It's Cyber Monday - fantastic 70% discount

Buy Now

Limited time offer:

03

Days

/

00

Hrs

/

04

Min

/

04

Sec

Explorer corrupt?

Posted 4/6/2009 1:50 PM
#73084
User avatar

Garyh3 Valued member

Date Joined Nov 2016
Total Posts: 23
Hi Touch <br/> <br/> <br/>This pans from the same incident last time. It really never went away. My Windows explorer works fine for about 4 hrs and then starts to act funny. New explorer windows wont open I cannot open up pages in explorer or internet mail + Task manager will not open and then sometime it does and when it does it kinda looks like its blinking every second. Once I reboot its fine again. AVG does not throup up errors. Anyhow Would really appreciate a quick look at the HJ file and combofix txt <br/> <br/> <br/> <br/>Garyh3 <br/> <br/> <br/> <br/>ogfile of HijackThis v1.99.1 <br/>Scan saved at 14:42, on 2009-04-06 <br/>Platform: Windows XP SP3 (WinNT 5.01.2600) <br/>MSIE: Internet Explorer v7.00 (7.00.6000.16791) <br/> <br/>Running processes: <br/>C:\WINDOWS\System32\smss.exe <br/>C:\WINDOWS\system32\winlogon.exe <br/>C:\WINDOWS\system32\services.exe <br/>C:\WINDOWS\system32\lsass.exe <br/>C:\WINDOWS\system32\ibmpmsvc.exe <br/>C:\WINDOWS\system32\Ati2evxx.exe <br/>C:\WINDOWS\system32\svchost.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\Intel\Wireless\Bin\EvtEng.exe <br/>C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe <br/>C:\Program Files\Vodafone-vpn\cvpnd.exe <br/>C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe <br/>C:\WINDOWS\system32\spoolsv.exe <br/>C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe <br/>C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe <br/>C:\Program Files\Pure Digital Technologies\FlipShare\FlipShareService.exe <br/>C:\Program Files\Windows Live\Family Safety\fsssvc.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\Google\Update\GoogleUpdate.exe <br/>C:\Program Files\iPass\iPassConnect\iPCAgent.exe <br/>C:\Program Files\Java\jre6\bin\jqs.exe <br/>C:\Program Files\Network Associates\Common Framework\FrameworkService.exe <br/>C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE <br/>C:\Program Files\Mil Incorporated\Mil Shield\ShieldService.exe <br/>C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe <br/>C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe <br/>C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\SgeClient.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\SgeCtl.exe <br/>C:\WINDOWS\system32\SgLogPlayer.exe <br/>C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe <br/>C:\WINDOWS\system32\svchost.exe <br/>C:\WINDOWS\system32\TpKmpSVC.exe <br/>C:\Program Files\IBM\Director\bin\twgipcsv.exe <br/>C:\Program Files\IBM\Director\bin\twgipc.exe <br/>C:\WINDOWS\system32\vnxserv.exe <br/>C:\Program Files\IBM\Director\bin\twgescli.exe <br/>C:\PROGRA~1\AVG\AVG8\avgrsx.exe <br/>C:\PROGRA~1\AVG\AVG8\avgnsx.exe <br/>C:\Program Files\IBM\Director\bin\twgmonit.exe <br/>C:\WINDOWS\system32\msiexec.exe <br/>C:\WINDOWS\system32\wbem\wmiapsrv.exe <br/>C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe <br/>C:\WINDOWS\system32\Ati2evxx.exe <br/>C:\WINDOWS\Explorer.EXE <br/>C:\Program Files\Synaptics\SynTP\SynTPLpr.exe <br/>C:\Program Files\Synaptics\SynTP\SynTPEnh.exe <br/>C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe <br/>C:\Program Files\ThinkPad\UltraNav Wizard\UNavTray.EXE <br/>C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe <br/>C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe <br/>C:\Program Files\Lenovo\PkgMgr\HOTKEY\TPONSCR.exe <br/>C:\Program Files\Lenovo\PkgMgr\HOTKEY_1\TpScrex.exe <br/>C:\WINDOWS\system32\dla\tfswctrl.exe <br/>C:\WINDOWS\system32\rundll32.exe <br/>C:\WINDOWS\system32\TpScrLk.exe <br/>C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe <br/>C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe <br/>C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\Ecview.exe <br/>C:\Program Files\iPass\iPassConnect\downloader\ipccheck.exe <br/>C:\PROGRA~1\AVG\AVG8\avgtray.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\WKSCFGSRV.EXE <br/>C:\Program Files\Windows Live\Family Safety\fsui.exe <br/>C:\Program Files\Java\jre6\bin\jusched.exe <br/>C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe <br/>C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe <br/>C:\WINDOWS\system32\ctfmon.exe <br/>C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe <br/>C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe <br/>C:\Program Files\Mil Incorporated\Mil Shield\ShieldWorker.exe <br/>C:\Documents and Settings\eloy04260\Local Settings\Application Data\Google\Update\GoogleUpdate.exe <br/>C:\Program Files\IBM\Director\cimom\bin\tier1slp.exe <br/>C:\Program Files\IBM\Director\bin\IBMSA.exe <br/>C:\Program Files\IBM\Director\bin\slp_srvreg.exe <br/>C:\Program Files\IBM\Director\cimom\bin\cimlistener.exe <br/>C:\Program Files\IBM\Director\cimom\bin\wmicimserver.exe <br/>C:\Program Files\Windows Live\Contacts\wlcomm.exe <br/>C:\Documents and Settings\eloy04260\Local Settings\Apps\2.0\BO8MRCNE.RBW\H6Q1W016.E4H\moni..tion_ead9156a56b0f665_0001.0000_50417c0338be37d1\MonitoringAlertDesktopClient.exe <br/>C:\PROGRA~1\WINZIP\winzip32.exe <br/>C:\Documents and Settings\eloy04260\Local Settings\temp\wz28c9\HijackThis.exe <br/> <br/>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url=snapshot@2009-04-03_16.08.32.28]snapshot@2009-04-03_16.08.32.28[/url] ))))))))))))))))))))))))))))))))))))))))) <br/>. <br/>+ 2009-04-05 20:30:35 16,384 ----atw c:\windows\Temp\Perflib_Perfdata_12c.dat <br/>+ 2009-04-05 20:30:34 16,384 ----atw c:\windows\Temp\Perflib_Perfdata_464.dat <br/>+ 2009-04-05 20:30:42 16,384 ----atw c:\windows\Temp\Perflib_Perfdata_ff4.dat <br/>. <br/>((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) <br/>. <br/>. <br/>*Note* empty entries & legit default entries are not shown <br/>REGEDIT4 <br/> <br/>[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] <br/>"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] <br/>"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-02-06 3885408] <br/>"updateMgr"="c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 313472] <br/>"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-22 68856] <br/>"MilShieldSlave"="c:\program files\Mil Incorporated\Mil Shield\ShieldWorker.exe" [2008-03-16 741376] <br/>"Google Update"="c:\documents and settings\eloy04260\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2009-02-04 133104] <br/> <br/>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] <br/>"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2006-02-14 110592] <br/>"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-02-14 512000] <br/>"TPKMAPHELPER"="c:\program files\ThinkPad\Utilities\TpKmapAp.exe" [2005-10-29 864256] <br/>"TPHOTKEY"="c:\progra~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe" [2006-05-10 94208] <br/>"EZEJMNAP"="c:\progra~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe" [2006-02-24 237568] <br/>"SoundMAXPnP"="c:\program files\Analog Devices\SoundMAX\SMax4PNP.exe" [2004-10-14 1388544] <br/>"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-01-22 344064] <br/>"UpdateManager"="c:\program files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 110592] <br/>"dla"="c:\windows\system32\dla\tfswctrl.exe" [2005-03-07 122939] <br/>"PWRMGRTR"="c:\progra~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL" [2006-03-23 151552] <br/>"BLOG"="c:\progra~1\ThinkPad\UTILIT~1\BatLogEx.DLL" [2006-03-23 208896] <br/>"TPKBDLED"="c:\windows\system32\TpScrLk.exe" [2002-10-09 40960] <br/>"McAfeeUpdaterUI"="c:\program files\Network Associates\Common Framework\UpdaterUI.exe" [2005-09-27 139320] <br/>"ACTray"="c:\program files\ThinkPad\ConnectUtilities\ACTray.exe" [2006-04-17 409600] <br/>"ACWLIcon"="c:\program files\ThinkPad\ConnectUtilities\ACWLIcon.exe" [2006-04-17 98304] <br/>"SgeEcView"="c:\program files\Utimaco\SafeGuard Easy\Ecview.exe" [2004-09-20 20480] <br/>"EdWizard"="c:\program files\Utimaco\SafeGuard Easy\EdWizard.exe" [2004-09-20 245760] <br/>"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648] <br/>"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-03-20 1932568] <br/>"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2009-02-06 454000] <br/>"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-15 148888] <br/>"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-03-16 515416] <br/>"mmtask"="c:\program files\MusicMatch\MusicMatch Jukebox\mmtask.exe" [2003-12-12 53248] <br/>"MMTray"="c:\program files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" [2003-12-12 118784] <br/>"TP4EX"="tp4ex.exe" [2005-10-17 c:\windows\system32\TP4EX.exe] <br/> <br/>c:\documents and settings\All Users\Start Menu\Programs\Startup\ <br/>Vodafone Ireland Vodafonie.ie VPN Client.lnk - c:\program files\Vodafone-vpn\ipsecdialer.exe [2006-07-28 1216588] <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] <br/>"ForceStartMenuLogOff"= 1 (0x1) <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ACNotify] <br/>2006-04-17 19:01 32768 c:\program files\ThinkPad\ConnectUtilities\ACNotify.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter] <br/>2009-03-20 11:53 10520 c:\windows\system32\avgrsstx.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\NotLog] <br/>2002-01-22 21:28 110592 c:\windows\system32\SGLogEx.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\SGLogNotification] <br/>2004-08-26 20:18 69632 c:\windows\system32\SGLogNotification.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\tpfnf2] <br/>2005-07-06 05:45 28672 c:\windows\system32\notifyf2.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\tphotkey] <br/>2005-12-01 02:16 24576 c:\windows\system32\tphklock.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] <br/>"vidc.3IV2"= 3ivxVfWCodec.dll <br/> <br/>[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] <br/>@="Service" <br/> <br/>[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] <br/>"%windir%\\system32\\sessmgr.exe"= <br/>"c:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe"= <br/>"c:\\Program Files\\Messenger\\msmsgs.exe"= <br/>"c:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr.exe"= <br/>"%windir%\\Network Diagnostic\\xpnetdiag.exe"= <br/>"c:\\Program Files\\uTorrent\\uTorrent.exe"= <br/>"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"= <br/>"c:\\Documents and Settings\\eloy04260\\GaryStuff\\GarysStuff\\FTP\\WS_FTP95.exe"= <br/>"c:\\WINDOWS\\system32\\ftp.exe"= <br/>"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= <br/>"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"= <br/>"c:\\Program Files\\IBM\\SMA\\smabat.exe"= <br/>"c:\\Program Files\\Skype\\Phone\\Skype.exe"= <br/> <br/>[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] <br/>"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009 <br/> <br/>R0 AES-256;AES-256;c:\windows\system32\drivers\AES256.sys [2004-09-20 18016] <br/>R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-03-16 64160] <br/>R0 SgeFlt;SgeFlt;c:\windows\system32\drivers\SGEFLT.sys [2004-09-20 54944] <br/>R0 TPDiskPM;TPDiskPM;c:\windows\system32\drivers\TPDiskPM.sys [2006-03-17 14848] <br/>R1 ANC;ANC;c:\windows\system32\drivers\ANC.sys [2006-05-28 11520] <br/>R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-01-08 325640] <br/>R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-03-20 108552] <br/>R1 IBMTPCHK;IBMTPCHK;c:\windows\system32\drivers\IBMBLDID.sys [2006-05-28 6016] <br/>R1 TPPWRIF;TPPWRIF;c:\windows\system32\drivers\TPPWRIF.SYS [2006-03-17 4442] <br/>R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2009-01-29 298264] <br/>R2 cimlistener;IBM Director CIM Listener;c:\program files\IBM\Director\cimom\bin\cimlistener.exe [2005-10-13 36864] <br/>R2 CVPNDRV;Vodafone Ireland IPsec Driver;c:\windows\system32\drivers\CVPNDrv.sys [2006-07-28 160327] <br/>R2 FlipShare Service;FlipShare Service;c:\program files\Pure Digital Technologies\FlipShare\FlipShareService.exe [2008-11-13 439616] <br/>R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-01-12 55136] <br/>R2 fsssvc;Windows Live Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360] <br/>R2 ibmsa;IBM SLP SA;c:\program files\IBM\Director\bin\IBMSA.exe [2005-10-13 20480] <br/>R2 iPCAgent;iPCAgent;c:\program files\iPass\iPassConnect\iPCAgent.exe [2006-05-15 90112] <br/>R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2009-01-19 951632] <br/>R2 SeaPort;SeaPort;c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656] <br/>R2 tier1slp;IBM Director Agent SLP Attributes;c:\program files\IBM\Director\cimom\bin\tier1slp.exe [2005-10-13 28672] <br/>R2 TWGIPC;IBM Director Support Program;c:\program files\IBM\Director\bin\twgipcsv.exe [2005-10-19 53328] <br/>R2 VnxTcp;VnxTcp;c:\windows\system32\drivers\vnxtcp.sys [2006-05-15 148240] <br/>R2 wmicimserver;IBM Director Agent WMI CIM Server;c:\program files\IBM\Director\cimom\bin\wmicimserver.exe [2005-10-13 536576] <br/>R3 TPInput;TPInput;c:\windows\system32\drivers\TPInput.sys [2006-03-17 6784] <br/>R3 TPM11;NSC Integrated Trusted Platform Module 1.1;c:\windows\system32\drivers\nsctpm11.sys [1980-01-01 14336] <br/>S2 drujguxqsz;drujguxqsz;\??\c:\windows\system32\drivers\failotwfczv.sys --> c:\windows\system32\drivers\failotwfczv.sys [?] <br/>S2 gupdate1c966cbfc29245e;Google Update Service (gupdate1c966cbfc29245e);c:\program files\Google\Update\GoogleUpdate.exe [2008-12-25 133104] <br/>S3 dxI2C;dxI2C;c:\program files\IBM\Director\cimom\bin\i2c32.sys [2005-09-16 23936] <br/>S3 dxPMem;dxPMem;c:\program files\IBM\Director\cimom\bin\pmemnt.sys [2005-09-16 4480] <br/>S3 OracleOra81ClientCache;OracleOra81ClientCache;c:\oracle\ora81\bin\ONRSD.EXE [2000-10-19 411244] <br/>S3 SDTHOOK;SDTHOOK;c:\windows\system32\drivers\SDTHOOK.SYS [2008-02-19 44928] <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E] <br/>\Shell\AutoRun\command - E:\Setup_FlipShare.exe <br/>\Shell\Setup FlipShare\command - E:\Setup_FlipShare.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{241d123e-f22c-11da-aa05-00166f1b7757}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56902c3b-b949-11dc-a941-00166f1b5cde}] <br/>\Shell\AutoRun\command - e:\system\viewer\FlipVideoforPC.exe <br/>\Shell\Flip Video for PC\command - e:\system\viewer\FlipVideoforPC.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56902c43-b949-11dc-a941-00166f1b5cde}] <br/>\Shell\AutoRun\command - E:\Setup_FlipShare.exe <br/>\Shell\Setup FlipShare\command - E:\Setup_FlipShare.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c5b1d234-f1a7-11da-827a-00166f1b7757}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d82dea2a-f0d6-11da-a065-00166f2b82ff}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f95c3632-5e8d-11db-a8b8-00166f1b5cde}] <br/>\Shell\AutoRun\command - E:\Launch.exe <br/>. <br/>Contents of the 'Scheduled Tasks' folder <br/> <br/>2009-04-06 c:\windows\Tasks\Ad-Aware Update (Daily).job <br/>- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-03-16 13:46] <br/>. <br/>. <br/>------- Supplementary Scan ------- <br/>. <br/>uLocal Page = \blank.htm <br/>uStart Page = hxxp://www.google.com/ <br/>uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 <br/>uInternet Settings,ProxyServer = 10.162.66.55:8080 <br/>uInternet Settings,ProxyOverride = hxxp://sblprdiweb2;http://umatter.eloyaltyco.com <br/>uSearchURL,(Default) = hxxp://www.google.com/search?q=%s <br/>IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 <br/>Trusted Zone: eloyalty.com <br/>Trusted Zone: eloyaltyco.com <br/>Trusted Zone: imageshack.us <br/>DPF: Microsoft XML Parser for Java - http://www.gmer.net <br/>Rootkit scan 2009-04-06 14:23:19 <br/>Windows 5.1.2600 Service Pack 3 NTFS <br/> <br/>scanning hidden processes ... <br/> <br/>scanning hidden autostart entries ... <br/> <br/>scanning hidden files ... <br/> <br/>scan completed successfully <br/>hidden files: 0 <br/> <br/>************************************************************************** <br/>. <br/>--------------------- DLLs Loaded Under Running Processes --------------------- <br/> <br/>- - - - - - - > 'winlogon.exe'(1316) <br/>c:\windows\system32\SGGINA.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGEGINA.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\CMessage.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgWin32.dll <br/>c:\program files\Utimaco\SafeGuard Easy\CmfcApi.dll <br/>c:\program files\Utimaco\SafeGuard Easy\EcView.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgeUtil.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgUicl.dll <br/>c:\program files\Utimaco\SafeGuard Easy\FLTAPI.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGUICLRES.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGUICL.MSG <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_ERR0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_MSG0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\encviewer.ocx <br/>c:\program files\Utimaco\SafeGuard Easy\sgea40.dll <br/>c:\program files\Utimaco\SafeGuard Easy\CfgApi.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGEDRV.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_INFO0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SgHtmHlp.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGHTMHLP0409.dll <br/>c:\program files\ThinkPad\ConnectUtilities\ACNotify.dll <br/>c:\program files\ThinkPad\ConnectUtilities\AcSvcStub.dll <br/>c:\program files\ThinkPad\ConnectUtilities\AcLocSettings.dll <br/>c:\program files\ThinkPad\ConnectUtilities\ACHelper.dll <br/>c:\windows\system32\Ati2evxx.dll <br/>c:\windows\system32\tphklock.dll <br/>c:\program files\Utimaco\SafeGuard Easy\DComSec.dll <br/>c:\windows\system32\GetUserSid.dll <br/>c:\windows\system32\LogMsgApp.Dll <br/>c:\windows\system32\LogData.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SecClassFactoryPS.dll <br/>c:\program files\Utimaco\SafeGuard Easy\wkscfgsrvps.dll <br/>c:\windows\system32\SGLogEx.dll <br/>c:\windows\system32\SGLogNotification.dll <br/>c:\windows\system32\notifyf2.dll <br/>. <br/>Completion time: 2009-04-06 14:26:39 <br/>ComboFix-quarantined-files.txt 2009-04-06 13:25:52 <br/>ComboFix2.txt 2009-04-05 17:08:47 <br/>ComboFix3.txt 2009-04-03 15:10:58 <br/> <br/>Pre-Run: 11,720,404,992 bytes free <br/>Post-Run: 11,744,460,800 bytes free <br/> <br/>266 <br/> <br/> <br/> <br/>Regards <br/> <br/> <br/> <br/>Garyh3
Posted 4/8/2009 2:01 AM
#73085
User avatar

Touch Advanced member

Date Joined Nov 2016
Total Posts: 12976
Hello Garyh3 :cool: <br/> <br/> <br/>It looks like you have 2 antivirus programs running - AVG8 and SafeGuard Easy ? If you have, uninstall one of them. <br/> <br/> <br/> <br/>Reboot. <br/> <br/> <br/> <br/> <br/> <br/>I´ll look to your combolog asap.

[color=black face="Courier New" sab="311">[2]Click here: Before-posting-a-log[/2][/url]

<?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" />
[/color]
Do not PM me with logfiles. They will be deleted.


Posted 4/8/2009 9:33 AM
#73093
User avatar

Touch Advanced member

Date Joined Nov 2016
Total Posts: 12976
<SPAN lang=EN>Open notepad and copy/paste the text in bold in<SPAN style="mso-spacerun: yes"> below into it: <br/><BR style="mso-special-character: line-break"><BR style="mso-special-character: line-break"> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 12.0pt">-------------------------------------------------------------------------------<?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /><o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 12.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 12.0pt">Killall:<o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 12.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 12.0pt">Snapshot::<o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 12.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 8.0pt">File::<o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 8pt; COLOR: black; FONT-FAMILY: Verdana; mso-ansi-language: EN">c:\windows\system32\drivers\failotwfczv.sys<o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 8.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 8.0pt">Driver::<o:p></o:p> <br/> <br/><SPAN style="FONT-SIZE: 8pt; COLOR: black; FONT-FAMILY: Verdana">Drujguxqsz<o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 8.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 8.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: Verdana; mso-ansi-language: EN; mso-bidi-font-size: 8.0pt">--------------------------------------------------------------------------------------<o:p></o:p> <br/> <br/><SPAN lang=EN>Save this as: <br/>CFScript<SPAN lang=EN-GB style="mso-ansi-language: EN-GB"><o:p></o:p> <br/> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN-GB; mso-bidi-font-size: 12.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN-GB; mso-bidi-font-size: 12.0pt">http://img.photobucket.com/albums/v666/sUBs/CFScriptB-4.gif<o:p></o:p> <br/> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: Verdana; mso-ansi-language: EN-GB; mso-bidi-font-size: 12.0pt"> <o:p></o:p> <br/> <br/><SPAN lang=EN>Refering to the picture above, drag CFScript into ComboFix.exe <br/> <br/><SPAN lang=EN> <br/>Then post fresh combofix<SPAN style="mso-spacerun: yes"> log. <br/> <br/><SPAN lang=EN> <o:p></o:p> <br/><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #222222; FONT-FAMILY: Verdana; mso-ansi-language: EN-US; mso-bidi-font-family: 'Times New Roman'; mso-fareast-font-family: 'Times New Roman'; mso-fareast-language: DA; mso-bidi-language: AR-SA">

[color=black face="Courier New" sab="311">[2]Click here: Before-posting-a-log[/2][/url]

<?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" />
[/color]
Do not PM me with logfiles. They will be deleted.


Posted 4/9/2009 12:19 PM
#73104
User avatar

Garyh3 Valued member

Date Joined Nov 2016
Total Posts: 23
Hi Touch sorry I didnt get an email notification to respond hmmmm! <br/> <br/>so the SafeGuard is pc encription program and not a virus scan software. <br/> <br/>Ok here is the new Combo log <br/> <br/>ComboFix 09-04-04.01 - eloy04260 2009-04-09 12:48:04.9 - NTFSx86 <br/>Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1534.860 [GMT 1:00] <br/>Running from: c:\temp\ComboFix.exe <br/>Command switches used :: c:\temp\CFScript.txt <br/>AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) <br/>AV: Lavasoft Ad-Watch Live! Anti-Virus *On-access scanning disabled* (Updated) <br/> * Created a new restore point <br/> <br/>FILE :: <br/>c:\windows\system32\drivers\failotwfczv.sys <br/>. <br/> <br/>((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) <br/>. <br/> <br/>. <br/>((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) <br/>. <br/> <br/>-------\Service_drujguxqsz <br/> <br/> <br/>((((((((((((((((((((((((( Files Created from 2009-03-09 to 2009-04-09 ))))))))))))))))))))))))))))))) <br/>. <br/> <br/>2009-04-08 16:13 . 2009-04-08 16:13 22,016 --a------ C:\0xf9.exe <br/>2009-04-05 17:57 . 2009-04-05 17:57 3,067,803 -ra------ c:\temp\ComboFix.exe <br/>2009-04-04 11:17 . 2009-04-04 11:17 <DIR> d-------- c:\program files\MUSICMATCH <br/>2009-03-30 19:02 . 2009-04-09 13:07 24 --a------ c:\windows\sysc_drv.ini <br/>2009-03-27 12:59 . 2009-01-09 20:19 1,089,593 --------- c:\windows\system32\dllcache\ntprint.cat <br/>2009-03-20 11:53 . 2009-03-28 10:52 108,552 --a------ c:\windows\system32\drivers\avgtdix.sys <br/>2009-03-16 14:26 . 2009-03-16 13:47 15,688 --a------ c:\windows\system32\lsdelete.exe <br/>2009-03-16 13:47 . 2009-03-16 13:47 64,160 --a------ c:\windows\system32\drivers\Lbd.sys <br/>2009-03-16 13:44 . 2009-03-16 13:44 <DIR> d--h-c--- c:\documents and settings\All Users\Application Data\{2BAE6915-8510-4B9F-B498-02DA86258AA0} <br/>2009-03-16 13:43 . 2009-03-16 13:43 <DIR> d-------- c:\program files\Lavasoft <br/>2009-03-16 13:42 . 2009-03-16 13:42 34,542,776 --a------ c:\temp\Ad-AwareAE_66.exe <br/>2009-03-16 13:07 . 2009-03-16 19:33 <DIR> d-------- c:\program files\NoAdware <br/>2009-03-15 14:03 . 2009-03-15 14:03 73,728 --a------ c:\windows\system32\javacpl.cpl <br/> <br/>. <br/>(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) <br/>. <br/>2009-04-07 11:53 --------- d-----w c:\program files\Password Safe <br/>2009-04-07 08:04 --------- d-----w c:\documents and settings\eloy04260\Application Data\Skype <br/>2009-04-06 13:53 --------- d-----w c:\documents and settings\eloy04260\Application Data\skypePM <br/>2009-04-04 10:17 --------- d--h--w c:\program files\InstallShield Installation Information <br/>2009-03-29 16:53 --------- d-----w c:\program files\Microsoft Silverlight <br/>2009-03-23 08:46 --------- d-----w c:\documents and settings\eloy04260\Application Data\uTorrent <br/>2009-03-20 10:53 325,640 ----a-w c:\windows\system32\drivers\avgldx86.sys <br/>2009-03-20 10:51 --------- d-----w c:\documents and settings\All Users\Application Data\avg8 <br/>2009-03-16 12:05 --------- d-----w c:\program files\SUPERAntiSpyware <br/>2009-03-16 12:05 --------- d-----w c:\program files\Common Files\Wise Installation Wizard <br/>2009-03-16 12:05 --------- d-----w c:\documents and settings\eloy04260\Application Data\SUPERAntiSpyware.com <br/>2009-03-16 11:09 --------- d-----w c:\program files\Java <br/>2009-03-04 11:27 --------- d-----w c:\program files\vsclient <br/>2009-02-26 17:17 --------- d-----w c:\program files\Reference Assemblies <br/>2009-02-26 17:17 --------- d-----w c:\program files\MSBuild <br/>2009-02-23 19:41 --------- d-----w c:\documents and settings\All Users\Application Data\VMware <br/>2009-02-23 19:35 --------- d-----w c:\documents and settings\eloy04260\Application Data\VMware <br/>2009-02-23 17:21 --------- d-----w c:\program files\VMware <br/>2009-02-23 15:39 --------- d-----w c:\documents and settings\eloy04260\Application Data\Juniper Networks <br/>2009-02-23 15:15 --------- d-----w c:\documents and settings\All Users\Application Data\Juniper Networks <br/>2009-02-23 09:14 --------- d-----w c:\program files\Windows Live <br/>2009-02-17 16:00 --------- d-----w c:\documents and settings\eloy04260\Application Data\CoreFTP <br/>2009-02-13 19:30 --------- d-----w c:\program files\Google <br/>2009-02-12 11:41 --------- d-----w c:\program files\Windows Installer Clean Up <br/>2009-02-12 11:41 --------- d-----w c:\program files\MSECACHE <br/>2009-02-06 19:03 307,576 ----a-w c:\windows\WLXPGSS.SCR <br/>2003-12-18 16:17 4,416,692 ----a-w c:\program files\eLoyalty VPN.zip <br/>2008-12-18 10:35 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\MSHist012008121820081219\index.dat <br/>. <br/> <br/>((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) <br/>. <br/>. <br/>*Note* empty entries & legit default entries are not shown <br/>REGEDIT4 <br/> <br/>[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] <br/>"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] <br/>"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-02-06 3885408] <br/>"updateMgr"="c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 313472] <br/>"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-22 68856] <br/>"MilShieldSlave"="c:\program files\Mil Incorporated\Mil Shield\ShieldWorker.exe" [2008-03-16 741376] <br/>"Google Update"="c:\documents and settings\eloy04260\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2009-02-04 133104] <br/> <br/>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] <br/>"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2006-02-14 110592] <br/>"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-02-14 512000] <br/>"TPKMAPHELPER"="c:\program files\ThinkPad\Utilities\TpKmapAp.exe" [2005-10-29 864256] <br/>"TPHOTKEY"="c:\progra~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe" [2006-05-10 94208] <br/>"EZEJMNAP"="c:\progra~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe" [2006-02-24 237568] <br/>"SoundMAXPnP"="c:\program files\Analog Devices\SoundMAX\SMax4PNP.exe" [2004-10-14 1388544] <br/>"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-01-22 344064] <br/>"UpdateManager"="c:\program files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 110592] <br/>"dla"="c:\windows\system32\dla\tfswctrl.exe" [2005-03-07 122939] <br/>"PWRMGRTR"="c:\progra~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL" [2006-03-23 151552] <br/>"BLOG"="c:\progra~1\ThinkPad\UTILIT~1\BatLogEx.DLL" [2006-03-23 208896] <br/>"TPKBDLED"="c:\windows\system32\TpScrLk.exe" [2002-10-09 40960] <br/>"McAfeeUpdaterUI"="c:\program files\Network Associates\Common Framework\UpdaterUI.exe" [2005-09-27 139320] <br/>"ACTray"="c:\program files\ThinkPad\ConnectUtilities\ACTray.exe" [2006-04-17 409600] <br/>"ACWLIcon"="c:\program files\ThinkPad\ConnectUtilities\ACWLIcon.exe" [2006-04-17 98304] <br/>"SgeEcView"="c:\program files\Utimaco\SafeGuard Easy\Ecview.exe" [2004-09-20 20480] <br/>"EdWizard"="c:\program files\Utimaco\SafeGuard Easy\EdWizard.exe" [2004-09-20 245760] <br/>"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648] <br/>"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-03-20 1932568] <br/>"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2009-02-06 454000] <br/>"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-15 148888] <br/>"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-03-16 515416] <br/>"mmtask"="c:\program files\MusicMatch\MusicMatch Jukebox\mmtask.exe" [2003-12-12 53248] <br/>"MMTray"="c:\program files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" [2003-12-12 118784] <br/>"TP4EX"="tp4ex.exe" [2005-10-17 c:\windows\system32\TP4EX.exe] <br/> <br/>c:\documents and settings\All Users\Start Menu\Programs\Startup\ <br/>Vodafone Ireland Vodafonie.ie VPN Client.lnk - c:\program files\Vodafone-vpn\ipsecdialer.exe [2006-07-28 1216588] <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] <br/>"ForceStartMenuLogOff"= 1 (0x1) <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ACNotify] <br/>2006-04-17 19:01 32768 c:\program files\ThinkPad\ConnectUtilities\ACNotify.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter] <br/>2009-03-20 11:53 10520 c:\windows\system32\avgrsstx.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\NotLog] <br/>2002-01-22 21:28 110592 c:\windows\system32\SGLogEx.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\SGLogNotification] <br/>2004-08-26 20:18 69632 c:\windows\system32\SGLogNotification.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\tpfnf2] <br/>2005-07-06 05:45 28672 c:\windows\system32\notifyf2.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\tphotkey] <br/>2005-12-01 02:16 24576 c:\windows\system32\tphklock.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] <br/>"vidc.3IV2"= 3ivxVfWCodec.dll <br/> <br/>[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] <br/>@="Service" <br/> <br/>[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] <br/>"%windir%\\system32\\sessmgr.exe"= <br/>"c:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe"= <br/>"c:\\Program Files\\Messenger\\msmsgs.exe"= <br/>"c:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr.exe"= <br/>"%windir%\\Network Diagnostic\\xpnetdiag.exe"= <br/>"c:\\Program Files\\uTorrent\\uTorrent.exe"= <br/>"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"= <br/>"c:\\Documents and Settings\\eloy04260\\GaryStuff\\GarysStuff\\FTP\\WS_FTP95.exe"= <br/>"c:\\WINDOWS\\system32\\ftp.exe"= <br/>"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= <br/>"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"= <br/>"c:\\Program Files\\IBM\\SMA\\smabat.exe"= <br/>"c:\\Program Files\\Skype\\Phone\\Skype.exe"= <br/> <br/>[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] <br/>"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009 <br/> <br/>R0 AES-256;AES-256;c:\windows\system32\drivers\AES256.sys [2004-09-20 18016] <br/>R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-03-16 64160] <br/>R0 SgeFlt;SgeFlt;c:\windows\system32\drivers\SGEFLT.sys [2004-09-20 54944] <br/>R0 TPDiskPM;TPDiskPM;c:\windows\system32\drivers\TPDiskPM.sys [2006-03-17 14848] <br/>R1 ANC;ANC;c:\windows\system32\drivers\ANC.sys [2006-05-28 11520] <br/>R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-01-08 325640] <br/>R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-03-20 108552] <br/>R1 IBMTPCHK;IBMTPCHK;c:\windows\system32\drivers\IBMBLDID.sys [2006-05-28 6016] <br/>R1 TPPWRIF;TPPWRIF;c:\windows\system32\drivers\TPPWRIF.SYS [2006-03-17 4442] <br/>R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2009-01-29 298264] <br/>R2 cimlistener;IBM Director CIM Listener;c:\program files\IBM\Director\cimom\bin\cimlistener.exe [2005-10-13 36864] <br/>R2 CVPNDRV;Vodafone Ireland IPsec Driver;c:\windows\system32\drivers\CVPNDrv.sys [2006-07-28 160327] <br/>R2 FlipShare Service;FlipShare Service;c:\program files\Pure Digital Technologies\FlipShare\FlipShareService.exe [2008-11-13 439616] <br/>R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-01-12 55136] <br/>R2 fsssvc;Windows Live Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360] <br/>R2 ibmsa;IBM SLP SA;c:\program files\IBM\Director\bin\IBMSA.exe [2005-10-13 20480] <br/>R2 iPCAgent;iPCAgent;c:\program files\iPass\iPassConnect\iPCAgent.exe [2006-05-15 90112] <br/>R2 SeaPort;SeaPort;c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656] <br/>R2 tier1slp;IBM Director Agent SLP Attributes;c:\program files\IBM\Director\cimom\bin\tier1slp.exe [2005-10-13 28672] <br/>R2 TWGIPC;IBM Director Support Program;c:\program files\IBM\Director\bin\twgipcsv.exe [2005-10-19 53328] <br/>R2 VnxTcp;VnxTcp;c:\windows\system32\drivers\vnxtcp.sys [2006-05-15 148240] <br/>R2 wmicimserver;IBM Director Agent WMI CIM Server;c:\program files\IBM\Director\cimom\bin\wmicimserver.exe [2005-10-13 536576] <br/>R3 TPInput;TPInput;c:\windows\system32\drivers\TPInput.sys [2006-03-17 6784] <br/>R3 TPM11;NSC Integrated Trusted Platform Module 1.1;c:\windows\system32\drivers\nsctpm11.sys [1980-01-01 14336] <br/>S2 gupdate1c966cbfc29245e;Google Update Service (gupdate1c966cbfc29245e);c:\program files\Google\Update\GoogleUpdate.exe [2008-12-25 133104] <br/>S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2009-01-19 951632] <br/>S3 dxI2C;dxI2C;c:\program files\IBM\Director\cimom\bin\i2c32.sys [2005-09-16 23936] <br/>S3 dxPMem;dxPMem;c:\program files\IBM\Director\cimom\bin\pmemnt.sys [2005-09-16 4480] <br/>S3 OracleOra81ClientCache;OracleOra81ClientCache;c:\oracle\ora81\bin\ONRSD.EXE [2000-10-19 411244] <br/>S3 SDTHOOK;SDTHOOK;c:\windows\system32\drivers\SDTHOOK.SYS [2008-02-19 44928] <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E] <br/>\Shell\AutoRun\command - E:\Setup_FlipShare.exe <br/>\Shell\Setup FlipShare\command - E:\Setup_FlipShare.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{241d123e-f22c-11da-aa05-00166f1b7757}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56902c3b-b949-11dc-a941-00166f1b5cde}] <br/>\Shell\AutoRun\command - e:\system\viewer\FlipVideoforPC.exe <br/>\Shell\Flip Video for PC\command - e:\system\viewer\FlipVideoforPC.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56902c43-b949-11dc-a941-00166f1b5cde}] <br/>\Shell\AutoRun\command - E:\Setup_FlipShare.exe <br/>\Shell\Setup FlipShare\command - E:\Setup_FlipShare.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c5b1d234-f1a7-11da-827a-00166f1b7757}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d82dea2a-f0d6-11da-a065-00166f2b82ff}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f95c3632-5e8d-11db-a8b8-00166f1b5cde}] <br/>\Shell\AutoRun\command - E:\Launch.exe <br/>. <br/>Contents of the 'Scheduled Tasks' folder <br/> <br/>2009-04-09 c:\windows\Tasks\Ad-Aware Update (Daily).job <br/>- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-03-16 13:46] <br/>. <br/>. <br/>------- Supplementary Scan ------- <br/>. <br/>uLocal Page = \blank.htm <br/>uStart Page = hxxp://www.google.com/ <br/>uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 <br/>uInternet Settings,ProxyServer = 10.162.66.55:8080 <br/>uInternet Settings,ProxyOverride = hxxp://sblprdiweb2;http://umatter.eloyaltyco.com <br/>uSearchURL,(Default) = hxxp://www.google.com/search?q=%s <br/>IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 <br/>Trusted Zone: eloyalty.com <br/>Trusted Zone: eloyaltyco.com <br/>Trusted Zone: imageshack.us <br/>DPF: Microsoft XML Parser for Java - http://www.gmer.net <br/>Rootkit scan 2009-04-09 13:07:00 <br/>Windows 5.1.2600 Service Pack 3 NTFS <br/> <br/>scanning hidden processes ... <br/> <br/>scanning hidden autostart entries ... <br/> <br/>scanning hidden files ... <br/> <br/>scan completed successfully <br/>hidden files: 0 <br/> <br/>************************************************************************** <br/>. <br/>--------------------- DLLs Loaded Under Running Processes --------------------- <br/> <br/>- - - - - - - > 'winlogon.exe'(1304) <br/>c:\windows\system32\SGGINA.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGEGINA.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\CMessage.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgWin32.dll <br/>c:\program files\Utimaco\SafeGuard Easy\CmfcApi.dll <br/>c:\program files\Utimaco\SafeGuard Easy\EcView.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgeUtil.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgUicl.dll <br/>c:\program files\Utimaco\SafeGuard Easy\FLTAPI.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGUICLRES.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGUICL.MSG <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_ERR0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_MSG0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\encviewer.ocx <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_INFO0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SgHtmHlp.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGHTMHLP0409.dll <br/>c:\program files\Utimaco\SafeGuard Easy\sgea40.dll <br/>c:\program files\Utimaco\SafeGuard Easy\CfgApi.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGEDRV.dll <br/>c:\program files\ThinkPad\ConnectUtilities\ACNotify.dll <br/>c:\program files\ThinkPad\ConnectUtilities\AcSvcStub.dll <br/>c:\program files\ThinkPad\ConnectUtilities\AcLocSettings.dll <br/>c:\program files\ThinkPad\ConnectUtilities\ACHelper.dll <br/>c:\windows\system32\Ati2evxx.dll <br/>c:\windows\system32\tphklock.dll <br/>c:\program files\Utimaco\SafeGuard Easy\DComSec.dll <br/>c:\windows\system32\GetUserSid.dll <br/>c:\windows\system32\LogMsgApp.Dll <br/>c:\windows\system32\LogData.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SecClassFactoryPS.dll <br/>c:\program files\Utimaco\SafeGuard Easy\wkscfgsrvps.dll <br/>c:\windows\system32\SGLogEx.dll <br/>c:\windows\system32\SGLogNotification.dll <br/>. <br/>------------------------ Other Running Processes ------------------------ <br/>. <br/>c:\windows\system32\ibmpmsvc.exe <br/>c:\windows\system32\ati2evxx.exe <br/>c:\program files\Intel\Wireless\Bin\EvtEng.exe <br/>c:\program files\Intel\Wireless\Bin\S24EvMon.exe <br/>c:\program files\Vodafone-vpn\cvpnd.exe <br/>c:\program files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe <br/>c:\program files\Utimaco\SafeGuard Easy\WksCfgSrv.exe <br/>c:\program files\Java\jre6\bin\jqs.exe <br/>c:\program files\Network Associates\Common Framework\FrameworkService.exe <br/>c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE <br/>c:\program files\Mil Incorporated\Mil Shield\ShieldService.exe <br/>c:\program files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe <br/>c:\progra~1\NETWOR~1\COMMON~1\naPrdMgr.exe <br/>c:\program files\Intel\Wireless\Bin\RegSrvc.exe <br/>c:\program files\Utimaco\SafeGuard Easy\SgeClient.exe <br/>c:\program files\Utimaco\SafeGuard Easy\SgeCtl.exe <br/>c:\windows\system32\SgLogPlayer.exe <br/>c:\program files\Analog Devices\SoundMAX\SMAgent.exe <br/>c:\windows\system32\TpKmpSvc.exe <br/>c:\windows\system32\vnxserv.exe <br/>c:\program files\IBM\Director\bin\twgipc.exe <br/>c:\program files\IBM\Director\bin\twgescli.exe <br/>c:\program files\Windows Media Player\wmpnetwk.exe <br/>c:\program files\IBM\Director\bin\twgmonit.exe <br/>c:\program files\AVG\AVG8\avgrsx.exe <br/>c:\progra~1\AVG\AVG8\avgnsx.exe <br/>c:\windows\system32\wbem\unsecapp.exe <br/>c:\windows\system32\msiexec.exe <br/>c:\windows\system32\wbem\unsecapp.exe <br/>c:\windows\system32\wbem\wmiapsrv.exe <br/>c:\progra~1\IBM\Director\cimom\bin\PEGASU~1.EXE <br/>c:\windows\system32\ati2evxx.exe <br/>c:\program files\Lenovo\PkgMgr\HOTKEY\TPONSCR.exe <br/>c:\program files\Lenovo\PkgMgr\HOTKEY_1\TpScrex.exe <br/>c:\windows\system32\rundll32.exe <br/>c:\program files\iPass\iPassConnect\downloader\ipccheck.exe <br/>c:\program files\Utimaco\SafeGuard Easy\WksCfgSrv.exe <br/>c:\program files\IBM\Director\bin\slp_srvreg.exe <br/>c:\program files\IBM\Director\bin\twgjava.exe <br/>. <br/>************************************************************************** <br/>. <br/>Completion time: 2009-04-09 13:12:51 - machine was rebooted [eloy04260] <br/>ComboFix-quarantined-files.txt 2009-04-09 12:12:46 <br/>ComboFix2.txt 2009-04-06 13:26:42 <br/>ComboFix3.txt 2009-04-05 17:08:47 <br/>ComboFix4.txt 2009-04-03 15:10:58 <br/> <br/>Pre-Run: 11,749,924,864 bytes free <br/>Post-Run: 11,636,293,632 bytes free <br/> <br/>305 <br/> <br/> <br/><br /><br />
Posted 4/9/2009 2:48 PM
#73105
User avatar

Touch Advanced member

Date Joined Nov 2016
Total Posts: 12976
I learn all the time, I didn´t knew that about SafeGuard :rolleyes: <br/> <br/> <br/> <br/> <br/>How are things running now ?

[color=black face="Courier New" sab="311">[2]Click here: Before-posting-a-log[/2][/url]

<?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" />
[/color]
Do not PM me with logfiles. They will be deleted.


Posted 4/9/2009 3:12 PM
#73107
User avatar

Garyh3 Valued member

Date Joined Nov 2016
Total Posts: 23
Hi Touch, <br/> <br/>Thanks, running fine at the mo... :-) <br/> <br/>Will let you know, as it usually take a while for the explorer to go funny ...... <br/> <br/>thanks again for your help much appreciated <br/> <br/><br /><br /> <br/>Gary
Posted 4/11/2009 9:26 PM
#73110
User avatar

Garyh3 Valued member

Date Joined Nov 2016
Total Posts: 23
Hi Touch <br/> <br/>It still happening.. <br/> <br/>When it happens I am unable to even open a new explorers or Task manager. I cannot even run .exe files. When I right klick start I get nothing.? Anything else I can try? I can open google chrome !!!! <br/> <br/>Combo log <br/> <br/>ComboFix 09-04-04.01 - eloy04260 2009-04-11 22:10:43.10 - NTFSx86 <br/>Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1534.920 [GMT 1:00] <br/>Running from: c:\temp\ComboFix.exe <br/>AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) <br/>AV: Lavasoft Ad-Watch Live! Anti-Virus *On-access scanning disabled* (Updated) <br/>. <br/> <br/>((((((((((((((((((((((((( Files Created from 2009-03-11 to 2009-04-11 ))))))))))))))))))))))))))))))) <br/>. <br/> <br/>2009-04-11 22:07 . 2009-04-11 22:10 512 --a------ c:\windows\randseed.rnd <br/>2009-04-05 17:57 . 2009-04-05 17:57 3,067,803 -ra------ c:\temp\ComboFix.exe <br/>2009-04-04 11:17 . 2009-04-04 11:17 <DIR> d-------- c:\program files\MUSICMATCH <br/>2009-03-30 19:02 . 2009-04-11 22:06 24 --a------ c:\windows\sysc_drv.ini <br/>2009-03-27 12:59 . 2009-01-09 20:19 1,089,593 --------- c:\windows\system32\dllcache\ntprint.cat <br/>2009-03-20 11:53 . 2009-03-28 10:52 108,552 --a------ c:\windows\system32\drivers\avgtdix.sys <br/>2009-03-16 14:26 . 2009-03-16 13:47 15,688 --a------ c:\windows\system32\lsdelete.exe <br/>2009-03-16 13:47 . 2009-03-16 13:47 64,160 --a------ c:\windows\system32\drivers\Lbd.sys <br/>2009-03-16 13:44 . 2009-03-16 13:44 <DIR> d--h-c--- c:\documents and settings\All Users\Application Data\{2BAE6915-8510-4B9F-B498-02DA86258AA0} <br/>2009-03-16 13:43 . 2009-03-16 13:43 <DIR> d-------- c:\program files\Lavasoft <br/>2009-03-16 13:42 . 2009-03-16 13:42 34,542,776 --a------ c:\temp\Ad-AwareAE_66.exe <br/>2009-03-16 13:07 . 2009-03-16 19:33 <DIR> d-------- c:\program files\NoAdware <br/>2009-03-15 14:03 . 2009-03-15 14:03 73,728 --a------ c:\windows\system32\javacpl.cpl <br/> <br/>. <br/>(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) <br/>. <br/>2009-04-07 11:53 --------- d-----w c:\program files\Password Safe <br/>2009-04-07 08:04 --------- d-----w c:\documents and settings\eloy04260\Application Data\Skype <br/>2009-04-06 13:53 --------- d-----w c:\documents and settings\eloy04260\Application Data\skypePM <br/>2009-04-04 10:17 --------- d--h--w c:\program files\InstallShield Installation Information <br/>2009-03-29 16:53 --------- d-----w c:\program files\Microsoft Silverlight <br/>2009-03-23 08:46 --------- d-----w c:\documents and settings\eloy04260\Application Data\uTorrent <br/>2009-03-20 10:53 325,640 ----a-w c:\windows\system32\drivers\avgldx86.sys <br/>2009-03-20 10:53 10,520 ----a-w c:\windows\system32\avgrsstx.dll <br/>2009-03-20 10:51 --------- d-----w c:\documents and settings\All Users\Application Data\avg8 <br/>2009-03-16 12:05 --------- d-----w c:\program files\SUPERAntiSpyware <br/>2009-03-16 12:05 --------- d-----w c:\program files\Common Files\Wise Installation Wizard <br/>2009-03-16 12:05 --------- d-----w c:\documents and settings\eloy04260\Application Data\SUPERAntiSpyware.com <br/>2009-03-16 11:09 --------- d-----w c:\program files\Java <br/>2009-03-15 13:03 410,984 ----a-w c:\windows\system32\deploytk.dll <br/>2009-03-04 11:27 --------- d-----w c:\program files\vsclient <br/>2009-02-26 17:17 --------- d-----w c:\program files\Reference Assemblies <br/>2009-02-26 17:17 --------- d-----w c:\program files\MSBuild <br/>2009-02-23 19:41 --------- d-----w c:\documents and settings\All Users\Application Data\VMware <br/>2009-02-23 19:35 --------- d-----w c:\documents and settings\eloy04260\Application Data\VMware <br/>2009-02-23 17:21 --------- d-----w c:\program files\VMware <br/>2009-02-23 15:39 --------- d-----w c:\documents and settings\eloy04260\Application Data\Juniper Networks <br/>2009-02-23 15:15 --------- d-----w c:\documents and settings\All Users\Application Data\Juniper Networks <br/>2009-02-23 09:14 --------- d-----w c:\program files\Windows Live <br/>2009-02-17 16:00 --------- d-----w c:\documents and settings\eloy04260\Application Data\CoreFTP <br/>2009-02-13 19:30 --------- d-----w c:\program files\Google <br/>2009-02-12 11:41 --------- d-----w c:\program files\Windows Installer Clean Up <br/>2009-02-12 11:41 --------- d-----w c:\program files\MSECACHE <br/>2009-02-09 11:13 1,846,784 ----a-w c:\windows\system32\win32k.sys <br/>2009-02-09 11:13 1,846,784 ------w c:\windows\system32\dllcache\win32k.sys <br/>2009-02-06 19:03 307,576 ----a-w c:\windows\WLXPGSS.SCR <br/>2009-02-06 18:52 49,504 ----a-w c:\windows\system32\sirenacm.dll <br/>2009-01-16 21:35 3,594,752 ------w c:\windows\system32\dllcache\mshtml.dll <br/>2003-12-18 16:17 4,416,692 ----a-w c:\program files\eLoyalty VPN.zip <br/>2008-12-18 10:35 32,768 --sha-w c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\MSHist012008121820081219\index.dat <br/>. <br/> <br/>((((((((((((((((((((((((((((( [url=SnapShot@2009-04-09_13.10.55.43]SnapShot@2009-04-09_13.10.55.43[/url] ))))))))))))))))))))))))))))))))))))))))) <br/>. <br/>+ 2009-04-11 21:03:06 16,384 ----atw c:\windows\temp\Perflib_Perfdata_1d4.dat <br/>+ 2009-04-11 21:03:08 16,384 ----atw c:\windows\temp\Perflib_Perfdata_790.dat <br/>+ 2009-04-11 21:03:15 16,384 ----atw c:\windows\temp\Perflib_Perfdata_eb0.dat <br/>. <br/>((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) <br/>. <br/>. <br/>*Note* empty entries & legit default entries are not shown <br/>REGEDIT4 <br/> <br/>[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] <br/>"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] <br/>"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-02-06 3885408] <br/>"updateMgr"="c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 313472] <br/>"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-08-22 68856] <br/>"MilShieldSlave"="c:\program files\Mil Incorporated\Mil Shield\ShieldWorker.exe" [2008-03-16 741376] <br/>"Google Update"="c:\documents and settings\eloy04260\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2009-02-04 133104] <br/> <br/>[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] <br/>"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2006-02-14 110592] <br/>"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-02-14 512000] <br/>"TPKMAPHELPER"="c:\program files\ThinkPad\Utilities\TpKmapAp.exe" [2005-10-29 864256] <br/>"TPHOTKEY"="c:\progra~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe" [2006-05-10 94208] <br/>"EZEJMNAP"="c:\progra~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe" [2006-02-24 237568] <br/>"SoundMAXPnP"="c:\program files\Analog Devices\SoundMAX\SMax4PNP.exe" [2004-10-14 1388544] <br/>"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-01-22 344064] <br/>"UpdateManager"="c:\program files\Common Files\Sonic\Update Manager\sgtray.exe" [2003-08-19 110592] <br/>"dla"="c:\windows\system32\dla\tfswctrl.exe" [2005-03-07 122939] <br/>"PWRMGRTR"="c:\progra~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL" [2006-03-23 151552] <br/>"BLOG"="c:\progra~1\ThinkPad\UTILIT~1\BatLogEx.DLL" [2006-03-23 208896] <br/>"TPKBDLED"="c:\windows\system32\TpScrLk.exe" [2002-10-09 40960] <br/>"McAfeeUpdaterUI"="c:\program files\Network Associates\Common Framework\UpdaterUI.exe" [2005-09-27 139320] <br/>"ACTray"="c:\program files\ThinkPad\ConnectUtilities\ACTray.exe" [2006-04-17 409600] <br/>"ACWLIcon"="c:\program files\ThinkPad\ConnectUtilities\ACWLIcon.exe" [2006-04-17 98304] <br/>"SgeEcView"="c:\program files\Utimaco\SafeGuard Easy\Ecview.exe" [2004-09-20 20480] <br/>"EdWizard"="c:\program files\Utimaco\SafeGuard Easy\EdWizard.exe" [2004-09-20 245760] <br/>"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648] <br/>"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-03-20 1932568] <br/>"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2009-02-06 454000] <br/>"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-15 148888] <br/>"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-03-16 515416] <br/>"mmtask"="c:\program files\MusicMatch\MusicMatch Jukebox\mmtask.exe" [2003-12-12 53248] <br/>"MMTray"="c:\program files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" [2003-12-12 118784] <br/>"TP4EX"="tp4ex.exe" [2005-10-17 c:\windows\system32\TP4EX.exe] <br/> <br/>c:\documents and settings\All Users\Start Menu\Programs\Startup\ <br/>Vodafone Ireland Vodafonie.ie VPN Client.lnk - c:\program files\Vodafone-vpn\ipsecdialer.exe [2006-07-28 1216588] <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] <br/>"ForceStartMenuLogOff"= 1 (0x1) <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ACNotify] <br/>2006-04-17 19:01 32768 c:\program files\ThinkPad\ConnectUtilities\ACNotify.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter] <br/>2009-03-20 11:53 10520 c:\windows\system32\avgrsstx.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\NotLog] <br/>2002-01-22 21:28 110592 c:\windows\system32\SGLogEx.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\SGLogNotification] <br/>2004-08-26 20:18 69632 c:\windows\system32\SGLogNotification.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\tpfnf2] <br/>2005-07-06 05:45 28672 c:\windows\system32\notifyf2.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\tphotkey] <br/>2005-12-01 02:16 24576 c:\windows\system32\tphklock.dll <br/> <br/>[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] <br/>"vidc.3IV2"= 3ivxVfWCodec.dll <br/> <br/>[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] <br/>@="Service" <br/> <br/>[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] <br/>"%windir%\\system32\\sessmgr.exe"= <br/>"c:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe"= <br/>"c:\\Program Files\\Messenger\\msmsgs.exe"= <br/>"c:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr.exe"= <br/>"%windir%\\Network Diagnostic\\xpnetdiag.exe"= <br/>"c:\\Program Files\\uTorrent\\uTorrent.exe"= <br/>"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"= <br/>"c:\\Documents and Settings\\eloy04260\\GaryStuff\\GarysStuff\\FTP\\WS_FTP95.exe"= <br/>"c:\\WINDOWS\\system32\\ftp.exe"= <br/>"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= <br/>"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"= <br/>"c:\\Program Files\\IBM\\SMA\\smabat.exe"= <br/>"c:\\Program Files\\Skype\\Phone\\Skype.exe"= <br/> <br/>[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] <br/>"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009 <br/> <br/>R0 AES-256;AES-256;c:\windows\system32\drivers\AES256.sys [2004-09-20 18016] <br/>R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-03-16 64160] <br/>R0 SgeFlt;SgeFlt;c:\windows\system32\drivers\SGEFLT.sys [2004-09-20 54944] <br/>R0 TPDiskPM;TPDiskPM;c:\windows\system32\drivers\TPDiskPM.sys [2006-03-17 14848] <br/>R1 ANC;ANC;c:\windows\system32\drivers\ANC.sys [2006-05-28 11520] <br/>R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-01-08 325640] <br/>R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-03-20 108552] <br/>R1 IBMTPCHK;IBMTPCHK;c:\windows\system32\drivers\IBMBLDID.sys [2006-05-28 6016] <br/>R1 TPPWRIF;TPPWRIF;c:\windows\system32\drivers\TPPWRIF.SYS [2006-03-17 4442] <br/>R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2009-01-29 298264] <br/>R2 cimlistener;IBM Director CIM Listener;c:\program files\IBM\Director\cimom\bin\cimlistener.exe [2005-10-13 36864] <br/>R2 CVPNDRV;Vodafone Ireland IPsec Driver;c:\windows\system32\drivers\CVPNDrv.sys [2006-07-28 160327] <br/>R2 FlipShare Service;FlipShare Service;c:\program files\Pure Digital Technologies\FlipShare\FlipShareService.exe [2008-11-13 439616] <br/>R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-01-12 55136] <br/>R2 fsssvc;Windows Live Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360] <br/>R2 ibmsa;IBM SLP SA;c:\program files\IBM\Director\bin\IBMSA.exe [2005-10-13 20480] <br/>R2 iPCAgent;iPCAgent;c:\program files\iPass\iPassConnect\iPCAgent.exe [2006-05-15 90112] <br/>R2 SeaPort;SeaPort;c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656] <br/>R2 tier1slp;IBM Director Agent SLP Attributes;c:\program files\IBM\Director\cimom\bin\tier1slp.exe [2005-10-13 28672] <br/>R2 TWGIPC;IBM Director Support Program;c:\program files\IBM\Director\bin\twgipcsv.exe [2005-10-19 53328] <br/>R2 VnxTcp;VnxTcp;c:\windows\system32\drivers\vnxtcp.sys [2006-05-15 148240] <br/>R2 wmicimserver;IBM Director Agent WMI CIM Server;c:\program files\IBM\Director\cimom\bin\wmicimserver.exe [2005-10-13 536576] <br/>R3 TPInput;TPInput;c:\windows\system32\drivers\TPInput.sys [2006-03-17 6784] <br/>R3 TPM11;NSC Integrated Trusted Platform Module 1.1;c:\windows\system32\drivers\nsctpm11.sys [1980-01-01 14336] <br/>S2 gupdate1c966cbfc29245e;Google Update Service (gupdate1c966cbfc29245e);c:\program files\Google\Update\GoogleUpdate.exe [2008-12-25 133104] <br/>S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2009-01-19 951632] <br/>S3 dxI2C;dxI2C;c:\program files\IBM\Director\cimom\bin\i2c32.sys [2005-09-16 23936] <br/>S3 dxPMem;dxPMem;c:\program files\IBM\Director\cimom\bin\pmemnt.sys [2005-09-16 4480] <br/>S3 OracleOra81ClientCache;OracleOra81ClientCache;c:\oracle\ora81\bin\ONRSD.EXE [2000-10-19 411244] <br/>S3 SDTHOOK;SDTHOOK;c:\windows\system32\drivers\SDTHOOK.SYS [2008-02-19 44928] <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E] <br/>\Shell\AutoRun\command - E:\Setup_FlipShare.exe <br/>\Shell\Setup FlipShare\command - E:\Setup_FlipShare.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{241d123e-f22c-11da-aa05-00166f1b7757}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56902c3b-b949-11dc-a941-00166f1b5cde}] <br/>\Shell\AutoRun\command - e:\system\viewer\FlipVideoforPC.exe <br/>\Shell\Flip Video for PC\command - e:\system\viewer\FlipVideoforPC.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56902c43-b949-11dc-a941-00166f1b5cde}] <br/>\Shell\AutoRun\command - E:\Setup_FlipShare.exe <br/>\Shell\Setup FlipShare\command - E:\Setup_FlipShare.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c5b1d234-f1a7-11da-827a-00166f1b7757}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d82dea2a-f0d6-11da-a065-00166f2b82ff}] <br/>\Shell\AutoRun\command - E:\ClearPath_Demo.exe <br/> <br/>[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f95c3632-5e8d-11db-a8b8-00166f1b5cde}] <br/>\Shell\AutoRun\command - E:\Launch.exe <br/>. <br/>Contents of the 'Scheduled Tasks' folder <br/> <br/>2009-04-09 c:\windows\Tasks\Ad-Aware Update (Daily).job <br/>- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-03-16 13:46] <br/>. <br/>. <br/>------- Supplementary Scan ------- <br/>. <br/>uLocal Page = \blank.htm <br/>uStart Page = hxxp://www.google.com/ <br/>uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 <br/>uInternet Settings,ProxyServer = 10.162.66.55:8080 <br/>uInternet Settings,ProxyOverride = hxxp://sblprdiweb2;http://umatter.eloyaltyco.com <br/>uSearchURL,(Default) = hxxp://www.google.com/search?q=%s <br/>IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 <br/>Trusted Zone: eloyalty.com <br/>Trusted Zone: eloyaltyco.com <br/>Trusted Zone: imageshack.us <br/>DPF: Microsoft XML Parser for Java - http://www.gmer.net <br/>Rootkit scan 2009-04-11 22:14:49 <br/>Windows 5.1.2600 Service Pack 3 NTFS <br/> <br/>scanning hidden processes ... <br/> <br/>scanning hidden autostart entries ... <br/> <br/>scanning hidden files ... <br/> <br/>scan completed successfully <br/>hidden files: 0 <br/> <br/>************************************************************************** <br/>. <br/>--------------------- DLLs Loaded Under Running Processes --------------------- <br/> <br/>- - - - - - - > 'winlogon.exe'(1308) <br/>c:\windows\system32\SGGINA.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGEGINA.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\CMessage.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgWin32.dll <br/>c:\program files\Utimaco\SafeGuard Easy\CmfcApi.dll <br/>c:\program files\Utimaco\SafeGuard Easy\EcView.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgeUtil.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SgUicl.dll <br/>c:\program files\Utimaco\SafeGuard Easy\FLTAPI.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGUICLRES.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGUICL.MSG <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_ERR0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_MSG0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\encviewer.ocx <br/>c:\program files\Utimaco\SafeGuard Easy\SGE_INFO0409.DLL <br/>c:\program files\Utimaco\SafeGuard Easy\SgHtmHlp.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGHTMHLP0409.dll <br/>c:\program files\Utimaco\SafeGuard Easy\sgea40.dll <br/>c:\program files\Utimaco\SafeGuard Easy\CfgApi.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SGEDRV.dll <br/>c:\program files\ThinkPad\ConnectUtilities\ACNotify.dll <br/>c:\program files\ThinkPad\ConnectUtilities\AcSvcStub.dll <br/>c:\program files\ThinkPad\ConnectUtilities\AcLocSettings.dll <br/>c:\program files\ThinkPad\ConnectUtilities\ACHelper.dll <br/>c:\windows\system32\Ati2evxx.dll <br/>c:\windows\system32\tphklock.dll <br/>c:\program files\Utimaco\SafeGuard Easy\DComSec.dll <br/>c:\windows\system32\GetUserSid.dll <br/>c:\windows\system32\LogMsgApp.Dll <br/>c:\windows\system32\LogData.dll <br/>c:\program files\Utimaco\SafeGuard Easy\SecClassFactoryPS.dll <br/>c:\program files\Utimaco\SafeGuard Easy\wkscfgsrvps.dll <br/>c:\windows\system32\SGLogEx.dll <br/>c:\windows\system32\SGLogNotification.dll <br/>. <br/>Completion time: 2009-04-11 22:18:05 <br/>ComboFix-quarantined-files.txt 2009-04-11 21:17:33 <br/>ComboFix2.txt 2009-04-09 12:12:53 <br/>ComboFix3.txt 2009-04-06 13:26:42 <br/>ComboFix4.txt 2009-04-05 17:08:47 <br/>ComboFix5.txt 2009-04-11 21:10:08 <br/> <br/>Pre-Run: 11,645,374,464 bytes free <br/>Post-Run: 11,626,422,272 bytes free <br/> <br/>264 <br/> <br/>HJ file <br/> <br/>Logfile of HijackThis v1.99.1 <br/>Scan saved at 22:09, on 2009-04-11 <br/>Platform: Windows XP SP3 (WinNT 5.01.2600) <br/>MSIE: Internet Explorer v7.00 (7.00.6000.16791) <br/> <br/>Running processes: <br/>C:\WINDOWS\System32\smss.exe <br/>C:\WINDOWS\system32\winlogon.exe <br/>C:\WINDOWS\system32\services.exe <br/>C:\WINDOWS\system32\lsass.exe <br/>C:\WINDOWS\system32\ibmpmsvc.exe <br/>C:\WINDOWS\system32\Ati2evxx.exe <br/>C:\WINDOWS\system32\svchost.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\Intel\Wireless\Bin\EvtEng.exe <br/>C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe <br/>C:\Program Files\Vodafone-vpn\cvpnd.exe <br/>C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe <br/>C:\WINDOWS\system32\spoolsv.exe <br/>C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe <br/>C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe <br/>C:\Program Files\Pure Digital Technologies\FlipShare\FlipShareService.exe <br/>C:\Program Files\Windows Live\Family Safety\fsssvc.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\Google\Update\GoogleUpdate.exe <br/>C:\Program Files\iPass\iPassConnect\iPCAgent.exe <br/>C:\Program Files\Java\jre6\bin\jqs.exe <br/>C:\Program Files\Network Associates\Common Framework\FrameworkService.exe <br/>C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE <br/>C:\Program Files\Mil Incorporated\Mil Shield\ShieldService.exe <br/>C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe <br/>C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe <br/>C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\SgeClient.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\SgeCtl.exe <br/>C:\WINDOWS\system32\SgLogPlayer.exe <br/>C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe <br/>C:\WINDOWS\system32\svchost.exe <br/>C:\WINDOWS\system32\TpKmpSVC.exe <br/>C:\Program Files\IBM\Director\bin\twgipcsv.exe <br/>C:\WINDOWS\system32\vnxserv.exe <br/>C:\Program Files\IBM\Director\bin\twgipc.exe <br/>C:\Program Files\IBM\Director\bin\twgescli.exe <br/>C:\PROGRA~1\AVG\AVG8\avgrsx.exe <br/>C:\PROGRA~1\AVG\AVG8\avgnsx.exe <br/>C:\Program Files\IBM\Director\bin\twgmonit.exe <br/>C:\WINDOWS\system32\msiexec.exe <br/>C:\WINDOWS\system32\wbem\wmiapsrv.exe <br/>C:\WINDOWS\system32\wuauclt.exe <br/>C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe <br/>C:\WINDOWS\system32\Ati2evxx.exe <br/>C:\WINDOWS\Explorer.EXE <br/>C:\Program Files\IBM\Director\cimom\bin\tier1slp.exe <br/>C:\Program Files\IBM\Director\bin\IBMSA.exe <br/>C:\Program Files\IBM\Director\bin\slp_srvreg.exe <br/>C:\Program Files\IBM\Director\cimom\bin\cimlistener.exe <br/>C:\Program Files\IBM\Director\cimom\bin\wmicimserver.exe <br/>C:\Program Files\Synaptics\SynTP\SynTPLpr.exe <br/>C:\Program Files\Synaptics\SynTP\SynTPEnh.exe <br/>C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe <br/>C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe <br/>C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe <br/>C:\Program Files\ThinkPad\UltraNav Wizard\UNavTray.EXE <br/>C:\Program Files\iPass\iPassConnect\downloader\ipccheck.exe <br/>C:\Program Files\Lenovo\PkgMgr\HOTKEY\TPONSCR.exe <br/>C:\WINDOWS\system32\dla\tfswctrl.exe <br/>C:\Program Files\Lenovo\PkgMgr\HOTKEY_1\TpScrex.exe <br/>C:\WINDOWS\system32\rundll32.exe <br/>C:\WINDOWS\system32\TpScrLk.exe <br/>C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe <br/>C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe <br/>C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\Ecview.exe <br/>C:\Program Files\Utimaco\SafeGuard Easy\WKSCFGSRV.EXE <br/>C:\PROGRA~1\AVG\AVG8\avgtray.exe <br/>C:\Program Files\Windows Live\Family Safety\fsui.exe <br/>C:\Program Files\Java\jre6\bin\jusched.exe <br/>C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe <br/>C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe <br/>C:\WINDOWS\system32\ctfmon.exe <br/>C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe <br/>C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe <br/>C:\Program Files\Mil Incorporated\Mil Shield\ShieldWorker.exe <br/>C:\Documents and Settings\eloy04260\Local Settings\Application Data\Google\Update\GoogleUpdate.exe <br/>C:\PROGRA~1\WINZIP\winzip32.exe <br/>C:\Documents and Settings\eloy04260\Local Settings\temp\wzad7d\HijackThis.exe <br/> <br/>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 <br/>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 <br/>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 <br/>R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 <br/>R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm <br/>R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ <br/>R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 10.162.66.55:8080 <br/>R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = [url=http://sblprdiweb2;http://umatter.eloyaltyco.com]http://sblprdiweb2;http://umatter.eloyaltyco.com[/url] <br/>O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file) <br/>O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll <br/>O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll <br/>O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll <br/>O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll <br/>O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) <br/>O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll <br/>O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll <br/>O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll <br/>O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll <br/>O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll <br/>O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll <br/>O2 - BHO: Google Gears Helper - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.4.2\gears.dll <br/>O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll <br/>O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll <br/>O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll <br/>O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll <br/>O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe <br/>O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe <br/>O4 - HKLM\..\Run: [TPKMAPHELPER] C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe -helper <br/>O4 - HKLM\..\Run: [TPHOTKEY] C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe <br/>O4 - HKLM\..\Run: [TP4EX] tp4ex.exe <br/>O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe <br/>O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe <br/>O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" <br/>O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r <br/>O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe <br/>O4 - HKLM\..\Run: [PWRMGRTR] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL,PwrMgrBkGndMonitor <br/>O4 - HKLM\..\Run: [BLOG] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BatLogEx.DLL,StartBattLog <br/>O4 - HKLM\..\Run: [TPKBDLED] C:\WINDOWS\system32\TpScrLk.exe <br/>O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey <br/>O4 - HKLM\..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe <br/>O4 - HKLM\..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe <br/>O4 - HKLM\..\Run: [SgeEcView] C:\Program Files\Utimaco\SafeGuard Easy\Ecview.exe <br/>O4 - HKLM\..\Run: [EdWizard] C:\Program Files\Utimaco\SafeGuard Easy\EdWizard.exe as <br/>O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe <br/>O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe <br/>O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun <br/>O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe <br/>O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe <br/>O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe <br/>O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe <br/>O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe <br/>O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background <br/>O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1 <br/>O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe <br/>O4 - HKCU\..\Run: [MilShieldSlave] "C:\Program Files\Mil Incorporated\Mil Shield\ShieldWorker.exe" -logon <br/>O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\eloy04260\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c <br/>O4 - Global Startup: Vodafone Ireland Vodafonie.ie VPN Client.lnk = C:\Program Files\Vodafone-vpn\ipsecdialer.exe <br/>O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 <br/>O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll <br/>O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll <br/>O9 - Extra button: (no name) - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.4.2\gears.dll <br/>O9 - Extra 'Tools' menuitem: &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.4.2\gears.dll <br/>O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll <br/>O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll <br/>O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll <br/>O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL <br/>O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) <br/>O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) <br/>O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe <br/>O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe <br/>O11 - Options group: [INTERNATIONAL] International* <br/>O14 - IERESET.INF: START_PAGE_URL=http://intranet.vodafone.com/ie <br/>O15 - Trusted Zone: *.eloyalty.com <br/>O15 - Trusted Zone: *.eloyaltyco.com <br/>O15 - Trusted Zone: *.imageshack.us <br/>O16 - DPF: {00B28243-126B-4FFF-B346-6C3176E8296B} (Siebel Calendar) - http://sblprdiweb2/callcenter_enu/19221/applets/SiebelAx_Calendar.cab <br/>O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-24-0.cab <br/>O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1229591201781 <br/>O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1229591183406 <br/>O16 - DPF: {9b935470-ad4a-11d5-b63e-00c04faedb18} (Oracle JInitiator 1.1.8.16) - <br/>O16 - DPF: {DE2C7216-C882-400E-BB47-EBB90237CAD1} (Siebel High Interactivity Framework) - http://sblprdiweb2/callcenter_enu/19221/applets/SiebelAx_HI_Client.cab <br/>O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://eloyalty.webex.com/client/T26L/webex/ieatgpc.cab <br/>O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} (JuniperSetupControlXP Class) - https://remoteaccess.wyndhamworldwide.com/dana-cached/setup/JuniperSetupSP1.cab <br/>O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5480/mcfscan.cab <br/>O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = eloyaltyco.com <br/>O17 - HKLM\Software\..\Telephony: DomainName = eloyaltyco.com <br/>O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = eloyaltyco.com <br/>O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = eloyaltyco.com <br/>O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = eloyaltyco.com <br/>O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll <br/>O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL <br/>O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL <br/>O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL <br/>O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll <br/>O20 - Winlogon Notify: ACNotify - ACNotify.dll (file missing) <br/>O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll <br/>O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing) <br/>O20 - Winlogon Notify: NotLog - C:\WINDOWS\SYSTEM32\SGLogEx.dll <br/>O20 - Winlogon Notify: SGLogNotification - C:\WINDOWS\SYSTEM32\SGLogNotification.dll <br/>O20 - Winlogon Notify: tpfnf2 - C:\WINDOWS\SYSTEM32\notifyf2.dll <br/>O20 - Winlogon Notify: tphotkey - C:\WINDOWS\SYSTEM32\tphklock.dll <br/>O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll <br/>O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll <br/>O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Unknown owner - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe <br/>O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe <br/>O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe <br/>O23 - Service: IBM Director CIM Listener (cimlistener) - OpenSource Pegasus - C:\Program Files\IBM\Director\cimom\bin\cimlistener.exe <br/>O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Vodafone-vpn\cvpnd.exe <br/>O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe <br/>O23 - Service: FlipShare Service - Unknown owner - C:\Program Files\Pure Digital Technologies\FlipShare\FlipShareService.exe <br/>O23 - Service: Google Update Service (gupdate1c966cbfc29245e) (gupdate1c966cbfc29245e) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe" /svc (file missing) <br/>O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe <br/>O23 - Service: ThinkPad PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\system32\ibmpmsvc.exe <br/>O23 - Service: IBM SLP SA (ibmsa) - IBM Corporation - C:\Program Files\IBM\Director\bin\IBMSA.exe <br/>O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe <br/>O23 - Service: iPassConnectEngine - iPass - C:\Program Files\iPass\iPassConnect\iPassConnectEngine.exe <br/>O23 - Service: iPCAgent - iPass, Inc. - C:\Program Files\iPass\iPassConnect\iPCAgent.exe <br/>O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf (file missing) <br/>O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe <br/>O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe" /ServiceStart (file missing) <br/>O23 - Service: MilShieldCleaner - Unknown owner - C:\Program Files\Mil Incorporated\Mil Shield\ShieldService.exe <br/>O23 - Service: MSSQL$MICROSOFTSMLBIZ - Unknown owner - C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe" -sMICROSOFTSMLBIZ (file missing) <br/>O23 - Service: OracleOra81ClientCache - Unknown owner - C:\oracle\ora81\BIN\ONRSD.EXE <br/>O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe <br/>O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe <br/>O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe <br/>O23 - Service: SafeGuard Easy Client (SgeClient) - Unknown owner - C:\Program Files\Utimaco\SafeGuard Easy\SgeClient.exe <br/>O23 - Service: SafeGuard Easy Control (SgeCtl) - Utimaco Safeware AG - C:\Program Files\Utimaco\SafeGuard Easy\SgeCtl.exe <br/>O23 - Service: SafeGuard SGLOG Player (SgLogPlayer) - Utimaco Safeware AG - C:\WINDOWS\system32\SgLogPlayer.exe <br/>O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe <br/>O23 - Service: SQLAgent$MICROSOFTSMLBIZ - Unknown owner - C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlagent.EXE" -i MICROSOFTSMLBIZ (file missing) <br/>O23 - Service: IBM Director Agent SLP Attributes (tier1slp) - IBM Corporation - C:\Program Files\IBM\Director\cimom\bin\tier1slp.exe <br/>O23 - Service: IBM KCU Service (TpKmpSVC) - Unknown owner - C:\WINDOWS\system32\TpKmpSVC.exe <br/>O23 - Service: IBM Director Support Program (TWGIPC) - IBM Corporation - C:\Program Files\IBM\Director\bin\twgipcsv.exe <br/>O23 - Service: Vsclient Service (VnxService) - Unknown owner - C:\WINDOWS\system32\vnxserv.exe <br/>O23 - Service: IBM Director Agent WMI CIM Server (wmicimserver) - IBM Corporation - C:\Program Files\IBM\Director\cimom\bin\wmicimserver.exe <br/> <br/><br /><br /> <br/><br /><br /> <br/><br /><br /> <br/><br /><br />
Posted 4/24/2009 2:21 PM
#73165
User avatar

Garyh3 Valued member

Date Joined Nov 2016
Total Posts: 23
Hi Touch <br/> <br/>Ran SDFix and it seems to be running a lot better... at the moment I havnt had to restart my pc once today. <br/> <br/>here is the Log <br/> <br/>Garyh3 <br/> <br/> <br/>SDFix: Version 1.240 <br/>Run by eloy04260 on 2009-04-23 at 18:25 <br/> <br/>Microsoft Windows XP [Version 5.1.2600] <br/>Running From: C:\Temp\sdfix\SDFix <br/> <br/>Checking Services : <br/> <br/> <br/>Restoring Default Security Values <br/>Restoring Default Hosts File <br/> <br/>Rebooting <br/> <br/> <br/>Checking Files : <br/> <br/>Trojan Files Found: <br/> <br/>C:\WINDOWS\system32\.ico - Deleted <br/> <br/><br /><br /> <br/><br /><br /> <br/>Removing Temp Files <br/> <br/>ADS Check : <br/> <br/> <br/> <br/> Final Check : <br/> <br/>catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net <br/>Rootkit scan 2009-04-23 18:38:51 <br/>Windows 5.1.2600 Service Pack 3 NTFS <br/> <br/>scanning hidden processes ... <br/> <br/>scanning hidden services & system hive ... <br/> <br/>scanning hidden registry entries ... <br/> <br/>scanning hidden files ... <br/> <br/>scan completed successfully <br/>hidden processes: 0 <br/>hidden services: 0 <br/>hidden files: 0 <br/> <br/> <br/>Remaining Services : <br/> <br/><br /><br /> <br/> <br/>Authorized Application Key Export: <br/> <br/>[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] <br/>"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" <br/>"C:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe"="C:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe:*:Enabled:McAfee Framework Service" <br/>"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger" <br/>"C:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr.exe"="C:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr.exe:*:Enabled:Remote Assistance - Windows Messenger and Voice" <br/>"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" <br/>"C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:µTorrent" <br/>"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"="C:\\Program Files\\AVG\\AVG8\\avgupd.exe:*:Enabled:avgupd.exe" <br/>"C:\\Documents and Settings\\eloy04260\\GaryStuff\\GarysStuff\\FTP\\WS_FTP95.exe"="C:\\Documents and Settings\\eloy04260\\GaryStuff\\GarysStuff\\FTP\\WS_FTP95.exe:*:Enabled:WS_FTP 95" <br/>"C:\\WINDOWS\\system32\\ftp.exe"="C:\\WINDOWS\\system32\\ftp.exe:*:Enabled:File Transfer Program" <br/>"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger" <br/>"C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" <br/>"C:\\Program Files\\IBM\\SMA\\smabat.exe"="C:\\Program Files\\IBM\\SMA\\smabat.exe:*:Disabled:smabat" <br/>"C:\\Documents and Settings\\eloy04260\\Local Settings\\Apps\\2.0\\BO8MRCNE.RBW\\H6Q1W016.E4H\\moni..tion_ead9156a56b0f665_0001.0000_50417c0338be37d1\\MonitoringAlertDesktopClient.exe"="C:\\Documents and Settings\\eloy04260\\Local Settings\\Apps\\2.0\\BO8MRCNE.RBW\\H6Q1W016.E4H\\moni..tion_ead9156a56b0f665_0001.0000_50417c0338be37d1\\MonitoringAlertDesktopClient.exe:*:Disabled:Monitoring Alert Desktop Client" <br/>"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype" <br/> <br/>[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] <br/>"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" <br/>"C:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe"="C:\\Program Files\\Network Associates\\Common Framework\\FrameworkService.exe:*:Enabled:McAfee Framework Service" <br/>"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" <br/>"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger" <br/>"C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" <br/> <br/>Remaining Files : <br/> <br/> <br/>File Backups: - C:\Temp\sdfix\SDFix\backups\backups.zip <br/> <br/>Files with Hidden Attributes : <br/> <br/>Tue 15 Jul 2003 416,824 A..H. --- "C:\DRIVERS\admin\SETUP.EXE" <br/>Mon 14 Apr 2008 1,695,232 ..SH. --- "C:\Program Files\Messenger\msmsgs.exe" <br/>Mon 14 Apr 2008 60,416 A.SH. --- "C:\Program Files\Outlook Express\msimn.exe" <br/>Wed 22 Oct 2008 949,072 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\advcheck.dll" <br/>Mon 15 Sep 2008 1,562,960 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDHelper.dll" <br/>Wed 22 Oct 2008 962,896 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\Tools.dll" <br/>Wed 6 Dec 2006 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp" <br/>Tue 15 Jul 2003 416,824 A..H. --- "C:\DRIVERS\admin\FILES\OWC11\SETUP.EXE" <br/>Tue 20 Feb 2001 8,192 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\CTFMON.EXE" <br/>Tue 20 Feb 2001 37,376 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\DIMM.DLL" <br/>Thu 17 Mar 2005 1,146,320 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\FM20.DLL" <br/>Tue 15 Jul 2003 32,584 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\FM20ENU.DLL" <br/>Tue 20 Feb 2001 4,608 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\HKL0404.DLL" <br/>Tue 20 Feb 2001 4,608 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\HKL0411.DLL" <br/>Tue 20 Feb 2001 4,608 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\HKL0412.DLL" <br/>Tue 20 Feb 2001 4,608 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\HKL0804.DLL" <br/>Wed 21 Aug 2002 204,800 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\INKED.DLL" <br/>Tue 20 Feb 2001 3,104 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\INPUT16.DLL" <br/>Thu 18 Jun 1998 53,248 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MFC42ENU.DLL" <br/>Tue 20 Feb 2001 273,408 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MSCTF.DLL" <br/>Tue 20 Feb 2001 56,832 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MSCTFP.DLL" <br/>Tue 20 Feb 2001 168,448 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MSIMTF.DLL" <br/>Wed 24 May 2000 118,784 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MSSTDFMT.DLL" <br/>Sun 9 Aug 1998 94,208 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MSSTKPRP.DLL" <br/>Tue 20 Feb 2001 162,304 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MSUTB.DLL" <br/>Wed 17 Jun 1998 401,462 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\MSVCP60.DLL" <br/>Wed 25 Mar 1998 15,872 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\SCP32.DLL" <br/>Thu 25 Nov 1999 40,960 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\VBAME.DLL" <br/>Wed 21 Aug 2002 189,952 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\WISPTIS.EXE" <br/>Mon 16 Feb 2009 242,743,296 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\5b69967e31d1d0e20f5063cc728c883d\BITE3.tmp" <br/>Tue 19 Feb 2008 24,576 ...H. --- "C:\Documents and Settings\eloy04260\Application Data\Microsoft\Word\~WRL1573.tmp" <br/>Wed 2 Aug 2006 20,480 ...H. --- "C:\Documents and Settings\eloy04260\Application Data\Microsoft\Word\~WRL2976.tmp" <br/>Wed 7 Feb 2001 208,979 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSACTVSY\RI!!!!!.DLL" <br/>Tue 2 Mar 2004 1,638,400 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\GDIPLUS.DLL" <br/>Fri 30 May 2003 30,208 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LFBMP13N.DLL" <br/>Fri 30 May 2003 417,792 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LFCMP13N.DLL" <br/>Fri 30 May 2003 47,104 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LFGIF13N.DLL" <br/>Fri 30 May 2003 181,760 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LFPNG13N.DLL" <br/>Fri 30 May 2003 76,800 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LFWMF13N.DLL" <br/>Fri 30 May 2003 269,312 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LTDIS13N.DLL" <br/>Fri 30 May 2003 150,528 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LTFIL13N.DLL" <br/>Fri 30 May 2003 445,440 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LTIMG13N.DLL" <br/>Fri 30 May 2003 446,976 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\LTKRN13N.DLL" <br/>Mon 16 Jun 2003 77,915 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\WKIMGING.DLL" <br/>Mon 16 Jun 2003 61,529 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\WKIMGSRV.DLL" <br/>Mon 16 Jun 2003 86,085 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\WKWAT.DLL" <br/>Mon 16 Jun 2003 86,085 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\WKWBL.DLL" <br/>Mon 16 Jun 2003 110,673 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\WKWINUNI.DLL" <br/>Tue 20 Feb 2001 230,400 A..H. --- "C:\DRIVERS\admin\FILES\WINDOWS\IME\MSCANDUI.DLL" <br/>Tue 20 Feb 2001 154,624 A..H. --- "C:\DRIVERS\admin\FILES\WINDOWS\IME\SOFTKBD.DLL" <br/>Tue 20 Feb 2001 227,840 A..H. --- "C:\DRIVERS\admin\FILES\WINDOWS\IME\SPTIP.DLL" <br/>Wed 14 Mar 2007 200,192 ...H. --- "C:\Documents and Settings\eloy04260\GaryStuff\Projects\Vodafone\MPS\~WRL0527.tmp" <br/>Sun 9 Aug 1998 86,016 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\DESIGNER\MSADDNDR.DLL" <br/>Wed 19 Mar 2003 40,960 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSFT.NET\PIAS\MSDDSLMP.DLL" <br/>Wed 19 Mar 2003 143,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSFT.NET\PIAS\MSDDSP.DLL" <br/>Thu 31 Jul 2003 997,992 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ACCESS.DLL" <br/>Fri 25 Mar 2005 170,696 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ACCWIZ.DLL" <br/>Thu 17 Mar 2005 88,264 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ADDRPARS.DLL" <br/>Tue 15 Jul 2003 38,968 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\AUTHZAX.DLL" <br/>Tue 15 Jul 2003 94,768 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\AW.DLL" <br/>Mon 29 Jul 2002 73,728 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\BIDI32.DLL" <br/>Thu 17 Mar 2005 61,128 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\BLNMGR.DLL" <br/>Tue 15 Jul 2003 46,144 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\BLNMGRPS.DLL" <br/>Fri 25 Mar 2005 351,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\CDLMSO.DLL" <br/>Fri 6 Sep 2002 65,536 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\DAO.DLL" <br/>Thu 17 Mar 2005 77,000 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\DLGSETP.DLL" <br/>Tue 15 Jul 2003 14,904 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\DSITF.DLL" <br/>Tue 15 Jul 2003 98,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\DSSM.EXE" <br/>Fri 12 Jan 2001 468,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\EEFONTS.DLL" <br/>Fri 25 Mar 2005 132,296 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ENVELOPE.DLL" <br/>Fri 27 May 2005 10,095,808 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\EXCEL.EXE" <br/>Thu 31 Jul 2003 1,100,392 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\EXCELPIA.DLL" <br/>Tue 1 Mar 2005 247,808 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\EXCHCSP.DLL" <br/>Thu 17 Mar 2005 346,824 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\EXSEC32.DLL" <br/>Tue 15 Jul 2003 13,368 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\FINDER.EXE" <br/>Thu 31 Jul 2003 371,296 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\FORMSPIA.DLL" <br/>Fri 25 Mar 2005 1,953,480 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\FPCUTL.DLL" <br/>Fri 25 Mar 2005 187,072 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\FPDTC.DLL" <br/>Tue 5 Jul 2005 1,773,568 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\GDIPLUS.DLL" <br/>Thu 17 Mar 2005 2,141,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\GRAPH.EXE" <br/>Thu 31 Jul 2003 141,928 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\GRAPHPIA.DLL" <br/>Wed 9 Dec 1998 31,744 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\HLP95EN.DLL" <br/>Fri 25 Mar 2005 87,240 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\IEAWSDC.DLL" <br/>Thu 17 Mar 2005 122,056 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\IMPMAIL.DLL" <br/>Tue 5 Jul 2005 7,069,896 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\INFOPATH.EXE" <br/>Tue 15 Jul 2003 58,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\INLAUNCH.DLL" <br/>Thu 17 Mar 2005 64,712 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\INTLDATE.DLL" <br/>Thu 17 Mar 2005 101,064 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\IPATHPIA.DLL" <br/>Thu 17 Mar 2005 359,112 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\IPCLRWRP.DLL" <br/>Thu 17 Mar 2005 21,192 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\IPDMCTRL.DLL" <br/>Thu 15 Jan 2004 88,776 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\IPXMLPIA.DLL" <br/>Fri 25 Mar 2005 97,984 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MCPS.DLL" <br/>Tue 15 Jul 2003 176,696 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MIMEDIR.DLL" <br/>Thu 17 Mar 2005 30,408 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MLSHEXT.DLL" <br/>Fri 25 Mar 2005 471,752 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MODHELP.DLL" <br/>Thu 7 Jul 2005 6,657,224 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSACCESS.EXE" <br/>Fri 3 Jun 2005 133,320 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSAEXP30.DLL" <br/>Fri 6 Sep 2002 229,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSCOMCTL.DLL" <br/>Tue 15 Jul 2003 40,504 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSE7.EXE" <br/>Thu 17 Mar 2005 139,976 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSJSPP40.DLL" <br/>Tue 15 Jul 2003 120,888 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOAUTH.DLL" <br/>Thu 17 Mar 2005 107,200 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOCF.DLL" <br/>Thu 17 Mar 2005 128,200 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOCFU.DLL" <br/>Tue 15 Jul 2003 27,704 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSODCW.DLL" <br/>Tue 15 Jul 2003 67,128 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOHEV.DLL" <br/>Tue 15 Jul 2003 55,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOHTMED.EXE" <br/>Tue 15 Jul 2003 54,328 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOMSE.DLL" <br/>Tue 15 Jul 2003 28,224 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOSTYLE.DLL" <br/>Tue 15 Jul 2003 55,872 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOSVABW.DLL" <br/>Tue 15 Jul 2003 39,488 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOSVFBR.DLL" <br/>Thu 9 Nov 2000 1,200,177 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSOWCW.DLL" <br/>Tue 5 Jul 2005 5,685,440 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSPUB.EXE" <br/>Tue 15 Jul 2003 637,496 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSQRY32.EXE" <br/>Thu 17 Apr 2003 76,352 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSRTEDIT.DLL" <br/>Thu 31 Jul 2003 20,080 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSTAGPIA.DLL" <br/>Fri 25 Mar 2005 627,912 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSTORDB.EXE" <br/>Fri 25 Mar 2005 125,640 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSTORE.EXE" <br/>Fri 25 Mar 2005 484,040 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSTORES.DLL" <br/>Tue 23 Jan 2001 831,562 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSUSP.DLL" <br/>Tue 15 Jul 2003 145,984 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MSWEBCAP.DLL" <br/>Tue 4 Mar 2003 141,952 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MULTIMGR.DLL" <br/>Tue 30 Jan 2001 90,112 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MULTIQ.DLL" <br/>Tue 15 Jul 2003 56,888 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\NAME.DLL" <br/>Tue 15 Jul 2003 13,888 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\NPOFFICE.DLL" <br/>Tue 15 Jul 2003 223,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OCLEAN.DLL" <br/>Tue 15 Jul 2003 57,400 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OFFCLN.EXE" <br/>Thu 31 Jul 2003 223,800 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OFFICE.DLL" <br/>Thu 17 Mar 2005 284,352 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OIS.EXE" <br/>Fri 25 Mar 2005 831,688 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OISAPP.DLL" <br/>Thu 17 Mar 2005 35,528 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OISCTRL.DLL" <br/>Tue 15 Jul 2003 242,240 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OISGRAPH.DLL" <br/>Thu 31 Jul 2003 35,448 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OLCTLPIA.DLL" <br/>Tue 15 Jul 2003 232,512 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OLKFSTUB.DLL" <br/>Tue 15 Jul 2003 1,054,264 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OMFC.DLL" <br/>Fri 25 Mar 2005 96,960 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OSA.EXE" <br/>Thu 17 Mar 2005 25,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLACCT.DLL" <br/>Tue 15 Jul 2003 102,968 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLCTL.DLL" <br/>Tue 8 Jul 2003 115,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLFLTR.DLL" <br/>Fri 22 Jul 2005 7,605,960 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLLIB.DLL" <br/>Mon 25 Apr 2005 92,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLMIME.DLL" <br/>Tue 5 Jul 2005 196,296 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLOOK.EXE" <br/>Thu 17 Mar 2005 141,000 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLPH.DLL" <br/>Thu 31 Jul 2003 408,176 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLPIA.DLL" <br/>Thu 31 Mar 2005 64,200 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLRPC.DLL" <br/>Thu 17 Mar 2005 44,744 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLVBS.DLL" <br/>Tue 15 Jul 2003 49,208 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OUTLWAB.DLL" <br/>Thu 31 Jul 2003 461,416 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OWC11PIA.DLL" <br/>Fri 25 Mar 2005 641,736 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OWSCLT.DLL" <br/>Tue 15 Jul 2003 72,248 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\OWSSUPP.DLL" <br/>Wed 29 Jun 2005 6,146,760 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\POWERPNT.EXE" <br/>Thu 31 Jul 2003 223,856 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PPTPIA.DLL" <br/>Thu 7 Jul 2005 1,677,000 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PPTVIEW.EXE" <br/>Tue 15 Jul 2003 112,704 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PROFLWIZ.EXE" <br/>Thu 17 Mar 2005 130,752 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PRTF9.DLL" <br/>Thu 17 Mar 2005 605,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PTXT9.DLL" <br/>Thu 17 Mar 2005 555,720 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PUBCONV.DLL" <br/>Mon 13 Jan 2003 39,504 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PUBENV.DLL" <br/>Thu 31 Jul 2003 211,568 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PUBPIA.DLL" <br/>Tue 15 Jul 2003 51,256 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\PUBTRAP.DLL" <br/>Tue 15 Jul 2003 37,432 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\RECALL.DLL" <br/>Fri 9 May 2003 77,824 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\REFEDIT.DLL" <br/>Tue 15 Jul 2003 40,512 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\REFIEBAR.DLL" <br/>Mon 21 Jul 2003 390,712 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\RTFHTML.DLL" <br/>Tue 15 Jul 2003 211,512 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\SAEXT.DLL" <br/>Tue 15 Jul 2003 349,248 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\SELFCERT.EXE" <br/>Tue 15 Jul 2003 66,616 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\SENDTO.DLL" <br/>Tue 15 Jul 2003 58,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\SEQCHK10.DLL" <br/>Thu 17 Mar 2005 378,568 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\SETLANG.EXE" <br/>Thu 17 Mar 2005 444,608 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\SOA.DLL" <br/>Thu 17 Mar 2005 2,812,616 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\STSLIST.DLL" <br/>Fri 25 Mar 2005 178,888 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\STSUPLD.DLL" <br/>Tue 15 Jul 2003 72,256 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\UCSCRIBE.DLL" <br/>Tue 15 Jul 2003 59,960 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\UNBIND.EXE" <br/>Wed 30 Oct 2002 246,424 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\UNICOWS.DLL" <br/>Thu 31 Jul 2003 64,088 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VBIDEPIA.DLL" <br/>Wed 2 Apr 2003 111,632 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\WAVTOASF.EXE" <br/>Mon 13 Jan 2003 92,752 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\WDBIMP.DLL" <br/>Fri 22 Jul 2005 12,061,896 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\WINWORD.EXE" <br/>Thu 31 Jul 2003 662,120 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\WORDPIA.DLL" <br/>Fri 10 Dec 1999 32,768 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\XLCALL32.DLL" <br/>Mon 16 Jun 2003 229,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\1033\WKGL70.DLL" <br/>Mon 16 Jun 2003 12,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSWORKS\1033\WKIMGLNG.DLL" <br/>Mon 9 Jul 2007 444,928 ...H. --- "C:\Documents and Settings\eloy04260\GaryStuff\Projects\Vodafone\MPS\production\~WRL3132.tmp" <br/>Tue 10 Jul 2007 1,366,528 ...H. --- "C:\Documents and Settings\eloy04260\GaryStuff\Projects\Vodafone\MPS\production\~WRL3153.tmp" <br/>Wed 12 Sep 2007 599,040 ...H. --- "C:\Documents and Settings\eloy04260\GaryStuff\Projects\Vodafone\MPS\production\~WRL3571.tmp" <br/>Fri 18 Oct 2002 8,200 A..H. --- "C:\DRIVERS\admin\FILES\APPDATA\MS\OFFICE\DATA\OPA11.BAK" <br/>Tue 31 Oct 2000 57,344 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\ENUT3S51.DLL" <br/>Mon 31 Jul 2000 98,304 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\LHCOM01A.DLL" <br/>Fri 24 Nov 2000 131,072 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\TTSCORE.DLL" <br/>Fri 23 May 2003 764,536 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DBREP\WZCNF.DLL" <br/>Fri 23 May 2003 45,130 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DBREP\WZCNFLCT.EXE" <br/>Wed 19 Mar 2003 851,968 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DESIGN7\MSDDS.DLL" <br/>Wed 19 Mar 2003 487,424 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DESIGN7\MSDDSF.DLL" <br/>Wed 19 Mar 2003 335,872 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DESIGN7\MSDDSLM.DLL" <br/>Wed 19 Mar 2003 499,712 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DESIGN7\MSVCP71.DLL" <br/>Fri 21 Feb 2003 348,160 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DESIGN7\MSVCR71.DLL" <br/>Fri 27 May 2005 631,488 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DW\DW20.EXE" <br/>Mon 10 Nov 2003 39,952 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DW\DWDCW20.DLL" <br/>Mon 10 Nov 2003 34,832 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DW\DWTRIG20.EXE" <br/>Mon 24 Mar 2003 543,304 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\EQUATION\EQNEDT32.EXE" <br/>Tue 15 Jul 2003 25,144 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\EURO\MSOEURO.DLL" <br/>Thu 20 Apr 2000 465,677 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INFORMAT\ITIRCL52.DLL" <br/>Thu 20 Apr 2000 520,117 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INFORMAT\MSITSS.DLL" <br/>Tue 6 Apr 2004 1,645,240 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\GDIPLUS.DLL" <br/>Wed 7 Feb 2001 1,835,008 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\HWXUSA.DLL" <br/>Tue 28 Jan 2003 257,536 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\INKDIV.DLL" <br/>Wed 21 Aug 2002 1,133,056 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\INKOBJ.DLL" <br/>Wed 7 Feb 2001 372,802 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\PENUSA.DLL" <br/>Wed 7 Feb 2001 110,651 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\SKCHOBJ.DLL" <br/>Wed 7 Feb 2001 364,607 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\SKCHUI.DLL" <br/>Wed 21 Aug 2002 48,640 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\INK\TPCPS.DLL" <br/>Thu 17 Mar 2005 231,616 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MSCDM\MSCDM.DLL" <br/>Tue 15 Jul 2003 119,872 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MSINFO\OINFOP11.EXE" <br/>Tue 15 Jul 2003 15,936 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MSINFO\OINFOS11.DLL" <br/>Tue 15 Jul 2003 376,888 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MSORUN\MSORUN.DLL" <br/>Tue 15 Jul 2003 17,464 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSMH.DLL" <br/>Fri 22 Jul 2005 12,242,624 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSO.DLL" <br/>Wed 26 Mar 2003 88,640 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSOICONS.EXE" <br/>Tue 15 Jul 2003 42,040 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSOXEV.DLL" <br/>Tue 15 Jul 2003 55,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSOXMLED.EXE" <br/>Tue 15 Jul 2003 39,488 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSOXMLMF.DLL" <br/>Tue 15 Jul 2003 41,528 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSSH.DLL" <br/>Fri 6 Dec 2002 497,664 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSSOAP30.DLL" <br/>Wed 22 Sep 2004 1,290,240 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\MSXML5.DLL" <br/>Tue 21 Sep 2004 965,400 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\RICHED20.DLL" <br/>Tue 15 Jul 2003 117,304 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\UCS20.DLL" <br/>Thu 5 Feb 2004 422,912 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\USP10.DLL" <br/>Fri 6 Dec 2002 93,696 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\WISC30.DLL" <br/>Fri 11 Jul 2003 42,576 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PORTAL\PORTALCN.DLL" <br/>Fri 7 Jul 2000 49,152 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\CHAPI3T1.DLL" <br/>Tue 15 Dec 1998 65,593 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\CSAPI3T1.DLL" <br/>Mon 22 Nov 1999 45,121 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\CTAPI3T2.DLL" <br/>Mon 5 Jan 2004 749,568 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSHY3ES.DLL" <br/>Thu 28 Nov 2002 184,395 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSHY3FR.DLL" <br/>Fri 31 Jul 1998 61,512 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSHYPH2.DLL" <br/>Thu 5 Nov 1998 536,576 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSLID.DLL" <br/>Wed 9 Apr 2003 827,392 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSSP3ES.DLL" <br/>Sat 22 Jan 2005 542,208 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSSP3FR.DLL" <br/>Sun 17 Feb 2002 86,016 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSSPELL3.DLL" <br/>Thu 15 Jan 2004 802,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSTH3ES.DLL" <br/>Wed 26 Jan 2005 364,627 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSTH3FR.DLL" <br/>Mon 8 Jun 1998 49,152 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\MSTHES3.DLL" <br/>Tue 15 Jul 2003 120,888 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\FDATE.DLL" <br/>Tue 15 Jul 2003 124,984 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\FNAME.DLL" <br/>Tue 15 Jul 2003 179,768 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\FPERSON.DLL" <br/>Tue 15 Jul 2003 165,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\FPLACE.DLL" <br/>Tue 15 Jul 2003 153,144 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\FSTOCK.DLL" <br/>Thu 17 Mar 2005 161,984 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\IETAG.DLL" <br/>Tue 15 Jul 2003 290,872 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\MOFL.DLL" <br/>Tue 15 Jul 2003 1,054,264 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SNAPVIEW\OMFC.DLL" <br/>Wed 16 Apr 2003 64,088 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SNAPVIEW\OMFCSAT.DLL" <br/>Tue 15 Jul 2003 46,656 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SNAPVIEW\SNAPVIEW.EXE" <br/>Fri 22 Nov 2002 696,320 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SPEECH\SAPI.DLL" <br/>Mon 31 Mar 2003 43,576 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SPEECH\SAPISVR.EXE" <br/>Mon 28 Jul 2003 89,136 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SRCENG\OSE.EXE" <br/>Fri 25 Mar 2005 116,424 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TEXTCONV\MSCONV97.DLL" <br/>Wed 16 Apr 2003 91,136 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TEXTCONV\MSLS2.DLL" <br/>Mon 16 Jun 2003 872,521 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TEXTCONV\WKCVQD01.DLL" <br/>Mon 16 Jun 2003 118,860 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TEXTCONV\WKCVQR01.DLL" <br/>Mon 11 Oct 1999 131,072 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TEXTCONV\WPEQU532.DLL" <br/>Tue 15 Jul 2003 124,480 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TRANSLAT\MSB1CORE.DLL" <br/>Tue 15 Jul 2003 47,872 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TRANSLAT\MSB1XTOR.DLL" <br/>Wed 23 Jul 2003 221,184 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TRANSLAT\WTSP61MS.DLL" <br/>Wed 19 Mar 2003 499,712 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VDBTOOLS\MSVCP71.DLL" <br/>Fri 21 Feb 2003 348,160 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VDBTOOLS\MSVCR71.DLL" <br/>Wed 19 Mar 2003 3,198,976 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VDBTOOLS\VDT70.DLL" <br/>Wed 19 Mar 2003 864,256 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VDBTOOLS\VDT70G.DLL" <br/>Tue 16 Jan 2001 53,248 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VS7DEBUG\COLOADER.DLL" <br/>Fri 20 Jun 2003 322,120 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VS7DEBUG\MDM.EXE" <br/>Sat 5 Jan 2002 176,128 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VS7DEBUG\MSDBG2.DLL" <br/>Sat 5 Jan 2002 180,224 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VS7DEBUG\PDM.DLL" <br/>Fri 20 Jun 2003 162,400 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VS7DEBUG\VS7JIT.EXE" <br/>Fri 11 Jul 2003 1,292,872 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBFLDRS\MSONSEXT.DLL" <br/>Tue 15 Jul 2003 35,896 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBFLDRS\MSOSV.DLL" <br/>Fri 11 Jul 2003 80,448 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBFLDRS\PKMWS.DLL" <br/>Fri 27 Jun 2003 77,824 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SPEECH\MS\SPCOMMON.DLL" <br/>Fri 11 Jul 2003 842,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSDAIPP.DLL" <br/>Fri 11 Jul 2003 160,320 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSDAPML.DLL" <br/>Wed 4 May 2005 465,640 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSDMENG.DLL" <br/>Wed 4 May 2005 1,411,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSDMINE.DLL" <br/>Wed 4 May 2005 240,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSMDCB80.DLL" <br/>Wed 4 May 2005 1,071,856 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSMDGD80.DLL" <br/>Wed 4 May 2005 199,408 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSMDUN80.DLL" <br/>Wed 4 May 2005 2,120,448 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSOLAP80.DLL" <br/>Wed 4 May 2005 228,152 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\OLEDB\MSOLUI80.DLL" <br/>Thu 11 Jan 2001 12,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\MEDIA\CAGCAT10\CAGCAT10.DLL" <br/>Thu 11 Jan 2001 12,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\MEDIA\OFFICE11\OFFICE10.DLL" <br/>Fri 25 Mar 2005 367,304 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\ACWIZRC.DLL" <br/>Tue 5 Jul 2005 35,528 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\ADDRPRSR.DLL" <br/>Tue 15 Jul 2003 13,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\CERTINTL.DLL" <br/>Mon 3 Mar 2003 39,544 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\EEFINTL.DLL" <br/>Tue 15 Jul 2003 20,032 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\ENVELOPR.DLL" <br/>Tue 15 Jul 2003 13,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\EXPTOOWS.DLL" <br/>Tue 15 Jul 2003 145,984 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\GRINTL32.DLL" <br/>Mon 3 Mar 2003 31,352 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\HTMMINTL.DLL" <br/>Mon 3 Mar 2003 27,256 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\HTMQINTL.DLL" <br/>Thu 17 Mar 2005 1,013,960 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\INFINTL.DLL" <br/>Tue 15 Jul 2003 12,864 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MODHLPUI.DLL" <br/>Tue 15 Jul 2003 473,656 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MOR6INT.DLL" <br/>Thu 17 Mar 2005 440,008 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MORPH9.DLL" <br/>Tue 5 Jul 2005 589,504 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSAIN.DLL" <br/>Fri 13 Jun 2003 219,520 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSCAL32.DLL" <br/>Tue 15 Jul 2003 60,472 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSEINTL.DLL" <br/>Tue 15 Jul 2003 31,296 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSOAUTUI.DLL" <br/>Thu 17 Mar 2005 89,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSOHELP.EXE" <br/>Mon 30 Oct 2000 110,592 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSOWCWI.DLL" <br/>Tue 9 Mar 1999 74,000 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSRCLR40.DLL" <br/>Wed 16 Aug 2000 28,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSRECR40.DLL" <br/>Fri 13 Jun 2003 189,312 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSSCD32.DLL" <br/>Fri 13 Jun 2003 1,750,904 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSSPC32.DLL" <br/>Tue 15 Jul 2003 143,416 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSTINTL.DLL" <br/>Fri 13 Jun 2003 44,952 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSTRE32.DLL" <br/>Tue 23 Jan 2001 229,444 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSUSPINT.DLL" <br/>Tue 15 Jul 2003 10,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\MSWBCLNG.DLL" <br/>Tue 15 Jul 2003 109,120 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\OBALLOON.DLL" <br/>Tue 15 Jul 2003 121,400 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\OCLTINT.DLL" <br/>Thu 17 Mar 2005 130,760 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\OISINTL.DLL" <br/>Wed 16 Apr 2003 64,088 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\OMFCSAT.DLL" <br/>Tue 5 Jul 2005 3,057,864 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\OUTLLIBR.DLL" <br/>Tue 5 Jul 2005 275,144 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\OUTLWVW.DLL" <br/>Tue 15 Jul 2003 41,008 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\PNG.DLL" <br/>Sat 5 Aug 2000 307,200 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\POCE98.DLL" <br/>Mon 11 Sep 2000 32,768 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\POCELANG.DLL" <br/>Tue 5 Jul 2005 490,184 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\PPINTL.DLL" <br/>Thu 17 Mar 2005 128,712 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\PPVWINTL.DLL" <br/>Thu 17 Mar 2005 1,514,184 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\PUB6INTL.DLL" <br/>Tue 15 Jul 2003 96,832 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\QRYINT32.DLL" <br/>Fri 4 Apr 2003 190,848 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\SCHDPL32.EXE" <br/>Tue 5 Jul 2005 138,952 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\SLINTL.DLL" <br/>Thu 1 May 2003 1,178,272 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\SRINTL.DLL" <br/>Tue 15 Jul 2003 133,696 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\STSLISTI.DLL" <br/>Tue 15 Jul 2003 15,424 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\STSUCRES.DLL" <br/>Tue 15 Jul 2003 13,376 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\UNBIND10.DLL" <br/>Tue 15 Jul 2003 55,864 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\UNPACK.EXE" <br/>Thu 21 Dec 2000 61,440 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\WWASUM.DLL" <br/>Tue 5 Jul 2005 771,784 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\WWINTL.DLL" <br/>Tue 5 Jul 2005 707,784 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\XLINTL32.DLL" <br/>Tue 15 Jul 2003 154,176 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1033\XLSLICER.DLL" <br/>Tue 19 Dec 2000 147,456 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\1036\WWASUM.DLL" <br/>Tue 12 Jan 1999 548,920 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\3082\WWASUM.DLL" <br/>Thu 10 Jul 2003 7,168 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ADDINS\MSOSEC.DLL" <br/>Tue 18 Mar 2003 344,064 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ADDINS\MSVCR71.DLL" <br/>Thu 10 Jul 2003 77,824 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ADDINS\OTKLOADR.DLL" <br/>Thu 24 Jul 2003 45,112 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\ADDINS\OUTLVBA.DLL" <br/>Thu 17 Mar 2005 74,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\CONVERT\RM.DLL" <br/>Fri 27 May 2005 100,552 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\CONVERT\TRANSMGR.DLL" <br/>Tue 15 Jul 2003 15,928 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\MIGRATE\MIGRATE.DLL" <br/>Thu 15 Jan 2004 88,776 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\temp\IPXMLPIA.DLL" <br/>Wed 29 Nov 2000 64,512 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\ATL70.DLL" <br/>Mon 29 Jan 2001 36,864 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\CMDDEF.DLL" <br/>Tue 16 Jan 2001 106,496 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\COMPSVCS.DLL" <br/>Wed 24 Jan 2001 200,704 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\CSSPKG.DLL" <br/>Thu 18 Jan 2001 126,976 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\HTMDLGS.DLL" <br/>Tue 24 Jun 2003 909,312 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\HTMED.DLL" <br/>Thu 5 Jun 2003 3,035,136 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\MSENV.DLL" <br/>Sat 5 Jan 2002 487,424 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\MSVCP70.DLL" <br/>Sat 5 Jan 2002 344,064 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\MSVCR70.DLL" <br/>Mon 29 Jan 2001 122,880 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\SCRIPTLE.DLL" <br/>Tue 16 Jan 2001 143,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\SDM2.DLL" <br/>Thu 18 Jan 2001 311,296 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\TRIDSN.DLL" <br/>Fri 26 Jan 2001 212,992 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\VSBROWSE.DLL" <br/>Mon 20 May 2002 589,824 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\VSDEBUG.DLL" <br/>Wed 31 Jan 2001 224,256 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\VSTLBINF.DLL" <br/>Tue 16 Jan 2001 356,352 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\VSTMCR.DLL" <br/>Thu 17 Mar 2005 431,304 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\XLATORS\PP4X322.DLL" <br/>Tue 15 Jul 2003 93,752 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\XLATORS\PP7X32.DLL" <br/>Thu 11 May 2000 397,312 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\REDIST\MS\SYSTEM\MSRDO20.DLL" <br/>Mon 3 Apr 2000 151,552 A..H. --- "C:\DRIVERS\admin\FILES\SYSTEM\REDIST\MS\SYSTEM\RDOCURS.DLL" <br/>Tue 15 Jul 2003 109,120 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DW\1033\DWINTL20.DLL" <br/>Mon 3 Mar 2003 64,096 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\EQUATION\1033\EEINTL.DLL" <br/>Mon 7 Oct 2002 61,440 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\BINDER.DLL" <br/>Mon 7 Oct 2002 192,573 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\FORM.DLL" <br/>Wed 18 Jun 2003 252,928 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MDIINK.DLL" <br/>Fri 10 Jun 2005 444,416 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MDIVWCTL.DLL" <br/>Tue 18 May 2004 1,035,264 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MSPCORE.DLL" <br/>Wed 18 Jun 2003 788,480 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MSPFILT.DLL" <br/>Wed 18 Jun 2003 16,384 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MSPGIMME.DLL" <br/>Thu 19 Jun 2003 57,448 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MSPOCRDC.EXE" <br/>Thu 19 Jun 2003 128,104 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MSPSCAN.EXE" <br/>Thu 19 Jun 2003 364,648 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\MSPVIEW.EXE" <br/>Wed 18 Jun 2003 6,144 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\OCRPS.DLL" <br/>Mon 7 Oct 2002 167,997 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\PSOM.DLL" <br/>Mon 7 Oct 2002 81,984 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\REVERSE.DLL" <br/>Mon 7 Oct 2002 106,561 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\THOCRAPI.DLL" <br/>Mon 7 Oct 2002 241,729 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWCUTCHR.DLL" <br/>Mon 7 Oct 2002 180,289 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWCUTLIN.DLL" <br/>Mon 7 Oct 2002 147,520 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWLAY32.DLL" <br/>Mon 7 Oct 2002 102,467 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWORIENT.DLL" <br/>Sat 17 Aug 2002 106,559 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWRECC.DLL" <br/>Mon 7 Oct 2002 118,847 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWRECE.DLL" <br/>Mon 7 Oct 2002 81,983 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWRECS.DLL" <br/>Mon 7 Oct 2002 221,252 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\TWSTRUCT.DLL" <br/>Mon 7 Oct 2002 1,794,113 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\XIMAGE3B.DLL" <br/>Wed 30 Apr 2003 1,581,120 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\XPAGE3C.DLL" <br/>Tue 5 Jul 2005 149,192 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\1033\ALRTINTL.DLL" <br/>Mon 28 Jul 2003 56,888 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\1033\LCCWIZ.DLL" <br/>Tue 5 Jul 2005 1,751,240 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\1033\MSOINTL.DLL" <br/>Fri 6 Dec 2002 30,208 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\1033\MSSOAPR3.DLL" <br/>Fri 16 May 2003 84,480 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\OFFICE11\1033\MSXML5R.DLL" <br/>Tue 5 Oct 2004 3,166,208 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\1033\MSGR3EN.DLL" <br/>Sun 20 Jun 2004 6,215,168 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\1036\MSGR3FR.DLL" <br/>Sat 4 Nov 2000 1,093,632 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\PROOF\3082\MSGR3ES.DLL" <br/>Tue 15 Jul 2003 17,976 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SMARTTAG\1033\STINTL.DLL" <br/>Fri 27 Jun 2003 61,440 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\SPEECH\1033\SPCPLUI.DLL" <br/>Tue 10 Oct 2000 65,536 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TRANSLAT\ESEN\MSB1ESEN.DLL" <br/>Tue 10 Oct 2000 65,536 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\TRANSLAT\FREN\MSB1FREN.DLL" <br/>Wed 26 Aug 1998 466,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VBA\VBA6\VBACV10.DLL" <br/>Wed 26 Aug 1998 471,040 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VBA\VBA6\VBACV10D.DLL" <br/>Wed 26 Aug 1998 1,044,480 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VBA\VBA6\VBACV20.DLL" <br/>Tue 25 May 2004 2,482,176 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VBA\VBA6\VBE6.DLL" <br/>Wed 19 Mar 2003 180,224 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VDBTOOLS\1033\VDT70UI.DLL" <br/>Sat 5 Jan 2002 24,576 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VS7DEBUG\1033\MDMUI.DLL" <br/>Fri 3 Jun 2005 7,252,672 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBCOMPS\10\OWC10.DLL" <br/>Tue 15 Jul 2003 141,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBCOMPS\11\ATP.DLL" <br/>Tue 19 Apr 2005 47,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBCOMPS\11\DFUICOM.EXE" <br/>Tue 15 Jul 2003 14,400 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBCOMPS\11\DFUIPRXY.DLL" <br/>Mon 25 Apr 2005 8,071,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBCOMPS\11\OWC11.DLL" <br/>Tue 15 Jul 2003 10,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBFLDRS\1033\MSOSVINT.DLL" <br/>Fri 11 Jul 2003 42,568 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBFLDRS\1033\NSEXTINT.DLL" <br/>Fri 27 Jun 2003 847,872 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SPEECH\MS\SR61\SPSRENG.DLL" <br/>Fri 27 Jun 2003 1,134,592 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SPEECH\MS\SR61\SPSRX.DLL" <br/>Tue 15 Jul 2003 12,352 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\BJABLR32.DLL" <br/>Wed 16 Mar 2005 728,064 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\CDO.DLL" <br/>Tue 15 Jul 2003 129,088 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\CNFNOT32.EXE" <br/>Thu 17 Mar 2005 116,424 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\CONTAB32.DLL" <br/>Thu 17 Mar 2005 31,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\DUMPSTER.DLL" <br/>Thu 17 Mar 2005 106,696 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\EMABLT32.DLL" <br/>Thu 17 Mar 2005 264,392 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\EMSABP32.DLL" <br/>Mon 25 Apr 2005 704,712 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\EMSMDB32.DLL" <br/>Mon 25 Apr 2005 132,296 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\EMSUI32.DLL" <br/>Fri 13 Jun 2003 120,216 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\ESCONF.DLL" <br/>Tue 10 Dec 2002 80,472 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\GAPI32.DLL" <br/>Tue 10 Dec 2002 137,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\MAPI32.DLL" <br/>Thu 17 Mar 2005 778,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\MAPIR.DLL" <br/>Thu 7 Jul 2005 1,414,344 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\MSMAPI32.DLL" <br/>Thu 7 Jul 2005 723,656 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\MSPST32.DLL" <br/>Mon 25 Apr 2005 653,504 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\OUTEX.DLL" <br/>Thu 17 Mar 2005 279,240 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\PSTPRX32.DLL" <br/>Tue 5 Jul 2005 51,912 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\SCANOST.EXE" <br/>Tue 5 Jul 2005 42,696 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\SCANPST.EXE" <br/>Mon 25 Apr 2005 232,648 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\SCNPST32.DLL" <br/>Mon 25 Apr 2005 241,352 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\SCNPST64.DLL" <br/>Fri 13 Jun 2003 66,944 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SYSTEM\MSMAPI\1033\SCRPTXTN.DLL" <br/>Thu 11 Jan 2001 12,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\MEDIA\OFFICE11\AUTOSHAP\AUTOSHAP.DLL" <br/>Thu 11 Jan 2001 12,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\MEDIA\OFFICE11\BULLETS\BULLETS.DLL" <br/>Thu 11 Jan 2001 12,288 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\MEDIA\OFFICE11\LINES\LINES.DLL" <br/>Tue 15 Jul 2003 33,848 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\CONVERT\1033\LOCALDV.DLL" <br/>Tue 15 Jul 2003 14,912 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\CONVERT\1033\TRANSMRR.DLL" <br/>Tue 15 Jul 2003 84,544 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\LIBRARY\SOLVER\SOLVER32.DLL" <br/>Tue 16 Jan 2001 192,512 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\CMDDEFUI.DLL" <br/>Tue 16 Jan 2001 8,704 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\COMPSVCS.DLL" <br/>Tue 16 Jan 2001 40,960 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\CSSPKGUI.DLL" <br/>Tue 16 Jan 2001 22,528 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\HTMDLGSU.DLL" <br/>Tue 16 Jan 2001 143,360 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\HTMEDUI.DLL" <br/>Fri 26 Jan 2001 16,384 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\MSDBGUI.DLL" <br/>Tue 16 Jan 2001 204,800 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\MSENVUI.DLL" <br/>Thu 22 Aug 2002 32,768 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\VSBROWSU.DLL" <br/>Tue 16 Jan 2001 86,016 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\VSDEBUGU.DLL" <br/>Tue 16 Jan 2001 12,800 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\1033\VSTMCRUI.DLL" <br/>Wed 29 Nov 2000 77,824 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\MSOFFICE\OFFICE11\VSRUN\ANSI\ATL70.DLL" <br/>Wed 19 Mar 2003 24,576 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\DESIGN7\RESOURCE\1033\MSDDSUI.DLL" <br/>Wed 18 Jun 2003 5,120 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\1033\MSPFLTRS.DLL" <br/>Mon 26 Jan 2004 243,200 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\1033\MSPLCRES.DLL" <br/>Mon 22 Mar 2004 765,680 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\DRIVERS\MDIGRAPH.DLL" <br/>Mon 22 Mar 2004 24,816 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\DRIVERS\MDIMON.DLL" <br/>Mon 22 Mar 2004 25,840 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\DRIVERS\MDIPPR.DLL" <br/>Mon 22 Mar 2004 42,224 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\MODI\11.0\DRIVERS\MDIUI.DLL" <br/>Fri 25 Oct 2002 159,744 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\VBA\VBA6\1033\VBE6INTL.DLL" <br/>Fri 3 Jun 2005 506,568 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBCOMPS\10\1033\OWCI10.DLL" <br/>Tue 5 Jul 2005 539,336 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBCOMPS\11\1033\OWCI11.DLL" <br/>Tue 15 Jul 2003 87,104 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBSRVEX\60\BIN\FPENCODE.DLL" <br/>Tue 5 Jul 2005 1,160,904 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBSRVEX\60\BIN\FPSRVUTL.DLL" <br/>Fri 25 Mar 2005 800,960 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\MSSHARED\WEBSRVEX\60\BIN\FPWEC.DLL" <br/>Fri 27 Jun 2003 126,976 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SPEECH\MS\SR61\1033\ITNGRAM.DLL" <br/>Fri 27 Jun 2003 81,920 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\SPEECH\MS\SR61\1033\SPSRXUI.DLL" <br/>Tue 7 Nov 2000 561,152 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\1033\TTS\TTS3000\ENUT11F1.DLL" <br/>Tue 7 Nov 2000 573,440 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\1033\TTS\TTS3000\ENUT11M1.DLL" <br/>Tue 14 Nov 2000 348,160 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\1033\TTS\TTS3000\ENUTEMPP.DLL" <br/>Wed 8 Nov 2000 827,392 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\1033\TTS\TTS3000\ENUTG2P.DLL" <br/>Tue 7 Nov 2000 139,264 A..H. --- "C:\DRIVERS\admin\FILES\PFILES\COMMON\L&H\SPEECH\1033\TTS\TTS3000\ENUTSTPP.DLL" <br/> <br/>Finished! <br/> <br/><br /><br /> <br/><br /><br /> <br/><br /><br /> <br/><br /><br /> <br/><br /><br />
  • Unread posts or replies
  • No unread posts or replies
  • Unread Posts (Read Only Forum)
  • No Unread Posts (Read Only Forum)

Forum Information

Currently it is Saturday, December 3, 2016, 5:45 AM (GMT +1)
There are a total of 61,157 posts in 13,447 threads.
In the last 3 days there were 1 new threads and 1 reply posts.

Who's online

This forum has 37,966 registered members. Please welcome our newest member, Don Tee.
There are currently no users on-line.