 22,240 ----a-w C:\WINDOWS\SoftwareDistribution\Download\208c1a8c52f47d7b2df4baa21f58d3da\update\spcustom.dll
- 2005-02-25 04:35:06 718,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\208c1a8c52f47d7b2df4baa21f58d3da\update\update.exe
- 2005-02-25 04:35:08 371,936 ----a-w C:\WINDOWS\SoftwareDistribution\Download\208c1a8c52f47d7b2df4baa21f58d3da\update\updspapi.dll
- 2005-10-12 23:12:26 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\299966e551b4462ae94e39e251e277b6\spmsg.dll
- 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\299966e551b4462ae94e39e251e277b6\spuninst.exe
- 2005-10-12 23:12:26 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\299966e551b4462ae94e39e251e277b6\update\spcustom.dll
- 2005-10-12 23:12:30 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\299966e551b4462ae94e39e251e277b6\update\update.exe
- 2005-10-12 23:12:34 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\299966e551b4462ae94e39e251e277b6\update\updspapi.dll
- 2004-08-04 06:56:44 721,920 ------w C:\WINDOWS\SoftwareDistribution\Download\30afadc4c35db2f5d8b4c076a49edc7b\backup\sp2gdr\lsasrv.dll
- 2004-08-04 06:56:44 721,920 ------w C:\WINDOWS\SoftwareDistribution\Download\30afadc4c35db2f5d8b4c076a49edc7b\backup\sp2qfe\lsasrv.dll
- 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\30afadc4c35db2f5d8b4c076a49edc7b\spmsg.dll
- 2007-03-06 01:22:42 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\30afadc4c35db2f5d8b4c076a49edc7b\spuninst.exe
- 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\30afadc4c35db2f5d8b4c076a49edc7b\update\spcustom.dll
- 2007-03-06 01:23:00 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\30afadc4c35db2f5d8b4c076a49edc7b\update\update.exe
- 2007-03-06 01:23:52 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\30afadc4c35db2f5d8b4c076a49edc7b\update\updspapi.dll
- 2004-08-04 06:56:48 713,216 ------w C:\WINDOWS\SoftwareDistribution\Download\33831624a2e810dc854ea2f820d0dd53\backup\sp2gdr\sxs.dll
- 2004-08-04 06:56:48 713,216 ------w C:\WINDOWS\SoftwareDistribution\Download\33831624a2e810dc854ea2f820d0dd53\backup\sp2qfe\sxs.dll
- 2005-10-12 23:12:26 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\33831624a2e810dc854ea2f820d0dd53\spmsg.dll
- 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\33831624a2e810dc854ea2f820d0dd53\spuninst.exe
- 2005-10-12 23:12:26 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\33831624a2e810dc854ea2f820d0dd53\update\spcustom.dll
- 2005-10-12 23:12:30 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\33831624a2e810dc854ea2f820d0dd53\update\update.exe
- 2005-10-12 23:12:34 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\33831624a2e810dc854ea2f820d0dd53\update\updspapi.dll
- 2004-08-04 05:00:58 181,248 ------w C:\WINDOWS\SoftwareDistribution\Download\37fefde58a963f27982e5f97ce053f7f\backup\sp2gdr\mrxdav.sys
- 2004-08-04 05:00:58 181,248 ------w C:\WINDOWS\SoftwareDistribution\Download\37fefde58a963f27982e5f97ce053f7f\backup\sp2qfe\mrxdav.sys
- 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\37fefde58a963f27982e5f97ce053f7f\spmsg.dll
- 2007-03-06 01:22:42 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\37fefde58a963f27982e5f97ce053f7f\spuninst.exe
- 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\37fefde58a963f27982e5f97ce053f7f\update\spcustom.dll
- 2007-03-06 01:23:00 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\37fefde58a963f27982e5f97ce053f7f\update\update.exe
- 2007-03-06 01:23:52 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\37fefde58a963f27982e5f97ce053f7f\update\updspapi.dll
- 2004-08-04 06:56:42 41,984 ------w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\backup\sp2gdr\agentdp2.dll
- 2004-08-04 06:56:42 58,880 ------w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\backup\sp2gdr\agentdpv.dll
- 2004-08-04 06:56:48 256,512 ------w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\backup\sp2gdr\agentsvr.exe
- 2005-10-12 23:16:50 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\spmsg.dll
- 2005-10-12 23:16:50 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\spuninst.exe
- 2005-10-12 23:16:50 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\update\spcustom.dll
- 2005-10-12 23:16:52 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\update\update.exe
- 2005-10-12 23:16:56 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4387300ca1dcf29784a47c30e67cb637\update\updspapi.dll
- 2004-08-03 22:56:44 678,400 ------w C:\WINDOWS\SoftwareDistribution\Download\4b6ccd5ccf72ffca11e7f7e0165f2082\backup\sp2gdr\inetcomm.dll
- 2004-08-03 22:56:44 678,400 ------w C:\WINDOWS\SoftwareDistribution\Download\4b6ccd5ccf72ffca11e7f7e0165f2082\backup\sp2qfe\inetcomm.dll
- 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4b6ccd5ccf72ffca11e7f7e0165f2082\spmsg.dll
- 2007-03-06 01:22:42 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4b6ccd5ccf72ffca11e7f7e0165f2082\spuninst.exe
- 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4b6ccd5ccf72ffca11e7f7e0165f2082\update\spcustom.dll
- 2007-03-06 01:23:00 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4b6ccd5ccf72ffca11e7f7e0165f2082\update\update.exe
- 2007-03-06 01:23:52 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4b6ccd5ccf72ffca11e7f7e0165f2082\update\updspapi.dll
- 2004-08-04 06:56:42 2,067,968 ------w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\backup\sp2gdr\cdosys.dll
- 2004-08-04 06:56:42 2,067,968 ------w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\backup\sp2qfe\cdosys.dll
- 2005-02-25 04:35:06 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\spmsg.dll
- 2005-02-25 04:35:06 209,632 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\spuninst.exe
- 2005-09-10 00:26:26 30,720 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\update\arpidfix.exe
- 2005-02-25 04:35:06 22,240 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\update\spcustom.dll
- 2005-02-25 04:35:06 718,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\update\update.exe
- 2005-02-25 04:35:08 371,936 ----a-w C:\WINDOWS\SoftwareDistribution\Download\4cbc0c1da652794a86c37dbd177bef9d\update\updspapi.dll
- 2004-08-04 06:56:46 1,236,480 ------w C:\WINDOWS\SoftwareDistribution\Download\50d0c9ff929a7477233edd0771ffdb01\backup\sp2gdr\msxml3.dll
- 2004-08-04 06:56:46 1,236,480 ------w C:\WINDOWS\SoftwareDistribution\Download\50d0c9ff929a7477233edd0771ffdb01\backup\sp2qfe\msxml3.dll
- 2005-10-12 23:12:26 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\50d0c9ff929a7477233edd0771ffdb01\spmsg.dll
- 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\50d0c9ff929a7477233edd0771ffdb01\spuninst.exe
- 2005-10-12 23:12:26 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\50d0c9ff929a7477233edd0771ffdb01\update\spcustom.dll
- 2005-10-12 23:12:30 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\50d0c9ff929a7477233edd0771ffdb01\update\update.exe
- 2005-10-12 23:12:34 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\50d0c9ff929a7477233edd0771ffdb01\update\updspapi.dll
- 2001-08-23 20:00:00 200,064 ------w C:\WINDOWS\SoftwareDistribution\Download\52b72a8354f3c8a72b1aee0b2a11d368\backup\sp2gdr\rmcast.sys
- 2001-08-23 20:00:00 200,064 ------w C:\WINDOWS\SoftwareDistribution\Download\52b72a8354f3c8a72b1aee0b2a11d368\backup\sp2qfe\rmcast.sys
- 2005-10-12 23:12:26 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\52b72a8354f3c8a72b1aee0b2a11d368\spmsg.dll
- 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\52b72a8354f3c8a72b1aee0b2a11d368\spuninst.exe
- 2005-10-12 23:12:26 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\52b72a8354f3c8a72b1aee0b2a11d368\update\spcustom.dll
- 2005-10-12 23:12:30 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\52b72a8354f3c8a72b1aee0b2a11d368\update\update.exe
- 2005-10-12 23:12:34 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\52b72a8354f3c8a72b1aee0b2a11d368\update\updspapi.dll
- 2004-08-04 06:56:48 67,584 ------w C:\WINDOWS\SoftwareDistribution\Download\55b5c397ff94db07e8c1c336efaf0a7b\backup\sp2gdr\webclnt.dll
- 2004-08-04 06:56:48 67,584 ------w C:\WINDOWS\SoftwareDistribution\Download\55b5c397ff94db07e8c1c336efaf0a7b\backup\sp2qfe\webclnt.dll
- 2005-10-12 23:12:26 14,048 ----a-w C:\WINDOWS\SoftwareDistribution\Download\55b5c397ff94db07e8c1c336efaf0a7b\spmsg.dll
- 2005-10-12 23:12:26 213,216 ----a-w C:\WINDOWS\SoftwareDistribution\Download\55b5c397ff94db07e8c1c336efaf0a7b\spuninst.exe
- 2005-10-12 23:12:26 22,752 ----a-w C:\WINDOWS\SoftwareDistribution\Download\55b5c397ff94db07e8c1c336efaf0a7b\update\spcustom.dll
- 2005-10-12 23:12:30 716,000 ----a-w C:\WINDOWS\SoftwareDistribution\Download\55b5c397ff94db07e8c1c336efaf0a7b\update\update.exe
- 2005-10-12 23:12:34 371,424 ----a-w C:\WINDOWS\SoftwareDistribution\Download\55b5c397ff94db07e8c1c336efaf0a7b\update\updspapi.dll
- 2004-08-04 06:56:42 56,832 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\authz.dll
- 2004-08-04 07:18:32 2,148,352 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\ntkrnlmp.exe
- 2004-08-04 07:05:44 2,056,832 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\ntkrnlpa.exe
- 2004-08-04 06:59:02 2,015,232 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\ntkrpamp.exe
- 2004-08-04 05:20:00 2,180,992 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\ntoskrnl.exe
- 2004-08-04 06:56:48 577,024 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\user32.dll
- 2004-08-04 05:17:42 1,835,904 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\win32k.sys
- 2004-08-04 06:56:48 290,816 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2gdr\winsrv.dll
- 2004-08-04 06:56:42 56,832 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2qfe\authz.dll
- 2004-08-04 07:18:32 2,148,352 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2qfe\ntkrnlmp.exe
- 2004-08-04 06:59:00 2,056,832 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2qfe\ntkrnlpa.exe
- 2004-08-04 06:59:02 2,015,232 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2qfe\ntkrpamp.exe
- 2004-08-04 07:20:00 2,180,992 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2qfe\ntoskrnl.exe
- 2004-08-04 06:56:48 577,024 ------w C:\WINDOWS\SoftwareDistribution\Download\5652d934eec8bfa4dc68c4e256a23d5e\backup\sp2qfe\user32.dll
- 2004-08-04 05:17:42 1,835,904 ------w C:\WINDOW