| Trojaner Virtumonde Combo Fix Log
Teil4: Zitat:
+ 2007-03-06 01:14:17 217,312 -c----w c:\windows\ie7updates\KB938127-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:15:25 377,568 -c----w c:\windows\ie7updates\KB938127-IE7\spuninst\updspapi.dll
+ 2007-08-13 17:54:10 765,952 -c----w c:\windows\ie7updates\KB938127-IE7\vgx.dll
+ 2007-03-06 01:14:13 217,312 -c----w c:\windows\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:15:22 377,568 -c----w c:\windows\ie7updates\KB938127-v2-IE7\spuninst\updspapi.dll
+ 2007-07-12 23:30:56 765,952 -c----w c:\windows\ie7updates\KB938127-v2-IE7\vgx.dll
+ 2007-08-13 17:39:00 123,904 -c----w c:\windows\ie7updates\KB958215-IE7\advpack.dll
+ 2007-08-13 17:35:46 346,624 -c----w c:\windows\ie7updates\KB958215-IE7\dxtmsft.dll
+ 2007-08-13 17:35:38 214,528 -c----w c:\windows\ie7updates\KB958215-IE7\dxtrans.dll
+ 2007-08-13 17:54:10 131,584 -c----w c:\windows\ie7updates\KB958215-IE7\extmgr.dll
+ 2007-08-13 17:36:26 61,952 -c----w c:\windows\ie7updates\KB958215-IE7\icardie.dll
+ 2007-08-13 17:39:06 54,784 -c----w c:\windows\ie7updates\KB958215-IE7\ie4uinit.exe
+ 2007-08-13 17:39:26 152,064 -c----w c:\windows\ie7updates\KB958215-IE7\ieakeng.dll
+ 2007-08-13 17:39:54 229,376 -c----w c:\windows\ie7updates\KB958215-IE7\ieaksie.dll
+ 2007-08-13 16:56:54 161,792 -c----w c:\windows\ie7updates\KB958215-IE7\ieakui.dll
+ 2007-02-12 15:10:12 2,451,312 -c----w c:\windows\ie7updates\KB958215-IE7\ieapfltr.dat
+ 2007-07-11 11:27:48 383,488 -c----w c:\windows\ie7updates\KB958215-IE7\ieapfltr.dll
+ 2007-08-13 17:39:50 382,976 -c----w c:\windows\ie7updates\KB958215-IE7\iedkcs32.dll
+ 2007-08-13 17:54:10 6,049,280 -c----w c:\windows\ie7updates\KB958215-IE7\ieframe.dll
+ 2007-08-13 17:39:10 43,008 -c----w c:\windows\ie7updates\KB958215-IE7\iernonce.dll
+ 2007-08-13 17:34:04 266,752 -c----w c:\windows\ie7updates\KB958215-IE7\iertutil.dll
+ 2007-08-13 17:39:10 13,312 -c----w c:\windows\ie7updates\KB958215-IE7\ieudinit.exe
+ 2007-08-13 17:43:56 622,080 -c----w c:\windows\ie7updates\KB958215-IE7\iexplore.exe
+ 2007-08-13 17:54:10 27,136 -c----w c:\windows\ie7updates\KB958215-IE7\jsproxy.dll
+ 2007-08-13 17:54:10 458,752 -c----w c:\windows\ie7updates\KB958215-IE7\msfeeds.dll
+ 2007-08-13 17:54:10 50,688 -c----w c:\windows\ie7updates\KB958215-IE7\msfeedsbs.dll
+ 2007-08-13 17:54:10 475,648 -c----w c:\windows\ie7updates\KB958215-IE7\mshtmled.dll
+ 2007-08-13 17:44:26 192,000 -c----w c:\windows\ie7updates\KB958215-IE7\msrating.dll
+ 2007-08-13 17:54:10 670,720 -c----w c:\windows\ie7updates\KB958215-IE7\mstime.dll
+ 2007-08-13 17:44:06 101,376 -c----w c:\windows\ie7updates\KB958215-IE7\occache.dll
+ 2007-08-13 17:36:12 44,544 -c----w c:\windows\ie7updates\KB958215-IE7\pngfilt.dll
+ 2007-03-06 01:14:13 217,312 -c----w c:\windows\ie7updates\KB958215-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:15:25 377,568 -c----w c:\windows\ie7updates\KB958215-IE7\spuninst\updspapi.dll
+ 2007-08-13 17:44:30 105,984 -c----w c:\windows\ie7updates\KB958215-IE7\url.dll
+ 2007-08-13 17:54:10 1,162,240 -c----w c:\windows\ie7updates\KB958215-IE7\urlmon.dll
+ 2007-08-13 17:54:10 231,424 -c----w c:\windows\ie7updates\KB958215-IE7\webcheck.dll
+ 2007-08-13 17:54:10 818,688 -c----w c:\windows\ie7updates\KB958215-IE7\wininet.dll
+ 2007-08-13 17:54:12 3,578,368 -c----w c:\windows\ie7updates\KB960714-IE7\mshtml.dll
+ 2007-03-06 01:14:13 217,312 -c----w c:\windows\ie7updates\KB960714-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:15:22 377,568 -c----w c:\windows\ie7updates\KB960714-IE7\spuninst\updspapi.dll
- 2004-08-03 23:57:16 41,984 ----a-w c:\windows\msagent\agentdp2.dll
+ 2006-10-12 14:02:58 42,496 ----a-w c:\windows\msagent\agentdp2.dll
- 2004-08-03 23:57:16 58,880 ----a-w c:\windows\msagent\agentdpv.dll
+ 2007-03-09 13:48:08 57,344 ----a-w c:\windows\msagent\agentdpv.dll
- 2004-08-03 23:57:42 256,512 ----a-w c:\windows\msagent\agentsvr.exe
+ 2006-10-12 11:09:53 256,512 ----a-w c:\windows\msagent\agentsvr.exe
- 2004-08-03 23:57:16 100,352 ----a-w c:\windows\system32\6to4svc.dll
+ 2006-08-16 11:58:06 100,352 ----a-w c:\windows\system32\6to4svc.dll
- 2007-08-13 17:39:00 123,904 ----a-w c:\windows\system32\advpack.dll
+ 2008-10-16 20:04:07 124,928 ----a-w c:\windows\system32\advpack.dll
- 2004-08-03 23:57:16 56,832 ----a-w c:\windows\system32\authz.dll
+ 2005-03-02 18:09:46 56,832 ----a-w c:\windows\system32\authz.dll
- 2004-08-03 23:57:16 229,888 ----a-w c:\windows\system32\catsrv.dll
+ 2005-07-26 04:39:43 225,792 ----a-w c:\windows\system32\catsrv.dll
- 2004-08-03 23:57:16 628,224 ----a-w c:\windows\system32\catsrvut.dll
+ 2005-07-26 04:39:43 625,152 ----a-w c:\windows\system32\catsrvut.dll
- 2004-08-03 23:57:16 2,067,968 ----a-w c:\windows\system32\cdosys.dll
+ 2005-09-10 01:54:27 2,067,968 ----a-w c:\windows\system32\cdosys.dll
- 2004-08-03 23:57:18 69,120 ----a-w c:\windows\system32\ciodm.dll
+ 2006-06-22 05:06:23 69,120 ----a-w c:\windows\system32\ciodm.dll
- 2004-08-03 23:57:18 110,080 ----a-w c:\windows\system32\clbcatex.dll
+ 2005-07-26 04:39:43 110,080 ----a-w c:\windows\system32\clbcatex.dll
- 2004-08-03 23:57:18 501,248 ----a-w c:\windows\system32\clbcatq.dll
+ 2005-07-26 04:39:44 498,688 ----a-w c:\windows\system32\clbcatq.dll
- 2004-08-03 23:57:18 62,464 ----a-w c:\windows\system32\colbact.dll
+ 2005-07-26 04:39:44 60,416 ----a-w c:\windows\system32\colbact.dll
- 2004-08-03 23:57:18 195,584 ----a-w c:\windows\system32\Com\comadmin.dll
+ 2005-07-26 04:39:44 195,072 ----a-w c:\windows\system32\Com\comadmin.dll
- 2004-08-03 23:57:18 611,328 ----a-w c:\windows\system32\comctl32.dll
+ 2006-08-25 15:46:47 617,472 ----a-w c:\windows\system32\comctl32.dll
- 2001-08-18 12:00:00 82,432 ----a-w c:\windows\system32\comrepl.dll
+ 2005-07-26 04:39:44 97,792 ----a-w c:\windows\system32\comrepl.dll
- 2004-08-03 23:57:18 1,251,840 ----a-w c:\windows\system32\comsvcs.dll
+ 2005-07-26 04:39:45 1,267,200 ----a-w c:\windows\system32\comsvcs.dll
- 2004-08-03 23:54:44 540,160 ----a-w c:\windows\system32\comuid.dll
+ 2005-07-26 04:39:46 540,160 ----a-w c:\windows\system32\comuid.dll
- 2004-08-03 23:57:18 111,616 ----a-w c:\windows\system32\dhcpcsvc.dll
+ 2006-05-19 13:09:50 112,128 ----a-w c:\windows\system32\dhcpcsvc.dll
+ 2006-08-16 11:58:06 100,352 -c----w c:\windows\system32\dllcache\6to4svc.dll
- 2007-08-13 17:39:00 123,904 -c----w c:\windows\system32\dllcache\advpack.dll
+ 2008-10-16 20:04:07 124,928 -c----w c:\windows\system32\dllcache\advpack.dll
+ 2006-10-12 14:02:58 42,496 -c----w c:\windows\system32\dllcache\agentdp2.dll
+ 2007-03-09 13:48:08 57,344 -c--a-w c:\windows\system32\dllcache\agentdpv.dll
+ 2006-10-12 11:09:53 256,512 -c----w c:\windows\system32\dllcache\agentsvr.exe
+ 2006-06-22 05:06:23 69,120 -c----w c:\windows\system32\dllcache\ciodm.dll
+ 2006-08-25 15:46:47 617,472 -c----w c:\windows\system32\dllcache\comctl32.dll
- 2001-08-18 12:00:00 82,432 -c--a-w c:\windows\system32\dllcache\comrepl.dll
+ 2005-07-26 04:39:44 97,792 -c--a-w c:\windows\system32\dllcache\comrepl.dll
+ 2008-03-25 04:50:25 554,008 -c----w c:\windows\system32\dllcache\dao360.dll
+ 2006-05-19 13:09:50 112,128 -c----w c:\windows\system32\dllcache\dhcpcsvc.dll
+ 2007-05-16 15:11:38 86,528 -c----w c:\windows\system32\dllcache\directdb.dll
+ 2008-06-20 17:39:48 148,992 -c----w c:\windows\system32\dllcache\dnsapi.dll
+ 2008-02-20 05:33:54 45,568 -c----w c:\windows\system32\dllcache\dnsrslvr.dll
+ 2006-08-24 12:17:12 500,278 -c----w c:\windows\system32\dllcache\dxmasf.dll
- 2007-08-13 17:35:46 346,624 -c--a-w c:\windows\system32\dllcache\dxtmsft.dll
+ 2008-10-16 20:04:07 347,136 -c--a-w c:\windows\system32\dllcache\dxtmsft.dll
- 2007-08-13 17:35:38 214,528 -c--a-w c:\windows\system32\dllcache\dxtrans.dll
+ 2008-10-16 20:04:07 214,528 -c--a-w c:\windows\system32\dllcache\dxtrans.dll
+ 2007-06-13 13:21:45 1,036,288 -c----w c:\windows\system32\dllcache\explorer.exe
- 2007-08-13 17:54:10 131,584 -c--a-w c:\windows\system32\dllcache\extmgr.dll
+ 2008-10-16 20:04:08 133,120 -c--a-w c:\windows\system32\dllcache\extmgr.dll
+ 2006-08-21 12:26:05 16,896 -c----w c:\windows\system32\dllcache\fltlib.dll
+ 2006-08-21 09:14:58 23,040 -c----w c:\windows\system32\dllcache\fltmc.exe
+ 2006-08-21 09:14:58 128,896 -c----w c:\windows\system32\dllcache\fltmgr.sys
- 2001-08-18 12:00:00 79,360 -c--a-w c:\windows\system32\dllcache\fontsub.dll
+ 2005-10-17 21:20:02 80,896 -c--a-w c:\windows\system32\dllcache\fontsub.dll
- 2001-08-18 12:00:00 81,978 -c--a-w c:\windows\system32\dllcache\hlink.dll
+ 2006-07-21 08:29:00 72,704 -c--a-w c:\windows\system32\dllcache\hlink.dll
- 2007-08-13 17:39:06 54,784 -c----w c:\windows\system32\dllcache\ie4uinit.exe
+ 2008-10-16 13:10:46 70,656 -c----w c:\windows\system32\dllcache\ie4uinit.exe
- 2007-08-13 17:39:26 152,064 -c----w c:\windows\system32\dllcache\ieakeng.dll
+ 2008-10-16 20:04:08 153,088 -c----w c:\windows\system32\dllcache\ieakeng.dll
- 2007-08-13 17:39:54 229,376 -c----w c:\windows\system32\dllcache\ieaksie.dll
+ 2008-10-16 20:04:08 230,400 -c----w c:\windows\system32\dllcache\ieaksie.dll
- 2007-08-13 16:56:54 161,792 -c--a-w c:\windows\system32\dllcache\ieakui.dll
+ 2008-10-15 07:04:53 161,792 -c--a-w c:\windows\system32\dllcache\ieakui.dll
- 2007-08-13 17:39:50 382,976 -c----w c:\windows\system32\dllcache\iedkcs32.dll
+ 2008-10-16 20:04:09 384,512 -c----w c:\windows\system32\dllcache\iedkcs32.dll
- 2007-08-13 17:39:10 43,008 -c----w c:\windows\system32\dllcache\iernonce.dll
+ 2008-10-16 20:04:12 44,544 -c----w c:\windows\system32\dllcache\iernonce.dll
- 2007-08-13 17:43:56 622,080 -c----w c:\windows\system32\dllcache\iexplore.exe
+ 2008-10-15 07:06:26 633,632 -c----w c:\windows\system32\dllcache\iexplore.exe
+ 2006-05-19 13:09:50 95,744 -c----w c:\windows\system32\dllcache\iphlpapi.dll
- 2001-08-18 12:00:00 144,896 -c--a-w c:\windows\system32\dllcache\jgdw400.dll
+ 2006-06-01 18:47:07 163,840 -c--a-w c:\windows\system32\dllcache\jgdw400.dll
- 2001-08-18 12:00:00 42,496 -c--a-w c:\windows\system32\dllcache\jgpl400.dll
+ 2006-06-01 18:47:07 27,648 -c--a-w c:\windows\system32\dllcache\jgpl400.dll
- 2007-08-13 17:54:10 27,136 -c--a-w c:\windows\system32\dllcache\jsproxy.dll
+ 2008-10-16 20:04:13 27,648 -c--a-w c:\windows\system32\dllcache\jsproxy.dll
+ 2007-04-16 15:53:05 1,058,304 -c----w c:\windows\system32\dllcache\kernel32.dll
+ 2006-06-14 08:47:45 172,416 -c----w c:\windows\system32\dllcache\kmixer.sys
+ 2007-11-07 09:27:10 729,600 -c----w c:\windows\system32\dllcache\lsasrv.dll
+ 2007-03-08 15:36:30 40,960 -c----w c:\windows\system32\dllcache\mf3216.dll
- 2001-08-18 12:00:00 924,432 -c--a-w c:\windows\system32\dllcache\mfc40u.dll
+ 2006-11-01 19:17:41 927,504 -c--a-w c:\windows\system32\dllcache\mfc40u.dll
+ 2006-10-14 08:13:25 981,760 -c----w c:\windows\system32\dllcache\mfc42u.dll
+ 2007-07-06 10:05:47 72,960 -c----w c:\windows\system32\dllcache\mqac.sys
+ 2007-07-06 12:49:58 138,240 -c----w c:\windows\system32\dllcache\mqad.dll
+ 2007-07-06 12:49:58 47,104 -c----w c:\windows\system32\dllcache\mqdscli.dll
+ 2007-07-06 12:49:58 16,896 -c----w c:\windows\system32\dllcache\mqise.dll
+ 2007-07-06 12:49:58 660,992 -c----w c:\windows\system32\dllcache\mqqm.dll
+ 2007-07-06 12:49:58 177,152 -c----w c:\windows\system32\dllcache\mqrt.dll
+ 2007-07-06 12:49:58 95,744 -c----w c:\windows\system32\dllcache\mqsec.dll
+ 2007-07-06 12:49:58 48,640 -c----w c:\windows\system32\dllcache\mqupgrd.dll
+ 2007-07-06 12:49:58 533,504 -c----w c:\windows\system32\dllcache\mqutil.dll
+ 2007-12-18 09:51:35 179,584 -c----w c:\windows\system32\dllcache\mrxdav.sys
+ 2006-12-26 13:09:09 536,576 -c----w c:\windows\system32\dllcache\msado15.dll
+ 2006-12-26 13:09:09 180,224 -c----w c:\windows\system32\dllcache\msadomd.dll
+ 2006-12-26 13:09:09 200,704 -c----w c:\windows\system32\dllcache\msadox.dll
+ 2008-02-26 11:59:49 294,912 -c----w c:\windows\system32\dllcache\msctf.dll
+ 2008-03-25 04:50:28 518,944 -c----w c:\windows\system32\dllcache\msexch40.dll
+ 2008-03-25 04:50:30 326,432 -c----w c:\windows\system32\dllcache\msexcl40.dll
+ 2006-11-27 14:54:15 539,136 -c----w c:\windows\system32\dllcache\msftedit.dll
- 2007-08-13 17:54:10 475,648 -c--a-w c:\windows\system32\dllcache\mshtmled.dll
+ 2008-10-16 20:04:17 477,696 -c--a-w c:\windows\system32\dllcache\mshtmled.dll
+ 2008-03-25 04:50:34 1,516,568 -c----w c:\windows\system32\dllcache\msjet40.dll
- 2004-03-01 18:52:15 358,976 -c--a-w c:\windows\system32\dllcache\msjetol1.dll
+ 2008-03-25 04:50:40 355,112 -c--a-w c:\windows\system32\dllcache\msjetol1.dll
+ 2008-03-25 04:51:12 187,168 -c----w c:\windows\system32\dllcache\msjint40.dll
+ 2006-12-26 13:09:09 102,400 -c----w c:\windows\system32\dllcache\msjro.dll
+ 2008-03-25 04:50:42 60,192 -c----w c:\windows\system32\dllcache\msjter40.dll
+ 2008-03-25 04:50:42 248,608 -c----w c:\windows\system32\dllcache\msjtes40.dll
+ 2008-03-25 04:50:44 219,936 -c----w c:\windows\system32\dllcache\msltus40.dll
+ 2007-05-16 15:11:55 1,314,816 -c----w c:\windows\system32\dllcache\msoe.dll
+ 2008-03-25 04:50:45 355,104 -c----w c:\windows\system32\dllcache\mspbde40.dll
- 2007-08-13 17:44:26 192,000 -c--a-w c:\windows\system32\dllcache\msrating.dll
+ 2008-10-16 20:04:17 193,024 -c--a-w c:\windows\system32\dllcache\msrating.dll
+ 2008-03-25 04:50:47 432,928 -c----w c:\windows\system32\dllcache\msrd2x40.dll
+ 2008-03-25 04:50:49 322,336 -c----w c:\windows\system32\dllcache\msrd3x40.dll
+ 2008-03-25 04:50:52 559,904 -c----w c:\windows\system32\dllcache\msrepl40.dll
+ 2008-03-25 04:50:55 264,992 -c----w c:\windows\system32\dllcache\mstext40.dll
- 2007-08-13 17:54:10 670,720 -c--a-w c:\windows\system32\dllcache\mstime.dll
+ 2008-10-16 20:04:18 671,232 -c--a-w c:\windows\system32\dllcache\mstime.dll
+ 2008-03-25 04:50:57 838,432 -c----w c:\windows\system32\dllcache\mswdat10.dll
+ 2008-06-20 17:39:48 247,296 -c----w c:\windows\system32\dllcache\mswsock.dll
+ 2008-03-25 04:51:12 621,344 -c----w c:\windows\system32\dllcache\mswstr10.dll
+ 2008-03-25 04:50:58 355,104 -c----w c:\windows\system32\dllcache\msxbde40.dll
+ 2007-02-09 11:10:35 574,464 -c----w c:\windows\system32\dllcache\ntfs.sys
- 2001-08-18 12:00:00 58,880 -c--a-w c:\windows\system32\dllcache\nwapi32.dll
+ 2006-10-13 12:35:14 64,000 -c--a-w c:\windows\system32\dllcache\nwapi32.dll
+ 2006-10-13 12:35:14 146,432 -c----w c:\windows\system32\dllcache\nwprovau.dll
+ 2006-10-13 10:23:15 163,584 -c----w c:\windows\system32\dllcache\nwrdr.sys
+ 2006-10-13 12:35:14 65,536 -c----w c:\windows\system32\dllcache\nwwks.dll
- 2007-08-13 17:44:06 101,376 -c----w c:\windows\system32\dllcache\occache.dll
+ 2008-10-16 20:04:18 102,912 -c----w c:\windows\system32\dllcache\occache.dll
+ 2007-12-04 18:40:03 550,912 -c----w c:\windows\system32\dllcache\oleaut32.dll
- 2001-08-18 12:00:00 68,608 -c--a-w c:\windows\system32\dllcache\olecli32.dll
+ 2005-07-26 04:39:50 74,752 -c--a-w c:\windows\system32\dllcache\olecli32.dll
- 2001-08-18 12:00:00 34,304 -c--a-w c:\windows\system32\dllcache\olecnv32.dll
+ 2005-07-26 04:39:50 37,888 -c--a-w c:\windows\system32\dllcache\olecnv32.dll
- 2001-08-18 12:00:00 121,856 -c--a-w c:\windows\system32\dllcache\oledlg.dll
+ 2006-10-16 16:15:58 126,976 -c--a-w c:\windows\system32\dllcache\oledlg.dll
- 2007-08-13 17:36:12 44,544 -c--a-w c:\windows\system32\dllcache\pngfilt.dll
+ 2008-10-16 20:04:18 44,544 -c--a-w c:\windows\system32\dllcache\pngfilt.dll
+ 2006-06-22 05:06:24 1,441,792 -c----w c:\windows\system32\dllcache\query.dll
+ 2006-06-26 17:40:34 8,192 -c----w c:\windows\system32\dllcache\rasadhlp.dll
+ 2006-06-22 10:47:23 181,248 -c----w c:\windows\system32\dllcache\rasmans.dll
+ 2006-05-05 09:47:57 174,592 -c----w c:\windows\system32\dllcache\rdbss.sys
+ 2006-11-27 14:54:15 433,152 -c----w c:\windows\system32\dllcache\riched20.dll
+ 2007-04-25 14:22:27 144,896 -c----w c:\windows\system32\dllcache\schannel.dll
+ 2007-10-25 16:55:09 8,495,616 -c----w c:\windows\system32\dllcache\shell32.dll
+ 2006-12-19 21:49:41 135,168 -c----w c:\windows\system32\dllcache\shsvcs.dll
+ 2006-06-14 08:47:46 6,400 -c----w c:\windows\system32\dllcache\splitter.sys
- 2008-08-28 10:04:17 333,056 -c----w c:\windows\system32\dllcache\srv.sys
+ 2008-12-11 11:57:21 333,184 -c----w c:\windows\system32\dllcache\srv.sys
+ 2006-10-20 01:38:26 715,776 -c----w c:\windows\system32\dllcache\sxs.dll
+ 2008-06-20 10:45:13 360,320 -c----w c:\windows\system32\dllcache\tcpip.sys
+ 2008-06-20 09:52:06 225,920 -c----w c:\windows\system32\dllcache\tcpip6.sys
+ 2007-02-05 20:18:44 185,856 -c----w c:\windows\system32\dllcache\upnphost.dll
- 2007-08-13 17:44:30 105,984 -c----w c:\windows\system32\dllcache\url.dll
+ 2008-10-16 20:04:18 105,984 -c----w c:\windows\system32\dllcache\url.dll
- 2007-08-13 17:54:10 1,162,240 -c--a-w c:\windows\system32\dllcache\urlmon.dll
+ 2008-10-16 20:04:19 1,160,192 -c--a-w c:\windows\system32\dllcache\urlmon.dll
+ 2007-03-08 15:36:30 579,072 -c----w c:\windows\system32\dllcache\user32.dll
- 2007-08-13 17:54:10 765,952 -c----w c:\windows\system32\dllcache\VGX.dll
+ 2008-05-27 17:23:58 765,952 -c----w c:\windows\system32\dllcache\vgx.dll
+ 2007-05-16 15:12:01 510,976 -c----w c:\windows\system32\dllcache\wab32.dll
+ 2007-05-16 15:12:02 85,504 -c----w c:\windows\system32\dllcache\wabimp.dll
+ 2006-06-14 09:00:45 82,944 -c----w c:\windows\system32\dllcache\wdmaud.sys
- 2007-08-13 17:54:10 231,424 -c----w c:\windows\system32\dllcache\webcheck.dll
+ 2008-10-16 20:04:19 233,472 -c----w c:\windows\system32\dllcache\webcheck.dll
+ 2006-12-19 18:17:03 334,336 -c----w c:\windows\system32\dllcache\wiaservc.dll
- 2007-08-13 17:54:10 818,688 -c--a-w c:\windows\system32\dllcache\wininet.dll
+ 2008-10-16 20:04:20 826,368 -c--a-w c:\windows\system32\dllcache\wininet.dll
+ 2007-03-17 13:44:25 293,376 -c----w c:\windows\system32\dllcache\winsrv.dll
+ 2006-08-17 12:28:44 132,096 -c----w c:\windows\system32\dllcache\wkssvc.dll
- 2004-08-03 23:57:18 148,480 ----a-w c:\windows\system32\dnsapi.dll
+ 2008-06-20 17:39:48 148,992 ----a-w c:\windows\system32\dnsapi.dll
- 2004-08-03 23:57:18 45,568 ----a-w c:\windows\system32\dnsrslvr.dll
+ 2008-02-20 05:33:54 45,568 ----a-w c:\windows\system32\dnsrslvr.dll
- 2004-08-03 21:39:38 142,464 ----a-w c:\windows\system32\drivers\aec.sys
+ 2006-02-15 00:22:26 142,464 ----a-w c:\windows\system32\drivers\aec.sys
- 2004-08-03 22:01:20 124,800 ------w c:\windows\system32\drivers\fltmgr.sys
+ 2006-08-21 09:14:58 128,896 ------w c:\windows\system32\drivers\fltmgr.sys
- 2004-08-03 22:00:14 263,040 ------w c:\windows\system32\drivers\http.sys
+ 2006-03-17 00:33:10 262,784 ------w c:\windows\system32\drivers\http.sys
- 2004-08-03 22:04:52 134,912 ----a-w c:\windows\system32\drivers\ipnat.sys
+ 2004-09-29 22:28:37 134,912 ----a-w c:\windows\system32\drivers\ipnat.sys
- 2004-08-03 22:07:50 171,776 ----a-w c:\windows\system32\drivers\kmixer.sys
+ 2006-06-14 08:47:45 172,416 ----a-w c:\windows\system32\drivers\kmixer.sys
- 2004-08-03 21:58:22 72,960 ----a-w c:\windows\system32\drivers\mqac.sys
+ 2007-07-06 10:05:47 72,960 ----a-w c:\windows\system32\drivers\mqac.sys
- 2004-08-03 22:00:58 181,248 ----a-w c:\windows\system32\drivers\mrxdav.sys
+ 2007-12-18 09:51:35 179,584 ----a-w c:\windows\system32\drivers\mrxdav.sys
- 2004-08-03 22:15:10 574,592 ----a-w c:\windows\system32\drivers\ntfs.sys
+ 2007-02-09 11:10:35 574,464 ----a-w c:\windows\system32\drivers\ntfs.sys
- 2004-08-03 22:02:24 163,584 ----a-w c:\windows\system32\drivers\nwrdr.sys
+ 2006-10-13 10:23:15 163,584 ----a-w c:\windows\system32\drivers\nwrdr.sys
- 2004-08-03 22:20:08 176,512 ----a-w c:\windows\system32\drivers\rdbss.sys
+ 2006-05-05 09:47:57 174,592 ----a-w c:\windows\system32\drivers\rdbss.sys
- 2004-08-03 23:58:38 139,400 ----a-w c:\windows\system32\drivers\rdpwd.sys
+ 2005-06-10 04:10:27 139,528 ----a-w c:\windows\system32\drivers\rdpwd.sys
- 2004-07-17 10:36:38 27,440 ----a-w c:\windows\system32\drivers\secdrv.sys
+ 2007-11-13 10:25:53 20,480 ----a-w c:\windows\system32\drivers\secdrv.sys
- 2004-08-03 22:07:48 6,400 ----a-w c:\windows\system32\drivers\splitter.sys
+ 2006-06-14 08:47:46 6,400 ----a-w c:\windows\system32\drivers\splitter.sys
- 2004-08-03 22:14:42 359,040 ----a-w c:\windows\system32\drivers\tcpip.sys
+ 2008-06-20 10:45:13 360,320 ----a-w c:\windows\system32\drivers\tcpip.sys
- 2004-08-03 22:07:46 223,616 ----a-w c:\windows\system32\drivers\tcpip6.sys
+ 2008-06-20 09:52:06 225,920 ----a-w c:\windows\system32\drivers\tcpip6.sys
- 2004-08-03 22:15:06 82,944 ----a-w c:\windows\system32\drivers\wdmaud.sys
+ 2006-06-14 09:00:45 82,944 ----a-w c:\windows\system32\drivers\wdmaud.sys
- 2004-08-03 23:57:18 499,741 ----a-w c:\windows\system32\dxmasf.dll
+ 2006-08-24 12:17:12 500,278 ----a-w c:\windows\system32\dxmasf.dll
- 2007-08-13 17:35:46 346,624 ----a-w c:\windows\system32\dxtmsft.dll
+ 2008-10-16 20:04:07 347,136 ----a-w c:\windows\system32\dxtmsft.dll
- 2007-08-13 17:35:38 214,528 ----a-w c:\windows\system32\dxtrans.dll
+ 2008-10-16 20:04:07 214,528 ----a-w c:\windows\system32\dxtrans.dll
- 2004-08-03 23:57:20 1,094,144 ----a-w c:\windows\system32\esent.dll
+ 2005-10-20 22:25:05 1,094,144 ----a-w c:\windows\system32\esent.dll
- 2007-08-13 17:54:10 131,584 ----a-w c:\windows\system32\extmgr.dll
+ 2008-10-16 20:04:08 133,120 ----a-w c:\windows\system32\extmgr.dll
- 2004-08-03 23:57:20 16,896 ------w c:\windows\system32\fltlib.dll
+ 2006-08-21 12:26:05 16,896 ----a-w c:\windows\system32\fltlib.dll
- 2004-08-03 23:57:54 22,528 ------w c:\windows\system32\fltmc.exe
+ 2006-08-21 09:14:58 23,040 ----a-w c:\windows\system32\fltmc.exe
- 2001-08-18 12:00:00 79,360 ----a-w c:\windows\system32\fontsub.dll
+ 2005-10-17 21:20:02 80,896 ----a-w c:\windows\system32\fontsub.dll
- 2004-08-03 23:57:22 38,912 ----a-w c:\windows\system32\hhsetup.dll
+ 2005-05-27 02:04:47 41,472 ----a-w c:\windows\system32\hhsetup.dll
- 2001-08-18 12:00:00 81,978 ----a-w c:\windows\system32\hlink.dll
+ 2006-07-21 08:29:00 72,704 ----a-w c:\windows\system32\hlink.dll
- 2004-08-03 23:57:22 354,304 ----a-w c:\windows\system32\hypertrm.dll
+ 2004-11-17 17:42:24 356,352 ----a-w c:\windows\system32\hypertrm.dll
- 2007-08-13 17:36:26 61,952 ------w c:\windows\system32\icardie.dll
+ 2008-10-16 20:04:08 63,488 ----a-w c:\windows\system32\icardie.dll
- 2004-08-03 23:57:22 253,952 ----a-w c:\windows\system32\icm32.dll
+ 2005-06-29 01:49:39 254,976 ----a-w c:\windows\system32\icm32.dll
- 2007-08-13 17:39:06 54,784 ----a-w c:\windows\system32\ie4uinit.exe
+ 2008-10-16 13:10:46 70,656 ----a-w c:\windows\system32\ie4uinit.exe
- 2007-08-13 17:39:26 152,064 ----a-w c:\windows\system32\ieakeng.dll
+ 2008-10-16 20:04:08 153,088 ----a-w c:\windows\system32\ieakeng.dll
- 2007-08-13 17:39:54 229,376 ----a-w c:\windows\system32\ieaksie.dll
+ 2008-10-16 20:04:08 230,400 ----a-w c:\windows\system32\ieaksie.dll
- 2007-08-13 16:56:54 161,792 ----a-w c:\windows\system32\ieakui.dll
+ 2008-10-15 07:04:53 161,792 ----a-w c:\windows\system32\ieakui.dll
- 2007-02-12 15:10:12 2,451,312 ------w c:\windows\system32\ieapfltr.dat
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\system32\ieapfltr.dat
- 2007-07-11 11:27:48 383,488 ------w c:\windows\system32\ieapfltr.dll
+ 2008-10-16 20:04:09 383,488 ----a-w c:\windows\system32\ieapfltr.dll
- 2007-08-13 17:39:50 382,976 ----a-w c:\windows\system32\iedkcs32.dll
+ 2008-10-16 20:04:09 384,512 ----a-w c:\windows\system32\iedkcs32.dll
- 2007-08-13 17:54:10 6,049,280 ------w c:\windows\system32\ieframe.dll
+ 2008-10-16 20:04:12 6,066,176 ----a-w c:\windows\system32\ieframe.dll
- 2007-08-13 17:39:10 43,008 ----a-w c:\windows\system32\iernonce.dll
+ 2008-10-16 20:04:12 44,544 ----a-w c:\windows\system32\iernonce.dll
- 2007-08-13 17:34:04 266,752 ------w c:\windows\system32\iertutil.dll
+ 2008-10-16 20:04:12 267,776 ----a-w c:\windows\system32\iertutil.dll
- 2007-08-13 17:39:10 13,312 ----a-w c:\windows\system32\ieudinit.exe
+ 2008-10-16 13:11:09 13,824 ----a-w c:\windows\system32\ieudinit.exe
- 2004-08-03 23:57:22 95,744 ----a-w c:\windows\system32\iphlpapi.dll
+ 2006-05-19 13:09:50 95,744 ----a-w c:\windows\system32\iphlpapi.dll
- 2004-08-03 23:57:24 143,872 ----a-w c:\windows\system32\itircl.dll
+ 2005-05-27 02:04:47 155,136 ----a-w c:\windows\system32\itircl.dll
- 2001-08-18 12:00:00 144,896 ----a-w c:\windows\system32\jgdw400.dll
+ 2006-06-01 18:47:07 163,840 ----a-w c:\windows\system32\jgdw400.dll
- 2001-08-18 12:00:00 42,496 ----a-w c:\windows\system32\jgpl400.dll
+ 2006-06-01 18:47:07 27,648 ----a-w c:\windows\system32\jgpl400.dll
- 2007-08-13 17:54:10 27,136 ----a-w c:\windows\system32\jsproxy.dll
|
__________________ |