Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: computer keep logging off  (Read 44125 times)

0 Members and 1 Guest are viewing this topic.

shoyou

    Topic Starter


    Beginner

    Re: computer keep logging off
    « Reply #30 on: May 09, 2010, 12:59:55 PM »
    - | M] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20866.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_20866.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_20127.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1258.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1258.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1257.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1257.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1256.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1256.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1255.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1255.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1254.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1254.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1253.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1253.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1252.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1252.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1251.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1251.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1250.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1250.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_1026.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_1026.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10082.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10081.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10079.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10079.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10029.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10021.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10017.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10010.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10007.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10006.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10005.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10004.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_10000.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_10000.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\dllcache\c_037.nls
    [2004/08/04 06:00:00 | 00,066,082 | ---- | M] () -- C:\WINDOWS\System32\c_037.nls
    [2004/08/04 06:00:00 | 00,065,978 | ---- | M] () -- C:\WINDOWS\Soap Bubbles.bmp
    [2004/08/04 06:00:00 | 00,065,954 | ---- | M] () -- C:\WINDOWS\Prairie Wind.bmp
    [2004/08/04 06:00:00 | 00,065,832 | ---- | M] () -- C:\WINDOWS\Santa Fe Stucco.bmp
    [2004/08/04 06:00:00 | 00,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.sve
    [2004/08/04 06:00:00 | 00,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.nld
    [2004/08/04 06:00:00 | 00,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.ita
    [2004/08/04 06:00:00 | 00,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.fra
    [2004/08/04 06:00:00 | 00,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.esn
    [2004/08/04 06:00:00 | 00,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.enu
    [2004/08/04 06:00:00 | 00,065,489 | ---- | M] () -- C:\WINDOWS\System32\wbcache.deu
    [2004/08/04 06:00:00 | 00,065,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msaudite.dll
    [2004/08/04 06:00:00 | 00,064,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\acctres.dll
    [2004/08/04 06:00:00 | 00,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\avicap32.dll
    [2004/08/04 06:00:00 | 00,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cryptnet(2).dll
    [2004/08/04 06:00:00 | 00,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\browselc(2).dll
    [2004/08/04 06:00:00 | 00,063,488 | ---- | M] () -- C:\WINDOWS\System32\wmimgmt.msc
    [2004/08/04 06:00:00 | 00,063,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\nwlnknb.sys
    [2004/08/04 06:00:00 | 00,062,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsopprov.exe
    [2004/08/04 06:00:00 | 00,062,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dsauth.dll
    [2004/08/04 06:00:00 | 00,062,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iasnap.dll
    [2004/08/04 06:00:00 | 00,062,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnmodem.dll
    [2004/08/04 06:00:00 | 00,061,952 | ---- | M] (Sipro Lab Telecom Inc.) -- C:\WINDOWS\System32\acelpdec.ax
    [2004/08/04 06:00:00 | 00,061,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnwsock.dll
    [2004/08/04 06:00:00 | 00,061,508 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrprbda.exe
    [2004/08/04 06:00:00 | 00,061,500 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrcntra.dll
    [2004/08/04 06:00:00 | 00,061,440 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\System32\dmview.ocx
    [2004/08/04 06:00:00 | 00,061,172 | ---- | M] () -- C:\WINDOWS\System32\cmmgr32.hlp
    [2004/08/04 06:00:00 | 00,061,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msacm.dll
    [2004/08/04 06:00:00 | 00,060,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ocmanage(2).dll
    [2004/08/04 06:00:00 | 00,060,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqgentr.dll
    [2004/08/04 06:00:00 | 00,060,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnhupnp(2).dll
    [2004/08/04 06:00:00 | 00,060,458 | ---- | M] () -- C:\WINDOWS\System32\ideograf.uce
    [2004/08/04 06:00:00 | 00,060,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msratelc.dll
    [2004/08/04 06:00:00 | 00,060,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cryptsvc(2).dll
    [2004/08/04 06:00:00 | 00,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regsvc(2).dll
    [2004/08/04 06:00:00 | 00,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mpr(2).dll
    [2004/08/04 06:00:00 | 00,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cabinet(2).dll
    [2004/08/04 06:00:00 | 00,059,904 | ---- | M] () -- C:\WINDOWS\System32\devenum(2).dll
    [2004/08/04 06:00:00 | 00,059,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iassvcs.dll
    [2004/08/04 06:00:00 | 00,059,167 | ---- | M] () -- C:\WINDOWS\System\setup.inf
    [2004/08/04 06:00:00 | 00,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\resutils(2).dll
    [2004/08/04 06:00:00 | 00,058,273 | R--- | M] () -- C:\WINDOWS\System32\perfmon.msc
    [2004/08/04 06:00:00 | 00,058,112 | ---- | M] (RAVISENT Technologies Inc.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys
    [2004/08/04 06:00:00 | 00,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntlanui.dll
    [2004/08/04 06:00:00 | 00,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\clusapi(2).dll
    [2004/08/04 06:00:00 | 00,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\gpupdate.exe
    [2004/08/04 06:00:00 | 00,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sol.exe
    [2004/08/04 06:00:00 | 00,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ndptsp(2).tsp
    [2004/08/04 06:00:00 | 00,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\authz(2).dll
    [2004/08/04 06:00:00 | 00,056,678 | ---- | M] () -- C:\WINDOWS\System32\eventvwr.msc
    [2004/08/04 06:00:00 | 00,056,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fsutil.exe
    [2004/08/04 06:00:00 | 00,055,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\nwlnkspx.sys
    [2004/08/04 06:00:00 | 00,055,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wmiscmgr.dll
    [2004/08/04 06:00:00 | 00,055,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\eventlog(2).dll
    [2004/08/04 06:00:00 | 00,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqoa20.tlb
    [2004/08/04 06:00:00 | 00,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fxsevent(2).dll
    [2004/08/04 06:00:00 | 00,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\freecell.exe
    [2004/08/04 06:00:00 | 00,055,296 | ---- | M] () -- C:\WINDOWS\System32\dvdplay.exe
    [2004/08/04 06:00:00 | 00,054,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\icmui.dll
    [2004/08/04 06:00:00 | 00,053,840 | ---- | M] () -- C:\WINDOWS\System32\dosx.exe
    [2004/08/04 06:00:00 | 00,053,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpserial.dll
    [2004/08/04 06:00:00 | 00,053,478 | ---- | M] () -- C:\WINDOWS\System32\tcpmon.ini
    [2004/08/04 06:00:00 | 00,053,305 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrlbva.dll
    [2004/08/04 06:00:00 | 00,052,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tsappcmp.dll
    [2004/08/04 06:00:00 | 00,051,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wzcsapi(2).dll
    [2004/08/04 06:00:00 | 00,051,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\tosdvd.sys
    [2004/08/04 06:00:00 | 00,051,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\migpwd.exe
    [2004/08/04 06:00:00 | 00,051,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vga256.dll
    [2004/08/04 06:00:00 | 00,051,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wmerrenu.dll
    [2004/08/04 06:00:00 | 00,051,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\syncapp.exe
    [2004/08/04 06:00:00 | 00,051,200 | ---- | M] (Microsoft Corp. and Executive Software International, Inc.) -- C:\WINDOWS\System32\dfrgres.dll
    [2004/08/04 06:00:00 | 00,050,620 | ---- | M] () -- C:\WINDOWS\System32\command.com
    [2004/08/04 06:00:00 | 00,050,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mdhcp.dll
    [2004/08/04 06:00:00 | 00,050,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\loghours.dll
    [2004/08/04 06:00:00 | 00,049,680 | ---- | M] (Twain Working Group) -- C:\WINDOWS\twunk_16.exe
    [2004/08/04 06:00:00 | 00,049,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\w32tm.exe
    [2004/08/04 06:00:00 | 00,049,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regapi(2).dll
    [2004/08/04 06:00:00 | 00,049,211 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrvpa.dll
    [2004/08/04 06:00:00 | 00,049,211 | ---- | M] ( U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrsdpia.dll
    [2004/08/04 06:00:00 | 00,049,209 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrv80a.dll
    [2004/08/04 06:00:00 | 00,049,196 | ---- | M] () -- C:\WINDOWS\System32\noise.fra
    [2004/08/04 06:00:00 | 00,049,179 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sqlwoa.dll
    [2004/08/04 06:00:00 | 00,049,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsmui.exe
    [2004/08/04 06:00:00 | 00,049,152 | ---- | M] (Microsoft Corp) -- C:\WINDOWS\System32\rsm.exe
    [2004/08/04 06:00:00 | 00,048,794 | ---- | M] () -- C:\WINDOWS\System32\ntimage.gif
    [2004/08/04 06:00:00 | 00,048,680 | -HS- | M] () -- C:\WINDOWS\winnt256.bmp
    [2004/08/04 06:00:00 | 00,048,680 | -HS- | M] () -- C:\WINDOWS\winnt.bmp
    [2004/08/04 06:00:00 | 00,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msprivs(2).dll
    [2004/08/04 06:00:00 | 00,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\inetres(2).dll
    [2004/08/04 06:00:00 | 00,047,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jobexec.dll
    [2004/08/04 06:00:00 | 00,047,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\user.exe
    [2004/08/04 06:00:00 | 00,047,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dxof.dll
    [2004/08/04 06:00:00 | 00,047,564 | RHS- | M] () -- C:\NTDETECT.COM
    [2004/08/04 06:00:00 | 00,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mprui.dll
    [2004/08/04 06:00:00 | 00,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cnbjmon(2).dll
    [2004/08/04 06:00:00 | 00,047,066 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ksc.nls
    [2004/08/04 06:00:00 | 00,046,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pmspl.dll
    [2004/08/04 06:00:00 | 00,046,258 | ---- | M] () -- C:\WINDOWS\System32\mib.bin
    [2004/08/04 06:00:00 | 00,046,133 | ---- | M] () -- C:\WINDOWS\System32\sqlsodbc.chm
    [2004/08/04 06:00:00 | 00,046,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\docprop.dll
    [2004/08/04 06:00:00 | 00,045,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tcpmon(2).dll
    [2004/08/04 06:00:00 | 00,045,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drwtsn32.exe
    [2004/08/04 06:00:00 | 00,045,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dnsrslvr(2).dll
    [2004/08/04 06:00:00 | 00,045,116 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrvoica.dll
    [2004/08/04 06:00:00 | 00,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tscupgrd.exe
    [2004/08/04 06:00:00 | 00,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\alg(2).exe
    [2004/08/04 06:00:00 | 00,044,544 | ---- | M] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hticons.dll
    [2004/08/04 06:00:00 | 00,044,451 | R--- | M] () -- C:\WINDOWS\System32\rsop.msc
    [2004/08/04 06:00:00 | 00,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rtutils(2).dll
    [2004/08/04 06:00:00 | 00,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml3r.dll
    [2004/08/04 06:00:00 | 00,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsec6.exe
    [2004/08/04 06:00:00 | 00,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dimap.dll
    [2004/08/04 06:00:00 | 00,043,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntlanman(2).dll
    [2004/08/04 06:00:00 | 00,042,809 | ---- | M] () -- C:\WINDOWS\System32\key01.sys
    [2004/08/04 06:00:00 | 00,042,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpwsock.dll
    [2004/08/04 06:00:00 | 00,042,537 | ---- | M] () -- C:\WINDOWS\System32\keyboard.sys
    [2004/08/04 06:00:00 | 00,042,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\audiosrv(2).dll
    [2004/08/04 06:00:00 | 00,042,339 | ---- | M] () -- C:\WINDOWS\System32\certmgr.msc
    [2004/08/04 06:00:00 | 00,042,166 | ---- | M] () -- C:\WINDOWS\System32\lusrmgr.msc
    [2004/08/04 06:00:00 | 00,041,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msports.dll
    [2004/08/04 06:00:00 | 00,041,762 | ---- | M] () -- C:\WINDOWS\System32\ciadv.msc
    [2004/08/04 06:00:00 | 00,041,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iasads.dll
    [2004/08/04 06:00:00 | 00,041,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\g711codc.ax
    [2004/08/04 06:00:00 | 00,041,397 | ---- | M] () -- C:\WINDOWS\System32\dfrg.msc
    [2004/08/04 06:00:00 | 00,041,019 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrsvpia.dll
    [2004/08/04 06:00:00 | 00,040,505 | ---- | M] () -- C:\WINDOWS\System32\cmdlib.wsc
    [2004/08/04 06:00:00 | 00,040,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\webhits.dll
    [2004/08/04 06:00:00 | 00,040,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\osuninst.exe
    [2004/08/04 06:00:00 | 00,040,448 | ---- | M] () -- C:\WINDOWS\System32\wiasf.ax
    [2004/08/04 06:00:00 | 00,039,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipxrtmgr.dll
    [2004/08/04 06:00:00 | 00,039,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ole2.dll
    [2004/08/04 06:00:00 | 00,039,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\esentutl.exe
    [2004/08/04 06:00:00 | 00,039,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ddeml.dll
    [2004/08/04 06:00:00 | 00,039,274 | ---- | M] () -- C:\WINDOWS\System32\mem.exe
    [2004/08/04 06:00:00 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sens(2).dll
    [2004/08/04 06:00:00 | 00,038,302 | ---- | M] () -- C:\WINDOWS\System32\compmgmt.msc
    [2004/08/04 06:00:00 | 00,037,916 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml2r.dll
    [2004/08/04 06:00:00 | 00,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\syskey.exe
    [2004/08/04 06:00:00 | 00,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nwc.cpl
    [2004/08/04 06:00:00 | 00,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntsdexts.dll
    [2004/08/04 06:00:00 | 00,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntmsevt.dll
    [2004/08/04 06:00:00 | 00,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqoa10.tlb
    [2004/08/04 06:00:00 | 00,036,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dosapp.fon
    [2004/08/04 06:00:00 | 00,036,364 | ---- | M] () -- C:\WINDOWS\System32\secpol.msc
    [2004/08/04 06:00:00 | 00,036,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\typeperf.exe
    [2004/08/04 06:00:00 | 00,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ncpa.cpl
    [2004/08/04 06:00:00 | 00,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\narrhook.dll
    [2004/08/04 06:00:00 | 00,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mssign32.dll
    [2004/08/04 06:00:00 | 00,035,755 | ---- | M] () -- C:\WINDOWS\System32\prncnfg.vbs
    [2004/08/04 06:00:00 | 00,035,648 | ---- | M] () -- C:\WINDOWS\System32\ntio411.sys
    [2004/08/04 06:00:00 | 00,035,424 | ---- | M] () -- C:\WINDOWS\System32\ntio412.sys
    [2004/08/04 06:00:00 | 00,035,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winchat.exe
    [2004/08/04 06:00:00 | 00,035,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pifmgr.dll
    [2004/08/04 06:00:00 | 00,034,871 | ---- | M] () -- C:\WINDOWS\System32\gpedit.msc
    [2004/08/04 06:00:00 | 00,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ssdpapi(2).dll
    [2004/08/04 06:00:00 | 00,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dpmesh.dll
    [2004/08/04 06:00:00 | 00,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\atmpvcno.dll
    [2004/08/04 06:00:00 | 00,034,560 | ---- | M] () -- C:\WINDOWS\System32\ntio804.sys
    [2004/08/04 06:00:00 | 00,034,560 | ---- | M] () -- C:\WINDOWS\System32\ntio404.sys
    [2004/08/04 06:00:00 | 00,034,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rawwan.sys
    [2004/08/04 06:00:00 | 00,034,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pstorsvc(2).dll
    [2004/08/04 06:00:00 | 00,033,840 | ---- | M] () -- C:\WINDOWS\System32\ntio.sys
    [2004/08/04 06:00:00 | 00,033,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vssadmin.exe
    [2004/08/04 06:00:00 | 00,033,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe
    [2004/08/04 06:00:00 | 00,033,673 | ---- | M] () -- C:\WINDOWS\System32\diskmgmt.msc
    [2004/08/04 06:00:00 | 00,033,464 | ---- | M] () -- C:\WINDOWS\System32\services.msc
    [2004/08/04 06:00:00 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ping6.exe
    [2004/08/04 06:00:00 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msobjs.dll
    [2004/08/04 06:00:00 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kmddsp(2).tsp
    [2004/08/04 06:00:00 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\eventcls.dll
    [2004/08/04 06:00:00 | 00,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cryptdll(2).dll
    [2004/08/04 06:00:00 | 00,033,079 | ---- | M] () -- C:\WINDOWS\System32\devmgmt.msc
    [2004/08/04 06:00:00 | 00,033,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dplay.dll
    [2004/08/04 06:00:00 | 00,032,968 | ---- | M] () -- C:\WINDOWS\System32\ntmsoprq.msc
    [2004/08/04 06:00:00 | 00,032,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys
    [2004/08/04 06:00:00 | 00,032,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\commdlg.dll
    [2004/08/04 06:00:00 | 00,032,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\COMMDLG.DLL
    [2004/08/04 06:00:00 | 00,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winipsec(2).dll
    [2004/08/04 06:00:00 | 00,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\relog.exe
    [2004/08/04 06:00:00 | 00,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cnetcfg.dll
    [2004/08/04 06:00:00 | 00,032,760 | ---- | M] () -- C:\WINDOWS\System32\fsmgmt.msc
    [2004/08/04 06:00:00 | 00,032,674 | ---- | M] () -- C:\WINDOWS\System32\winhelp.hlp
    [2004/08/04 06:00:00 | 00,032,546 | ---- | M] () -- C:\WINDOWS\System32\prnmngr.vbs
    [2004/08/04 06:00:00 | 00,032,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\nwlnkfwd.sys
    [2004/08/04 06:00:00 | 00,032,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wupdmgr.exe
    [2004/08/04 06:00:00 | 00,032,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iashlpr.dll
    [2004/08/04 06:00:00 | 00,032,256 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\System32\asr_ldm.exe
    [2004/08/04 06:00:00 | 00,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tracert6.exe
    [2004/08/04 06:00:00 | 00,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntsd.exe
    [2004/08/04 06:00:00 | 00,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fxsroute.dll
    [2004/08/04 06:00:00 | 00,031,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\atmepvc.sys
    [2004/08/04 06:00:00 | 00,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\traffic.dll
    [2004/08/04 06:00:00 | 00,030,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\plustab.dll
    [2004/08/04 06:00:00 | 00,030,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iologmsg.dll
    [2004/08/04 06:00:00 | 00,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mspatcha(2).dll
    [2004/08/04 06:00:00 | 00,030,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\compobj.dll
    [2004/08/04 06:00:00 | 00,029,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lights.exe
    [2004/08/04 06:00:00 | 00,029,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\hidphone(2).tsp
    [2004/08/04 06:00:00 | 00,029,454 | ---- | M] () -- C:\WINDOWS\System32\prnport.vbs
    [2004/08/04 06:00:00 | 00,029,370 | ---- | M] () -- C:\WINDOWS\System32\ntdos411.sys
    [2004/08/04 06:00:00 | 00,029,274 | ---- | M] () -- C:\WINDOWS\System32\ntdos412.sys
    [2004/08/04 06:00:00 | 00,029,146 | ---- | M] () -- C:\WINDOWS\System32\ntdos804.sys
    [2004/08/04 06:00:00 | 00,029,146 | ---- | M] () -- C:\WINDOWS\System32\ntdos404.sys
    [2004/08/04 06:00:00 | 00,028,746 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msrecr40.dll
    [2004/08/04 06:00:00 | 00,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsfsaps.dll
    [2004/08/04 06:00:00 | 00,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\batmeter(2).dll
    [2004/08/04 06:00:00 | 00,028,626 | ---- | M] () -- C:\WINDOWS\System32\perfd009.dat
    [2004/08/04 06:00:00 | 00,028,420 | ---- | M] () -- C:\WINDOWS\System32\bios1.rom
    [2004/08/04 06:00:00 | 00,028,288 | ---- | M] () -- C:\WINDOWS\System32\dllcache\xjis.nls
    [2004/08/04 06:00:00 | 00,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\telephon.cpl
    [2004/08/04 06:00:00 | 00,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mciwave.drv
    [2004/08/04 06:00:00 | 00,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\MCIWAVE.DRV
    [2004/08/04 06:00:00 | 00,028,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drwatson.exe
    [2004/08/04 06:00:00 | 00,027,866 | ---- | M] () -- C:\WINDOWS\System32\ntdos.sys
    [2004/08/04 06:00:00 | 00,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\profmap(2).dll
    [2004/08/04 06:00:00 | 00,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ccfgnt.dll
    [2004/08/04 06:00:00 | 00,027,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ctl3dv2.dll
    [2004/08/04 06:00:00 | 00,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ddrawex(2).dll
    [2004/08/04 06:00:00 | 00,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ctl3d32.dll
    [2004/08/04 06:00:00 | 00,027,097 | ---- | M] () -- C:\WINDOWS\System32\country.sys
    [2004/08/04 06:00:00 | 00,026,680 | ---- | M] () -- C:\WINDOWS\River Sumida.bmp
    [2004/08/04 06:00:00 | 00,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\scredir.dll
    [2004/08/04 06:00:00 | 00,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msxmlr.dll
    [2004/08/04 06:00:00 | 00,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cnvfat.dll
    [2004/08/04 06:00:00 | 00,026,582 | ---- | M] () -- C:\WINDOWS\Greenstone.bmp
    [2004/08/04 06:00:00 | 00,026,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\odbc16gt.dll
    [2004/08/04 06:00:00 | 00,026,209 | ---- | M] () -- C:\WINDOWS\System32\ntmsmgr.msc
    [2004/08/04 06:00:00 | 00,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntdsbcli.dll
    [2004/08/04 06:00:00 | 00,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\graftabl.com
    [2004/08/04 06:00:00 | 00,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\adptif.dll
    [2004/08/04 06:00:00 | 00,025,600 | ---- | M] (Twain Working Group) -- C:\WINDOWS\twunk_32.exe
    [2004/08/04 06:00:00 | 00,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\utildll.dll
    [2004/08/04 06:00:00 | 00,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\routemon.exe
    [2004/08/04 06:00:00 | 00,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\aaaamon.dll
    [2004/08/04 06:00:00 | 00,025,415 | ---- | M] () -- C:\WINDOWS\System32\prndrvr.vbs
    [2004/08/04 06:00:00 | 00,025,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mciseq.drv
    [2004/08/04 06:00:00 | 00,025,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\MCISEQ.DRV
    [2004/08/04 06:00:00 | 00,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shfolder(2).dll
    [2004/08/04 06:00:00 | 00,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mslbui(2).dll
    [2004/08/04 06:00:00 | 00,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lnkstub.exe
    [2004/08/04 06:00:00 | 00,024,772 | ---- | M] () -- C:\WINDOWS\System32\geo.nls
    [2004/08/04 06:00:00 | 00,024,772 | ---- | M] () -- C:\WINDOWS\System32\dllcache\geo.nls
    [2004/08/04 06:00:00 | 00,024,661 | ---- | M] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
    [2004/08/04 06:00:00 | 00,024,603 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sqlwid.dll

    shoyou

      Topic Starter


      Beginner

      Re: computer keep logging off
      « Reply #31 on: May 09, 2010, 01:00:20 PM »
      - | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsmsink.exe
      [2004/08/04 06:00:00 | 00,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\httpapi(2).dll
      [2004/08/04 06:00:00 | 00,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\gdi.exe
      [2004/08/04 06:00:00 | 00,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\davclnt(2).dll
      [2004/08/04 06:00:00 | 00,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\olesvr.dll
      [2004/08/04 06:00:00 | 00,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\OLESVR.DLL
      [2004/08/04 06:00:00 | 00,024,006 | ---- | M] () -- C:\WINDOWS\System32\gb2312.uce
      [2004/08/04 06:00:00 | 00,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sfmapi.dll
      [2004/08/04 06:00:00 | 00,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsvpmsg.dll
      [2004/08/04 06:00:00 | 00,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasrad.dll
      [2004/08/04 06:00:00 | 00,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iasacct.dll
      [2004/08/04 06:00:00 | 00,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fxsmon(2).dll
      [2004/08/04 06:00:00 | 00,023,552 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\System32\dmserver(2).dll
      [2004/08/04 06:00:00 | 00,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\psapi(2).dll
      [2004/08/04 06:00:00 | 00,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ersvc(2).dll
      [2004/08/04 06:00:00 | 00,022,984 | ---- | M] () -- C:\WINDOWS\System32\bopomofo.uce
      [2004/08/04 06:00:00 | 00,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wsock32(2).dll
      [2004/08/04 06:00:00 | 00,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasmxs.dll
      [2004/08/04 06:00:00 | 00,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfcsubs(2).dll
      [2004/08/04 06:00:00 | 00,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\w32topl.dll
      [2004/08/04 06:00:00 | 00,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rpcns4.dll
      [2004/08/04 06:00:00 | 00,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe
      [2004/08/04 06:00:00 | 00,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\olesvr32.dll
      [2004/08/04 06:00:00 | 00,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mpnotify.exe
      [2004/08/04 06:00:00 | 00,021,527 | ---- | M] () -- C:\WINDOWS\System32\prnjobs.vbs
      [2004/08/04 06:00:00 | 00,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pathping.exe
      [2004/08/04 06:00:00 | 00,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipxrip.dll
      [2004/08/04 06:00:00 | 00,021,376 | ---- | M] (Toshiba Corporation) -- C:\WINDOWS\System32\drivers\tsbvcap.sys
      [2004/08/04 06:00:00 | 00,021,232 | ---- | M] () -- C:\WINDOWS\System32\graphics.pro
      [2004/08/04 06:00:00 | 00,020,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe
      [2004/08/04 06:00:00 | 00,020,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\hid(2).dll
      [2004/08/04 06:00:00 | 00,020,634 | ---- | M] () -- C:\WINDOWS\System32\debug.exe
      [2004/08/04 06:00:00 | 00,020,535 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vfpodbc.dll
      [2004/08/04 06:00:00 | 00,020,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nwcfg.dll
      [2004/08/04 06:00:00 | 00,020,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nbtstat.exe
      [2004/08/04 06:00:00 | 00,020,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msacm32.drv
      [2004/08/04 06:00:00 | 00,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wshtcpip(2).dll
      [2004/08/04 06:00:00 | 00,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ws2help(2).dll
      [2004/08/04 06:00:00 | 00,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\route.exe
      [2004/08/04 06:00:00 | 00,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msgsm32.acm
      [2004/08/04 06:00:00 | 00,019,694 | ---- | M] () -- C:\WINDOWS\System32\graphics.com
      [2004/08/04 06:00:00 | 00,019,684 | ---- | M] () -- C:\WINDOWS\System32\noise.esn
      [2004/08/04 06:00:00 | 00,019,618 | ---- | M] () -- C:\WINDOWS\System32\noise.ita
      [2004/08/04 06:00:00 | 00,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vwipxspx.dll
      [2004/08/04 06:00:00 | 00,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tcpsvcs.exe
      [2004/08/04 06:00:00 | 00,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mode.com
      [2004/08/04 06:00:00 | 00,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dmocx.dll
      [2004/08/04 06:00:00 | 00,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\arp.exe
      [2004/08/04 06:00:00 | 00,019,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tapi.dll
      [2004/08/04 06:00:00 | 00,019,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\TAPI.DLL
      [2004/08/04 06:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wmiprop.dll
      [2004/08/04 06:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winstrm.dll
      [2004/08/04 06:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\vmmreg32.dll
      [2004/08/04 06:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\version(2).dll
      [2004/08/04 06:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\seclogon(2).dll
      [2004/08/04 06:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\midimap(2).dll
      [2004/08/04 06:00:00 | 00,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\linkinfo(2).dll
      [2004/08/04 06:00:00 | 00,018,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sysedit.exe
      [2004/08/04 06:00:00 | 00,018,832 | ---- | M] () -- C:\WINDOWS\System32\v7vga.rom
      [2004/08/04 06:00:00 | 00,018,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\cdaudio.sys
      [2004/08/04 06:00:00 | 00,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wtsapi32(2).dll
      [2004/08/04 06:00:00 | 00,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\win.com
      [2004/08/04 06:00:00 | 00,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\deskperf.dll
      [2004/08/04 06:00:00 | 00,018,432 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\System32\dmintf.dll
      [2004/08/04 06:00:00 | 00,018,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vga64k.dll
      [2004/08/04 06:00:00 | 00,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ureg.dll
      [2004/08/04 06:00:00 | 00,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nddeapi(2).dll
      [2004/08/04 06:00:00 | 00,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iaspolcy.dll
      [2004/08/04 06:00:00 | 00,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\diskperf.exe
      [2004/08/04 06:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\drivers\ptilink.sys
      [2004/08/04 06:00:00 | 00,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\powrprof(2).dll
      [2004/08/04 06:00:00 | 00,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nwapi16.dll
      [2004/08/04 06:00:00 | 00,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mcicda.dll
      [2004/08/04 06:00:00 | 00,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipconf(2).tsp
      [2004/08/04 06:00:00 | 00,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\esentprf.dll
      [2004/08/04 06:00:00 | 00,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\compact.exe
      [2004/08/04 06:00:00 | 00,017,362 | ---- | M] () -- C:\WINDOWS\Rhododendron.bmp
      [2004/08/04 06:00:00 | 00,017,336 | ---- | M] () -- C:\WINDOWS\Gone Fishing.bmp
      [2004/08/04 06:00:00 | 00,017,062 | ---- | M] () -- C:\WINDOWS\Coffee Bean.bmp
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winrnr(2).dll
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vss_ps.dll
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\usbmon(2).dll
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tftp.exe
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\oleaccrc.dll
      [2004/08/04 06:00:00 | 00,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\deskmon.dll
      [2004/08/04 06:00:00 | 00,016,740 | ---- | M] () -- C:\WINDOWS\System32\shiftjis.uce
      [2004/08/04 06:00:00 | 00,016,730 | ---- | M] () -- C:\WINDOWS\FeatherTexture.bmp
      [2004/08/04 06:00:00 | 00,016,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\raspti.sys
      [2004/08/04 06:00:00 | 00,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe
      [2004/08/04 06:00:00 | 00,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\runas.exe
      [2004/08/04 06:00:00 | 00,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\prflbmsg.dll
      [2004/08/04 06:00:00 | 00,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\icfgnt5.dll
      [2004/08/04 06:00:00 | 00,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fmifs.dll
      [2004/08/04 06:00:00 | 00,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\deskadp.dll
      [2004/08/04 06:00:00 | 00,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\avmeter.dll
      [2004/08/04 06:00:00 | 00,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\w3ssl(2).dll
      [2004/08/04 06:00:00 | 00,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sysinv.dll
      [2004/08/04 06:00:00 | 00,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe
      [2004/08/04 06:00:00 | 00,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\expand.exe
      [2004/08/04 06:00:00 | 00,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\comp.exe
      [2004/08/04 06:00:00 | 00,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cdmodem.dll
      [2004/08/04 06:00:00 | 00,015,860 | ---- | M] () -- C:\WINDOWS\System32\prnqctl.vbs
      [2004/08/04 06:00:00 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE
      [2004/08/04 06:00:00 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\taskman.exe
      [2004/08/04 06:00:00 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pjlmon(2).dll
      [2004/08/04 06:00:00 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pentnt.exe
      [2004/08/04 06:00:00 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe
      [2004/08/04 06:00:00 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ctfmon(2).exe
      [2004/08/04 06:00:00 | 00,015,360 | ---- | M] () -- C:\WINDOWS\System32\tsd32.dll
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Schlumberger Technology Corporation) -- C:\WINDOWS\System32\slbrccsp.dll
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\serwvdrv.dll
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msidntld.dll
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\hnetmon.dll
      [2004/08/04 06:00:00 | 00,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fc.exe
      [2004/08/04 06:00:00 | 00,014,710 | ---- | M] () -- C:\WINDOWS\System32\kb16.com
      [2004/08/04 06:00:00 | 00,014,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\smclib.sys
      [2004/08/04 06:00:00 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\svchost(2).exe
      [2004/08/04 06:00:00 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\serialui.dll
      [2004/08/04 06:00:00 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntlanui2.dll
      [2004/08/04 06:00:00 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drprov(2).dll
      [2004/08/04 06:00:00 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cmpbk32.dll
      [2004/08/04 06:00:00 | 00,014,336 | ---- | M] () -- C:\WINDOWS\System32\msdmo(2).dll
      [2004/08/04 06:00:00 | 00,013,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\toolhelp.dll
      [2004/08/04 06:00:00 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wowfaxui.dll
      [2004/08/04 06:00:00 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sisbkup.dll
      [2004/08/04 06:00:00 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\senscfg.dll
      [2004/08/04 06:00:00 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\convert.exe
      [2004/08/04 06:00:00 | 00,013,730 | ---- | M] () -- C:\WINDOWS\System32\noise.sve
      [2004/08/04 06:00:00 | 00,013,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wfwnet.drv
      [2004/08/04 06:00:00 | 00,013,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\WFWNET.DRV
      [2004/08/04 06:00:00 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\umdmxfrm.dll
      [2004/08/04 06:00:00 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msswch.dll
      [2004/08/04 06:00:00 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lsass(2).exe
      [2004/08/04 06:00:00 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
      [2004/08/04 06:00:00 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\atkctrs.dll
      [2004/08/04 06:00:00 | 00,013,312 | ---- | M] () -- C:\WINDOWS\System32\win87em.dll
      [2004/08/04 06:00:00 | 00,013,256 | ---- | M] () -- C:\WINDOWS\System32\noise.nld
      [2004/08/04 06:00:00 | 00,013,223 | ---- | M] () -- C:\WINDOWS\System32\tslabels.ini
      [2004/08/04 06:00:00 | 00,012,876 | ---- | M] () -- C:\WINDOWS\System32\korean.uce
      [2004/08/04 06:00:00 | 00,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\replace.exe
      [2004/08/04 06:00:00 | 00,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasser.dll
      [2004/08/04 06:00:00 | 00,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mrinfo.exe
      [2004/08/04 06:00:00 | 00,012,642 | ---- | M] () -- C:\WINDOWS\System32\edlin.exe
      [2004/08/04 06:00:00 | 00,012,498 | ---- | M] () -- C:\WINDOWS\System32\append.exe
      [2004/08/04 06:00:00 | 00,012,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\nwlnkflt.sys
      [2004/08/04 06:00:00 | 00,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tcmsetup.exe
      [2004/08/04 06:00:00 | 00,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\perfts.dll
      [2004/08/04 06:00:00 | 00,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nmevtmsg.dll
      [2004/08/04 06:00:00 | 00,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\netrap(2).dll
      [2004/08/04 06:00:00 | 00,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mmdrv.dll
      [2004/08/04 06:00:00 | 00,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bootvid.dll
      [2004/08/04 06:00:00 | 00,012,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\fsvga.sys
      [2004/08/04 06:00:00 | 00,012,082 | ---- | M] () -- C:\WINDOWS\System32\rsvp.ini
      [2004/08/04 06:00:00 | 00,012,032 | ---- | M] (S3/Diamond Multimedia Systems) -- C:\WINDOWS\System32\drivers\riodrv.sys
      [2004/08/04 06:00:00 | 00,012,032 | ---- | M] (S3/Diamond Multimedia Systems) -- C:\WINDOWS\System32\drivers\rio8drv.sys
      [2004/08/04 06:00:00 | 00,012,032 | ---- | M] (S3/Diamond Multimedia Systems) -- C:\WINDOWS\System32\drivers\nikedrv.sys
      [2004/08/04 06:00:00 | 00,012,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys
      [2004/08/04 06:00:00 | 00,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wshisn.dll
      [2004/08/04 06:00:00 | 00,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winmsd.exe
      [2004/08/04 06:00:00 | 00,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasctrs.dll
      [2004/08/04 06:00:00 | 00,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasautou.exe
      [2004/08/04 06:00:00 | 00,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\chkdsk.exe
      [2004/08/04 06:00:00 | 00,011,776 | ---- | M] (Compaq Computer Corporation) -- C:\WINDOWS\System32\drivers\cpqdap01.sys
      [2004/08/04 06:00:00 | 00,011,753 | ---- | M] () -- C:\WINDOWS\System32\setver.exe
      [2004/08/04 06:00:00 | 00,011,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\acpiec.sys
      [2004/08/04 06:00:00 | 00,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasdial.exe
      [2004/08/04 06:00:00 | 00,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\icaapi(2).dll
      [2004/08/04 06:00:00 | 00,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fxssend.exe
      [2004/08/04 06:00:00 | 00,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\chkntfs.exe
      [2004/08/04 06:00:00 | 00,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\atrace.dll
      [2004/08/04 06:00:00 | 00,010,790 | ---- | M] () -- C:\WINDOWS\System32\edit.hlp
      [2004/08/04 06:00:00 | 00,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pschdprf.dll
      [2004/08/04 06:00:00 | 00,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqcertui.dll
      [2004/08/04 06:00:00 | 00,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\doskey.exe
      [2004/08/04 06:00:00 | 00,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\clb.dll
      [2004/08/04 06:00:00 | 00,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
      [2004/08/04 06:00:00 | 00,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\c_iscii.dll
      [2004/08/04 06:00:00 | 00,010,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\comm.drv
      [2004/08/04 06:00:00 | 00,010,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mcdsrv32.dll
      [2004/08/04 06:00:00 | 00,010,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dxapi.sys
      [2004/08/04 06:00:00 | 00,010,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wowexec.exe
      [2004/08/04 06:00:00 | 00,010,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\panmap.dll
      [2004/08/04 06:00:00 | 00,010,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mcd32.dll
      [2004/08/04 06:00:00 | 00,010,240 | ---- | M] () -- C:\WINDOWS\System32\scriptpw.dll
      [2004/08/04 06:00:00 | 00,010,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\modex.dll
      [2004/08/04 06:00:00 | 00,010,110 | ---- | M] () -- C:\WINDOWS\System32\mqperf.ini
      [2004/08/04 06:00:00 | 00,009,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lzexpand.dll
      [2004/08/04 06:00:00 | 00,009,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\LZEXPAND.DLL
      [2004/08/04 06:00:00 | 00,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sprestrt.exe
      [2004/08/04 06:00:00 | 00,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sfc.exe
      [2004/08/04 06:00:00 | 00,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsvpperf.dll
      [2004/08/04 06:00:00 | 00,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe
      [2004/08/04 06:00:00 | 00,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\label.exe
      [2004/08/04 06:00:00 | 00,009,522 | ---- | M] () -- C:\WINDOWS\Zapotec.bmp
      [2004/08/04 06:00:00 | 00,009,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vga.dll
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wshatm.dll
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winfax.dll
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wifeman.dll
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\subst.exe
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\print.exe
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msg711.acm
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lprmonui.dll
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iissuba.dll
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\finger.exe
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\find.exe
      [2004/08/04 06:00:00 | 00,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\diskcomp.com
      [2004/08/04 06:00:00 | 00,009,029 | ---- | M] () -- C:\WINDOWS\System32\ansi.sys
      [2004/08/04 06:00:00 | 00,009,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ver.dll
      [2004/08/04 06:00:00 | 00,009,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\VER.DLL
      [2004/08/04 06:00:00 | 00,008,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\rasacd.sys
      [2004/08/04 06:00:00 | 00,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\eventvwr.exe
      [2004/08/04 06:00:00 | 00,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dciman32(2).dll
      [2004/08/04 06:00:00 | 00,008,484 | ---- | M] () -- C:\WINDOWS\System32\kanji_2.uce
      [2004/08/04 06:00:00 | 00,008,424 | ---- | M] () -- C:\WINDOWS\System32\exe2bin.exe
      [2004/08/04 06:00:00 | 00,008,386 | ---- | M] () -- C:\WINDOWS\System32\dllcache\ctype.nls
      [2004/08/04 06:00:00 | 00,008,386 | ---- | M] () -- C:\WINDOWS\System32\ctype.nls
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winhlp32.exe
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasadhlp(2).dll
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\qosname.dll
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\psnppagn.dll
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqperf.dll
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mountvol.exe
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mciole16.dll
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mag_hook.dll
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lpr.exe
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhept.dll
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\control.exe
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cidaemon.exe
      [2004/08/04 06:00:00 | 00,008,192 | ---- | M] (DSP GROUP, INC.) -- C:\WINDOWS\System32\tssoft32.acm
      [2004/08/04 06:00:00 | 00,008,191 | ---- | M] () -- C:\WINDOWS\System32\bios4.rom
      [2004/08/04 06:00:00 | 00,007,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\fs_rec.sys
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vcdex.dll
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ncxpnt.dll
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mll_mtf.dll
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mciole32.dll
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mcd.sys
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcan.dll
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\hostname.exe
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ckcnv.exe
      [2004/08/04 06:00:00 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\chcp.com
      [2004/08/04 06:00:00 | 00,007,208 | ---- | M] () -- C:\WINDOWS\System32\secupd.sig
      [2004/08/04 06:00:00 | 00,007,208 | ---- | M] () -- C:\WINDOWS\System32\dllcache\secupd.sig
      [2004/08/04 06:00:00 | 00,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wshnetbs.dll
      [2004/08/04 06:00:00 | 00,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\stdole32.tlb
      [2004/08/04 06:00:00 | 00,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\recover.exe
      [2004/08/04 06:00:00 | 00,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msr2cenu.dll
      [2004/08/04 06:00:00 | 00,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mscat32.dll
      [2004/08/04 06:00:00 | 00,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz.dll
      [2004/08/04 06:00:00 | 00,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\diskcopy.com
      [2004/08/04 06:00:00 | 00,007,116 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\services
      [2004/08/04 06:00:00 | 00,007,052 | ---- | M] () -- C:\WINDOWS\System32\nlsfunc.exe
      [2004/08/04 06:00:00 | 00,007,046 | ---- | M] () -- C:\WINDOWS\System32\l_intl.nls
      [2004/08/04 06:00:00 | 00,007,046 | ---- | M] () -- C:\WINDOWS\System32\dllcache\l_intl.nls
      [2004/08/04 06:00:00 | 00,007,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kdcom.dll
      [2004/08/04 06:00:00 | 00,006,948 | ---- | M] () -- C:\WINDOWS\System32\kanji_1.uce
      [2004/08/04 06:00:00 | 00,006,877 | ---- | M] () -- C:\WINDOWS\System32\pschdprf.ini
      [2004/08/04 06:00:00 | 00,006,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\parvdm.sys
      [2004/08/04 06:00:00 | 00,006,708 | ---- | M] () -- C:\WINDOWS\System32\esentprf.hxx
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wuauserv(2).dll
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sensapi(2).dll
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\routetab.dll
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msswchx.exe
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msidle(2).dll
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycl.dll
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl1.dll
      [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl.dll

      shoyou

        Topic Starter


        Beginner

        Re: computer keep logging off
        « Reply #32 on: May 09, 2010, 01:00:40 PM »
        - | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsg.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdla.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela3.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz2.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz1.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcr.dll
        [2004/08/04 06:00:00 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\KBDAL.DLL
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\svcpack.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nwevent.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lpq.exe
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdusx.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdusr.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdusl.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuq.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuf.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdth3.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdth2.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsw.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsp.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsf.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpo.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdno.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdne.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmac.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv1.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinpun.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdic.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela2.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgr1.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgr.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgkl.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdfr.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdfo.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdfi.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdfc.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdest.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdes.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdda.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdca.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbr.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbene.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbe.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ftlx041e.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
        [2004/08/04 06:00:00 | 00,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\csrss(2).exe
        [2004/08/04 06:00:00 | 00,005,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rootmdm.sys
        [2004/08/04 06:00:00 | 00,005,888 | ---- | M] (Microsoft Corp., Veritas Software.) -- C:\WINDOWS\System32\drivers\dmload.sys
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\write.exe
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wmi(2).dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tapiperf.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\softpub.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\skdll.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\security(2).dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\perfnw.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mll_qic.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycc.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdvntc.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbduzb.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdusa.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdus.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdurdu.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdur.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbduk.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdth1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdth0.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtat.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsyr2.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsyr1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdro.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmon.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkyr.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkaz.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdit142.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdit.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdir.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdintel.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdintam.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinmar.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinkan.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinhin.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinguj.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdindev.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdheb.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe319.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe220.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgae.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdfa.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbddiv2.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbddiv1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbu.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdblr.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdazel.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdaze.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbda3.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbda2.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbda1.dll
        [2004/08/04 06:00:00 | 00,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll
        [2004/08/04 06:00:00 | 00,005,532 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\stdole.tlb
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winnls.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shell.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\SHELL.DLL
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sfc(2).dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lodctr.exe
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgeo.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbddv.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdarmw.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdarme.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll
        [2004/08/04 06:00:00 | 00,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bootvrfy.exe
        [2004/08/04 06:00:00 | 00,004,768 | ---- | M] () -- C:\WINDOWS\System32\himem.sys
        [2004/08/04 06:00:00 | 00,004,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbd.sys
        [2004/08/04 06:00:00 | 00,004,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ds16gt.dLL
        [2004/08/04 06:00:00 | 00,004,608 | ---- | M] (Microsoft) -- C:\WINDOWS\System32\regwiz.exe
        [2004/08/04 06:00:00 | 00,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vjoy.dll
        [2004/08/04 06:00:00 | 00,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mssip32.dll
        [2004/08/04 06:00:00 | 00,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msimg32(2).dll
        [2004/08/04 06:00:00 | 00,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mchgrcoi.dll
        [2004/08/04 06:00:00 | 00,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllhst3g.exe
        [2004/08/04 06:00:00 | 00,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bootok.exe
        [2004/08/04 06:00:00 | 00,004,569 | ---- | M] () -- C:\WINDOWS\System32\secupd.dat
        [2004/08/04 06:00:00 | 00,004,569 | ---- | M] () -- C:\WINDOWS\System32\dllcache\secupd.dat
        [2004/08/04 06:00:00 | 00,004,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\wmilib.sys
        [2004/08/04 06:00:00 | 00,004,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rdpcdd.sys
        [2004/08/04 06:00:00 | 00,004,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mnmdd.sys
        [2004/08/04 06:00:00 | 00,004,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\beep.sys
        [2004/08/04 06:00:00 | 00,004,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\storage.dll
        [2004/08/04 06:00:00 | 00,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\unlodctr.exe
        [2004/08/04 06:00:00 | 00,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpcfgex.dll
        [2004/08/04 06:00:00 | 00,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iprtprio.dll
        [2004/08/04 06:00:00 | 00,004,096 | ---- | M] () -- C:\WINDOWS\System32\wdl.trm
        [2004/08/04 06:00:00 | 00,004,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\timer.drv
        [2004/08/04 06:00:00 | 00,004,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\TIMER.DRV
        [2004/08/04 06:00:00 | 00,003,708 | ---- | M] () -- C:\WINDOWS\System32\pubprn.vbs
        [2004/08/04 06:00:00 | 00,003,683 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\lmhosts.sam
        [2004/08/04 06:00:00 | 00,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\riched32.dll
        [2004/08/04 06:00:00 | 00,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regedt32.exe
        [2004/08/04 06:00:00 | 00,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mll_hp.dll
        [2004/08/04 06:00:00 | 00,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iprop.dll
        [2004/08/04 06:00:00 | 00,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\comcat.dll
        [2004/08/04 06:00:00 | 00,003,577 | ---- | M] () -- C:\WINDOWS\System32\sysprtj.sep
        [2004/08/04 06:00:00 | 00,003,458 | ---- | M] () -- C:\WINDOWS\System32\rasctrs.ini
        [2004/08/04 06:00:00 | 00,003,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\oprghdlr.sys
        [2004/08/04 06:00:00 | 00,003,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\system.drv
        [2004/08/04 06:00:00 | 00,003,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\SYSTEM.DRV
        [2004/08/04 06:00:00 | 00,003,338 | ---- | M] () -- C:\WINDOWS\System32\redir.exe
        [2004/08/04 06:00:00 | 00,003,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dxgthk.sys
        [2004/08/04 06:00:00 | 00,003,286 | ---- | M] () -- C:\WINDOWS\System32\tslabels.h
        [2004/08/04 06:00:00 | 00,003,252 | ---- | M] () -- C:\WINDOWS\System32\nw16.exe
        [2004/08/04 06:00:00 | 00,003,214 | ---- | M] () -- C:\WINDOWS\System32\sysprint.sep
        [2004/08/04 06:00:00 | 00,003,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wowfax.dll
        [2004/08/04 06:00:00 | 00,003,178 | ---- | M] () -- C:\WINDOWS\System32\rsvpcnts.h
        [2004/08/04 06:00:00 | 00,003,167 | ---- | M] () -- C:\WINDOWS\System32\rsaci.rat
        [2004/08/04 06:00:00 | 00,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\systray.exe
        [2004/08/04 06:00:00 | 00,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rnr20.dll
        [2004/08/04 06:00:00 | 00,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fixmapi.exe
        [2004/08/04 06:00:00 | 00,003,010 | ---- | M] () -- C:\WINDOWS\System32\pschdcnt.h
        [2004/08/04 06:00:00 | 00,002,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\null.sys
        [2004/08/04 06:00:00 | 00,002,891 | ---- | M] () -- C:\WINDOWS\System32\perfci.ini
        [2004/08/04 06:00:00 | 00,002,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winsock.dll
        [2004/08/04 06:00:00 | 00,002,755 | ---- | M] () -- C:\WINDOWS\System32\mqprfsym.h
        [2004/08/04 06:00:00 | 00,002,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wowdeb.exe
        [2004/08/04 06:00:00 | 00,002,732 | ---- | M] () -- C:\WINDOWS\System32\perfwci.ini
        [2004/08/04 06:00:00 | 00,002,656 | ---- | M] () -- C:\WINDOWS\System32\netware.drv
        [2004/08/04 06:00:00 | 00,002,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lz32.dll
        [2004/08/04 06:00:00 | 00,002,233 | ---- | M] () -- C:\WINDOWS\System32\dllcache\12520850.cpx
        [2004/08/04 06:00:00 | 00,002,233 | ---- | M] () -- C:\WINDOWS\System32\12520850.cpx
        [2004/08/04 06:00:00 | 00,002,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vga.drv
        [2004/08/04 06:00:00 | 00,002,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\VGA.DRV
        [2004/08/04 06:00:00 | 00,002,151 | ---- | M] () -- C:\WINDOWS\System32\dllcache\12520437.cpx
        [2004/08/04 06:00:00 | 00,002,151 | ---- | M] () -- C:\WINDOWS\System32\12520437.cpx
        [2004/08/04 06:00:00 | 00,002,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winspool.exe
        [2004/08/04 06:00:00 | 00,002,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winoldap.mod
        [2004/08/04 06:00:00 | 00,002,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mouse.drv
        [2004/08/04 06:00:00 | 00,002,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\MOUSE.DRV
        [2004/08/04 06:00:00 | 00,002,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\keyboard.drv
        [2004/08/04 06:00:00 | 00,002,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\KEYBOARD.DRV
        [2004/08/04 06:00:00 | 00,001,931 | ---- | M] () -- C:\WINDOWS\System32\msdtcprf.ini
        [2004/08/04 06:00:00 | 00,001,818 | ---- | M] () -- C:\WINDOWS\System32\rasctrnm.h
        [2004/08/04 06:00:00 | 00,001,793 | ---- | M] () -- C:\WINDOWS\System32\fxsperf.ini
        [2004/08/04 06:00:00 | 00,001,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sound.drv
        [2004/08/04 06:00:00 | 00,001,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\SOUND.DRV
        [2004/08/04 06:00:00 | 00,001,696 | ---- | M] () -- C:\WINDOWS\System32\noise.cht
        [2004/08/04 06:00:00 | 00,001,696 | ---- | M] () -- C:\WINDOWS\System32\noise.chs
        [2004/08/04 06:00:00 | 00,001,688 | ---- | M] () -- C:\WINDOWS\System32\AUTOEXEC.NT
        [2004/08/04 06:00:00 | 00,001,492 | ---- | M] () -- C:\WINDOWS\System32\mmdriver.inf
        [2004/08/04 06:00:00 | 00,001,405 | ---- | M] () -- C:\WINDOWS\msdfmap.ini
        [2004/08/04 06:00:00 | 00,001,361 | ---- | M] () -- C:\WINDOWS\System32\fxscount.h
        [2004/08/04 06:00:00 | 00,001,272 | ---- | M] () -- C:\WINDOWS\Blue Lace 16.bmp
        [2004/08/04 06:00:00 | 00,001,161 | ---- | M] () -- C:\WINDOWS\System32\usrlogon.cmd
        [2004/08/04 06:00:00 | 00,001,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mmtask.tsk
        [2004/08/04 06:00:00 | 00,001,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System\MMTASK.TSK
        [2004/08/04 06:00:00 | 00,001,152 | ---- | M] () -- C:\WINDOWS\System32\perffilt.ini
        [2004/08/04 06:00:00 | 00,001,131 | ---- | M] () -- C:\WINDOWS\System32\loadfix.com
        [2004/08/04 06:00:00 | 00,001,129 | ---- | M] () -- C:\WINDOWS\System32\vwipxspx.exe
        [2004/08/04 06:00:00 | 00,000,984 | ---- | M] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
        [2004/08/04 06:00:00 | 00,000,929 | ---- | M] () -- C:\WINDOWS\System32\homepage.inf
        [2004/08/04 06:00:00 | 00,000,888 | ---- | M] () -- C:\WINDOWS\System32\dllcache\sam.sdf
        [2004/08/04 06:00:00 | 00,000,882 | ---- | M] () -- C:\WINDOWS\System32\share.exe
        [2004/08/04 06:00:00 | 00,000,882 | ---- | M] () -- C:\WINDOWS\System32\fastopen.exe
        [2004/08/04 06:00:00 | 00,000,862 | ---- | M] () -- C:\WINDOWS\System32\termcap
        [2004/08/04 06:00:00 | 00,000,817 | ---- | M] () -- C:\WINDOWS\System32\mscdexnt.exe
        [2004/08/04 06:00:00 | 00,000,799 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\protocol
        [2004/08/04 06:00:00 | 00,000,768 | ---- | M] () -- C:\WINDOWS\System32\msdtcprf.h
        [2004/08/04 06:00:00 | 00,000,751 | ---- | M] () -- C:\WINDOWS\System32\noise.enu
        [2004/08/04 06:00:00 | 00,000,751 | ---- | M] () -- C:\WINDOWS\System32\noise.eng
        [2004/08/04 06:00:00 | 00,000,741 | ---- | M] () -- C:\WINDOWS\System32\noise.dat
        [2004/08/04 06:00:00 | 00,000,707 | ---- | M] () -- C:\WINDOWS\_default.pif
        [2004/08/04 06:00:00 | 00,000,697 | ---- | M] () -- C:\WINDOWS\System32\noise.tha
        [2004/08/04 06:00:00 | 00,000,487 | ---- | M] () -- C:\WINDOWS\System32\login.cmd
        [2004/08/04 06:00:00 | 00,000,435 | ---- | M] () -- C:\WINDOWS\System32\perfwci.h
        [2004/08/04 06:00:00 | 00,000,427 | ---- | M] () -- C:\WINDOWS\System32\perfci.h
        [2004/08/04 06:00:00 | 00,000,407 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\networks
        [2004/08/04 06:00:00 | 00,000,343 | ---- | M] () -- C:\WINDOWS\System32\prodspec.ini
        [2004/08/04 06:00:00 | 00,000,168 | ---- | M] () -- C:\WINDOWS\System32\l_except.nls
        [2004/08/04 06:00:00 | 00,000,168 | ---- | M] () -- C:\WINDOWS\System32\dllcache\l_except.nls
        [2004/08/04 06:00:00 | 00,000,140 | ---- | M] () -- C:\WINDOWS\System32\perffilt.h
        [2004/08/04 06:00:00 | 00,000,114 | ---- | M] () -- C:\WINDOWS\System32\pcl.sep
        [2004/08/04 06:00:00 | 00,000,081 | ---- | M] () -- C:\WINDOWS\System32\dsound.vxd
        [2004/08/04 06:00:00 | 00,000,080 | ---- | M] () -- C:\WINDOWS\explorer.scf
        [2004/08/04 06:00:00 | 00,000,075 | ---- | M] () -- C:\WINDOWS\System32\View Channels.scf
        [2004/08/04 06:00:00 | 00,000,064 | ---- | M] () -- C:\WINDOWS\System32\cmos.ram
        [2004/08/04 06:00:00 | 00,000,051 | ---- | M] () -- C:\WINDOWS\System32\pscript.sep
        [2004/08/04 02:41:56 | 01,041,536 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\drivers\hsfdpsp2.sys
        [2004/08/04 02:41:56 | 00,011,868 | ---- | M] (Conexant) -- C:\WINDOWS\System32\drivers\mdmxsdk.sys
        [2004/08/04 02:41:50 | 00,685,056 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\drivers\hsfcxts2.sys
        [2004/08/04 02:41:48 | 00,220,032 | ---- | M] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\drivers\hsfbs2s2.sys
        [2004/08/04 02:41:46 | 00,095,424 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\slnthal.sys
        [2004/08/04 02:41:46 | 00,013,240 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\slwdmsup.sys
        [2004/08/04 02:41:44 | 00,404,990 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\slntamr.sys
        [2004/08/04 02:41:42 | 00,129,535 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\slnt7554.sys
        [2004/08/04 02:41:40 | 00,180,360 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\ntmtlfax.sys
        [2004/08/04 02:41:40 | 00,126,686 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlmnt5.sys
        [2004/08/04 02:41:40 | 00,013,776 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\recagent.sys
        [2004/08/04 02:41:38 | 01,309,184 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlstrm.sys
        [2004/08/04 02:29:52 | 00,166,912 | ---- | M] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\drivers\s3gnbm.sys
        [2004/08/04 02:29:46 | 00,025,471 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv10nt.sys
        [2004/08/04 02:29:46 | 00,022,271 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv06nt.sys
        [2004/08/04 02:29:42 | 00,011,935 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv11nt.sys
        [2004/08/04 02:29:42 | 00,011,871 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv09nt.sys
        [2004/08/04 02:29:40 | 00,011,807 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv07nt.sys
        [2004/08/04 02:29:40 | 00,011,295 | ---- | M] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv08nt.sys
        [2004/08/04 02:29:38 | 00,452,736 | ---- | M] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\drivers\mtxparhm.sys
        [2004/08/04 02:29:32 | 00,104,960 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinrvxx.sys
        [2004/08/04 02:29:32 | 00,073,216 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atintuxx.sys
        [2004/08/04 02:29:32 | 00,063,663 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1rvxx.sys
        [2004/08/04 02:29:32 | 00,063,488 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxsxx.sys
        [2004/08/04 02:29:32 | 00,036,463 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1tuxx.sys
        [2004/08/04 02:29:32 | 00,034,735 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xsxx.sys
        [2004/08/04 02:29:32 | 00,031,744 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxbxx.sys
        [2004/08/04 02:29:32 | 00,030,671 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1raxx.sys
        [2004/08/04 02:29:32 | 00,029,455 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xbxx.sys
        [2004/08/04 02:29:32 | 00,028,672 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinsnxx.sys
        [2004/08/04 02:29:32 | 00,026,367 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1snxx.sys
        [2004/08/04 02:29:32 | 00,021,343 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1ttxx.sys
        [2004/08/04 02:29:32 | 00,013,824 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinttxx.sys
        [2004/08/04 02:29:30 | 00,056,623 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1btxx.sys
        [2004/08/04 02:29:30 | 00,052,224 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinraxx.sys
        [2004/08/04 02:29:30 | 00,014,336 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinpdxx.sys
        [2004/08/04 02:29:30 | 00,013,824 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinmdxx.sys
        [2004/08/04 02:29:30 | 00,012,047 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1pdxx.sys
        [2004/08/04 02:29:30 | 00,011,615 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1mdxx.sys
        [2004/08/04 02:29:28 | 00,701,440 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys
        [2004/08/04 02:29:28 | 00,327,040 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtaa.sys
        [2004/08/04 02:29:28 | 00,057,856 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinbtxx.sys
        [2004/08/04 02:00:00 | 00,260,272 | ---- | M] () -- C:\cmldr
        [2004/08/04 01:56:58 | 00,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdmaud(2).drv
        [2004/08/04 01:56:44 | 00,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser(2).dll
        [2004/08/03 23:29:56 | 01,897,408 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nv4_mini.sys
        [2004/07/18 02:55:24 | 00,129,045 | ---- | M] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
        [2004/07/17 15:36:24 | 00,064,352 | ---- | M] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
        [2004/07/17 15:35:00 | 00,067,866 | ---- | M] () -- C:\WINDOWS\System32\drivers\netwlan5.img
        [2004/06/15 17:55:56 | 00,007,882 | ---- | M] (Gteko Ltd.) -- C:\WINDOWS\System32\GTKCMOS.sys
        [2004/06/09 11:29:56 | 00,006,977 | ---- | M] (Gteko Ltd.) -- C:\WINDOWS\System32\DDMI2.sys
        [2004/05/29 20:53:08 | 00,082,896 | ---- | M] (moove (www.moove.com)) -- C:\WINDOWS\System32\KickCom2.dll
        [2004/05/29 20:52:04 | 00,091,072 | ---- | M] () -- C:\WINDOWS\System32\RoseCo2.dll
        [2004/05/27 09:23:20 | 00,787,356 | ---- | M] () -- C:\WINDOWS\System32\OEMBKGN1.BMP
        [2004/05/27 09:23:20 | 00,096,310 | ---- | M] () -- C:\WINDOWS\System32\DELLWALL.BMP
        [2004/05/27 09:23:20 | 00,005,134 | ---- | M] () -- C:\WINDOWS\System32\OEMLOGO.BMP
        [2004/04/07 12:45:06 | 00,225,280 | ---- | M] (America Online, Inc) -- C:\WINDOWS\System32\AOLDial.dll
        [2004/02/18 23:40:00 | 00,012,288 | ---- | M] () -- C:\WINDOWS\System32\e100bmsg.dll
        [2004/02/11 16:27:38 | 00,019,456 | ---- | M] (Intel Corporation ) -- C:\WINDOWS\System32\drivers\iqvw32.sys
        [2004/02/10 21:49:14 | 00,154,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\drivers\e100b325.sys
        [2004/02/10 21:49:14 | 00,154,112 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\e100b325.sys
        [2004/01/06 17:02:39 | 00,070,144 | ---- | M] (Apple Computer, Inc.) -- C:\WINDOWS\System32\QuickTimeCheck.ocx
        [2004/01/06 17:02:37 | 00,747,008 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\Indeo4.qtx
        [2004/01/06 17:02:35 | 00,430,592 | ---- | M] (Apple Computer, Inc) -- C:\WINDOWS\System32\QuickTimeVR.qtx
        [2004/01/06 17:02:35 | 00,323,072 | ---- | M] (Apple Computer, Inc.) -- C:\WINDOWS\System32\QuickTime.cpl
        [2004/01/06 17:02:31 | 05,557,248 | ---- | M] (Apple Computer, Inc.) -- C:\WINDOWS\System32\QuickTime.qts
        [2003/11/21 21:26:42 | 00,118,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\Prounstl.exe
        [2003/09/16 11:04:44 | 01,712,201 | ---- | M] (Intuit Inc.) -- C:\WINDOWS\System32\InetClnt.dll
        [2003/07/28 11:55:40 | 00,024,064 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\IntelNic.dll
        [2003/07/24 13:24:02 | 00,237,568 | ---- | M] (moove (www.moove.com)) -- C:\WINDOWS\System32\demoover.exe
        [2003/05/01 21:06:40 | 00,716,288 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\Ltwvc11n.dll
        [2003/05/01 21:06:40 | 00,212,480 | R--- | M] (Eastman Kodak) -- C:\WINDOWS\System32\PCDLIB32.DLL
        [2003/05/01 21:06:38 | 00,392,192 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\ltkrn11n.dll
        [2003/05/01 21:06:38 | 00,285,184 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\LFCMP11n.DLL
        [2003/05/01 21:06:38 | 00,262,656 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\LTDIS11n.dll
        [2003/05/01 21:06:38 | 00,172,032 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\Lfpng11n.dll
        [2003/05/01 21:06:38 | 00,152,064 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lftif11n.dll
        [2003/05/01 21:06:38 | 00,127,488 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\ltimg11n.dll
        [2003/05/01 21:06:38 | 00,118,784 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\ltfil11n.DLL
        [2003/05/01 21:06:38 | 00,081,408 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lffax11n.dll
        [2003/05/01 21:06:38 | 00,059,392 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lfwmf11n.dll
        [2003/05/01 21:06:38 | 00,056,320 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lfpsd11n.dll
        [2003/05/01 21:06:38 | 00,041,472 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lfgif11n.dll
        [2003/05/01 21:06:38 | 00,036,864 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lfbmp11n.dll
        [2003/05/01 21:06:38 | 00,033,280 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lfpcx11n.dll
        [2003/05/01 21:06:38 | 00,031,232 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lfeps11n.dll
        [2003/05/01 21:06:38 | 00,027,648 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lftga11n.dll
        [2003/05/01 21:06:38 | 00,026,112 | R--- | M] (LEAD Technologies, Inc.) -- C:\WINDOWS\System32\lfpcd11n.dll
        [2003/04/18 17:29:26 | 00,082,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml4r.dll
        [2003/03/18 22:12:12 | 01,047,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfc71u.dll
        [2003/03/13 16:10:24 | 00,040,960 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\vxdmdcdlg.dll
        [2003/02/20 20:16:34 | 00,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\netfxperf.dll
        [2003/01/10 17:13:04 | 00,033,588 | ---- | M] (America Online, Inc.) -- C:\WINDOWS\System32\drivers\wanatw4.sys
        [2003/01/07 16:05:08 | 00,002,695 | ---- | M] () -- C:\WINDOWS\System32\OUTLPERF.INI
        [2003/01/07 16:05:06 | 00,000,551 | ---- | M] () -- C:\WINDOWS\System32\OUTLPERF.H
        [2002/12/20 15:02:44 | 01,077,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCOMCTL.OCX
        [2002/12/19 15:19:46 | 00,147,456 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\PRONtObj.dll
        [2002/12/17 18:23:52 | 00,033,340 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dbmsqlgc.dll
        [2002/10/20 16:05:46 | 00,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dbmsgnet.dll
        [2002/09/20 09:45:00 | 00,339,968 | ---- | M] (AMYUNI Consultants
        http://www.amyuni.com) -- C:\WINDOWS\System32\cdintf.dll

        shoyou

          Topic Starter


          Beginner

          Re: computer keep logging off
          « Reply #33 on: May 09, 2010, 01:02:59 PM »
          - | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WISPTIS.EXE
          [2002/08/21 06:10:16 | 00,204,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\INKED.DLL
          [2002/06/27 10:53:38 | 00,005,110 | ---- | M] () -- C:\WINDOWS\System32\e100b325.din
          [2002/06/10 16:26:32 | 00,787,512 | ---- | M] () -- C:\WINDOWS\Dell.bmp
          [2002/02/13 22:53:18 | 00,006,345 | R--- | M] () -- C:\WINDOWS\System32\DevMngr.vxd
          [2002/01/05 16:48:16 | 00,974,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfc70.dll
          [2002/01/05 15:37:26 | 00,344,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcr70.dll
          [2002/01/05 05:36:38 | 00,964,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfc70u.dll
          [2002/01/05 04:40:20 | 00,487,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcp70.dll
          [2002/01/05 04:38:38 | 00,054,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msvci70.dll
          [2002/01/05 03:18:20 | 00,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\atl70.dll
          [2001/10/12 18:44:00 | 00,003,310 | ---- | M] () -- C:\WINDOWS\System32\advanced.ico
          [2001/09/19 18:47:14 | 00,765,952 | ---- | M] (Sensaura Ltd) -- C:\WINDOWS\System\crlds3d.dll
          [2001/08/17 23:36:32 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\streamci.dll
          [2001/08/17 15:48:00 | 00,012,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mouhid.sys
          [2001/08/17 15:07:44 | 00,025,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\hpn.sys
          [2001/08/17 15:07:44 | 00,020,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dpti2o.sys
          [2001/08/17 15:07:44 | 00,019,072 | ---- | M] (Adaptec, Inc.) -- C:\WINDOWS\System32\drivers\sparrow.sys
          [2001/08/17 15:07:42 | 00,030,688 | ---- | M] (LSI Logic) -- C:\WINDOWS\System32\drivers\sym_u3.sys
          [2001/08/17 15:07:42 | 00,005,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\perc2hib.sys
          [2001/08/17 15:07:40 | 00,028,384 | ---- | M] (LSI Logic) -- C:\WINDOWS\System32\drivers\sym_hi.sys
          [2001/08/17 15:07:40 | 00,027,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\perc2.sys
          [2001/08/17 15:07:38 | 00,056,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\aic78xx.sys
          [2001/08/17 15:07:36 | 00,055,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\aic78u2.sys
          [2001/08/17 15:07:36 | 00,032,640 | ---- | M] (LSI Logic) -- C:\WINDOWS\System32\drivers\symc8xx.sys
          [2001/08/17 15:07:34 | 00,016,256 | ---- | M] (Symbios Logic Inc.) -- C:\WINDOWS\System32\drivers\symc810.sys
          [2001/08/17 15:07:32 | 00,101,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\adpu160m.sys
          [2001/08/17 14:59:44 | 00,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\audstub.sys
          [2001/08/17 14:52:50 | 00,125,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ftdisk.sys
          [2001/08/17 14:52:22 | 00,036,736 | ---- | M] (Promise Technology, Inc.) -- C:\WINDOWS\System32\drivers\ultra.sys
          [2001/08/17 14:52:20 | 00,045,312 | ---- | M] (QLogic Corporation) -- C:\WINDOWS\System32\drivers\ql12160.sys
          [2001/08/17 14:52:20 | 00,040,320 | ---- | M] (QLogic Corporation) -- C:\WINDOWS\System32\drivers\ql1080.sys
          [2001/08/17 14:52:18 | 00,049,024 | ---- | M] (QLogic Corporation) -- C:\WINDOWS\System32\drivers\ql1280.sys
          [2001/08/17 14:52:16 | 00,179,584 | ---- | M] (Mylex Corporation) -- C:\WINDOWS\System32\drivers\dac2w2k.sys
          [2001/08/17 14:52:16 | 00,040,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ql1240.sys
          [2001/08/17 14:52:16 | 00,033,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ql10wnt.sys
          [2001/08/17 14:52:16 | 00,014,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dac960nt.sys
          [2001/08/17 14:52:12 | 00,017,280 | ---- | M] (American Megatrends Inc.) -- C:\WINDOWS\System32\drivers\mraid35x.sys
          [2001/08/17 14:52:08 | 00,016,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ini910u.sys
          [2001/08/17 14:52:08 | 00,013,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\cbidf2k.sys
          [2001/08/17 14:52:06 | 00,014,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\cpqarray.sys
          [2001/08/17 14:52:06 | 00,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\cd20xrnt.sys
          [2001/08/17 14:52:04 | 00,022,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\asc3350p.sys
          [2001/08/17 14:52:04 | 00,012,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\amsint.sys
          [2001/08/17 14:52:02 | 00,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\aha154x.sys
          [2001/08/17 14:52:00 | 00,026,496 | ---- | M] (Advanced System Products, Inc.) -- C:\WINDOWS\System32\drivers\asc.sys
          [2001/08/17 14:52:00 | 00,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ABP480N5.SYS
          [2001/08/17 14:51:58 | 00,014,848 | ---- | M] (Advanced System Products, Inc.) -- C:\WINDOWS\System32\drivers\asc3550.sys
          [2001/08/17 14:51:56 | 00,005,248 | ---- | M] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\drivers\aliide.sys
          [2001/08/17 14:51:56 | 00,004,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\toside.sys
          [2001/08/17 14:51:54 | 00,006,656 | ---- | M] (CMD Technology, Inc.) -- C:\WINDOWS\System32\drivers\cmdide.sys
          [2001/08/17 14:51:52 | 00,003,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\pciide.sys
          [2001/08/17 14:51:52 | 00,003,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pciide.sys
          [2001/07/13 16:09:44 | 00,279,552 | ---- | M] (InterActual Technologies, Inc.) -- C:\WINDOWS\System32\itiimg3.dll
          [2001/01/12 22:04:08 | 00,172,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jview.exe
          [2001/01/12 22:04:08 | 00,171,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wjview.exe
          [2001/01/12 22:04:08 | 00,046,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\setdebug.exe
          [2001/01/12 22:04:08 | 00,015,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jdbgmgr.exe
          [2001/01/12 22:04:06 | 00,945,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msjava.dll
          [2001/01/12 22:04:06 | 00,286,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vmhelper.dll
          [2001/01/12 22:04:06 | 00,049,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\clspack.exe
          [2001/01/12 22:04:06 | 00,021,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msjdbc10.dll
          [2001/01/12 22:04:02 | 00,404,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\javart.dll
          [2001/01/12 22:04:02 | 00,171,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jit.dll
          [2001/01/12 22:04:02 | 00,154,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msawt.dll
          [2001/01/12 22:04:00 | 00,187,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\javacypt.dll
          [2001/01/12 22:04:00 | 00,139,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\javaee.dll
          [2001/01/12 22:04:00 | 00,063,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\javaprxy.dll
          [2001/01/12 20:27:04 | 00,007,315 | ---- | M] () -- C:\WINDOWS\System32\javasup.vxd
          [2001/01/12 20:12:40 | 00,000,113 | ---- | M] () -- C:\WINDOWS\System32\zonedon.reg
          [2001/01/12 20:12:40 | 00,000,113 | ---- | M] () -- C:\WINDOWS\System32\zonedoff.reg
          [2001/01/12 20:10:24 | 00,006,550 | ---- | M] () -- C:\WINDOWS\jautoexp.dat
          [2001/01/12 20:09:58 | 00,313,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dx3j.dll
          [2000/12/06 14:02:36 | 00,209,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tabctl32.ocx
          [2000/11/15 14:46:00 | 00,999,424 | ---- | M] (FarPoint Technologies, Inc.) -- C:\WINDOWS\System32\SPR32X30.OCX
          [2000/11/15 14:46:00 | 00,737,280 | ---- | M] (FarPoint Technologies, Inc.) -- C:\WINDOWS\System32\SPR32D30.DLL
          [2000/08/31 12:00:00 | 00,212,480 | ---- | M] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
          [2000/08/31 12:00:00 | 00,161,792 | ---- | M] (SteelWerX) -- C:\WINDOWS\SWREG.exe
          [2000/08/31 12:00:00 | 00,136,704 | ---- | M] (SteelWerX) -- C:\WINDOWS\SWSC.exe
          [2000/08/31 12:00:00 | 00,098,816 | ---- | M] () -- C:\WINDOWS\sed.exe
          [2000/08/31 12:00:00 | 00,080,412 | ---- | M] () -- C:\WINDOWS\grep.exe
          [2000/08/31 12:00:00 | 00,068,096 | ---- | M] () -- C:\WINDOWS\zip.exe
          [2000/05/23 23:45:58 | 00,118,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MSSTDFMT.DLL
          [2000/05/22 17:58:12 | 00,244,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msflxgrd.ocx
          [2000/05/22 17:58:00 | 01,009,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mschrt20.ocx
          [2000/05/22 17:58:00 | 00,647,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mscomct2.ocx
          [2000/05/22 17:58:00 | 00,608,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\comctl32.ocx
          [2000/05/22 17:58:00 | 00,140,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\comdlg32.ocx
          [2000/05/22 02:00:00 | 00,203,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\RICHTX32.OCX
          [2000/05/11 14:06:20 | 00,397,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MSRDO20.DLL
          [2000/04/03 18:52:54 | 00,151,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\RDOCURS.DLL
          [1999/11/24 19:40:50 | 00,040,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VBAME.DLL
          [1999/11/10 12:05:00 | 00,086,016 | ---- | M] (MindVision) -- C:\WINDOWS\unvise32qt.exe
          [1999/09/01 13:04:42 | 00,049,152 | ---- | M] (Blue Sky Software Corporation.) -- C:\WINDOWS\System32\inetwh32.dll
          [1999/06/25 11:55:30 | 00,149,504 | ---- | M] () -- C:\WINDOWS\UNWISE.EXE
          [1999/05/10 01:00:00 | 01,694,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VBA6.DLL
          [1999/01/05 18:30:02 | 00,225,280 | ---- | M] (VideoSoft) -- C:\WINDOWS\System32\VSFLEX3.OCX
          [1998/10/29 20:45:06 | 00,306,688 | ---- | M] (InstallShield Software Corporation) -- C:\WINDOWS\IsUninst.exe
          [1998/08/09 12:07:34 | 00,094,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MSSTKPRP.DLL
          [1998/06/17 20:08:32 | 00,053,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC42ENU.DLL
          [1998/04/24 03:00:00 | 00,001,078 | ---- | M] () -- C:\WINDOWS\System32\rosewaste.ico
          [1998/03/24 22:54:08 | 00,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SCP32.DLL
          [1998/03/24 14:44:06 | 00,024,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VBAEND32.OLB
          [1998/03/24 14:44:06 | 00,024,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VBAEN32.OLB
          [1996/12/03 15:50:14 | 00,037,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VEN2232.OLB
          [1996/01/12 01:00:00 | 00,200,704 | ---- | M] (Sheridan Software Systems, Inc.) -- C:\WINDOWS\System32\THREED32.OCX
          [2 C:\Documents and Settings\shon\My Documents\*.tmp files -> C:\Documents and Settings\shon\My Documents\*.tmp -> ]
           
          ========== Files Created - No Company Name ==========
           
          [2099/01/01 12:00:00 | 00,006,456 | -H-- | C] () -- C:\WINDOWS\System32\sudovotu
          [2010/05/08 22:54:15 | 00,001,547 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\MSKeyViewer Plus.lnk
          [2010/05/08 22:54:15 | 00,001,535 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\RegistryEditorPE.lnk
          [2010/05/08 22:54:15 | 00,001,483 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\HandyRecovery 1.lnk
          [2010/05/08 22:54:15 | 00,001,479 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\Undelete Plus.lnk
          [2010/05/08 22:54:15 | 00,001,475 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\Magical Jelly Bean Keyfinder.lnk
          [2010/05/08 22:54:15 | 00,001,469 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\DiskPartitioner.lnk
          [2010/05/08 22:54:15 | 00,001,465 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\Agent Ransack.lnk
          [2010/05/08 22:54:15 | 00,001,459 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\Transfer Firewall settings.lnk
          [2010/05/08 22:54:15 | 00,001,437 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\notepad++.lnk
          [2010/05/08 22:54:15 | 00,001,427 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\2xExplorer.lnk
          [2010/05/08 22:54:15 | 00,001,423 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\FastStone Capture.lnk
          [2010/05/08 22:54:15 | 00,001,371 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\ImgBurn.lnk
          [2010/05/08 22:54:15 | 00,001,353 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\DriveImage XML.lnk
          [2010/05/08 22:54:15 | 00,001,347 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\A43 File Management Utility.lnk
          [2010/05/08 22:54:15 | 00,001,347 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\7-Zip File Manager.lnk
          [2010/05/08 22:54:15 | 00,001,343 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\Windows Registry Recovery.lnk
          [2010/05/08 22:54:15 | 00,001,332 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\OTLPE.lnk
          [2010/05/08 22:54:15 | 00,001,313 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\Disk Investigator.lnk
          [2010/05/08 22:54:15 | 00,001,261 | ---- | C] () -- B:\Documents and Settings\Default User\Desktop\Internet Explorer.lnk
          [2010/05/02 21:46:25 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At72.job
          [2010/05/02 21:46:24 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At71.job
          [2010/05/02 21:46:23 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At70.job
          [2010/05/02 21:46:21 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At69.job
          [2010/05/02 21:46:20 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At68.job
          [2010/05/02 21:46:19 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At67.job
          [2010/05/02 21:46:18 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At66.job
          [2010/05/02 21:46:16 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At65.job
          [2010/05/02 21:46:15 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At64.job
          [2010/05/02 21:46:14 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At63.job
          [2010/05/02 21:46:12 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At62.job
          [2010/05/02 21:46:11 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At61.job
          [2010/05/02 21:46:10 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At60.job
          [2010/05/02 21:46:08 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At59.job
          [2010/05/02 21:46:07 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At58.job
          [2010/05/02 21:46:06 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At57.job
          [2010/05/02 21:46:04 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At56.job
          [2010/05/02 21:46:03 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At55.job
          [2010/05/02 21:46:01 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At54.job
          [2010/05/02 21:46:00 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At53.job
          [2010/05/02 21:45:59 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At52.job
          [2010/05/02 21:45:57 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At51.job
          [2010/05/02 21:45:56 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At50.job
          [2010/05/02 21:45:55 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At49.job
          [2010/04/30 18:58:43 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At48.job
          [2010/04/30 18:58:41 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At47.job
          [2010/04/30 18:58:40 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At46.job
          [2010/04/30 18:58:39 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At45.job
          [2010/04/30 18:58:38 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At44.job
          [2010/04/30 18:58:37 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At43.job
          [2010/04/30 18:58:35 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At42.job
          [2010/04/30 18:58:33 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At41.job
          [2010/04/30 18:58:31 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At40.job
          [2010/04/30 18:58:30 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At39.job
          [2010/04/30 18:58:29 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At38.job
          [2010/04/30 18:58:28 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At37.job
          [2010/04/30 18:58:26 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At36.job
          [2010/04/30 18:58:25 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At35.job
          [2010/04/30 18:58:23 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At34.job
          [2010/04/30 18:58:22 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At33.job
          [2010/04/30 18:58:17 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At32.job
          [2010/04/30 18:58:15 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At31.job
          [2010/04/30 18:58:13 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At30.job
          [2010/04/30 18:58:11 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At29.job
          [2010/04/30 18:58:10 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At28.job
          [2010/04/30 18:58:09 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At27.job
          [2010/04/30 18:58:05 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At26.job
          [2010/04/30 18:58:03 | 00,000,416 | ---- | C] () -- C:\WINDOWS\tasks\At25.job
          [2010/04/30 18:55:58 | 00,000,782 | ---- | C] () -- C:\Documents and Settings\NetworkService\Desktop\Windows Media Player.lnk
          [2010/04/30 18:55:33 | 00,004,736 | ---- | C] () -- C:\WINDOWS\System32\o.sys
          [2010/04/30 18:55:29 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At24.job
          [2010/04/30 18:55:28 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At23.job
          [2010/04/30 18:55:26 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At22.job
          [2010/04/30 18:55:25 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At21.job
          [2010/04/30 18:55:24 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At20.job
          [2010/04/30 18:55:22 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At19.job
          [2010/04/30 18:55:21 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At18.job
          [2010/04/30 18:55:20 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At17.job
          [2010/04/30 18:55:19 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At16.job
          [2010/04/30 18:55:18 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At15.job
          [2010/04/30 18:55:16 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At14.job
          [2010/04/30 18:55:15 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At13.job
          [2010/04/30 18:55:14 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At12.job
          [2010/04/30 18:55:13 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At11.job
          [2010/04/30 18:55:11 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At10.job
          [2010/04/30 18:55:10 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At9.job
          [2010/04/30 18:55:09 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At8.job
          [2010/04/30 18:55:07 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At7.job
          [2010/04/30 18:55:06 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At6.job
          [2010/04/30 18:55:05 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At5.job
          [2010/04/30 18:55:03 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At4.job
          [2010/04/30 18:55:02 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At3.job
          [2010/04/30 18:55:01 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At2.job
          [2010/04/30 18:54:59 | 00,000,346 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
          [2010/04/30 18:54:57 | 00,035,840 | ---- | C] () -- C:\WINDOWS\Fonts\S2yti8J0p.com
          [2010/04/29 18:38:00 | 10,716,97920 | -HS- | C] () -- C:\hiberfil.sys
          [2010/04/23 22:38:41 | 00,016,548 | -HS- | C] () -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\O87YL82
          [2010/04/22 02:18:41 | 00,028,672 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\Eng stor poem 04.21.2010.doc
          [2010/04/20 00:34:13 | 00,278,066 | ---- | C] () -- C:\Documents and Settings\shon\Desktop\Attractive Fascinante.jpg
          [2010/04/14 21:39:51 | 00,394,618 | ---- | C] () -- C:\Documents and Settings\shon\Desktop\ziria.jpg
          [2010/04/14 00:17:10 | 00,000,296 | ---- | C] () -- C:\WINDOWS\tasks\rubgyeqn.job
          [2010/04/13 00:34:06 | 00,000,292 | ---- | C] () -- C:\WINDOWS\tasks\ssduhoxr.job
          [2010/04/11 01:04:13 | 02,640,082 | -H-- | C] () -- C:\Documents and Settings\shon\Local Settings\Application Data\IconCache.db
          [2010/04/10 23:04:28 | 00,000,292 | ---- | C] () -- C:\WINDOWS\tasks\vuviwjms.job
          [2010/04/08 03:20:54 | 00,034,304 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\Poetry Portfolios.docphoua.doc
          [2010/04/08 02:55:43 | 00,002,913 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\my ask 2.rtf
          [2010/04/07 02:52:03 | 00,024,576 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\Introduction.doc-phoua.doc
          [2010/04/06 03:25:25 | 00,006,238 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\my ask.rtf
          [2010/04/06 03:25:18 | 00,005,067 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\words.rtf
          [2010/04/01 23:12:48 | 00,029,696 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\For Them-english.doc
          [2010/03/30 18:26:41 | 00,000,296 | ---- | C] () -- C:\WINDOWS\tasks\lrbivkck.job
          [2010/03/29 18:28:07 | 00,000,296 | ---- | C] () -- C:\WINDOWS\tasks\ovryntpk.job
          [2010/03/29 00:52:39 | 00,000,292 | ---- | C] () -- C:\WINDOWS\tasks\hienkikt.job
          [2010/03/27 18:15:02 | 00,000,000 | ---- | C] () -- C:\Documents and Settings\shon\jagex__preferences3.dat
          [2010/03/27 00:45:51 | 00,035,840 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\book summary.doc
          [2010/03/23 20:03:54 | 01,089,593 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntprint.cat
          [2010/03/22 23:05:02 | 00,012,544 | ---- | C] () -- C:\WINDOWS\System32\CNC173CD.TBL
          [2010/03/20 03:33:10 | 00,091,072 | ---- | C] () -- C:\WINDOWS\System32\RoseCo2.dll
          [2010/03/20 03:32:51 | 00,003,310 | ---- | C] () -- C:\WINDOWS\System32\advanced.ico
          [2010/03/20 03:32:51 | 00,001,078 | ---- | C] () -- C:\WINDOWS\System32\rosewaste.ico
          [2010/03/18 19:56:40 | 00,021,974 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\Wildlife Relocation-Mai Nhia.docx
          [2010/03/16 15:43:52 | 00,000,292 | ---- | C] () -- C:\WINDOWS\tasks\apehnsgm.job
          [2010/03/14 16:43:03 | 00,000,075 | ---- | C] () -- C:\Documents and Settings\shon\jagex_runescape_preferences2.dat
          [2010/03/14 16:42:05 | 00,000,041 | ---- | C] () -- C:\Documents and Settings\shon\jagex_runescape_preferences.dat
          [2010/03/10 22:29:36 | 00,000,276 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-2088270078-1582906098-2314588131-1006.job
          [2010/03/10 22:29:33 | 00,000,284 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-2088270078-1582906098-2314588131-1006.job
          [2010/03/10 00:23:57 | 00,000,175 | ---- | C] () -- C:\Documents and Settings\shon\Application Data\default.pls
          [2010/02/28 13:51:47 | 00,000,033 | ---- | C] () -- C:\Documents and Settings\shon\Application Data\pcouffin.log
          [2010/02/28 13:51:27 | 00,087,608 | ---- | C] () -- C:\Documents and Settings\shon\Application Data\inst.exe
          [2010/02/28 13:51:26 | 00,007,887 | ---- | C] () -- C:\Documents and Settings\shon\Application Data\pcouffin.cat
          [2010/02/28 13:51:26 | 00,001,144 | ---- | C] () -- C:\Documents and Settings\shon\Application Data\pcouffin.inf
          [2010/02/12 19:25:05 | 00,000,292 | ---- | C] () -- C:\WINDOWS\tasks\kkrjaevf.job
          [2010/02/01 20:15:14 | 00,000,236 | ---- | C] () -- C:\WINDOWS\tasks\OGALogon.job
          [2010/01/30 20:23:47 | 00,000,375 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics
          [2010/01/30 20:03:04 | 00,007,315 | ---- | C] () -- C:\WINDOWS\System32\javasup.vxd
          [2010/01/30 20:03:04 | 00,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat
          [2010/01/30 20:02:48 | 00,000,113 | ---- | C] () -- C:\WINDOWS\System32\zonedon.reg
          [2010/01/30 20:02:48 | 00,000,113 | ---- | C] () -- C:\WINDOWS\System32\zonedoff.reg
          [2010/01/30 20:00:26 | 00,006,345 | R--- | C] () -- C:\WINDOWS\System32\DevMngr.vxd
          [2010/01/29 21:53:44 | 00,002,560 | ---- | C] () -- C:\WINDOWS\_MSRSTRT.EXE
          [2010/01/27 23:56:24 | 00,000,000 | ---- | C] () -- C:\Documents and Settings\shon\ŸÈŸÈ
          [2010/01/27 01:02:55 | 00,000,974 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\wishes 1.rtf
          [2010/01/26 01:04:05 | 00,011,330 | -HS- | C] () -- C:\Documents and Settings\shon\Local Settings\Application Data\dtY7XdPksy0x61PD5gu82V0suNANFLXuyG8
          [2010/01/26 00:52:40 | 00,013,572 | -HS- | C] () -- C:\Documents and Settings\shon\Local Settings\Application Data\5sWWs1S67JJev
          [2010/01/26 00:37:01 | 00,012,288 | ---- | C] () -- C:\WINDOWS\System32\CNC173AD.TBL
          [2010/01/26 00:03:19 | 00,000,162 | -H-- | C] () -- C:\Documents and Settings\shon\My Documents\~$ter pollution.doc
          [2010/01/24 18:40:42 | 00,000,000 | ---- | C] () -- C:\Documents and Settings\shon\Ÿ=Ÿ=
          [2010/01/24 15:35:22 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
          [2010/01/24 15:35:22 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls
          [2010/01/24 15:35:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
          [2010/01/24 15:35:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls
          [2010/01/24 15:35:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
          [2010/01/24 15:35:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS
          [2010/01/24 15:35:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
          [2010/01/24 15:35:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls
          [2010/01/24 15:35:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
          [2010/01/24 15:35:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls
          [2010/01/24 15:35:18 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
          [2010/01/24 15:35:18 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls
          [2010/01/24 15:35:18 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
          [2010/01/24 15:35:18 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls
          [2010/01/24 15:35:13 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls

          shoyou

            Topic Starter


            Beginner

            Re: computer keep logging off
            « Reply #34 on: May 09, 2010, 01:03:35 PM »
            | C] () -- C:\WINDOWS\System32\c_10021.nls
            [2010/01/24 15:34:32 | 00,000,000 | ---- | C] () -- C:\WINDOWS\Ckegefeqac.bin
            [2010/01/24 15:34:30 | 00,000,120 | ---- | C] () -- C:\WINDOWS\Tbucigenoguqut.dat
            [2010/01/23 01:15:47 | 00,028,672 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\Water pollution.doc
            [2010/01/16 23:04:07 | 00,000,000 | ---- | C] () -- C:\Documents and Settings\shon\Ÿ9Ÿ9
            [2010/01/16 22:50:30 | 00,000,211 | ---- | C] () -- C:\Boot.bak
            [2010/01/16 22:50:27 | 00,260,272 | ---- | C] () -- C:\cmldr
            [2010/01/16 22:48:44 | 00,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe
            [2010/01/16 22:48:44 | 00,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
            [2010/01/16 22:48:44 | 00,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
            [2010/01/16 22:48:44 | 00,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
            [2010/01/16 22:48:44 | 00,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
            [2010/01/05 20:32:37 | 00,000,009 | ---- | C] () -- C:\WINDOWS\System32\Class12
            [2010/01/05 20:32:37 | 00,000,005 | ---- | C] () -- C:\WINDOWS\System32\Band4
            [2010/01/03 03:50:27 | 00,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
            [2010/01/03 03:50:25 | 00,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
            [2010/01/03 03:29:20 | 00,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\UMDF\MsftWdf_user_01_00_00.Wdf
            [2009/12/31 00:11:53 | 00,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
            [2009/12/30 14:35:15 | 00,001,024 | ---- | C] () -- C:\Documents and Settings\shon\.rnd
            [2009/12/25 23:08:30 | 00,001,046 | ---- | C] () -- C:\Documents and Settings\shon\Desktop\Perfect World International.lnk
            [2009/12/23 03:36:12 | 00,093,696 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\plants.doc
            [2009/12/22 02:07:11 | 00,002,497 | ---- | C] () -- C:\Documents and Settings\shon\Desktop\Microsoft Office Word 2003.lnk
            [2009/12/21 23:14:12 | 00,157,589 | ---- | C] () -- C:\WINDOWS\hphins27.dat
            [2009/12/21 23:14:12 | 00,000,787 | ---- | C] () -- C:\WINDOWS\hphmdl27.dat
            [2009/12/19 17:50:13 | 00,000,027 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts.msn
            [2009/12/19 16:06:52 | 00,008,704 | ---- | C] () -- C:\Documents and Settings\shon\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
            [2009/12/18 02:56:12 | 00,000,848 | ---- | C] () -- C:\Documents and Settings\shon\Desktop\Photoshop CS3.lnk
            [2009/12/15 17:46:16 | 00,281,930 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\fairy_communication_symbol.jpg
            [2009/12/15 01:59:42 | 00,010,084 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\faery_protect_rune1.jpg
            [2009/12/14 03:43:59 | 04,404,259 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\moon-star-ark.jpg
            [2009/12/14 03:42:28 | 03,389,211 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\moon-top-ark.jpg
            [2009/12/14 03:41:58 | 02,005,615 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\sun-cones-ark.jpg
            [2009/12/14 03:41:26 | 02,248,834 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\dragonianstar.jpg
            [2009/12/13 18:28:02 | 00,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
            [2009/12/13 17:44:33 | 00,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
            [2009/12/13 17:44:33 | 00,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
            [2009/12/13 17:37:39 | 00,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
            [2009/12/13 17:27:46 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
            [2009/12/13 17:27:44 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
            [2009/12/13 17:27:41 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
            [2009/12/13 17:27:41 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
            [2009/12/13 17:27:40 | 00,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
            [2009/12/13 17:27:40 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
            [2009/12/13 17:27:38 | 00,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
            [2009/12/13 17:27:37 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
            [2009/12/13 17:27:37 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
            [2009/12/13 17:27:37 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
            [2009/12/13 17:27:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
            [2009/12/13 17:27:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
            [2009/12/13 17:27:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
            [2009/12/13 17:27:35 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
            [2009/12/13 17:27:35 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
            [2009/12/13 17:27:35 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
            [2009/12/13 17:27:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
            [2009/12/13 17:27:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
            [2009/12/13 17:27:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
            [2009/12/13 17:27:33 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
            [2009/12/13 17:27:33 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
            [2009/12/13 17:27:32 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
            [2009/12/13 17:27:32 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
            [2009/12/13 17:27:32 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
            [2009/12/13 17:27:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
            [2009/12/13 17:27:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
            [2009/12/13 17:27:30 | 00,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
            [2009/12/13 17:27:30 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
            [2009/12/13 17:27:30 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
            [2009/12/13 17:27:29 | 00,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
            [2009/12/13 17:27:29 | 00,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
            [2009/12/13 17:27:28 | 00,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
            [2009/12/13 17:27:28 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
            [2009/12/13 17:27:27 | 00,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
            [2009/12/13 17:27:27 | 00,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
            [2009/12/13 17:27:25 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
            [2009/12/13 17:27:25 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
            [2009/12/13 17:27:24 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
            [2009/12/13 17:27:24 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
            [2009/12/13 17:27:24 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
            [2009/12/13 17:27:23 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
            [2009/12/13 17:27:23 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
            [2009/12/13 17:27:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
            [2009/12/13 17:27:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
            [2009/12/13 17:27:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
            [2009/12/13 17:27:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
            [2009/12/13 17:27:17 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
            [2009/12/13 17:27:15 | 00,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
            [2009/12/13 17:27:15 | 00,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
            [2009/12/13 17:27:14 | 00,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
            [2009/12/13 17:26:53 | 00,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
            [2009/12/13 17:26:51 | 00,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
            [2009/12/06 23:51:10 | 00,029,041 | ---- | C] () -- C:\WINDOWS\System32\Config.MPF
            [2009/12/06 23:13:18 | 00,000,338 | ---- | C] () -- C:\WINDOWS\tasks\McDefragTask.job
            [2009/12/06 23:13:17 | 00,000,316 | ---- | C] () -- C:\WINDOWS\tasks\McQcTask.job
            [2009/12/06 22:49:22 | 00,000,088 | RHS- | C] () -- C:\WINDOWS\System32\B0CF9B26CD.sys
            [2009/12/06 22:49:21 | 00,003,350 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
            [2009/12/06 22:15:49 | 00,000,338 | ---- | C] () -- C:\Documents and Settings\shon\Desktop\My Documents.lnk
            [2009/12/06 21:00:59 | 00,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
            [2009/12/06 21:00:31 | 00,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
            [2009/12/06 20:58:23 | 00,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
            [2009/12/06 20:57:02 | 01,151,781 | ---- | C] () -- C:\Documents and Settings\shon\My Documents\Family Complex Cover.jpg
            [2009/12/06 20:55:38 | 00,004,128 | ---- | C] () -- C:\INFCACHE.1
            [2009/12/06 20:54:12 | 00,088,696 | ---- | C] () -- C:\Documents and Settings\shon\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
            [2009/12/06 19:59:30 | 01,206,508 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sysmain.sdb
            [2009/12/06 15:38:08 | 00,000,782 | ---- | C] () -- C:\Documents and Settings\shon\Desktop\Windows Media Player.lnk
            [2009/12/06 15:37:58 | 00,000,127 | ---- | C] () -- C:\Documents and Settings\shon\Local Settings\Application Data\fusioncache.dat
            [2009/12/06 15:37:58 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\shon\Application Data\desktop.ini
            [2009/12/06 15:37:56 | 08,126,464 | -H-- | C] () -- C:\Documents and Settings\shon\ntuser.dat
            [2009/12/06 15:37:56 | 00,000,178 | -HS- | C] () -- C:\Documents and Settings\shon\ntuser.ini
            [2009/12/06 15:25:13 | 00,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
            [2009/08/03 19:07:42 | 00,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
            [2009/08/03 19:07:42 | 00,230,768 | ---- | C] () -- C:\WINDOWS\System32\OGAEXEC.exe
            [2009/06/03 15:09:37 | 01,291,776 | ---- | C] () -- C:\WINDOWS\System32\dllcache\quartz.dll
            [2009/05/13 19:03:54 | 00,529,712 | ---- | C] () -- C:\WINDOWS\System32\LinksysSWViewer.ocx
            [2009/02/13 02:20:42 | 00,005,630 | ---- | C] () -- C:\WINDOWS\System32\IE8Eula.rtf
            [2009/01/07 22:20:36 | 00,066,384 | ---- | C] () -- C:\WINDOWS\System32\normnfkc.nls
            [2009/01/07 22:20:36 | 00,060,294 | ---- | C] () -- C:\WINDOWS\System32\normnfkd.nls
            [2009/01/07 22:20:36 | 00,059,342 | ---- | C] () -- C:\WINDOWS\System32\normidna.nls
            [2009/01/07 22:20:36 | 00,045,794 | ---- | C] () -- C:\WINDOWS\System32\normnfc.nls
            [2009/01/07 22:20:36 | 00,039,284 | ---- | C] () -- C:\WINDOWS\System32\normnfd.nls
            [2009/01/07 22:20:20 | 00,008,798 | ---- | C] () -- C:\WINDOWS\System32\icrav03.rat
            [2009/01/07 22:20:20 | 00,001,988 | ---- | C] () -- C:\WINDOWS\System32\ticrf.rat
            [2007/06/21 01:52:36 | 00,000,974 | ---- | C] () -- C:\WINDOWS\System32\pid.inf
            [2006/05/30 10:09:08 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
            [2006/05/30 10:07:42 | 00,209,152 | ---- | C] () -- C:\WINDOWS\System32\Status.MPF
            [2006/05/30 10:06:07 | 00,000,136 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\fusioncache.dat
            [2006/05/30 10:03:03 | 00,000,157 | ---- | C] () -- C:\WINDOWS\wininit.ini
            [2006/05/30 09:59:25 | 00,149,504 | ---- | C] () -- C:\WINDOWS\UNWISE.EXE
            [2006/05/30 09:57:59 | 00,712,704 | ---- | C] () -- C:\WINDOWS\System32\DellSystemRestore.dll
            [2006/05/30 09:55:59 | 00,002,764 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.PNF
            [2006/05/30 09:54:27 | 00,000,087 | ---- | C] () -- C:\SystemInfo.ini
            [2006/05/30 09:53:13 | 00,000,840 | -H-- | C] () -- C:\IPH.PH
            [2006/05/30 09:53:12 | 00,000,335 | ---- | C] () -- C:\WINDOWS\nsreg.dat
            [2006/05/30 09:51:07 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
            [2006/05/30 09:35:13 | 00,000,281 | RHS- | C] () -- C:\boot.ini
            [2006/05/30 09:34:56 | 00,005,584 | RH-- | C] () -- C:\dell.sdr
            [2006/05/30 09:29:12 | 00,049,152 | ---- | C] () -- C:\WINDOWS\setpwrcg.exe
            [2006/05/30 09:29:10 | 00,787,512 | ---- | C] () -- C:\WINDOWS\Dell.bmp
            [2006/05/30 09:28:54 | 00,012,288 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll
            [2006/05/30 09:28:54 | 00,005,110 | ---- | C] () -- C:\WINDOWS\System32\e100b325.din
            [2006/05/30 09:28:52 | 00,000,392 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
            [2006/05/30 09:28:50 | 00,005,584 | ---- | C] () -- C:\WINDOWS\System32\drivers\1028_Dell_DIM_DE051.mrk
            [2006/05/30 09:27:44 | 00,787,356 | ---- | C] () -- C:\WINDOWS\System32\OEMBKGN1.BMP
            [2006/05/30 09:27:44 | 00,096,310 | ---- | C] () -- C:\WINDOWS\System32\DELLWALL.BMP
            [2006/05/30 09:27:44 | 00,005,134 | ---- | C] () -- C:\WINDOWS\System32\OEMLOGO.BMP
            [2005/11/10 09:56:34 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
            [2005/09/15 17:35:46 | 00,000,050 | ---- | C] () -- C:\WINDOWS\UNNeroMediaHome.cfg
            [2005/08/31 16:49:08 | 00,000,050 | ---- | C] () -- C:\WINDOWS\NuNInst.cfg
            [2005/08/31 00:37:52 | 00,000,050 | ---- | C] () -- C:\WINDOWS\UNNeroVision.cfg
            [2005/08/31 00:37:04 | 00,000,050 | ---- | C] () -- C:\WINDOWS\UNNeroShowTime.cfg
            [2005/08/31 00:36:38 | 00,000,050 | ---- | C] () -- C:\WINDOWS\UNRecode.cfg
            [2005/08/02 15:00:16 | 00,000,611 | ---- | C] () -- C:\WINDOWS\System32\dlccplc.ini
            [2004/08/12 01:20:24 | 00,786,432 | -H-- | C] () -- C:\Documents and Settings\Administrator\ntuser.dat
            [2004/08/12 01:20:15 | 00,262,144 | ---- | C] () -- C:\Documents and Settings\NetworkService\NTUSER.DAT
            [2004/08/12 01:20:15 | 00,262,144 | ---- | C] () -- C:\Documents and Settings\LocalService\NTUSER.DAT
            [2004/08/11 18:50:49 | 00,000,333 | ---- | C] () -- C:\WINDOWS\System32\$ncsp$.inf
            [2004/08/11 18:24:19 | 00,218,245 | ---- | C] () -- C:\WINDOWS\orun32.isu
            [2004/08/11 18:24:19 | 00,000,791 | ---- | C] () -- C:\WINDOWS\orun32.ini
            [2004/08/11 18:20:48 | 03,770,754 | -H-- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\IconCache.db
            [2004/08/11 18:20:25 | 00,000,178 | -HS- | C] () -- C:\Documents and Settings\Administrator\ntuser.ini
            [2004/08/11 18:20:25 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\Administrator\Application Data\desktop.ini
            [2004/08/11 18:20:17 | 00,000,006 | -H-- | C] () -- C:\WINDOWS\tasks\SA.DAT
            [2004/08/11 18:20:16 | 00,000,020 | -HS- | C] () -- C:\Documents and Settings\LocalService\ntuser.ini
            [2004/08/11 18:20:15 | 00,000,020 | -HS- | C] () -- C:\Documents and Settings\NetworkService\ntuser.ini
            [2004/08/11 18:19:30 | 00,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
            [2004/08/11 18:14:58 | 00,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
            [2004/08/11 18:14:58 | 00,000,000 | -H-- | C] () -- C:\MSDOS.SYS
            [2004/08/11 18:14:58 | 00,000,000 | -H-- | C] () -- C:\IO.SYS
            [2004/08/11 18:14:58 | 00,000,000 | ---- | C] () -- C:\CONFIG.SYS
            [2004/08/11 18:14:58 | 00,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
            [2004/08/11 18:14:46 | 00,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
            [2004/08/11 18:13:32 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
            [2004/08/11 18:13:32 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
            [2004/08/11 18:13:25 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
            [2004/08/11 18:13:25 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
            [2004/08/11 18:13:25 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
            [2004/08/11 18:13:25 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
            [2004/08/11 18:13:25 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
            [2004/08/11 18:13:25 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
            [2004/08/11 18:12:59 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
            [2004/08/11 18:12:59 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
            [2004/08/11 18:12:58 | 00,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
            [2004/08/11 18:12:14 | 00,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
            [2004/08/11 18:11:44 | 00,000,989 | ---- | C] () -- C:\WINDOWS\System32\mapisvc.inf
            [2004/08/11 18:11:32 | 00,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
            [2004/08/11 18:11:32 | 00,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
            [2004/08/11 18:11:32 | 00,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
            [2004/08/11 18:11:32 | 00,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
            [2004/08/11 18:11:32 | 00,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
            [2004/08/11 18:11:32 | 00,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
            [2004/08/11 18:11:32 | 00,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
            [2004/08/11 18:11:32 | 00,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
            [2004/08/11 18:11:32 | 00,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
            [2004/08/11 18:11:32 | 00,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
            [2004/08/11 18:11:32 | 00,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
            [2004/08/11 18:11:32 | 00,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
            [2004/08/11 18:11:32 | 00,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
            [2004/08/11 18:11:32 | 00,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
            [2004/08/11 18:11:32 | 00,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
            [2004/08/11 18:11:32 | 00,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
            [2004/08/11 18:11:32 | 00,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
            [2004/08/11 18:11:32 | 00,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
            [2004/08/11 18:11:32 | 00,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
            [2004/08/11 18:11:31 | 00,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
            [2004/08/11 18:11:31 | 00,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
            [2004/08/11 18:11:31 | 00,001,361 | ---- | C] () -- C:\WINDOWS\System32\fxscount.h
            [2004/08/11 18:11:31 | 00,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
            [2004/08/11 18:11:31 | 00,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
            [2004/08/11 18:11:29 | 00,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
            [2004/08/11 18:07:28 | 00,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
            [2004/08/11 18:07:23 | 01,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
            [2004/08/11 18:07:23 | 00,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
            [2004/08/11 18:07:23 | 00,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
            [2004/08/11 18:07:23 | 00,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
            [2004/08/11 18:07:22 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
            [2004/08/11 18:07:22 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
            [2004/08/11 18:07:22 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_852.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_852.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
            [2004/08/11 18:07:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
            [2004/08/11 18:07:21 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
            [2004/08/11 18:07:20 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
            [2004/08/11 18:07:20 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
            [2004/08/11 18:07:19 | 00,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
            [2004/08/11 18:06:53 | 01,015,767 | ---- | C] () -- C:\WINDOWS\setupapi.del
            [2004/08/11 18:06:49 | 00,208,170 | ---- | C] () -- C:\WINDOWS\setupact.del
            [2004/08/11 18:06:49 | 00,000,000 | ---- | C] () -- C:\WINDOWS\setuperr.del
            [2004/08/11 18:06:47 | 00,734,597 | ---- | C] () -- C:\WINDOWS\setuplog.del
            [2004/08/11 18:06:43 | 00,343,424 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
            [2004/08/11 18:06:10 | 00,000,448 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
            [2004/08/11 18:00:52 | 00,844,314 | ---- | C] () -- C:\WINDOWS\System32\msdxm.ocx
            [2004/08/11 18:00:46 | 00,250,048 | RHS- | C] () -- C:\ntldr

            shoyou

              Topic Starter


              Beginner

              Re: computer keep logging off
              « Reply #35 on: May 09, 2010, 01:03:54 PM »
              | C] () -- C:\NTDETECT.COM
              [2004/08/11 18:00:45 | 00,127,213 | ---- | C] () -- C:\WINDOWS\System32\ega.cpi
              [2004/08/11 18:00:44 | 00,082,944 | ---- | C] () -- C:\WINDOWS\clock.avi
              [2004/08/11 18:00:42 | 00,069,886 | ---- | C] () -- C:\WINDOWS\System32\edit.com
              [2004/08/11 18:00:42 | 00,010,790 | ---- | C] () -- C:\WINDOWS\System32\edit.hlp
              [2004/08/11 18:00:42 | 00,001,696 | ---- | C] () -- C:\WINDOWS\System32\noise.cht
              [2004/08/11 18:00:42 | 00,001,696 | ---- | C] () -- C:\WINDOWS\System32\noise.chs
              [2004/08/11 18:00:41 | 00,000,697 | ---- | C] () -- C:\WINDOWS\System32\noise.tha
              [2004/08/11 18:00:38 | 00,164,352 | ---- | C] () -- C:\WINDOWS\System32\wstpager.ax
              [2004/08/11 18:00:38 | 00,002,206 | ---- | C] () -- C:\WINDOWS\System32\wpa.dbl
              [2004/08/11 18:00:37 | 01,326,080 | ---- | C] () -- C:\WINDOWS\System32\webfldrs.msi
              [2004/08/11 18:00:37 | 00,937,984 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.sve
              [2004/08/11 18:00:37 | 00,040,448 | ---- | C] () -- C:\WINDOWS\System32\wiasf.ax
              [2004/08/11 18:00:37 | 00,032,674 | ---- | C] () -- C:\WINDOWS\System32\winhelp.hlp
              [2004/08/11 18:00:37 | 00,004,096 | ---- | C] () -- C:\WINDOWS\System32\wdl.trm
              [2004/08/11 18:00:36 | 01,309,184 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.deu
              [2004/08/11 18:00:36 | 01,095,680 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.nld
              [2004/08/11 18:00:36 | 00,957,440 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.enu
              [2004/08/11 18:00:36 | 00,867,840 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.ita
              [2004/08/11 18:00:36 | 00,786,944 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.fra
              [2004/08/11 18:00:36 | 00,750,080 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.esn
              [2004/08/11 18:00:36 | 00,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.sve
              [2004/08/11 18:00:36 | 00,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.nld
              [2004/08/11 18:00:36 | 00,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.ita
              [2004/08/11 18:00:36 | 00,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.fra
              [2004/08/11 18:00:36 | 00,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.esn
              [2004/08/11 18:00:36 | 00,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.enu
              [2004/08/11 18:00:36 | 00,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.deu
              [2004/08/11 18:00:36 | 00,053,248 | ---- | C] () -- C:\WINDOWS\System32\vbicodec.ax
              [2004/08/11 18:00:36 | 00,018,832 | ---- | C] () -- C:\WINDOWS\System32\v7vga.rom
              [2004/08/11 18:00:36 | 00,001,129 | ---- | C] () -- C:\WINDOWS\System32\vwipxspx.exe
              [2004/08/11 18:00:35 | 00,089,588 | ---- | C] () -- C:\WINDOWS\System32\unicode.nls
              [2004/08/11 18:00:35 | 00,089,588 | ---- | C] () -- C:\WINDOWS\System32\dllcache\unicode.nls
              [2004/08/11 18:00:35 | 00,003,577 | ---- | C] () -- C:\WINDOWS\System32\sysprtj.sep
              [2004/08/11 18:00:35 | 00,003,214 | ---- | C] () -- C:\WINDOWS\System32\sysprint.sep
              [2004/08/11 18:00:35 | 00,000,862 | ---- | C] () -- C:\WINDOWS\System32\termcap
              [2004/08/11 18:00:34 | 00,046,133 | ---- | C] () -- C:\WINDOWS\System32\sqlsodbc.chm
              [2004/08/11 18:00:31 | 00,262,148 | ---- | C] () -- C:\WINDOWS\System32\sortkey.nls
              [2004/08/11 18:00:31 | 00,262,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sortkey.nls
              [2004/08/11 18:00:31 | 00,023,044 | ---- | C] () -- C:\WINDOWS\System32\sorttbls.nls
              [2004/08/11 18:00:31 | 00,023,044 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sorttbls.nls
              [2004/08/11 18:00:30 | 00,240,120 | ---- | C] () -- C:\WINDOWS\System32\setup.bmp
              [2004/08/11 18:00:30 | 00,059,167 | ---- | C] () -- C:\WINDOWS\System\setup.inf
              [2004/08/11 18:00:30 | 00,036,364 | ---- | C] () -- C:\WINDOWS\System32\secpol.msc
              [2004/08/11 18:00:30 | 00,033,464 | ---- | C] () -- C:\WINDOWS\System32\services.msc
              [2004/08/11 18:00:30 | 00,011,753 | ---- | C] () -- C:\WINDOWS\System32\setver.exe
              [2004/08/11 18:00:30 | 00,007,208 | ---- | C] () -- C:\WINDOWS\System32\secupd.sig
              [2004/08/11 18:00:30 | 00,007,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\secupd.sig
              [2004/08/11 18:00:30 | 00,007,116 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\services
              [2004/08/11 18:00:30 | 00,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
              [2004/08/11 18:00:30 | 00,004,569 | ---- | C] () -- C:\WINDOWS\System32\dllcache\secupd.dat
              [2004/08/11 18:00:30 | 00,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe
              [2004/08/11 18:00:29 | 01,290,752 | ---- | C] () -- C:\WINDOWS\System32\quartz(3).dll
              [2004/08/11 18:00:29 | 01,290,752 | ---- | C] () -- C:\WINDOWS\System32\quartz(2).dll
              [2004/08/11 18:00:29 | 00,044,451 | R--- | C] () -- C:\WINDOWS\System32\rsop.msc
              [2004/08/11 18:00:29 | 00,008,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\rasacd.sys
              [2004/08/11 18:00:29 | 00,003,338 | ---- | C] () -- C:\WINDOWS\System32\redir.exe
              [2004/08/11 18:00:29 | 00,003,178 | ---- | C] () -- C:\WINDOWS\System32\rsvpcnts.h
              [2004/08/11 18:00:29 | 00,003,167 | ---- | C] () -- C:\WINDOWS\System32\rsaci.rat
              [2004/08/11 18:00:29 | 00,001,818 | ---- | C] () -- C:\WINDOWS\System32\rasctrnm.h
              [2004/08/11 18:00:28 | 00,458,318 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
              [2004/08/11 18:00:28 | 00,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
              [2004/08/11 18:00:28 | 00,078,340 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
              [2004/08/11 18:00:28 | 00,058,273 | R--- | C] () -- C:\WINDOWS\System32\perfmon.msc
              [2004/08/11 18:00:28 | 00,035,755 | ---- | C] () -- C:\WINDOWS\System32\prncnfg.vbs
              [2004/08/11 18:00:28 | 00,032,546 | ---- | C] () -- C:\WINDOWS\System32\prnmngr.vbs
              [2004/08/11 18:00:28 | 00,029,454 | ---- | C] () -- C:\WINDOWS\System32\prnport.vbs
              [2004/08/11 18:00:28 | 00,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
              [2004/08/11 18:00:28 | 00,025,415 | ---- | C] () -- C:\WINDOWS\System32\prndrvr.vbs
              [2004/08/11 18:00:28 | 00,021,527 | ---- | C] () -- C:\WINDOWS\System32\prnjobs.vbs
              [2004/08/11 18:00:28 | 00,015,860 | ---- | C] () -- C:\WINDOWS\System32\prnqctl.vbs
              [2004/08/11 18:00:28 | 00,003,708 | ---- | C] () -- C:\WINDOWS\System32\pubprn.vbs
              [2004/08/11 18:00:28 | 00,003,010 | ---- | C] () -- C:\WINDOWS\System32\pschdcnt.h
              [2004/08/11 18:00:28 | 00,000,799 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\protocol
              [2004/08/11 18:00:28 | 00,000,435 | ---- | C] () -- C:\WINDOWS\System32\perfwci.h
              [2004/08/11 18:00:28 | 00,000,427 | ---- | C] () -- C:\WINDOWS\System32\perfci.h
              [2004/08/11 18:00:28 | 00,000,140 | ---- | C] () -- C:\WINDOWS\System32\perffilt.h
              [2004/08/11 18:00:28 | 00,000,114 | ---- | C] () -- C:\WINDOWS\System32\pcl.sep
              [2004/08/11 18:00:28 | 00,000,051 | ---- | C] () -- C:\WINDOWS\System32\pscript.sep
              [2004/08/11 18:00:27 | 00,007,208 | ---- | C] () -- C:\WINDOWS\System32\oembios.sig
              [2004/08/11 18:00:27 | 00,007,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.sig
              [2004/08/11 18:00:27 | 00,004,627 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
              [2004/08/11 18:00:27 | 00,004,627 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.dat
              [2004/08/11 18:00:26 | 13,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
              [2004/08/11 18:00:26 | 13,107,200 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.bin
              [2004/08/11 18:00:25 | 00,049,196 | ---- | C] () -- C:\WINDOWS\System32\noise.fra
              [2004/08/11 18:00:25 | 00,048,794 | ---- | C] () -- C:\WINDOWS\System32\ntimage.gif
              [2004/08/11 18:00:25 | 00,032,968 | ---- | C] () -- C:\WINDOWS\System32\ntmsoprq.msc
              [2004/08/11 18:00:25 | 00,026,209 | ---- | C] () -- C:\WINDOWS\System32\ntmsmgr.msc
              [2004/08/11 18:00:25 | 00,019,618 | ---- | C] () -- C:\WINDOWS\System32\noise.ita
              [2004/08/11 18:00:25 | 00,013,730 | ---- | C] () -- C:\WINDOWS\System32\noise.sve
              [2004/08/11 18:00:25 | 00,013,256 | ---- | C] () -- C:\WINDOWS\System32\noise.nld
              [2004/08/11 18:00:25 | 00,004,310 | ---- | C] () -- C:\WINDOWS\System32\odbcconf.rsp
              [2004/08/11 18:00:25 | 00,003,252 | ---- | C] () -- C:\WINDOWS\System32\nw16.exe
              [2004/08/11 18:00:24 | 00,149,848 | ---- | C] () -- C:\WINDOWS\System32\noise.deu
              [2004/08/11 18:00:24 | 00,019,684 | ---- | C] () -- C:\WINDOWS\System32\noise.esn
              [2004/08/11 18:00:24 | 00,007,052 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe
              [2004/08/11 18:00:24 | 00,000,751 | ---- | C] () -- C:\WINDOWS\System32\noise.enu
              [2004/08/11 18:00:24 | 00,000,751 | ---- | C] () -- C:\WINDOWS\System32\noise.eng
              [2004/08/11 18:00:24 | 00,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
              [2004/08/11 18:00:24 | 00,000,407 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\networks
              [2004/08/11 18:00:23 | 00,102,446 | ---- | C] () -- C:\WINDOWS\System32\net.hlp
              [2004/08/11 18:00:21 | 00,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo(2).dll
              [2004/08/11 18:00:21 | 00,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe
              [2004/08/11 18:00:20 | 00,148,992 | ---- | C] () -- C:\WINDOWS\System32\mpg2splt.ax
              [2004/08/11 18:00:20 | 00,118,272 | ---- | C] () -- C:\WINDOWS\System32\mpeg2data.ax
              [2004/08/11 18:00:20 | 00,002,755 | ---- | C] () -- C:\WINDOWS\System32\mqprfsym.h
              [2004/08/11 18:00:19 | 00,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
              [2004/08/11 18:00:19 | 00,673,088 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mlang.dat
              [2004/08/11 18:00:19 | 00,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
              [2004/08/11 18:00:19 | 00,039,274 | ---- | C] () -- C:\WINDOWS\System32\mem.exe
              [2004/08/11 18:00:19 | 00,001,492 | ---- | C] () -- C:\WINDOWS\System32\mmdriver.inf
              [2004/08/11 18:00:18 | 00,265,948 | ---- | C] () -- C:\WINDOWS\System32\locale.nls
              [2004/08/11 18:00:18 | 00,265,948 | ---- | C] () -- C:\WINDOWS\System32\dllcache\locale.nls
              [2004/08/11 18:00:18 | 00,042,166 | ---- | C] () -- C:\WINDOWS\System32\lusrmgr.msc
              [2004/08/11 18:00:18 | 00,007,046 | ---- | C] () -- C:\WINDOWS\System32\l_intl.nls
              [2004/08/11 18:00:18 | 00,007,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\l_intl.nls
              [2004/08/11 18:00:18 | 00,003,683 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\lmhosts.sam
              [2004/08/11 18:00:18 | 00,001,131 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com
              [2004/08/11 18:00:18 | 00,000,487 | ---- | C] () -- C:\WINDOWS\System32\login.cmd
              [2004/08/11 18:00:18 | 00,000,168 | ---- | C] () -- C:\WINDOWS\System32\l_except.nls
              [2004/08/11 18:00:18 | 00,000,168 | ---- | C] () -- C:\WINDOWS\System32\dllcache\l_except.nls
              [2004/08/11 18:00:17 | 00,956,990 | ---- | C] () -- C:\WINDOWS\System32\instcat.sql
              [2004/08/11 18:00:17 | 00,014,710 | ---- | C] () -- C:\WINDOWS\System32\kb16.com
              [2004/08/11 18:00:16 | 00,057,667 | ---- | C] () -- C:\WINDOWS\System32\ieuinit.inf
              [2004/08/11 18:00:16 | 00,000,929 | ---- | C] () -- C:\WINDOWS\System32\homepage.inf
              [2004/08/11 18:00:16 | 00,000,027 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\hosts
              [2004/08/11 18:00:15 | 00,021,232 | ---- | C] () -- C:\WINDOWS\System32\graphics.pro
              [2004/08/11 18:00:15 | 00,019,694 | ---- | C] () -- C:\WINDOWS\System32\graphics.com
              [2004/08/11 18:00:14 | 03,440,660 | ---- | C] () -- C:\WINDOWS\System32\drivers\gm.dls
              [2004/08/11 18:00:14 | 03,440,660 | ---- | C] () -- C:\WINDOWS\System32\dllcache\gm.dls
              [2004/08/11 18:00:14 | 00,034,871 | ---- | C] () -- C:\WINDOWS\System32\gpedit.msc
              [2004/08/11 18:00:14 | 00,032,760 | ---- | C] () -- C:\WINDOWS\System32\fsmgmt.msc
              [2004/08/11 18:00:14 | 00,024,772 | ---- | C] () -- C:\WINDOWS\System32\geo.nls
              [2004/08/11 18:00:14 | 00,024,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\geo.nls
              [2004/08/11 18:00:14 | 00,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe
              [2004/08/11 18:00:14 | 00,000,080 | ---- | C] () -- C:\WINDOWS\explorer.scf
              [2004/08/11 18:00:13 | 00,056,678 | ---- | C] () -- C:\WINDOWS\System32\eventvwr.msc
              [2004/08/11 18:00:13 | 00,012,642 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe
              [2004/08/11 18:00:13 | 00,008,424 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe
              [2004/08/11 18:00:13 | 00,006,708 | ---- | C] () -- C:\WINDOWS\System32\esentprf.hxx
              [2004/08/11 18:00:12 | 00,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
              [2004/08/11 18:00:12 | 00,000,081 | ---- | C] () -- C:\WINDOWS\System32\dsound.vxd
              [2004/08/11 18:00:05 | 00,053,840 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe
              [2004/08/11 18:00:04 | 00,059,904 | ---- | C] () -- C:\WINDOWS\System32\devenum(2).dll
              [2004/08/11 18:00:04 | 00,041,397 | ---- | C] () -- C:\WINDOWS\System32\dfrg.msc
              [2004/08/11 18:00:04 | 00,033,673 | ---- | C] () -- C:\WINDOWS\System32\diskmgmt.msc
              [2004/08/11 18:00:04 | 00,033,079 | ---- | C] () -- C:\WINDOWS\System32\devmgmt.msc
              [2004/08/11 18:00:04 | 00,020,634 | ---- | C] () -- C:\WINDOWS\System32\debug.exe
              [2004/08/11 18:00:04 | 00,008,386 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ctype.nls
              [2004/08/11 18:00:04 | 00,008,386 | ---- | C] () -- C:\WINDOWS\System32\ctype.nls
              [2004/08/11 18:00:04 | 00,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
              [2004/08/11 18:00:03 | 00,071,859 | ---- | C] () -- C:\WINDOWS\System32\cliconf.chm
              [2004/08/11 18:00:03 | 00,061,172 | ---- | C] () -- C:\WINDOWS\System32\cmmgr32.hlp
              [2004/08/11 18:00:03 | 00,050,620 | ---- | C] () -- C:\WINDOWS\System32\command.com
              [2004/08/11 18:00:03 | 00,040,505 | ---- | C] () -- C:\WINDOWS\System32\cmdlib.wsc
              [2004/08/11 18:00:03 | 00,038,302 | ---- | C] () -- C:\WINDOWS\System32\compmgmt.msc
              [2004/08/11 18:00:03 | 00,000,064 | ---- | C] () -- C:\WINDOWS\System32\cmos.ram
              [2004/08/11 18:00:02 | 00,239,616 | ---- | C] () -- C:\WINDOWS\System32\wstrenderer.ax
              [2004/08/11 18:00:02 | 00,196,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_950.nls
              [2004/08/11 18:00:02 | 00,196,642 | ---- | C] () -- C:\WINDOWS\System32\c_950.nls
              [2004/08/11 18:00:02 | 00,196,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_949.nls
              [2004/08/11 18:00:02 | 00,196,642 | ---- | C] () -- C:\WINDOWS\System32\c_949.nls
              [2004/08/11 18:00:02 | 00,196,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_936.nls
              [2004/08/11 18:00:02 | 00,196,642 | ---- | C] () -- C:\WINDOWS\System32\c_936.nls
              [2004/08/11 18:00:02 | 00,167,219 | ---- | C] () -- C:\WINDOWS\System32\pagefileconfig.vbs
              [2004/08/11 18:00:02 | 00,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_932.nls
              [2004/08/11 18:00:02 | 00,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_932.nls
              [2004/08/11 18:00:02 | 00,139,810 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20261.nls
              [2004/08/11 18:00:02 | 00,139,810 | ---- | C] () -- C:\WINDOWS\System32\c_20261.nls
              [2004/08/11 18:00:02 | 00,097,965 | ---- | C] () -- C:\WINDOWS\System32\eventquery.vbs
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_874.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_874.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_865.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_865.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_863.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_863.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_861.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_861.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_860.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_860.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_850.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_850.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_775.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_775.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_437.nls
              [2004/08/11 18:00:02 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_437.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_500.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_500.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28605.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28605.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28598.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28598.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28593.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28593.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28592.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28592.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28591.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28591.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21866.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21866.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20905.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20905.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20866.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20866.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1258.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1258.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1257.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1257.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1256.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1256.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1255.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1255.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1254.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1254.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1253.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1253.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1252.nls
              [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1252.nls

              shoyou

                Topic Starter


                Beginner

                Re: computer keep logging off
                « Reply #36 on: May 09, 2010, 01:04:17 PM »
                | C] () -- C:\WINDOWS\System32\dllcache\c_1251.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1251.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1250.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1250.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1026.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1026.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10079.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10079.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10000.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10000.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_037.nls
                [2004/08/11 18:00:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_037.nls
                [2004/08/11 18:00:02 | 00,042,339 | ---- | C] () -- C:\WINDOWS\System32\certmgr.msc
                [2004/08/11 18:00:02 | 00,041,762 | ---- | C] () -- C:\WINDOWS\System32\ciadv.msc
                [2004/08/11 18:00:02 | 00,028,420 | ---- | C] () -- C:\WINDOWS\System32\bios1.rom
                [2004/08/11 18:00:02 | 00,008,191 | ---- | C] () -- C:\WINDOWS\System32\bios4.rom
                [2004/08/11 18:00:02 | 00,000,075 | ---- | C] () -- C:\WINDOWS\System32\View Channels.scf
                [2004/08/11 18:00:01 | 00,080,546 | ---- | C] () -- C:\WINDOWS\System32\dllcache\apps.chm
                [2004/08/11 18:00:01 | 00,012,498 | ---- | C] () -- C:\WINDOWS\System32\append.exe
                [2004/08/11 18:00:00 | 00,002,233 | ---- | C] () -- C:\WINDOWS\System32\dllcache\12520850.cpx
                [2004/08/11 18:00:00 | 00,002,233 | ---- | C] () -- C:\WINDOWS\System32\12520850.cpx
                [2004/08/11 18:00:00 | 00,002,151 | ---- | C] () -- C:\WINDOWS\System32\dllcache\12520437.cpx
                [2004/08/11 18:00:00 | 00,002,151 | ---- | C] () -- C:\WINDOWS\System32\12520437.cpx
                [2004/08/11 18:00:00 | 00,000,707 | ---- | C] () -- C:\WINDOWS\_default.pif
                [2004/08/03 23:59:44 | 00,096,512 | ---- | C] () -- C:\WINDOWS\System32\drivers\atapi.sys
                [2003/01/07 16:05:08 | 00,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
                [2003/01/07 16:05:06 | 00,000,551 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.H
                [2001/08/17 23:36:42 | 00,055,296 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe
                 
                ========== LOP Check ==========
                 
                [2009/12/14 20:10:21 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\SACore
                [2010/04/07 02:01:17 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\Canon
                [2009/12/25 22:54:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\GetRightToGo
                [2010/04/24 04:40:58 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\IMVU
                [2010/03/07 00:16:44 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\IMVUClient
                [2009/12/15 18:03:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\Leadertech
                [2010/02/15 13:58:45 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\PlayFirst
                [2010/04/16 18:43:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\uTorrent
                [2010/02/13 16:27:29 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\Vivox
                [2010/04/04 01:31:50 | 00,000,000 | ---D | M] -- C:\Documents and Settings\shon\Application Data\Vso
                [2010/05/03 19:00:01 | 00,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\apehnsgm.job
                [2010/04/30 18:55:02 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At1.job
                [2010/04/30 18:55:16 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At10.job
                [2010/04/30 18:55:18 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At11.job
                [2010/04/30 18:55:19 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At12.job
                [2010/04/30 18:55:20 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At13.job
                [2010/04/30 18:55:24 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At14.job
                [2010/04/30 18:55:25 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At15.job
                [2010/04/30 18:55:26 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At16.job
                [2010/04/30 18:55:27 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At17.job
                [2010/04/30 18:55:28 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At18.job
                [2010/05/02 21:42:05 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At19.job
                [2010/04/30 18:55:05 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At2.job
                [2010/04/30 18:55:32 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At20.job
                [2010/04/30 18:55:33 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At21.job
                [2010/04/30 18:55:34 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At22.job
                [2010/04/30 18:55:35 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At23.job
                [2010/04/30 18:55:36 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At24.job
                [2010/04/30 18:58:09 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At25.job
                [2010/04/30 18:58:10 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At26.job
                [2010/04/30 18:58:13 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At27.job
                [2010/04/30 18:58:15 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At28.job
                [2010/04/30 18:58:17 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At29.job
                [2010/04/30 18:55:06 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At3.job
                [2010/04/30 18:58:24 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At30.job
                [2010/04/30 18:58:25 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At31.job
                [2010/04/30 18:58:27 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At32.job
                [2010/04/30 18:58:28 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At33.job
                [2010/04/30 18:58:30 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At34.job
                [2010/04/30 18:58:31 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At35.job
                [2010/04/30 18:58:32 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At36.job
                [2010/04/30 18:58:34 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At37.job
                [2010/04/30 18:58:36 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At38.job
                [2010/04/30 18:58:38 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At39.job
                [2010/04/30 18:55:07 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At4.job
                [2010/04/30 18:58:39 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At40.job
                [2010/05/03 19:00:15 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At41.job
                [2010/04/30 18:58:41 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At42.job
                [2010/04/30 18:58:42 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At43.job
                [2010/05/02 22:00:13 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At44.job
                [2010/04/30 18:58:44 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At45.job
                [2010/04/30 18:58:46 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At46.job
                [2010/04/30 18:58:48 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At47.job
                [2010/04/30 18:58:49 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At48.job
                [2010/05/02 21:45:57 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At49.job
                [2010/04/30 18:55:10 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At5.job
                [2010/05/02 21:45:59 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At50.job
                [2010/05/02 21:46:02 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At51.job
                [2010/05/02 21:46:03 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At52.job
                [2010/05/02 21:46:04 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At53.job
                [2010/05/02 21:46:07 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At54.job
                [2010/05/02 21:46:08 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At55.job
                [2010/05/02 21:46:10 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At56.job
                [2010/05/02 21:46:11 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At57.job
                [2010/05/02 21:46:14 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At58.job
                [2010/05/02 21:46:15 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At59.job
                [2010/04/30 18:55:12 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At6.job
                [2010/05/02 21:46:16 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At60.job
                [2010/05/02 21:46:17 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At61.job

                shoyou

                  Topic Starter


                  Beginner

                  Re: computer keep logging off
                  « Reply #37 on: May 09, 2010, 01:04:31 PM »
                  [2010/05/02 21:46:18 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At62.job
                  [2010/05/02 21:46:20 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At63.job
                  [2010/05/02 21:46:21 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At64.job
                  [2010/05/03 19:00:16 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At65.job
                  [2010/05/02 21:46:23 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At66.job
                  [2010/05/02 21:46:25 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At67.job
                  [2010/05/02 22:00:14 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At68.job
                  [2010/05/02 21:46:28 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At69.job
                  [2010/04/30 18:55:13 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At7.job
                  [2010/05/02 21:46:29 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At70.job
                  [2010/05/02 21:46:30 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At71.job
                  [2010/05/02 21:46:31 | 00,000,416 | ---- | M] () -- C:\WINDOWS\Tasks\At72.job
                  [2010/04/30 18:55:14 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At8.job
                  [2010/04/30 18:55:21 | 00,000,346 | ---- | M] () -- C:\WINDOWS\Tasks\At9.job
                  [2010/05/03 19:00:06 | 00,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\hienkikt.job
                  [2010/05/03 19:00:07 | 00,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\kkrjaevf.job
                  [2010/05/03 20:12:22 | 00,000,296 | ---- | M] () -- C:\WINDOWS\Tasks\lrbivkck.job
                  [2010/04/15 04:15:03 | 00,000,338 | ---- | M] () -- C:\WINDOWS\Tasks\McDefragTask.job
                  [2009/12/06 23:13:17 | 00,000,316 | ---- | M] () -- C:\WINDOWS\Tasks\McQcTask.job
                  [2010/03/10 22:13:50 | 00,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\OGALogon.job
                  [2010/05/03 20:12:22 | 00,000,296 | ---- | M] () -- C:\WINDOWS\Tasks\ovryntpk.job
                  [2010/05/03 20:12:22 | 00,000,296 | ---- | M] () -- C:\WINDOWS\Tasks\rubgyeqn.job
                  [2010/05/03 20:12:22 | 00,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\ssduhoxr.job
                  [2010/05/03 20:12:22 | 00,000,292 | ---- | M] () -- C:\WINDOWS\Tasks\vuviwjms.job
                   
                  ========== Purity Check ==========
                   
                   
                  < End of report >

                  Dr Jay

                  • Malware Removal Specialist


                  • Specialist
                  • Moderator emeritus
                  • Thanked: 119
                  • Experience: Guru
                  • OS: Windows 10
                  Re: computer keep logging off
                  « Reply #38 on: May 09, 2010, 09:11:54 PM »
                  I think atapi.sys is infected, which is why the computer will not boot.

                  Please open OTLPE -- Click None and paste this in the Custom Scans box:

                  Code: [Select]
                  /md5start
                  atapi.sys
                  /md5stop

                  Then click Run Scan. It shall launch a log. Please post it in your next reply.
                  ~Dr Jay

                  shoyou

                    Topic Starter


                    Beginner

                    Re: computer keep logging off
                    « Reply #39 on: May 10, 2010, 06:45:03 PM »
                    OTL logfile created on: 5/10/2010 4:07:30 PM - Run
                    OTLPE by OldTimer - Version 3.1.23.0     Folder = X:\Programs\OTLPE
                    Windows XP Professional Edition  (Version = 5.1.2600) - Type = NTWorkstation
                    Internet Explorer (Version = 8.0.6001.18702)
                    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
                     
                    1,022.00 Mb Total Physical Memory | 798.00 Mb Available Physical Memory | 78.00% Memory free
                    925.00 Mb Paging File | 862.00 Mb Available in Paging File | 93.00% Paging File free
                    Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
                     
                    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
                    Drive C: | 108.59 Gb Total Space | 78.99 Gb Free Space | 72.75% Space Free | Partition Type: NTFS
                    Drive D: | 489.23 Mb Total Space | 462.96 Mb Free Space | 94.63% Space Free | Partition Type: FAT
                    Drive E: | 36.31 Gb Total Space | 1.12 Gb Free Space | 3.07% Space Free | Partition Type: NTFS
                    F: Drive not present or media not loaded
                    G: Drive not present or media not loaded
                    H: Drive not present or media not loaded
                    I: Drive not present or media not loaded
                    Drive X: | 272.98 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
                     
                    Computer Name: REATOGO
                    Current User Name: SYSTEM
                    Logged in as Administrator.
                     
                    Current Boot Mode: Normal
                    Scan Mode: All users
                    Company Name Whitelist: Off
                    Skip Microsoft Files: Off
                    File Age = 30 Days
                    Output = Standard
                     
                    ========== Standard Registry (All) ==========
                     
                     
                    ========== Internet Explorer ==========
                     
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =  [binary data]
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
                    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                     
                     
                    IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                    IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.dell.com
                    IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                    IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/hws/sb/dell-inc/en/side.html?channel=us
                    IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                    IE - HKU\Administrator_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                    IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                     
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data]
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE8ENUS/701
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = www.bing.com [binary data]
                    IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com
                    IE - HKU\DEFAULT_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                    IE - HKU\DEFAULT_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                     
                    IE - HKU\NetworkService_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                     
                    IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data]
                    IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                    IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
                    IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                    IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
                    IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.sbc.com/dsl
                    IE - HKU\shon_ON_C\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                    IE - HKU\shon_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                    IE - HKU\shon_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                     
                    FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2010/04/21 20:52:01 | 00,000,000 | ---D | M]
                    FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: c:\program files\real\realplayer\browserrecord\firefox\ext [2009/12/15 00:59:04 | 00,000,000 | ---D | M]
                    FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2010/01/31 20:44:27 | 00,000,000 | ---D | M]
                    FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MyWebSearch\bar\1.bin File not found
                    FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2010/03/24 02:55:03 | 00,000,000 | ---D | M]
                    FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/04/02 18:51:34 | 00,000,000 | ---D | M]
                    FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/04/02 18:51:34 | 00,000,000 | ---D | M]
                     
                    [2010/04/29 02:54:30 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
                    [2010/04/02 18:51:16 | 00,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
                    [2010/01/31 20:45:40 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
                    [2010/04/02 18:51:15 | 00,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
                    [2010/04/02 18:51:15 | 00,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
                    [2010/01/31 20:44:21 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
                    [2010/04/02 18:51:21 | 00,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
                    [2007/03/22 23:23:30 | 00,017,248 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
                    [2010/03/19 16:28:09 | 00,238,776 | ---- | M] (Pando Networks) -- C:\Program Files\Mozilla Firefox\plugins\npPandoWebInst.dll
                    [2010/03/10 22:29:12 | 00,140,864 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
                    [2009/12/15 00:59:27 | 00,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
                    [2010/03/10 22:28:43 | 00,098,304 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
                    [2010/01/15 20:13:03 | 00,001,394 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
                    [2010/01/15 20:13:03 | 00,002,193 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
                    [2010/02/27 17:32:43 | 00,002,191 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
                    [2010/01/15 20:13:03 | 00,001,534 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
                    [2010/01/15 20:13:03 | 00,002,344 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
                    [2010/01/15 20:13:03 | 00,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
                    [2010/01/15 20:13:03 | 00,001,178 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml
                    [2010/01/15 20:13:03 | 00,001,096 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo.xml
                     
                    O1 HOSTS File: (27 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
                    O1 - Hosts: 127.0.0.1       localhost
                    O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
                    O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
                    O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
                    O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\Program Files\real\realplayer\rpbrowserrecordplugin.dll (RealPlayer)
                    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
                    O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions)
                    O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
                    O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
                    O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                    O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\Program Files\BAE\BAE.dll (Dell Inc.)
                    O2 - BHO: (MSN Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll (Microsoft Corp.)
                    O2 - BHO: (no name) - {d3df614d-7ecc-4b00-a669-fba8f1f033b3} -  File not found
                    O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
                    O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
                    O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
                    O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                    O3 - HKLM\..\Toolbar: (MSN Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll (Microsoft Corp.)
                    O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                    O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                    O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O3 - HKU\DEFAULT_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O3 - HKU\shon_ON_C\..\Toolbar\ShellBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                    O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                    O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                    O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
                    O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
                    O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\isuspm .exe ()
                    O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe File not found
                    O4 - HKLM..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
                    O4 - HKLM..\Run: [MPFExe] C:\Program Files\McAfee.com\Personal Firewall\MpfTray.exe ()
                    O4 - HKLM..\Run: [nmapp] C:\Program Files\Pure Networks\Network Magic\nmapp.exe ()
                    O4 - HKLM..\Run: [nmctxth] C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe ()
                    O4 - HKLM..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
                    O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask .exe ()
                    O4 - HKLM..\Run: [smss32.exe] C:\WINDOWS\System32\smss32.exe File not found
                    O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe ()
                    O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe ()
                    O4 - HKU\Administrator_ON_C..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
                    O4 - HKU\Administrator_ON_C..\Run: [DellSupport] C:\Program Files\Dell Support\DSAgnt.exe ()
                    O4 - HKU\DEFAULT_ON_C..\Run: [smss32.exe] C:\WINDOWS\System32\smss32.exe File not found
                    O4 - HKU\shon_ON_C..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
                    O4 - HKU\shon_ON_C..\Run: [DellSupport] C:\Program Files\Dell Support\DSAgnt.exe ()
                    O4 - HKU\shon_ON_C..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe ()
                    O4 - HKU\shon_ON_C..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe ()
                    O4 - HKU\shon_ON_C..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe ()
                    O4 - HKU\Administrator_ON_C..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe (Nero AG)
                    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
                    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
                    O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
                    O7 - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                    O7 - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                    O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
                    O7 - HKU\shon_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                    O7 - HKU\shon_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                    O8 - Extra context menu item: &Google Search - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O8 - Extra context menu item: &Translate English Word - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O8 - Extra context menu item: Backward Links - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O8 - Extra context menu item: Cached Snapshot of Page - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
                    O8 - Extra context menu item: Similar Pages - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O8 - Extra context menu item: Translate Page into English - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                    O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
                    O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\shon\Start Menu\Programs\IMVU\Run IMVU.lnk ()
                    O9 - Extra Button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
                    O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
                    O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
                    O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
                    O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
                    O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                    O15 - HKLM\..Trusted Domains: buy-security-essentials.com ([]http in Trusted sites)
                    O15 - HKLM\..Trusted Domains: get-key-se10.com ([]http in Trusted sites)
                    O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
                    O15 - HKU\DEFAULT_ON_C\..Trusted Domains: buy-security-essentials.com ([]http in Trusted sites)
                    O15 - HKU\DEFAULT_ON_C\..Trusted Domains: download-soft-package.com ([]http in Trusted sites)
                    O15 - HKU\DEFAULT_ON_C\..Trusted Domains: download-software-package.com ([]http in Trusted sites)
                    O15 - HKU\DEFAULT_ON_C\..Trusted Domains: get-key-se10.com ([]http in Trusted sites)
                    O15 - HKU\DEFAULT_ON_C\..Trusted Domains: is-software-download.com ([]http in Trusted sites)
                    O15 - HKU\shon_ON_C\..Trusted Domains: moove.com ([]* in Trusted sites)
                    O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab (Reg Error: Key error.)
                    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                    O16 - DPF: {C8AEB218-8B7A-4E15-AC17-0EE8D99B80EB} http://archives.gametap.com/static/cab_headless/GameTapWebUpdater.cab (GameTap Web Updater)
                    O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.4.2/jinstall-1_4_2_03-windows-i586.cab (Java Plug-in 1.4.2_03)
                    O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
                    O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}  (Reg Error: Value error.)
                    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
                    O16 - DPF: Microsoft XML Parser for Java file:///C:/WINDOWS/Java/classes/xmldso.cab (Reg Error: Key error.)
                    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
                    O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                    O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\ipp - No CLSID value found
                    O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\msdaipp - No CLSID value found
                    O18 - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
                    O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
                    O18 - Protocol\Handler\pure-go {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\Platform\puresp4.dll (Cisco Systems, Inc.)
                    O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                    O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                    O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                    O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
                    O20 - AppInit_DLLs: (vukotuja.dll) -  File not found
                    O20 - AppInit_DLLs: (lusanuwo.dll) -  File not found
                    O20 - AppInit_DLLs: (c:\windows\system32\bufufodu.dll) - C:\WINDOWS\System32\bufufodu.dll File not found
                    O20 - AppInit_DLLs: (pirotima.dll) -  File not found
                    O20 - AppInit_DLLs: (c:\windows\system32\kitejiru.dll) - C:\WINDOWS\System32\kitejiru.dll File not found
                    O20 - AppInit_DLLs: (c:\windows\system32\jeyiniyo.dll) - C:\WINDOWS\System32\jeyiniyo.dll File not found
                    O20 - AppInit_DLLs: (c:\windows\system32\lazimiki.dll) - C:\WINDOWS\System32\lazimiki.dll File not found
                    O20 - AppInit_DLLs: (gogiyajo.dll) -  File not found
                    O20 - AppInit_DLLs: (c:\windows\system32\fuvatozi.dll) - C:\WINDOWS\System32\fuvatozi.dll File not found
                    O20 - AppInit_DLLs: (yoyudoka.dll) -  File not found
                    O20 - AppInit_DLLs: (c:\windows\system32\fetunigu.dll) - C:\WINDOWS\System32\fetunigu.dll File not found
                    O20 - AppInit_DLLs: (c:\windows\) - c:\windows\ [2010/05/03 18:53:16 | 00,000,000 | ---D | M]
                    O20 - AppInit_DLLs: (c:\windows\system32\fiyobubi.dll) - C:\WINDOWS\System32\fiyobubi.dll File not found
                    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
                    O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\winlogon32.exe) - C:\WINDOWS\System32\winlogon32.exe File not found
                    O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
                    O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
                    O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
                    O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
                    O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
                    O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
                    O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                    O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                    O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                    O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
                    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
                    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
                    O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                    O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                    O24 - Desktop Components:0 (My Current Home Page) - About:Home
                    O27 - HKLM IFEO\MpCmdRun.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                    O27 - HKLM IFEO\MsMpEng.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                    O27 - HKLM IFEO\msseces.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                    O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
                    O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
                    O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
                    O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
                    O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
                    O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
                    O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
                    O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
                    O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
                    O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
                    O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
                    O31 - SafeBoot: AlternateShell - cmd.exe
                    O32 - HKLM CDRom: AutoRun - 1
                    O32 - AutoRun File - [2004/08/11 18:15:00 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
                    O32 - AutoRun File - [2006/03/24 07:06:41 | 00,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
                    O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
                    O35 - comfile [open] -- "%1" %*
                    O35 - exefile [open] -- "%1" %*
                     
                    ========== Custom Scans ==========
                     
                     
                     
                    < MD5 for: ATAPI.SYS  >
                    [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\i386\sp2.cab:atapi.sys
                    [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\$NtServicePackUninstall$\sp3.cab:atapi.sys
                    [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
                    [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
                    [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
                    [2010/05/02 22:01:59 | 00,096,512 | ---- | M] () MD5=5FFB66D7927022F4395069C8267B989E -- C:\WINDOWS\system32\drivers\atapi.sys
                    [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
                    [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
                    [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
                    [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\i386\atapi.sys
                    [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
                    [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
                    < End of report >

                    shoyou

                      Topic Starter


                      Beginner

                      Re: computer keep logging off
                      « Reply #40 on: May 10, 2010, 06:45:31 PM »
                      OTL logfile created on: 5/10/2010 4:07:30 PM - Run
                      OTLPE by OldTimer - Version 3.1.23.0     Folder = X:\Programs\OTLPE
                      Windows XP Professional Edition  (Version = 5.1.2600) - Type = NTWorkstation
                      Internet Explorer (Version = 8.0.6001.18702)
                      Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
                       
                      1,022.00 Mb Total Physical Memory | 798.00 Mb Available Physical Memory | 78.00% Memory free
                      925.00 Mb Paging File | 862.00 Mb Available in Paging File | 93.00% Paging File free
                      Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
                       
                      %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
                      Drive C: | 108.59 Gb Total Space | 78.99 Gb Free Space | 72.75% Space Free | Partition Type: NTFS
                      Drive D: | 489.23 Mb Total Space | 462.96 Mb Free Space | 94.63% Space Free | Partition Type: FAT
                      Drive E: | 36.31 Gb Total Space | 1.12 Gb Free Space | 3.07% Space Free | Partition Type: NTFS
                      F: Drive not present or media not loaded
                      G: Drive not present or media not loaded
                      H: Drive not present or media not loaded
                      I: Drive not present or media not loaded
                      Drive X: | 272.98 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
                       
                      Computer Name: REATOGO
                      Current User Name: SYSTEM
                      Logged in as Administrator.
                       
                      Current Boot Mode: Normal
                      Scan Mode: All users
                      Company Name Whitelist: Off
                      Skip Microsoft Files: Off
                      File Age = 30 Days
                      Output = Standard
                       
                      ========== Standard Registry (All) ==========
                       
                       
                      ========== Internet Explorer ==========
                       
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =  [binary data]
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
                      IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                       
                       
                      IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                      IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.dell.com
                      IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                      IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/hws/sb/dell-inc/en/side.html?channel=us
                      IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                      IE - HKU\Administrator_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                      IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                       
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data]
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE8ENUS/701
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = www.bing.com [binary data]
                      IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com
                      IE - HKU\DEFAULT_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                      IE - HKU\DEFAULT_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                       
                      IE - HKU\NetworkService_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                       
                      IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data]
                      IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                      IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
                      IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                      IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
                      IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.sbc.com/dsl
                      IE - HKU\shon_ON_C\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                      IE - HKU\shon_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                      IE - HKU\shon_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                       
                      FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2010/04/21 20:52:01 | 00,000,000 | ---D | M]
                      FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: c:\program files\real\realplayer\browserrecord\firefox\ext [2009/12/15 00:59:04 | 00,000,000 | ---D | M]
                      FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2010/01/31 20:44:27 | 00,000,000 | ---D | M]
                      FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MyWebSearch\bar\1.bin File not found
                      FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2010/03/24 02:55:03 | 00,000,000 | ---D | M]
                      FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/04/02 18:51:34 | 00,000,000 | ---D | M]
                      FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/04/02 18:51:34 | 00,000,000 | ---D | M]
                       
                      [2010/04/29 02:54:30 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
                      [2010/04/02 18:51:16 | 00,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
                      [2010/01/31 20:45:40 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
                      [2010/04/02 18:51:15 | 00,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
                      [2010/04/02 18:51:15 | 00,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
                      [2010/01/31 20:44:21 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
                      [2010/04/02 18:51:21 | 00,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
                      [2007/03/22 23:23:30 | 00,017,248 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
                      [2010/03/19 16:28:09 | 00,238,776 | ---- | M] (Pando Networks) -- C:\Program Files\Mozilla Firefox\plugins\npPandoWebInst.dll
                      [2010/03/10 22:29:12 | 00,140,864 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
                      [2009/12/15 00:59:27 | 00,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
                      [2010/03/10 22:28:43 | 00,098,304 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
                      [2010/01/15 20:13:03 | 00,001,394 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
                      [2010/01/15 20:13:03 | 00,002,193 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
                      [2010/02/27 17:32:43 | 00,002,191 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
                      [2010/01/15 20:13:03 | 00,001,534 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
                      [2010/01/15 20:13:03 | 00,002,344 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
                      [2010/01/15 20:13:03 | 00,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
                      [2010/01/15 20:13:03 | 00,001,178 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml
                      [2010/01/15 20:13:03 | 00,001,096 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo.xml
                       
                      O1 HOSTS File: (27 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
                      O1 - Hosts: 127.0.0.1       localhost
                      O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
                      O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
                      O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
                      O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\Program Files\real\realplayer\rpbrowserrecordplugin.dll (RealPlayer)
                      O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
                      O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions)
                      O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
                      O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
                      O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                      O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\Program Files\BAE\BAE.dll (Dell Inc.)
                      O2 - BHO: (MSN Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll (Microsoft Corp.)
                      O2 - BHO: (no name) - {d3df614d-7ecc-4b00-a669-fba8f1f033b3} -  File not found
                      O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
                      O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
                      O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
                      O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                      O3 - HKLM\..\Toolbar: (MSN Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll (Microsoft Corp.)
                      O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                      O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                      O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O3 - HKU\DEFAULT_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O3 - HKU\shon_ON_C\..\Toolbar\ShellBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                      O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                      O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                      O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
                      O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
                      O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\isuspm .exe ()
                      O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe File not found
                      O4 - HKLM..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
                      O4 - HKLM..\Run: [MPFExe] C:\Program Files\McAfee.com\Personal Firewall\MpfTray.exe ()
                      O4 - HKLM..\Run: [nmapp] C:\Program Files\Pure Networks\Network Magic\nmapp.exe ()
                      O4 - HKLM..\Run: [nmctxth] C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe ()
                      O4 - HKLM..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
                      O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask .exe ()
                      O4 - HKLM..\Run: [smss32.exe] C:\WINDOWS\System32\smss32.exe File not found
                      O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe ()
                      O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe ()
                      O4 - HKU\Administrator_ON_C..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
                      O4 - HKU\Administrator_ON_C..\Run: [DellSupport] C:\Program Files\Dell Support\DSAgnt.exe ()
                      O4 - HKU\DEFAULT_ON_C..\Run: [smss32.exe] C:\WINDOWS\System32\smss32.exe File not found
                      O4 - HKU\shon_ON_C..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
                      O4 - HKU\shon_ON_C..\Run: [DellSupport] C:\Program Files\Dell Support\DSAgnt.exe ()
                      O4 - HKU\shon_ON_C..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe ()
                      O4 - HKU\shon_ON_C..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe ()
                      O4 - HKU\shon_ON_C..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe ()
                      O4 - HKU\Administrator_ON_C..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe (Nero AG)
                      O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
                      O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
                      O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
                      O7 - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                      O7 - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                      O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
                      O7 - HKU\shon_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                      O7 - HKU\shon_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                      O8 - Extra context menu item: &Google Search - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O8 - Extra context menu item: &Translate English Word - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O8 - Extra context menu item: Backward Links - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O8 - Extra context menu item: Cached Snapshot of Page - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
                      O8 - Extra context menu item: Similar Pages - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O8 - Extra context menu item: Translate Page into English - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                      O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
                      O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\shon\Start Menu\Programs\IMVU\Run IMVU.lnk ()
                      O9 - Extra Button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
                      O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
                      O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
                      O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
                      O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
                      O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                      O15 - HKLM\..Trusted Domains: buy-security-essentials.com ([]http in Trusted sites)
                      O15 - HKLM\..Trusted Domains: get-key-se10.com ([]http in Trusted sites)
                      O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
                      O15 - HKU\DEFAULT_ON_C\..Trusted Domains: buy-security-essentials.com ([]http in Trusted sites)
                      O15 - HKU\DEFAULT_ON_C\..Trusted Domains: download-soft-package.com ([]http in Trusted sites)
                      O15 - HKU\DEFAULT_ON_C\..Trusted Domains: download-software-package.com ([]http in Trusted sites)
                      O15 - HKU\DEFAULT_ON_C\..Trusted Domains: get-key-se10.com ([]http in Trusted sites)
                      O15 - HKU\DEFAULT_ON_C\..Trusted Domains: is-software-download.com ([]http in Trusted sites)
                      O15 - HKU\shon_ON_C\..Trusted Domains: moove.com ([]* in Trusted sites)
                      O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab (Reg Error: Key error.)
                      O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                      O16 - DPF: {C8AEB218-8B7A-4E15-AC17-0EE8D99B80EB} http://archives.gametap.com/static/cab_headless/GameTapWebUpdater.cab (GameTap Web Updater)
                      O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.4.2/jinstall-1_4_2_03-windows-i586.cab (Java Plug-in 1.4.2_03)
                      O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                      O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
                      O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}  (Reg Error: Value error.)
                      O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
                      O16 - DPF: Microsoft XML Parser for Java file:///C:/WINDOWS/Java/classes/xmldso.cab (Reg Error: Key error.)
                      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
                      O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                      O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\ipp - No CLSID value found
                      O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\msdaipp - No CLSID value found
                      O18 - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
                      O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
                      O18 - Protocol\Handler\pure-go {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\Platform\puresp4.dll (Cisco Systems, Inc.)
                      O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                      O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                      O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                      O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
                      O20 - AppInit_DLLs: (vukotuja.dll) -  File not found
                      O20 - AppInit_DLLs: (lusanuwo.dll) -  File not found
                      O20 - AppInit_DLLs: (c:\windows\system32\bufufodu.dll) - C:\WINDOWS\System32\bufufodu.dll File not found
                      O20 - AppInit_DLLs: (pirotima.dll) -  File not found
                      O20 - AppInit_DLLs: (c:\windows\system32\kitejiru.dll) - C:\WINDOWS\System32\kitejiru.dll File not found
                      O20 - AppInit_DLLs: (c:\windows\system32\jeyiniyo.dll) - C:\WINDOWS\System32\jeyiniyo.dll File not found
                      O20 - AppInit_DLLs: (c:\windows\system32\lazimiki.dll) - C:\WINDOWS\System32\lazimiki.dll File not found
                      O20 - AppInit_DLLs: (gogiyajo.dll) -  File not found
                      O20 - AppInit_DLLs: (c:\windows\system32\fuvatozi.dll) - C:\WINDOWS\System32\fuvatozi.dll File not found
                      O20 - AppInit_DLLs: (yoyudoka.dll) -  File not found
                      O20 - AppInit_DLLs: (c:\windows\system32\fetunigu.dll) - C:\WINDOWS\System32\fetunigu.dll File not found
                      O20 - AppInit_DLLs: (c:\windows\) - c:\windows\ [2010/05/03 18:53:16 | 00,000,000 | ---D | M]
                      O20 - AppInit_DLLs: (c:\windows\system32\fiyobubi.dll) - C:\WINDOWS\System32\fiyobubi.dll File not found
                      O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
                      O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\winlogon32.exe) - C:\WINDOWS\System32\winlogon32.exe File not found
                      O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
                      O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
                      O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
                      O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
                      O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
                      O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
                      O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                      O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                      O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                      O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
                      O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
                      O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
                      O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                      O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                      O24 - Desktop Components:0 (My Current Home Page) - About:Home
                      O27 - HKLM IFEO\MpCmdRun.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                      O27 - HKLM IFEO\MsMpEng.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                      O27 - HKLM IFEO\msseces.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                      O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
                      O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
                      O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
                      O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
                      O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
                      O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
                      O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
                      O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
                      O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
                      O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
                      O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
                      O31 - SafeBoot: AlternateShell - cmd.exe
                      O32 - HKLM CDRom: AutoRun - 1
                      O32 - AutoRun File - [2004/08/11 18:15:00 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
                      O32 - AutoRun File - [2006/03/24 07:06:41 | 00,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
                      O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
                      O35 - comfile [open] -- "%1" %*
                      O35 - exefile [open] -- "%1" %*
                       
                      ========== Custom Scans ==========
                       
                       
                       
                      < MD5 for: ATAPI.SYS  >
                      [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\i386\sp2.cab:atapi.sys
                      [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\$NtServicePackUninstall$\sp3.cab:atapi.sys
                      [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
                      [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
                      [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
                      [2010/05/02 22:01:59 | 00,096,512 | ---- | M] () MD5=5FFB66D7927022F4395069C8267B989E -- C:\WINDOWS\system32\drivers\atapi.sys
                      [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
                      [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
                      [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
                      [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\i386\atapi.sys
                      [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
                      [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
                      < End of report >
                       
                      < MD5 for: [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (MICROSOFT CORPORATION)  >
                      [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\i386\atapi.sys
                      [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
                      [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
                       
                      < MD5 for: [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (MICROSOFT CORPORATION)  >
                      [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
                       
                      < MD5 for: [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (MICROSOFT CORPORATION)  >
                      [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\ERDNT\cache\atapi.sys
                      [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dllcache\atapi.sys
                       
                      < MD5 for: [2010/05/02 22:01:59 | 00,096,512 | ---- | M] ()  >
                      [2010/05/02 22:01:59 | 00,096,512 | ---- | M] () -- C:\WINDOWS\system32\drivers\atapi.sys
                       
                      < MD5 for: ATAPI.SYS  >
                      [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\i386\sp2.cab:atapi.sys
                      [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\$NtServicePackUninstall$\sp3.cab:atapi.sys
                      [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
                      [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
                      [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys

                      < End of report >

                      shoyou

                        Topic Starter


                        Beginner

                        Re: computer keep logging off
                        « Reply #41 on: May 10, 2010, 06:46:09 PM »
                        OTL logfile created on: 5/10/2010 4:07:30 PM - Run
                        OTLPE by OldTimer - Version 3.1.23.0     Folder = X:\Programs\OTLPE
                        Windows XP Professional Edition  (Version = 5.1.2600) - Type = NTWorkstation
                        Internet Explorer (Version = 8.0.6001.18702)
                        Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
                         
                        1,022.00 Mb Total Physical Memory | 798.00 Mb Available Physical Memory | 78.00% Memory free
                        925.00 Mb Paging File | 862.00 Mb Available in Paging File | 93.00% Paging File free
                        Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
                         
                        %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
                        Drive C: | 108.59 Gb Total Space | 78.99 Gb Free Space | 72.75% Space Free | Partition Type: NTFS
                        Drive D: | 489.23 Mb Total Space | 462.96 Mb Free Space | 94.63% Space Free | Partition Type: FAT
                        Drive E: | 36.31 Gb Total Space | 1.12 Gb Free Space | 3.07% Space Free | Partition Type: NTFS
                        F: Drive not present or media not loaded
                        G: Drive not present or media not loaded
                        H: Drive not present or media not loaded
                        I: Drive not present or media not loaded
                        Drive X: | 272.98 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
                         
                        Computer Name: REATOGO
                        Current User Name: SYSTEM
                        Logged in as Administrator.
                         
                        Current Boot Mode: Normal
                        Scan Mode: All users
                        Company Name Whitelist: Off
                        Skip Microsoft Files: Off
                        File Age = 30 Days
                        Output = Standard
                         
                        ========== Standard Registry (All) ==========
                         
                         
                        ========== Internet Explorer ==========
                         
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =  [binary data]
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
                        IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                         
                         
                        IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                        IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.dell.com
                        IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                        IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/hws/sb/dell-inc/en/side.html?channel=us
                        IE - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig/dell?hl=en&client=dell-inc&channel=us
                        IE - HKU\Administrator_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                        IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                         
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data]
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE8ENUS/701
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = www.bing.com [binary data]
                        IE - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com
                        IE - HKU\DEFAULT_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                        IE - HKU\DEFAULT_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                         
                        IE - HKU\NetworkService_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                         
                        IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = www.bing.com [binary data]
                        IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
                        IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
                        IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                        IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
                        IE - HKU\shon_ON_C\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.sbc.com/dsl
                        IE - HKU\shon_ON_C\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                        IE - HKU\shon_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation)
                        IE - HKU\shon_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
                         
                        FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2010/04/21 20:52:01 | 00,000,000 | ---D | M]
                        FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: c:\program files\real\realplayer\browserrecord\firefox\ext [2009/12/15 00:59:04 | 00,000,000 | ---D | M]
                        FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2010/01/31 20:44:27 | 00,000,000 | ---D | M]
                        FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\MyWebSearch\bar\1.bin File not found
                        FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2010/03/24 02:55:03 | 00,000,000 | ---D | M]
                        FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/04/02 18:51:34 | 00,000,000 | ---D | M]
                        FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/04/02 18:51:34 | 00,000,000 | ---D | M]
                         
                        [2010/04/29 02:54:30 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
                        [2010/04/02 18:51:16 | 00,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
                        [2010/01/31 20:45:40 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
                        [2010/04/02 18:51:15 | 00,023,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
                        [2010/04/02 18:51:15 | 00,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
                        [2010/01/31 20:44:21 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
                        [2010/04/02 18:51:21 | 00,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
                        [2007/03/22 23:23:30 | 00,017,248 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
                        [2010/03/19 16:28:09 | 00,238,776 | ---- | M] (Pando Networks) -- C:\Program Files\Mozilla Firefox\plugins\npPandoWebInst.dll
                        [2010/03/10 22:29:12 | 00,140,864 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
                        [2009/12/15 00:59:27 | 00,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
                        [2010/03/10 22:28:43 | 00,098,304 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
                        [2010/01/15 20:13:03 | 00,001,394 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
                        [2010/01/15 20:13:03 | 00,002,193 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
                        [2010/02/27 17:32:43 | 00,002,191 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
                        [2010/01/15 20:13:03 | 00,001,534 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
                        [2010/01/15 20:13:03 | 00,002,344 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
                        [2010/01/15 20:13:03 | 00,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
                        [2010/01/15 20:13:03 | 00,001,178 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml
                        [2010/01/15 20:13:03 | 00,001,096 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo.xml
                         
                        O1 HOSTS File: (27 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
                        O1 - Hosts: 127.0.0.1       localhost
                        O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
                        O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
                        O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
                        O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\Program Files\real\realplayer\rpbrowserrecordplugin.dll (RealPlayer)
                        O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
                        O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions)
                        O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
                        O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
                        O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                        O2 - BHO: (CBrowserHelperObject Object) - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\Program Files\BAE\BAE.dll (Dell Inc.)
                        O2 - BHO: (MSN Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll (Microsoft Corp.)
                        O2 - BHO: (no name) - {d3df614d-7ecc-4b00-a669-fba8f1f033b3} -  File not found
                        O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
                        O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
                        O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
                        O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                        O3 - HKLM\..\Toolbar: (MSN Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll (Microsoft Corp.)
                        O3 - HKLM\..\Toolbar: (&Google) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                        O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                        O3 - HKU\Administrator_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O3 - HKU\DEFAULT_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O3 - HKU\shon_ON_C\..\Toolbar\ShellBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                        O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Address) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                        O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                        O3 - HKU\shon_ON_C\..\Toolbar\WebBrowser: (&Google) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
                        O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
                        O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\isuspm .exe ()
                        O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe File not found
                        O4 - HKLM..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
                        O4 - HKLM..\Run: [MPFExe] C:\Program Files\McAfee.com\Personal Firewall\MpfTray.exe ()
                        O4 - HKLM..\Run: [nmapp] C:\Program Files\Pure Networks\Network Magic\nmapp.exe ()
                        O4 - HKLM..\Run: [nmctxth] C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe ()
                        O4 - HKLM..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
                        O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\qttask .exe ()
                        O4 - HKLM..\Run: [smss32.exe] C:\WINDOWS\System32\smss32.exe File not found
                        O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe ()
                        O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe ()
                        O4 - HKU\Administrator_ON_C..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
                        O4 - HKU\Administrator_ON_C..\Run: [DellSupport] C:\Program Files\Dell Support\DSAgnt.exe ()
                        O4 - HKU\DEFAULT_ON_C..\Run: [smss32.exe] C:\WINDOWS\System32\smss32.exe File not found
                        O4 - HKU\shon_ON_C..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation)
                        O4 - HKU\shon_ON_C..\Run: [DellSupport] C:\Program Files\Dell Support\DSAgnt.exe ()
                        O4 - HKU\shon_ON_C..\Run: [MSMSGS] C:\Program Files\Messenger\msmsgs.exe ()
                        O4 - HKU\shon_ON_C..\Run: [msnmsgr] C:\Program Files\Windows Live\Messenger\msnmsgr.exe ()
                        O4 - HKU\shon_ON_C..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe ()
                        O4 - HKU\Administrator_ON_C..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe (Nero AG)
                        O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Main present
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
                        O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
                        O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
                        O7 - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                        O7 - HKU\DEFAULT_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                        O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
                        O7 - HKU\shon_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
                        O7 - HKU\shon_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
                        O8 - Extra context menu item: &Google Search - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O8 - Extra context menu item: &Translate English Word - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O8 - Extra context menu item: Backward Links - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O8 - Extra context menu item: Cached Snapshot of Page - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
                        O8 - Extra context menu item: Similar Pages - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O8 - Extra context menu item: Translate Page into English - C:\Program Files\Google\GoogleToolbar1.dll (Google Inc.)
                        O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
                        O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\shon\Start Menu\Programs\IMVU\Run IMVU.lnk ()
                        O9 - Extra Button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
                        O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
                        O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
                        O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe ()
                        O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
                        O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
                        O15 - HKLM\..Trusted Domains: buy-security-essentials.com ([]http in Trusted sites)
                        O15 - HKLM\..Trusted Domains: get-key-se10.com ([]http in Trusted sites)
                        O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
                        O15 - HKU\DEFAULT_ON_C\..Trusted Domains: buy-security-essentials.com ([]http in Trusted sites)
                        O15 - HKU\DEFAULT_ON_C\..Trusted Domains: download-soft-package.com ([]http in Trusted sites)
                        O15 - HKU\DEFAULT_ON_C\..Trusted Domains: download-software-package.com ([]http in Trusted sites)
                        O15 - HKU\DEFAULT_ON_C\..Trusted Domains: get-key-se10.com ([]http in Trusted sites)
                        O15 - HKU\DEFAULT_ON_C\..Trusted Domains: is-software-download.com ([]http in Trusted sites)
                        O15 - HKU\shon_ON_C\..Trusted Domains: moove.com ([]* in Trusted sites)
                        O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab (Reg Error: Key error.)
                        O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                        O16 - DPF: {C8AEB218-8B7A-4E15-AC17-0EE8D99B80EB} http://archives.gametap.com/static/cab_headless/GameTapWebUpdater.cab (GameTap Web Updater)
                        O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.4.2/jinstall-1_4_2_03-windows-i586.cab (Java Plug-in 1.4.2_03)
                        O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                        O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18)
                        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
                        O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}  (Reg Error: Value error.)
                        O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
                        O16 - DPF: Microsoft XML Parser for Java file:///C:/WINDOWS/Java/classes/xmldso.cab (Reg Error: Key error.)
                        O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
                        O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                        O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\ipp - No CLSID value found
                        O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\msdaipp - No CLSID value found
                        O18 - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
                        O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation)
                        O18 - Protocol\Handler\pure-go {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\Platform\puresp4.dll (Cisco Systems, Inc.)
                        O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
                        O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
                        O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                        O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation)
                        O20 - AppInit_DLLs: (vukotuja.dll) -  File not found
                        O20 - AppInit_DLLs: (lusanuwo.dll) -  File not found
                        O20 - AppInit_DLLs: (c:\windows\system32\bufufodu.dll) - C:\WINDOWS\System32\bufufodu.dll File not found
                        O20 - AppInit_DLLs: (pirotima.dll) -  File not found
                        O20 - AppInit_DLLs: (c:\windows\system32\kitejiru.dll) - C:\WINDOWS\System32\kitejiru.dll File not found
                        O20 - AppInit_DLLs: (c:\windows\system32\jeyiniyo.dll) - C:\WINDOWS\System32\jeyiniyo.dll File not found
                        O20 - AppInit_DLLs: (c:\windows\system32\lazimiki.dll) - C:\WINDOWS\System32\lazimiki.dll File not found
                        O20 - AppInit_DLLs: (gogiyajo.dll) -  File not found
                        O20 - AppInit_DLLs: (c:\windows\system32\fuvatozi.dll) - C:\WINDOWS\System32\fuvatozi.dll File not found
                        O20 - AppInit_DLLs: (yoyudoka.dll) -  File not found
                        O20 - AppInit_DLLs: (c:\windows\system32\fetunigu.dll) - C:\WINDOWS\System32\fetunigu.dll File not found
                        O20 - AppInit_DLLs: (c:\windows\) - c:\windows\ [2010/05/03 18:53:16 | 00,000,000 | ---D | M]
                        O20 - AppInit_DLLs: (c:\windows\system32\fiyobubi.dll) - C:\WINDOWS\System32\fiyobubi.dll File not found
                        O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
                        O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\winlogon32.exe) - C:\WINDOWS\System32\winlogon32.exe File not found
                        O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
                        O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
                        O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
                        O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
                        O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
                        O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation)
                        O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
                        O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                        O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
                        O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
                        O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
                        O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
                        O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                        O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
                        O24 - Desktop Components:0 (My Current Home Page) - About:Home
                        O27 - HKLM IFEO\MpCmdRun.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                        O27 - HKLM IFEO\MsMpEng.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                        O27 - HKLM IFEO\msseces.exe: Debugger - C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
                        O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
                        O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
                        O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
                        O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
                        O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
                        O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
                        O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
                        O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
                        O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
                        O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
                        O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
                        O31 - SafeBoot: AlternateShell - cmd.exe
                        O32 - HKLM CDRom: AutoRun - 1
                        O32 - AutoRun File - [2004/08/11 18:15:00 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
                        O32 - AutoRun File - [2006/03/24 07:06:41 | 00,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
                        O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
                        O35 - comfile [open] -- "%1" %*
                        O35 - exefile [open] -- "%1" %*
                         
                        ========== Custom Scans ==========
                         
                         
                         
                        < MD5 for: ATAPI.SYS  >
                        [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\i386\sp2.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\$NtServicePackUninstall$\sp3.cab:atapi.sys
                        [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
                        [2010/05/02 22:01:59 | 00,096,512 | ---- | M] () MD5=5FFB66D7927022F4395069C8267B989E -- C:\WINDOWS\system32\drivers\atapi.sys
                        [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
                        [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
                        [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\i386\atapi.sys
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
                        < End of report >
                         
                        < MD5 for: [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (MICROSOFT CORPORATION)  >
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\i386\atapi.sys
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
                         
                        < MD5 for: [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (MICROSOFT CORPORATION)  >
                        [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
                         
                        < MD5 for: [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (MICROSOFT CORPORATION)  >
                        [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\ERDNT\cache\atapi.sys
                        [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dllcache\atapi.sys
                         
                        < MD5 for: [2010/05/02 22:01:59 | 00,096,512 | ---- | M] ()  >
                        [2010/05/02 22:01:59 | 00,096,512 | ---- | M] () -- C:\WINDOWS\system32\drivers\atapi.sys
                         
                        < MD5 for: ATAPI.SYS  >
                        [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\i386\sp2.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\$NtServicePackUninstall$\sp3.cab:atapi.sys
                        [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys

                        < End of report >
                         
                        < MD5 for: [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (MICROSOFT CORPORATION)  >
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\i386\atapi.sys
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
                        [2004/08/03 23:59:44 | 00,095,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
                         
                        < MD5 for: [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (MICROSOFT CORPORATION)  >
                        [2008/04/13 14:40:30 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
                         
                        < MD5 for: [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (MICROSOFT CORPORATION)  >
                        [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\ERDNT\cache\atapi.sys
                        [2010/01/29 00:57:31 | 00,096,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dllcache\atapi.sys
                         
                        < MD5 for: [2010/05/02 22:01:59 | 00,096,512 | ---- | M] ()  >
                        [2010/05/02 22:01:59 | 00,096,512 | ---- | M] () -- C:\WINDOWS\system32\drivers\atapi.sys
                         
                        < MD5 for: ATAPI.SYS  >
                        [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\i386\sp2.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\$NtServicePackUninstall$\sp3.cab:atapi.sys
                        [2004/08/04 06:00:00 | 18,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
                        [2009/12/09 21:25:49 | 23,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys

                        < End of report >

                        Dr Jay

                        • Malware Removal Specialist


                        • Specialist
                        • Moderator emeritus
                        • Thanked: 119
                        • Experience: Guru
                        • OS: Windows 10
                        Re: computer keep logging off
                        « Reply #42 on: May 10, 2010, 07:56:24 PM »
                        Please run OTLPE.
                        • Copy the commands with file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):


                          :files
                          C:\Windows\System32\drivers\atapi.sys|C:\i386\atapi.sys /replace


                        • Return to OTLPE, right click in the "Custom Scans/Fixes" window (under the light green bar) and choose Paste.

                        • Click the red Run Fix button.
                        • A fix log in Notepad will appear. Copy the contents of the fix log to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
                        • Close OTLPE
                        Then, try to boot your computer normally and see if it works. Let me know if it does.
                        ==================
                        ~Dr Jay

                        shoyou

                          Topic Starter


                          Beginner

                          Re: computer keep logging off
                          « Reply #43 on: May 11, 2010, 04:33:50 PM »
                          Error: Unable to interpret <C:\Windows\System32\drivers\atapi.sys|C:\i386\atapi.sys /replace> in the current context!
                           
                          OTLPE by OldTimer - Version 3.1.23.0 log created on 05112010_153551

                          i restart and it still have the problem.

                          Dr Jay

                          • Malware Removal Specialist


                          • Specialist
                          • Moderator emeritus
                          • Thanked: 119
                          • Experience: Guru
                          • OS: Windows 10
                          Re: computer keep logging off
                          « Reply #44 on: May 11, 2010, 10:18:11 PM »
                          Please run OTLPE.
                          • Copy the commands with file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):


                            :files
                            C:\Windows\System32\drivers\atapi.sys|C:\i386\atapi.sys /replace

                            :commands
                            [reboot]


                          • Return to OTLPE, right click in the "Custom Scans/Fixes" window (under the light green bar) and choose Paste.

                          • Click the red Run Fix button.
                          • A fix log in Notepad will appear. Copy the contents of the fix log to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
                          • Close OTLPE
                          Then, try to boot your computer normally and see if it works. Let me know if it does.
                          ==================
                          ~Dr Jay