Logfile of random's system information tool 1.07 (written by random/random)
Run by Admin at 2010-07-13 14:28:33
Microsoft Windows XP Professional Service Pack 3
System drive E: has 60 GB (78%) free of 76 GB
Total RAM: 2047 MB (74% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:28:42, on 13.07.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe
E:\WINDOWS\system32\RUNDLL32.EXE
E:\Program Files\Common Files\Canopus Shared\ProCoder 2\Kernel\PNXSERVR.exe
E:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
E:\Program Files\QuickTime\qttask.exe
E:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
E:\WINDOWS\RTHDCPL.EXE
E:\Program Files\SSC Service Utility\ssc_serv.exe
E:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe
E:\WINDOWS\system32\SupportAppXL\AutoDect.exe
E:\Program Files\DivX\DivX Update\DivXUpdate.exe
E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
E:\Program Files\VistaDriveIcon\VistaDrv.exe
E:\Program Files\Punto Switcher\punto.exe
E:\Documents and Settings\Admin\Application Data\QipGuard\QipGuard.exe
E:\Program Files\Download Master\dmaster.exe
E:\Program Files\Java\jre6\bin\jqs.exe
E:\Program Files\Topica\TipTop\Svetophone.exe
E:\WINDOWS\system32\nvsvc32.exe
E:\Program Files\APC\APC PowerChute Personal Edition\apcsystray.exe
E:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
E:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
E:\WINDOWS\system32\wscntfy.exe
E:\WINDOWS\system32\wuauclt.exe
E:\Program Files\Mozilla Firefox\firefox.exe
C:\Downloads\avz4\avz.exe
C:\Downloads\RSIT.exe
E:\Program Files\trend micro\Admin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.modem.beeline.ru
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - E:\Documents and Settings\Admin\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: (no name) -  - (no file)
O2 - BHO: QipLI - {6B5863A0-C43F-4C0A-982B-CC0E9125783F} - E:\Documents and Settings\Admin\Application Data\Microsoft\Internet Explorer\qstatsrv.dll
O2 - BHO: IE 4.x-6.x BHO for Download Master - {9961627E-4059-41B4-8E0E-A7D6B3854ADF} - E:\PROGRA~1\DOWNLO~1\dmiehlp.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - E:\Documents and Settings\Admin\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE E:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE E:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NexusServer] "E:\Program Files\Common Files\Canopus Shared\ProCoder 2\Kernel\PNXSERVR.exe" -SelfLaunch
O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SSC Service Utility] E:\Program Files\SSC Service Utility\ssc_serv.exe /s
O4 - HKLM\..\Run: [PinnacleDriverCheck] E:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [BtTray] "E:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe"
O4 - HKLM\..\Run: [autodetect] E:\WINDOWS\system32\SupportAppXL\AutoDect.exe
O4 - HKLM\..\Run: [DivXUpdate] "E:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [egui] "E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [VistaIcon] E:\Program Files\VistaDriveIcon\VistaDrv.exe
O4 - HKCU\..\Run: [Punto Switcher] E:\Program Files\Punto Switcher\punto.exe
O4 - HKCU\..\Run: [QIP Internet Guardian] E:\Documents and Settings\Admin\Application Data\QipGuard\QipGuard.exe
O4 - HKCU\..\Run: [Download Master] E:\Program Files\Download Master\dmaster.exe -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [VistaIcon] E:\Program Files\VistaDriveIcon\VistaDrv.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [ZZZZ1_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection E:\WINDOWS\INF\custom.inf,OnceFirstLogonInstall,0 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [IE7_012] rundll32 advpack.dll,LaunchINFSectionEx IE7int.inf,AfterUserStart,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [ZZZZ1_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection E:\WINDOWS\INF\custom.inf,OnceFirstLogonInstall,0 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [VistaIcon] E:\Program Files\VistaDriveIcon\VistaDrv.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [ZZZZ2_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection E:\WINDOWS\INF\custom.inf,NewUserFirstLogonInstall,0 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [VistaIcon] E:\Program Files\VistaDriveIcon\VistaDrv.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [ZZZZ2_FirstLogonSetting] %SystemRoot%\System32\rundll32.exe advpack.dll,LaunchINFSection E:\WINDOWS\INF\custom.inf,NewUserFirstLogonInstall,0 (User 'Default user')
O4 - Startup: Outpost Security Suite Pro.lnk = E:\Program Files\Agnitum\Outpost Security Suite Pro\op_mon.exe
O4 - Startup: setup_9.0.0.722_13.07.2010_07-56.lnk = ?
O4 - Startup: TipTop.lnk = ?
O4 - Global Startup: APC UPS Status.lnk = ?
O8 - Extra context menu item: &  Microsoft Excel - res://E:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item:     Download Master - E:\Program Files\Download Master\dmieall.htm
O8 - Extra context menu item:    Download Master - E:\Program Files\Download Master\dmie.htm
O8 - Extra context menu item:   (&M)... - E:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O8 - Extra context menu item:   Bluetooth - E:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item:   TIP-TOP - res://E:\Program Files\Topica\TipTop\Svetophone.exe/CALL.HTML
O9 - Extra button: Download Master - {8DAE90AD-4583-4977-9DD4-4360F7A45C74} - E:\Program Files\Download Master\dmaster.exe
O9 - Extra 'Tools' menuitem: &Download Master - {8DAE90AD-4583-4977-9DD4-4360F7A45C74} - E:\Program Files\Download Master\dmaster.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{2B56123A-3D51-49B7-B748-A28C2CC5F4F0}: NameServer = 217.114.0.66 217.114.0.60
O17 - HKLM\System\CCS\Services\Tcpip\..\{63C25E34-1BF9-46B2-A882-4CB2507C3570}: NameServer = 217.114.10.10
O17 - HKLM\System\CCS\Services\Tcpip\..\{CC126B9B-ACF3-4757-A2DA-AEF4C824210C}: NameServer = 217.114.0.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{2B56123A-3D51-49B7-B748-A28C2CC5F4F0}: NameServer = 217.114.0.66 217.114.0.60
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - E:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler:  Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler:     - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: APC UPS Service - American Power Conversion Corporation - E:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe
O23 - Service: BlueSoleilCS - Unknown owner - E:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - Unknown owner - E:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - Unknown owner - E:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - E:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service:   (Eventlog) -   - E:\WINDOWS\system32\services.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - E:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service:  COM  - IMAPI (ImapiService) -   - E:\WINDOWS\system32\imapi.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - E:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Plug and Play (PlugPlay) -   - E:\WINDOWS\system32\services.exe
O23 - Service:        (RDSessMgr) -   - E:\WINDOWS\system32\sessmgr.exe
O23 - Service: - (SCardSvr) -   - E:\WINDOWS\System32\SCardSvr.exe
O23 - Service:     (SysmonLog) -   - E:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - E:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service:    (VSS) -   - E:\WINDOWS\System32\vssvc.exe
O23 - Service:   WMI (WmiApSrv) -   - E:\WINDOWS\system32\wbem\wmiapsrv.exe

--
End of file - 11511 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B5863A0-C43F-4C0A-982B-CC0E9125783F}]
QipLI Class - E:\Documents and Settings\Admin\Application Data\Microsoft\Internet Explorer\qstatsrv.dll [2010-04-12 45568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9961627E-4059-41B4-8E0E-A7D6B3854ADF}]
IE 4.x-6.x BHO for Download Master - E:\PROGRA~1\DOWNLO~1\dmiehlp.dll [2008-10-24 157696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - E:\Documents and Settings\Admin\Application Data\Microsoft\Internet Explorer\qipsearchbar.dll [2010-04-12 149968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-22 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-22 73728]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=E:\WINDOWS\system32\NvCpl.dll [2009-01-15 13680640]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=E:\WINDOWS\system32\NvMcTray.dll [2009-01-15 86016]
"NeroFilterCheck"=E:\WINDOWS\system32\NeroCheck.exe [2006-01-12 155648]
"NexusServer"=E:\Program Files\Common Files\Canopus Shared\ProCoder 2\Kernel\PNXSERVR.exe [2004-04-28 188416]
"QuickTime Task"=E:\Program Files\QuickTime\qttask.exe [2010-04-23 98304]
"SkyTel"=E:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"RTHDCPL"=E:\WINDOWS\RTHDCPL.EXE [2006-08-01 16049664]
"Alcmtr"=E:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"SSC Service Utility"=E:\Program Files\SSC Service Utility\ssc_serv.exe [2006-10-16 487936]
"PinnacleDriverCheck"=E:\WINDOWS\system32\PSDrvCheck.exe [2004-03-10 406016]
"BtTray"=E:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe [2009-01-13 278528]
"autodetect"=E:\WINDOWS\system32\SupportAppXL\AutoDect.exe [2009-03-16 91648]
"DivXUpdate"=E:\Program Files\DivX\DivX Update\DivXUpdate.exe [2010-06-03 1144104]
"egui"=E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-03-19 2029640]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"VistaIcon"=E:\Program Files\VistaDriveIcon\VistaDrv.exe [2008-01-02 132096]
"Punto Switcher"=E:\Program Files\Punto Switcher\punto.exe [2008-10-30 734504]
"QIP Internet Guardian"=E:\Documents and Settings\Admin\Application Data\QipGuard\QipGuard.exe [2010-04-12 181760]
"Download Master"=E:\Program Files\Download Master\dmaster.exe [2009-02-08 3755520]

E:\Documents and Settings\All Users\ \\
APC UPS Status.lnk - E:\Program Files\APC\APC PowerChute Personal Edition\Display.exe

E:\Documents and Settings\Admin\ \\
Outpost Security Suite Pro.lnk - E:\Program Files\Agnitum\Outpost Security Suite Pro\op_mon.exe
setup_9.0.0.722_13.07.2010_07-56.lnk - E:\Documents and Settings\Admin\ \Virus Removal Tool\setup_9.0.0.722_13.07.2010_07-56\startup.exe
TipTop.lnk - E:\Documents and Settings\Admin\Application Data\Microsoft\Installer\{3A9A0EE9-9589-46E6-95E8-CDE296F615BA}\IconED1AC2E2.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\wpdshserviceobj.dll [2008-03-02 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoSharedDocuments"=1
"NoSMConfigurePrograms"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"F:\\\Crack\BlueSoleilCS.exe"="F:\\\Crack\BlueSoleilCS.exe:*:Enabled:BlueSoleilCS"
"E:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe"="E:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe:*:Enabled:BlueSoleilCS"
"E:\Program Files\Skype\Plugin Manager\skypePM.exe"="E:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"E:\Program Files\Skype\Phone\Skype.exe"="E:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{11f8b8c2-79d9-11df-8eda-0016e6861f95}]
shell\AutoRun\command - J:\Driver\Files\Drago.exe
shell\open\command - J:\Driver\Files\Drago.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2b479add-7845-11df-8ed7-0016e6861f95}]
shell\AutoRun\command - J:\Driver\Files\Drago.exe
shell\open\command - J:\Driver\Files\Drago.exe


======File associations======

.js - edit - "E:\Program Files\Macromedia\Dreamweaver 8\dreamweaver.exe" "%1"

======List of files/folders created in the last 3 months======

2010-07-15 20:17:27 ----A---- E:\Program Files\Common Files\keylog.txt
2010-07-13 12:21:00 ----A---- E:\WINDOWS\system32\mSI4fiX.exe
2010-07-13 10:34:50 ----A---- E:\WINDOWS\system32\lLyuHMX.exe
2010-07-11 12:32:25 ----D---- E:\Program Files\ESET
2010-07-11 12:32:25 ----D---- E:\Documents and Settings\All Users\Application Data\ESET
2010-07-10 15:05:07 ----D---- E:\Program Files\Common Files\Symantec Shared
2010-07-10 15:01:19 ----D---- E:\Documents and Settings\All Users\Application Data\Symantec
2010-07-10 15:01:19 ----D---- E:\Documents and Settings\All Users\Application Data\Norton
2010-07-10 15:01:15 ----D---- E:\Documents and Settings\All Users\Application Data\NortonInstaller
2010-07-09 10:45:45 ----SHD---- E:\Config.Msi
2010-07-08 14:53:07 ----D---- E:\Documents and Settings\Admin\Application Data\EPSON
2010-07-08 14:06:10 ----D---- E:\Program Files\Photo Print Pilot
2010-07-08 14:02:47 ----N---- E:\WINDOWS\system32\spmsg.dll
2010-07-08 14:02:47 ----A---- E:\WINDOWS\system32\spupdsvc.exe
2010-07-08 13:59:35 ----HDC---- E:\WINDOWS\ie8
2010-07-08 13:58:07 ----D---- E:\8bac0b04cfe47dc41f4de0b6
2010-07-08 13:16:49 ----D---- E:\rsit
2010-07-08 13:16:49 ----D---- E:\Program Files\trend micro
2010-07-06 12:37:33 ----SHD---- E:\found.000
2010-07-04 16:05:30 ----D---- E:\Documents and Settings\Admin\Application Data\Grym
2010-07-04 16:03:20 ----D---- E:\Program Files\2gis
2010-07-04 16:03:20 ----D---- E:\Documents and Settings\All Users\Application Data\2GIS
2010-07-02 12:14:37 ----D---- E:\Program Files\Topica
2010-06-29 20:30:40 ----D---- E:\Documents and Settings\Admin\Application Data\StreamTorrent
2010-06-29 20:30:36 ----D---- E:\Program Files\StreamTorrent 1.0
2010-06-28 12:59:57 ----A---- E:\WINDOWS\ModemLog_ZTE Proprietary USB Modem.txt
2010-06-28 12:57:57 ----D---- E:\WINDOWS\system32\SupportAppXL
2010-06-28 12:57:48 ----D---- E:\Program Files\ZTEMF626
2010-06-27 17:44:32 ----D---- E:\Program Files\Mozilla Firefox
2010-06-27 17:44:19 ----A---- E:\WINDOWS\WPI_Log_2010.06.27_17.44.19.txt
2010-06-27 11:23:54 ----D---- E:\WINDOWS\CSC
2010-06-27 10:13:31 ----A---- E:\WINDOWS\ntbtlog.txt
2010-06-15 10:56:11 ----D---- E:\Documents and Settings\Admin\Application Data\CyberLink
2010-06-15 10:54:25 ----D---- E:\Documents and Settings\All Users\Application Data\CyberLink
2010-06-15 10:54:14 ----D---- E:\Program Files\CyberLink
2010-06-12 15:15:01 ----D---- E:\Program Files\Spybot - Search & Destroy
2010-06-12 15:15:01 ----D---- E:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2010-06-11 09:20:03 ----D---- E:\Documents and Settings\Admin\Application Data\skypePM
2010-06-11 09:19:46 ----D---- E:\Program Files\Common Files\Skype
2010-06-11 09:19:12 ----D---- E:\Documents and Settings\All Users\Application Data\Skype
2010-06-10 14:35:18 ----A---- E:\WINDOWS\system32\SHORTCUT.INI
2010-06-10 14:34:26 ----A---- E:\WINDOWS\system32\REMOTEDEVICE.INI
2010-06-10 14:33:04 ----A---- E:\WINDOWS\system32\LOCALSERVICE.INI
2010-06-10 14:33:04 ----A---- E:\WINDOWS\system32\LOCALDEVICE.INI
2010-06-10 14:28:38 ----A---- E:\WINDOWS\system32\BSPRINT.INI
2010-06-10 14:27:12 ----D---- E:\Program Files\IVT Corporation
2010-06-06 16:13:10 ----D---- E:\Documents and Settings\All Users\Application Data\Google
2010-06-03 18:06:25 ----D---- E:\Documents and Settings\Admin\Application Data\DivX
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\vxblock.dll
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxwave.dll
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxsfs.dll
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxmas.dll
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxinsi64.exe
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxinsa64.exe
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxhpinst.exe
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxdrv.dll
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxcpyi64.exe
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxcpya64.exe
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\pxafs.dll
2010-06-03 18:06:11 ----N---- E:\WINDOWS\system32\px.dll
2010-06-03 18:05:56 ----D---- E:\Program Files\Common Files\DivX Shared
2010-06-03 18:03:34 ----D---- E:\Program Files\Google
2010-06-03 18:03:00 ----D---- E:\Documents and Settings\All Users\Application Data\DivX
2010-05-29 19:24:08 ----D---- E:\Program Files\Haali
2010-05-27 13:28:38 ----A---- E:\WINDOWS\system32\qtintf.dll
2010-05-27 13:28:35 ----D---- E:\Program Files\APC
2010-05-05 23:52:55 ----D---- E:\WINDOWS\system32\appmgmt
2010-05-05 23:52:54 ----D---- E:\Documents and Settings\All Users\Application Data\FLEXnet
2010-05-01 11:00:59 ----D---- E:\Documents and Settings\Admin\Application Data\Publish Providers
2010-05-01 11:00:59 ----D---- E:\Documents and Settings\Admin\Application Data\NetMedia Providers
2010-05-01 11:00:56 ----D---- E:\Documents and Settings\Admin\Application Data\Sonic Foundry
2010-05-01 11:00:21 ----D---- E:\Program Files\Sonic Foundry
2010-05-01 10:59:55 ----D---- E:\Program Files\Sonic Foundry Setup
2010-05-01 10:48:33 ----D---- E:\Documents and Settings\Admin\Application Data\Sony
2010-05-01 10:47:29 ----D---- E:\Program Files\Sony
2010-05-01 10:47:27 ----A---- E:\WINDOWS\system32\wmvdmoe.dll
2010-05-01 10:47:27 ----A---- E:\WINDOWS\system32\wmvcore2.dll
2010-05-01 10:47:27 ----A---- E:\WINDOWS\system32\wmv8dmoe.dll
2010-05-01 10:47:27 ----A---- E:\WINDOWS\system32\wmv8dmod.dll
2010-05-01 10:46:53 ----D---- E:\Program Files\Sony Setup
2010-04-30 14:51:02 ----D---- E:\WINDOWS\Sun
2010-04-30 13:56:13 ----A---- E:\WINDOWS\system32\ssubtmr6.dll
2010-04-30 13:56:12 ----A---- E:\WINDOWS\system32\Codejock.CommandBars.Unicode.v12.1.1.ocx
2010-04-30 13:56:00 ----D---- E:\Program Files\OrlSoft Music Manager
2010-04-30 13:50:13 ----D---- E:\Program Files\DietMP3
2010-04-30 13:39:25 ----D---- E:\Documents and Settings\Admin\Application Data\Free Audio Editor
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTWMAFile2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTTextToAudio2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioVisualization2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioTransform2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioRecord2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioPlayer2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioInformation2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioFile2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioEditor2.dll
2010-04-30 13:38:56 ----A---- E:\WINDOWS\system32\NCTAudioCDGrabber2.dll
2010-04-30 13:38:53 ----D---- E:\Program Files\Free Audio Editor
2010-04-27 11:05:10 ----D---- E:\Documents and Settings\All Users\Application Data\UDL
2010-04-27 11:04:14 ----A---- E:\WINDOWS\system32\PICSDK2.dll
2010-04-27 11:04:14 ----A---- E:\WINDOWS\system32\PICSDK.ini
2010-04-27 11:04:14 ----A---- E:\WINDOWS\system32\PICSDK.dll
2010-04-27 11:04:14 ----A---- E:\WINDOWS\system32\PICEntry.dll
2010-04-27 11:04:14 ----A---- E:\WINDOWS\system32\EpPicPrt.dll
2010-04-27 11:04:13 ----A---- E:\WINDOWS\system32\EPPicMgr.dll
2010-04-27 11:04:09 ----D---- E:\Documents and Settings\Admin\Application Data\InstallShield
2010-04-27 11:02:16 ----A---- E:\WINDOWS\system32\E_DCINST.DLL
2010-04-27 11:02:15 ----A---- E:\WINDOWS\system32\ECBTEG.DLL
2010-04-27 11:02:15 ----A---- E:\WINDOWS\system32\EBPMON24.DLL
2010-04-27 11:02:15 ----A---- E:\WINDOWS\system32\EBPCHP.DLL
2010-04-27 11:01:17 ----D---- E:\Program Files\EPSON
2010-04-27 11:01:08 ----A---- E:\WINDOWS\EPSTPLOG.TXT
2010-04-27 10:54:24 ----D---- E:\Program Files\SSC Service Utility
2010-04-26 15:42:40 ----D---- E:\Documents and Settings\Admin\Application Data\Thinstall
2010-04-26 14:25:04 ----D---- E:\Documents and Settings\Admin\Application Data\Radmin
2010-04-25 16:38:44 ----D---- E:\Documents and Settings\Admin\Application Data\Ulead Systems
2010-04-25 16:37:57 ----D---- E:\WINDOWS\system32\windows media
2010-04-25 16:37:53 ----D---- E:\WINDOWS\RegisteredPackages
2010-04-25 16:37:50 ----D---- E:\Program Files\Windows Media Components
2010-04-25 16:37:22 ----D---- E:\Program Files\Common Files\SONY Digital Images
2010-04-25 16:36:35 ----D---- E:\Program Files\Ulead Systems
2010-04-25 16:36:34 ----D---- E:\Program Files\Common Files\Ulead Systems
2010-04-25 16:36:34 ----D---- E:\Documents and Settings\All Users\Application Data\Ulead Systems
2010-04-23 15:48:48 ----D---- E:\Documents and Settings\Admin\Application Data\SmileManager for QIP 2005
2010-04-23 15:27:36 ----D---- E:\Program Files\VirtualDub
2010-04-23 12:12:56 ----D---- E:\Program Files\SmartSound Software Inc
2010-04-23 12:00:10 ----N---- E:\WINDOWS\system32\vdrmux.dll
2010-04-23 12:00:10 ----N---- E:\WINDOWS\system32\vdrcodec.dll
2010-04-23 12:00:10 ----N---- E:\WINDOWS\system32\RALMain.dll
2010-04-23 12:00:10 ----N---- E:\WINDOWS\system32\pvmjpg21.dll
2010-04-23 12:00:10 ----N---- E:\WINDOWS\system32\DiskIO.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\msxml4a.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\MMAviAx.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\MLPagAx.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\ltkrn13n.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\ltfil13n.DLL
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\LTCLR13n.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\Lfwmf13n.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\lftif13n.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\lftga13n.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\langserv.dll
2010-04-23 12:00:09 ----N---- E:\WINDOWS\system32\Aviprax.dll
2010-04-23 12:00:09 ----A---- E:\WINDOWS\system32\Cachex.dll
2010-04-23 12:00:08 ----N---- E:\WINDOWS\system32\Lfpct13n.dll
2010-04-23 12:00:08 ----N---- E:\WINDOWS\system32\LFJ2K13n.dll
2010-04-23 12:00:08 ----N---- E:\WINDOWS\system32\lffax13n.dll
2010-04-23 12:00:08 ----N---- E:\WINDOWS\system32\LFCMP13n.DLL
2010-04-23 12:00:08 ----N---- E:\WINDOWS\system32\lfbmp13n.dll
2010-04-23 11:57:53 ----A---- E:\WINDOWS\system32\PSDrvCheck.exe
2010-04-23 11:57:52 ----A---- E:\WINDOWS\system32\asapi.dll
2010-04-23 11:57:20 ----A---- E:\WINDOWS\system32\pclepim1.dll
2010-04-23 11:57:17 ----A---- E:\WINDOWS\system32\PCLEGetGuid.dll
2010-04-23 10:10:24 ----D---- E:\Documents and Settings\Admin\Application Data\Skype
2010-04-23 09:29:23 ----D---- E:\WINDOWS\system32\ReinstallBackups
2010-04-23 09:29:15 ----A---- E:\WINDOWS\Alcmtr.exe
2010-04-23 09:19:34 ----A---- E:\WINDOWS\system32\RtlCPAPI.dll
2010-04-23 09:19:34 ----A---- E:\WINDOWS\system32\ChCfg.exe
2010-04-23 09:18:34 ----D---- E:\Program Files\Realtek
2010-04-23 09:18:28 ----R---- E:\WINDOWS\RtlExUpd.dll
2010-04-23 09:11:24 ----SHD---- E:\RECYCLER
2010-04-23 08:53:43 ----D---- E:\Documents and Settings\All Users\Application Data\Pinnacle
2010-04-23 08:53:42 ----D---- E:\Program Files\Pinnacle
2010-04-23 08:45:41 ----D---- E:\Documents and Settings\Admin\Application Data\WinRAR
2010-04-23 08:42:25 ----D---- E:\Documents and Settings\Admin\Application Data\FieryAds
2010-04-23 08:17:07 ----D---- E:\Program Files\Elaborate Bytes
2010-04-23 08:16:01 ----D---- E:\Program Files\SlySoft
2010-04-23 08:14:16 ----D---- E:\Documents and Settings\Admin\Application Data\Canopus
2010-04-23 08:13:36 ----A---- E:\WINDOWS\unvise32qt.exe
2010-04-23 08:13:17 ----D---- E:\WINDOWS\system32\QuickTime
2010-04-23 08:13:17 ----D---- E:\Program Files\QuickTime
2010-04-23 08:12:06 ----D---- E:\Documents and Settings\All Users\Application Data\QuickTime
2010-04-23 08:10:43 ----D---- E:\Documents and Settings\All Users\Application Data\Canopus
2010-04-23 08:07:22 ----A---- E:\WINDOWS\system32\haspvdd.dll
2010-04-23 08:04:31 ----A---- E:\WINDOWS\unvise32.exe
2010-04-23 08:03:58 ----D---- E:\Program Files\DivX
2010-04-23 08:03:36 ----D---- E:\Program Files\Common Files\Canopus Shared
2010-04-23 08:03:36 ----A---- E:\WINDOWS\system32\hlcdvc.dll
2010-04-23 08:03:36 ----A---- E:\WINDOWS\system32\csthread.dll
2010-04-23 08:03:36 ----A---- E:\WINDOWS\system32\csedvh.dll
2010-04-23 08:03:36 ----A---- E:\WINDOWS\system32\csedv.dll
2010-04-23 08:03:36 ----A---- E:\WINDOWS\system32\csccdvcx.dll
2010-04-23 08:03:36 ----A---- E:\WINDOWS\system32\csccdvc.dll
2010-04-23 08:03:36 ----A---- E:\WINDOWS\system32\cdvccodc.dll
2010-04-23 08:03:35 ----D---- E:\Program Files\Canopus
2010-04-23 08:03:34 ----HD---- E:\Program Files\InstallShield Installation Information
2010-04-23 07:52:00 ----D---- E:\Documents and Settings\Admin\Application Data\QIP
2010-04-23 07:43:19 ----AD---- E:\Documents and Settings\All Users\Application Data\TEMP
2010-04-23 07:43:02 ----D---- E:\Documents and Settings\Admin\Application Data\AnvSoft
2010-04-23 07:42:59 ----D---- E:\Program Files\AnvSoft
2010-04-22 23:40:17 ----D---- E:\Documents and Settings\Admin\Application Data\QipGuard
2010-04-22 22:35:27 ----A---- E:\WINDOWS\system32\h323log.txt
2010-04-22 22:34:51 ----D---- E:\WINDOWS\system32\RTCOM
2010-04-22 22:34:49 ----A---- E:\WINDOWS\system32\ksuser.dll
2010-04-22 22:33:37 ----A---- E:\WINDOWS\system32\nwiz.exe
2010-04-22 22:33:37 ----A---- E:\WINDOWS\system32\nvwrseng.dll
2010-04-22 22:33:37 ----A---- E:\WINDOWS\system32\nvwimg.dll
2010-04-22 22:33:37 ----A---- E:\WINDOWS\system32\nvwdmcpl.dll
2010-04-22 22:33:37 ----A---- E:\WINDOWS\system32\nvrseng.dll
2010-04-22 22:33:37 ----A---- E:\WINDOWS\system32\nvcpluir.dll
2010-04-22 22:33:37 ----A---- E:\WINDOWS\system32\nvcplui.exe
2010-04-22 22:33:36 ----D---- E:\WINDOWS\nview
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\nvuninst.exe
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\nvudisp.exe
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\nvshell.dll
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\nview.dll
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\nvdspsch.exe
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\nvcolor.exe
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\nvappbar.exe
2010-04-22 22:33:36 ----A---- E:\WINDOWS\system32\keystone.exe
2010-04-22 22:33:05 ----A---- E:\WINDOWS\system32\usbui.dll
2010-04-22 22:30:02 ----A---- E:\WINDOWS\imsins.BAK
2010-04-22 22:29:59 ----A---- E:\WINDOWS\system32\PerfStringBackup.INI
2010-04-22 22:29:58 ----SHD---- E:\WINDOWS\Installer
2010-04-22 22:29:58 ----D---- E:\Program Files\Common Files\ODBC
2010-04-22 22:29:58 ----A---- E:\WINDOWS\ODBCINST.INI
2010-04-22 22:29:54 ----D---- E:\Program Files\Common Files\SpeechEngines
2010-04-22 22:29:53 ----RD---- E:\Program Files
2010-04-22 22:29:53 ----D---- E:\Program Files\Common Files\Microsoft Shared
2010-04-22 22:29:53 ----D---- E:\Program Files\Common Files
2010-04-22 22:29:50 ----RA---- E:\WINDOWS\system32\kbdtuq.dll
2010-04-22 22:29:50 ----RA---- E:\WINDOWS\system32\kbdtuf.dll
2010-04-22 22:29:50 ----RA---- E:\WINDOWS\system32\kbdazel.dll
2010-04-22 22:29:48 ----RA---- E:\WINDOWS\system32\kbdhept.dll
2010-04-22 22:29:48 ----RA---- E:\WINDOWS\system32\kbdhela3.dll
2010-04-22 22:29:48 ----RA---- E:\WINDOWS\system32\kbdhela2.dll
2010-04-22 22:29:48 ----RA---- E:\WINDOWS\system32\kbdhe319.dll
2010-04-22 22:29:48 ----RA---- E:\WINDOWS\system32\kbdhe220.dll
2010-04-22 22:29:48 ----RA---- E:\WINDOWS\system32\kbdhe.dll
2010-04-22 22:29:48 ----RA---- E:\WINDOWS\system32\kbdgkl.dll
2010-04-22 22:29:47 ----RA---- E:\WINDOWS\system32\kbdlv1.dll
2010-04-22 22:29:47 ----RA---- E:\WINDOWS\system32\kbdlv.dll
2010-04-22 22:29:47 ----RA---- E:\WINDOWS\system32\kbdlt1.dll
2010-04-22 22:29:47 ----RA---- E:\WINDOWS\system32\kbdlt.dll
2010-04-22 22:29:47 ----RA---- E:\WINDOWS\system32\kbdest.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdycl.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdsl1.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdsl.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdro.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdpl1.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdpl.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdhu1.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdhu.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdcz2.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdcz1.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdcz.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\kbdcr.dll
2010-04-22 22:29:45 ----RA---- E:\WINDOWS\system32\KBDAL.DLL
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdycc.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbduzb.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdur.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdtat.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdmon.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdkyr.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdkaz.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdbu.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdblr.dll
2010-04-22 22:29:41 ----A---- E:\WINDOWS\system32\kbdaze.dll
2010-04-22 22:29:39 ----A---- E:\WINDOWS\system32\spxcoins.dll
2010-04-22 22:29:39 ----A---- E:\WINDOWS\system32\irclass.dll
2010-04-22 22:29:39 ----A---- E:\WINDOWS\system32\EqnClass.Dll
2010-04-22 22:29:39 ----A---- E:\WINDOWS\system32\dgsetup.dll
2010-04-22 22:29:39 ----A---- E:\WINDOWS\system32\dgrpsetu.dll
2010-04-22 22:29:37 ----N---- E:\WINDOWS\system32\CONFIG.TMP
2010-04-22 22:29:37 ----A---- E:\WINDOWS\TASKMAN.EXE
2010-04-22 22:29:36 ----A---- E:\WINDOWS\system32\batt.dll
2010-04-22 22:29:36 ----A---- E:\WINDOWS\NOTEPAD.EXE
2010-04-22 22:29:32 ----A---- E:\WINDOWS\system32\storprop.dll
2010-04-22 22:29:23 ----ASH---- E:\Documents and Settings\All Users\Application Data\desktop.ini
2010-04-22 22:28:00 ----RA---- E:\WINDOWS\SET8.tmp
2010-04-22 22:27:57 ----RA---- E:\WINDOWS\SET4.tmp
2010-04-22 22:27:55 ----RA---- E:\WINDOWS\SET3.tmp
2010-04-22 22:27:51 ----SD---- E:\Documents and Settings\All Users\Application Data\Microsoft
2010-04-22 22:27:17 ----A---- E:\WINDOWS\setuplog.txt
2010-04-22 22:25:54 ----A---- E:\WINDOWS\SoundMan.exe
2010-04-22 22:25:54 ----A---- E:\WINDOWS\SkyTel.exe
2010-04-22 22:25:54 ----A---- E:\WINDOWS\RtlUpd.exe
2010-04-22 22:25:52 ----A---- E:\WINDOWS\RTLCPL.exe
2010-04-22 22:25:51 ----A---- E:\WINDOWS\RTHDCPL.exe
2010-04-22 22:25:51 ----A---- E:\WINDOWS\MicCal.exe
2010-04-22 22:25:51 ----A---- E:\WINDOWS\alcwzrd.exe
2010-04-22 22:24:12 ----A---- E:\WINDOWS\system32\ykx32mpcoinst.dll
2010-04-22 22:24:03 ----A---- E:\WINDOWS\system32\nvwssr.dll
2010-04-22 22:24:03 ----A---- E:\WINDOWS\system32\nvwss.dll
2010-04-22 22:24:03 ----A---- E:\WINDOWS\system32\nvwddi.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvvitvsr.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvvitvs.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvoglnt.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvmoblsr.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvmobls.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvmctray.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvmccssr.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvmccss.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvmccsrs.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvmccs.dll
2010-04-22 22:24:02 ----A---- E:\WINDOWS\system32\nvgamesr.dll
2010-04-22 22:24:01 ----A---- E:\WINDOWS\system32\nvgames.dll
2010-04-22 22:23:55 ----A---- E:\WINDOWS\system32\nvdispsr.dll
2010-04-22 22:23:55 ----A---- E:\WINDOWS\system32\nvdisps.dll
2010-04-22 22:23:55 ----A---- E:\WINDOWS\system32\nvcuda.dll
2010-04-22 22:23:54 ----A---- E:\WINDOWS\system32\nvcpl.dll
2010-04-22 22:23:54 ----A---- E:\WINDOWS\system32\nvcodins.dll
2010-04-22 22:23:54 ----A---- E:\WINDOWS\system32\nvcod.dll
2010-04-22 22:23:54 ----A---- E:\WINDOWS\system32\nvapi.dll
2010-04-22 22:23:53 ----A---- E:\WINDOWS\system32\nv4_disp.dll
2010-04-22 22:23:52 ----A---- E:\WINDOWS\system32\nvsvc32.exe
2010-04-22 22:22:06 ----D---- E:\WINDOWS\system32\CatRoot2
2010-04-22 22:22:06 ----D---- E:\WINDOWS\system32\CatRoot
2010-04-22 22:20:13 ----SHD---- E:\System Volume Information
2010-04-22 22:20:13 ----D---- E:\Documents and Settings
2010-04-22 22:13:13 ----RSHDC---- E:\WINDOWS\system32\dllcache
2010-04-22 22:13:13 ----RSD---- E:\WINDOWS\Fonts
2010-04-22 22:13:13 ----RD---- E:\WINDOWS\Web
2010-04-22 22:13:13 ----HD---- E:\WINDOWS\inf
2010-04-22 22:13:13 ----D---- E:\WINDOWS\WinSxS
2010-04-22 22:13:13 ----D---- E:\WINDOWS\twain_32
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Temp
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\wins
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\wbem
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\usmt
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\spool
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\ShellExt
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\Setup
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\ru-ru
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\ru
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\ras
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\oobe
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\npp
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\mui
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\inetsrv
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\IME
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\icsxml
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\ias
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\export
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\drivers
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\dhcp
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\config
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\3com_dmi
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\3076
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\2052
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1054
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1049
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1042
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1041
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1037
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1033
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1031
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1028
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system32\1025
2010-04-22 22:13:13 ----D---- E:\WINDOWS\system
2010-04-22 22:13:13 ----D---- E:\WINDOWS\security
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Resources
2010-04-22 22:13:13 ----D---- E:\WINDOWS\repair
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Provisioning
2010-04-22 22:13:13 ----D---- E:\WINDOWS\PeerNet
2010-04-22 22:13:13 ----D---- E:\WINDOWS\pchealth
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Network Diagnostic
2010-04-22 22:13:13 ----D---- E:\WINDOWS\mui
2010-04-22 22:13:13 ----D---- E:\WINDOWS\msapps
2010-04-22 22:13:13 ----D---- E:\WINDOWS\msagent
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Media
2010-04-22 22:13:13 ----D---- E:\WINDOWS\L2Schemas
2010-04-22 22:13:13 ----D---- E:\WINDOWS\java
2010-04-22 22:13:13 ----D---- E:\WINDOWS\ime
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Help
2010-04-22 22:13:13 ----D---- E:\WINDOWS\ehome
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Driver Cache
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Debug
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Cursors
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Connection Wizard
2010-04-22 22:13:13 ----D---- E:\WINDOWS\Config
2010-04-22 22:13:13 ----D---- E:\WINDOWS\AppPatch
2010-04-22 22:13:13 ----D---- E:\WINDOWS
2010-04-22 22:13:13 ----AD---- E:\WINDOWS\system32
2010-04-22 20:35:22 ----D---- E:\Program Files\GrandMan2
2010-04-22 20:29:52 ----D---- E:\Documents and Settings\Admin\Application Data\The Bat!
2010-04-22 19:10:50 ----A---- E:\WINDOWS\NeroDigital.ini
2010-04-22 19:08:41 ----D---- E:\Program Files\The Bat!
2010-04-22 19:08:36 ----RD---- E:\Program Files\Skype
2010-04-22 19:08:31 ----D---- E:\Program Files\QIP Infium
2010-04-22 19:08:28 ----D---- E:\Program Files\QIP
2010-04-22 19:07:58 ----N---- E:\WINDOWS\system32\TwnLib4.dll
2010-04-22 19:07:58 ----N---- E:\WINDOWS\system32\ImagXRA7.dll
2010-04-22 19:07:58 ----N---- E:\WINDOWS\system32\ImagXR7.dll
2010-04-22 19:07:58 ----N---- E:\WINDOWS\system32\ImagXpr7.dll
2010-04-22 19:07:58 ----N---- E:\WINDOWS\system32\ImagX7.dll
2010-04-22 19:07:58 ----A---- E:\WINDOWS\system32\TwnLib20.dll
2010-04-22 19:07:58 ----A---- E:\WINDOWS\system32\NeroCheck.exe
2010-04-22 19:07:57 ----D---- E:\Program Files\Common Files\Ahead
2010-04-22 19:07:57 ----D---- E:\Program Files\Ahead
2010-04-22 19:07:35 ----D---- E:\Program Files\Download Master
2010-04-22 19:07:35 ----D---- E:\Documents and Settings\Admin\Application Data\Download Master
2010-04-22 19:07:31 ----D---- E:\Program Files\Total Commander
2010-04-22 19:07:26 ----D---- E:\Program Files\WinRAR
2010-04-22 19:07:13 ----D---- E:\Documents and Settings\Admin\Application Data\Mozilla
2010-04-22 19:07:08 ----D---- E:\Documents and Settings\Admin\Application Data\Winamp
2010-04-22 19:06:59 ----D---- E:\Program Files\Winamp
2010-04-22 19:06:54 ----D---- E:\Program Files\Flash Player Pro
2010-04-22 19:05:49 ----D---- E:\Program Files\Adobe
2010-04-22 19:05:26 ----D---- E:\Documents and Settings\All Users\Application Data\Adobe
2010-04-22 19:04:31 ----D---- E:\Program Files\Bonjour
2010-04-22 19:04:02 ----D---- E:\Documents and Settings\Admin\Application Data\Adobe
2010-04-22 18:59:11 ----D---- E:\Program Files\Common Files\Macrovision Shared
2010-04-22 18:58:34 ----D---- E:\Program Files\Common Files\Adobe
2010-04-22 18:57:38 ----D---- E:\Program Files\Common Files\Macromedia
2010-04-22 18:57:04 ----D---- E:\Documents and Settings\All Users\Application Data\Macromedia
2010-04-22 18:57:03 ----D---- E:\Program Files\Macromedia
2010-04-22 18:56:54 ----D---- E:\Program Files\Common Files\InstallShield
2010-04-22 18:55:34 ----D---- E:\WINDOWS\SHELLNEW
2010-04-22 18:54:26 ----D---- E:\Program Files\Microsoft Works
2010-04-22 18:54:17 ----D---- E:\Program Files\Common Files\DESIGNER
2010-04-22 18:54:08 ----D---- E:\Program Files\Microsoft.NET
2010-04-22 18:53:07 ----D---- E:\Program Files\Microsoft Office
2010-04-22 18:53:07 ----D---- E:\Documents and Settings\All Users\Application Data\Microsoft Help
2010-04-22 18:52:51 ----RHD---- E:\MSOCache
2010-04-22 18:52:24 ----D---- E:\Program Files\Punto Switcher
2010-04-22 18:52:24 ----AD---- E:\Documents and Settings\Admin\Application Data\Yandex
2010-04-22 18:52:15 ----A---- E:\WINDOWS\WPI_Log_2010.04.22_18.52.15.txt
2010-04-22 18:49:50 ----D---- E:\WINDOWS\system32\Lang
2010-04-22 18:49:50 ----A---- E:\WINDOWS\system32\oeminfo.ini
2010-04-22 18:49:46 ----A---- E:\WINDOWS\system32\Reg2Inf.exe
2010-04-22 18:49:45 ----RA---- E:\WINDOWS\system32\OEMINFO.CMD
2010-04-22 18:49:45 ----A---- E:\WINDOWS\system32\hidcon.exe
2010-04-22 18:49:31 ----A---- E:\WINDOWS\system32\wmpns.dll
2010-04-22 18:49:30 ----D---- E:\Documents and Settings\Admin\Application Data\Identities
2010-04-22 18:49:26 ----HD---- E:\Program Files\Uninstall Information
2010-04-22 18:48:44 ----D---- E:\Documents and Settings\Admin\Application Data\Any Video Converter
2010-04-22 18:48:41 ----D---- E:\Program Files\Any Video Converter
2010-04-22 18:48:28 ----RD---- E:\WINDOWS\OemDrv
2010-04-22 18:48:20 ----SD---- E:\Documents and Settings\Admin\Application Data\Microsoft
2010-04-22 18:48:20 ----D---- E:\Documents and Settings\Admin\Application Data\Sun
2010-04-22 18:48:20 ----ASH---- E:\Documents and Settings\Admin\Application Data\desktop.ini
2010-04-22 18:47:56 ----D---- E:\Documents and Settings\Admin\Application Data\Macromedia
2010-04-22 18:47:27 ----SD---- E:\WINDOWS\system32\Microsoft
2010-04-22 18:47:27 ----A---- E:\WINDOWS\SchedLgU.Txt
2010-04-22 18:44:25 ----D---- E:\WINDOWS\system32\xircom
2010-04-22 18:44:25 ----D---- E:\Program Files\msn gaming zone
2010-04-22 18:44:08 ----D---- E:\Program Files\VistaDriveIcon
2010-04-22 18:43:59 ----AD---- E:\Program Files\Paint.NET
2010-04-22 18:43:58 ----A---- E:\WINDOWS\system32\wiaaut.dll
2010-04-22 18:43:56 ----RA---- E:\WINDOWS\delete.bat
2010-04-22 18:43:56 ----A---- E:\WINDOWS\innounp.exe
2010-04-22 18:43:51 ----A---- E:\WINDOWS\system32\javaws.exe
2010-04-22 18:43:51 ----A---- E:\WINDOWS\system32\javaw.exe
2010-04-22 18:43:51 ----A---- E:\WINDOWS\system32\java.exe
2010-04-22 18:43:51 ----A---- E:\WINDOWS\system32\deploytk.dll
2010-04-22 18:43:43 ----D---- E:\Program Files\Java
2010-04-22 18:41:54 ----D---- E:\WINDOWS\system32\URTTemp
2010-04-22 18:41:18 ----RSD---- E:\WINDOWS\assembly
2010-04-22 18:41:15 ----D---- E:\WINDOWS\Microsoft.NET
2010-04-22 18:41:01 ----N---- E:\WINDOWS\system32\msvcr70.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\zlib1.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\wrap_oal.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\wnaspi32.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\Vbrun300.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\vbrun200.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\vbrun100.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\Vb40032.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\Vb40016.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\ssleay32.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\OpenAL32.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\msvcrt10.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\msvcr71.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\msvcp71.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MSVCP70.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\msvci70.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MSSTKPRP.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\msstdfmt.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71u.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71KOR.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71JPN.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71ITA.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71FRA.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71ESP.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71ENU.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71DEU.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71CHT.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71CHS.DLL
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\MFC71.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70u.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70kor.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70jpn.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70ita.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70fra.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70esp.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70enu.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70deu.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70cht.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70chs.dll
2010-04-22 18:41:01 ----A---- E:\WINDOWS\system32\mfc70.dll
2010-04-22 18:41:00 ----A---- E:\WINDOWS\system32\libssl32.dll
2010-04-22 18:41:00 ----A---- E:\WINDOWS\system32\libeay32.dll
2010-04-22 18:41:00 ----A---- E:\WINDOWS\system32\atl71.dll
2010-04-22 18:41:00 ----A---- E:\WINDOWS\system32\atl70.dll
2010-04-22 18:40:41 ----A---- E:\WINDOWS\control.ini
2010-04-22 18:40:33 ----A---- E:\WINDOWS\OEWABLog.txt
2010-04-22 18:40:27 ----A---- E:\WINDOWS\system32\mapi32.dll
2010-04-22 18:39:31 ----RAH---- E:\WINDOWS\system32\logonui.exe.manifest
2010-04-22 18:39:26 ----RAH---- E:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-22 18:39:20 ----HD---- E:\Program Files\WindowsUpdate
2010-04-22 18:39:16 ----D---- E:\Program Files\Online Services
2010-04-22 18:39:07 ----A---- E:\WINDOWS\system32\desktop.ini
2010-04-22 18:39:07 ----A---- E:\WINDOWS\system32\atrace.dll
2010-04-22 18:39:07 ----A---- E:\WINDOWS\desktop.ini
2010-04-22 18:39:00 ----A---- E:\WINDOWS\system32\acctres.dll
2010-04-22 18:38:59 ----D---- E:\Program Files\Common Files\Services
2010-04-22 18:38:57 ----SD---- E:\WINDOWS\Tasks
2010-04-22 18:38:57 ----A---- E:\WINDOWS\system32\icfgnt5.dll
2010-04-22 18:38:56 ----D---- E:\Program Files\Common Files\MSSoap
2010-04-22 18:38:54 ----D---- E:\WINDOWS\srchasst
2010-04-22 18:38:53 ----D---- E:\WINDOWS\system32\Macromed
2010-04-22 18:38:51 ----A---- E:\WINDOWS\system32\wuweb.dll
2010-04-22 18:38:51 ----A---- E:\WINDOWS\system32\wups.dll
2010-04-22 18:38:51 ----A---- E:\WINDOWS\system32\wucltui.dll
2010-04-22 18:38:51 ----A---- E:\WINDOWS\system32\wuauserv.dll
2010-04-22 18:38:51 ----A---- E:\WINDOWS\system32\wuaueng1.dll
2010-04-22 18:38:51 ----A---- E:\WINDOWS\system32\wuaueng.dll
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\wuauclt1.exe
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\wuauclt.exe
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\wuapi.dll
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\qmgrprxy.dll
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\qmgr.dll
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\bitsprx4.dll
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\bitsprx3.dll
2010-04-22 18:38:50 ----A---- E:\WINDOWS\system32\bitsprx2.dll
2010-04-22 18:38:47 ----D---- E:\Program Files\Movie Maker
2010-04-22 18:38:35 ----A---- E:\WINDOWS\system32\safrslv.dll
2010-04-22 18:38:35 ----A---- E:\WINDOWS\system32\safrdm.dll
2010-04-22 18:38:35 ----A---- E:\WINDOWS\system32\safrcdlg.dll
2010-04-22 18:38:35 ----A---- E:\WINDOWS\system32\racpldlg.dll
2010-04-22 18:38:32 ----A---- E:\WINDOWS\system32\fltMc.exe
2010-04-22 18:38:32 ----A---- E:\WINDOWS\system32\fltlib.dll
2010-04-22 18:38:31 ----D---- E:\WINDOWS\system32\Restore
2010-04-22 18:38:31 ----A---- E:\WINDOWS\system32\srsvc.dll
2010-04-22 18:38:31 ----A---- E:\WINDOWS\system32\srrstr.dll
2010-04-22 18:38:31 ----A---- E:\WINDOWS\system32\srclient.dll
2010-04-22 18:38:31 ----A---- E:\WINDOWS\system32\msoert2.dll
2010-04-22 18:38:30 ----A---- E:\WINDOWS\system32\msoeacct.dll
2010-04-22 18:38:29 ----A---- E:\WINDOWS\system32\inetres.dll
2010-04-22 18:38:29 ----A---- E:\WINDOWS\system32\inetcomm.dll
2010-04-22 18:38:28 ----D---- E:\Program Files\Outlook Express
2010-04-22 18:38:28 ----A---- E:\WINDOWS\system32\schedsvc.dll
2010-04-22 18:38:27 ----A---- E:\WINDOWS\system32\mstinit.exe
2010-04-22 18:38:27 ----A---- E:\WINDOWS\system32\mstask.dll
2010-04-22 18:38:27 ----A---- E:\WINDOWS\system32\isign32.dll
2010-04-22 18:38:27 ----A---- E:\WINDOWS\system32\inetcfg.dll
2010-04-22 18:38:27 ----A---- E:\WINDOWS\system32\icwphbk.dll
2010-04-22 18:38:27 ----A---- E:\WINDOWS\system32\icwdial.dll
2010-04-22 18:38:23 ----D---- E:\Program Files\Common Files\System
2010-04-22 18:37:41 ----D---- E:\Program Files\ComPlus Applications
2010-04-22 18:37:39 ----A---- E:\WINDOWS\vbaddin.ini
2010-04-22 18:37:39 ----A---- E:\WINDOWS\vb.ini
2010-04-22 18:37:34 ----D---- E:\WINDOWS\Registration
2010-04-22 18:37:14 ----D---- E:\Program Files\Windows Media Player
2010-04-22 18:37:14 ----D---- E:\Program Files\Windows Media Connect 2
2010-04-22 18:37:11 ----RD---- E:\WINDOWS\Offline Web Pages
2010-04-22 18:37:11 ----A---- E:\WINDOWS\system32\WinFXDocObj.exe
2010-04-22 18:37:10 ----SD---- E:\WINDOWS\Downloaded Program Files
2010-04-22 18:37:10 ----A---- E:\WINDOWS\system32\msfeedssync.exe
2010-04-22 18:37:09 ----D---- E:\WINDOWS\wbem
2010-04-22 18:37:09 ----A---- E:\WINDOWS\system32\msfeedsbs.dll
2010-04-22 18:37:08 ----A---- E:\WINDOWS\system32\ieframe.dll.mui
2010-04-22 18:37:07 ----D---- E:\Program Files\Internet Explorer
2010-04-22 18:37:07 ----A---- E:\WINDOWS\system32\advpack.dll.mui
2010-04-22 18:37:06 ----A---- E:\WINDOWS\system32\TweakUI.exe
2010-04-22 18:37:05 ----D---- E:\WINDOWS\system32\PreInstall
2010-04-22 18:37:04 ----D---- E:\WINDOWS\SoftwareDistribution
2010-04-22 18:37:04 ----A---- E:\WINDOWS\system32\muweb.dll
2010-04-22 18:37:04 ----A---- E:\WINDOWS\system32\mucltui.dll.mui
2010-04-22 18:37:04 ----A---- E:\WINDOWS\system32\mucltui.dll
2010-04-22 18:37:03 ----A---- E:\WINDOWS\system32\write.exe
2010-04-22 18:37:03 ----A---- E:\WINDOWS\system32\gpprefcl.dll
2010-04-22 18:36:48 ----A---- E:\WINDOWS\system32\sndvol32.exe
2010-04-22 18:36:48 ----A---- E:\WINDOWS\system32\hticons.dll
2010-04-22 18:36:48 ----A---- E:\WINDOWS\system32\avwav.dll
2010-04-22 18:36:48 ----A---- E:\WINDOWS\system32\avtapi.dll
2010-04-22 18:36:48 ----A---- E:\WINDOWS\system32\avmeter.dll
2010-04-22 18:36:47 ----A---- E:\WINDOWS\system32\winchat.exe
2010-04-22 18:36:39 ----A---- E:\WINDOWS\system32\getuname.dll
2010-04-22 18:36:38 ----A---- E:\WINDOWS\system32\sol.exe
2010-04-22 18:36:38 ----A---- E:\WINDOWS\system32\charmap.exe
2010-04-22 18:36:38 ----A---- E:\WINDOWS\system32\calc.exe
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\winmine.exe
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\usrlogon.cmd
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\tsshutdn.exe
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\tslabels.ini
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\tskill.exe
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\reset.exe
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\mshearts.exe
2010-04-22 18:36:37 ----A---- E:\WINDOWS\system32\freecell.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\tsdiscon.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\tscon.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\shadow.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\rwinsta.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\regini.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\rdpcfgex.dll
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\qwinsta.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\qappsrv.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\msg.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\logoff.exe
2010-04-22 18:36:36 ----A---- E:\WINDOWS\system32\cdmodem.dll
2010-04-22 18:36:35 ----A---- E:\WINDOWS\system32\msdtcprf.ini
2010-04-22 18:36:31 ----A---- E:\WINDOWS\system32\wmimgmt.msc
2010-04-22 18:36:30 ----A---- E:\WINDOWS\system32\sndrec32.exe
2010-04-22 18:36:30 ----A---- E:\WINDOWS\system32\mplay32.exe
2010-04-22 18:36:30 ----A---- E:\WINDOWS\system32\hypertrm.dll
2010-04-22 18:36:30 ----A---- E:\WINDOWS\system32\accwiz.exe
2010-04-22 18:36:29 ----D---- E:\Program Files\Windows NT
2010-04-22 18:36:29 ----A---- E:\WINDOWS\system32\spider.exe
2010-04-22 18:36:29 ----A---- E:\WINDOWS\system32\clipbrd.exe
2010-04-22 18:36:28 ----A---- E:\WINDOWS\system32\tsgqec.dll
2010-04-22 18:36:28 ----A---- E:\WINDOWS\system32\tscfgwmi.dll
2010-04-22 18:36:28 ----A---- E:\WINDOWS\system32\rhttpaa.dll
2010-04-22 18:36:28 ----A---- E:\WINDOWS\system32\mstscax.dll
2010-04-22 18:36:28 ----A---- E:\WINDOWS\system32\aaclient.dll
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\termsrv.dll
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\sessmgr.exe
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\remotepg.dll
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\rdshost.exe
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\rdsaddin.exe
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\rdpwsx.dll
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\rdpsnd.dll
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\rdpclip.exe
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\rdchost.dll
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\qprocess.exe
2010-04-22 18:36:27 ----A---- E:\WINDOWS\system32\mstsc.exe
2010-04-22 18:36:26 ----D---- E:\WINDOWS\system32\MsDtc
2010-04-22 18:36:26 ----A---- E:\WINDOWS\system32\xolehlp.dll
2010-04-22 18:36:26 ----A---- E:\WINDOWS\system32\mtxoci.dll
2010-04-22 18:36:26 ----A---- E:\WINDOWS\system32\msdtcuiu.dll
2010-04-22 18:36:26 ----A---- E:\WINDOWS\system32\msdtctm.dll
2010-04-22 18:36:26 ----A---- E:\WINDOWS\system32\msdtcprx.dll
2010-04-22 18:36:26 ----A---- E:\WINDOWS\system32\icaapi.dll
2010-04-22 18:36:26 ----A---- E:\WINDOWS\system32\cfgbkend.dll
2010-04-22 18:36:25 ----D---- E:\WINDOWS\system32\Com
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\mtxlegih.dll
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\mtxex.dll
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\mtxdm.dll
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\msdtclog.dll
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\msdtc.exe
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\dcomcnfg.exe
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\comaddin.dll
2010-04-22 18:36:25 ----A---- E:\WINDOWS\system32\colbact.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\stclient.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\comuid.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\comsvcs.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\comsnap.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\comrepl.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\clbcatex.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\catsrvut.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\catsrvps.dll
2010-04-22 18:36:24 ----A---- E:\WINDOWS\system32\catsrv.dll
2010-04-22 18:36:23 ----A---- E:\WINDOWS\system32\clbcatq.dll
2010-04-22 18:36:19 ----A---- E:\WINDOWS\system32\servdeps.dll
2010-04-22 18:36:19 ----A---- E:\WINDOWS\system32\mmfutil.dll
2010-04-22 18:36:19 ----A---- E:\WINDOWS\system32\licwmi.dll
2010-04-22 18:36:18 ----A---- E:\WINDOWS\system32\cmprops.dll

======List of files/folders modified in the last 3 months======

2010-07-13 14:23:45 ----A---- E:\WINDOWS\system32\bscs.ini
2010-07-11 14:48:55 ----A---- E:\WINDOWS\system.ini
2010-04-22 18:40:20 ----A---- E:\WINDOWS\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 97927351;97927351; E:\WINDOWS\system32\DRIVERS\97927351.sys [2009-09-25 128016]
R1 ehdrv;ehdrv; E:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-03-19 107256]
R1 epfwtdir;epfwtdir; E:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2009-03-19 93848]
R1 intelppm; Intel ; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-15 40704]
R1 PCLEPCI;PCLEPCI; \??\E:\WINDOWS\system32\drivers\pclepci.sys []
R1 setup_9.0.0.722_13.07.2010_07-56drv;setup_9.0.0.722_13.07.2010_07-56drv; E:\WINDOWS\system32\DRIVERS\9792735.sys [2009-10-09 315408]
R1 uzi2mju1;AVZ-RK Kernel Driver; \??\E:\WINDOWS\system32\Drivers\uzi2mju1.sys []
R2 eamon;eamon; E:\WINDOWS\system32\DRIVERS\eamon.sys [2009-03-19 113960]
R2 ElbyCDIO;ElbyCDIO Driver; E:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2005-04-21 10624]
R2 exFat;exFat; E:\WINDOWS\system32\drivers\exFat.sys [2009-01-28 133632]
R2 hardlock;hardlock; \??\E:\WINDOWS\system32\drivers\hardlock.sys []
R2 Haspnt;Haspnt; \??\E:\WINDOWS\system32\drivers\Haspnt.sys []
R2 rspndr;    ; E:\WINDOWS\system32\DRIVERS\rspndr.sys [2008-10-11 62848]
R3 ASAPIW2k;ASAPIW2K; E:\WINDOWS\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 btnetBUs;Bluetooth PAN Bus Service; E:\WINDOWS\System32\Drivers\btnetBus.sys [2008-12-07 30088]
R3 HDAudBus;  Microsoft UAA  High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-15 144384]
R3 HidUsb;  HID Microsoft; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); E:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-08-01 4356608]
R3 IvtBtBUs;IVT Bluetooth Bus Service; E:\WINDOWS\System32\Drivers\IvtBtBus.sys [2008-07-02 26248]
R3 MarvinBus;Pinnacle Marvin Bus; E:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2004-06-21 78976]
R3 nv;nv; E:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-01-15 6301248]
R3 usbccgp;    USB (Microsoft); E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbehci;  Microsoft USB 2.0  -; E:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2 ; E:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbprint;  Microsoft USB; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 USBSTOR;    USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;  Microsoft USB  -; E:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-15 20608]
R3 VcommMgr;Bluetooth VComm Manager Service; E:\WINDOWS\System32\Drivers\VcommMgr.sys [2009-01-08 31880]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; E:\WINDOWS\system32\DRIVERS\yk51x86.sys [2008-12-09 296448]
S1 vdi2mju1;AVZ-BC Kernel Driver; \??\E:\WINDOWS\system32\Drivers\vdi2mju1.sys []
S3 BT;Bluetooth PAN Network Adapter; E:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2008-12-07 14088]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; E:\WINDOWS\System32\Drivers\btcusb.sys [2009-01-03 39304]
S3 ElbyDelay;ElbyDelay; E:\WINDOWS\System32\Drivers\ElbyDelay.sys [2005-04-12 4608]
S3 giveio;giveio; \??\E:\WINDOWS\system32\giveio.sys []
S3 HidBatt;   HID; E:\WINDOWS\system32\DRIVERS\HidBatt.sys [2008-04-14 20352]
S3 massfilter;ZTE Mass Storage Filter Driver; E:\WINDOWS\system32\drivers\massfilter.sys [2008-11-03 7680]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet ,   NT; E:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 VComm;Virtual Serial port driver; E:\WINDOWS\system32\DRIVERS\VComm.sys [2008-01-21 14856]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-03-02 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-03-02 82944]
S3 ZTEusbmdm6k;ZTE Proprietary USB Driver; E:\WINDOWS\system32\DRIVERS\ZTEusbmdm6k.sys [2008-11-03 104960]
S3 ZTEusbnmea;ZTE NMEA Port; E:\WINDOWS\system32\DRIVERS\ZTEusbnmea.sys [2008-11-03 104960]
S3 ZTEusbser6k;ZTE Diagnostic Port; E:\WINDOWS\system32\DRIVERS\ZTEusbser6k.sys [2008-11-03 104960]
S4 IntelIde;IntelIde; E:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sr;   ; E:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-15 73472]
S4 WS2IFSL; Windows Socket 2.0   -IFS ; E:\WINDOWS\System32\drivers\ws2ifsl.sys [2008-04-15 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 APC UPS Service;APC UPS Service; E:\Program Files\APC\APC PowerChute Personal Edition\mainserv.exe [2005-12-12 176193]
R2 BlueSoleilCS;BlueSoleilCS; E:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [2009-01-31 775168]
R2 BsMobileCS;BsMobileCS; E:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe [2009-01-07 143467]
R2 ekrn;ESET Service; E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-03-19 731840]
R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2010-04-22 152984]
R2 NVSvc;NVIDIA Display Driver Service; E:\WINDOWS\system32\nvsvc32.exe [2009-01-15 163908]
R2 UleadBurningHelper;Ulead Burning Helper; E:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2003-12-04 49152]
R3 BsHelpCS;BsHelpCS; E:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe [2009-01-07 98407]
S3 aspnet_state;ASP.NET State Service; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 EhttpSrv;ESET HTTP Server; E:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-03-19 20680]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; E:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-04-22 654848]
S3 odserv;Microsoft Office Diagnostics Service; E:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; E:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; E:\Program Files\Windows Media Player\wmpnetwk.exe [2006-10-18 913408]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-15 14336]

-----------------EOF-----------------
