OP Taze Üye
Teşekkür Sayısı: 0
1 mesaj
Kayıt Tarihi:Kayıt: May 2011
arkadaşlar bilgisayarımda virüs vardı. combofix kullandım. log.txt aşağıda ne yapmam gerek?
ComboFix 11-05-21.03 - Xp 22.05.2011 17:10:31.6.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1254.90.1055.18.1023.534 [GMT 3:00]
Running from: c:\documents and settings\Xp\Belgelerim\Downloads\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\Ümit\Application Data\PriceGong
c:\documents and settings\Ümit\Application Data\PriceGong\Data\1.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\a.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\b.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\c.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\d.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\e.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\f.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\g.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\h.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\i.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\J.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\k.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\l.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\m.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\mru.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\n.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\o.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\p.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\q.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\r.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\s.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\t.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\u.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\v.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\w.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\x.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\y.xml
c:\documents and settings\Ümit\Application Data\PriceGong\Data\z.xml
c:\documents and settings\All Users\Belgeler\dll
c:\documents and settings\Xp\Application Data\EurekaLog
c:\documents and settings\Xp\Application Data\PriceGong
c:\documents and settings\Xp\Application Data\PriceGong\Data\1.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\a.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\b.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\c.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\d.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\e.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\f.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\g.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\h.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\i.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\J.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\k.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\l.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\m.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\mru.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\n.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\o.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\p.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\q.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\r.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\s.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\t.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\u.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\v.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\w.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\x.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\y.xml
c:\documents and settings\Xp\Application Data\PriceGong\Data\z.xml
C:\RECYCLER(3)
c:\recycler(3)\S-1-5-21-1390067357-1645522239-1801674531-1003(2)\INFO2
c:\windows\system32\1055\dwintl.dll
.
.
((((((((((((((((((((((((( Files Created from 2011-04-22 to 2011-05-22 )))))))))))))))))))))))))))))))
.
.
2011-05-22 09:34 . 2011-05-22 09:34
404640
----a-w-
c:\windows\system32\FlashPlayerCPLApp.cpl
2011-05-21 17:12 . 2009-08-19 02:18
107864
----a-w-
c:\windows\system32\tsccvid.dll
2011-05-21 17:12 . 2011-05-21 17:12
--------
d-----w-
c:\windows\system32\QuickTime
2011-05-21 17:12 . 2011-05-21 17:12
--------
d-----w-
c:\documents and settings\All Users\Application Data\TechSmith
2011-05-21 17:12 . 2011-05-21 17:12
--------
d-----w-
c:\program files\Common Files\TechSmith Shared
2011-05-21 17:11 . 2011-05-21 17:11
--------
d-----w-
c:\program files\TechSmith
2011-05-21 17:03 . 2011-05-21 17:02
152064
----a-w-
c:\windows\Grywoa.exe
2011-05-20 19:22 . 2011-05-20 19:22
--------
d-----w-
c:\program files\AmitySource
2011-05-18 15:04 . 2011-05-18 15:04
--------
d-----w-
c:\documents and settings\Xp\Local Settings\Application Data\Activision
2011-05-18 15:02 . 2008-05-30 11:11
467984
----a-w-
c:\windows\system32\d3dx10_38.dll
2011-05-18 08:59 . 2011-05-18 08:59
--------
d-----w-
c:\documents and settings\Xp\Local Settings\Application Data\uTorrentBar
2011-05-17 09:13 . 2011-05-17 09:13
--------
d-----w-
c:\documents and settings\All Users\Application Data\flippagemaker
2011-05-17 09:12 . 2011-05-17 09:13
--------
d-----w-
c:\program files\gs
2011-05-17 09:11 . 2011-05-17 09:11
--------
d-----w-
c:\documents and settings\All Users\Application Data\wtfb
2011-05-17 09:08 . 2011-05-17 09:08
--------
d-----w-
c:\documents and settings\All Users\Application Data\A-PDF
2011-05-17 09:07 . 2011-05-10 13:37
488448
----a-w-
c:\windows\system32\apdfprintmon.dll
2011-05-17 09:07 . 2011-05-21 11:25
--------
d-----w-
c:\program files\Word to FlippingBook
2011-05-17 09:07 . 2011-05-21 11:25
--------
d-----w-
c:\documents and settings\All Users\Application Data\flipBook
2011-05-16 16:01 . 2003-08-15 13:02
69632
------w-
c:\program files\Common Files\InstallShield\UpdateService\issch.exe
2011-05-16 16:01 . 2003-08-15 13:01
380928
------w-
c:\program files\Common Files\InstallShield\UpdateService\agent.exe
2011-05-16 16:01 . 2003-08-15 12:57
212992
------w-
c:\program files\Common Files\InstallShield\UpdateService\ISDM.exe
2011-05-14 10:05 . 2011-05-14 10:05
--------
d-----w-
c:\program files\Aneesoft
2011-05-12 17:18 . 2011-05-12 17:18
--------
d-----w-
c:\documents and settings\All Users\Application Data\IObit
2011-05-12 17:18 . 2011-05-12 17:18
--------
d-----w-
c:\program files\IObit
2011-05-11 15:36 . 2011-05-11 15:37
--------
d-----w-
c:\documents and settings\Xp\Application Data\Apple Computer
2011-05-10 18:03 . 2011-05-10 18:03
--------
d-----w-
c:\program files\Bonjour
2011-05-10 17:41 . 2011-05-10 18:04
--------
d-----w-
c:\program files\Common Files\Apple
2011-05-10 17:40 . 2011-05-10 17:40
--------
d-----w-
c:\program files\QuickTime
2011-05-10 17:40 . 2011-05-10 17:40
--------
d-----w-
c:\documents and settings\All Users\Application Data\Apple Computer
2011-05-10 17:35 . 2011-05-10 17:35
--------
d-----w-
c:\program files\Apple Software Update
2011-05-10 17:35 . 2011-05-10 17:35
--------
d-----w-
c:\documents and settings\All Users\Application Data\Apple
2011-05-10 15:38 . 2011-05-10 15:38
--------
d-----w-
c:\documents and settings\Xp\Application Data\com.w3i.FlipToast
2011-05-10 09:13 . 2011-05-10 09:13
--------
d-----w-
c:\documents and settings\Xp\Application Data\BANDISOFT
2011-05-10 09:13 . 2011-05-10 09:13
--------
d-----w-
c:\program files\Bandicam
2011-05-10 09:13 . 2011-05-10 09:13
--------
d-----w-
c:\program files\BandiMPEG1
2011-05-04 17:53 . 2011-05-04 17:53
--------
d-----w-
c:\documents and settings\Ümit\Local Settings\Application Data\Adobe
2011-05-03 20:01 . 2011-05-03 20:01
--------
d-----w-
c:\documents and settings\Xp\Application Data\Adobe Mini Bridge CS5
2011-05-03 20:00 . 2011-05-03 20:00
--------
d-----w-
c:\documents and settings\Xp\Application Data\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
2011-05-03 19:55 . 2011-05-03 20:03
--------
d-----w-
c:\documents and settings\All Users\Application Data\regid.1986-12.com.adobe
2011-05-03 17:19 . 2011-05-03 17:19
--------
d-----w-
c:\documents and settings\Ümit\Application Data\HpUpdate
2011-05-03 17:13 . 2011-05-03 17:13
--------
d-----w-
c:\documents and settings\NetworkService\Local Settings\Application Data\uTorrentBar
2011-05-03 17:13 . 2011-05-03 17:13
--------
d-----w-
c:\documents and settings\NetworkService\Local Settings\Application Data\Apple
2011-05-02 20:11 . 2011-05-22 13:24
--------
d-----w-
c:\documents and settings\Ümit\Tracing
2011-05-02 19:56 . 2011-05-02 19:56
--------
d-----w-
c:\documents and settings\Ümit\Local Settings\Application Data\Conduit
2011-05-02 19:56 . 2011-05-02 19:56
--------
d-----w-
c:\documents and settings\Ümit\Local Settings\Application Data\uTorrentBar
2011-05-02 19:54 . 2011-05-02 19:54
--------
d-----w-
c:\documents and settings\Ümit\Local Settings\Application Data\Paint.NET
2011-05-02 08:26 . 2011-05-02 08:26
107888
----a-w-
c:\windows\system32\CmdLineExt.dll
2011-05-02 08:15 . 2011-05-02 19:53
--------
d-----w-
c:\documents and settings\Xp\Local Settings\Application Data\OpenCandy
2011-05-02 08:15 . 2011-05-02 08:15
--------
d-----w-
c:\documents and settings\Xp\Application Data\OpenCandy
2011-05-02 08:05 . 2011-05-02 08:05
--------
d-----w-
c:\documents and settings\Xp\Local Settings\Application Data\Apple
2011-05-02 08:05 . 2011-05-11 15:36
--------
d-----w-
c:\documents and settings\Xp\Local Settings\Application Data\Apple Computer
2011-05-01 18:07 . 2011-05-01 18:07
--------
d-----w-
c:\documents and settings\All Users\Application Data\OviInstallerCache
2011-05-01 12:47 . 2011-05-11 15:41
--------
d-----w-
c:\documents and settings\Xp\Local Settings\Application Data\Conduit
2011-05-01 12:47 . 2011-05-01 12:47
--------
d-----w-
C:\extensions
2011-05-01 12:47 . 2011-05-01 12:47
--------
d-----w-
c:\program files\uTorrent
2011-04-30 18:57 . 2011-04-30 18:57
--------
d-----w-
C:\gPotato.eu
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-04-06 13:20 . 2011-04-06 13:20
91424
----a-w-
c:\windows\system32\dnssd.dll
2011-04-06 13:20 . 2011-04-06 13:20
75040
----a-w-
c:\windows\system32\jdns_sd.dll
2011-04-06 13:20 . 2011-04-06 13:20
197920
----a-w-
c:\windows\system32\dnssdX.dll
2011-04-06 13:20 . 2011-04-06 13:20
107808
----a-w-
c:\windows\system32\dns-sd.exe
2011-04-01 20:46 . 2011-04-02 07:46
1467200
----a-w-
c:\windows\system32\msvcr100d.dll
2011-04-01 20:46 . 2011-04-02 07:46
1467200
----a-w-
c:\windows\msvcr100d.dll
2011-04-01 20:46 . 2011-04-02 07:46
631616
----a-w-
c:\windows\system32\msvcp100d.dll
2011-04-01 20:46 . 2011-04-02 07:46
631616
----a-w-
c:\windows\msvcp100d.dll
2011-04-01 15:50 . 2011-04-02 07:46
346112
----a-w-
c:\windows\system32\libcurld.dll
2011-04-01 15:50 . 2011-04-02 07:46
346112
----a-w-
c:\windows\libcurld.dll
2011-03-30 15:39 . 2011-04-18 08:40
4384376
----a-w-
c:\windows\system32\GameMon.des
2011-03-16 18:14 . 2011-03-04 16:17
137656
----a-w-
c:\windows\system32\drivers\avipbb.sys
2011-03-07 17:33 . 2008-04-14 11:00
1033728
----a-w-
c:\windows\explorer.exe
2011-03-07 05:33 . 2010-04-19 13:10
692736
----a-w-
c:\windows\system32\inetcomm.dll
2011-03-05 11:39 . 2011-03-05 11:39
323624
----a-w-
c:\windows\system32\wiaaut.dll
2011-03-04 06:37 . 2008-04-14 11:00
420864
----a-w-
c:\windows\system32\vbscript.dll
2011-03-03 13:53 . 2008-04-14 10:36
1857920
----a-w-
c:\windows\system32\win32k.sys
2011-02-22 23:05 . 2008-05-11 16:29
916480
----a-w-
c:\windows\system32\wininet.dll
2011-02-22 23:05 . 2008-05-11 16:29
43520
------w-
c:\windows\system32\licmgr10.dll
2011-02-22 23:05 . 2008-05-11 16:28
1469440
------w-
c:\windows\system32\inetcpl.cpl
2011-02-22 11:43 . 2008-05-11 16:28
385024
------w-
c:\windows\system32\html.iec
.
.
------- Sigcheck -------
.
[-] 2008-05-11 . E47D77A2F5D64974D9B6724552EB44AD . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((( SnapShot_2011-04-18_09.02.08 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-01-11 07:59 . 2011-01-11 07:59
51024 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_214ee422\vcomp90.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
59728 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90rus.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
42832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90kor.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
43344 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90jpn.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
61264 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90ita.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
62800 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90fra.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
61776 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90esp.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
61776 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90esn.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
53584 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90enu.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
63312 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90deu.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
36688 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90cht.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
35664 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90chs.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfcm90u.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfcm90.dll
+ 2009-06-26 16:10 . 2009-06-26 16:10
59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_a57b1f13\mfcm90u.dll
+ 2009-06-26 16:10 . 2009-06-26 16:10
59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_a57b1f13\mfcm90.dll
+ 2011-01-10 20:03 . 2011-01-10 20:03
65536 c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_189d6662\vcomp.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80KOR.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80JPN.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80ITA.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80FRA.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80ESP.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80ENU.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
65536 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80DEU.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
45056 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80CHT.dll
+ 2011-01-10 19:32 . 2011-01-10 19:32
40960 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_3dcd24cb\mfc80CHS.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80KOR.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80JPN.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ITA.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80FRA.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ESP.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80ENU.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
65536 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80DEU.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
45056 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80CHT.dll
+ 2009-07-11 17:32 . 2009-07-11 17:32
40960 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_0ccc058c\mfc80CHS.dll
+ 2011-01-11 01:05 . 2011-01-11 01:05
57856 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_e87e0bcd\mfcm80u.dll
+ 2011-01-11 01:23 . 2011-01-11 01:23
69632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_e87e0bcd\mfcm80.dll
+ 2011-01-10 18:21 . 2011-01-10 18:21
97280 c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_7837863c\ATL80.dll
+ 2011-05-13 15:31 . 2011-05-13 15:31
16384 c:\windows\Temp\Perflib_Perfdata_6f0.dat
+ 2011-05-22 09:33 . 2011-05-22 09:33
16384 c:\windows\Temp\Perflib_Perfdata_118.dat
+ 2011-05-18 15:02 . 2006-07-28 06:30
62744 c:\windows\system32\xinput1_2.dll
+ 2011-05-18 15:02 . 2006-03-31 09:39
62672 c:\windows\system32\xinput1_1.dll
+ 2011-05-18 15:03 . 2010-06-02 01:55
74072 c:\windows\system32\XAPOFX1_5.dll
+ 2011-05-18 15:03 . 2010-02-04 07:01
74072 c:\windows\system32\XAPOFX1_4.dll
+ 2011-05-18 15:03 . 2009-09-04 14:44
69464 c:\windows\system32\XAPOFX1_3.dll
+ 2011-05-18 15:03 . 2008-10-27 07:04
70992 c:\windows\system32\XAPOFX1_2.dll
+ 2011-05-18 15:03 . 2008-05-30 11:17
65032 c:\windows\system32\XAPOFX1_0.dll
+ 2011-05-18 15:03 . 2010-02-04 07:01
22360 c:\windows\system32\X3DAudio1_7.dll
+ 2011-05-18 15:03 . 2009-03-16 11:18
22360 c:\windows\system32\X3DAudio1_6.dll
+ 2011-05-18 15:03 . 2008-10-27 07:04
23376 c:\windows\system32\X3DAudio1_5.dll
+ 2011-05-18 15:03 . 2008-05-30 11:17
25608 c:\windows\system32\X3DAudio1_4.dll
+ 2011-05-18 15:02 . 2008-03-05 13:00
25608 c:\windows\system32\X3DAudio1_3.dll
+ 2011-05-18 15:02 . 2007-10-22 00:37
17928 c:\windows\system32\X3DAudio1_2.dll
+ 2011-05-18 15:02 . 2007-03-05 09:42
15128 c:\windows\system32\x3daudio1_1.dll
+ 2011-05-18 15:02 . 2006-02-03 05:41
14032 c:\windows\system32\x3daudio1_0.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
51024 c:\windows\system32\vcomp100.dll
+ 2001-11-22 15:00 . 2011-05-13 06:57
84638 c:\windows\system32\perfc01F.dat
+ 2001-11-22 15:00 . 2011-05-13 06:57
74140 c:\windows\system32\perfc009.dat
+ 2008-05-02 08:58 . 2009-10-06 08:52
91136 c:\windows\system32\nmwcdcls.dll
+ 2011-05-11 15:37 . 2011-05-11 15:37
57236 c:\windows\system32\mlfcache.dat
+ 2010-03-18 06:15 . 2010-03-18 06:15
80720 c:\windows\system32\mfcm100u.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
80208 c:\windows\system32\mfcm100.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
60752 c:\windows\system32\mfc100rus.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
43344 c:\windows\system32\mfc100kor.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
43856 c:\windows\system32\mfc100jpn.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
62288 c:\windows\system32\mfc100ita.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
64336 c:\windows\system32\mfc100fra.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
63824 c:\windows\system32\mfc100esn.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
55120 c:\windows\system32\mfc100enu.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
64336 c:\windows\system32\mfc100deu.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
36176 c:\windows\system32\mfc100cht.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
36176 c:\windows\system32\mfc100chs.dll
+ 2011-05-10 18:04 . 2011-02-18 13:36
41984 c:\windows\system32\DRVSTORE\usbaapl_05A32DBD3911A2EF4222EF5BE7BB535FAB37D6C4\usbaapl.sys
+ 2011-05-10 18:04 . 2010-04-19 16:29
18432 c:\windows\system32\DRVSTORE\netaapl_8A27A03003759CB01567E831096473C330131D64\netaapl.sys
+ 2010-09-02 07:32 . 2010-09-02 07:32
58368 c:\windows\system32\bdmpegv.dll
+ 2010-09-02 07:33 . 2010-09-02 07:33
15360 c:\windows\system32\bdmjpeg.dll
+ 2011-04-29 16:14 . 2011-04-29 16:14
21504 c:\windows\Installer\f1a3192.msi
+ 2011-05-03 19:49 . 2011-05-03 19:49
22528 c:\windows\Installer\2a13d57.msi
+ 2011-05-08 18:19 . 2011-05-08 18:19
28160 c:\windows\Installer\1c0fe4d1.msi
+ 2011-05-03 19:48 . 2011-05-03 19:48
10134 c:\windows\Installer\{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}\ARPPRODUCTICON.exe
+ 2011-05-03 19:48 . 2011-05-03 19:48
10134 c:\windows\Installer\{D1A19B02-817E-4296-A45B-07853FD74D57}\ARPPRODUCTICON.exe
+ 2011-05-03 19:47 . 2011-05-03 19:47
10134 c:\windows\Installer\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}\ARPPRODUCTICON.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
35088 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
35088 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
18704 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
18704 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
20240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
20240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-08-30 15:30 . 2011-04-22 15:39
49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
- 2010-08-30 15:30 . 2011-02-17 09:51
49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2011-05-10 17:35 . 2011-05-10 17:35
27136 c:\windows\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe
+ 2011-05-03 19:48 . 2011-05-03 19:48
10134 c:\windows\Installer\{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}\ARPPRODUCTICON.exe
+ 2011-05-03 19:50 . 2011-05-03 19:50
10134 c:\windows\Installer\{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}\ARPPRODUCTICON.exe
+ 2011-05-03 19:47 . 2011-05-03 19:47
10134 c:\windows\Installer\{08D2E121-7F6A-43EB-97FD-629B44903403}\ARPPRODUCTICON.exe
+ 2011-05-03 19:48 . 2011-05-03 19:48
10134 c:\windows\Installer\{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}\ARPPRODUCTICON.exe
- 2010-11-01 22:30 . 2010-11-01 22:30
12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
653136 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_0517bbc6\msvcr90.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
569680 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_0517bbc6\msvcp90.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_0517bbc6\msvcm90.dll
+ 2009-06-26 16:07 . 2009-06-26 16:07
653120 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_d494ac0e\msvcr90.dll
+ 2009-06-26 16:07 . 2009-06-26 16:07
569664 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_d494ac0e\msvcp90.dll
+ 2009-06-26 16:10 . 2009-06-26 16:10
225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_d494ac0e\msvcm90.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
159048 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_65b7a93a\atl90.dll
+ 2009-06-26 16:07 . 2009-06-26 16:07
159032 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_35349982\atl90.dll
+ 2011-01-11 01:27 . 2011-01-11 01:27
632656 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_179798c8\msvcr80.dll
+ 2011-01-11 01:24 . 2011-01-11 01:24
554832 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_179798c8\msvcp80.dll
+ 2011-01-11 01:08 . 2011-01-11 01:08
479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_179798c8\msvcm80.dll
+ 2011-05-18 15:03 . 2010-06-02 01:55
527192 c:\windows\system32\XAudio2_7.dll
+ 2011-05-18 15:03 . 2010-02-04 07:01
528216 c:\windows\system32\XAudio2_6.dll
+ 2011-05-18 15:03 . 2009-09-04 14:44
515416 c:\windows\system32\XAudio2_5.dll
+ 2011-05-18 15:03 . 2009-03-16 11:18
517448 c:\windows\system32\XAudio2_4.dll
+ 2011-05-18 15:03 . 2008-10-27 07:04
514384 c:\windows\system32\XAudio2_3.dll
+ 2011-05-18 15:03 . 2008-05-30 11:19
507400 c:\windows\system32\XAudio2_1.dll
+ 2011-05-18 15:02 . 2008-03-05 13:03
479752 c:\windows\system32\XAudio2_0.dll
+ 2011-05-18 15:03 . 2010-06-02 01:55
239960 c:\windows\system32\xactengine3_7.dll
+ 2011-05-18 15:03 . 2010-02-04 07:01
238936 c:\windows\system32\xactengine3_6.dll
+ 2011-05-18 15:03 . 2009-09-04 14:44
238936 c:\windows\system32\xactengine3_5.dll
+ 2011-05-18 15:03 . 2009-03-16 11:18
235352 c:\windows\system32\xactengine3_4.dll
+ 2011-05-18 15:03 . 2008-10-27 07:04
235856 c:\windows\system32\xactengine3_3.dll
+ 2011-05-18 15:03 . 2008-05-30 11:18
238088 c:\windows\system32\xactengine3_1.dll
+ 2011-05-18 15:02 . 2008-03-05 13:03
238088 c:\windows\system32\xactengine3_0.dll
+ 2011-05-18 15:02 . 2007-07-19 21:57
267112 c:\windows\system32\xactengine2_9.dll
+ 2011-05-18 15:02 . 2007-06-20 17:46
266088 c:\windows\system32\xactengine2_8.dll
+ 2011-05-18 15:02 . 2007-04-04 15:55
261480 c:\windows\system32\xactengine2_7.dll
+ 2011-05-18 15:02 . 2007-01-24 12:27
255848 c:\windows\system32\xactengine2_6.dll
+ 2011-05-18 15:02 . 2006-12-08 09:02
251672 c:\windows\system32\xactengine2_5.dll
+ 2011-05-18 15:02 . 2006-09-28 13:05
237848 c:\windows\system32\xactengine2_4.dll
+ 2011-05-18 15:02 . 2006-07-28 06:30
236824 c:\windows\system32\xactengine2_3.dll
+ 2011-05-18 15:02 . 2006-05-31 04:24
230168 c:\windows\system32\xactengine2_2.dll
+ 2011-05-18 15:02 . 2007-10-22 00:39
267272 c:\windows\system32\xactengine2_10.dll
+ 2011-05-18 15:02 . 2006-03-31 09:39
229584 c:\windows\system32\xactengine2_1.dll
+ 2011-05-18 15:02 . 2006-02-03 05:42
230096 c:\windows\system32\xactengine2_0.dll
+ 2011-05-17 09:07 . 2011-05-10 13:37
543232 c:\windows\system32\spool\drivers\w32x86\PSCRIPT5.DLL
+ 2011-05-17 09:07 . 2011-05-10 13:37
728576 c:\windows\system32\spool\drivers\w32x86\PS5UI.DLL
+ 2011-05-17 09:07 . 2011-05-10 13:37
543232 c:\windows\system32\spool\drivers\w32x86\3\PSCRIPT5.DLL
+ 2011-05-17 09:07 . 2011-05-10 13:37
728576 c:\windows\system32\spool\drivers\w32x86\3\PS5UI.DLL
+ 2001-11-22 15:00 . 2011-05-13 06:57
436180 c:\windows\system32\perfh01F.dat
+ 2001-11-22 15:00 . 2011-05-13 06:57
448584 c:\windows\system32\perfh009.dat
+ 2010-03-18 06:15 . 2010-03-18 06:15
770384 c:\windows\system32\msvcr100.dll
+ 2011-04-03 15:51 . 2010-03-18 08:36
607568 c:\windows\system32\msvcp100.dll
+ 2011-05-22 09:34 . 2011-05-22 09:34
240288 c:\windows\system32\Macromed\Flash\FlashUtil10q_ActiveX.exe
+ 2011-05-22 09:34 . 2011-05-22 09:34
321184 c:\windows\system32\Macromed\Flash\FlashUtil10q_ActiveX.dll
+ 2011-05-18 15:03 . 2010-05-26 08:41
248672 c:\windows\system32\d3dx11_43.dll
+ 2011-05-18 15:03 . 2009-09-04 14:29
235344 c:\windows\system32\d3dx11_42.dll
+ 2011-05-18 15:03 . 2010-05-26 08:41
470880 c:\windows\system32\d3dx10_43.dll
+ 2011-05-18 15:03 . 2009-09-04 14:29
453456 c:\windows\system32\d3dx10_42.dll
+ 2011-05-18 15:03 . 2009-03-09 12:27
453456 c:\windows\system32\d3dx10_41.dll
- 2011-03-28 07:47 . 2008-10-10 01:52
452440 c:\windows\system32\d3dx10_40.dll
+ 2011-03-28 07:47 . 2008-10-15 03:22
452440 c:\windows\system32\d3dx10_40.dll
+ 2011-05-18 15:02 . 2008-02-05 20:07
462864 c:\windows\system32\d3dx10_37.dll
+ 2011-05-18 15:02 . 2007-10-02 06:56
444776 c:\windows\system32\d3dx10_36.dll
+ 2011-05-18 15:02 . 2007-05-16 13:45
443752 c:\windows\system32\d3dx10_34.dll
+ 2011-05-18 15:02 . 2007-03-15 13:57
443752 c:\windows\system32\d3dx10_33.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
138056 c:\windows\system32\atl100.dll
+ 2011-04-03 15:51 . 2010-03-18 08:36
607568 c:\windows\msvcp100.dll
+ 2011-05-18 15:02 . 2006-03-31 08:27
578560 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2911.0\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2006-02-03 04:40
578560 c:\windows\Microsoft.NET\DirectX for Managed Code\1.0.2910.0\Microsoft.DirectX.Direct3DX.dll
+ 2011-04-29 15:30 . 2011-04-29 15:30
459264 c:\windows\Installer\ef189c2.msi
+ 2011-04-29 15:30 . 2011-04-29 15:30
223232 c:\windows\Installer\ef189bb.msi
+ 2011-05-03 19:50 . 2011-05-03 19:50
356352 c:\windows\Installer\2a13d5d.msi
+ 2011-05-03 19:48 . 2011-05-03 19:48
316928 c:\windows\Installer\2a13d51.msi
+ 2011-05-03 19:48 . 2011-05-03 19:48
315392 c:\windows\Installer\2a13d4b.msi
+ 2011-05-03 19:48 . 2011-05-03 19:48
356864 c:\windows\Installer\2a13d45.msi
+ 2011-05-03 19:48 . 2011-05-03 19:48
359424 c:\windows\Installer\2a13d3f.msi
+ 2011-05-03 19:47 . 2011-05-03 19:47
316416 c:\windows\Installer\2a13d39.msi
+ 2011-05-03 19:47 . 2011-05-03 19:47
356352 c:\windows\Installer\2a13d33.msi
+ 2011-05-10 17:48 . 2011-05-10 17:48
811520 c:\windows\Installer\26339861.msi
+ 2011-05-08 16:48 . 2011-05-08 16:48
151552 c:\windows\Installer\1bbd0fa9.msi
+ 2011-05-21 17:12 . 2011-05-21 17:12
680448 c:\windows\Installer\{A589DA26-51BD-475D-8C32-E19E34145842}\IconEF5C48881.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
888080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
888080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
272648 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
272648 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
922384 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
922384 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
845584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
845584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
217864 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
217864 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
184080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
184080 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
159504 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
159504 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
+ 2011-05-18 15:02 . 2011-05-18 15:02
223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
3780936 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfc90u.dll
+ 2011-01-11 07:59 . 2011-01-11 07:59
3766088 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfc90.dll
+ 2009-06-26 16:07 . 2009-06-26 16:07
3780416 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_a57b1f13\mfc90u.dll
+ 2009-06-26 16:07 . 2009-06-26 16:07
3765048 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4137_x-ww_a57b1f13\mfc90.dll
+ 2011-01-10 19:50 . 2011-01-10 19:50
1093120 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_e87e0bcd\mfc80u.dll
+ 2011-01-10 19:50 . 2011-01-10 19:50
1101824 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.5592_x-ww_e87e0bcd\mfc80.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
4368720 c:\windows\system32\mfc100u.dll
+ 2010-03-18 06:15 . 2010-03-18 06:15
4342088 c:\windows\system32\mfc100.dll
+ 2001-09-05 18:00 . 2001-09-05 18:00
1700352 c:\windows\system32\gdiplus.dll
+ 2010-04-19 14:45 . 2011-05-11 07:53
3577080 c:\windows\system32\FNTCACHE.DAT
+ 2011-05-10 18:04 . 2011-02-18 13:36
4184352 c:\windows\system32\DRVSTORE\usbaapl_05A32DBD3911A2EF4222EF5BE7BB535FAB37D6C4\usbaaplrc.dll
+ 2011-05-10 18:04 . 2010-04-19 16:29
1461992 c:\windows\system32\DRVSTORE\netaapl_8A27A03003759CB01567E831096473C330131D64\wdfcoinstaller01009.dll
+ 2011-05-18 15:03 . 2010-05-26 08:41
1998168 c:\windows\system32\D3DX9_43.dll
+ 2011-05-18 15:03 . 2009-03-09 12:27
4178264 c:\windows\system32\D3DX9_41.dll
- 2011-03-28 07:47 . 2008-10-10 01:52
4379984 c:\windows\system32\D3DX9_40.dll
+ 2011-03-28 07:47 . 2008-10-15 03:22
4379984 c:\windows\system32\D3DX9_40.dll
+ 2011-05-18 15:02 . 2008-05-30 11:11
3850760 c:\windows\system32\D3DX9_38.dll
+ 2011-05-18 15:02 . 2008-03-05 12:56
3786760 c:\windows\system32\D3DX9_37.dll
+ 2011-05-18 15:02 . 2007-10-12 12:14
3734536 c:\windows\system32\d3dx9_36.dll
+ 2011-05-18 15:02 . 2007-05-16 13:45
3497832 c:\windows\system32\d3dx9_34.dll
+ 2011-05-18 15:02 . 2007-03-12 13:42
3495784 c:\windows\system32\d3dx9_33.dll
+ 2011-05-18 15:02 . 2006-11-29 10:06
3426072 c:\windows\system32\d3dx9_32.dll
+ 2011-05-18 15:02 . 2006-03-31 09:40
2388176 c:\windows\system32\d3dx9_30.dll
+ 2011-05-18 15:02 . 2006-02-03 05:43
2332368 c:\windows\system32\d3dx9_29.dll
+ 2011-05-18 15:03 . 2010-05-26 08:41
1868128 c:\windows\system32\d3dcsx_43.dll
+ 2011-05-18 15:03 . 2009-09-04 14:29
5501792 c:\windows\system32\d3dcsx_42.dll
+ 2011-05-18 15:03 . 2010-05-26 08:41
2106216 c:\windows\system32\D3DCompiler_43.dll
+ 2011-05-18 15:03 . 2009-09-04 14:29
1974616 c:\windows\system32\D3DCompiler_42.dll
+ 2011-05-18 15:03 . 2009-03-09 12:27
1846632 c:\windows\system32\D3DCompiler_41.dll
+ 2011-03-28 07:47 . 2008-10-15 03:22
2036576 c:\windows\system32\D3DCompiler_40.dll
- 2011-03-28 07:47 . 2008-10-10 01:52
2036576 c:\windows\system32\D3DCompiler_40.dll
+ 2011-05-18 15:02 . 2008-05-30 11:11
1491992 c:\windows\system32\D3DCompiler_38.dll
+ 2011-05-18 15:02 . 2008-03-05 12:56
1420824 c:\windows\system32\D3DCompiler_37.dll
+ 2011-05-18 15:02 . 2007-10-12 12:14
1374232 c:\windows\system32\D3DCompiler_36.dll
+ 2011-05-18 15:02 . 2007-05-16 13:45
1124720 c:\windows\system32\D3DCompiler_34.dll
+ 2011-05-18 15:02 . 2007-03-12 13:42
1123696 c:\windows\system32\D3DCompiler_33.dll
+ 2011-04-29 09:27 . 2011-04-29 09:27
4158464 c:\windows\Installer\3dadd.msp
+ 2011-04-28 02:42 . 2011-04-28 02:42
4990976 c:\windows\Installer\3dac6.msp
+ 2011-05-10 18:04 . 2011-05-10 18:04
3085312 c:\windows\Installer\2633988f.msi
+ 2011-05-10 18:03 . 2011-05-10 18:03
1984000 c:\windows\Installer\26339889.msi
+ 2011-05-10 17:40 . 2011-05-10 17:40
9472000 c:\windows\Installer\2633983d.msi
+ 2011-05-10 17:35 . 2011-05-10 17:35
1549312 c:\windows\Installer\2633959b.msi
+ 2011-05-21 17:12 . 2011-05-21 17:12
1653248 c:\windows\Installer\{A589DA26-51BD-475D-8C32-E19E34145842}\IconEF5C48883.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
1172240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
1172240 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
+ 2010-04-19 13:42 . 2011-05-12 15:40
1165584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
- 2010-04-19 13:42 . 2011-04-17 08:11
1165584 c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
+ 2011-05-18 15:02 . 2011-05-18 15:02
2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2010-11-01 22:30 . 2010-11-01 22:30
2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-05-18 15:02 . 2011-05-18 15:02
2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2010-04-20 16:00 . 2011-05-12 15:32
42829768 c:\windows\system32\MRT.exe
+ 2011-04-22 15:38 . 2011-04-22 15:38
20314624 c:\windows\Installer\5326ab5.msp
+ 2011-04-22 16:41 . 2011-04-22 16:41
11507712 c:\windows\Installer\3dafa.msp
+ 2011-05-10 18:04 . 2011-05-10 18:04
18360800 c:\windows\Installer\26339894.msi
+ 2011-05-21 17:12 . 2011-05-21 17:12
10196992 c:\windows\Installer\15d5798.msi
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2010-04-20 323392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2008-02-13 16857600]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"BigDog303"="c:\windows\VM303_STI.EXE" [2005-10-25 61440]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2011-01-12 49208]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-01-10 281768]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_2"="shell32" [X]
.
c:\documents and settings\agurali.XP-2CBB4BAD7EA1\Start Menu\Programlar\BaŸlang‡LimeWire On Startup.lnk - c:\program files\LimeWire\LimeWire.exe [N/A]
.
c:\documents and settings\All Users\Start Menu\Programlar\BaŸlang‡HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2006-2-19 288472]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2001-07-09 10:50
155648
----a-w-
c:\windows\system32\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-10-29 12:49
249064
----a-w-
c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"d:\\oyunlar\\Gameforge4D\\Metin2\\metin2.bin"=
"d:\\oyunlar\\Gameforge4D\\Metin2\\metin2client.bin"=
"c:\\Program Files\\DNA\\btdna.exe"=
"d:\oyunlar\Gameforge4D\AirRivalsTR\Launcher.atm"= d:\oyunlar\Gameforge4D\AirRivalsTR\Launcher.atm:Enabled:GameExe2
"d:\oyunlar\Gameforge4D\AirRivalsTR\Res-Voip\SCVoIP.exe"= d:\oyunlar\Gameforge4D\AirRivalsTR\Res-Voip\SCVoIP.exe:Enabled:GameVoIP
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\gPotato.eu\\Allods Online\\bin\\Launcher.exe"=
"c:\\gPotato.eu\\Allods Online\\bin\\AOgame.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"56584:TCP"= 56584:TCP:Pando Media Booster
"56584:UDP"= 56584:UDP:Pando Media Booster
"8396:TCP"= 8396:TCP:League of Legends Launcher
"8396:UDP"= 8396:UDP:League of Legends Launcher
"6989:TCP"= 6989:TCP:League of Legends Launcher
"6989:UDP"= 6989:UDP:League of Legends Launcher
"6980:TCP"= 6980:TCP:League of Legends Launcher
"6980:UDP"= 6980:UDP:League of Legends Launcher
"6971:TCP"= 6971:TCP:League of Legends Launcher
"6971:UDP"= 6971:UDP:League of Legends Launcher
"6958:TCP"= 6958:TCP:League of Legends Launcher
"6958:UDP"= 6958:UDP:League of Legends Launcher
"6963:TCP"= 6963:TCP:League of Legends Launcher
"6963:UDP"= 6963:UDP:League of Legends Launcher
"3747:TCP"= 3747:TCP:Akamai NetSession Interface
"5000:UDP"= 5000:UDP:Akamai NetSession Interface
.
R2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe -k Akamai [14.04.2008 14:00 14336]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [27.04.2011 20:55 136360]
R2 BT848;AVerMedia AVerTV WDM Video Capture (878);c:\windows\system32\drivers\Bt848.sys [19.04.2010 16:14 168448]
R3 XDva385;XDva385;\??\c:\windows\system32\XDva385.sys --> c:\windows\system32\XDva385.sys
S2 gupdate;Google Güncelleme Hizmeti (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [19.05.2010 12:04 136176]
S3 dump_wmimmc;dump_wmimmc;\??\d:\oyunlar\Gameforge4D\CABAL Online\GameGuard\dump_wmimmc.sys --> d:\oyunlar\Gameforge4D\CABAL Online\GameGuard\dump_wmimmc.sys
S3 gupdatem;Google Güncelleme Hizmeti (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [19.05.2010 12:04 136176]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service
S3 XDva347;XDva347;\??\c:\windows\system32\XDva347.sys --> c:\windows\system32\XDva347.sys
S3 XDva348;XDva348;\??\c:\windows\system32\XDva348.sys --> c:\windows\system32\XDva348.sys
S3 XDva349;XDva349;\??\c:\windows\system32\XDva349.sys --> c:\windows\system32\XDva349.sys
S3 XDva359;XDva359;\??\c:\windows\system32\XDva359.sys --> c:\windows\system32\XDva359.sys
S3 XDva362;XDva362;\??\c:\windows\system32\XDva362.sys --> c:\windows\system32\XDva362.sys
S3 XDva370;XDva370;\??\c:\windows\system32\XDva370.sys --> c:\windows\system32\XDva370.sys
S3 XDva380;XDva380;\??\c:\windows\system32\XDva380.sys --> c:\windows\system32\XDva380.sys
S3 XDva383;XDva383;\??\c:\windows\system32\XDva383.sys --> c:\windows\system32\XDva383.sys
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
Akamai
REG_MULTI_SZ
Akamai
.
Contents of the 'Scheduled Tasks' folder
.
2011-05-10 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 09:34]
.
2011-05-22 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-19 16:14]
.
2011-05-22 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-19 16:14]
.
2011-05-02 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1390067357-1645522239-1801674531-1007Core.job
- c:\documents and settings\agurali.XP-2CBB4BAD7EA1\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-09-28 16:14]
.
2011-05-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1390067357-1645522239-1801674531-1007UA.job
- c:\documents and settings\agurali.XP-2CBB4BAD7EA1\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-09-28 16:14]
.
2011-05-22 c:\windows\Tasks\User_Feed_Synchronization-{85B65E6C-F988-43E0-9496-7D601D066006}.job
- c:\windows\system32\msfeedssync.exe [2008-05-11 02:31]
.
2011-05-22 c:\windows\Tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
- c:\windows\Grywoa.exe [2011-05-21 17:02]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com.tr/
uInternet Settings,ProxyOverride = *.local
IE: Microsoft Excel'e &Ver - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Microsoft Excel'e Gö&nder - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {{d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\Xp\Start Menu\Programlar\IMVU\Run IMVU.lnk
.
- - - - ORPHANS REMOVED - - - -
.
HKCU-Run-NokiaOviSuite2 - c:\program files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
MSConfigStartUp-Adobe ARM - c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
MSConfigStartUp-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-05-22 17:15
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
BigDog303 = c:\windows\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)????????????????0?????????@??????????????
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-1390067357-1645522239-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{94AC0239-B145-1260-C148-38FE7022D811}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"haioapelhmkiicfh"=hex:61,61,00,00
"haioapeljoejijfp"=hex:61,61,00,00
"iammibjogpoegclbgg"=hex:69,61,6a,6b,67,66,67,64,61,69,67,6c,66,6b,68,6f,6a,67,
00,00
"hagocajckljijocc"=hex:6a,61,6c,6b,62,65,61,64,63,66,70,63,68,70,69,6a,6b,68,
6e,69,00,00
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):1e,48,8b,07,87,6e,15,95,49,c9,3d,d3,7c,4b,26,10,92,91,1a,6e,fc,
b1,cd,88,ee,de,e1,95,0f,71,c2,96,81,f2,ed,ca,2d,f5,db,8a,00,00,00,00,00,00,.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{94AC0239-B145-1260-C148-38FE7022D811}\InProcServer32*]
"iaknfplhjhkjcjbjmo"=hex:61,61,00,00
"iaknfplhjhmeaknbfi"=hex:61,61,00,00
"jaknjomaohalobnhfpad"=hex:69,61,6a,6b,67,66,67,64,61,69,67,6c,66,6b,68,6f,6a,
67,00,00
"iakndpocnpdmlmmlij"=hex:6a,61,6c,6b,62,65,61,64,63,66,70,63,68,70,69,6a,6b,68,
6e,69,00,00
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10q_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10q_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{c183021f-5e9b-4e50-aae9-42e10dd18dbc}]
@Denied: (Full) (Everyone)
"Model"=dword:00000094
"Therad"=dword:0000001b
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(700)
c:\windows\system32\Ati2evxx.dll
.
Completion time: 2011-05-22 17:17:31
ComboFix-quarantined-files.txt 2011-05-22 14:17
ComboFix2.txt 2011-04-18 09:06
ComboFix3.txt 2010-10-15 19:33
ComboFix4.txt 2010-10-08 18:59
ComboFix5.txt 2011-05-22 14:08
.
Pre-Run: 10.241.679.360 bayt boş
Post-Run: 10.844.147.712 bayt boş
.
- - End Of File - -