please help think im infected hijack log included
Hello everyone who reads i am here because i just bought a new tower(1700$) i paid cash for this is my 3rd tower in 5 yrs!i have not downloaded any music nothing like that only thing that was downloaded was psp brushes(but scanned b4 open) my computer has a large memory like 600g+harddrive! for some reason the other day it just shut down on my daughter then when i turn my computer on something pops up but its to fast to catch it! i scanned 1000 times 5-6 times a day nothing but cookies i cleaned it i disk cleaned all the good stuff today it shut down again after that my internet shut down no clue why i was playing on pogo and out of no where this music started to play(nothing else was open) then shut the game down my computer is only about 21/2 months old please help in anyway u can thanks sooo much<3 Nina
ps if i have any thing that i dont need in the hj list please let me know puttin out all this money is breaking my pockets thanks a bunch
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:04:27 AM, on 6/28/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\MHotKey.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Windows\CNYHKey.exe
C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe
C:\Windows\ChiFuncExt.exe
C:\Windows\ModLedKey.exe
C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\AOL 9.1\waol.exe
C:\Program Files (x86)\AOL 9.1\shellmon.exe
C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: AOL Toolbar Loader - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\partner.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [LedKey] CNYHKey.exe
O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [HostManager] "C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files (x86)\AOL 9.1\AOL.EXE" -b
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"http://www.playhub.com/sports-games/313/Sewer-Run.html"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: SmartCopy.lnk = C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
O4 - Global Startup: SmartLauncher.lnk = C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader2.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Unknown owner - C:\Windows\system32\agr64svc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: lxbc_device - - C:\Windows\system32\lxbccoms.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\partner.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11436 bytes
ps if i have any thing that i dont need in the hj list please let me know puttin out all this money is breaking my pockets thanks a bunch
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:04:27 AM, on 6/28/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\MHotKey.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Windows\CNYHKey.exe
C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe
C:\Windows\ChiFuncExt.exe
C:\Windows\ModLedKey.exe
C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\AOL 9.1\waol.exe
C:\Program Files (x86)\AOL 9.1\shellmon.exe
C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: AOL Toolbar Loader - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\partner.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [LedKey] CNYHKey.exe
O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [HostManager] "C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files (x86)\AOL 9.1\AOL.EXE" -b
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"http://www.playhub.com/sports-games/313/Sewer-Run.html"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: SmartCopy.lnk = C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
O4 - Global Startup: SmartLauncher.lnk = C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader2.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Unknown owner - C:\Windows\system32\agr64svc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: lxbc_device - - C:\Windows\system32\lxbccoms.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\partner.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11436 bytes
0
Comments
the tools used may cause damage if used on a computer with different infections.
If you think you have similar problems, please post a log in the HJT forum and wait for help.
Hello and welcome to the forums
My name is Katana and I will be helping you to remove any infection(s) that you may have.
Please observe these rules while we work:
(Just because you can't see a problem doesn't mean it isn't there)
If you can do those few things, everything should go smoothly
Please Note, your security programs may give warnings for some of the tools I will ask you to use.
Be assured, any links I give are safe
Please note:-
Your log shows signs that this is a 64 bit machine.
Most of the tools we use don't run on 64 bit machines, so the help I can offer is limited.
I will do my best though
Malwarebytes' Anti-Malware
Please download Malwarebytes' Anti-Malware to your desktop.
OTScanIt
You may need more than one post for the OTScanIt log as it will be quite long
OTS logfile created on: 6/28/2009 7:35:12 PM - Run 1
OTS by OldTimer - Version 3.0.9.0 Folder = C:\Users\Owner\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18783)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 4.00 Gb Available Physical Memory | 100.00% Memory free
4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 581.52 Gb Total Space | 534.52 Gb Free Space | 91.92% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OWNER-PC
Current User Name: Owner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Include 64bit Scans
Company Name Whitelist: On
Skip Microsoft Files: Off
File Age = All Days
[Processes - Safe List]
aolacsd.exe -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
aolsoftware.exe -> C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
aoltpsd3.exe -> C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe -> [2007/04/02 08:33:32 | 00,063,120 | ---- | M | MD5 = CAA1EBD9AD92E6C6E83A5642EBC34CA6] (AOL LLC)
chifuncext.exe -> C:\Windows\ChiFuncExt.exe -> [2008/02/01 15:04:50 | 00,057,344 | ---- | M | MD5 = 82A85D80EAD5B3950CFD775A84AE1651] (Chicony)
cnyhkey.exe -> C:\Windows\CNYHKey.exe -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
googletoolbarnotifier.exe -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
ielowutil.exe -> C:\Program Files (x86)\Internet Explorer\IELowutil.exe -> [2009/03/08 07:34:00 | 00,115,712 | ---- | M | MD5 = B9E350C3EEE748E332251274DEC33829] (Microsoft Corporation)
jusched.exe -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
mbam.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe -> [2009/06/17 11:27:48 | 01,287,440 | ---- | M | MD5 = 8C011B63EC5B2ABFBF4CCF5212794F52] (Malwarebytes Corporation)
mhotkey.exe -> C:\Windows\MHotKey.exe -> [2008/05/30 14:50:28 | 00,581,120 | ---- | M | MD5 = ED2674E1796B46A6FDD3E81F66AD45DB] ()
modledkey.exe -> C:\Windows\ModLedKey.exe -> [2007/01/08 18:51:56 | 00,053,248 | ---- | M | MD5 = 9DC803349108C74DED49990BA3E042FE] (Chicony)
ots.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:15 | 00,513,024 | ---- | M | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
richvideo.exe -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
shellmon.exe -> C:\Program Files (x86)\AOL 9.1\shellmon.exe -> [2008/11/06 07:42:59 | 00,054,568 | ---- | M | MD5 = 9A2A25E1B8FD6260F2DA8611465DB712] (AOL, LLC.)
smartcopy.exe -> C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe -> [2008/08/11 20:57:02 | 00,319,488 | ---- | M | MD5 = 7E433ED3F7822E46E759956D0ECB7AA4] ()
smartlauncher.exe -> C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe -> [2008/08/11 13:20:28 | 00,335,872 | ---- | M | MD5 = 5B2819B7FCD02A0FA4386A718DB0274A] (North Star com.)
waol.exe -> C:\Program Files (x86)\AOL 9.1\waol.exe -> [2008/11/06 07:42:59 | 00,039,208 | ---- | M | MD5 = 19AC8BB35611FD56280BAD07625ACAFB] (AOL, LLC.)
ymsgr_tray.exe -> C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe -> [2009/03/18 18:50:30 | 00,079,088 | ---- | M | MD5 = 5697CF86049652DBD80054ACE4F29812] (Yahoo! Inc.)
[Win32 Services - Safe List]
64bit-(AgereModemAudio) Agere Modem Call Progress Audio [Win32_Own | Auto | Running] -> C:\Windows\SysNative\agr64svc.exe -> [2008/07/22 22:54:06 | 00,015,872 | ---- | M | MD5 = 8B0D8B5BAFD4C9D57B41426BC68B32F9] (Agere Systems)
64bit-(ETService) Empowering Technology Service [Win32_Own | Auto | Running] -> C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe -> [2008/06/11 15:18:30 | 00,024,576 | ---- | M | MD5 = 4D06D9A26227AC485305133916888DF1] ()
64bit-(ForceWare Intelligent Application Manager (IAM)) ForceWare Intelligent Application Manager (IAM) [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -> [2008/09/08 15:11:02 | 00,726,016 | ---- | M | MD5 = EDFE4EE6513E9D9B33799C6838DA7B5F] ()
64bit-(lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysNative\lxbccoms.exe -> [2007/03/16 01:24:18 | 00,566,704 | ---- | M | MD5 = 5179331910B68F41F70E8CB481349D4A] ( )
64bit-(nSvcIp) ForceWare IP service [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -> [2008/09/08 15:09:52 | 00,221,696 | ---- | M | MD5 = 0304AC408043C6CB9E88FA6C813CF841] ()
64bit-(SfCtlCom) Trend Micro Central Control Component [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe -> [2009/03/31 23:25:06 | 00,833,872 | ---- | M | MD5 = 067C6A28521DC73D60BF1759B0AA8287] (Trend Micro Inc.)
64bit-(TMBMServer) Trend Micro Unauthorized Change Prevention Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\BM\TMBMSRV.exe -> [2009/03/03 04:39:56 | 00,565,512 | ---- | M | MD5 = 5868DA3C4C678D82BE43B62908265E7E] (Trend Micro Inc.)
64bit-(TmProxy) Trend Micro Proxy Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\TmProxy.exe -> [2009/03/31 23:25:32 | 00,900,360 | ---- | M | MD5 = F06885E70F0746F082CFC196288B3412] (Trend Micro Inc.)
64bit-(WinDefend) Windows Defender [Win32_Shared | Auto | Stopped] -> C:\Program Files\Windows Defender\mpsvc.dll -> [2008/01/20 22:47:32 | 00,383,544 | ---- | M | MD5 = 7D2A43E8FDF725A1133F6C6056A72CDC] (Microsoft Corporation)
64bit-(WMPNetworkSvc) Windows Media Player Network Sharing Service [Win32_Own | On_Demand | Running] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/20 22:52:15 | 01,216,000 | ---- | M | MD5 = 56382A5EB85A25446745E3BD6D50A3A5] (Microsoft Corporation)
(AOL ACS) AOL Connectivity Service [Win32_Own | Auto | Running] -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
(clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:42:14 | 00,066,368 | ---- | M | MD5 = 8EE772032E2FE80A924F3B8DD5082194] (Microsoft Corporation)
(clr_optimization_v2.0.50727_64) Microsoft .NET Framework NGEN v2.0.50727_X64 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:39:54 | 00,089,920 | ---- | M | MD5 = CE07A466201096F021CD09D631B21540] (Microsoft Corporation)
(ehRecvr) Windows Media Center Receiver Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehRecvr.exe -> [2008/01/20 22:51:36 | 00,344,064 | ---- | M | MD5 = 14CE384D2E27B64C256BDA4DC39C312D] (Microsoft Corporation)
(ehSched) Windows Media Center Scheduler Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehsched.exe -> [2008/01/20 22:51:36 | 00,153,600 | ---- | M | MD5 = B93159C1313D66FDFBBE876F5189CD52] (Microsoft Corporation)
(ehstart) Windows Media Center Service Launcher [Win32_Shared | Auto | Stopped] -> C:\Windows\ehome\ehstart.dll -> [2006/11/02 11:03:48 | 00,015,360 | ---- | M | MD5 = F5EE2527D74449868E3C3227A59BCD28] (Microsoft Corporation)
(FontCache3.0.0.0) Windows Presentation Foundation Font Cache 3.0.0.0 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe -> [2009/02/18 14:40:04 | 00,042,840 | ---- | M | MD5 = BC5B0BE5AF3510B0FD8C140EE42C6D3E] (Microsoft Corporation)
(GameConsoleService) GameConsoleService [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe -> [2008/05/05 18:25:46 | 00,165,416 | ---- | M | MD5 = 617DC2877015270914CA3C03873560D5] (WildTangent, Inc.)
(gusvc) Google Software Updater [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe -> [2009/04/25 02:15:11 | 00,182,768 | ---- | M | MD5 = CC839E8D766CC31A7710C9F38CF3E375] (Google)
(idsvc) Windows CardSpace [Win32_Shared | Unknown | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 14:39:11 | 00,857,432 | ---- | M | MD5 = 749F5F8CEDCA70F2A512945325FC489D] (Microsoft Corporation)
(KeyIso) CNG Key Isolation [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\keyiso.dll -> [2006/11/02 05:46:05 | 00,018,944 | ---- | M | MD5 = 74C2F29CC612B2B34231BEBD824D2FB2] (Microsoft Corporation)
(lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysWow64\lxbccoms.exe -> [2007/03/16 01:24:02 | 00,537,520 | ---- | M | MD5 = 31E0CCB891B94056E062886CB69174D2] ( )
(MSDTC) Distributed Transaction Coordinator [Win32_Own | Unknown | Stopped] -> C:\Windows\SysWow64\Msdtc -> [2006/11/02 09:34:14 | 00,000,000 | ---D | M]
(Netlogon) Netlogon [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\netlogon.dll -> [2009/04/11 02:28:23 | 00,592,896 | ---- | M | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
(odserv) Microsoft Office Diagnostics Service [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -> [2007/08/24 07:19:12 | 00,443,776 | ---- | M | MD5 = E54AA592A65F317390EEE386A8821692] (Microsoft Corporation)
(ose) Office Source Engine [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE -> [2006/10/26 18:03:08 | 00,145,184 | ---- | M | MD5 = 5A432A042DAE460ABE7199B758E8606C] (Microsoft Corporation)
(Partner Service) Partner Service [Win32_Own | On_Demand | Stopped] -> C:\ProgramData\Partner\partner.exe -> [2009/04/11 15:53:35 | 00,110,576 | ---- | M | MD5 = 3C6E7D73B0E9BC21D5E4B531AB7EC091] (Google Inc.)
(RichVideo) Cyberlink RichVideo Service(CRVS) [Win32_Own | Auto | Running] -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
(vds) Virtual Disk [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vds.mof -> [2006/11/02 02:35:15 | 00,060,994 | ---- | M | MD5 = 21A96F0C1B123F2463C6D624F125EAC9] ()
(VSS) Volume Shadow Copy [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vss.mof -> [2006/11/02 02:35:15 | 00,055,846 | ---- | M | MD5 = 9E4414C27EEC14EAF36A4BD24CFEEA93] ()
[Driver Services - Safe List]
64bit-(AgereSoftModem) Agere Systems Soft Modem [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\agrsm64.sys -> [2008/07/22 22:54:33 | 01,253,376 | ---- | M | MD5 = 385471F8147E1BD6A08C031E3AAD3910] (Agere Systems)
64bit-(AVer88xHD) AVerMedia 23888 AvStream Video Capture [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\AVer88xHD64.sys -> [2007/04/10 04:51:10 | 00,432,256 | ---- | M | MD5 = 5E76DEBBA4311AC1C44DE83D59A9584E] (AVerMedia TECHNOLOGIES, Inc.)
64bit-(HdAudAddService) Microsoft 1.1 UAA Function Driver for High Definition Audio Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\HdAudio.sys -> [2006/11/02 01:28:10 | 00,273,920 | ---- | M | MD5 = DF45F8142DC6DF9D18C39B3EFFBD0409] (Microsoft Corporation)
64bit-(nvamacpi) Nvidia Away Mode System [Kernel | Boot | Running] -> C:\Windows\SysNative\DRIVERS\NVAMACPI.sys -> [2005/08/27 13:19:21 | 00,028,192 | ---- | M | MD5 = 2B0885148F27B49365D3AD489F7D7B70] (NVIDIA Corporation)
64bit-(PAC207) SoC PC-Camera [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\PFC027.SYS -> [2006/12/05 11:34:26 | 00,572,416 | ---- | M | MD5 = 3A6DCEB1848470320E4A3C12D7A35B1C] (PixArt Imaging Inc.)
64bit-(RSUSBSTOR) RTS5121.Sys Realtek USB Card Reader [Kernel | On_Demand | Running] -> C:\Windows\SysNative\Drivers\RTS5121.sys -> [2008/06/04 02:06:54 | 00,204,288 | ---- | M | MD5 = 1807EA271C9685A25571D94AE4E3A8DD] (Realtek Semiconductor Corporation)
64bit-(tmpreflt) tmpreflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmpreflt.sys -> [2009/03/05 21:17:50 | 00,042,000 | ---- | M | MD5 = 681747A1EDEF58209192B2C4975516FC] (Trend Micro Inc.)
64bit-(tmtdi) Trend Micro TDI Driver [Kernel | System | Running] -> C:\Windows\SysNative\DRIVERS\tmtdi.sys -> [2009/03/03 19:12:46 | 00,096,784 | ---- | M | MD5 = C12D4E5E96A8CE0FD6F74F9C43191CFE] (Trend Micro Inc.)
64bit-(tmxpflt) tmxpflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmxpflt.sys -> [2009/03/05 21:17:50 | 00,235,536 | ---- | M | MD5 = 77E4C0F95931FEEB32E55A8596C9B79A] (Trend Micro Inc.)
64bit-(vsapint) vsapint [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\vsapint.sys -> [2009/03/05 21:17:50 | 01,839,632 | ---- | M | MD5 = F7D9B9631A59C9E4C14C6904D4376C13] (Trend Micro Inc.)
64bit-(wanatw) WAN Miniport (ATW) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\wanatw64.sys -> [2006/11/29 18:24:49 | 00,024,064 | ---- | M | MD5 = ECEB715BECE47E101DDEC06B11126066] (America Online, Inc.)
64bit-(WpdUsb) WpdUsb [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\wpdusb.sys -> [2008/01/20 22:47:28 | 00,046,080 | ---- | M | MD5 = 6329D1990DB931073B86AB5946D8E317] (Microsoft Corporation)
(int15) int15 [Kernel | Auto | Running] -> C:\Windows\SysWOW64\drivers\int15_64.sys -> [2008/06/11 15:13:24 | 00,017,952 | ---- | M | MD5 = 8C7FA71CB1EBCD3EDE8958D27B1BF0B4] (Acer, Inc.)
(mpsdrv) Windows Firewall Authorization Driver [Kernel | On_Demand | Running] -> C:\Windows\SysWow64\Wbem\mpsdrv.mof -> [2006/09/18 17:35:23 | 00,001,088 | ---- | M | MD5 = 74D68CB40BCD45AAE89A8BECC87D3868] ()
(Tcpip) TCP/IP Protocol Driver [Kernel | Boot | Running] -> C:\Windows\SysWow64\Wbem\tcpip.mof -> [2006/09/18 17:36:40 | 00,003,066 | ---- | M | MD5 = EEC4A068DE477651214F6C8014ECBEC0] ()
[Registry - Safe List]
< 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\System32\blank.htm ->
HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\SysWOW64\blank.htm ->
HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_LOCAL_MACHINE\: URLSearchHooks\\"{EA756889-2338-43DB-8F07-D1CA6FB9C90D}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [IAOLTBSearch Class] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
< Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> ->
HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> ->
HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Local Page" -> C:\Windows\system32\blank.htm ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"SearchDefaultBranded" -> 1 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Start Page" -> http://www.google.com/ ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"StartPageCache" -> 1 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: "ProxyEnable" -> 0 ->
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\Extensions -> ->
HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} -> C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\] -> [2009/06/26 04:11:05 | 00,000,000 | ---D | M]
< FireFox Extensions [User Folders] > ->
< HOSTS File > (761 bytes and 20 lines) -> C:\Windows\SysNative\Drivers\etc\hosts ->
Reset Hosts
127.0.0.1 localhost
::1 localhost
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{02478D38-C3F9-4efb-9B51-7695ECA05670} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [&Yahoo! Toolbar Helper] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} [HKLM] -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [Adobe PDF Link Helper] -> [2009/02/27 12:07:26 | 00,075,128 | ---- | M | MD5 = 5CF6190CD875DA6B35256FEE573E7908] (Adobe Systems Incorporated)
{5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar Loader] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} [HKLM] -> C:\ProgramData\Partner\partner.dll [Partner BHO Class] -> [2009/04/11 15:53:35 | 00,157,168 | ---- | M | MD5 = EEBD77C767456AB5A8290A2007D8F823] (Google Inc.)
{9030D464-4C02-4ABF-8ECC-5164760863C6} [HKLM] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [Windows Live Sign-in Helper] -> [2008/11/18 17:47:06 | 00,408,952 | ---- | M | MD5 = 4B9CBC54FA3A846649F59BC185DF63DF] (Microsoft Corporation)
{AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar Helper] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [Google Toolbar Notifier BHO] -> [2009/04/25 02:15:12 | 00,668,656 | ---- | M | MD5 = D1585B06DED161E13B905DC4FFBF7F12] (Google Inc.)
{C84D72FE-E17D-4195-BB24-76C02E2E7C4E} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [Google Dictionary Compression sdch] -> [2009/04/25 02:02:33 | 00,470,512 | ---- | M | MD5 = E35BCCB1D1D96F8E5B09C72AF70EC3F6] (Google Inc.)
{DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2009/04/19 22:18:14 | 00,035,840 | ---- | M | MD5 = 96A225C7F5346A9E81FC3DFA89A900C0] (Sun Microsystems, Inc.)
{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [SingleInstance Class] -> [2008/07/28 06:47:42 | 00,160,496 | ---- | M | MD5 = F64C4241FE5E519F62C47C361DC671D7] (Yahoo! Inc)
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
"{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
"{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [Yahoo! Toolbar] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
< Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
WebBrowser\\"{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
< 64bit-Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"NvCplDaemon" -> C:\Windows\SysNative\NvCpl.DLL [RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup] -> [2008/10/07 14:03:00 | 15,934,496 | ---- | M | MD5 = ABB919582B746BF56271F1E4B2410498] (NVIDIA Corporation)
"NVRaidService" -> C:\Windows\SysNative\nvraidservice.exe [C:\Windows\system32\nvraidservice.exe] -> [2008/08/18 23:01:52 | 00,333,344 | ---- | M | MD5 = 5686E81D6247A61C67F2C1055271205C] (NVIDIA Corporation)
"RtHDVCpl" -> C:\Windows\RAVCpl64.exe [RAVCpl64.exe] -> [2008/09/18 07:02:14 | 06,495,264 | ---- | M | MD5 = BAA1FEA046B3F857C82595B396719AAC] (Realtek Semiconductor)
"Skytel" -> C:\Windows\SkyTel.exe [Skytel.exe] -> [2008/09/18 07:02:52 | 01,833,504 | ---- | M | MD5 = C2B406805F8F6B8642464FF053A22F8F] (Realtek Semiconductor Corp.)
"UfSeAgnt.exe" -> C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe ["C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"] -> [2009/03/31 23:25:36 | 00,989,432 | ---- | M | MD5 = ED1EC273AF8E0BFCF34EE76F210EF482] (Trend Micro Inc.)
"Windows Defender" -> C:\Program Files\Windows Defender\MSASCui.exe [%ProgramFiles%\Windows Defender\MSASCui.exe -hide] -> [2008/01/20 22:47:32 | 01,584,184 | ---- | M | MD5 = 48DD40677817CE1053C2315F5A87E0D3] (Microsoft Corporation)
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"Adobe Reader Speed Launcher" -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe ["C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"] -> [2009/02/27 17:10:28 | 00,035,696 | ---- | M | MD5 = 452FA961163EF4AEE4815796A13AB2CF] (Adobe Systems Incorporated)
"eRecoveryService" -> [] -> File not found
"HostManager" -> C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe ["C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"] -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
"LchDrvKey" -> C:\Windows\LchDrvKey.exe [LchDrvKey.exe] -> [2007/03/28 21:55:54 | 00,036,864 | ---- | M | MD5 = B94C288D7BC9760A01304880A7CE18EB] ()
"LedKey" -> C:\Windows\CNYHKey.exe [CNYHKey.exe] -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
"P2Go_Menu" -> C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"] -> [2008/06/13 22:11:32 | 00,210,216 | ---- | M | MD5 = 601D77C0AA637A99073210894554B6BA] (CyberLink Corp.)
"SunJavaUpdateSched" -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe ["C:\Program Files (x86)\Java\jre6\bin\jusched.exe"] -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
"UpdatePDRShortCut" -> C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"] -> [2008/01/04 15:02:26 | 00,222,504 | ---- | M | MD5 = AAD52179D4A526AD4A705B87C6E4F72A] (CyberLink Corp.)
< RunOnce [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
"Malwarebytes' Anti-Malware" -> ["C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /install /silent] -> File not found
< Run [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
"WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
< Run [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
"WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
< Run [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"AOL Fast Start" -> C:\Program Files (x86)\AOL 9.1\AOL.EXE ["C:\Program Files (x86)\AOL 9.1\AOL.EXE" -b] -> [2008/11/06 07:42:54 | 00,050,472 | ---- | M | MD5 = C05CF2CA46A3AB41E6A2632A4C940A87] (AOL, LLC.)
"ehTray.exe" -> C:\Windows\ehome\ehTray.exe [C:\Windows\ehome\ehTray.exe] -> [2008/01/20 22:51:33 | 00,138,240 | ---- | M | MD5 = 65437DAD4F238EA9549408A783002222] (Microsoft Corporation)
"Messenger (Yahoo!)" -> C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe ["C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet] -> [2009/03/18 18:50:30 | 04,363,504 | ---- | M | MD5 = DB06B12E8DE572AB8B8C482E3EE574F5] (Yahoo! Inc.)
"Sidebar" -> C:\Program Files\Windows Sidebar\sidebar.exe [C:\Program Files\Windows Sidebar\sidebar.exe /autoRun] -> [2009/04/11 03:10:53 | 01,555,968 | ---- | M | Unable to obtain MD5] (Microsoft Corporation)
"swg" -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe] -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
"WMPNSCFG" -> C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe [C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe] -> File not found
< RunOnce [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
"Shockwave Updater" -> [C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"[URL]http://www.playhub.com/sports-games/313/Sewer-Run.html[/URL]"] -> File not found
< Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}
\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppName" -> [MyCamera.exe] -> File not found
\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppPath" -> C:\Program Files (x86)\Canon\CameraWindow\MyCamera [C:\Program Files (x86)\Canon\CameraWindow\MyCamera] -> [2009/05/04 13:41:48 | 00,000,000 | ---D | M]
\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"Policy" -> [3] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}
\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppName" -> [ZoomBrowser.exe] -> File not found
\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppPath" -> C:\Program Files (x86)\Canon\ZoomBrowser EX\Program [C:\Program Files (x86)\Canon\ZoomBrowser EX\Program] -> [2009/05/04 13:42:05 | 00,000,000 | ---D | M]
\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"Policy" -> [3] -> File not found
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
[URL="file://\\"NoActiveDesktop"]\\"NoActiveDesktop[/URL]" -> [1] -> File not found
[URL="file://\\"NoActiveDesktopChanges"]\\"NoActiveDesktopChanges[/URL]" -> [1] -> File not found
[URL="file://\\"ForceActiveDesktopOn"]\\"ForceActiveDesktopOn[/URL]" -> [0] -> File not found
[URL="file://\\"BindDirectlyToPropertySetStorage"]\\"BindDirectlyToPropertySetStorage[/URL]" -> [0] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
[URL="file://\\"ConsentPromptBehaviorAdmin"]\\"ConsentPromptBehaviorAdmin[/URL]" -> [2] -> File not found
[URL="file://\\"ConsentPromptBehaviorUser"]\\"ConsentPromptBehaviorUser[/URL]" -> [1] -> File not found
[URL="file://\\"EnableInstallerDetection"]\\"EnableInstallerDetection[/URL]" -> [1] -> File not found
[URL="file://\\"EnableLUA"]\\"EnableLUA[/URL]" -> [1] -> File not found
[URL="file://\\"EnableSecureUIAPaths"]\\"EnableSecureUIAPaths[/URL]" -> [1] -> File not found
[URL="file://\\"EnableVirtualization"]\\"EnableVirtualization[/URL]" -> [1] -> File not found
[URL="file://\\"PromptOnSecureDesktop"]\\"PromptOnSecureDesktop[/URL]" -> [1] -> File not found
[URL="file://\\"ValidateAdminCodeSignatures"]\\"ValidateAdminCodeSignatures[/URL]" -> [0] -> File not found
[URL="file://\\"dontdisplaylastusername"]\\"dontdisplaylastusername[/URL]" -> [0] -> File not found
[URL="file://\\"legalnoticecaption"]\\"legalnoticecaption[/URL]" -> [] -> File not found
[URL="file://\\"legalnoticetext"]\\"legalnoticetext[/URL]" -> [] -> File not found
[URL="file://\\"scforceoption"]\\"scforceoption[/URL]" -> [0] -> File not found
[URL="file://\\"shutdownwithoutlogon"]\\"shutdownwithoutlogon[/URL]" -> [1] -> File not found
[URL="file://\\"undockwithoutlogon"]\\"undockwithoutlogon[/URL]" -> [1] -> File not found
[URL="file://\\"FilterAdministratorToken"]\\"FilterAdministratorToken[/URL]" -> [0] -> File not found
[URL="file://\\"EnableUIADesktopToggle"]\\"EnableUIADesktopToggle[/URL]" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
\UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
[URL="file://\\"NoDesktopCleanupWizard"]\\"NoDesktopCleanupWizard[/URL]" -> [1] -> File not found
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Button: Blog This] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Menu: &Blog This in Windows Live Writer] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
{2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Button: Send to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
{2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Menu: S&end to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
{92780B25-18CC-41C8-B9BE-3C9C571A8263}:{FF059E31-CC5A-4E2E-BF3B-96E929D65503} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL [Button: Research] -> [2006/10/27 00:12:22 | 00,040,424 | ---- | M | MD5 = 7FC19DA1DC70C78D2FBD7A1D10942051] (Microsoft Corporation)
< 64bit-Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< 64bit-Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< 64bit-Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
objects_aol.com
[*] -> Out of zone range - ( 5 ) ->
1 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab [Shockwave ActiveX Control] ->
{4871A87A-BFDD-4106-8153-FFDE2BAC2967} [HKLM] -> http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab [DLM Control] ->
{9C23D886-43CB-43DE-B2DB-112A68D7E10A} [HKLM] -> http://lads.myspace.com/upload/MySpaceUploader2.cab [MySpace Uploader Control] ->
{D4323BF2-006A-4440-A2F5-27E3E7AB25F8} [HKLM] -> http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe [Reg Error: Key error.] ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
DhcpNameServer -> 10.0.0.1 ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{9712E214-2095-4240-BE72-812D046DB980}\\DhcpNameServer -> 10.0.0.1 (NVIDIA nForce 10/100/1000 Mbps Ethernet ) ->
< 64bit-Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
64bit-*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 03:10:17 | 03,079,168 | ---- | M | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
*MultiFile Done* -> ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/04/11 02:27:36 | 02,926,592 | ---- | M | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
*MultiFile Done* -> ->
< Vista Public Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\AuthorizedApplications ->
< Vista Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications ->
< Vista Active Firewall Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
{3F8907F3-E4DE-4260-BB5F-938A3DE8E186} -> lport=2869 | protocol=6 | dir=in | action=allow | name=windows live messenger (upnp-in) | app=system |
{4104AA77-862A-4930-8044-BB2521DFCFFE} -> lport=1900 | protocol=17 | dir=in | action=allow | name=windows live messenger (ssdp-in) | app=svchost.exe | svc=ssdpsrv |
< Vista Active Application Exception Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
{0B724075-D525-47F6-8D4B-9E245EC70262} -> profile=private | protocol=6 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
{109D9062-5376-4803-87AC-657754C3D249} -> profile=private | protocol=17 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
{1B42F944-37D0-4489-BD8D-B48BEA9B315D} -> dir=in | action=allow | name=windows live messenger | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
{40D8ACBC-D4AA-4FF0-9CBC-D519575686A9} -> profile=private | protocol=17 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
{44211C36-AA6F-4C10-88A7-C468053E0DED} -> dir=in | action=allow | name=cyberlink powerdirector | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |
{52C00A5E-B486-4A04-8830-50426C0CDEC1} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
{5E7E5103-2C83-4832-BB34-45E2BFA3E760} -> profile=public | protocol=6 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
{79F58122-9134-420A-9DE3-606741936991} -> profile=private | protocol=6 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
{874CBC43-45DF-4CB6-A706-3036EC2A1EFA} -> dir=in | action=allow | name=windows live call | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe |
{8FF32FF2-91BF-4786-BAF7-ED52E99B5686} -> profile=private | protocol=17 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
{9083699D-DA2A-489B-AF64-AE61BBDEBC78} -> profile=private | protocol=17 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
{9B85772F-6E6E-42FB-9036-DC90C765F5E5} -> profile=private | protocol=6 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
{A3E0E701-CF8A-47F7-9C91-31067D3050A6} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
{A442B7B5-04C7-47C8-A27C-FDBA207AB5AB} -> profile=private | protocol=6 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
{A6FF2A80-7BA5-4D3E-9E9E-3A8882969504} -> profile=private | protocol=17 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
{B8E5CDEB-F407-4A20-A242-DC1CC504AA7E} -> profile=private | protocol=6 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
{C0142577-923F-4E22-A0DF-8489C85CA3DC} -> profile=private | protocol=17 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
{C11858D5-051F-42B8-9C8D-2B05E596ABDF} -> profile=private | protocol=6 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
{C4ED3121-7FF3-42C6-9C51-135DF8317CD0} -> profile=private | protocol=6 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
{C88934A9-D75C-47E1-B214-23297DD1DBAF} -> profile=private | protocol=17 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
{C9C3854F-F530-45C8-B10E-B15236BD2332} -> profile=private | protocol=6 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
{CDA3C051-F009-4EDF-8FF7-D98D030B5BFC} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
{D9E28F03-2CED-4A60-9C0B-202149E69932} -> profile=private | protocol=17 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
{E1FE8404-25BC-4E59-B8AF-A215A4B51D1F} -> profile=public | protocol=17 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
{E5638F40-7C0E-4BBD-A02A-50501C0E8432} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
{EB9061D6-6081-4E5D-954F-284764B346C1} -> profile=private | protocol=6 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
{F55E85FC-E7D1-4771-8D3F-22F505B458D0} -> profile=private | protocol=17 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
{FC53E6EB-19E6-4867-BA34-8B33A3833C39} -> dir=in | action=allow | name=windows live sync | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
TCP Query User{907A49E8-F920-4158-8172-426988741353}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=6 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
UDP Query User{99BE73CA-B2F5-40F4-BBB0-0AA16F0D47DE}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=17 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
"AlternateShell" -> cmd.exe ->
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 1 ->
"DisplayName" -> CD-ROM Driver ->
"ImagePath" -> C:\Windows\SysNative\DRIVERS\cdrom.sys [system32\DRIVERS\cdrom.sys] -> [2009/04/11 01:34:39 | 00,079,872 | ---- | M | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->
OTS.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:13 | 00,513,024 | ---- | C | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
Malwarebytes -> C:\Users\Owner\AppData\Roaming\Malwarebytes -> [2009/06/28 19:30:23 | 00,000,000 | ---D | C]
Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/06/28 19:30:22 | 00,000,850 | ---- | C | MD5 = 9AD6C291BC07B05FD556F5132E14FCCE] ()
mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2009/06/28 19:30:19 | 00,038,160 | ---- | C | MD5 = 148D5D488BA502381C2B7B615F7F84CF] (Malwarebytes Corporation)
mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2009/06/28 19:30:17 | 00,022,040 | ---- | C | MD5 = CEDB73ADD243D2D654A32C191A9DBDB5] (Malwarebytes Corporation)
Malwarebytes' Anti-Malware -> C:\Program Files (x86)\Malwarebytes' Anti-Malware -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
Malwarebytes -> C:\ProgramData\Malwarebytes -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
Image14.png -> C:\Users\Owner\Desktop\Image14.png -> [2009/06/28 05:34:24 | 00,161,417 | ---- | C | MD5 = A71B728D81BCC7F64D75D2520A3D7CBE] ()
Image13.png -> C:\Users\Owner\Desktop\Image13.png -> [2009/06/28 05:23:11 | 00,042,455 | ---- | C | MD5 = 4086B04E50B51B9667ECA29B1638094F] ()
1zombiegif.gif -> C:\Users\Owner\Desktop\1zombiegif.gif -> [2009/06/28 05:14:52 | 00,017,429 | ---- | C | MD5 = 0A2293FB2A5E6E56AAD59CAFE3C2E634] ()
Image6.jpg -> C:\Users\Owner\Desktop\Image6.jpg -> [2009/06/28 05:05:00 | 00,021,252 | ---- | C | MD5 = B603A15512B59F8265DA1E0684A46375] ()
12.png -> C:\Users\Owner\Desktop\12.png -> [2009/06/28 05:04:34 | 00,068,970 | ---- | C | MD5 = C235CB85D05D8D7A8D69C3FE1E311E43] ()
foliage-swirls-images.zip -> C:\Users\Owner\Desktop\foliage-swirls-images.zip -> [2009/06/28 03:58:52 | 03,039,670 | ---- | C | MD5 = 92964B63B5649364E4C41DADE58F3A13] ()
psp -> C:\Users\Owner\Desktop\psp -> [2009/06/28 03:57:16 | 00,000,000 | ---D | C]
fairy-wings-images -> C:\Users\Owner\Desktop\fairy-wings-images -> [2009/06/28 03:51:36 | 00,000,000 | ---D | C]
HijackThis.lnk -> C:\Users\Owner\Desktop\HijackThis.lnk -> [2009/06/28 02:04:16 | 00,001,930 | ---- | C | MD5 = 284D8E8B7E19D0413BB2F9BF09BB64A1] ()
Trend Micro -> C:\Program Files (x86)\Trend Micro -> [2009/06/28 02:04:16 | 00,000,000 | ---D | C]
222.jpg -> C:\Users\Owner\Desktop\222.jpg -> [2009/06/27 00:22:56 | 00,956,953 | ---- | C | MD5 = 4E6AB33D6C5DB3B5038B52A0F23F66B0] ()
l_3d3493b255294081a56ede11ec7e2102.jpg -> C:\Users\Owner\Desktop\l_3d3493b255294081a56ede11ec7e2102.jpg -> [2009/06/25 22:22:11 | 00,032,565 | ---- | C | MD5 = 7D51162BBF7ED9164B581B8232B76876] ()
love.png -> C:\Users\Owner\Desktop\love.png -> [2009/06/24 20:54:20 | 00,003,077 | ---- | C | MD5 = 926A48CAC6C27D00FB0BC187560DD821] ()
love.jpg -> C:\Users\Owner\Desktop\love.jpg -> [2009/06/24 20:53:40 | 00,009,591 | ---- | C | MD5 = 4C308250E84C33918F0D5D1BEF8D055C] ()
Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2009/06/22 18:24:27 | 00,001,919 | ---- | C | MD5 = 95478CD74436938A7C9C41158D8A132A] ()
Adobe -> C:\Program Files (x86)\Common Files\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
Adobe -> C:\Program Files (x86)\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
NINA.html -> C:\Users\Owner\Documents\NINA.html -> [2009/06/20 02:14:40 | 00,000,989 | ---- | C | MD5 = 4C33571BCB02BECF1362DE1F9DFD2646] ()
English_PSPX_RegXtras.exe -> C:\Users\Owner\Desktop\English_PSPX_RegXtras.exe -> [2009/06/12 16:14:32 | 15,935,168 | ---- | C | MD5 = 99FAE6E1E7E13FA9AD43336308084709] (Corel )
Download Manager -> C:\Users\Owner\AppData\Roaming\Download Manager -> [2009/06/12 16:14:25 | 00,000,000 | ---D | C]
rpcrt4.dll -> C:\Windows\SysNative\rpcrt4.dll -> [2009/06/09 16:57:55 | 01,305,600 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
rpcrt4.dll -> C:\Windows\SysWow64\rpcrt4.dll -> [2009/06/09 16:57:54 | 00,677,376 | ---- | C | MD5 = 0ABE67004EB4C162F4456E64F90A11FD] (Microsoft Corporation)
localspl.dll -> C:\Windows\SysNative\localspl.dll -> [2009/06/09 16:57:43 | 00,772,608 | ---- | C | MD5 = 6D82554101FFC7F3F048611FB55327BD] (Microsoft Corporation)
localspl.dll -> C:\Windows\SysWow64\localspl.dll -> [2009/06/09 16:57:43 | 00,623,616 | ---- | C | MD5 = 3F5F5A4D358126FA69C79FB15A4878B8] (Microsoft Corporation)
mshtml.dll -> C:\Windows\SysWow64\mshtml.dll -> [2009/06/09 16:57:29 | 05,936,128 | ---- | C | MD5 = 89CCF8069B59780BDEF45E345E671347] (Microsoft Corporation)
ieframe.dll -> C:\Windows\SysWow64\ieframe.dll -> [2009/06/09 16:57:28 | 11,064,832 | ---- | C | MD5 = 4BDD02DD6FDC19698DAA841554782897] (Microsoft Corporation)
mshtml.dll -> C:\Windows\SysNative\mshtml.dll -> [2009/06/09 16:57:28 | 09,234,432 | ---- | C | MD5 = BAC71BF7A84AD0BDBD58E46B68D9EB81] (Microsoft Corporation)
ieframe.dll -> C:\Windows\SysNative\ieframe.dll -> [2009/06/09 16:57:27 | 12,454,912 | ---- | C | MD5 = 01C3CB1BB522A96804AF62C635108488] (Microsoft Corporation)
iertutil.dll -> C:\Windows\SysNative\iertutil.dll -> [2009/06/09 16:57:27 | 02,332,672 | ---- | C | MD5 = 6321C0B8E53C80775BC93BA6898FEFFC] (Microsoft Corporation)
iertutil.dll -> C:\Windows\SysWow64\iertutil.dll -> [2009/06/09 16:57:27 | 01,985,024 | ---- | C | MD5 = AFA8DE49250609F01EF8D7C488993B45] (Microsoft Corporation)
urlmon.dll -> C:\Windows\SysWow64\urlmon.dll -> [2009/06/09 16:57:27 | 01,207,808 | ---- | C | MD5 = CC12F6C30002D4C0B9FA7CCE6D52F71D] (Microsoft Corporation)
mshtml.tlb -> C:\Windows\SysWow64\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
mshtml.tlb -> C:\Windows\SysNative\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | MD5 = E1E65F6D47527415EB364E21FB37682F] (Microsoft Corporation)
inetcpl.cpl -> C:\Windows\SysNative\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,538,560 | ---- | C | MD5 = 1D9BFC7F4451057DAC8943DB1FC07EB6] (Microsoft Corporation)
urlmon.dll -> C:\Windows\SysNative\urlmon.dll -> [2009/06/09 16:57:26 | 01,484,288 | ---- | C | MD5 = D7B749FAD99A86EA743A2A339B887ABA] (Microsoft Corporation)
inetcpl.cpl -> C:\Windows\SysWow64\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,469,440 | ---- | C | MD5 = 2C1BD1E52DECC9B5F46BA484ED01A68E] (Microsoft Corporation)
wininet.dll -> C:\Windows\SysNative\wininet.dll -> [2009/06/09 16:57:26 | 01,146,368 | ---- | C | MD5 = 18A01A9307257637D8FB4FA86F4A689F] (Microsoft Corporation)
wininet.dll -> C:\Windows\SysWow64\wininet.dll -> [2009/06/09 16:57:26 | 00,915,456 | ---- | C | MD5 = D78B62CC91F043CED52F23F0085E7FE2] (Microsoft Corporation)
iedkcs32.dll -> C:\Windows\SysNative\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,457,728 | ---- | C | MD5 = DE1C1049F2C48DA5CC6BD7B1CC8FDD7F] (Microsoft Corporation)
iedkcs32.dll -> C:\Windows\SysWow64\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,385,536 | ---- | C | MD5 = B012602C3FD7D55222E9C03BB6213085] (Microsoft Corporation)
ieui.dll -> C:\Windows\SysNative\ieui.dll -> [2009/06/09 16:57:26 | 00,219,136 | ---- | C | MD5 = 2CF92A1FEFBE01F92D45D2A94DEABEDD] (Microsoft Corporation)
ie4uinit.exe -> C:\Windows\SysWow64\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,173,056 | ---- | C | MD5 = 6A3FFA937B9C7B19BDA1AB0DE5B4CCDE] (Microsoft Corporation)
ieui.dll -> C:\Windows\SysWow64\ieui.dll -> [2009/06/09 16:57:26 | 00,164,352 | ---- | C | MD5 = 90E89697993E0800B32A0E7BC615970F] (Microsoft Corporation)
iesetup.dll -> C:\Windows\SysNative\iesetup.dll -> [2009/06/09 16:57:26 | 00,077,312 | ---- | C | MD5 = 0CA82EF5FD31BE470914F27C3F23C988] (Microsoft Corporation)
iernonce.dll -> C:\Windows\SysNative\iernonce.dll -> [2009/06/09 16:57:26 | 00,072,192 | ---- | C | MD5 = 2E97D916BA32C2263B2EDC1303588300] (Microsoft Corporation)
iesetup.dll -> C:\Windows\SysWow64\iesetup.dll -> [2009/06/09 16:57:26 | 00,071,680 | ---- | C | MD5 = 3B88C6AD6525FE839AE465AD6F9CEAB1] (Microsoft Corporation)
ie4uinit.exe -> C:\Windows\SysNative\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,070,656 | ---- | C | MD5 = 25941103997FEACAF0FEE929171E0DD5] (Microsoft Corporation)
iernonce.dll -> C:\Windows\SysWow64\iernonce.dll -> [2009/06/09 16:57:26 | 00,055,808 | ---- | C | MD5 = 19267896F66836EAB6C0D458A9C0A7BE] (Microsoft Corporation)
jsproxy.dll -> C:\Windows\SysNative\jsproxy.dll -> [2009/06/09 16:57:26 | 00,031,744 | ---- | C | MD5 = B5E87364A9099745131012130CDA56D6] (Microsoft Corporation)
jsproxy.dll -> C:\Windows\SysWow64\jsproxy.dll -> [2009/06/09 16:57:26 | 00,025,600 | ---- | C | MD5 = 5DD32FE00D58AB21A16B91F063EA0CCB] (Microsoft Corporation)
win32k.sys -> C:\Windows\SysNative\win32k.sys -> [2009/06/09 16:55:58 | 02,745,344 | ---- | C | MD5 = D29C0E2572452DF3819A1FD70DF70960] (Microsoft Corporation)
sabrina aunt kelly letter.rtf -> C:\Users\Owner\Documents\sabrina aunt kelly letter.rtf -> [2009/06/06 11:56:11 | 00,000,767 | ---- | C | MD5 = 9F27BD1E947E628ED8C075DF231D4BE6] ()
ZoomBrowser EX.lnk -> C:\Users\Owner\ZoomBrowser EX.lnk -> [2009/06/04 23:26:57 | 00,001,125 | ---- | C | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
Personal Printing Guide.lnk -> C:\Users\Owner\Personal Printing Guide.lnk -> [2009/06/04 23:26:57 | 00,001,039 | ---- | C | MD5 = 189A154484643D47EF3D7D795C702A43] ()
INFORMATION - Shortcut.lnk -> C:\Users\Owner\INFORMATION - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,395 | ---- | C | MD5 = 31534B3665D8838EDA892E6E252B1D4D] ()
Computer - Shortcut.lnk -> C:\Users\Owner\Computer - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,104 | ---- | C | MD5 = FD8F1F54665903B748744026D47A4967] ()
vi-VN -> C:\Windows\SysWow64\vi-VN -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
eu-ES -> C:\Windows\SysWow64\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
eu-ES -> C:\Windows\SysNative\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
ca-ES -> C:\Windows\SysWow64\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
ca-ES -> C:\Windows\SysNative\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
vi-VN -> C:\Windows\SysNative\vi-VN -> [2009/06/04 05:23:38 | 00,000,000 | ---D | C]
EventProviders -> C:\Windows\SysNative\EventProviders -> [2009/06/04 04:48:51 | 00,000,000 | ---D | C]
NlsLexicons0007.dll -> C:\Windows\SysNative\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = AFA4BC5B25F9280C6B954A37BF74C343] (Microsoft Corporation)
NlsLexicons0007.dll -> C:\Windows\SysWow64\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = 795166DED9B1B32136B150A12A1DEBAE] (Microsoft Corporation)
SLsvc.exe -> C:\Windows\SysNative\SLsvc.exe -> [2009/06/04 04:48:32 | 02,582,016 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
FunctionDiscoveryFolder.dll -> C:\Windows\SysNative\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,146,304 | ---- | C | MD5 = 9CD8BD40C8A3A69E875E34B357AE4975] (Microsoft Corporation)
FunctionDiscoveryFolder.dll -> C:\Windows\SysWow64\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,134,528 | ---- | C | MD5 = 780E82F54147B3D11F52D3128B727534] (Microsoft Corporation)
SLCExt.dll -> C:\Windows\SysNative\SLCExt.dll -> [2009/06/04 04:48:32 | 00,710,144 | ---- | C | MD5 = 110967BBD4D778FC0BB04FC9DAEFCB44] (Microsoft Corporation)
NlsLexicons0009.dll -> C:\Windows\SysNative\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = C8E7E069468BC0DEAFE69375421FE839] (Microsoft Corporation)
NlsLexicons0009.dll -> C:\Windows\SysWow64\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = 8629B71343F61E1140243581C63BC0C7] (Microsoft Corporation)
ntoskrnl.exe -> C:\Windows\SysNative\ntoskrnl.exe -> [2009/06/04 04:48:29 | 04,699,608 | ---- | C | MD5 = 1B60CCC70788044404EEFBBB389FC111] (Microsoft Corporation)
mssrch.dll -> C:\Windows\SysNative\mssrch.dll -> [2009/06/04 04:48:29 | 02,280,448 | ---- | C | MD5 = A0B762992A52FA8A657A97C34BEEA807] (Microsoft Corporation)
SLCExt.dll -> C:\Windows\SysWow64\SLCExt.dll -> [2009/06/04 04:48:29 | 01,081,344 | ---- | C | MD5 = 1D40A5268C1517BC445BA0053584C4AA] (Microsoft Corporation)
msstrc.dll -> C:\Windows\SysNative\msstrc.dll -> [2009/06/04 04:48:29 | 00,078,336 | ---- | C | MD5 = 3CEA019D459582AFE7551F267DDEF23A] (Microsoft Corporation)
msscntrs.dll -> C:\Windows\SysNative\msscntrs.dll -> [2009/06/04 04:48:29 | 00,073,728 | ---- | C | MD5 = 4702DF71B9AD487C84A90BAAC967615D] (Microsoft Corporation)
xmlfilter.dll -> C:\Windows\SysNative\xmlfilter.dll -> [2009/06/04 04:48:29 | 00,067,072 | ---- | C | MD5 = A6C454A7E75ACC924E9F2FB8BA4FC8A0] (Microsoft Corporation)
kd1394.dll -> C:\Windows\SysNative\kd1394.dll -> [2009/06/04 04:48:29 | 00,019,928 | ---- | C | MD5 = 9334A2D1CDB6D4DC4060B94021BB7A59] (Microsoft Corporation)
msshooks.dll -> C:\Windows\SysNative\msshooks.dll -> [2009/06/04 04:48:29 | 00,011,776 | ---- | C | MD5 = EBCEDFD064A4F210037AD21EC8AFC220] (Microsoft Corporation)
mssrch.dll -> C:\Windows\SysWow64\mssrch.dll -> [2009/06/04 04:48:27 | 01,480,704 | ---- | C | MD5 = 218B73EA8341EA9FDF018D43052E790A] (Microsoft Corporation)
wcnwiz2.dll -> C:\Windows\SysWow64\wcnwiz2.dll -> [2009/06/04 04:48:26 | 00,968,192 | ---- | C | MD5 = 0BA42FAEEE97512603876A908EDB6BF4] (Microsoft Corporation)
WscEapPr.dll -> C:\Windows\SysNative\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,397,312 | ---- | C | MD5 = 543D30393843BEBFF7215CC36AC3B303] (Microsoft Corporation)
WscEapPr.dll -> C:\Windows\SysWow64\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,291,328 | ---- | C | MD5 = 2E97EB05C0FD5AA7E229481584C73309] (Microsoft Corporation)
tquery.dll -> C:\Windows\SysNative\tquery.dll -> [2009/06/04 04:48:25 | 02,204,672 | ---- | C | MD5 = 6FF25F418D373097C199E3ACCFA06E78] (Microsoft Corporation)
icardagt.exe -> C:\Windows\SysNative\icardagt.exe -> [2009/06/04 04:48:25 | 01,381,720 | ---- | C | MD5 = 7CAE6C298C4EF4A9BDB25A0C8BC79AD5] (Microsoft Corporation)
PresentationNative_v0300.dll -> C:\Windows\SysNative\PresentationNative_v0300.dll -> [2009/06/04 04:48:25 | 01,165,664 | ---- | C | MD5 = 79B7FFFFF8C5F4F1674A47647D0C6FF6] (Microsoft Corporation)
imapi2fs.dll -> C:\Windows\SysNative\imapi2fs.dll -> [2009/06/04 04:48:25 | 01,146,880 | ---- | C | MD5 = D14B95A4CC72AD0A196FA1C9738FE93C] (Microsoft Corporation)
wcnwiz2.dll -> C:\Windows\SysNative\wcnwiz2.dll -> [2009/06/04 04:48:25 | 01,085,440 | ---- | C | MD5 = 53A508E583F7EC971BCA8FEA4D861741] (Microsoft Corporation)
hdaudbus.sys -> C:\Windows\SysNative\drivers\hdaudbus.sys -> [2009/06/04 04:48:25 | 00,948,736 | ---- | C | MD5 = F942C5820205F2FB453243EDFEC82A3D] (Microsoft Corporation)
infocardcpl.cpl -> C:\Windows\SysNative\infocardcpl.cpl -> [2009/06/04 04:48:25 | 00,046,944 | ---- | C | MD5 = 563AB05EA9F646A7B8B1A83FFD9E27F6] (Microsoft Corporation)
lsasrv.dll -> C:\Windows\SysNative\lsasrv.dll -> [2009/06/04 04:48:24 | 01,688,064 | ---- | C | MD5 = 5A7CAD479A8729D2B500997404C153D8] (Microsoft Corporation)
tquery.dll -> C:\Windows\SysWow64\tquery.dll -> [2009/06/04 04:48:24 | 01,576,960 | ---- | C | MD5 = DEB9D08750423069647C3A066CEC7A1B] (Microsoft Corporation)
RMActivate_isv.exe -> C:\Windows\SysNative\RMActivate_isv.exe -> [2009/06/04 04:48:24 | 00,600,576 | ---- | C | MD5 = E415C8BFF0807B1C74E280BA036B038C] (Microsoft Corporation)
RMActivate.exe -> C:\Windows\SysNative\RMActivate.exe -> [2009/06/04 04:48:24 | 00,599,552 | ---- | C | MD5 = 5E465CD2D27700DD2A63671EE8153519] (Microsoft Corporation)
msi.dll -> C:\Windows\SysNative\msi.dll -> [2009/06/04 04:48:23 | 03,108,864 | ---- | C | MD5 = D092AA9740076D7B55BA7E3ECD22DFA7] (Microsoft Corporation)
ntfs.sys -> C:\Windows\SysNative\drivers\ntfs.sys -> [2009/06/04 04:48:23 | 01,515,496 | ---- | C | MD5 = BAC869DFB98E499BA4D9BB1FB43270E1] (Microsoft Corporation)
tcpip.sys -> C:\Windows\SysNative\drivers\tcpip.sys -> [2009/06/04 04:48:23 | 01,426,408 | ---- | C | MD5 = 99D07AD0EF2C535610F6573C29BC045E] (Microsoft Corporation)
sysmain.dll -> C:\Windows\SysNative\sysmain.dll -> [2009/06/04 04:48:23 | 00,886,784 | ---- | C | MD5 = 92D7A8B0F87B036F17D25885937897A6] (Microsoft Corporation)
PresentationNative_v0300.dll -> C:\Windows\SysWow64\PresentationNative_v0300.dll -> [2009/06/04 04:48:23 | 00,779,136 | ---- | C | MD5 = E5866CA09AC74AC6C1F8501BB60DFD90] (Microsoft Corporation)
shell32.dll -> C:\Windows\SysNative\shell32.dll -> [2009/06/04 04:48:22 | 12,897,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
ntdll.dll -> C:\Windows\SysNative\ntdll.dll -> [2009/06/04 04:48:22 | 01,582,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
RMActivate_isv.exe -> C:\Windows\SysWow64\RMActivate_isv.exe -> [2009/06/04 04:48:22 | 00,526,336 | ---- | C | MD5 = BAE3E8E95A9F62496A38F14D1B36AD10] (Microsoft Corporation)
msi.dll -> C:\Windows\SysWow64\msi.dll -> [2009/06/04 04:48:21 | 02,241,536 | ---- | C | MD5 = 401DFFDBBBD3F07C747ED1AE2BB88106] (Microsoft Corporation)
scavenge.dll -> C:\Windows\SysNative\scavenge.dll -> [2009/06/04 04:48:21 | 00,946,688 | ---- | C | MD5 = 589286073C7AB737330CE8642EA38980] (Microsoft Corporation)
spsys.sys -> C:\Windows\SysNative\drivers\spsys.sys -> [2009/06/04 04:48:21 | 00,594,432 | ---- | C | MD5 = 75C881C65CEF2C7B911EB0A351957368] (Microsoft Corporation)
secproc.dll -> C:\Windows\SysNative\secproc.dll -> [2009/06/04 04:48:21 | 00,539,136 | ---- | C | MD5 = 267D3A1025626604EEA3E5EE2EA1BEAD] (Microsoft Corporation)
secproc_isv.dll -> C:\Windows\SysNative\secproc_isv.dll -> [2009/06/04 04:48:21 | 00,538,624 | ---- | C | MD5 = A9A8EB2B3E4746145D1E536B528A7D12] (Microsoft Corporation)
RMActivate.exe -> C:\Windows\SysWow64\RMActivate.exe -> [2009/06/04 04:48:21 | 00,518,144 | ---- | C | MD5 = 2DC9C62DF0538700978C66F00379C653] (Microsoft Corporation)
imapi2fs.dll -> C:\Windows\SysWow64\imapi2fs.dll -> [2009/06/04 04:48:20 | 00,677,376 | ---- | C | MD5 = C3EB60969612B265FB7265E76B6AEA6F] (Microsoft Corporation)
secproc_isv.dll -> C:\Windows\SysWow64\secproc_isv.dll -> [2009/06/04 04:48:20 | 00,476,672 | ---- | C | MD5 = 8CDA3C2DC9B265DAD2589FE0F1A8B4E4] (Microsoft Corporation)
mmcndmgr.dll -> C:\Windows\SysNative\mmcndmgr.dll -> [2009/06/04 04:48:19 | 03,263,488 | ---- | C | MD5 = 9F498D2409C9F31D2019C3AB528DAD5D] (Microsoft Corporation)
mf.dll -> C:\Windows\SysWow64\mf.dll -> [2009/06/04 04:48:19 | 02,868,224 | ---- | C | MD5 = 3962F0B55426E75B579974A6C96F5FEA] (Microsoft Corporation)
msxml3.dll -> C:\Windows\SysNative\msxml3.dll -> [2009/06/04 04:48:19 | 01,804,288 | ---- | C | MD5 = 1BB8A40C45A577B6901A4A21EDDE1B27] (Microsoft Corporation)
icardagt.exe -> C:\Windows\SysWow64\icardagt.exe -> [2009/06/04 04:48:19 | 00,619,864 | ---- | C | MD5 = EBAE6CE901EDB7F0F794589BF5FDF695] (Microsoft Corporation)
infocardcpl.cpl -> C:\Windows\SysWow64\infocardcpl.cpl -> [2009/06/04 04:48:19 | 00,035,168 | ---- | C | MD5 = F67843CFD59FB2015823E2CE2D2A65D8] (Microsoft Corporation)
mmc.exe -> C:\Windows\SysNative\mmc.exe -> [2009/06/04 04:48:18 | 02,715,136 | ---- | C | MD5 = CFAFFCA9AAA29F89CA71C02CE82FF546] (Microsoft Corporation)
AuxiliaryDisplayCpl.dll -> C:\Windows\SysNative\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:18 | 01,418,752 | ---- | C | MD5 = 4E7D270CF881377567D2090B5ACA077F] (Microsoft Corporation)
kernel32.dll -> C:\Windows\SysNative\kernel32.dll -> [2009/06/04 04:48:18 | 01,217,536 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
drmv2clt.dll -> C:\Windows\SysNative\drmv2clt.dll -> [2009/06/04 04:48:18 | 01,185,280 | ---- | C | MD5 = 2AD435E35966C65619A272B4831D72BB] (Microsoft Corporation)
p2psvc.dll -> C:\Windows\SysNative\p2psvc.dll -> [2009/06/04 04:48:18 | 00,836,608 | ---- | C | MD5 = 9AE31D2E1D15C10D91318E0EC149CEAC] (Microsoft Corporation)
spinstall.exe -> C:\Windows\SysNative\spinstall.exe -> [2009/06/04 04:48:18 | 00,435,712 | ---- | C | MD5 = 374A60A1498CBC697510F305FAE1A583] (Microsoft Corporation)
spreview.exe -> C:\Windows\SysNative\spreview.exe -> [2009/06/04 04:48:18 | 00,147,456 | ---- | C | MD5 = 7382050E59321AFE64BA4AF46AE81C97] (Microsoft Corporation)
esent.dll -> C:\Windows\SysNative\esent.dll -> [2009/06/04 04:48:17 | 02,506,752 | ---- | C | MD5 = E21FFFE678FF09BAA6BF5F76BD8805C6] (Microsoft Corporation)
AuxiliaryDisplayCpl.dll -> C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:17 | 01,216,000 | ---- | C | MD5 = 79B0EC7806B563475A211C5B0F9A4B9C] (Microsoft Corporation)
SearchIndexer.exe -> C:\Windows\SysNative\SearchIndexer.exe -> [2009/06/04 04:48:17 | 00,597,504 | ---- | C | MD5 = A2AC37A1EEF83BD9E912B0EFCBEA06BD] (Microsoft Corporation)
spwizui.dll -> C:\Windows\SysNative\spwizui.dll -> [2009/06/04 04:48:17 | 00,173,568 | ---- | C | MD5 = 155D06AE01296DBD7287AB50419A0B85] (Microsoft Corporation)
spwizui.dll -> C:\Windows\SysWow64\spwizui.dll -> [2009/06/04 04:48:17 | 00,164,352 | ---- | C | MD5 = 27E22847E91344C338016F6A4276F041] (Microsoft Corporation)
wmp.dll -> C:\Windows\SysNative\wmp.dll -> [2009/06/04 04:48:16 | 13,424,640 | ---- | C | MD5 = E4CD65D24DEB8BDE679B62B6626A0FCC] (Microsoft Corporation)
dfsr.exe -> C:\Windows\SysNative\dfsr.exe -> [2009/06/04 04:48:15 | 03,433,472 | ---- | C | MD5 = C647F468F7DE343DF8C143655C5557D4] (Microsoft Corporation)
ole32.dll -> C:\Windows\SysNative\ole32.dll -> [2009/06/04 04:48:15 | 01,915,392 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
drmv2clt.dll -> C:\Windows\SysWow64\drmv2clt.dll -> [2009/06/04 04:48:15 | 00,978,432 | ---- | C | MD5 = 7C7C620860819A62F926D7EC0B72C50B] (Microsoft Corporation)
mssvp.dll -> C:\Windows\SysNative\mssvp.dll -> [2009/06/04 04:48:15 | 00,796,672 | ---- | C | MD5 = D9F0D37D97862C15D1417903B8FCBF5C] (Microsoft Corporation)
sdohlp.dll -> C:\Windows\SysNative\sdohlp.dll -> [2009/06/04 04:48:15 | 00,499,200 | ---- | C | MD5 = F0E90F35D5FFCF3E474B709124D26159] (Microsoft Corporation)
spinstall.exe -> C:\Windows\SysWow64\spinstall.exe -> [2009/06/04 04:48:15 | 00,289,792 | ---- | C | MD5 = E953D69576A1BF077E709A0231E4714C] (Microsoft Corporation)
spreview.exe -> C:\Windows\SysWow64\spreview.exe -> [2009/06/04 04:48:15 | 00,112,640 | ---- | C | MD5 = 73157FFB9EF9E9C61740A5F9CA5C7B17] (Microsoft Corporation)
shell32.dll -> C:\Windows\SysWow64\shell32.dll -> [2009/06/04 04:48:14 | 11,584,000 | ---- | C | MD5 = 43466A7FF452883B68F52B963023949C] (Microsoft Corporation)
wlan.tmf -> C:\Windows\SysNative\wlan.tmf -> [2009/06/04 04:48:14 | 02,607,774 | ---- | C | MD5 = 276CD36D47AF3E91238AEE8A5BC49ED7] ()
MSMPEG2VDEC.DLL -> C:\Windows\SysNative\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:14 | 00,778,752 | ---- | C | MD5 = 6B00BFBCA33958AC95B666B4EE7244CA] (Microsoft Corporation)
mssvp.dll -> C:\Windows\SysWow64\mssvp.dll -> [2009/06/04 04:48:14 | 00,670,720 | ---- | C | MD5 = 771AF583BC58373A84496CCD52C36E33] (Microsoft Corporation)
p2psvc.dll -> C:\Windows\SysWow64\p2psvc.dll -> [2009/06/04 04:48:14 | 00,644,608 | ---- | C | MD5 = 0C8E8E61AD1EB0B250B846712C917506] (Microsoft Corporation)
mssph.dll -> C:\Windows\SysNative\mssph.dll -> [2009/06/04 04:48:14 | 00,501,248 | ---- | C | MD5 = 93655E5D1E940E5A0F73F5A1719A0DA0] (Microsoft Corporation)
secproc.dll -> C:\Windows\SysWow64\secproc.dll -> [2009/06/04 04:48:14 | 00,472,064 | ---- | C | MD5 = 86950C4B28196F1C678814A5FEA5FD4F] (Microsoft Corporation)
SearchIndexer.exe -> C:\Windows\SysWow64\SearchIndexer.exe -> [2009/06/04 04:48:14 | 00,441,344 | ---- | C | MD5 = AED0DFF80C6B3914769407E78D7AB21A] (Microsoft Corporation)
mssphtb.dll -> C:\Windows\SysNative\mssphtb.dll -> [2009/06/04 04:48:14 | 00,312,832 | ---- | C | MD5 = EE60A80BA41AE79AAC95F8788460D536] (Microsoft Corporation)
mcupdate_GenuineIntel.dll -> C:\Windows\SysNative\mcupdate_GenuineIntel.dll -> [2009/06/04 04:48:14 | 00,223,720 | ---- | C | MD5 = E15C2A9E2448E572A58A7E69CCB8140A] (Microsoft Corporation)
EhStorAuthn.dll -> C:\Windows\SysNative\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,121,856 | ---- | C | MD5 = E36E7BEC7918708163143693884F6E77] ()
EhStorAuthn.dll -> C:\Windows\SysWow64\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,117,248 | ---- | C | MD5 = 358A03A7A47F0AD71E84306AC635A626] ()
EhStorPwdMgr.dll -> C:\Windows\SysNative\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,042,496 | ---- | C | MD5 = 8B4D332731F425E6F2B3B4C8B57274CB] (Microsoft Corporation)
EhStorPwdMgr.dll -> C:\Windows\SysWow64\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,037,376 | ---- | C | MD5 = 1E73E1591DA1D44E5F865E8ADD8C09FF] (Microsoft Corporation)
kernel32.dll -> C:\Windows\SysWow64\kernel32.dll -> [2009/06/04 04:48:13 | 00,858,112 | ---- | C | MD5 = A5830F679B5B38AE9700A72087178745] (Microsoft Corporation)
imapi2.dll -> C:\Windows\SysNative\imapi2.dll -> [2009/06/04 04:48:13 | 00,506,880 | ---- | C | MD5 = ED10D55B28FCD8A6DEA09AE3FE20EC3A] (Microsoft Corporation)
srv.sys -> C:\Windows\SysNative\drivers\srv.sys -> [2009/06/04 04:48:13 | 00,440,832 | ---- | C | MD5 = 08D8358006D13B61AA3D25EFA558F101] (Microsoft Corporation)
RMActivate_ssp_isv.exe -> C:\Windows\SysNative\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:13 | 00,413,696 | ---- | C | MD5 = 6C5019724773FF072B14F33ED9CABEC6] (Microsoft Corporation)
RMActivate_ssp.exe -> C:\Windows\SysNative\RMActivate_ssp.exe -> [2009/06/04 04:48:13 | 00,409,600 | ---- | C | MD5 = 3B8D66CA55261A71B825C0ADD8863C28] (Microsoft Corporation)
mscoree.dll -> C:\Windows\SysWow64\mscoree.dll -> [2009/06/04 04:48:13 | 00,278,848 | ---- | C | MD5 = 363C34FB89B8ED269659270FB06BEC9F] (Microsoft Corporation)
WinSAT.exe -> C:\Windows\SysNative\WinSAT.exe -> [2009/06/04 04:48:12 | 03,894,272 | ---- | C | MD5 = 73B0CA77ADC7F52B94CA6DEDEF2A67C7] (Microsoft Corporation)
Query.dll -> C:\Windows\SysNative\Query.dll -> [2009/06/04 04:48:12 | 02,028,032 | ---- | C | MD5 = 27F479DFA5E1BD942E056888DCF5C270] (Microsoft Corporation)
ntdll.dll -> C:\Windows\SysWow64\ntdll.dll -> [2009/06/04 04:48:12 | 01,165,088 | ---- | C | MD5 = 6EF8A9B1E0B83DB8009B626F6627C63F] (Microsoft Corporation)
IMJP10K.DLL -> C:\Windows\SysNative\IMJP10K.DLL -> [2009/06/04 04:48:12 | 00,922,624 | ---- | C | MD5 = 72CD5B8F299ADD9C8ED3520D003D7354] (Microsoft Corporation)
MSMPEG2VDEC.DLL -> C:\Windows\SysWow64\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:12 | 00,613,888 | ---- | C | MD5 = 9D1EE179965F9DDF964A9EA99D1D70A1] (Microsoft Corporation)
mscoree.dll -> C:\Windows\SysNative\mscoree.dll -> [2009/06/04 04:48:12 | 00,403,280 | ---- | C | MD5 = 4A68B66078F07BB429A86A7844F3F2A8] (Microsoft Corporation)
imapi2.dll -> C:\Windows\SysWow64\imapi2.dll -> [2009/06/04 04:48:12 | 00,378,368 | ---- | C | MD5 = 9B0726A03B790E5B82BED44D24009BEF] (Microsoft Corporation)
uDWM.dll -> C:\Windows\SysNative\uDWM.dll -> [2009/06/04 04:48:12 | 00,367,104 | ---- | C | MD5 = 7B005E3F9825A98312E089CBA0F83DAA] (Microsoft Corporation)
mssph.dll -> C:\Windows\SysWow64\mssph.dll -> [2009/06/04 04:48:12 | 00,351,744 | ---- | C | MD5 = 351319EF11C263C95FB721AC76F436D6] (Microsoft Corporation)
sdohlp.dll -> C:\Windows\SysWow64\sdohlp.dll -> [2009/06/04 04:48:12 | 00,324,608 | ---- | C | MD5 = 723F45FB4C5D362EFC64D8F9D9B0B7B7] (Microsoft Corporation)
mssphtb.dll -> C:\Windows\SysWow64\mssphtb.dll -> [2009/06/04 04:48:12 | 00,203,264 | ---- | C | MD5 = 5E542EDAEFCDA1684463B58C0F86283A] (Microsoft Corporation)
korwbrkr.dll -> C:\Windows\SysNative\korwbrkr.dll -> [2009/06/04 04:48:12 | 00,180,736 | ---- | C | MD5 = FDD2B6B94CBB830887EED54CDC7C5E18] (Microsoft Corporation)
WMVCORE.DLL -> C:\Windows\SysNative\WMVCORE.DLL -> [2009/06/04 04:48:11 | 02,900,480 | ---- | C | MD5 = 04E0E4A26E07E2CAB3617648A2B6FD95] (Microsoft Corporation)
esent.dll -> C:\Windows\SysWow64\esent.dll -> [2009/06/04 04:48:11 | 01,459,200 | ---- | C | MD5 = 22DC784B32BEE306A99F50D6DC2460BC] (Microsoft Corporation)
IMJP10K.DLL -> C:\Windows\SysWow64\IMJP10K.DLL -> [2009/06/04 04:48:11 | 00,729,600 | ---- | C | MD5 = 5178E1791950054638DA0CC444E2D187] (Microsoft Corporation)
http.sys -> C:\Windows\SysNative\drivers\http.sys -> [2009/06/04 04:48:11 | 00,606,720 | ---- | C | MD5 = 5E16D9CCA86CE0E117FF1856C6649B33] (Microsoft Corporation)
DevicePairing.dll -> C:\Windows\SysNative\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,483,328 | ---- | C | MD5 = CF9836A7C6D247235845F6BA61122783] (Microsoft Corporation)
DevicePairing.dll -> C:\Windows\SysWow64\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,478,208 | ---- | C | MD5 = 74A68B1E09AB06FBFB494179F84544FF] (Microsoft Corporation)
msshsq.dll -> C:\Windows\SysNative\msshsq.dll -> [2009/06/04 04:48:11 | 00,316,928 | ---- | C | MD5 = AEA31124372857278FE549050206F9F5] (Microsoft Corporation)
sperror.dll -> C:\Windows\SysNative\sperror.dll -> [2009/06/04 04:48:11 | 00,238,592 | ---- | C | MD5 = 610DBE2A2A14768EC4103B5F6911BD9B] (Microsoft Corporation)
korwbrkr.dll -> C:\Windows\SysWow64\korwbrkr.dll -> [2009/06/04 04:48:11 | 00,143,872 | ---- | C | MD5 = A35B257A0A45EFCBF548E74E7E883268] (Microsoft Corporation)
wmp.dll -> C:\Windows\SysWow64\wmp.dll -> [2009/06/04 04:48:10 | 10,625,536 | ---- | C | MD5 = 42C17B457D1A21491A6E10E6EA4DDCD5] (Microsoft Corporation)
WindowsAnytimeUpgradeCPL.dll -> C:\Windows\SysNative\WindowsAnytimeUpgradeCPL.dll -> [2009/06/04 04:48:10 | 01,673,216 | ---- | C | MD5 = 23E4E5A6876082BADECA7B80DD7B21C0] (Microsoft Corporation)
IMJP10.IME -> C:\Windows\SysNative\IMJP10.IME -> [2009/06/04 04:48:10 | 01,019,904 | ---- | C | MD5 = ACB086DA910FB73B409D09B1194326C2] (Microsoft Corporation)
P2PGraph.dll -> C:\Windows\SysNative\P2PGraph.dll -> [2009/06/04 04:48:10 | 00,401,920 | ---- | C | MD5 = 1376F3B79E742A78D40BF045AB7C6542] (Microsoft Corporation)
RMActivate_ssp.exe -> C:\Windows\SysWow64\RMActivate_ssp.exe -> [2009/06/04 04:48:10 | 00,347,136 | ---- | C | MD5 = 85204698CA6BE51EF1E4CB07FC4986F7] (Microsoft Corporation)
RMActivate_ssp_isv.exe -> C:\Windows\SysWow64\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:10 | 00,346,624 | ---- | C | MD5 = 4845670F79AD77625176D764CBBFFA7F] (Microsoft Corporation)
msshsq.dll -> C:\Windows\SysWow64\msshsq.dll -> [2009/06/04 04:48:10 | 00,231,424 | ---- | C | MD5 = B2D4F14BB320E724D23B5F6795BBBC85] (Microsoft Corporation)
SLC.dll -> C:\Windows\SysWow64\SLC.dll -> [2009/06/04 04:48:10 | 00,228,352 | ---- | C | MD5 = C6DF7A87063D006ECF1FD8156CB6DE3F] (Microsoft Corporation)
sperror.dll -> C:\Windows\SysWow64\sperror.dll -> [2009/06/04 04:48:10 | 00,190,464 | ---- | C | MD5 = B731203932CC0DBEC910A9AABBFEBD43] (Microsoft Corporation)
PresentationHostProxy.dll -> C:\Windows\SysWow64\PresentationHostProxy.dll -> [2009/06/04 04:48:10 | 00,041,344 | ---- | C | MD5 = 01D8839404E8752A688D0B69715C28C1] (Microsoft Corporation)
WMVCORE.DLL -> C:\Windows\SysWow64\WMVCORE.DLL -> [2009/06/04 04:48:09 | 02,386,944 | ---- | C | MD5 = 8BB86C9F2DEEAFF88243368E0B1A78C1] (Microsoft Corporation)
setupapi.dll -> C:\Windows\SysNative\setupapi.dll -> [2009/06/04 04:48:09 | 01,925,120 | ---- | C | MD5 = BE2E23B3DD533B33338D9B3D826574DA] (Microsoft Corporation)
msjet40.dll -> C:\Windows\SysWow64\msjet40.dll -> [2009/06/04 04:48:09 | 01,589,248 | ---- | C | MD5 = 7CE1E4240F9FA41EE85683B9EEAB8767] (Microsoft Corporation)
wevtsvc.dll -> C:\Windows\SysNative\wevtsvc.dll -> [2009/06/04 04:48:09 | 01,491,968 | ---- | C | MD5 = B3564B747D0B059D99E888F8369E56BC] (Microsoft Corporation)
msxml6.dll -> C:\Windows\SysWow64\msxml6.dll -> [2009/06/04 04:48:09 | 01,336,320 | ---- | C | MD5 = 376099B0E17AA5B2157FF0C2B66F072A] (Microsoft Corporation)
crypt32.dll -> C:\Windows\SysNative\crypt32.dll -> [2009/06/04 04:48:09 | 01,259,520 | ---- | C | MD5 = 92399DADA49153870A7C178B7116C356] (Microsoft Corporation)
ndis.sys -> C:\Windows\SysNative\drivers\ndis.sys -> [2009/06/04 04:48:09 | 00,738,264 | ---- | C | MD5 = 65950E07329FCEE8E6516B17C8D0ABB6] (Microsoft Corporation)
IasMigPlugin.dll -> C:\Windows\SysNative\IasMigPlugin.dll -> [2009/06/04 04:48:09 | 00,581,632 | ---- | C | MD5 = E704B2C60A10A5353333F74E674D9D2C] (Microsoft)
SearchProtocolHost.exe -> C:\Windows\SysNative\SearchProtocolHost.exe -> [2009/06/04 04:48:09 | 00,258,560 | ---- | C | MD5 = 1DEAF8D21FCCB72FFCF374E0FE6C1DB5] (Microsoft Corporation)
Storport.sys -> C:\Windows\SysNative\drivers\Storport.sys -> [2009/06/04 04:48:09 | 00,164,328 | ---- | C | MD5 = F78A39ED87D918058A14F36159DE5BDA] (Microsoft Corporation)
EhStorAPI.dll -> C:\Windows\SysNative\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,131,072 | ---- | C | MD5 = 9ABCF91512AE8120F3E931301E28B6C1] (Microsoft Corporation)
EhStorAPI.dll -> C:\Windows\SysWow64\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,120,320 | ---- | C | MD5 = 9E5C1D19851FAE2ACDBA118AB20D55AC] (Microsoft Corporation)
SearchFilterHost.exe -> C:\Windows\SysNative\SearchFilterHost.exe -> [2009/06/04 04:48:09 | 00,111,616 | ---- | C | MD5 = BBDE232916FC116C8CB46011683AD854] (Microsoft Corporation)
compcln.exe -> C:\Windows\SysNative\compcln.exe -> [2009/06/04 04:48:09 | 00,056,320 | ---- | C | MD5 = 0168977CBD9CD8F1ED2AB3FC8851044F] (Microsoft Corporation)
PresentationHostProxy.dll -> C:\Windows\SysNative\PresentationHostProxy.dll -> [2009/06/04 04:48:09 | 00,049,496 | ---- | C | MD5 = 9FB61D236B378F761E926B16436AFAAD] (Microsoft Corporation)
vssapi.dll -> C:\Windows\SysNative\vssapi.dll -> [2009/06/04 04:48:08 | 01,495,040 | ---- | C | MD5 = 2E10EB73ED1E094E9A113D0798058B88] (Microsoft Corporation)
Query.dll -> C:\Windows\SysWow64\Query.dll -> [2009/06/04 04:48:08 | 01,381,376 | ---- | C | MD5 = B458B58F7BB97C48D01AC3CF5805AAAC] (Microsoft Corporation)
qmgr.dll -> C:\Windows\SysNative\qmgr.dll -> [2009/06/04 04:48:08 | 01,081,856 | ---- | C | MD5 = 6D316F4859634071CC25C4FD4589AD2C] (Microsoft Corporation)
winload.efi -> C:\Windows\SysNative\winload.efi -> [2009/06/04 04:48:08 | 01,078,232 | ---- | C | MD5 = D26F602EB4B8B7D69FFDEC4551902B83] (Microsoft Corporation)
winload.exe -> C:\Windows\SysNative\winload.exe -> [2009/06/04 04:48:08 | 01,064,920 | ---- | C | MD5 = E50526E2D00E27A27C0454525081604E] (Microsoft Corporation)
printfilterpipelinesvc.exe -> C:\Windows\SysNative\printfilterpipelinesvc.exe -> [2009/06/04 04:48:08 | 01,030,144 | ---- | C | MD5 = B7EF680BE91D4C2EC93A77FF41AFF518] (Microsoft Corporation)
IMJP10.IME -> C:\Windows\SysWow64\IMJP10.IME -> [2009/06/04 04:48:08 | 00,883,712 | ---- | C | MD5 = AE4DAA8F0F9AE5EC2DE1ACB5D37AFA55] (Microsoft Corporation)
user32.dll -> C:\Windows\SysWow64\user32.dll -> [2009/06/04 04:48:08 | 00,648,704 | ---- | C | MD5 = D29FDB5DEDBDC1BD882164DC6DC4DD53] (Microsoft Corporation)
EncDec.dll -> C:\Windows\SysNative\EncDec.dll -> [2009/06/04 04:48:08 | 00,558,592 | ---- | C | MD5 = 2C17ACB012C53FE4900A3DEB96FCF720] (Microsoft Corporation)
msexch40.dll -> C:\Windows\SysWow64\msexch40.dll -> [2009/06/04 04:48:08 | 00,409,600 | ---- | C | MD5 = D151AE6587F22CED36C6BF5787C25FCA] (Microsoft Corporation)
srchadmin.dll -> C:\Windows\SysNative\srchadmin.dll -> [2009/06/04 04:48:08 | 00,347,648 | ---- | C | MD5 = B6D5917CF9FDA3B434AD908559EBD2B3] (Microsoft Corporation)
systemsf.ebd -> C:\Windows\SysNative\systemsf.ebd -> [2009/06/04 04:48:08 | 00,262,552 | ---- | C | MD5 = B4F9DF6FBA2700C2017B0F766595267B] ()
infocardapi.dll -> C:\Windows\SysNative\infocardapi.dll -> [2009/06/04 04:48:08 | 00,171,360 | ---- | C | MD5 = CFA0A7E9800D3298A3C24070C0AF53D0] (Microsoft Corporation)
EhStorShell.dll -> C:\Windows\SysNative\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,123,904 | ---- | C | MD5 = B2E32F41E1D6500F62CAEF5EF2B17196] (Microsoft Corporation)
EhStorShell.dll -> C:\Windows\SysWow64\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,114,176 | ---- | C | MD5 = 14E4470BF8ACA69A85D741BA99F75F96] (Microsoft Corporation)
fdBth.dll -> C:\Windows\SysNative\fdBth.dll -> [2009/06/04 04:48:08 | 00,112,640 | ---- | C | MD5 = CC23D5006ED2FF61F033188D971AD1CB] (Microsoft Corporation)
explorer.exe -> C:\Windows\explorer.exe -> [2009/06/04 04:48:07 | 03,079,168 | ---- | C | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
msxml6.dll -> C:\Windows\SysNative\msxml6.dll -> [2009/06/04 04:48:07 | 01,733,120 | ---- | C | MD5 = 93D7D5D1DBAA7EFA317098C5204DDDA4] (Microsoft Corporation)
CertEnroll.dll -> C:\Windows\SysNative\CertEnroll.dll -> [2009/06/04 04:48:07 | 01,658,368 | ---- | C | MD5 = 5AF34B08C676F16A070A7D7EF2AB4C3E] (Microsoft Corporation)
diagperf.dll -> C:\Windows\SysNative\diagperf.dll -> [2009/06/04 04:48:07 | 01,584,128 | ---- | C | MD5 = 7371D6B52B85190971CB3F35FA0CED05] (Microsoft Corporation)
ole32.dll -> C:\Windows\SysWow64\ole32.dll -> [2009/06/04 04:48:07 | 01,316,864 | ---- | C | MD5 = C50A0AB19094BC362FBA69E105EBCCFD] (Microsoft Corporation)
msxml3.dll -> C:\Windows\SysWow64\msxml3.dll -> [2009/06/04 04:48:07 | 01,183,232 | ---- | C | MD5 = 5942F272BBEF5A77BF1DCE13BB5FAC8E] (Microsoft Corporation)
advapi32.dll -> C:\Windows\SysNative\advapi32.dll -> [2009/06/04 04:48:07 | 01,065,472 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
mblctr.exe -> C:\Windows\SysNative\mblctr.exe -> [2009/06/04 04:48:07 | 00,967,168 | ---- | C | MD5 = DB4A027E320B226D33F68C71D85103F6] (Microsoft Corporation)
rpcss.dll -> C:\Windows\SysNative\rpcss.dll -> [2009/06/04 04:48:07 | 00,719,872 | ---- | C | MD5 = CF8B9A3A5E7DC57724A89D0C3E8CF9EF] (Microsoft Corporation)
IasMigReader.exe -> C:\Windows\SysWow64\IasMigReader.exe -> [2009/06/04 04:48:07 | 00,463,872 | ---- | C | MD5 = 520FCEF4D87E37C17BB6D554B2A332E8] (Microsoft Corporation)
EncDec.dll -> C:\Windows\SysWow64\EncDec.dll -> [2009/06/04 04:48:07 | 00,428,544 | ---- | C | MD5 = 27D1A4045917EF6ED42039CC6CDCA719] (Microsoft Corporation)
P2PGraph.dll -> C:\Windows\SysWow64\P2PGraph.dll -> [2009/06/04 04:48:07 | 00,327,168 | ---- | C | MD5 = CE42E875BFF00D9561C6E1B0FF2C8943] (Microsoft Corporation)
srchadmin.dll -> C:\Windows\SysWow64\srchadmin.dll -> [2009/06/04 04:48:07 | 00,301,568 | ---- | C | MD5 = 744F08CF9ACFFB1C715191D04DEEE907] (Microsoft Corporation)
psisrndr.ax -> C:\Windows\SysWow64\psisrndr.ax -> [2009/06/04 04:48:07 | 00,217,088 | ---- | C | MD5 = 31016280DB16915C88EC6829E1628DA4] (Microsoft Corporation)
d3d9.dll -> C:\Windows\SysNative\d3d9.dll -> [2009/06/04 04:48:06 | 01,930,240 | ---- | C | MD5 = D4175BE7CA634C7BB9205F7EE4F3F7E4] (Microsoft Corporation)
mmc.exe -> C:\Windows\SysWow64\mmc.exe -> [2009/06/04 04:48:06 | 01,792,512 | ---- | C | MD5 = BB96D0590B491CDEA2EBF6D697BE8976] (Microsoft Corporation)
comsvcs.dll -> C:\Windows\SysNative\comsvcs.dll -> [2009/06/04 04:48:06 | 01,686,528 | ---- | C | MD5 = 51F2402CA69906A0839CED561BE3C0AA] (Microsoft Corporation)
browseui.dll -> C:\Windows\SysNative\browseui.dll -> [2009/06/04 04:48:06 | 01,650,688 | ---- | C | MD5 = EE9040473EB1339E75E79A75FA47A825] (Microsoft Corporation)
VSSVC.exe -> C:\Windows\SysNative\VSSVC.exe -> [2009/06/04 04:48:06 | 01,433,600 | ---- | C | MD5 = B75232DAD33BFD95BF6F0A3E6BFF51E1] (Microsoft Corporation)
mfc42u.dll -> C:\Windows\SysNative\mfc42u.dll -> [2009/06/04 04:48:06 | 01,357,824 | ---- | C | MD5 = 912655E769785458E6ED439AE2A4E92C] (Microsoft Corporation)
kerberos.dll -> C:\Windows\SysNative\kerberos.dll -> [2009/06/04 04:48:06 | 00,654,848 | ---- | C | MD5 = F60FA5685C90FDBF97EF0E28681A4004] (Microsoft Corporation)
riched20.dll -> C:\Windows\SysWow64\riched20.dll -> [2009/06/04 04:48:06 | 00,466,944 | ---- | C | MD5 = 0CFCDE5D9D074D96B78D1F1CBF1AAB1D] (Microsoft Corporation)
IasMigPlugin.dll -> C:\Windows\SysWow64\IasMigPlugin.dll -> [2009/06/04 04:48:06 | 00,454,144 | ---- | C | MD5 = 9A7E344C3D52EE1A2EF003B33B1C1BF1] (Microsoft)
gdi32.dll -> C:\Windows\SysWow64\gdi32.dll -> [2009/06/04 04:48:06 | 00,303,616 | ---- | C | MD5 = 05C8C8767E29163FC251164FF6839EA5] (Microsoft Corporation)
spoolss.dll -> C:\Windows\SysNative\spoolss.dll -> [2009/06/04 04:48:06 | 00,238,080 | ---- | C | MD5 = D48445B07F61CAFE2FE8972AAB4E31B8] (Microsoft Corporation)
DevicePairingWizard.exe -> C:\Windows\SysNative\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,069,120 | ---- | C | MD5 = 52B40ECFE9814D1C28154EA51E5D93F7] (Microsoft Corporation)
DevicePairingWizard.exe -> C:\Windows\SysWow64\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,065,536 | ---- | C | MD5 = 5AAE542EBB0F3CA7C1E5E6D5457BA2CE] (Microsoft Corporation)
milcore.dll -> C:\Windows\SysWow64\milcore.dll -> [2009/06/04 04:48:05 | 02,012,160 | ---- | C | MD5 = C99403A5B641520DAED0021DDA06F272] (Microsoft Corporation)
mfc42.dll -> C:\Windows\SysNative\mfc42.dll -> [2009/06/04 04:48:05 | 01,395,712 | ---- | C | MD5 = 13E3B46DA1D334762B6AD2E86B12DA94] (Microsoft Corporation)
WsmSvc.dll -> C:\Windows\SysNative\WsmSvc.dll -> [2009/06/04 04:48:05 | 01,092,096 | ---- | C | MD5 = 42717DB2BE3A075D0F0CD5C927C27A43] (Microsoft Corporation)
RacEngn.dll -> C:\Windows\SysWow64\RacEngn.dll -> [2009/06/04 04:48:05 | 00,880,640 | ---- | C | MD5 = 9EFF12E09FF0EA85D43A3AC1F1EEBCE9] (Microsoft Corporation)
Magnify.exe -> C:\Windows\SysWow64\Magnify.exe -> [2009/06/04 04:48:05 | 00,710,144 | ---- | C | MD5 = E47C854A28A81F2939F42CBE9FEA994C] (Microsoft Corporation)
afd.sys -> C:\Windows\SysNative\drivers\afd.sys -> [2009/06/04 04:48:05 | 00,406,016 | ---- | C | MD5 = 12415CCFD3E7CEC55B5184E67B039FE4] (Microsoft Corporation)
WMPhoto.dll -> C:\Windows\SysNative\WMPhoto.dll -> [2009/06/04 04:48:05 | 00,379,392 | ---- | C | MD5 = 548EDDC705789D7FD564C5DE5A2B90D9] (Microsoft Corporation)
netio.sys -> C:\Windows\SysNative\drivers\netio.sys -> [2009/06/04 04:48:05 | 00,347,112 | ---- | C | MD5 = 2E4C6D76DB8FAADCF4A020758CD0B2C5] (Microsoft Corporation)
bcrypt.dll -> C:\Windows\SysWow64\bcrypt.dll -> [2009/06/04 04:48:05 | 00,275,968 | ---- | C | MD5 = 4ACF748A8E576761E4C610ACAB67B1BC] (Microsoft Corporation)
SearchProtocolHost.exe -> C:\Windows\SysWow64\SearchProtocolHost.exe -> [2009/06/04 04:48:05 | 00,185,344 | ---- | C | MD5 = B5EF1DA337DB9859709A387638AC5E07] (Microsoft Corporation)
PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:48:05 | 00,123,256 | ---- | C | MD5 = E7F360082D6949844519BA00E793B09E] (Microsoft Corporation)
fdBth.dll -> C:\Windows\SysWow64\fdBth.dll -> [2009/06/04 04:48:05 | 00,088,064 | ---- | C | MD5 = D07E4D54CC014C4D3FEB9EFC2304C84E] (Microsoft Corporation)
SearchFilterHost.exe -> C:\Windows\SysWow64\SearchFilterHost.exe -> [2009/06/04 04:48:05 | 00,087,552 | ---- | C | MD5 = C9EE7FF225EAC1CB9C78C413667CDB80] (Microsoft Corporation)
dbgeng.dll -> C:\Windows\SysNative\dbgeng.dll -> [2009/06/04 04:48:04 | 02,484,224 | ---- | C | MD5 = 3BBDC794EC79F4776ADCC50F6DDF90AA] (Microsoft Corporation)
mstscax.dll -> C:\Windows\SysNative\mstscax.dll -> [2009/06/04 04:48:04 | 02,424,320 | ---- | C | MD5 = EF222AE54FF7B3B1055CC83C3DA81B18] (Microsoft Corporation)
apds.dll -> C:\Windows\SysNative\apds.dll -> [2009/06/04 04:48:04 | 02,112,000 | ---- | C | MD5 = F90ED5EE26169B69A3F915CFD014BA60] (Microsoft Corporation)
CertEnroll.dll -> C:\Windows\SysWow64\CertEnroll.dll -> [2009/06/04 04:48:04 | 01,112,064 | ---- | C | MD5 = 0053319C4438CDE659AA75C19BBD22F1] (Microsoft Corporation)
Magnify.exe -> C:\Windows\SysNative\Magnify.exe -> [2009/06/04 04:48:04 | 00,859,648 | ---- | C | MD5 = DFFB91500638FACA4CDEA50E4E1F02F9] (Microsoft Corporation)
schedsvc.dll -> C:\Windows\SysNative\schedsvc.dll -> [2009/06/04 04:48:04 | 00,843,776 | ---- | C | MD5 = 717C12DF4B7C93FEC97D146AC1342B25] (Microsoft Corporation)
NaturalLanguage6.dll -> C:\Windows\SysWow64\NaturalLanguage6.dll -> [2009/06/04 04:48:04 | 00,805,376 | ---- | C | MD5 = 1CE4A2790EB4A96F4ED1E4264866AFE6] (Microsoft Corporation)
dpapimig.exe -> C:\Windows\SysNative\dpapimig.exe -> [2009/06/04 04:48:04 | 00,553,472 | ---- | C | MD5 = 38A245916DE7BD6DF73DE9E98D377213] (Microsoft Corporation)
eudcedit.exe -> C:\Windows\SysNative\eudcedit.exe -> [2009/06/04 04:48:04 | 00,280,064 | ---- | C | MD5 = EBA67A3AC3DFB2EDDC5E7B967428669A] (Microsoft Corporation)
iasrecst.dll -> C:\Windows\SysNative\iasrecst.dll -> [2009/06/04 04:48:04 | 00,192,000 | ---- | C | MD5 = 7940F88C3D5BAFEE6749D3FE6CDF0569] (Microsoft Corporation)
spoolss.dll -> C:\Windows\SysWow64\spoolss.dll -> [2009/06/04 04:48:04 | 00,160,768 | ---- | C | MD5 = E79FDA8D320147FDC347C504B3487F87] (Microsoft Corporation)
RacEngn.dll -> C:\Windows\SysNative\RacEngn.dll -> [2009/06/04 04:48:03 | 01,244,672 | ---- | C | MD5 = 95F7DB7DD8259D013831E35EE6C7A270] (Microsoft Corporation)
msctf.dll -> C:\Windows\SysNative\msctf.dll -> [2009/06/04 04:48:03 | 01,040,896 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
gpedit.dll -> C:\Windows\SysNative\gpedit.dll -> [2009/06/04 04:48:03 | 01,013,248 | ---- | C | MD5 = 0BC0B3C27E4A5F4FFD864C6BA7F4F4A6] (Microsoft Corporation)
gpedit.dll -> C:\Windows\SysWow64\gpedit.dll -> [2009/06/04 04:48:03 | 00,950,784 | ---- | C | MD5 = 4E51A7052D162B2BA85612B486A68A45] (Microsoft Corporation)
comuid.dll -> C:\Windows\SysNative\comuid.dll -> [2009/06/04 04:48:03 | 00,918,528 | ---- | C | MD5 = 8B95404FC3B191192A70534C5B74C861] (Microsoft Corporation)
oleaut32.dll -> C:\Windows\SysNative\oleaut32.dll -> [2009/06/04 04:48:03 | 00,847,360 | ---- | C | MD5 = 1785F3FC389381B6F44F52011E47685E] (Microsoft Corporation)
user32.dll -> C:\Windows\SysNative\user32.dll -> [2009/06/04 04:48:03 | 00,820,224 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
bthprops.cpl -> C:\Windows\SysNative\bthprops.cpl -> [2009/06/04 04:48:03 | 00,668,160 | ---- | C | MD5 = DBC0B012A13C7738871D569005DEB5D1] (Microsoft Corporation)
evr.dll -> C:\Windows\SysNative\evr.dll -> [2009/06/04 04:48:03 | 00,647,680 | ---- | C | MD5 = AF96CCADA9B7ADB6488DDB6A60374821] (Microsoft Corporation)
ipsmsnap.dll -> C:\Windows\SysNative\ipsmsnap.dll -> [2009/06/04 04:48:03 | 00,620,544 | ---- | C | MD5 = D1F7EB45DE179124288EE090B6CDE424] (Microsoft Corporation)
msdrm.dll -> C:\Windows\SysNative\msdrm.dll -> [2009/06/04 04:48:03 | 00,460,288 | ---- | C | MD5 = 37B431C27C022C406E1104378737CF1D] (Microsoft Corporation)
audiosrv.dll -> C:\Windows\SysNative\audiosrv.dll -> [2009/06/04 04:48:03 | 00,446,464 | ---- | C | MD5 = 79318C744693EC983D20E9337A2F8196] (Microsoft Corporation)
msvcp60.dll -> C:\Windows\SysWow64\msvcp60.dll -> [2009/06/04 04:48:03 | 00,406,528 | ---- | C | MD5 = 2310A32BB0164552A311BFA02102A3D6] (Microsoft Corporation)
photowiz.dll -> C:\Windows\SysNative\photowiz.dll -> [2009/06/04 04:48:03 | 00,402,944 | ---- | C | MD5 = A58E57E542EF8F41DC5842F4AB9C9EA5] (Microsoft Corporation)
es.dll -> C:\Windows\SysNative\es.dll -> [2009/06/04 04:48:03 | 00,361,984 | ---- | C | MD5 = E12F22B73F153DECE721CD45EC05B4AF] (Microsoft Corporation)
msjtes40.dll -> C:\Windows\SysWow64\msjtes40.dll -> [2009/06/04 04:48:03 | 00,290,816 | ---- | C | MD5 = 79B0463638C7ED08DB71FE3437C95A44] (Microsoft Corporation)
infocardapi.dll -> C:\Windows\SysWow64\infocardapi.dll -> [2009/06/04 04:48:03 | 00,099,680 | ---- | C | MD5 = E6AA880A6AE64D9C5FED9D7CCC9DA8EF] (Microsoft Corporation)
slwmi.dll -> C:\Windows\SysNative\slwmi.dll -> [2009/06/04 04:48:03 | 00,088,064 | ---- | C | MD5 = BDFDEBFEB67DEC4A82792E421778805F] (Microsoft Corporation)
Storprop.dll -> C:\Windows\SysWow64\Storprop.dll -> [2009/06/04 04:48:03 | 00,055,808 | ---- | C | MD5 = 61BB723E9AF2D1505337402F4AE79E94] (Microsoft Corporation)
quartz.dll -> C:\Windows\SysNative\quartz.dll -> [2009/06/04 04:48:02 | 01,570,304 | ---- | C | MD5 = 7C928C97C0E24CC5FDB13D705C122C09] (Microsoft Corporation)
advapi32.dll -> C:\Windows\SysWow64\advapi32.dll -> [2009/06/04 04:48:02 | 00,800,768 | ---- | C | MD5 = 50CAA7072C171B9887215C83D52069E4] (Microsoft Corporation)
msihnd.dll -> C:\Windows\SysNative\msihnd.dll -> [2009/06/04 04:48:02 | 00,503,296 | ---- | C | MD5 = CC5A06E21510501BFAC469B36490FD86] (Microsoft Corporation)
shlwapi.dll -> C:\Windows\SysNative\shlwapi.dll -> [2009/06/04 04:48:02 | 00,455,680 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
certcli.dll -> C:\Windows\SysNative\certcli.dll -> [2009/06/04 04:48:02 | 00,447,488 | ---- | C | MD5 = C88208718545410FA0F11E06F6E7F01B] (Microsoft Corporation)
wevtapi.dll -> C:\Windows\SysNative\wevtapi.dll -> [2009/06/04 04:48:02 | 00,394,240 | ---- | C | MD5 = 45B4004F43B48E4A3F12B85891F81221] (Microsoft Corporation)
msexcl40.dll -> C:\Windows\SysWow64\msexcl40.dll -> [2009/06/04 04:48:02 | 00,339,968 | ---- | C | MD5 = 35525EE95CEDB5E9908CFF676C7A2D97] (Microsoft Corporation)
WMPhoto.dll -> C:\Windows\SysWow64\WMPhoto.dll -> [2009/06/04 04:48:02 | 00,321,536 | ---- | C | MD5 = 845D8122008558B9A3A5EE81B15C8C46] (Microsoft Corporation)
psisrndr.ax -> C:\Windows\SysNative\psisrndr.ax -> [2009/06/04 04:48:02 | 00,289,792 | ---- | C | MD5 = F581D89097400BB3142F7E2EA7AF55A2] (Microsoft Corporation)
mstext40.dll -> C:\Windows\SysWow64\mstext40.dll -> [2009/06/04 04:48:02 | 00,282,624 | ---- | C | MD5 = 946D35645E672E01B35ED194F9BE4F7A] (Microsoft Corporation)
fltMgr.sys -> C:\Windows\SysNative\drivers\fltMgr.sys -> [2009/06/04 04:48:02 | 00,275,432 | ---- | C | MD5 = E3041BC26D6930D61F42AEDB79C91720] (Microsoft Corporation)
es.dll -> C:\Windows\SysWow64\es.dll -> [2009/06/04 04:48:02 | 00,268,800 | ---- | C | MD5 = 67058C46504BC12D821F38CF99B7B28F] (Microsoft Corporation)
WebClnt.dll -> C:\Windows\SysWow64\WebClnt.dll -> [2009/06/04 04:48:02 | 00,199,680 | ---- | C | MD5 = 04C37D8107320312FBAE09926103D5E2] (Microsoft Corporation)
nlhtml.dll -> C:\Windows\SysNative\nlhtml.dll -> [2009/06/04 04:48:02 | 00,181,248 | ---- | C | MD5 = E02D92397E7F43E47244F33C88BB3DB0] (Microsoft Corporation)
PresentationSettings.exe -> C:\Windows\SysNative\PresentationSettings.exe -> [2009/06/04 04:48:02 | 00,173,568 | ---- | C | MD5 = 5537EBC1209B3AA1332A03896B1184C3] (Microsoft Corporation)
SLC.dll -> C:\Windows\SysNative\SLC.dll -> [2009/06/04 04:48:02 | 00,151,552 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
AuxiliaryDisplayDriverLib.dll -> C:\Windows\SysNative\AuxiliaryDisplayDriverLib.dll -> [2009/06/04 04:48:02 | 00,131,072 | ---- | C | MD5 = C96425341E76EE123521C84448C4FFC3] (Microsoft Corporation)
AuxiliaryDisplayServices.dll -> C:\Windows\SysNative\AuxiliaryDisplayServices.dll -> [2009/06/04 04:48:02 | 00,126,464 | ---- | C | MD5 = FCBF244FE64C227839EC365333CBE79B] (Microsoft Corporation)
wcnwiz.dll -> C:\Windows\SysNative\wcnwiz.dll -> [2009/06/04 04:48:01 | 01,681,920 | ---- | C | MD5 = 22CB55E35C2FFC08711473738A629BB5] (Microsoft Corporation)
comsvcs.dll -> C:\Windows\SysWow64\comsvcs.dll -> [2009/06/04 04:48:01 | 01,209,856 | ---- | C | MD5 = 95A5497D129D95D12A46F7848AFFE1DB] (Microsoft Corporation)
vssapi.dll -> C:\Windows\SysWow64\vssapi.dll -> [2009/06/04 04:48:01 | 01,077,248 | ---- | C | MD5 = 17FC3EDA0162F513E858B8C8FA7FA6E0] (Microsoft Corporation)
msvcrt.dll -> C:\Windows\SysNative\msvcrt.dll -> [2009/06/04 04:48:01 | 00,621,056 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
devmgr.dll -> C:\Windows\SysNative\devmgr.dll -> [2009/06/04 04:48:01 | 00,498,688 | ---- | C | MD5 = C4A4967907A8820761EEA49FE2A35AE3] (Microsoft Corporation)
msxbde40.dll -> C:\Windows\SysWow64\msxbde40.dll -> [2009/06/04 04:48:01 | 00,454,656 | ---- | C | MD5 = A02537DD475CC0BAB7FC07F9B44720C0] (Microsoft Corporation)
WcnNetsh.dll -> C:\Windows\SysNative\WcnNetsh.dll -> [2009/06/04 04:48:01 | 00,238,592 | ---- | C | MD5 = EEB896D38B7A5CC1CC621278254EC9C8] (Microsoft Corporation)
srvnet.sys -> C:\Windows\SysNative\drivers\srvnet.sys -> [2009/06/04 04:48:01 | 00,143,360 | ---- | C | MD5 = 54F34EF396760EC51ABF85E12CC72ACF] (Microsoft Corporation)
slwmi.dll -> C:\Windows\SysWow64\slwmi.dll -> [2009/06/04 04:48:01 | 00,067,584 | ---- | C | MD5 = A0D83B84678410994372D7D4BABAF7E0] (Microsoft Corporation)
DevicePairingProxy.dll -> C:\Windows\SysNative\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,057,856 | ---- | C | MD5 = 63C9915DB262D87566F748E51DA536CF] (Microsoft Corporation)
DevicePairingProxy.dll -> C:\Windows\SysWow64\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,054,784 | ---- | C | MD5 = 3C7A18013E99EAA45188A7C57B1AA758] (Microsoft Corporation)
mstscax.dll -> C:\Windows\SysWow64\mstscax.dll -> [2009/06/04 04:48:00 | 02,066,432 | ---- | C | MD5 = 32A920003B5AFB260F86473D9D550457] (Microsoft Corporation)
authui.dll -> C:\Windows\SysWow64\authui.dll -> [2009/06/04 04:48:00 | 01,985,024 | ---- | C | MD5 = 58C2521D87C494831A625202C80354AD] (Microsoft Corporation)
msdtctm.dll -> C:\Windows\SysNative\msdtctm.dll -> [2009/06/04 04:48:00 | 01,499,136 | ---- | C | MD5 = 5CB1477EEABBEE128C759283514AFA93] (Microsoft Corporation)
shdocvw.dll -> C:\Windows\SysNative\shdocvw.dll -> [2009/06/04 04:48:00 | 01,195,520 | ---- | C | MD5 = 52414CF37708E802AA6F058695592DF9] (Microsoft Corporation)
NetProjW.dll -> C:\Windows\SysNative\NetProjW.dll -> [2009/06/04 04:48:00 | 01,098,240 | ---- | C | MD5 = 61D4DBC6D1C1C98DC935888295A89D01] (Microsoft Corporation)
wcncsvc.dll -> C:\Windows\SysNative\wcncsvc.dll -> [2009/06/04 04:48:00 | 00,581,120 | ---- | C | MD5 = B4E4C37D0AA6100090A53213EE2BF1C1] (Microsoft Corporation)
msctfp.dll -> C:\Windows\SysNative\msctfp.dll -> [2009/06/04 04:48:00 | 00,230,400 | ---- | C | MD5 = 21D24F722E08B8E3AA7F19855403C5C2] (Microsoft Corporation)
fdBthProxy.dll -> C:\Windows\SysNative\fdBthProxy.dll -> [2009/06/04 04:48:00 | 00,012,288 | ---- | C | MD5 = 06422CA4D1F57C78F2BE9722EC20FB0A] (Microsoft Corporation)
certutil.exe -> C:\Windows\SysNative\certutil.exe -> [2009/06/04 04:47:59 | 01,060,864 | ---- | C | MD5 = C4AA6E59A319E5D51470D1809B1354C4] (Microsoft Corporation)
propsys.dll -> C:\Windows\SysWow64\propsys.dll -> [2009/06/04 04:47:59 | 00,754,688 | ---- | C | MD5 = 7DACD94118E2D8B6D72F47ADEB0367BF] (Microsoft Corporation)
gpsvc.dll -> C:\Windows\SysNative\gpsvc.dll -> [2009/06/04 04:47:59 | 00,719,360 | ---- | C | MD5 = A0E1B575BA8F504968CD40C0FAEB2384] (Microsoft Corporation)
win32spl.dll -> C:\Windows\SysNative\win32spl.dll -> [2009/06/04 04:47:59 | 00,660,480 | ---- | C | MD5 = 1D2CC592516BD0544A107104461688F4] (Microsoft Corporation)
msrepl40.dll -> C:\Windows\SysWow64\msrepl40.dll -> [2009/06/04 04:47:59 | 00,643,072 | ---- | C | MD5 = A4D9AB211B376EB363550A250A64D84D] (Microsoft Corporation)
bthprops.cpl -> C:\Windows\SysWow64\bthprops.cpl -> [2009/06/04 04:47:59 | 00,640,512 | ---- | C | MD5 = C0ABD66F31C0B84CD944802E6D3D02C2] (Microsoft Corporation)
SLCommDlg.dll -> C:\Windows\SysNative\SLCommDlg.dll -> [2009/06/04 04:47:59 | 00,631,296 | ---- | C | MD5 = 77A8C01035EF074AAA930C971A54598B] (Microsoft Corporation)
msvcp60.dll -> C:\Windows\SysNative\msvcp60.dll -> [2009/06/04 04:47:59 | 00,598,016 | ---- | C | MD5 = FC26F6B403512A3224B16CA59976D1CB] (Microsoft Corporation)
newdev.dll -> C:\Windows\SysWow64\newdev.dll -> [2009/06/04 04:47:59 | 00,469,504 | ---- | C | MD5 = E1B80644E7125231AAEF62FC2C81C8FE] (Microsoft Corporation)
w32time.dll -> C:\Windows\SysNative\w32time.dll -> [2009/06/04 04:47:59 | 00,372,736 | ---- | C | MD5 = F14A7DE2EA41883E250892E1E5230A9A] (Microsoft Corporation)
PresentationHost.exe -> C:\Windows\SysNative\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,354,640 | ---- | C | MD5 = 25A85D10DE6A1D7E1BFC294B82726AC4] (Microsoft Corporation)
PresentationHost.exe -> C:\Windows\SysWow64\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,323,952 | ---- | C | MD5 = 44E6658E2466566E1AC82E31EAE572F8] (Microsoft Corporation)
rsaenh.dll -> C:\Windows\SysNative\rsaenh.dll -> [2009/06/04 04:47:59 | 00,289,768 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
spoolsv.exe -> C:\Windows\SysNative\spoolsv.exe -> [2009/06/04 04:47:59 | 00,268,288 | ---- | C | MD5 = EADA445EAEDD1D7DF4C5EB42B3612729] (Microsoft Corporation)
netbt.sys -> C:\Windows\SysNative\drivers\netbt.sys -> [2009/06/04 04:47:59 | 00,248,320 | ---- | C | MD5 = FC2C792EBDDC8E28DF939D6A92C83D61] (Microsoft Corporation)
WebClnt.dll -> C:\Windows\SysNative\WebClnt.dll -> [2009/06/04 04:47:59 | 00,218,624 | ---- | C | MD5 = 3E6D05381CF35F75EBB055544A8ED9AC] (Microsoft Corporation)
Classpnp.sys -> C:\Windows\SysNative\drivers\Classpnp.sys -> [2009/06/04 04:47:59 | 00,164,840 | ---- | C | MD5 = 6B6BEA1421FC416E35B2D17495380104] (Microsoft Corporation)
iasrecst.dll -> C:\Windows\SysWow64\iasrecst.dll -> [2009/06/04 04:47:59 | 00,119,296 | ---- | C | MD5 = E176452A085570571A38C0CB33B1F99A] (Microsoft Corporation)
PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:47:59 | 00,102,816 | ---- | C | MD5 = 199FBF92E3F750637F2C027A4792949B] (Microsoft Corporation)
davclnt.dll -> C:\Windows\SysNative\davclnt.dll -> [2009/06/04 04:47:59 | 00,082,432 | ---- | C | MD5 = AAC4DFF79689736D8B316FC05A3E25EC] (Microsoft Corporation)
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/06/04 04:47:58 | 02,926,592 | ---- | C | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
certmgr.dll -> C:\Windows\SysNative\certmgr.dll -> [2009/06/04 04:47:58 | 01,748,992 | ---- | C | MD5 = 1E72CD50DB40A2034E37C1D269D518BF] (Microsoft Corporation)
setupapi.dll -> C:\Windows\SysWow64\setupapi.dll -> [2009/06/04 04:47:58 | 01,591,296 | ---- | C | MD5 = 551F51B66E5EA87A38D8197EB3BDB57A] (Microsoft Corporation)
crypt32.dll -> C:\Windows\SysWow64\crypt32.dll -> [2009/06/04 04:47:58 | 00,978,944 | ---- | C | MD5 = 6659EC6006FD99A3AF1B8A6306F8BE3C] (Microsoft Corporation)
msdtcprx.dll -> C:\Windows\SysNative\msdtcprx.dll -> [2009/06/04 04:47:58 | 00,727,552 | ---- | C | MD5 = 649672EED4626058CB740117DD453BFC] (Microsoft Corporation)
eaphost.tmf -> C:\Windows\SysNative\eaphost.tmf -> [2009/06/04 04:47:58 | 00,700,507 | ---- | C | MD5 = 5D459A67C06671DAAAB378FBA07A1268] ()
dot3.tmf -> C:\Windows\SysNative\dot3.tmf -> [2009/06/04 04:47:58 | 00,471,992 | ---- | C | MD5 = FBB5C98267F271BE897A47D220BBA131] ()
mspbde40.dll -> C:\Windows\SysWow64\mspbde40.dll -> [2009/06/04 04:47:58 | 00,368,640 | ---- | C | MD5 = 81379121E6028612D821009636A6BB95] (Microsoft Corporation)
umpnpmgr.dll -> C:\Windows\SysNative\umpnpmgr.dll -> [2009/06/04 04:47:58 | 00,313,344 | ---- | C | MD5 = FE6B0F59215C9FD9F9D26539C58C8B82] (Microsoft Corporation)
eudcedit.exe -> C:\Windows\SysWow64\eudcedit.exe -> [2009/06/04 04:47:58 | 00,205,824 | ---- | C | MD5 = 7095D31979FFB0B917987B388779BD01] (Microsoft Corporation)
d3d9.dll -> C:\Windows\SysWow64\d3d9.dll -> [2009/06/04 04:47:57 | 01,788,416 | ---- | C | MD5 = 8AAEEE8E59A70F37579993D118A34EE0] (Microsoft Corporation)
WMNetMgr.dll -> C:\Windows\SysNative\WMNetMgr.dll -> [2009/06/04 04:47:57 | 01,245,696 | ---- | C | MD5 = D2C36317F072C58D4AB8C0203010C9B1] (Microsoft Corporation)
WindowsCodecs.dll -> C:\Windows\SysNative\WindowsCodecs.dll -> [2009/06/04 04:47:57 | 00,841,728 | ---- | C | MD5 = EED4C9B2249DBFC81ADC18DCB7EEF2AB] (Microsoft Corporation)
PhotoScreensaver.scr -> C:\Windows\SysNative\PhotoScreensaver.scr -> [2009/06/04 04:47:57 | 00,840,704 | ---- | C | MD5 = 7AC5EDC47BA33E02B7D55B6C10E01688] (Microsoft Corporation)
MPSSVC.dll -> C:\Windows\SysNative\MPSSVC.dll -> [2009/06/04 04:47:57 | 00,603,136 | ---- | C | MD5 = 897E3BAF68BA406A61682AE39C83900C] (Microsoft Corporation)
swprv.dll -> C:\Windows\SysNative\swprv.dll -> [2009/06/04 04:47:57 | 00,480,768 | ---- | C | MD5 = 6DE37F4DE19D4EFD9C48C43ADDBC949A] (Microsoft Corporation)
gdi32.dll -> C:\Windows\SysNative\gdi32.dll -> [2009/06/04 04:47:57 | 00,389,632 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
SLUI.exe -> C:\Windows\SysNative\SLUI.exe -> [2009/06/04 04:47:57 | 00,385,024 | ---- | C | MD5 = 21C15BAC64D61959FD79959F1EAF3DC4] (Microsoft Corporation)
rdbss.sys -> C:\Windows\SysNative\drivers\rdbss.sys -> [2009/06/04 04:47:57 | 00,287,744 | ---- | C | MD5 = 322DB5C6B55E8D8EE8D6F358B2AAABB1] (Microsoft Corporation)
msv1_0.dll -> C:\Windows\SysNative\msv1_0.dll -> [2009/06/04 04:47:57 | 00,265,728 | ---- | C | MD5 = 4D7969AF7FFFB45F53CCCEDEBE5A1136] (Microsoft Corporation)
msltus40.dll -> C:\Windows\SysWow64\msltus40.dll -> [2009/06/04 04:47:57 | 00,241,664 | ---- | C | MD5 = 1A703DA65271886A8DDFB31ACA215DAE] (Microsoft Corporation)
StructuredQuerySchema.bin -> C:\Windows\SysWow64\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
StructuredQuerySchema.bin -> C:\Windows\SysNative\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
davclnt.dll -> C:\Windows\SysWow64\davclnt.dll -> [2009/06/04 04:47:57 | 00,061,440 | ---- | C | MD5 = CFBD2E1FE18B50748A76703A2DC6D4E3] (Microsoft Corporation)
WMVSDECD.DLL -> C:\Windows\SysNative\WMVSDECD.DLL -> [2009/06/04 04:47:56 | 01,543,680 | ---- | C | MD5 = D4F0833AD5C60422BC63B740D7198EB0] (Microsoft Corporation)
wercon.exe -> C:\Windows\SysNative\wercon.exe -> [2009/06/04 04:47:56 | 01,394,176 | ---- | C | MD5 = 406121C827A2901E72DAB2197DAE180E] (Microsoft Corporation)
browseui.dll -> C:\Windows\SysWow64\browseui.dll -> [2009/06/04 04:47:56 | 01,324,032 | ---- | C | MD5 = 4504819D18FAC09B6108D8728467E5B2] (Microsoft Corporation)
mfc42.dll -> C:\Windows\SysWow64\mfc42.dll -> [2009/06/04 04:47:56 | 01,135,104 | ---- | C | MD5 = 9A8880BE64A67FA72A8F4DC71AF882E1] (Microsoft Corporation)
ipsecsnp.dll -> C:\Windows\SysNative\ipsecsnp.dll -> [2009/06/04 04:47:56 | 00,935,424 | ---- | C | MD5 = F6FA73DC89FF88360AEDBCE64BF55DD1] (Microsoft Corporation)
dxgkrnl.sys -> C:\Windows\SysNative\drivers\dxgkrnl.sys -> [2009/06/04 04:47:56 | 00,885,248 | ---- | C | MD5 = E828CDCA431D1F98D33501DFC390079A] (Microsoft Corporation)
samsrv.dll -> C:\Windows\SysNative\samsrv.dll -> [2009/06/04 04:47:56 | 00,671,744 | ---- | C | MD5 = 60EEC5440C2D05E5FDA04900E45FF717] (Microsoft Corporation)
netapi32.dll -> C:\Windows\SysNative\netapi32.dll -> [2009/06/04 04:47:56 | 00,648,192 | ---- | C | MD5 = EAA6D9F1C23A5C3375E6D3653F57E7BE] (Microsoft Corporation)
sqlsrv32.dll -> C:\Windows\SysNative\sqlsrv32.dll -> [2009/06/04 04:47:56 | 00,581,632 | ---- | C | MD5 = 9B385CED28719273914D64556AA2DFC7] (Microsoft Corporation)
ci.dll -> C:\Windows\SysNative\ci.dll -> [2009/06/04 04:47:56 | 00,380,392 | ---- | C | MD5 = 57D469072472C9F14125A347C522DD18] (Microsoft Corporation)
shlwapi.dll -> C:\Windows\SysWow64\shlwapi.dll -> [2009/06/04 04:47:56 | 00,353,280 | ---- | C | MD5 = 8246FC0B1759EBE4E0E60BA1BD13C467] (Microsoft Corporation)
iassdo.dll -> C:\Windows\SysNative\iassdo.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = ED50FAC6BC71FBA60F845A3F683CA056] (Microsoft Corporation)
msrd3x40.dll -> C:\Windows\SysWow64\msrd3x40.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = 447E79497D059943519434A7D5EA0963] (Microsoft Corporation)
PortableDeviceApi.dll -> C:\Windows\SysNative\PortableDeviceApi.dll -> [2009/06/04 04:47:56 | 00,324,608 | ---- | C | MD5 = 494B0A9A4DB58EF767DC115512823A8A] (Microsoft Corporation)
photowiz.dll -> C:\Windows\SysWow64\photowiz.dll -> [2009/06/04 04:47:56 | 00,293,376 | ---- | C | MD5 = ED49ADAF173B23E48A9BA110BD80160F] (Microsoft Corporation)
usbhub.sys -> C:\Windows\SysNative\drivers\usbhub.sys -> [2009/06/04 04:47:56 | 00,273,920 | ---- | C | MD5 = BB35CD80A2ECECFADC73569B3D70C7D1] (Microsoft Corporation)
wevtapi.dll -> C:\Windows\SysWow64\wevtapi.dll -> [2009/06/04 04:47:56 | 00,250,368 | ---- | C | MD5 = 4DE3C4D07BAFDE616EFA0ADE076CBAC2] (Microsoft Corporation)
nlhtml.dll -> C:\Windows\SysWow64\nlhtml.dll -> [2009/06/04 04:47:56 | 00,136,192 | ---- | C | MD5 = 70352EFA22EAFF59D50F0ADF7D27D918] (Microsoft Corporation)
locale.nls -> C:\Windows\SysWow64\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
locale.nls -> C:\Windows\SysNative\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
authui.dll -> C:\Windows\SysNative\authui.dll -> [2009/06/04 04:47:55 | 02,272,256 | ---- | C | MD5 = 363D07C0F427C72BDE0B6D6492A205C9] (Microsoft Corporation)
quartz.dll -> C:\Windows\SysWow64\quartz.dll -> [2009/06/04 04:47:55 | 01,314,816 | ---- | C | MD5 = F82BEBFF620C728CD4CC532E5D266D44] (Microsoft Corporation)
win32spl.dll -> C:\Windows\SysWow64\win32spl.dll -> [2009/06/04 04:47:55 | 00,443,392 | ---- | C | MD5 = C90B296C43EDD9DD1751AD3B590ACDE6] (Microsoft Corporation)
onex.tmf -> C:\Windows\SysNative\onex.tmf -> [2009/06/04 04:47:55 | 00,395,723 | ---- | C | MD5 = 4E18EBFC135590B5462EEF830224A1B2] ()
services.exe -> C:\Windows\SysNative\services.exe -> [2009/06/04 04:47:55 | 00,384,512 | ---- | C | MD5 = 934E0B7D77FF78C18D9F8891221B6DE3] (Microsoft Corporation)
USBSTOR.SYS -> C:\Windows\SysNative\drivers\USBSTOR.SYS -> [2009/06/04 04:47:55 | 00,077,824 | ---- | C | MD5 = B854C1558FCA0C269A38663E8B59B581] (Microsoft Corporation)
netshell.dll -> C:\Windows\SysWow64\netshell.dll -> [2009/06/04 04:47:54 | 03,174,400 | ---- | C | MD5 = E98E402067978DB38282158F9E8609CA] (Microsoft Corporation)
apds.dll -> C:\Windows\SysWow64\apds.dll -> [2009/06/04 04:47:54 | 01,730,560 | ---- | C | MD5 = AC40F8899BEC013EB1CA7CCC2D69E00C] (Microsoft Corporation)
mswstr10.dll -> C:\Windows\SysWow64\mswstr10.dll -> [2009/06/04 04:47:54 | 00,618,496 | ---- | C | MD5 = E0B787702BAF0CF4CEDF8F61B71F8383] (Microsoft Corporation)
SLCommDlg.dll -> C:\Windows\SysWow64\SLCommDlg.dll -> [2009/06/04 04:47:54 | 00,582,144 | ---- | C | MD5 = A2F612CBFEE5268CB7DB88EAF3992454] (Microsoft Corporation)
oleaut32.dll -> C:\Windows\SysWow64\oleaut32.dll -> [2009/06/04 04:47:54 | 00,563,712 | ---- | C | MD5 = CA85552B1A307CB03FF1A1D2D12CB1C5] (Microsoft Corporation)
comdlg32.dll -> C:\Windows\SysNative\comdlg32.dll -> [2009/06/04 04:47:54 | 00,549,888 | ---- | C | MD5 = AA09B70F619CBF499EFC22E7A63E3CE6] (Microsoft Corporation)
kerberos.dll -> C:\Windows\SysWow64\kerberos.dll -> [2009/06/04 04:47:54 | 00,497,664 | ---- | C | MD5 = 9E419B0C91886247B004002126A733A2] (Microsoft Corporation)
odbc32.dll -> C:\Windows\SysNative\odbc32.dll -> [2009/06/04 04:47:54 | 00,462,848 | ---- | C | MD5 = 8583DDE24C687658FCB8080FCF0BE618] (Microsoft Corporation)
QAGENTRT.DLL -> C:\Windows\SysNative\QAGENTRT.DLL -> [2009/06/04 04:47:54 | 00,409,600 | ---- | C | MD5 = A5B10C845E7538C60C0F5D87A57CB3F5] (Microsoft Corporation)
winhttp.dll -> C:\Windows\SysWow64\winhttp.dll -> [2009/06/04 04:47:54 | 00,375,808 | ---- | C | MD5 = 6B0373ED07C3523D74070085E0BF8FD2] (Microsoft Corporation)
mswsock.dll -> C:\Windows\SysNative\mswsock.dll -> [2009/06/04 04:47:54 | 00,304,128 | ---- | C | MD5 = BB08D93011B82883EC33C7707A9627BE] (Microsoft Corporation)
ws2_32.dll -> C:\Windows\SysNative\ws2_32.dll -> [2009/06/04 04:47:54 | 00,264,704 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
dnsapi.dll -> C:\Windows\SysNative\dnsapi.dll -> [2009/06/04 04:47:54 | 00,221,696 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
msv1_0.dll -> C:\Windows\SysWow64\msv1_0.dll -> [2009/06/04 04:47:54 | 00,215,040 | ---- | C | MD5 = A24D2F08743454A51F688BA4AE5863A1] (Microsoft Corporation)
WcnNetsh.dll -> C:\Windows\SysWow64\WcnNetsh.dll -> [2009/06/04 04:47:54 | 00,165,376 | ---- | C | MD5 = 2999CA596EB9E4BEDBA65EF2A47EECB1] (Microsoft Corporation)
propdefs.dll -> C:\Windows\SysNative\propdefs.dll -> [2009/06/04 04:47:54 | 00,080,896 | ---- | C | MD5 = C332027B1DDAA66141217AFFBFB73754] (Microsoft Corporation)
mfc42u.dll -> C:\Windows\SysWow64\mfc42u.dll -> [2009/06/04 04:47:53 | 01,160,704 | ---- | C | MD5 = 1DC99BA7265ACF7A5E19A924800EB823] (Microsoft Corporation)
WerFaultSecure.exe -> C:\Windows\SysNative\WerFaultSecure.exe -> [2009/06/04 04:47:53 | 01,114,112 | ---- | C | MD5 = C457FFC56D38D295B0E57E8550589710] (Microsoft Corporation)
winresume.efi -> C:\Windows\SysNative\winresume.efi -> [2009/06/04 04:47:53 | 00,992,728 | ---- | C | MD5 = 19CE8FF54DE700D7EAF98D96B6FECF11] (Microsoft Corporation)
WpdMtpDr.dll -> C:\Windows\SysNative\drivers\UMDF\WpdMtpDr.dll -> [2009/06/04 04:47:53 | 00,934,912 | ---- | C | MD5 = 8419889AEC9DBEA7756173FE8F0EB9F2] (Microsoft Corporation)
msctf.dll -> C:\Windows\SysWow64\msctf.dll -> [2009/06/04 04:47:53 | 00,807,424 | ---- | C | MD5 = E3C3BD69701CE6B7B17101E4F7740534] (Microsoft Corporation)
netlogon.dll -> C:\Windows\SysNative\netlogon.dll -> [2009/06/04 04:47:53 | 00,717,312 | ---- | C | MD5 = A3F1B171702CA04744EE514243B45BFB] (Microsoft Corporation)
msvcrt.dll -> C:\Windows\SysWow64\msvcrt.dll -> [2009/06/04 04:47:53 | 00,679,936 | ---- | C | MD5 = F5E991236960137B1F5449C5E5DF4656] (Microsoft Corporation)
PhotoMetadataHandler.dll -> C:\Windows\SysNative\PhotoMetadataHandler.dll -> [2009/06/04 04:47:53 | 00,470,016 | ---- | C | MD5 = AA866B1970E18CD92DAD3B32611598A4] (Microsoft Corporation)
emdmgmt.dll -> C:\Windows\SysNative\emdmgmt.dll -> [2009/06/04 04:47:53 | 00,399,360 | ---- | C | MD5 = A9B18B63A4FD6BAAB83326706D857FAB] (Microsoft Corporation)
eapphost.dll -> C:\Windows\SysNative\eapphost.dll -> [2009/06/04 04:47:53 | 00,261,632 | ---- | C | MD5 = E0159CE395B31F746AA26D0A6996DB29] (Microsoft Corporation)
newdev.dll -> C:\Windows\SysNative\newdev.dll -> [2009/06/04 04:47:53 | 00,215,552 | ---- | C | MD5 = 42BE9AE02DF6B7FB112E70E7CE825CED] (Microsoft Corporation)
WinSCard.dll -> C:\Windows\SysNative\WinSCard.dll -> [2009/06/04 04:47:53 | 00,190,464 | ---- | C | MD5 = B1D4BB8DFD7128A90982562268920724] (Microsoft Corporation)
eapphost.dll -> C:\Windows\SysWow64\eapphost.dll -> [2009/06/04 04:47:53 | 00,183,808 | ---- | C | MD5 = 3AB4023CBD406AC33AB8CDFF6C8079A0] (Microsoft Corporation)
FWPKCLNT.SYS -> C:\Windows\SysNative\drivers\FWPKCLNT.SYS -> [2009/06/04 04:47:53 | 00,166,888 | ---- | C | MD5 = DC83A8659514AB95972B13C71F50D0CB] (Microsoft Corporation)
mrxdav.sys -> C:\Windows\SysNative\drivers\mrxdav.sys -> [2009/06/04 04:47:53 | 00,139,264 | ---- | C | MD5 = 7C1DE4AA96DC0C071611F9E7DE02A68D] (Microsoft Corporation)
xmlfilter.dll -> C:\Windows\SysWow64\xmlfilter.dll -> [2009/06/04 04:47:53 | 00,056,320 | ---- | C | MD5 = 7C0FC379D4B066C2D2189792DED0E4AA] (Microsoft Corporation)
wlanpref.dll -> C:\Windows\SysNative\wlanpref.dll -> [2009/06/04 04:47:52 | 01,792,512 | ---- | C | MD5 = CFAC4A69ED38D8A3BF7D1EE3DBC1840E] (Microsoft Corporation)
winresume.exe -> C:\Windows\SysNative\winresume.exe -> [2009/06/04 04:47:52 | 00,981,480 | ---- | C | MD5 = 68B5B3D21475AB5F4270E98010D3565A] (Microsoft Corporation)
azroles.dll -> C:\Windows\SysNative\azroles.dll -> [2009/06/04 04:47:52 | 00,894,976 | ---- | C | MD5 = 78480FA9495F5F207043A17D8E799C5E] (Microsoft Corporation)
usp10.dll -> C:\Windows\SysNative\usp10.dll -> [2009/06/04 04:47:52 | 00,621,568 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
IPSECSVC.DLL -> C:\Windows\SysNative\IPSECSVC.DLL -> [2009/06/04 04:47:52 | 00,533,504 | ---- | C | MD5 = 89A5560671C2D8B4A4B51F3E1AA069D8] (Microsoft Corporation)
sqlsrv32.dll -> C:\Windows\SysWow64\sqlsrv32.dll -> [2009/06/04 04:47:52 | 00,524,288 | ---- | C | MD5 = A052F8FF7D6C6C32BCDCDA745134E569] (Microsoft Corporation)
odbc32.dll -> C:\Windows\SysWow64\odbc32.dll -> [2009/06/04 04:47:52 | 00,409,600 | ---- | C | MD5 = 676AEC53D9D3E74A556089E665C3B586] (Microsoft Corporation)
msrd2x40.dll -> C:\Windows\SysWow64\msrd2x40.dll -> [2009/06/04 04:47:52 | 00,319,488 | ---- | C | MD5 = 9A4B7595905E5A0DD530ECD23F77A578] (Microsoft Corporation)
wevtutil.exe -> C:\Windows\SysNative\wevtutil.exe -> [2009/06/04 04:47:52 | 00,248,832 | ---- | C | MD5 = 27F21278BE6223D44D86FD4382E2D4A9] (Microsoft Corporation)
MMDevAPI.dll -> C:\Windows\SysNative\MMDevAPI.dll -> [2009/06/04 04:47:52 | 00,203,776 | ---- | C | MD5 = 303C4EB5C2FB40F194E2B24CAD7148EF] (Microsoft Corporation)
secur32.dll -> C:\Windows\SysWow64\secur32.dll -> [2009/06/04 04:47:52 | 00,077,312 | ---- | C | MD5 = 7BC0997C62B9FF56D63EAD4B66E55861] (Microsoft Corporation)
propdefs.dll -> C:\Windows\SysWow64\propdefs.dll -> [2009/06/04 04:47:52 | 00,071,680 | ---- | C | MD5 = 88E1D14E26CB222D6B94AF85490E37F8] (Microsoft Corporation)
milcore.dll -> C:\Windows\SysNative\milcore.dll -> [2009/06/04 04:47:51 | 02,570,240 | ---- | C | MD5 = B77AD1818DBD476245B1281016E075E4] (Microsoft Corporation)
dbgeng.dll -> C:\Windows\SysWow64\dbgeng.dll -> [2009/06/04 04:47:51 | 01,856,512 | ---- | C | MD5 = 447983959A8CF49C4CC3B65DED69AF28] (Microsoft Corporation)
shdocvw.dll -> C:\Windows\SysWow64\shdocvw.dll -> [2009/06/04 04:47:51 | 01,068,032 | ---- | C | MD5 = 2AA4117EE5F4765AD8404DCF9D552C71] (Microsoft Corporation)
WsmSvc.dll -> C:\Windows\SysWow64\WsmSvc.dll -> [2009/06/04 04:47:51 | 00,747,008 | ---- | C | MD5 = 01874D4689C212460FBABF0ECD7CB7F7] (Microsoft Corporation)
WSDApi.dll -> C:\Windows\SysNative\WSDApi.dll -> [2009/06/04 04:47:51 | 00,441,856 | ---- | C | MD5 = D485E7EA44BEE4CF783CE3566C3119D2] (Microsoft Corporation)
Wldap32.dll -> C:\Windows\SysNative\Wldap32.dll -> [2009/06/04 04:47:51 | 00,328,704 | ---- | C | MD5 = ADC1964755BB12485A15070A4D4F2697] (Microsoft Corporation)
iasnap.dll -> C:\Windows\SysNative\iasnap.dll -> [2009/06/04 04:47:51 | 00,213,504 | ---- | C | MD5 = 3232D6CA64C56F49A806674721A6F029] (Microsoft Corporation)
wevtutil.exe -> C:\Windows\SysWow64\wevtutil.exe -> [2009/06/04 04:47:51 | 00,163,840 | ---- | C | MD5 = 2C2DE9CD93DD4F11F8715B7334EB40A7] (Microsoft Corporation)
mssitlb.dll -> C:\Windows\SysNative\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,552 | ---- | C | MD5 = 1EE53C36447CE03E4E65F201E0D547DD] (Microsoft Corporation)
mssitlb.dll -> C:\Windows\SysWow64\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,040 | ---- | C | MD5 = B9E13F49530213AB974E070A60DEB97B] (Microsoft Corporation)
msscb.dll -> C:\Windows\SysNative\msscb.dll -> [2009/06/04 04:47:51 | 00,044,544 | ---- | C | MD5 = A44E61A183FD6D65C655E31A330ECA7E] (Microsoft Corporation)
mmcndmgr.dll -> C:\Windows\SysWow64\mmcndmgr.dll -> [2009/06/04 04:47:50 | 02,167,808 | ---- | C | MD5 = 99BFB01E148169E6E8DA7B7232F874CE] (Microsoft Corporation)
wmpmde.dll -> C:\Windows\SysNative\wmpmde.dll -> [2009/06/04 04:47:50 | 01,090,048 | ---- | C | MD5 = 4745415AE82069D623A805B69916F42E] (Microsoft Corporation)
mcmde.dll -> C:\Windows\SysNative\mcmde.dll -> [2009/06/04 04:47:50 | 01,074,176 | ---- | C | MD5 = C34EA290A77FC029AC223234F210F665] (Microsoft Corporation)
usp10.dll -> C:\Windows\SysWow64\usp10.dll -> [2009/06/04 04:47:50 | 00,502,272 | ---- | C | MD5 = 5A8E28037289FCCBF7AD3FC57DF7048F] (Microsoft Corporation)
iassam.dll -> C:\Windows\SysNative\iassam.dll -> [2009/06/04 04:47:50 | 00,242,176 | ---- | C | MD5 = 97C86944F4FA60DEB053E2D4733CD3AA] (Microsoft Corporation)
msiscsi.sys -> C:\Windows\SysNative\drivers\msiscsi.sys -> [2009/06/04 04:47:50 | 00,215,528 | ---- | C | MD5 = E4FDF99599F27EC25D2CF6D754243520] (Microsoft Corporation)
gameux.dll -> C:\Windows\SysNative\gameux.dll -> [2009/06/04 04:47:49 | 01,927,680 | ---- | C | MD5 = 4697694DDF74F76E37D3E76EE4468CE4] (Microsoft Corporation)
propsys.dll -> C:\Windows\SysNative\propsys.dll -> [2009/06/04 04:47:49 | 00,923,136 | ---- | C | MD5 = FE13271EF661F8BE83A1A0D3366164D0] (Microsoft Corporation)
netlogon.dll -> C:\Windows\SysWow64\netlogon.dll -> [2009/06/04 04:47:49 | 00,592,896 | ---- | C | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
winsrv.dll -> C:\Windows\SysNative\winsrv.dll -> [2009/06/04 04:47:49 | 00,450,560 | ---- | C | MD5 = 36F234FD1AA7BAE559BB1C483FC76286] (Microsoft Corporation)
devmgr.dll -> C:\Windows\SysWow64\devmgr.dll -> [2009/06/04 04:47:49 | 00,378,368 | ---- | C | MD5 = 5CAA965A14ADBDEF4359F3D2BEA9D9F7] (Microsoft Corporation)
schannel.dll -> C:\Windows\SysNative\schannel.dll -> [2009/06/04 04:47:49 | 00,335,360 | ---- | C | MD5 = F870ECC00D60B40E0894414F7833B002] (Microsoft Corporation)
schannel.dll -> C:\Windows\SysWow64\schannel.dll -> [2009/06/04 04:47:49 | 00,268,800 | ---- | C | MD5 = 17038AA83CCC0E1573FCE458CA790380] (Microsoft Corporation)
adsldpc.dll -> C:\Windows\SysWow64\adsldpc.dll -> [2009/06/04 04:47:49 | 00,199,168 | ---- | C | MD5 = E9B9C1B98C8D6D48407E1C1203EAC659] (Microsoft Corporation)
drvinst.exe -> C:\Windows\SysWow64\drvinst.exe -> [2009/06/04 04:47:49 | 00,194,048 | ---- | C | MD5 = 488F6147CBBF38ADFA29710537E02E61] (Microsoft Corporation)
srv2.sys -> C:\Windows\SysNative\drivers\srv2.sys -> [2009/06/04 04:47:49 | 00,174,592 | ---- | C | MD5 = EFCA77E9F9FDAB1DE37CC473066DC715] (Microsoft Corporation)
cryptsvc.dll -> C:\Windows\SysNative\cryptsvc.dll -> [2009/06/04 04:47:49 | 00,166,912 | ---- | C | MD5 = 18918613E63F387CDE4D95CA7D49DCF7] (Microsoft Corporation)
msctfp.dll -> C:\Windows\SysWow64\msctfp.dll -> [2009/06/04 04:47:49 | 00,084,992 | ---- | C | MD5 = 89C91775A8332D9DB03AFE8A884185F9] (Microsoft Corporation)
bthserv.dll -> C:\Windows\SysNative\bthserv.dll -> [2009/06/04 04:47:49 | 00,053,760 | ---- | C | MD5 = 22E65FFD640F16968F855F5B3528D366] (Microsoft Corporation)
rtffilt.dll -> C:\Windows\SysNative\rtffilt.dll -> [2009/06/04 04:47:49 | 00,042,496 | ---- | C | MD5 = 97A11F16ACF1904145B92DBB687CC156] (Microsoft Corporation)
msscb.dll -> C:\Windows\SysWow64\msscb.dll -> [2009/06/04 04:47:49 | 00,035,328 | ---- | C | MD5 = F85134BF76CB335A39F8D7BC4173D4FB] (Microsoft Corporation)
fdBthProxy.dll -> C:\Windows\SysWow64\fdBthProxy.dll -> [2009/06/04 04:47:49 | 00,009,728 | ---- | C | MD5 = BF741696C521FF5503CDE10E36345E4D] (Microsoft Corporation)
wcnwiz.dll -> C:\Windows\SysWow64\wcnwiz.dll -> [2009/06/04 04:47:48 | 01,533,440 | ---- | C | MD5 = 9EF2D0475B0DC496ACD0B7034D593840] (Microsoft Corporation)
WMVSDECD.DLL -> C:\Windows\SysWow64\WMVSDECD.DLL -> [2009/06/04 04:47:48 | 01,382,912 | ---- | C | MD5 = 487565A576DCBA47D2E44FA116E15D64] (Microsoft Corporation)
WindowsCodecs.dll -> C:\Windows\SysWow64\WindowsCodecs.dll -> [2009/06/04 04:47:48 | 00,712,704 | ---- | C | MD5 = F7F4AD3D174CB5EC3C12F04C99478B84] (Microsoft Corporation)
adtschema.dll -> C:\Windows\SysWow64\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = EC43D9CC95C3BB5FEFDBCF22D375E1F5] (Microsoft Corporation)
adtschema.dll -> C:\Windows\SysNative\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = 99AA51A6AE40DED4A74776E6E1C066C1] (Microsoft Corporation)
mscms.dll -> C:\Windows\SysNative\mscms.dll -> [2009/06/04 04:47:48 | 00,519,680 | ---- | C | MD5 = 87B1E9B5DBFADA04D9FFDC52D16CB000] (Microsoft Corporation)
evr.dll -> C:\Windows\SysWow64\evr.dll -> [2009/06/04 04:47:48 | 00,485,888 | ---- | C | MD5 = 2495C4204C63678F8FD5D488CA7DAD26] (Microsoft Corporation)
vds.exe -> C:\Windows\SysNative\vds.exe -> [2009/06/04 04:47:48 | 00,454,656 | ---- | C | MD5 = 294945381DFA7CE58CECF0A9896AF327] (Microsoft Corporation)
comdlg32.dll -> C:\Windows\SysWow64\comdlg32.dll -> [2009/06/04 04:47:48 | 00,450,560 | ---- | C | MD5 = 4AA2A0E26CEF1A803741253DCF9A1503] (Microsoft Corporation)
PhotoMetadataHandler.dll -> C:\Windows\SysWow64\PhotoMetadataHandler.dll -> [2009/06/04 04:47:48 | 00,425,472 | ---- | C | MD5 = BE7C04C89126072D368D3DDCE0710985] (Microsoft Corporation)
winlogon.exe -> C:\Windows\SysNative\winlogon.exe -> [2009/06/04 04:47:48 | 00,405,504 | ---- | C | MD5 = 6D0773A3A65D28B663F334C90441D01A] (Microsoft Corporation)
WSDApi.dll -> C:\Windows\SysWow64\WSDApi.dll -> [2009/06/04 04:47:48 | 00,355,328 | ---- | C | MD5 = 5FF741BF7F6DB47F1F03E9B995DC2D3C] (Microsoft Corporation)
Wldap32.dll -> C:\Windows\SysWow64\Wldap32.dll -> [2009/06/04 04:47:48 | 00,287,744 | ---- | C | MD5 = B8A609FB5EFB4E44FC1355B1C01C64BC] (Microsoft Corporation)
services.exe -> C:\Windows\SysWow64\services.exe -> [2009/06/04 04:47:48 | 00,279,552 | ---- | C | MD5 = D4E6D91C1349B7BFB3599A6ADA56851B] (Microsoft Corporation)
volsnap.sys -> C:\Windows\SysNative\drivers\volsnap.sys -> [2009/06/04 04:47:48 | 00,269,288 | ---- | C | MD5 = 5280AADA24AB36B01A84A6424C475C8D] (Microsoft Corporation)
taskeng.exe -> C:\Windows\SysNative\taskeng.exe -> [2009/06/04 04:47:48 | 00,265,216 | ---- | C | MD5 = 2009F2E44758BECD3195B40D0B3650B3] (Microsoft Corporation)
scrrun.dll -> C:\Windows\SysNative\scrrun.dll -> [2009/06/04 04:47:48 | 00,198,656 | ---- | C | MD5 = EB3D80F14D593C3ABCCEE58464BFE59C] (Microsoft Corporation)
imapi.dll -> C:\Windows\SysNative\imapi.dll -> [2009/06/04 04:47:48 | 00,151,040 | ---- | C | MD5 = 50BABB0E2AD8A8C5B692D0D030FDFA03] (Microsoft Corporation)
qintlgnt.ime -> C:\Windows\SysWow64\qintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = EABE8490A252D8B2020357D560A93850] (Microsoft Corporation)
cintlgnt.ime -> C:\Windows\SysWow64\cintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = E04FA091879E982F77024DF9461649E3] (Microsoft Corporation)
chajei.ime -> C:\Windows\SysWow64\chajei.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 50AE4C1B7A68DE9FFD3D433C93BA270A] (Microsoft Corporation)
quick.ime -> C:\Windows\SysWow64\quick.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 1171CEB628BA19D69182935FF81DE24E] (Microsoft Corporation)
phon.ime -> C:\Windows\SysWow64\phon.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 008EA1117A5F3A1866FCC94F34D1424E] (Microsoft Corporation)
reg.exe -> C:\Windows\SysNative\reg.exe -> [2009/06/04 04:47:48 | 00,074,240 | ---- | C | MD5 = 314053DF55929FED67215E871EC7CEDF] (Microsoft Corporation)
partmgr.sys -> C:\Windows\SysNative\drivers\partmgr.sys -> [2009/06/04 04:47:48 | 00,073,176 | ---- | C | MD5 = F9B5EDA4C17A2BE7663F064DBF0FE254] (Microsoft Corporation)
fdProxy.dll -> C:\Windows\SysNative\fdProxy.dll -> [2009/06/04 04:47:48 | 00,065,536 | ---- | C | MD5 = 9DD626CC4FB7CAAC19B2F4C33CD6A2A3] (Microsoft Corporation)
mimefilt.dll -> C:\Windows\SysWow64\mimefilt.dll -> [2009/06/04 04:47:48 | 00,041,984 | ---- | C | MD5 = FAF53B680C7DE42328EAE23638934D10] (Microsoft Corporation)
mimefilt.dll -> C:\Windows\SysNative\mimefilt.dll -> [2009/06/04 04:47:48 | 00,038,912 | ---- | C | MD5 = D48FBAFD097E23E6BB255A09FA7EF06D] (Microsoft Corporation)
brcpl.dll -> C:\Windows\SysNative\brcpl.dll -> [2009/06/04 04:47:47 | 01,538,560 | ---- | C | MD5 = EF6D2BC5AF87B6DDFB52245FF77046B7] (Microsoft Corporation)
wdc.dll -> C:\Windows\SysNative\wdc.dll -> [2009/06/04 04:47:47 | 01,234,432 | ---- | C | MD5 = 832726DEFA39BBA2D34C9E20CEA471C0] (Microsoft Corporation)
mswdat10.dll -> C:\Windows\SysWow64\mswdat10.dll -> [2009/06/04 04:47:47 | 00,856,064 | ---- | C | MD5 = 7483E59A7A7A7891ACD4C63EE97D1BF1] (Microsoft Corporation)
CertEnrollUI.dll -> C:\Windows\SysNative\CertEnrollUI.dll -> [2009/06/04 04:47:47 | 00,810,496 | ---- | C | MD5 = 777FED68045FC30A869237A10277075F] (Microsoft Corporation)
stobject.dll -> C:\Windows\SysNative\stobject.dll -> [2009/06/04 04:47:47 | 00,748,544 | ---- | C | MD5 = 2539DFDB16F616B60D9D6858D36C5710] (Microsoft Corporation)
msdtcprx.dll -> C:\Windows\SysWow64\msdtcprx.dll -> [2009/06/04 04:47:47 | 00,560,640 | ---- | C | MD5 = EF9E3316F1106998D1904C3578C63C32] (Microsoft Corporation)
ksecdd.sys -> C:\Windows\SysNative\drivers\ksecdd.sys -> [2009/06/04 04:47:47 | 00,514,536 | ---- | C | MD5 = FB88B233AF3D6204F19D85934C102BA7] (Microsoft Corporation)
wcncsvc.dll -> C:\Windows\SysWow64\wcncsvc.dll -> [2009/06/04 04:47:47 | 00,413,696 | ---- | C | MD5 = A3CD60FD826381B49F03832590E069AF] (Microsoft Corporation)
ipsmsnap.dll -> C:\Windows\SysWow64\ipsmsnap.dll -> [2009/06/04 04:47:47 | 00,396,288 | ---- | C | MD5 = C192DD0C53FD0616AC31A9E0ADAE0C39] (Microsoft Corporation)
msdrm.dll -> C:\Windows\SysWow64\msdrm.dll -> [2009/06/04 04:47:47 | 00,332,288 | ---- | C | MD5 = 9A4156DE0BBC936B2F61EEFC376E7DFC] (Microsoft Corporation)
certcli.dll -> C:\Windows\SysWow64\certcli.dll -> [2009/06/04 04:47:47 | 00,323,584 | ---- | C | MD5 = AC48FD62E22C4425879FCA5A63F50497] (Microsoft Corporation)
rasmans.dll -> C:\Windows\SysNative\rasmans.dll -> [2009/06/04 04:47:47 | 00,309,760 | ---- | C | MD5 = 3AD83E4046C43BE510DE681588ACB8AF] (Microsoft Corporation)
pdh.dll -> C:\Windows\SysNative\pdh.dll -> [2009/06/04 04:47:47 | 00,307,712 | ---- | C | MD5 = 185A819D9AC5A1D7F387C45F476CFE32] (Microsoft Corporation)
offfilt.dll -> C:\Windows\SysNative\offfilt.dll -> [2009/06/04 04:47:47 | 00,280,064 | ---- | C | MD5 = C87C18A68AA8BFE1AAFB2E5A19518191] (Microsoft Corporation)
PortableDeviceApi.dll -> C:\Windows\SysWow64\PortableDeviceApi.dll -> [2009/06/04 04:47:47 | 00,241,152 | ---- | C | MD5 = B26C0D2B2186AC508B5EFF976BB7FF9D] (Microsoft Corporation)
taskeng.exe -> C:\Windows\SysWow64\taskeng.exe -> [2009/06/04 04:47:47 | 00,169,984 | ---- | C | MD5 = E5BBFC283D6F5D69B41E464676361020] (Microsoft Corporation)
dnsapi.dll -> C:\Windows\SysWow64\dnsapi.dll -> [2009/06/04 04:47:47 | 00,168,448 | ---- | C | MD5 = F7683EC1225435144F28B611546BA5F2] (Microsoft Corporation)
dhcpcsvc6.dll -> C:\Windows\SysNative\dhcpcsvc6.dll -> [2009/06/04 04:47:47 | 00,163,328 | ---- | C | MD5 = 956148910C7EB6A8C095D9B4E6F94E62] (Microsoft Corporation)
inetpp.dll -> C:\Windows\SysNative\inetpp.dll -> [2009/06/04 04:47:47 | 00,156,160 | ---- | C | MD5 = A5A54257E6FD4AF082CCB0470AD4FC98] (Microsoft Corporation)
rasl2tp.sys -> C:\Windows\SysNative\drivers\rasl2tp.sys -> [2009/06/04 04:47:47 | 00,124,928 | ---- | C | MD5 = AC7BC4D42A7E558718DFDEC599BBFC2C] (Microsoft Corporation)
reg.exe -> C:\Windows\SysWow64\reg.exe -> [2009/06/04 04:47:47 | 00,061,952 | ---- | C | MD5 = DE4E8E68DE8CFBEB1B5C6B6E6022D98C] (Microsoft Corporation)
msjter40.dll -> C:\Windows\SysWow64\msjter40.dll -> [2009/06/04 04:47:47 | 00,061,440 | ---- | C | MD5 = 534FD777CB2684392411CE7BCBBDF78E] (Microsoft Corporation)
rtffilt.dll -> C:\Windows\SysWow64\rtffilt.dll -> [2009/06/04 04:47:47 | 00,038,400 | ---- | C | MD5 = D066FF44590F6F7433F60674C74394C6] (Microsoft Corporation)
WMNetMgr.dll -> C:\Windows\SysWow64\WMNetMgr.dll -> [2009/06/04 04:47:46 | 00,996,352 | ---- | C | MD5 = 3159B65312AEC7CDFAD346D5A1C5068B] (Microsoft Corporation)
certutil.exe -> C:\Windows\SysWow64\certutil.exe -> [2009/06/04 04:47:46 | 00,799,744 | ---- | C | MD5 = 4533F3B0E9AD11A1C02B191F5D873DE2] (Microsoft Corporation)
PhotoScreensaver.scr -> C:\Windows\SysWow64\PhotoScreensaver.scr -> [2009/06/04 04:47:46 | 00,704,512 | ---- | C | MD5 = AAC78A91ED32BC0CA7FC8AEC39975016] (Microsoft Corporation)
wiaservc.dll -> C:\Windows\SysNative\wiaservc.dll -> [2009/06/04 04:47:46 | 00,572,416 | ---- | C | MD5 = 15825C1FBFB8779992CB65087F316AF5] (Microsoft Corporation)
RelMon.dll -> C:\Windows\SysNative\RelMon.dll -> [2009/06/04 04:47:46 | 00,539,136 | ---- | C | MD5 = 86EA84AC57D94A553006850123D22F50] (Microsoft Corporation)
sysmon.ocx -> C:\Windows\SysNative\sysmon.ocx -> [2009/06/04 04:47:46 | 00,475,648 | ---- | C | MD5 = 889D851AD03063E01F7866B1D10044CF] (Microsoft Corporation)
mtxclu.dll -> C:\Windows\SysNative\mtxclu.dll -> [2009/06/04 04:47:46 | 00,361,984 | ---- | C | MD5 = 663A071E67EB7052637E1549BF1A28B5] (Microsoft Corporation)
clfs.sys -> C:\Windows\SysNative\clfs.sys -> [2009/06/04 04:47:46 | 00,361,448 | ---- | C | MD5 = 3DCA9A18B204939CFB24BEA53E31EB48] (Microsoft Corporation)
winspool.drv -> C:\Windows\SysNative\winspool.drv -> [2009/06/04 04:47:46 | 00,342,016 | ---- | C | MD5 = 715628F11CFC90962DBEFEA24556863F] (Microsoft Corporation)
msihnd.dll -> C:\Windows\SysWow64\msihnd.dll -> [2009/06/04 04:47:46 | 00,332,800 | ---- | C | MD5 = DC14113D196060C83BDD99D20E4DBE8E] (Microsoft Corporation)
rsaenh.dll -> C:\Windows\SysWow64\rsaenh.dll -> [2009/06/04 04:47:46 | 00,241,128 | ---- | C | MD5 = E14170AEA125119B98FA2BDE3FF4F462] (Microsoft Corporation)
scrobj.dll -> C:\Windows\SysNative\scrobj.dll -> [2009/06/04 04:47:46 | 00,227,328 | ---- | C | MD5 = D03E2F3215490A268B3DA59AADF10524] (Microsoft Corporation)
pnpsetup.dll -> C:\Windows\SysNative\pnpsetup.dll -> [2009/06/04 04:47:46 | 00,207,872 | ---- | C | MD5 = 91413FA55670EB3036425C4F31826CF4] (Microsoft Corporation)
fundisc.dll -> C:\Windows\SysNative\fundisc.dll -> [2009/06/04 04:47:46 | 00,174,080 | ---- | C | MD5 = 7F80E2C493079E9D42CCECC715790E10] (Microsoft Corporation)
ndiswan.sys -> C:\Windows\SysNative\drivers\ndiswan.sys -> [2009/06/04 04:47:46 | 00,169,472 | ---- | C | MD5 = F8158771905260982CE724076419EF19] (Microsoft Corporation)
MMDevAPI.dll -> C:\Windows\SysWow64\MMDevAPI.dll -> [2009/06/04 04:47:46 | 00,150,528 | ---- | C | MD5 = 56B5914070B2C243DFB3D186070DA89D] (Microsoft Corporation)
sysclass.dll -> C:\Windows\SysNative\sysclass.dll -> [2009/06/04 04:47:46 | 00,115,200 | ---- | C | MD5 = C46E68C6B94705F95C9C7D8BFD7BD9BD] (Microsoft Corporation)
raspptp.sys -> C:\Windows\SysNative\drivers\raspptp.sys -> [2009/06/04 04:47:46 | 00,098,816 | ---- | C | MD5 = 23386E9952025F5F21C368971E2E7301] (Microsoft Corporation)
msscntrs.dll -> C:\Windows\SysWow64\msscntrs.dll -> [2009/06/04 04:47:46 | 00,060,416 | ---- | C | MD5 = 2657D7BB993F49B1A3C554D766FA09F9] (Microsoft Corporation)
msstrc.dll -> C:\Windows\SysWow64\msstrc.dll -> [2009/06/04 04:47:46 | 00,043,008 | ---- | C | MD5 = 3618C1D17AF65C2405009AE02160D298] (Microsoft Corporation)
msshooks.dll -> C:\Windows\SysWow64\msshooks.dll -> [2009/06/04 04:47:46 | 00,011,776 | ---- | C | MD5 = 582BE479E7E286BB3B31C5A4C3DC3987] (Microsoft Corporation)
appwiz.cpl -> C:\Windows\SysNative\appwiz.cpl -> [2009/06/04 04:47:45 | 01,321,472 | ---- | C | MD5 = 8565BEDF9ACD28A9A1FFAADC93F957C5] (Microsoft Corporation)
sethc.exe -> C:\Windows\SysNative\sethc.exe -> [2009/06/04 04:47:45 | 00,776,192 | ---- | C | MD5 = 7E5B8772130C5E66DE982E7033805E2F] (Microsoft Corporation)
inetcomm.dll -> C:\Windows\SysWow64\inetcomm.dll -> [2009/06/04 04:47:45 | 00,738,816 | ---- | C | MD5 = AC9415A1AF0F49570F7515A7131AE2E1] (Microsoft Corporation)
msinfo32.exe -> C:\Windows\SysNative\msinfo32.exe -> [2009/06/04 04:47:45 | 00,488,960 | ---- | C | MD5 = A4AF702E6BB80D014C56EDE22C6BC423] (Microsoft Corporation)
netapi32.dll -> C:\Windows\SysWow64\netapi32.dll -> [2009/06/04 04:47:45 | 00,467,456 | ---- | C | MD5 = C94108296530A097B2E1E18C101E4703] (Microsoft Corporation)
acpi.sys -> C:\Windows\SysNative\drivers\acpi.sys -> [2009/06/04 04:47:45 | 00,325,608 | ---- | C | MD5 = 1965AAFFAB07E3FB03C77F81BEBA3547] (Microsoft Corporation)
mtxclu.dll -> C:\Windows\SysWow64\mtxclu.dll -> [2009/06/04 04:47:45 | 00,310,272 | ---- | C | MD5 = 601C4575875A03798498558D0DB1C91A] (Microsoft Corporation)
wisptis.exe -> C:\Windows\SysNative\wisptis.exe -> [2009/06/04 04:47:45 | 00,287,744 | ---- | C | MD5 = EC587CF25B60660B988218445CB10573] (Microsoft Corporation)
mfplat.dll -> C:\Windows\SysNative\mfplat.dll -> [2009/06/04 04:47:45 | 00,276,992 | ---- | C | MD5 = A17EA1F3A658C80B6493E50351F940CF] (Microsoft Corporation)
usbport.sys -> C:\Windows\SysNative\drivers\usbport.sys -> [2009/06/04 04:47:45 | 00,259,584 | ---- | C | MD5 = A60FDA63F3901AE49C244FF988427A9C] (Microsoft Corporation)
adsldpc.dll -> C:\Windows\SysNative\adsldpc.dll -> [2009/06/04 04:47:45 | 00,231,936 | ---- | C | MD5 = 80B8B7FF3AADD2156EE969C048644CAF] (Microsoft Corporation)
iasrad.dll -> C:\Windows\SysNative\iasrad.dll -> [2009/06/04 04:47:45 | 00,198,144 | ---- | C | MD5 = 2C234A4AD19475408E937816ECE96327] (Microsoft Corporation)
pci.sys -> C:\Windows\SysNative\drivers\pci.sys -> [2009/06/04 04:47:45 | 00,178,664 | ---- | C | MD5 = 47AB1E0FC9D0E12BB53BA246E3A0906D] (Microsoft Corporation)
fundisc.dll -> C:\Windows\SysWow64\fundisc.dll -> [2009/06/04 04:47:45 | 00,153,088 | ---- | C | MD5 = 4EDA94333BDB75B1BC0A7610BED34F00] (Microsoft Corporation)
dhcpcsvc6.dll -> C:\Windows\SysWow64\dhcpcsvc6.dll -> [2009/06/04 04:47:45 | 00,130,560 | ---- | C | MD5 = DFB6B71CDABA9DFB49C9D2B318B97A1A] (Microsoft Corporation)
cryptsvc.dll -> C:\Windows\SysWow64\cryptsvc.dll -> [2009/06/04 04:47:45 | 00,129,024 | ---- | C | MD5 = FB27772BEAF8E1D28CCD825C09DA939B] (Microsoft Corporation)
msiexec.exe -> C:\Windows\SysNative\msiexec.exe -> [2009/06/04 04:47:45 | 00,125,440 | ---- | C | MD5 = AC545DF9370A3E1BF538E403ABE51CC0] (Microsoft Corporation)
dfshim.dll -> C:\Windows\SysNative\dfshim.dll -> [2009/06/04 04:47:45 | 00,108,864 | ---- | C | MD5 = DCEB990982F68B6D8392505433C787D0] (Microsoft Corporation)
dfshim.dll -> C:\Windows\SysWow64\dfshim.dll -> [2009/06/04 04:47:45 | 00,093,512 | ---- | C | MD5 = 2D82E6A9D1F8095F81BDDA21E369D3D2] (Microsoft Corporation)
mscories.dll -> C:\Windows\SysWow64\mscories.dll -> [2009/06/04 04:47:45 | 00,080,720 | ---- | C | MD5 = 9CEDC24DC2A88624A4431C96A13C0C94] (Microsoft Corporation)
rasdiag.dll -> C:\Windows\SysNative\rasdiag.dll -> [2009/06/04 04:47:45 | 00,065,536 | ---- | C | MD5 = 78C9AB22333F1FA642222CD18ABC50C9] (Microsoft Corporation)
TsWpfWrp.exe -> C:\Windows\SysWow64\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,035,680 | ---- | C | MD5 = 7EE55302291DD7AA5C2237B0CC7D49E1] (Microsoft Corporation)
TsWpfWrp.exe -> C:\Windows\SysNative\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,034,624 | ---- | C | MD5 = FB4D090E203E7A5E0D58EDE957296406] (Microsoft Corporation)
hidserv.dll -> C:\Windows\SysWow64\hidserv.dll -> [2009/06/04 04:47:45 | 00,026,112 | ---- | C | MD5 = 84067081F3318162797385E11A8F0582] (Microsoft Corporation)
gameux.dll -> C:\Windows\SysWow64\gameux.dll -> [2009/06/04 04:47:44 | 01,696,768 | ---- | C | MD5 = 9B8F915F1DA844B94700868520C239ED] (Microsoft Corporation)
chsbrkr.dll -> C:\Windows\SysWow64\chsbrkr.dll -> [2009/06/04 04:47:44 | 01,671,680 | ---- | C | MD5 = 9996E936E9926108FBEDED4171B129B7] (Microsoft Corporation)
cryptui.dll -> C:\Windows\SysNative\cryptui.dll -> [2009/06/04 04:47:44 | 01,035,776 | ---- | C | MD5 = A361672E1AE1581B475F035607F4FD87] (Microsoft Corporation)
wdc.dll -> C:\Windows\SysWow64\wdc.dll -> [2009/06/04 04:47:44 | 01,020,928 | ---- | C | MD5 = 1959E5AAEE0D988C10F19CEC7DFF2242] (Microsoft Corporation)
printui.dll -> C:\Windows\SysNative\printui.dll -> [2009/06/04 04:47:44 | 00,980,480 | ---- | C | MD5 = 91ECB960A6E54B48F6901E36DF8EEBAA] (Microsoft Corporation)
Utilman.exe -> C:\Windows\SysNative\Utilman.exe -> [2009/06/04 04:47:44 | 00,785,920 | ---- | C | MD5 = 106A5163D2A23CC82C4C94FE7AEF5841] (Microsoft Corporation)
autofmt.exe -> C:\Windows\SysNative\autofmt.exe -> [2009/06/04 04:47:44 | 00,722,944 | ---- | C | MD5 = A2E4854AF96353AD33D4F167085A4A7B] (Microsoft Corporation)
termsrv.dll -> C:\Windows\SysNative\termsrv.dll -> [2009/06/04 04:47:44 | 00,547,328 | ---- | C | MD5 = 5CDD30BC217082DAC71A9878D9BFD566] (Microsoft Corporation)
shsvcs.dll -> C:\Windows\SysWow64\shsvcs.dll -> [2009/06/04 04:47:44 | 00,247,296 | ---- | C | MD5 = C818C44C201898399BF999BB6B35D4E3] (Microsoft Corporation)
tcpipcfg.dll -> C:\Windows\SysNative\tcpipcfg.dll -> [2009/06/04 04:47:44 | 00,238,080 | ---- | C | MD5 = F8F08779E7D997913607B0146710CC04] (Microsoft Corporation)
osk.exe -> C:\Windows\SysNative\osk.exe -> [2009/06/04 04:47:44 | 00,212,480 | ---- | C | MD5 = 8A777C49978A4E03C4F1442E8FDC5CC2] (Microsoft Corporation)
WFP.TMF -> C:\Windows\SysNative\WFP.TMF -> [2009/06/04 04:47:44 | 00,207,968 | ---- | C | MD5 = 424F4F52583C8AB4D27A34A6B71B6E95] ()
AudioSes.dll -> C:\Windows\SysNative\AudioSes.dll -> [2009/06/04 04:47:44 | 00,190,976 | ---- | C | MD5 = EEFDA2A090E8000740D46B09DCDBEAFF] (Microsoft Corporation)
mrxsmb.sys -> C:\Windows\SysNative\drivers\mrxsmb.sys -> [2009/06/04 04:47:44 | 00,135,168 | ---- | C | MD5 = A6C23405A24C0C48A246D4F23F0A387D] (Microsoft Corporation)
imapi.dll -> C:\Windows\SysWow64\imapi.dll -> [2009/06/04 04:47:44 | 00,107,520 | ---- | C | MD5 = C399E29AC25746CDC126DC621F41F219] (Microsoft Corporation)
SLUINotify.dll -> C:\Windows\SysNative\SLUINotify.dll -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = FD74B4B7C2088E390A30C85A896FC3AF] (Microsoft Corporation)
msiexec.exe -> C:\Windows\SysWow64\msiexec.exe -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = C559672F31ABE6BA7277DD73C4502238] (Microsoft Corporation)
iasdatastore.dll -> C:\Windows\SysNative\iasdatastore.dll -> [2009/06/04 04:47:44 | 00,065,536 | ---- | C | MD5 = 11F1BAD4698745ABE18C96059D43E4D9] (Microsoft Corporation)
termdd.sys -> C:\Windows\SysNative\drivers\termdd.sys -> [2009/06/04 04:47:44 | 00,062,440 | ---- | C | MD5 = 8C19678D22649EC002EF2282EAE92F98] (Microsoft Corporation)
pnidui.dll -> C:\Windows\SysNative\pnidui.dll -> [2009/06/04 04:47:43 | 02,024,960 | ---- | C | MD5 = DE95622B09554A70DB4F035D197330BF] (Microsoft Corporation)
pnidui.dll -> C:\Windows\SysWow64\pnidui.dll -> [2009/06/04 04:47:43 | 01,823,744 | ---- | C | MD5 = 75AD59B9B12EB194486BE8D97B062994] (Microsoft Corporation)
connect.dll -> C:\Windows\SysNative\connect.dll -> [2009/06/04 04:47:43 | 01,691,648 | ---- | C | MD5 = A322BB42609E9D728C9440FB2685F04D] (Microsoft Corporation)
rdpencom.dll -> C:\Windows\SysNative\rdpencom.dll -> [2009/06/04 04:47:43 | 00,708,608 | ---- | C | MD5 = 37CA04B27F4E31F850B899FD06F725F0] (Microsoft Corporation)
autofmt.exe -> C:\Windows\SysWow64\autofmt.exe -> [2009/06/04 04:47:43 | 00,636,416 | ---- | C | MD5 = 34DA5AE04CA114B23D93CD9D4D05FCB7] (Microsoft Corporation)
dsound.dll -> C:\Windows\SysNative\dsound.dll -> [2009/06/04 04:47:43 | 00,522,752 | ---- | C | MD5 = EA47AF4FBF17580D093C0C36C4E49921] (Microsoft Corporation)
volmgrx.sys -> C:\Windows\SysNative\drivers\volmgrx.sys -> [2009/06/04 04:47:43 | 00,408,024 | ---- | C | MD5 = CEC5AC15277D75D9E5DEC2E1C6EAF877] (Microsoft Corporation)
WindowsCodecsExt.dll -> C:\Windows\SysNative\WindowsCodecsExt.dll -> [2009/06/04 04:47:43 | 00,387,584 | ---- | C | MD5 = E3A1F826BB40A8065043D26126D9B189] (Microsoft Corporation)
scansetting.dll -> C:\Windows\SysNative\scansetting.dll -> [2009/06/04 04:47:43 | 00,302,080 | ---- | C | MD5 = 2C64BABEEB0510D508F61DA4CAF5C276] (Microsoft Corporation)
dhcpcsvc.dll -> C:\Windows\SysNative\dhcpcsvc.dll -> [2009/06/04 04:47:43 | 00,268,288 | ---- | C | MD5 = 3ED0321127CE70ACDAABBF77E157C2A7] (Microsoft Corporation)
WerFault.exe -> C:\Windows\SysNative\WerFault.exe -> [2009/06/04 04:47:43 | 00,260,608 | ---- | C | MD5 = 407048A328C3D585FF67D40F11E243D2] (Microsoft Corporation)
ncrypt.dll -> C:\Windows\SysNative\ncrypt.dll -> [2009/06/04 04:47:43 | 00,253,952 | ---- | C | MD5 = 38FEE5CE9CD15E56BF48A7360048C4AB] (Microsoft Corporation)
iassdo.dll -> C:\Windows\SysWow64\iassdo.dll -> [2009/06/04 04:47:43 | 00,252,928 | ---- | C | MD5 = 5A1B9A7761FB1BA3A42C8F7F0EB49994] (Microsoft Corporation)
winmm.dll -> C:\Windows\SysNative\winmm.dll -> [2009/06/04 04:47:43 | 00,211,968 | ---- | C | MD5 = DC2D7A3DE9D5DFB63AD2BA98ADB89D62] (Microsoft Corporation)
scrrun.dll -> C:\Windows\SysWow64\scrrun.dll -> [2009/06/04 04:47:43 | 00,172,032 | ---- | C | MD5 = 3DB1530CDD7AEF2BCFA6FB77D097CDDA] (Microsoft Corporation)
imm32.dll -> C:\Windows\SysWow64\imm32.dll -> [2009/06/04 04:47:43 | 00,116,224 | ---- | C | MD5 = B8FBE5F40B09F5D20E1E5CCFEF893D62] (Microsoft Corporation)
Kswdmcap.ax -> C:\Windows\SysWow64\Kswdmcap.ax -> [2009/06/04 04:47:43 | 00,093,696 | ---- | C | MD5 = FD44B4D9129EDD68BBD0A26683024EF9] (Microsoft Corporation)
slmgr.vbs -> C:\Windows\SysWow64\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
slmgr.vbs -> C:\Windows\SysNative\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
iasads.dll -> C:\Windows\SysNative\iasads.dll -> [2009/06/04 04:47:43 | 00,078,336 | ---- | C | MD5 = 1D5474E8A7F8E48515D83BBB1A1E9E47] (Microsoft Corporation)
drvinst.exe -> C:\Windows\SysNative\drvinst.exe -> [2009/06/04 04:47:43 | 00,061,440 | ---- | C | MD5 = 638DC235181C5202CE6C8232DF854DDE] (Microsoft Corporation)
crashdmp.sys -> C:\Windows\SysNative\drivers\crashdmp.sys -> [2009/06/04 04:47:43 | 00,039,400 | ---- | C | MD5 = 4F4E1093ADFBAE48544DA6E7CCF09FE4] (Microsoft Corporation)
spcmsg.dll -> C:\Windows\SysNative\spcmsg.dll -> [2009/06/04 04:47:43 | 00,014,336 | ---- | C | MD5 = 5AA31D330226F764CDC6FBAF21B4F2AB] (Microsoft Corporation)
spcmsg.dll -> C:\Windows\SysWow64\spcmsg.dll -> [2009/06/04 04:47:43 | 00,013,312 | ---- | C | MD5 = 12013A429B4F658D33CB71CA0C7F8703] (Microsoft Corporation)
netcenter.dll -> C:\Windows\SysNative\netcenter.dll -> [2009/06/04 04:47:42 | 02,420,224 | ---- | C | MD5 = 1094A477FFE9169220B8FCDF6801C3D7] (Microsoft Corporation)
appwiz.cpl -> C:\Windows\SysWow64\appwiz.cpl -> [2009/06/04 04:47:42 | 01,122,304 | ---- | C | MD5 = 19DF185D42AA0DE80AD78C58D4A4E936] (Microsoft Corporation)
pidgenx.dll -> C:\Windows\SysWow64\pidgenx.dll -> [2009/06/04 04:47:42 | 01,107,968 | ---- | C | MD5 = 48EFB6849AA0F6785D05EB468E13F17F] (Microsoft Corporation)
pidgenx.dll -> C:\Windows\SysNative\pidgenx.dll -> [2009/06/04 04:47:42 | 01,093,120 | ---- | C | MD5 = BAE7C9674D1EADB7671BD349ABE4A421] (Microsoft Corporation)
mmsys.cpl -> C:\Windows\SysNative\mmsys.cpl -> [2009/06/04 04:47:42 | 01,060,352 | ---- | C | MD5 = 78943DD269AD01EBC65FC8F78E3DF8DC] (Microsoft Corporation)
rasdlg.dll -> C:\Windows\SysNative\rasdlg.dll -> [2009/06/04 04:47:42 | 00,911,872 | ---- | C | MD5 = 39872A309B2DB96738AF44402F7BD43C] (Microsoft Corporation)
azroles.dll -> C:\Windows\SysWow64\azroles.dll -> [2009/06/04 04:47:42 | 00,757,248 | ---- | C | MD5 = 9AFFE233D49471292E8328FA5775B9DA] (Microsoft Corporation)
prnntfy.dll -> C:\Windows\SysNative\prnntfy.dll -> [2009/06/04 04:47:42 | 00,708,608 | ---- | C | MD5 = 580378414BDF681BCC6B6388FB3F0061] (Microsoft Corporation)
CertEnrollUI.dll -> C:\Windows\SysWow64\CertEnrollUI.dll -> [2009/06/04 04:47:42 | 00,633,856 | ---- | C | MD5 = 039F5070FD21A0FA3ABA305E393F75E7] (Microsoft Corporation)
vdsdyn.dll -> C:\Windows\SysNative\vdsdyn.dll -> [2009/06/04 04:47:42 | 00,571,904 | ---- | C | MD5 = AF887F37C42E829159E90BADF03592B3] (Microsoft Corporation)
sysmon.ocx -> C:\Windows\SysWow64\sysmon.ocx -> [2009/06/04 04:47:42 | 00,389,632 | ---- | C | MD5 = D665F6708EE24DF5B9A0E095ED52ED73] (Microsoft Corporation)
untfs.dll -> C:\Windows\SysNative\untfs.dll -> [2009/06/04 04:47:42 | 00,372,224 | ---- | C | MD5 = D77DD0E9D3A5C9B1A8E1DB8FF674D25D] (Microsoft Corporation)
msrpc.sys -> C:\Windows\SysNative\drivers\msrpc.sys -> [2009/06/04 04:47:42 | 00,310,760 | ---- | C | MD5 = DC6CCF440CDEDE4293DB41C37A5060A5] (Microsoft Corporation)
InkEd.dll -> C:\Windows\SysNative\InkEd.dll -> [2009/06/04 04:47:42 | 00,276,480 | ---- | C | MD5 = 1ED0E10D2766B5F89A656F8EE7FACF6F] (Microsoft Corporation)
winspool.drv -> C:\Windows\SysWow64\winspool.drv -> [2009/06/04 04:47:42 | 00,258,048 | ---- | C | MD5 = 2D1179CDEC6B7400105E68F6AC9B4EFE] (Microsoft Corporation)
pdh.dll -> C:\Windows\SysWow64\pdh.dll -> [2009/06/04 04:47:42 | 00,242,176 | ---- | C | MD5 = 295363D4317820AED0D527E15B90A8ED] (Microsoft Corporation)
dhcpcsvc.dll -> C:\Windows\SysWow64\dhcpcsvc.dll -> [2009/06/04 04:47:42 | 00,204,288 | ---- | C | MD5 = 9028559C132146FB75EB7ACF384B086A] (Microsoft Corporation)
spp.dll -> C:\Windows\SysNative\spp.dll -> [2009/06/04 04:47:42 | 00,188,928 | ---- | C | MD5 = 85515E689B247D6992E0D191400E3F79] (Microsoft Corporation)
secproc_ssp.dll -> C:\Windows\SysNative\secproc_ssp.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 607C2824E75789BEB3EE0807157401C4] (Microsoft Corporation)
secproc_ssp_isv.dll -> C:\Windows\SysNative\secproc_ssp_isv.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 0B55AC0ADA7F3335A2517413579CA37B] (Microsoft Corporation)
diskpart.exe -> C:\Windows\SysNative\diskpart.exe -> [2009/06/04 04:47:42 | 00,149,504 | ---- | C | MD5 = E2F1B0AC853231F9FA2901642D4484A5] (Microsoft Corporation)
SCardSvr.dll -> C:\Windows\SysNative\SCardSvr.dll -> [2009/06/04 04:47:42 | 00,147,968 | ---- | C | MD5 = FD1CDCF108D5EF3366F00D18B70FB89B] (Microsoft Corporation)
userenv.dll -> C:\Windows\SysNative\userenv.dll -> [2009/06/04 04:47:42 | 00,137,216 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
IPHLPAPI.DLL -> C:\Windows\SysNative\IPHLPAPI.DLL -> [2009/06/04 04:47:42 | 00,126,976 | ---- | C | MD5 = A9D70295BA8F31D5EA118B0A6B74183E] (Microsoft Corporation)
ipfltdrv.sys -> C:\Windows\SysNative\drivers\ipfltdrv.sys -> [2009/06/04 04:47:42 | 00,067,584 | ---- | C | MD5 = D8AABC341311E4780D6FCE8C73C0AD81] (Microsoft Corporation)
mup.sys -> C:\Windows\SysNative\drivers\mup.sys -> [2009/06/04 04:47:42 | 00,059,880 | ---- | C | MD5 = 0CC49F78D8ACA0877D885F149084E543] (Microsoft Corporation)
SyncCenter.dll -> C:\Windows\SysWow64\SyncCenter.dll -> [2009/06/04 04:47:41 | 02,205,184 | ---- | C | MD5 = 4ACEA0C4BB15ACE55E3AE5EC4E88DD55] (Microsoft Corporation)
chsbrkr.dll -> C:\Windows\SysNative\chsbrkr.dll -> [2009/06/04 04:47:41 | 01,676,800 | ---- | C | MD5 = FC4F0F9303170DC6212A2B3EA6613FF4] (Microsoft Corporation)
certmgr.dll -> C:\Windows\SysWow64\certmgr.dll -> [2009/06/04 04:47:41 | 01,502,720 | ---- | C | MD5 = 423CFD439195B8178208DE7BEEE52540] (Microsoft Corporation)
wmpmde.dll -> C:\Windows\SysWow64\wmpmde.dll -> [2009/06/04 04:47:41 | 00,867,328 | ---- | C | MD5 = 0C9F94C3BB100C1FE1C06A8EB4B88283] (Microsoft Corporation)
wlansvc.dll -> C:\Windows\SysNative\wlansvc.dll -> [2009/06/04 04:47:41 | 00,616,448 | ---- | C | MD5 = 1C3D795E47E0B851274AD7BC407DC048] (Microsoft Corporation)
comuid.dll -> C:\Windows\SysWow64\comuid.dll -> [2009/06/04 04:47:41 | 00,593,408 | ---- | C | MD5 = C01CF069D98F0E9ED9E8012099D26DC7] (Microsoft Corporation)
msjetoledb40.dll -> C:\Windows\SysWow64\msjetoledb40.dll -> [2009/06/04 04:47:41 | 00,368,640 | ---- | C | MD5 = 52CB0185C73E1BA86CC7F726F22523C3] ()
winlogon.exe -> C:\Windows\SysWow64\winlogon.exe -> [2009/06/04 04:47:41 | 00,314,368 | ---- | C | MD5 = 898E7C06A350D4A1A64A9EA264D55452] (Microsoft Corporation)
dskquoui.dll -> C:\Windows\SysNative\dskquoui.dll -> [2009/06/04 04:47:41 | 00,237,056 | ---- | C | MD5 = 8A63AB1A1D518A9D34984222AEC6E924] (Microsoft Corporation)
ncrypt.dll -> C:\Windows\SysWow64\ncrypt.dll -> [2009/06/04 04:47:41 | 00,204,288 | ---- | C | MD5 = A57260867734FB1F68241ECA3D589F76] (Microsoft Corporation)
iashlpr.dll -> C:\Windows\SysNative\iashlpr.dll -> [2009/06/04 04:47:41 | 00,085,504 | ---- | C | MD5 = C6913E3D07D4BD2E69CB7E85CCE80EC8] (Microsoft Corporation)
mscories.dll -> C:\Windows\SysNative\mscories.dll -> [2009/06/04 04:47:41 | 00,073,024 | ---- | C | MD5 = 084A7BC9EFA170199620214EB36464C9] (Microsoft Corporation)
disk.sys -> C:\Windows\SysNative\drivers\disk.sys -> [2009/06/04 04:47:41 | 00,067,032 | ---- | C | MD5 = B0107E40ECDB5FA692EBF832F295D905] (Microsoft Corporation)
kdcom.dll -> C:\Windows\SysNative\kdcom.dll -> [2009/06/04 04:47:41 | 00,019,432 | ---- | C | MD5 = 62D59EBED0B1004BCD9FA3E4F878D766] (Microsoft Corporation)
onex.dll -> C:\Windows\SysNative\onex.dll -> [2009/06/04 04:47:40 | 01,740,288 | ---- | C | MD5 = DED15764B578A26BE9E45E7692820549] (Microsoft Corporation)
inetcomm.dll -> C:\Windows\SysNative\inetcomm.dll -> [2009/06/04 04:47:40 | 00,974,848 | ---- | C | MD5 = BDB83CDF73775DC4F244970F73FB2A97] (Microsoft Corporation)
autoconv.exe -> C:\Windows\SysNative\autoconv.exe -> [2009/06/04 04:47:40 | 00,750,592 | ---- | C | MD5 = DD1CBF567D20DA1B0A22246ADFC4FADE] (Microsoft Corporation)
autochk.exe -> C:\Windows\SysNative\autochk.exe -> [2009/06/04 04:47:40 | 00,734,720 | ---- | C | MD5 = E24D4475713CB382A720D003BDDA9628] (Microsoft Corporation)
sethc.exe -> C:\Windows\SysWow64\sethc.exe -> [2009/06/04 04:47:40 | 00,627,200 | ---- | C | MD5 = 291B27D159AE56A049C1526AF4B3957E] (Microsoft Corporation)
imkr80.ime -> C:\Windows\SysWow64\imkr80.ime -> [2009/06/04 04:47:40 | 00,413,696 | ---- | C | MD5 = E3E821B879CF04AA13865D5E6A1FC2A0] (Microsoft Corporation)
WindowsCodecsExt.dll -> C:\Windows\SysWow64\WindowsCodecsExt.dll -> [2009/06/04 04:47:40 | 00,347,648 | ---- | C | MD5 = 73B702923D1CB50E2CCB3A7C1EBD8F22] (Microsoft Corporation)
rasapi32.dll -> C:\Windows\SysNative\rasapi32.dll -> [2009/06/04 04:47:40 | 00,337,408 | ---- | C | MD5 = A4F3F34A7146D8633FA8D346535A9CAA] (Microsoft Corporation)
untfs.dll -> C:\Windows\SysWow64\untfs.dll -> [2009/06/04 04:47:40 | 00,324,096 | ---- | C | MD5 = D30A7946B3207C9DBE40361E3B083716] (Microsoft Corporation)
diskraid.exe -> C:\Windows\SysNative\diskraid.exe -> [2009/06/04 04:47:40 | 00,308,224 | ---- | C | MD5 = A6691BF542941E5B0925C49A460AE6B6] (Microsoft Corporation)
rastls.dll -> C:\Windows\SysNative\rastls.dll -> [2009/06/04 04:47:40 | 00,281,088 | ---- | C | MD5 = 6D25CF2F1DC6C51BC8D6D8884F723C20] (Microsoft Corporation)
taskcomp.dll -> C:\Windows\SysWow64\taskcomp.dll -> [2009/06/04 04:47:40 | 00,270,336 | ---- | C | MD5 = 67ECC768ADB04591CBCF15783CB2A817] (Microsoft Corporation)
ntprint.dll -> C:\Windows\SysNative\ntprint.dll -> [2009/06/04 04:47:40 | 00,257,024 | ---- | C | MD5 = 24DC07F75E0683A3D4AB16FA38290A18] (Microsoft Corporation)
iassam.dll -> C:\Windows\SysWow64\iassam.dll -> [2009/06/04 04:47:40 | 00,182,272 | ---- | C | MD5 = 240B65CDA06C38733DF9B65E1D314BC7] (Microsoft Corporation)
scrobj.dll -> C:\Windows\SysWow64\scrobj.dll -> [2009/06/04 04:47:40 | 00,180,224 | ---- | C | MD5 = 01DDF42F77DA1348173C5DC8CB28BDC2] (Microsoft Corporation)
spp.dll -> C:\Windows\SysWow64\spp.dll -> [2009/06/04 04:47:40 | 00,142,336 | ---- | C | MD5 = 43AEF7355D24090CA7C24C83846BD981] (Microsoft Corporation)
netiohlp.dll -> C:\Windows\SysNative\netiohlp.dll -> [2009/06/04 04:47:40 | 00,140,800 | ---- | C | MD5 = 9041A0B145B7F9CB5D2F363683AEFFD4] (Microsoft Corporation)
samlib.dll -> C:\Windows\SysNative\samlib.dll -> [2009/06/04 04:47:40 | 00,099,328 | ---- | C | MD5 = 5279672A8BDAF3CFB0A4C6E0591987AC] (Microsoft Corporation)
secur32.dll -> C:\Windows\SysNative\secur32.dll -> [2009/06/04 04:47:40 | 00,094,720 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
mpr.dll -> C:\Windows\SysNative\mpr.dll -> [2009/06/04 04:47:40 | 00,084,992 | ---- | C | MD5 = B3EBBD687BDFCBBBBCB6115B682D1845] (Microsoft Corporation)
PSHED.DLL -> C:\Windows\SysNative\PSHED.DLL -> [2009/06/04 04:47:40 | 00,055,272 | ---- | C | MD5 = 9E693C6146932B5369DFFA584E805EF6] (Microsoft Corporation)
mssprxy.dll -> C:\Windows\SysNative\mssprxy.dll -> [2009/06/04 04:47:40 | 00,040,448 | ---- | C | MD5 = 595BAC1B188813CEAE88A599738E60F8] (Microsoft Corporation)
rtutils.dll -> C:\Windows\SysWow64\rtutils.dll -> [2009/06/04 04:47:40 | 00,036,352 | ---- | C | MD5 = A32608F048861AD3544AEFBF0126D33F] (Microsoft Corporation)
WMVENCOD.DLL -> C:\Windows\SysNative\WMVENCOD.DLL -> [2009/06/04 04:47:39 | 01,891,840 | ---- | C | MD5 = B7286BBA2B00EAE42401EDF591204C06] (Microsoft Corporation)
WMVDECOD.DLL -> C:\Windows\SysWow64\WMVDECOD.DLL -> [2009/06/04 04:47:39 | 01,548,288 | ---- | C | MD5 = FC27104CAF57E34BF501A84DF655F8F2] (Microsoft Corporation)
PerfCenterCPL.dll -> C:\Windows\SysNative\PerfCenterCPL.dll -> [2009/06/04 04:47:39 | 01,444,352 | ---- | C | MD5 = 4AB65F090554EE12F94E79CF3D6349E6] (Microsoft Corporation)
printui.dll -> C:\Windows\SysWow64\printui.dll -> [2009/06/04 04:47:39 | 00,869,888 | ---- | C | MD5 = C4F3693767A2B93A64C6D67CFC2DAC63] (Microsoft Corporation)
autoconv.exe -> C:\Windows\SysWow64\autoconv.exe -> [2009/06/04 04:47:39 | 00,656,896 | ---- | C | MD5 = 15B7BDA10B91FE62466F2A18682C16E8] (Microsoft Corporation)
autochk.exe -> C:\Windows\SysWow64\autochk.exe -> [2009/06/04 04:47:39 | 00,643,072 | ---- | C | MD5 = 10761177A6EBE45843F443E99509F5E7] (Microsoft Corporation)
psisdecd.dll -> C:\Windows\SysNative\psisdecd.dll -> [2009/06/04 04:47:39 | 00,375,808 | ---- | C | MD5 = 694A11BD75ED2C947955C367F4B6032A] (Microsoft Corporation)
scecli.dll -> C:\Windows\SysNative\scecli.dll -> [2009/06/04 04:47:39 | 00,235,520 | ---- | C | MD5 = 9922ADB6DCA8F0F5EA038BEFF339C08B] (Microsoft Corporation)
portcls.sys -> C:\Windows\SysNative\drivers\portcls.sys -> [2009/06/04 04:47:39 | 00,218,112 | ---- | C | MD5 = 7B7820082CACF593D6FF343D082A3AA3] (Microsoft Corporation)
profsvc.dll -> C:\Windows\SysNative\profsvc.dll -> [2009/06/04 04:47:39 | 00,178,176 | ---- | C | MD5 = E058CE4FC2449D8BFA14739C83B7FF2A] (Microsoft Corporation)
srvsvc.dll -> C:\Windows\SysNative\srvsvc.dll -> [2009/06/04 04:47:39 | 00,176,640 | ---- | C | MD5 = 967D7CB076CD1969156247D03B92CECA] (Microsoft Corporation)
rpchttp.dll -> C:\Windows\SysNative\rpchttp.dll -> [2009/06/04 04:47:39 | 00,164,352 | ---- | C | MD5 = 38B65E838C4AC307DEC37035865F9486] (Microsoft Corporation)
ntmarta.dll -> C:\Windows\SysNative\ntmarta.dll -> [2009/06/04 04:47:39 | 00,159,232 | ---- | C | MD5 = EE3718BCF5CEF1C457C10A745E410959] (Microsoft Corporation)
ecache.sys -> C:\Windows\SysNative\drivers\ecache.sys -> [2009/06/04 04:47:39 | 00,155,112 | ---- | C | MD5 = 5F94962BE5A62DB6E447FF6470C4F48A] (Microsoft Corporation)
iasnap.dll -> C:\Windows\SysWow64\iasnap.dll -> [2009/06/04 04:47:39 | 00,150,528 | ---- | C | MD5 = 1E767541B585BB3ED02FF33BC60E92A7] (Microsoft Corporation)
cscript.exe -> C:\Windows\SysWow64\cscript.exe -> [2009/06/04 04:47:39 | 00,135,168 | ---- | C | MD5 = 63F2534E7E063B4F2054433597D7A1B9] (Microsoft Corporation)
iassvcs.dll -> C:\Windows\SysNative\iassvcs.dll -> [2009/06/04 04:47:39 | 00,088,576 | ---- | C | MD5 = 1AFBEDE3E360444FEE090FC3ED428E70] (Microsoft Corporation)
volmgr.sys -> C:\Windows\SysNative\drivers\volmgr.sys -> [2009/06/04 04:47:39 | 00,067,048 | ---- | C | MD5 = 2B7E885ED951519A12C450D24535DFCA] (Microsoft Corporation)
onex.dll -> C:\Windows\SysWow64\onex.dll -> [2009/06/04 04:47:38 | 01,541,120 | ---- | C | MD5 = B64AC7967D6B9FB2D6152AC768A1CB88] (Microsoft Corporation)
iphlpsvc.dll -> C:\Windows\SysNative\iphlpsvc.dll -> [2009/06/04 04:47:38 | 00,223,744 | ---- | C | MD5 = CD033D871A83E918B14F43F7E7590819] (Microsoft Corporation)
mswsock.dll -> C:\Windows\SysWow64\mswsock.dll -> [2009/06/04 04:47:38 | 00,223,232 | ---- | C | MD5 = 8617350C9B590B63E620881092751BCB] (Microsoft Corporation)
osk.exe -> C:\Windows\SysWow64\osk.exe -> [2009/06/04 04:47:38 | 00,182,272 | ---- | C | MD5 = 877F2939794EBA4F3D1BB967007E99E8] (Microsoft Corporation)
basecsp.dll -> C:\Windows\SysNative\basecsp.dll -> [2009/06/04 04:47:38 | 00,153,064 | ---- | C | MD5 = 34889A7CC7EF7B0972994C7814F782D3] (Microsoft Corporation)
basecsp.dll -> C:\Windows\SysWow64\basecsp.dll -> [2009/06/04 04:47:38 | 00,130,024 | ---- | C | MD5 = 23A732A29E183E9874C86FD93CC7B9B9] (Microsoft Corporation)
powrprof.dll -> C:\Windows\SysNative\powrprof.dll -> [2009/06/04 04:47:38 | 00,123,392 | ---- | C | MD5 = 7823A58BF0FE3CAAA555C12B5CF91290] (Microsoft Corporation)
userenv.dll -> C:\Windows\SysWow64\userenv.dll -> [2009/06/04 04:47:38 | 00,108,544 | ---- | C | MD5 = 665417528489096BBCB8AEA46D3DA924] (Microsoft Corporation)
dwm.exe -> C:\Windows\SysNative\dwm.exe -> [2009/06/04 04:47:38 | 00,098,304 | ---- | C | MD5 = 449F5AB17863698F12F0BC8E99079AA6] (Microsoft Corporation)
audiodg.exe -> C:\Windows\SysWow64\audiodg.exe -> [2009/06/04 04:47:38 | 00,088,576 | ---- | C | MD5 = 3437B9E218A2E4586BEF4F7A3BD00777] (Microsoft Corporation)
iasacct.dll -> C:\Windows\SysNative\iasacct.dll -> [2009/06/04 04:47:38 | 00,072,704 | ---- | C | MD5 = 24E4A41DB1DEBE62C0012EF6D9BEEB28] (Microsoft Corporation)
Dumpata.sys -> C:\Windows\SysNative\drivers\Dumpata.sys -> [2009/06/04 04:47:38 | 00,029,656 | ---- | C | MD5 = 7E7270D67964C9EDDE6BFDAAC07B7999] (Microsoft Corporation)
kdusb.dll -> C:\Windows\SysNative\kdusb.dll -> [2009/06/04 04:47:38 | 00,022,504 | ---- | C | MD5 = BDD7206C3FE4895F133DE5615DD6B492] (Microsoft Corporation)
spldr.sys -> C:\Windows\SysNative\drivers\spldr.sys -> [2009/06/04 04:47:38 | 00,019,432 | ---- | C | MD5 = 386C3C63F00A7040C7EC5E384217E89D] (Microsoft Corporation)
networkmap.dll -> C:\Windows\SysNative\networkmap.dll -> [2009/06/04 04:47:37 | 03,235,328 | ---- | C | MD5 = C3EB4555E37E75906185C1B8D2158237] (Microsoft Corporation)
wpccpl.dll -> C:\Windows\SysNative\wpccpl.dll -> [2009/06/04 04:47:37 | 01,882,624 | ---- | C | MD5 = 7241639333A70BA66D9AEFA5D9E55A80] (Microsoft Corporation)
themecpl.dll -> C:\Windows\SysNative\themecpl.dll -> [2009/06/04 04:47:37 | 01,301,504 | ---- | C | MD5 = 7D09CA1126E311DEF73D83F30CD81692] (Microsoft Corporation)
rdpencom.dll -> C:\Windows\SysWow64\rdpencom.dll -> [2009/06/04 04:47:37 | 00,612,864 | ---- | C | MD5 = FBA13EE4F0838CB6C340128DACF9CF12] (Microsoft Corporation)
mspaint.exe -> C:\Windows\SysNative\mspaint.exe -> [2009/06/04 04:47:37 | 00,593,408 | ---- | C | MD5 = EC0A7FB35A11EEF77C76781E122BAF0C] (Microsoft Corporation)
msftedit.dll -> C:\Windows\SysWow64\msftedit.dll -> [2009/06/04 04:47:37 | 00,564,224 | ---- | C | MD5 = 3A72AB0BAF2DC1AE0BA6E1EE28FFCC0B] (Microsoft Corporation)
scesrv.dll -> C:\Windows\SysNative\scesrv.dll -> [2009/06/04 04:47:37 | 00,399,360 | ---- | C | MD5 = 495EB57ACF30983AA441B70A8DE2B7ED] (Microsoft Corporation)
RelMon.dll -> C:\Windows\SysWow64\RelMon.dll -> [2009/06/04 04:47:37 | 00,340,992 | ---- | C | MD5 = 859E02E3346DC681DFAC96225D2797C6] (Microsoft Corporation)
tapisrv.dll -> C:\Windows\SysNative\tapisrv.dll -> [2009/06/04 04:47:37 | 00,318,976 | ---- | C | MD5 = CC2562B4D55E0B6A4758C65407F63B79] (Microsoft Corporation)
wow64win.dll -> C:\Windows\SysNative\wow64win.dll -> [2009/06/04 04:47:37 | 00,301,568 | ---- | C | MD5 = 8FE910915F14C9C6A9561D8032B603D3] (Microsoft Corporation)
regsvc.dll -> C:\Windows\SysNative\regsvc.dll -> [2009/06/04 04:47:37 | 00,206,848 | ---- | C | MD5 = 44B9D8EC2F3EF3A0EFB00857AF70D861] (Microsoft Corporation)
winmm.dll -> C:\Windows\SysWow64\winmm.dll -> [2009/06/04 04:47:37 | 00,189,952 | ---- | C | MD5 = 934511EFE4461F84CA946B9C0321F365] (Microsoft Corporation)
ks.sys -> C:\Windows\SysNative\drivers\ks.sys -> [2009/06/04 04:47:37 | 00,188,416 | ---- | C | MD5 = 6DF6A6E5642D97B07214B1FBED4A15B3] (Microsoft Corporation)
exfat.sys -> C:\Windows\SysNative\drivers\exfat.sys -> [2009/06/04 04:47:37 | 00,187,904 | ---- | C | MD5 = 486844F47B6636044A42454614ED4523] (Microsoft Corporation)
Faultrep.dll -> C:\Windows\SysNative\Faultrep.dll -> [2009/06/04 04:47:37 | 00,176,640 | ---- | C | MD5 = 90D65E758F4087A529C0703EF322F780] (Microsoft Corporation)
wusa.exe -> C:\Windows\SysNative\wusa.exe -> [2009/06/04 04:47:37 | 00,147,968 | ---- | C | MD5 = 663F13995CF313674C18B4591EA2BF08] (Microsoft Corporation)
dnsrslvr.dll -> C:\Windows\SysNative\dnsrslvr.dll -> [2009/06/04 04:47:37 | 00,117,760 | ---- | C | MD5 = 21D16B37257370975C7457C3A5EFA530] (Microsoft Corporation)
WinSCard.dll -> C:\Windows\SysWow64\WinSCard.dll -> [2009/06/04 04:47:37 | 00,115,712 | ---- | C | MD5 = 627920CFF5DFCF8CF54CF2D592D61307] (Microsoft Corporation)
logman.exe -> C:\Windows\SysNative\logman.exe -> [2009/06/04 04:47:37 | 00,070,144 | ---- | C | MD5 = ADAE934EECFDD8BF8ABBEF10D80381AB] (Microsoft Corporation)
wsepno.dll -> C:\Windows\SysNative\wsepno.dll -> [2009/06/04 04:47:37 | 00,024,064 | ---- | C | MD5 = 5B24E50355A79CD48ED369D8D747411A] (Microsoft Corporation)
WerFaultSecure.exe -> C:\Windows\SysWow64\WerFaultSecure.exe -> [2009/06/04 04:47:36 | 00,860,160 | ---- | C | MD5 = DA06BE393317EA5756B218633A537B47] (Microsoft Corporation)
Utilman.exe -> C:\Windows\SysWow64\Utilman.exe -> [2009/06/04 04:47:36 | 00,638,976 | ---- | C | MD5 = 10FB8976B556A75098868CFFAD6DC576] (Microsoft Corporation)
stobject.dll -> C:\Windows\SysWow64\stobject.dll -> [2009/06/04 04:47:36 | 00,586,752 | ---- | C | MD5 = 8EAE44A2EBCBB5D12C5454573EA1F621] (Microsoft Corporation)
prnntfy.dll -> C:\Windows\SysWow64\prnntfy.dll -> [2009/06/04 04:47:36 | 00,551,936 | ---- | C | MD5 = 429A7B2973A57B1EF405DF270CF3F90C] (Microsoft Corporation)
AudioEng.dll -> C:\Windows\SysWow64\AudioEng.dll -> [2009/06/04 04:47:36 | 00,396,800 | ---- | C | MD5 = DA7478BA9E41B60B3D5DA456E253002A] (Microsoft Corporation)
mscms.dll -> C:\Windows\SysWow64\mscms.dll -> [2009/06/04 04:47:36 | 00,391,680 | ---- | C | MD5 = 5F1DEC3824E566457F53F24F493FEF08] (Microsoft Corporation)
shsvcs.dll -> C:\Windows\SysNative\shsvcs.dll -> [2009/06/04 04:47:36 | 00,301,568 | ---- | C | MD5 = 2AD15758174DCC7993FF3C00A955DD66] (Microsoft Corporation)
diskraid.exe -> C:\Windows\SysWow64\diskraid.exe -> [2009/06/04 04:47:36 | 00,230,912 | ---- | C | MD5 = 206B492CC40E0E0C01F6EA73F724AB9A] (Microsoft Corporation)
WerFault.exe -> C:\Windows\SysWow64\WerFault.exe -> [2009/06/04 04:47:36 | 00,217,088 | ---- | C | MD5 = 7BEDD051B53821B040EAD42DB0724848] (Microsoft Corporation)
mfplat.dll -> C:\Windows\SysWow64\mfplat.dll -> [2009/06/04 04:47:36 | 00,208,896 | ---- | C | MD5 = C732992FF9798F2ACBF86314F0E4A6F5] (Microsoft Corporation)
SndVol.exe -> C:\Windows\SysWow64\SndVol.exe -> [2009/06/04 04:47:36 | 00,197,632 | ---- | C | MD5 = 96DD35AB1C1420E0CD70EF9ECD32B825] (Microsoft Corporation)
offfilt.dll -> C:\Windows\SysWow64\offfilt.dll -> [2009/06/04 04:47:36 | 00,194,560 | ---- | C | MD5 = 06588D3E301B53D24281DACEE3C34FE3] (Microsoft Corporation)
msnetobj.dll -> C:\Windows\SysWow64\msnetobj.dll -> [2009/06/04 04:47:36 | 00,179,712 | ---- | C | MD5 = 584C4A26F210B823BBF73BB985CAA2CE] (Microsoft Corporation)
apphelp.dll -> C:\Windows\SysWow64\apphelp.dll -> [2009/06/04 04:47:36 | 00,171,008 | ---- | C | MD5 = 1107BD574A84367735FEC38B9BD64E6B] (Microsoft Corporation)
wscript.exe -> C:\Windows\SysWow64\wscript.exe -> [2009/06/04 04:47:36 | 00,155,648 | ---- | C | MD5 = 1259E03DCD5F265B23DB738FB075DF8C] (Microsoft Corporation)
secproc_ssp_isv.dll -> C:\Windows\SysWow64\secproc_ssp_isv.dll -> [2009/06/04 04:47:36 | 00,152,576 | ---- | C | MD5 = 7167087FBBBAB7518B7E171508A7AEE7] (Microsoft Corporation)
secproc_ssp.dll -> C:\Windows\SysWow64\secproc_ssp.dll -> [2009/06/04 04:47:36 | 00,152,064 | ---- | C | MD5 = 4805AA783E9CA8E60F1AA6F3E1199D83] (Microsoft Corporation)
authz.dll -> C:\Windows\SysNative\authz.dll -> [2009/06/04 04:47:36 | 00,143,360 | ---- | C | MD5 = 5EF9205E045643A5A75A82B116395B25] (Microsoft Corporation)
mstlsapi.dll -> C:\Windows\SysNative\mstlsapi.dll -> [2009/06/04 04:47:36 | 00,139,264 | ---- | C | MD5 = 0DDD4DDE7C1FD5C3C8C4CB378CC9766F] (Microsoft Corporation)
odbccp32.dll -> C:\Windows\SysWow64\odbccp32.dll -> [2009/06/04 04:47:36 | 00,114,688 | ---- | C | MD5 = A1B46928E107D770053E6B4D248298A5] (Microsoft Corporation)
adsmsext.dll -> C:\Windows\SysWow64\adsmsext.dll -> [2009/06/04 04:47:36 | 00,075,264 | ---- | C | MD5 = 27FC7C228999D739C11F76120A121525] (Microsoft Corporation)
wsnmp32.dll -> C:\Windows\SysNative\wsnmp32.dll -> [2009/06/04 04:47:36 | 00,061,952 | ---- | C | MD5 = 57120423BC6342F0EAE16E3720184D5A] (Microsoft Corporation)
TSTheme.exe -> C:\Windows\SysNative\TSTheme.exe -> [2009/06/04 04:47:36 | 00,045,568 | ---- | C | MD5 = 73EE3ACB4284F47FEE55F2DFA634C3FB] (Microsoft Corporation)
usercpl.dll -> C:\Windows\SysNative\usercpl.dll -> [2009/06/04 04:47:35 | 01,279,488 | ---- | C | MD5 = F59E9C431922D78F771B47BD78974A00] (Microsoft Corporation)
wer.dll -> C:\Windows\SysNative\wer.dll -> [2009/06/04 04:47:35 | 01,110,528 | ---- | C | MD5 = 589CDC23CCDC419C36DDD200BEB00944] (Microsoft Corporation)
systemcpl.dll -> C:\Windows\SysNative\systemcpl.dll -> [2009/06/04 04:47:35 | 00,995,328 | ---- | C | MD5 = 423AE00736BE9C4679975B31B9B06E16] (Microsoft Corporation)
cryptui.dll -> C:\Windows\SysWow64\cryptui.dll -> [2009/06/04 04:47:35 | 00,971,264 | ---- | C | MD5 = 248A1F31ABB58DDDDC01490EF0BDC777] (Microsoft Corporation)
timedate.cpl -> C:\Windows\SysNative\timedate.cpl -> [2009/06/04 04:47:35 | 00,881,152 | ---- | C | MD5 = 11449A34FFF4A84C0C81339107C39BDE] (Microsoft Corporation)
ipsecsnp.dll -> C:\Windows\SysWow64\ipsecsnp.dll -> [2009/06/04 04:47:35 | 00,759,296 | ---- | C | MD5 = 0170442A2DF1127A9F4330FDDAEC35F6] (Microsoft Corporation)
themeui.dll -> C:\Windows\SysNative\themeui.dll -> [2009/06/04 04:47:35 | 00,688,640 | ---- | C | MD5 = A83ABA8C35FC10E8CECF4A241ECAFA9F] (Microsoft Corporation)
dsound.dll -> C:\Windows\SysWow64\dsound.dll -> [2009/06/04 04:47:35 | 00,444,416 | ---- | C | MD5 = 84B8827562B005C118CADBA0F25DB2C6] (Microsoft Corporation)
wlangpui.dll -> C:\Windows\SysWow64\wlangpui.dll -> [2009/06/04 04:47:35 | 00,399,360 | ---- | C | MD5 = 6A4ACF2A646637BEA955A7263AE0C424] (Microsoft Corporation)
zipfldr.dll -> C:\Windows\SysNative\zipfldr.dll -> [2009/06/04 04:47:35 | 00,387,072 | ---- | C | MD5 = 5F5EEC2778893CA2EC3A423FBDC10F6F] (Microsoft Corporation)
bcrypt.dll -> C:\Windows\SysNative\bcrypt.dll -> [2009/06/04 04:47:35 | 00,306,688 | ---- | C | MD5 = 02EE316487BCC8F4F6017CAD538365CC] (Microsoft Corporation)
rastls.dll -> C:\Windows\SysWow64\rastls.dll -> [2009/06/04 04:47:35 | 00,244,224 | ---- | C | MD5 = 010A3B1255F9B35E6EB7BB97C57CA086] (Microsoft Corporation)
wow64.dll -> C:\Windows\SysNative\wow64.dll -> [2009/06/04 04:47:35 | 00,234,496 | ---- | C | MD5 = 813C216E14005CB42BBD1B037FCF030F] (Microsoft Corporation)
wscntfy.dll -> C:\Windows\SysWow64\wscntfy.dll -> [2009/06/04 04:47:35 | 00,223,744 | ---- | C | MD5 = 0B5AC46982E77CAF3EC1D55C9AC6AB56] (Microsoft Corporation)
dot3svc.dll -> C:\Windows\SysNative\dot3svc.dll -> [2009/06/04 04:47:35 | 00,208,896 | ---- | C | MD5 = 1A7156DD1E850E9914E5E991E3225B94] (Microsoft Corporation)
pnpsetup.dll -> C:\Windows\SysWow64\pnpsetup.dll -> [2009/06/04 04:47:35 | 00,181,760 | ---- | C | MD5 = 24843AC00885464EA397FE56CBCBAAD7] (Microsoft Corporation)
wshom.ocx -> C:\Windows\SysNative\wshom.ocx -> [2009/06/04 04:47:35 | 00,144,384 | ---- | C | MD5 = C9FEA5BABF18D825C65CBF0AD50EC59A] (Microsoft Corporation)
odbccp32.dll -> C:\Windows\SysNative\odbccp32.dll -> [2009/06/04 04:47:35 | 00,126,976 | ---- | C | MD5 = FE884FEE6FD382CFCC9C3C05133A874D] (Microsoft Corporation)
diskpart.exe -> C:\Windows\SysWow64\diskpart.exe -> [2009/06/04 04:47:35 | 00,119,808 | ---- | C | MD5 = A9F36F9BEC6F23F5B6EDF1EB4D1AA452] (Microsoft Corporation)
Kswdmcap.ax -> C:\Windows\SysNative\Kswdmcap.ax -> [2009/06/04 04:47:35 | 00,115,200 | ---- | C | MD5 = F307C2E569AD9BDA64E3F6D9E78B5AAD] (Microsoft Corporation)
mrxsmb20.sys -> C:\Windows\SysNative\drivers\mrxsmb20.sys -> [2009/06/04 04:47:35 | 00,105,984 | ---- | C | MD5 = 37ABC27460F9D532EFDCC0116B7E5E48] (Microsoft Corporation)
console.dll -> C:\Windows\SysNative\console.dll -> [2009/06/04 04:47:35 | 00,104,448 | ---- | C | MD5 = C04642A57835AEA3D66AE0D896E0F6D1] (Microsoft Corporation)
ulib.dll -> C:\Windows\SysWow64\ulib.dll -> [2009/06/04 04:47:35 | 00,099,840 | ---- | C | MD5 = 5C9541EFCE477BFCFFD0EF9B1A175457] (Microsoft Corporation)
IPHLPAPI.DLL -> C:\Windows\SysWow64\IPHLPAPI.DLL -> [2009/06/04 04:47:35 | 00,091,648 | ---- | C | MD5 = 4FE8425F21B3F0F8C4B4726351D43EAA] (Microsoft Corporation)
rastapi.dll -> C:\Windows\SysNative\rastapi.dll -> [2009/06/04 04:47:35 | 00,081,408 | ---- | C | MD5 = 8F8E0EE62D73C72015D43E91BBF62B01] (Microsoft Corporation)
gpapi.dll -> C:\Windows\SysWow64\gpapi.dll -> [2009/06/04 04:47:35 | 00,075,264 | ---- | C | MD5 = 0F420E81062757EA8363CBACD4D40D6D] (Microsoft Corporation)
rastapi.dll -> C:\Windows\SysWow64\rastapi.dll -> [2009/06/04 04:47:35 | 00,069,632 | ---- | C | MD5 = 1D6B95871DC006190964B04E5657E35F] (Microsoft Corporation)
iasdatastore.dll -> C:\Windows\SysWow64\iasdatastore.dll -> [2009/06/04 04:47:35 | 00,047,104 | ---- | C | MD5 = 68EF5A4ECAB4FE38ACE1B7DBA86EEC71] (Microsoft Corporation)
perfdisk.dll -> C:\Windows\SysNative\perfdisk.dll -> [2009/06/04 04:47:35 | 00,035,328 | ---- | C | MD5 = 67FB44CEBAFF6FB5A01920F9B311C76E] (Microsoft Corporation)
fdProxy.dll -> C:\Windows\SysWow64\fdProxy.dll -> [2009/06/04 04:47:35 | 00,024,064 | ---- | C | MD5 = ABAEAEE763E287BDD39094C4165E1F3F] (Microsoft Corporation)
tsbyuv.dll -> C:\Windows\SysNative\tsbyuv.dll -> [2009/06/04 04:47:35 | 00,014,336 | ---- | C | MD5 = D5A1C956A2A8F757D6141600078D40CE] (Microsoft Corporation)
WMVENCOD.DLL -> C:\Windows\SysWow64\WMVENCOD.DLL -> [2009/06/04 04:47:34 | 01,575,936 | ---- | C | MD5 = 0832B2F03FDF247F048A2A07810CF5CC] (Microsoft Corporation)
sud.dll -> C:\Windows\SysNative\sud.dll -> [2009/06/04 04:47:34 | 01,382,912 | ---- | C | MD5 = 71D1DE39CC39BFB59563820AA364EEE1] (Microsoft Corporation)
powercpl.dll -> C:\Windows\SysNative\powercpl.dll -> [2009/06/04 04:47:34 | 00,898,560 | ---- | C | MD5 = 3096A3E497003224B4E48BAC11C6778C] (Microsoft Corporation)
slcc.dll -> C:\Windows\SysNative\slcc.dll -> [2009/06/04 04:47:34 | 00,810,496 | ---- | C | MD5 = 424CE0D3BDE733C21914B7C415F2EF36] (Microsoft Corporation)
wpcao.dll -> C:\Windows\SysNative\wpcao.dll -> [2009/06/04 04:47:34 | 00,690,688 | ---- | C | MD5 = D6D7D64E008500DB45A1E02A13DC1EEA] (Microsoft Corporation)
autoplay.dll -> C:\Windows\SysNative\autoplay.dll -> [2009/06/04 04:47:34 | 00,667,648 | ---- | C | MD5 = 8039D279CCFB4DA0B1AA41D8E70369BE] (Microsoft Corporation)
pcaui.dll -> C:\Windows\SysNative\pcaui.dll -> [2009/06/04 04:47:34 | 00,617,984 | ---- | C | MD5 = 1B63115D4A0D3B7B53A30CC426722BDD] (Microsoft Corporation)
vdsdyn.dll -> C:\Windows\SysWow64\vdsdyn.dll -> [2009/06/04 04:47:34 | 00,507,904 | ---- | C | MD5 = 759CAC5C047B3DE16E2A59351527DBB3] (Microsoft Corporation)
IKEEXT.DLL -> C:\Windows\SysNative\IKEEXT.DLL -> [2009/06/04 04:47:34 | 00,454,656 | ---- | C | MD5 = 0C9EA6E654E7B0471741E343A6C671AF] (Microsoft Corporation)
imkr80.ime -> C:\Windows\SysNative\imkr80.ime -> [2009/06/04 04:47:34 | 00,437,248 | ---- | C | MD5 = 54550E0ECC435DE30244F15857A8002B] (Microsoft Corporation)
zipfldr.dll -> C:\Windows\SysWow64\zipfldr.dll -> [2009/06/04 04:47:34 | 00,342,528 | ---- | C | MD5 = 7D80F287AEEDD39C03E118E0EBD3311E] (Microsoft Corporation)
modemui.dll -> C:\Windows\SysNative\modemui.dll -> [2009/06/04 04:47:34 | 00,302,592 | ---- | C | MD5 = 0C31659ABF8C63995E355B330ACB3AE2] (Microsoft Corporation)
rasapi32.dll -> C:\Windows\SysWow64\rasapi32.dll -> [2009/06/04 04:47:34 | 00,286,720 | ---- | C | MD5 = 3CB863B78642405371CB3A71C07E2382] (Microsoft Corporation)
ntprint.dll -> C:\Windows\SysWow64\ntprint.dll -> [2009/06/04 04:47:34 | 00,216,064 | ---- | C | MD5 = 16FF3D15D12BFBB0B805FFE71BE3FA15] (Microsoft Corporation)
wscript.exe -> C:\Windows\SysNative\wscript.exe -> [2009/06/04 04:47:34 | 00,166,912 | ---- | C | MD5 = 895083A7A0C4A75C6F8825895050ABB7] (Microsoft Corporation)
SmartcardCredentialProvider.dll -> C:\Windows\SysNative\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:34 | 00,161,280 | ---- | C | MD5 = C501852F1CA40FFC55363ACC0D2DF5BA] (Microsoft Corporation)
iasrad.dll -> C:\Windows\SysWow64\iasrad.dll -> [2009/06/04 04:47:34 | 00,158,208 | ---- | C | MD5 = A080A841827D71F86ACEDC48F3B5AF64] (Microsoft Corporation)
mscorier.dll -> C:\Windows\SysWow64\mscorier.dll -> [2009/06/04 04:47:34 | 00,155,456 | ---- | C | MD5 = 39F8C798CD91E03A26C3A733108CCE41] (Microsoft Corporation)
mscorier.dll -> C:\Windows\SysNative\mscorier.dll -> [2009/06/04 04:47:34 | 00,154,960 | ---- | C | MD5 = BA47897793A16976F4CD9694920C9781] (Microsoft Corporation)
wusa.exe -> C:\Windows\SysWow64\wusa.exe -> [2009/06/04 04:47:34 | 00,140,800 | ---- | C | MD5 = 10BE37532F4AD750958AB53A786F74BD] (Microsoft Corporation)
netiohlp.dll -> C:\Windows\SysWow64\netiohlp.dll -> [2009/06/04 04:47:34 | 00,104,448 | ---- | C | MD5 = 3BA9CEAB6B6BB30ACACC1937C074532D] (Microsoft Corporation)
wlanhlp.dll -> C:\Windows\SysNative\wlanhlp.dll -> [2009/06/04 04:47:34 | 00,097,792 | ---- | C | MD5 = BF89EBF91E1559FA8773AFB4372F40E8] (Microsoft Corporation)
tdx.sys -> C:\Windows\SysNative\drivers\tdx.sys -> [2009/06/04 04:47:34 | 00,094,720 | ---- | C | MD5 = 458919C8C42E398DC4802178D5FFEE27] (Microsoft Corporation)
regapi.dll -> C:\Windows\SysNative\regapi.dll -> [2009/06/04 04:47:34 | 00,089,088 | ---- | C | MD5 = 94CCD9D329BD894E3385CD43F613D554] (Microsoft Corporation)
hdwwiz.exe -> C:\Windows\SysNative\hdwwiz.exe -> [2009/06/04 04:47:34 | 00,080,896 | ---- | C | MD5 = 10F17F3418B50C563BDB4D80D2D7F2C0] (Microsoft Corporation)
newdev.exe -> C:\Windows\SysNative\newdev.exe -> [2009/06/04 04:47:34 | 00,075,776 | ---- | C | MD5 = D0EA1BB7D305DA7F138795CCDBF13040] (Microsoft Corporation)
iashlpr.dll -> C:\Windows\SysWow64\iashlpr.dll -> [2009/06/04 04:47:34 | 00,070,656 | ---- | C | MD5 = 24468F62F811EC51F1DE9FA080E7D2C1] (Microsoft Corporation)
findstr.exe -> C:\Windows\SysWow64\findstr.exe -> [2009/06/04 04:47:34 | 00,060,928 | ---- | C | MD5 = 186954438DE3DDBF0B46F895B7936DE3] (Microsoft Corporation)
logman.exe -> C:\Windows\SysWow64\logman.exe -> [2009/06/04 04:47:34 | 00,057,344 | ---- | C | MD5 = D29E2C7FECB1F1027DAE779B00A3E956] (Microsoft Corporation)
wshbth.dll -> C:\Windows\SysNative\wshbth.dll -> [2009/06/04 04:47:34 | 00,044,032 | ---- | C | MD5 = 2A70994A408D889715DE6A527679397E] (Microsoft Corporation)
DeviceEject.exe -> C:\Windows\SysNative\DeviceEject.exe -> [2009/06/04 04:47:34 | 00,026,624 | ---- | C | MD5 = F03360A8A3059D14FEA41E6BF6E704F0] (Microsoft Corporation)
msisip.dll -> C:\Windows\SysNative\msisip.dll -> [2009/06/04 04:47:34 | 00,022,528 | ---- | C | MD5 = 916E8C67A8D845378E26ACEE7C1CB16F] (Microsoft Corporation)
chtbrkr.dll -> C:\Windows\SysNative\chtbrkr.dll -> [2009/06/04 04:47:33 | 06,100,480 | ---- | C | MD5 = AC8C3CBCA02EBC0FAE7B1A00C4DCEADC] (Microsoft Corporation)
accessibilitycpl.dll -> C:\Windows\SysNative\accessibilitycpl.dll -> [2009/06/04 04:47:33 | 02,680,832 | ---- | C | MD5 = 9E341BB55760A87268862E40DBA1CEF0] (Microsoft Corporation)
netcenter.dll -> C:\Windows\SysWow64\netcenter.dll -> [2009/06/04 04:47:33 | 02,225,664 | ---- | C | MD5 = 28622FC22E0D46EE0A494EF084235F74] (Microsoft Corporation)
themecpl.dll -> C:\Windows\SysWow64\themecpl.dll -> [2009/06/04 04:47:33 | 01,152,000 | ---- | C | MD5 = 7AF5FFF227F2365B2E37C61F5DC84A01] (Microsoft Corporation)
wer.dll -> C:\Windows\SysWow64\wer.dll -> [2009/06/04 04:47:33 | 00,876,032 | ---- | C | MD5 = 8BE000F9A0B0FF7194AAEFB02C9BDE99] (Microsoft Corporation)
rasdlg.dll -> C:\Windows\SysWow64\rasdlg.dll -> [2009/06/04 04:47:33 | 00,825,856 | ---- | C | MD5 = 2DD6AF8E97F59C9D39329BBC2A81F13F] (Microsoft Corporation)
mstsc.exe -> C:\Windows\SysNative\mstsc.exe -> [2009/06/04 04:47:33 | 00,731,648 | ---- | C | MD5 = B9ECFA30BE99EEEA2948A27D85E1F52E] (Microsoft Corporation)
pnpui.dll -> C:\Windows\SysNative\pnpui.dll -> [2009/06/04 04:47:33 | 00,691,712 | ---- | C | MD5 = 0E5D010E4BA6C9477AE6BD4D35F334F4] (Microsoft Corporation)
riched20.dll -> C:\Windows\SysNative\riched20.dll -> [2009/06/04 04:47:33 | 00,606,208 | ---- | C | MD5 = A66325E43C09902374854B285DAC1548] (Microsoft Corporation)
ncryptui.dll -> C:\Windows\SysNative\ncryptui.dll -> [2009/06/04 04:47:33 | 00,589,312 | ---- | C | MD5 = C4EB35DAE78F0FA60E17729E460A157F] (Microsoft Corporation)
udfs.sys -> C:\Windows\SysNative\drivers\udfs.sys -> [2009/06/04 04:47:33 | 00,299,008 | ---- | C | MD5 = FAF2640A2A76ED03D449E443194C4C34] (Microsoft Corporation)
apphelp.dll -> C:\Windows\SysNative\apphelp.dll -> [2009/06/04 04:47:33 | 00,200,704 | ---- | C | MD5 = F33E804A031F160D128AB78990DE7C91] (Microsoft Corporation)
imm32.dll -> C:\Windows\SysNative\imm32.dll -> [2009/06/04 04:47:33 | 00,163,840 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
vdsutil.dll -> C:\Windows\SysNative\vdsutil.dll -> [2009/06/04 04:47:33 | 00,157,696 | ---- | C | MD5 = 220349D1D90EE438AD031EBEF5F6D7A3] (Microsoft Corporation)
cscript.exe -> C:\Windows\SysNative\cscript.exe -> [2009/06/04 04:47:33 | 00,147,968 | ---- | C | MD5 = FDD38054BABF076AA91DD02A2F1501C0] (Microsoft Corporation)
ulib.dll -> C:\Windows\SysNative\ulib.dll -> [2009/06/04 04:47:33 | 00,128,000 | ---- | C | MD5 = 10D22E8EF75C8E63007492B524A008F8] (Microsoft Corporation)
wshext.dll -> C:\Windows\SysNative\wshext.dll -> [2009/06/04 04:47:33 | 00,101,888 | ---- | C | MD5 = 6DC1F2034B8ECAB0C7848A9B522076AB] (Microsoft Corporation)
pacer.sys -> C:\Windows\SysNative\drivers\pacer.sys -> [2009/06/04 04:47:33 | 00,094,208 | ---- | C | MD5 = C5AB7F0809392D0DA027F4A2A81BFA31] (Microsoft Corporation)
wshext.dll -> C:\Windows\SysWow64\wshext.dll -> [2009/06/04 04:47:33 | 00,090,112 | ---- | C | MD5 = 9C50130E941A24805A608E6F3D2A3C8F] (Microsoft Corporation)
iassvcs.dll -> C:\Windows\SysWow64\iassvcs.dll -> [2009/06/04 04:47:33 | 00,076,288 | ---- | C | MD5 = CAC183ABA07231B031EC0627E3A4A618] (Microsoft Corporation)
feclient.dll -> C:\Windows\SysNative\feclient.dll -> [2009/06/04 04:47:33 | 00,068,608 | ---- | C | MD5 = D7924B0F3AB5574BF59CA2892BE8961A] (Microsoft Corporation)
wsnmp32.dll -> C:\Windows\SysWow64\wsnmp32.dll -> [2009/06/04 04:47:33 | 00,050,688 | ---- | C | MD5 = 1EDE113859276E4B0F19B80F39E2CC95] (Microsoft Corporation)
usbehci.sys -> C:\Windows\SysNative\drivers\usbehci.sys -> [2009/06/04 04:47:33 | 00,049,664 | ---- | C | MD5 = 827E44DE934A736EA31E91D353EB126F] (Microsoft Corporation)
networkmap.dll -> C:\Windows\SysWow64\networkmap.dll -> [2009/06/04 04:47:32 | 03,072,000 | ---- | C | MD5 = 681D46C02A26F00C5F767B78BDAC7D1E] (Microsoft Corporation)
PerfCenterCPL.dll -> C:\Windows\SysWow64\PerfCenterCPL.dll -> [2009/06/04 04:47:32 | 01,248,768 | ---- | C | MD5 = 1B360BE74EEF51393234D23552AEE403] (Microsoft Corporation)
slcc.dll -> C:\Windows\SysWow64\slcc.dll -> [2009/06/04 04:47:32 | 00,777,216 | ---- | C | MD5 = 3CEADB7938575606D5334E44A7274B92] (Microsoft Corporation)
powercpl.dll -> C:\Windows\SysWow64\powercpl.dll -> [2009/06/04 04:47:32 | 00,723,968 | ---- | C | MD5 = 8DDC387167FA0234F3656EB34C78BFFB] (Microsoft Corporation)
timedate.cpl -> C:\Windows\SysWow64\timedate.cpl -> [2009/06/04 04:47:32 | 00,714,240 | ---- | C | MD5 = 45D4135CFA747CDFCF7CB247A6399002] (Microsoft Corporation)
mstsc.exe -> C:\Windows\SysWow64\mstsc.exe -> [2009/06/04 04:47:32 | 00,678,400 | ---- | C | MD5 = 4F7A9842012D948EB16DC7B8B91366FE] (Microsoft Corporation)
qedit.dll -> C:\Windows\SysNative\qedit.dll -> [2009/06/04 04:47:32 | 00,619,008 | ---- | C | MD5 = C4E2A5EC3D4AB3D0652F6A70FDE24C78] (Microsoft Corporation)
srcore.dll -> C:\Windows\SysNative\srcore.dll -> [2009/06/04 04:47:32 | 00,474,624 | ---- | C | MD5 = 8BD38D1BF56559DF5E28EA74ADA63A07] (Microsoft Corporation)
rasplap.dll -> C:\Windows\SysNative\rasplap.dll -> [2009/06/04 04:47:32 | 00,389,632 | ---- | C | MD5 = F59CF3BFE865EB795C5DE5850F48B321] (Microsoft Corporation)
rasppp.dll -> C:\Windows\SysNative\rasppp.dll -> [2009/06/04 04:47:32 | 00,306,176 | ---- | C | MD5 = 4500B574CB7F5ED6EE8E0BBC72AE2E31] (Microsoft Corporation)
scansetting.dll -> C:\Windows\SysWow64\scansetting.dll -> [2009/06/04 04:47:32 | 00,245,760 | ---- | C | MD5 = E60FA45D987DBA869B28532E2F0E6B76] (Microsoft Corporation)
SndVolSSO.dll -> C:\Windows\SysNative\SndVolSSO.dll -> [2009/06/04 04:47:32 | 00,177,664 | ---- | C | MD5 = 5C8C51B679B947F3DF948533C0926240] (Microsoft Corporation)
tcpmon.dll -> C:\Windows\SysNative\tcpmon.dll -> [2009/06/04 04:47:32 | 00,168,960 | ---- | C | MD5 = 74D59F72104C9FF8D154D1AB372A5A57] (Microsoft Corporation)
msutb.dll -> C:\Windows\SysWow64\msutb.dll -> [2009/06/04 04:47:32 | 00,163,328 | ---- | C | MD5 = C6DA42ADA0C5FC8CB05744229D632B47] (Microsoft Corporation)
wshom.ocx -> C:\Windows\SysWow64\wshom.ocx -> [2009/06/04 04:47:32 | 00,135,168 | ---- | C | MD5 = 8992F45DED6B63B919BDEB6D270FF9C8] (Microsoft Corporation)
ntmarta.dll -> C:\Windows\SysWow64\ntmarta.dll -> [2009/06/04 04:47:32 | 00,121,344 | ---- | C | MD5 = CD08EEC61C591AF59A39F4363C567D30] (Microsoft Corporation)
oleprn.dll -> C:\Windows\SysNative\oleprn.dll -> [2009/06/04 04:47:32 | 00,115,712 | ---- | C | MD5 = D00EE9DF8224EAED0690EF80FFAE9EAA] (Microsoft Corporation)
powrprof.dll -> C:\Windows\SysWow64\powrprof.dll -> [2009/06/04 04:47:32 | 00,098,816 | ---- | C | MD5 = 9A7F4B2EDACD11444D048AA19CBB26AF] (Microsoft Corporation)
wanarp.sys -> C:\Windows\SysNative\drivers\wanarp.sys -> [2009/06/04 04:47:32 | 00,086,528 | ---- | C | MD5 = B8E7049622300D20BA6D8BE0C47C0CFD] (Microsoft Corporation)
mstlsapi.dll -> C:\Windows\SysWow64\mstlsapi.dll -> [2009/06/04 04:47:32 | 00,084,992 | ---- | C | MD5 = EE60FC8F65B94C392DE0F75533C014FB] (Microsoft Corporation)
iasacct.dll -> C:\Windows\SysWow64\iasacct.dll -> [2009/06/04 04:47:32 | 00,058,880 | ---- | C | MD5 = 8F29E2E9FA5830317158BB6AE5D2BBA0] (Microsoft Corporation)
iasads.dll -> C:\Windows\SysWow64\iasads.dll -> [2009/06/04 04:47:32 | 00,057,344 | ---- | C | MD5 = 1111EA117266132F5057ED8F35C47ACD] (Microsoft Corporation)
dataclen.dll -> C:\Windows\SysNative\dataclen.dll -> [2009/06/04 04:47:32 | 00,048,640 | ---- | C | MD5 = FC15E96BE5E1B1002C72AD91677E5577] (Microsoft Corporation)
ifmon.dll -> C:\Windows\SysNative\ifmon.dll -> [2009/06/04 04:47:32 | 00,036,352 | ---- | C | MD5 = DD49BE6A0BB0136BBAE9AF0A0BD15F52] (Microsoft Corporation)
mssprxy.dll -> C:\Windows\SysWow64\mssprxy.dll -> [2009/06/04 04:47:32 | 00,033,280 | ---- | C | MD5 = FEA6D21F78922D641A0C9346D885133B] (Microsoft Corporation)
lpk.dll -> C:\Windows\SysWow64\lpk.dll -> [2009/06/04 04:47:32 | 00,023,552 | ---- | C | MD5 = DF37346EA13082E3E1B423B54014E641] (Microsoft Corporation)
tsbyuv.dll -> C:\Windows\SysWow64\tsbyuv.dll -> [2009/06/04 04:47:32 | 00,012,288 | ---- | C | MD5 = 8A057FA5B3C6B982C7D819618770BC2D] (Microsoft Corporation)
icardres.dll -> C:\Windows\SysWow64\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 34B7FA82A85231348C170EF39B636DB4] (Microsoft Corporation)
icardres.dll -> C:\Windows\SysNative\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 2CA500FCA65202221265909F14B0A9AE] (Microsoft Corporation)
accessibilitycpl.dll -> C:\Windows\SysWow64\accessibilitycpl.dll -> [2009/06/04 04:47:31 | 02,515,968 | ---- | C | MD5 = 941486AB385556BF6A62342F8CA15BD8] (Microsoft Corporation)
wlanpref.dll -> C:\Windows\SysWow64\wlanpref.dll -> [2009/06/04 04:47:31 | 01,671,680 | ---- | C | MD5 = 2EC3531A49A6937446259C540EDE4535] (Microsoft Corporation)
connect.dll -> C:\Windows\SysWow64\connect.dll -> [2009/06/04 04:47:31 | 01,645,568 | ---- | C | MD5 = 36509ECC02172D09507A16FAD12C566F] (Microsoft Corporation)
sud.dll -> C:\Windows\SysWow64\sud.dll -> [2009/06/04 04:47:31 | 01,224,192 | ---- | C | MD5 = F9F9E7F0D4EBAC06334C9BF76C9E11B4] (Microsoft Corporation)
usercpl.dll -> C:\Windows\SysWow64\usercpl.dll -> [2009/06/04 04:47:31 | 01,123,840 | ---- | C | MD5 = E3CE1997725EE8E14F7B4A7CD746538E] (Microsoft Corporation)
systemcpl.dll -> C:\Windows\SysWow64\systemcpl.dll -> [2009/06/04 04:47:31 | 00,842,240 | ---- | C | MD5 = 2A7D73202A7299CD35AC6D0D96128B5B] (Microsoft Corporation)
WMVXENCD.DLL -> C:\Windows\SysNative\WMVXENCD.DLL -> [2009/06/04 04:47:31 | 00,622,592 | ---- | C | MD5 = 5413960D8A16697626FED4A1F1508856] (Microsoft Corporation)
autoplay.dll -> C:\Windows\SysWow64\autoplay.dll -> [2009/06/04 04:47:31 | 00,516,608 | ---- | C | MD5 = 2AE61DEF9112DA8948EEAB3631FF4525] (Microsoft Corporation)
qdvd.dll -> C:\Windows\SysWow64\qdvd.dll -> [2009/06/04 04:47:31 | 00,497,152 | ---- | C | MD5 = 971F512A83EC50B8A72C8F8BFBF4E5B2] (Microsoft Corporation)
wlangpui.dll -> C:\Windows\SysNative\wlangpui.dll -> [2009/06/04 04:47:31 | 00,489,984 | ---- | C | MD5 = 5C1E2FBBBE6F14FAAFA8AAA20C7E2D71] (Microsoft Corporation)
pcaui.dll -> C:\Windows\SysWow64\pcaui.dll -> [2009/06/04 04:47:31 | 00,464,384 | ---- | C | MD5 = 7E05BE3F599B3F0C46389241C6820C8B] (Microsoft Corporation)
BFE.DLL -> C:\Windows\SysNative\BFE.DLL -> [2009/06/04 04:47:31 | 00,458,240 | ---- | C | MD5 = FFB96C2589FFA60473EAD78B39FBDE29] (Microsoft Corporation)
qdvd.dll -> C:\Windows\SysNative\qdvd.dll -> [2009/06/04 04:47:31 | 00,352,256 | ---- | C | MD5 = 354315DD7C8DF536E7B08E922CB9AA18] (Microsoft Corporation)
thawbrkr.dll -> C:\Windows\SysNative\thawbrkr.dll -> [2009/06/04 04:47:31 | 00,317,440 | ---- | C | MD5 = 4F9D5C5FEC7DCAA32EA82FAC7215D1C3] (Microsoft Corporation)
raschap.dll -> C:\Windows\SysNative\raschap.dll -> [2009/06/04 04:47:31 | 00,295,936 | ---- | C | MD5 = BFDF69526CB6476992540D4C477CC27A] (Microsoft Corporation)
scksp.dll -> C:\Windows\SysNative\scksp.dll -> [2009/06/04 04:47:31 | 00,186,880 | ---- | C | MD5 = 4B2512952CCD6C2C7E610F21E28A5163] (Microsoft Corporation)
authz.dll -> C:\Windows\SysWow64\authz.dll -> [2009/06/04 04:47:31 | 00,079,872 | ---- | C | MD5 = 1AE011BB950A5E0B05023D2AFEC3666D] (Microsoft Corporation)
newdev.exe -> C:\Windows\SysWow64\newdev.exe -> [2009/06/04 04:47:31 | 00,074,752 | ---- | C | MD5 = DD251E13AAAA5F5AF09934759A4E1FC5] (Microsoft Corporation)
wlanhlp.dll -> C:\Windows\SysWow64\wlanhlp.dll -> [2009/06/04 04:47:31 | 00,068,096 | ---- | C | MD5 = 8D544AC1B7AA7FB9DFF0C3E7DA6AD295] (Microsoft Corporation)
samlib.dll -> C:\Windows\SysWow64\samlib.dll -> [2009/06/04 04:47:31 | 00,057,344 | ---- | C | MD5 = 453DE2958C885527E20C79A3FEFE6AF7] (Microsoft Corporation)
mmci.dll -> C:\Windows\SysWow64\mmci.dll -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = CBBFCB6801D0A9F9BD4D477284C86D1C] (Microsoft Corporation)
cmmon32.exe -> C:\Windows\SysNative\cmmon32.exe -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = 900006FA862F2E631168C8F9CFE33AC1] (Microsoft Corporation)
rtutils.dll -> C:\Windows\SysNative\rtutils.dll -> [2009/06/04 04:47:31 | 00,050,688 | ---- | C | MD5 = 5A2008B581F4759CC7A25BBAD9BFD2B7] (Microsoft Corporation)
npfs.sys -> C:\Windows\SysNative\drivers\npfs.sys -> [2009/06/04 04:47:31 | 00,044,544 | ---- | C | MD5 = B298874F8E0EA93F06EC40AA8D146478] (Microsoft Corporation)
iaspolcy.dll -> C:\Windows\SysNative\iaspolcy.dll -> [2009/06/04 04:47:31 | 00,037,888 | ---- | C | MD5 = 559C060F694FCA4FC0A538DD6D7C4489] (Microsoft Corporation)
fc.exe -> C:\Windows\SysNative\fc.exe -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 9382063462441C0D2452A40CFE8CAC43] (Microsoft Corporation)
hidserv.dll -> C:\Windows\SysNative\hidserv.dll -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 59361D38A297755D46A540E450202B2A] (Microsoft Corporation)
kbdhid.sys -> C:\Windows\SysNative\drivers\kbdhid.sys -> [2009/06/04 04:47:31 | 00,022,528 | ---- | C | MD5 = DBDF75D51464FBC47D0104EC3D572C05] (Microsoft Corporation)
wscisvif.dll -> C:\Windows\SysNative\wscisvif.dll -> [2009/06/04 04:47:31 | 00,020,992 | ---- | C | MD5 = EBFA7A306C65010DED108F5A26598642] (Microsoft Corporation)
spwinsat.dll -> C:\Windows\SysNative\spwinsat.dll -> [2009/06/04 04:47:31 | 00,013,824 | ---- | C | MD5 = 1EAE8FB082D759DAD2ED990843E9C0C2] (Microsoft Corporation)
SyncCenter.dll -> C:\Windows\SysNative\SyncCenter.dll -> [2009/06/04 04:47:30 | 02,575,360 | ---- | C | MD5 = E55DE59CD89138BD973602F9F202E84D] (Microsoft Corporation)
WMPEncEn.dll -> C:\Windows\SysNative\WMPEncEn.dll -> [2009/06/04 04:47:30 | 02,043,904 | ---- | C | MD5 = BBEF15F506B97522B918D09A3662F9B0] (Microsoft Corporation)
msftedit.dll -> C:\Windows\SysNative\msftedit.dll -> [2009/06/04 04:47:30 | 00,735,232 | ---- | C | MD5 = 554BD984C71129A8BD4450BE8170695C] (Microsoft Corporation)
msscp.dll -> C:\Windows\SysNative\msscp.dll -> [2009/06/04 04:47:30 | 00,534,528 | ---- | C | MD5 = 1AD1CC73AC29E7139A32B54DBE235635] (Microsoft Corporation)
wpcao.dll -> C:\Windows\SysWow64\wpcao.dll -> [2009/06/04 04:47:30 | 00,532,992 | ---- | C | MD5 = 5D2FDA874FED0D3FEDF41F5961663F3B] (Microsoft Corporation)
msinfo32.exe -> C:\Windows\SysWow64\msinfo32.exe -> [2009/06/04 04:47:30 | 00,408,064 | ---- | C | MD5 = D3D1CE8FF30786D50272DA3085149904] (Microsoft Corporation)
wlanmsm.dll -> C:\Windows\SysNative\wlanmsm.dll -> [2009/06/04 04:47:30 | 00,353,792 | ---- | C | MD5 = DE52345E9E9684205D1AF593DC5B30F4] (Microsoft Corporation)
mscandui.dll -> C:\Windows\SysNative\mscandui.dll -> [2009/06/04 04:47:30 | 00,289,792 | ---- | C | MD5 = FD18A06BA0BF4E535E6DE153C9525960] (Microsoft Corporation)
tapisrv.dll -> C:\Windows\SysWow64\tapisrv.dll -> [2009/06/04 04:47:30 | 00,242,688 | ---- | C | MD5 = D7673E4B38CE21EE54C59EEEB65E2483] (Microsoft Corporation)
fastfat.sys -> C:\Windows\SysNative\drivers\fastfat.sys -> [2009/06/04 04:47:30 | 00,198,144 | ---- | C | MD5 = 1A4BEE34277784619DDAF0422C0C6E23] (Microsoft Corporation)
dsprop.dll -> C:\Windows\SysNative\dsprop.dll -> [2009/06/04 04:47:30 | 00,164,864 | ---- | C | MD5 = FD5AE1C64B86B4BEFEF2691306183E09] (Microsoft Corporation)
scksp.dll -> C:\Windows\SysWow64\scksp.dll -> [2009/06/04 04:47:30 | 00,140,288 | ---- | C | MD5 = 74B514A1FB5742CFB0DDC700D832D166] (Microsoft Corporation)
vdsutil.dll -> C:\Windows\SysWow64\vdsutil.dll -> [2009/06/04 04:47:30 | 00,128,000 | ---- | C | MD5 = FE7742C93F6904A9B08BC6749C039CE9] (Microsoft Corporation)
rpchttp.dll -> C:\Windows\SysWow64\rpchttp.dll -> [2009/06/04 04:47:30 | 00,127,488 | ---- | C | MD5 = 305460BC9F6C2888D291ADCB23FC5AE1] (Microsoft Corporation)
rdpwsx.dll -> C:\Windows\SysNative\rdpwsx.dll -> [2009/06/04 04:47:30 | 00,117,760 | ---- | C | MD5 = 06BEFFD308C5796D3D6FD2FAD267A6C2] (Microsoft Corporation)
pintlgnt.ime -> C:\Windows\SysWow64\pintlgnt.ime -> [2009/06/04 04:47:30 | 00,089,088 | ---- | C | MD5 = 1298AE079E74D8691BF1722CF1E32F67] (Microsoft Corporation)
smss.exe -> C:\Windows\SysNative\smss.exe -> [2009/06/04 04:47:30 | 00,075,264 | ---- | C | MD5 = C17704EA5B0F83D78F1377075FFE1C89] (Microsoft Corporation)
regapi.dll -> C:\Windows\SysWow64\regapi.dll -> [2009/06/04 04:47:30 | 00,067,584 | ---- | C | MD5 = A6250DF429D0D78DACFBC6B87074E584] (Microsoft Corporation)
PnPUnattend.exe -> C:\Windows\SysNative\PnPUnattend.exe -> [2009/06/04 04:47:30 | 00,064,512 | ---- | C | MD5 = 1BC046E369CDF1201AFDA63FBD071630] (Microsoft Corporation)
feclient.dll -> C:\Windows\SysWow64\feclient.dll -> [2009/06/04 04:47:30 | 00,054,272 | ---- | C | MD5 = 965AC9FBF2C67231C157E99C03C58D24] (Microsoft Corporation)
rekeywiz.exe -> C:\Windows\SysNative\rekeywiz.exe -> [2009/06/04 04:47:30 | 00,051,200 | ---- | C | MD5 = 40335F6499E5A2EF9C74B499E5B97F9C] (Microsoft Corporation)
certprop.dll -> C:\Windows\SysNative\certprop.dll -> [2009/06/04 04:47:30 | 00,049,664 | ---- | C | MD5 = 5A268127633C7EE2A7FB87F39D748D56] (Microsoft Corporation)
msimtf.dll -> C:\Windows\SysNative\msimtf.dll -> [2009/06/04 04:47:30 | 00,041,472 | ---- | C | MD5 = 84F9BAD395DADAFA8E46BE7946B18ECD] (Microsoft Corporation)
printfilterpipelineprxy.dll -> C:\Windows\SysNative\printfilterpipelineprxy.dll -> [2009/06/04 04:47:30 | 00,035,840 | ---- | C | MD5 = 7D58ED6F0A190ACA4043C4BD0A14B94E] (Microsoft Corporation)
wscui.cpl -> C:\Windows\SysNative\wscui.cpl -> [2009/06/04 04:47:29 | 01,738,752 | ---- | C | MD5 = 2A81DBACEF86D5698880BE8C0035F5A2] (Microsoft Corporation)
wscui.cpl -> C:\Windows\SysWow64\wscui.cpl -> [2009/06/04 04:47:29 | 01,689,600 | ---- | C | MD5 = 62C92BE2414AC9D0BC0196CA52D2CD2B] (Microsoft Corporation)
WMPEncEn.dll -> C:\Windows\SysWow64\WMPEncEn.dll -> [2009/06/04 04:47:29 | 01,642,496 | ---- | C | MD5 = 52C8CD06900B5B9FC4EF5C880D5AD9CB] (Microsoft Corporation)
mmsys.cpl -> C:\Windows\SysWow64\mmsys.cpl -> [2009/06/04 04:47:29 | 01,102,848 | ---- | C | MD5 = 69405254E704895F4F519422818D35B6] (Microsoft Corporation)
FWPUCLNT.DLL -> C:\Windows\SysNative\FWPUCLNT.DLL -> [2009/06/04 04:47:29 | 00,779,776 | ---- | C | MD5 = 7972615E382EF39785FD45F136F64D8C] (Microsoft Corporation)
wiaaut.dll -> C:\Windows\SysNative\wiaaut.dll -> [2009/06/04 04:47:29 | 00,669,184 | ---- | C | MD5 = 4309F5CDE2396B8B1649633186F48A8F] (Microsoft Corporation)
wmpeffects.dll -> C:\Windows\SysNative\wmpeffects.dll -> [2009/06/04 04:47:29 | 00,557,056 | ---- | C | MD5 = 903D3F4BD98DF8023B764AD677126C9F] (Microsoft Corporation)
qedit.dll -> C:\Windows\SysWow64\qedit.dll -> [2009/06/04 04:47:29 | 00,505,344 | ---- | C | MD5 = 8F960A1A3D9A7B829FD9DCE2689030F6] (Microsoft Corporation)
ncryptui.dll -> C:\Windows\SysWow64\ncryptui.dll -> [2009/06/04 04:47:29 | 00,445,952 | ---- | C | MD5 = 29215EAF81447CB95F82FDE671751330] (Microsoft Corporation)
winhttp.dll -> C:\Windows\SysNative\winhttp.dll -> [2009/06/04 04:47:29 | 00,439,808 | ---- | C | MD5 = 780473D0EEB23D40F1EEE69A70719399] (Microsoft Corporation)
dpapimig.exe -> C:\Windows\SysWow64\dpapimig.exe -> [2009/06/04 04:47:29 | 00,407,040 | ---- | C | MD5 = 29B84718CDCBCA66A47B64AA2B02318F] (Microsoft Corporation)
unimdm.tsp -> C:\Windows\SysNative\unimdm.tsp -> [2009/06/04 04:47:29 | 00,320,000 | ---- | C | MD5 = 8139F933EF1559D4E7187E48F93EA136] (Microsoft Corporation)
AUDIOKSE.dll -> C:\Windows\SysNative\AUDIOKSE.dll -> [2009/06/04 04:47:29 | 00,313,856 | ---- | C | MD5 = E08935E54CEE225BEB3CC220CBCC734A] (Microsoft Corporation)
scesrv.dll -> C:\Windows\SysWow64\scesrv.dll -> [2009/06/04 04:47:29 | 00,306,176 | ---- | C | MD5 = D90911B3FA05D7B930C1286084B404DE] (Microsoft Corporation)
psisdecd.dll -> C:\Windows\SysWow64\psisdecd.dll -> [2009/06/04 04:47:29 | 00,293,376 | ---- | C | MD5 = 16628EE6CDFDA509820509D7E65F3F62] (Microsoft Corporation)
certreq.exe -> C:\Windows\SysWow64\certreq.exe -> [2009/06/04 04:47:29 | 00,215,552 | ---- | C | MD5 = 56C182F55BF68556C974E9AD32BF56BF] (Microsoft Corporation)
fontext.dll -> C:\Windows\SysNative\fontext.dll -> [2009/06/04 04:47:29 | 00,163,328 | ---- | C | MD5 = 0C8E0E7E708BDE406315F3C1A653B0E3] (Microsoft Corporation)
Faultrep.dll -> C:\Windows\SysWow64\Faultrep.dll -> [2009/06/04 04:47:29 | 00,147,456 | ---- | C | MD5 = 77784A2BD5912A4EC6284255865526BC] (Microsoft Corporation)
AudioSes.dll -> C:\Windows\SysWow64\AudioSes.dll -> [2009/06/04 04:47:29 | 00,115,712 | ---- | C | MD5 = 7258434974EA735725FD2D4A65C5E821] (Microsoft Corporation)
oleprn.dll -> C:\Windows\SysWow64\oleprn.dll -> [2009/06/04 04:47:29 | 00,097,792 | ---- | C | MD5 = 23E10EC351836F14606CCCFF5C6CF292] (Microsoft Corporation)
dot3msm.dll -> C:\Windows\SysNative\dot3msm.dll -> [2009/06/04 04:47:29 | 00,092,160 | ---- | C | MD5 = 1F97A9910F45BA77802DE68D35BD2829] (Microsoft Corporation)
hdwwiz.exe -> C:\Windows\SysWow64\hdwwiz.exe -> [2009/06/04 04:47:29 | 00,080,384 | ---- | C | MD5 = 1BAF5FE4C31D20CF805B2FA7A7C2B886] (Microsoft Corporation)
dot3msm.dll -> C:\Windows\SysWow64\dot3msm.dll -> [2009/06/04 04:47:29 | 00,075,264 | ---- | C | MD5 = 7366AB74CF8489749AC4CBFBAEE9F9E2] (Microsoft Corporation)
mpr.dll -> C:\Windows\SysWow64\mpr.dll -> [2009/06/04 04:47:29 | 00,068,608 | ---- | C | MD5 = 1F94EA31C9543B855F53BDAC7792DA4E] (Microsoft Corporation)
rekeywiz.exe -> C:\Windows\SysWow64\rekeywiz.exe -> [2009/06/04 04:47:29 | 00,043,520 | ---- | C | MD5 = 79DB32BA1FED01EC05A5D5158CF1A279] (Microsoft Corporation)
iaspolcy.dll -> C:\Windows\SysWow64\iaspolcy.dll -> [2009/06/04 04:47:29 | 00,033,792 | ---- | C | MD5 = 97C89AA7146D73B387AADAA11D8B56F1] (Microsoft Corporation)
whealogr.dll -> C:\Windows\SysNative\whealogr.dll -> [2009/06/04 04:47:29 | 00,033,280 | ---- | C | MD5 = F937669EAA18DF36D4ECDE87FE011152] (Microsoft Corporation)
perfdisk.dll -> C:\Windows\SysWow64\perfdisk.dll -> [2009/06/04 04:47:29 | 00,031,744 | ---- | C | MD5 = 9104EDD1D3BF91AD079A73FBB515E492] (Microsoft Corporation)
wsdchngr.dll -> C:\Windows\SysNative\wsdchngr.dll -> [2009/06/04 04:47:29 | 00,025,600 | ---- | C | MD5 = 8E10B36901325C1ABE28E71FB8E437D9] (Microsoft Corporation)
wscisvif.dll -> C:\Windows\SysWow64\wscisvif.dll -> [2009/06/04 04:47:29 | 00,017,920 | ---- | C | MD5 = D0A95E567224B4C347CBDD6541E5D928] (Microsoft Corporation)
spcinstrumentation.man -> C:\Windows\SysWow64\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
spcinstrumentation.man -> C:\Windows\SysNative\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
netshell.dll -> C:\Windows\SysNative\netshell.dll -> [2009/06/04 04:47:28 | 03,341,312 | ---- | C | MD5 = AA6FAA30D3D0D4424DBA3D74D1CA1E14] (Microsoft Corporation)
MSMPEG2ENC.DLL -> C:\Windows\SysNative\MSMPEG2ENC.DLL -> [2009/06/04 04:47:28 | 00,644,608 | ---- | C | MD5 = 68C35C27C32BDAFAF6E8705B839E9A45] (Microsoft Corporation)
rasgcw.dll -> C:\Windows\SysWow64\rasgcw.dll -> [2009/06/04 04:47:28 | 00,642,560 | ---- | C | MD5 = 94B67798159ACB26D7104E55903B6FEF] (Microsoft Corporation)
FWPUCLNT.DLL -> C:\Windows\SysWow64\FWPUCLNT.DLL -> [2009/06/04 04:47:28 | 00,595,456 | ---- | C | MD5 = B0D12F4344EB2AE96E487D2DF6F74413] (Microsoft Corporation)
wmdrmdev.dll -> C:\Windows\SysNative\wmdrmdev.dll -> [2009/06/04 04:47:28 | 00,539,136 | ---- | C | MD5 = 9E703EC2E91C9071D75E34F1A7327ECA] (Microsoft Corporation)
rasplap.dll -> C:\Windows\SysWow64\rasplap.dll -> [2009/06/04 04:47:28 | 00,376,832 | ---- | C | MD5 = 9DC3723519F52B6BC63EACD4BD411313] (Microsoft Corporation)
drmmgrtn.dll -> C:\Windows\SysNative\drmmgrtn.dll -> [2009/06/04 04:47:28 | 00,365,568 | ---- | C | MD5 = 482F86F951A6A884F8A4361A67260FE8] (Microsoft Corporation)
certreq.exe -> C:\Windows\SysNative\certreq.exe -> [2009/06/04 04:47:28 | 00,259,072 | ---- | C | MD5 = C8C33F31398217BC62D0B12FF456BB7D] (Microsoft Corporation)
msutb.dll -> C:\Windows\SysNative\msutb.dll -> [2009/06/04 04:47:28 | 00,227,840 | ---- | C | MD5 = AD27B41DA928C0338E6F364BE928D3F7] (Microsoft Corporation)
msnetobj.dll -> C:\Windows\SysNative\msnetobj.dll -> [2009/06/04 04:47:28 | 00,221,696 | ---- | C | MD5 = BAB9E1E8D5C9DEFDCCC5736CC1FEC38B] (Microsoft Corporation)
wlanui.dll -> C:\Windows\SysNative\wlanui.dll -> [2009/06/04 04:47:28 | 00,218,624 | ---- | C | MD5 = 808F32604D3A77A113C768380A1F61F8] (Microsoft Corporation)
rdpwd.sys -> C:\Windows\SysNative\drivers\rdpwd.sys -> [2009/06/04 04:47:28 | 00,209,920 | ---- | C | MD5 = B1D741C87CEA8D7282146366CC9C3F81] (Microsoft Corporation)
netplwiz.dll -> C:\Windows\SysNative\netplwiz.dll -> [2009/06/04 04:47:28 | 00,197,632 | ---- | C | MD5 = 55F61E2EBBAC854879B2016F2383BC83] (Microsoft Corporation)
scecli.dll -> C:\Windows\SysWow64\scecli.dll -> [2009/06/04 04:47:28 | 00,177,152 | ---- | C | MD5 = 8FC182167381E9915651267044105EE1] (Microsoft Corporation)
SndVol.exe -> C:\Windows\SysNative\SndVol.exe -> [2009/06/04 04:47:28 | 00,172,032 | ---- | C | MD5 = 7A31C805A372EB80D84C5562481F82F7] (Microsoft Corporation)
tcpipcfg.dll -> C:\Windows\SysWow64\tcpipcfg.dll -> [2009/06/04 04:47:28 | 00,170,496 | ---- | C | MD5 = E4060CFE50F87C72316CB0FDB20E4913] (Microsoft Corporation)
rmcast.sys -> C:\Windows\SysNative\drivers\rmcast.sys -> [2009/06/04 04:47:28 | 00,140,288 | ---- | C | MD5 = F913517BB2F3A73EC6B9B65E5DC7B420] (Microsoft Corporation)
tcpmon.dll -> C:\Windows\SysWow64\tcpmon.dll -> [2009/06/04 04:47:28 | 00,135,168 | ---- | C | MD5 = BB0EB921877A1A7EF15AE2D97A71CBA9] (Microsoft Corporation)
SmartcardCredentialProvider.dll -> C:\Windows\SysWow64\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:28 | 00,134,656 | ---- | C | MD5 = B25DBBA6C63A61FF4AFDB5ADAB4E70CB] (Microsoft Corporation)
shsetup.dll -> C:\Windows\SysNative\shsetup.dll -> [2009/06/04 04:47:28 | 00,121,856 | ---- | C | MD5 = 25467BCC0718C01F3A96C85468B19334] (Microsoft Corporation)
MSNP.ax -> C:\Windows\SysNative\MSNP.ax -> [2009/06/04 04:47:28 | 00,101,376 | ---- | C | MD5 = 3C4D4C68A9D63F01AF18B6ECC7274B8A] (Microsoft Corporation)
conime.exe -> C:\Windows\SysNative\conime.exe -> [2009/06/04 04:47:28 | 00,086,528 | ---- | C | MD5 = 00E1D5F656B13C00CC31CEB6B43C1D69] (Microsoft Corporation)
fdWSD.dll -> C:\Windows\SysWow64\fdWSD.dll -> [2009/06/04 04:47:28 | 00,067,072 | ---- | C | MD5 = 4BAEC13BCAA595639EBB5185278DEFEA] (Microsoft Corporation)
dimsroam.dll -> C:\Windows\SysNative\dimsroam.dll -> [2009/06/04 04:47:28 | 00,064,512 | ---- | C | MD5 = 69CD3A812AF2187751F99FDD86E8EE50] (Microsoft Corporation)
cmmon32.exe -> C:\Windows\SysWow64\cmmon32.exe -> [2009/06/04 04:47:28 | 00,049,152 | ---- | C | MD5 = 86497C6A9825B6252804D5C4E189AA67] (Microsoft Corporation)
tcpipreg.sys -> C:\Windows\SysNative\drivers\tcpipreg.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = FF0C49DB68D4F451343EF06ABAEA3DC9] (Microsoft Corporation)
watchdog.sys -> C:\Windows\SysNative\drivers\watchdog.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = 2F956EA22FCCE4C9F15C64175C891A1E] (Microsoft Corporation)
TSTheme.exe -> C:\Windows\SysWow64\TSTheme.exe -> [2009/06/04 04:47:28 | 00,038,400 | ---- | C | MD5 = 1904DBA08C2D63CE2025CAD78F5DF2BB] (Microsoft Corporation)
PnPutil.exe -> C:\Windows\SysNative\PnPutil.exe -> [2009/06/04 04:47:28 | 00,036,864 | ---- | C | MD5 = 96C9A012901B35AAC91360D8698929C3] (Microsoft Corporation)
uxsms.dll -> C:\Windows\SysNative\uxsms.dll -> [2009/06/04 04:47:28 | 00,032,768 | ---- | C | MD5 = D76E231E4850BB3F88A3D9A78DF191E3] (Microsoft Corporation)
USBCAMD2.sys -> C:\Windows\SysNative\drivers\USBCAMD2.sys -> [2009/06/04 04:47:28 | 00,032,640 | ---- | C | MD5 = D46BDF1C810138E2D3B985FA3A7AB05E] (Microsoft Corporation)
whealogr.dll -> C:\Windows\SysWow64\whealogr.dll -> [2009/06/04 04:47:28 | 00,031,232 | ---- | C | MD5 = 72F1789EBA824BB977DB83B0A0B57B26] (Microsoft Corporation)
spwinsat.dll -> C:\Windows\SysWow64\spwinsat.dll -> [2009/06/04 04:47:28 | 00,011,776 | ---- | C | MD5 = DEAD790AF988C4C70B6371FC02AA9104] (Microsoft Corporation)
MSVidCtl.dll -> C:\Windows\SysNative\MSVidCtl.dll -> [2009/06/04 04:47:27 | 02,535,424 | ---- | C | MD5 = 5448FF8A9527E46C85B48801254C5C24] (Microsoft Corporation)
oobefldr.dll -> C:\Windows\SysNative\oobefldr.dll -> [2009/06/04 04:47:27 | 02,438,656 | ---- | C | MD5 = 8E29B921BC400F51276F781C4CFB87F6] (Microsoft Corporation)
oobefldr.dll -> C:\Windows\SysWow64\oobefldr.dll -> [2009/06/04 04:47:27 | 02,153,472 | ---- | C | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
WMVDECOD.DLL -> C:\Windows\SysNative\WMVDECOD.DLL -> [2009/06/04 04:47:27 | 01,702,912 | ---- | C | MD5 = 3568FCAB1FC248397EF81231D53F598C] (Microsoft Corporation)
MSVidCtl.dll -> C:\Windows\SysWow64\MSVidCtl.dll -> [2009/06/04 04:47:27 | 01,544,704 | ---- | C | MD5 = 73F97C8899429EFAEE8C8944DCC08C2E] (Microsoft Corporation)
wmdrmsdk.dll -> C:\Windows\SysNative\wmdrmsdk.dll -> [2009/06/04 04:47:27 | 00,688,128 | ---- | C | MD5 = A949AA49376F8CB91D19EA8A7ADC94D4] (Microsoft Corporation)
WMVXENCD.DLL -> C:\Windows\SysWow64\WMVXENCD.DLL -> [2009/06/04 04:47:27 | 00,657,408 | ---- | C | MD5 = EABB7AF39A6587B57AA70EFD8ECD2661] (Microsoft Corporation)
blackbox.dll -> C:\Windows\SysNative\blackbox.dll -> [2009/06/04 04:47:27 | 00,616,448 | ---- | C | MD5 = 89CA6D83DCB5D41FBF4D23BE5343F8A8] (Microsoft Corporation)
wiaaut.dll -> C:\Windows\SysWow64\wiaaut.dll -> [2009/06/04 04:47:27 | 00,547,840 | ---- | C | MD5 = 6E45D15DAAA98D105AB3280D2BCA7C13] (Microsoft Corporation)
cmdial32.dll -> C:\Windows\SysNative\cmdial32.dll -> [2009/06/04 04:47:27 | 00,521,216 | ---- | C | MD5 = 32AC6D36688923ECAE89B438BEFD6DB2] (Microsoft Corporation)
cmdial32.dll -> C:\Windows\SysWow64\cmdial32.dll -> [2009/06/04 04:47:27 | 00,481,792 | ---- | C | MD5 = 72EC7D98F26B962414899C83F20A9442] (Microsoft Corporation)
shwebsvc.dll -> C:\Windows\SysWow64\shwebsvc.dll -> [2009/06/04 04:47:27 | 00,425,472 | ---- | C | MD5 = 3F1B146BBB4F11E26543938F42257B86] (Microsoft Corporation)
taskcomp.dll -> C:\Windows\SysNative\taskcomp.dll -> [2009/06/04 04:47:27 | 00,409,600 | ---- | C | MD5 = 065A9580FA32807EB895EE4D512FEC1D] (Microsoft Corporation)
wlanmsm.dll -> C:\Windows\SysWow64\wlanmsm.dll -> [2009/06/04 04:47:27 | 00,293,376 | ---- | C | MD5 = 9D7C0037F4EFA36C35F7B5A48940B4F4] (Microsoft Corporation)
raschap.dll -> C:\Windows\SysWow64\raschap.dll -> [2009/06/04 04:47:27 | 00,281,088 | ---- | C | MD5 = 82A79D5BE740D0AE9C91AA6DE4B3AC5A] (Microsoft Corporation)
unimdm.tsp -> C:\Windows\SysWow64\unimdm.tsp -> [2009/06/04 04:47:27 | 00,280,064 | ---- | C | MD5 = B96B60EC821F86D445C9739A0F3DED59] (Microsoft Corporation)
rasppp.dll -> C:\Windows\SysWow64\rasppp.dll -> [2009/06/04 04:47:27 | 00,259,584 | ---- | C | MD5 = 8B645890A93F1FBBC7DA3E07CC72D762] (Microsoft Corporation)
wlanui.dll -> C:\Windows\SysWow64\wlanui.dll -> [2009/06/04 04:47:27 | 00,202,752 | ---- | C | MD5 = 94FF7D87E0639701DF79A40C436149C5] (Microsoft Corporation)
nwifi.sys -> C:\Windows\SysNative\drivers\nwifi.sys -> [2009/06/04 04:47:27 | 00,187,392 | ---- | C | MD5 = 2007B826C4ACD94AE32232B41F0842B9] (Microsoft Corporation)
wdmaud.drv -> C:\Windows\SysWow64\wdmaud.drv -> [2009/06/04 04:47:27 | 00,167,424 | ---- | C | MD5 = 4DF066ECEE5A7B20BF8B39EF4D646600] (Microsoft Corporation)
fontext.dll -> C:\Windows\SysWow64\fontext.dll -> [2009/06/04 04:47:27 | 00,142,336 | ---- | C | MD5 = 88198AEB7F71DD2F8B6176533D70F63E] (Microsoft Corporation)
dsprop.dll -> C:\Windows\SysWow64\dsprop.dll -> [2009/06/04 04:47:27 | 00,137,728 | ---- | C | MD5 = 187AA172E7A5BD212613FBB9D9F770D5] (Microsoft Corporation)
wlgpclnt.dll -> C:\Windows\SysNative\wlgpclnt.dll -> [2009/06/04 04:47:27 | 00,100,864 | ---- | C | MD5 = 9689076012A34CE4631D0CBFE148D092] (Microsoft Corporation)
SCardSvr.dll -> C:\Windows\SysWow64\SCardSvr.dll -> [2009/06/04 04:47:27 | 00,095,232 | ---- | C | MD5 = 77B7A11A0C3D78D3386398FBBEA1B632] (Microsoft Corporation)
fdWSD.dll -> C:\Windows\SysNative\fdWSD.dll -> [2009/06/04 04:47:27 | 00,081,408 | ---- | C | MD5 = 31519A9B25D4A8998EEC9C81E69269D9] (Microsoft Corporation)
rassstp.sys -> C:\Windows\SysNative\drivers\rassstp.sys -> [2009/06/04 04:47:27 | 00,078,336 | ---- | C | MD5 = C6A593B51F34C33E5474539544072527] (Microsoft Corporation)
wscsvc.dll -> C:\Windows\SysNative\wscsvc.dll -> [2009/06/04 04:47:27 | 00,074,752 | ---- | C | MD5 = 9EA3E6D0EF7A5C2B9181961052A4B01A] (Microsoft Corporation)
conime.exe -> C:\Windows\SysWow64\conime.exe -> [2009/06/04 04:47:27 | 00,069,120 | ---- | C | MD5 = 6080A176D09435FC8E6E800996656E18] (Microsoft Corporation)
cipher.exe -> C:\Windows\SysNative\cipher.exe -> [2009/06/04 04:47:27 | 00,067,584 | ---- | C | MD5 = FAA34F36E3AA7B0B373F702E2CEB21AC] (Microsoft Corporation)
dimsroam.dll -> C:\Windows\SysWow64\dimsroam.dll -> [2009/06/04 04:47:27 | 00,054,784 | ---- | C | MD5 = 8C5E46B7E724C216F55325FB77AB5ABD] (Microsoft Corporation)
MsCtfMonitor.dll -> C:\Windows\SysNative\MsCtfMonitor.dll -> [2009/06/04 04:47:27 | 00,026,112 | ---- | C | MD5 = B420EB9D254C2C16CCFBB09BCC6AB113] (Microsoft Corporation)
chtbrkr.dll -> C:\Windows\SysWow64\chtbrkr.dll -> [2009/06/04 04:47:26 | 06,103,040 | ---- | C | MD5 = 9247AB566A1DF0C012D1A518AB0FCD52] (Microsoft Corporation)
blackbox.dll -> C:\Windows\SysWow64\blackbox.dll -> [2009/06/04 04:47:26 | 00,542,720 | ---- | C | MD5 = 02F0BE91B0F2B1C30F6F48334F47D625] (Microsoft Corporation)
wmdrmsdk.dll -> C:\Windows\SysWow64\wmdrmsdk.dll -> [2009/06/04 04:47:26 | 00,533,504 | ---- | C | MD5 = 4DF10CE50010D70152944B51E03588B0] (Microsoft Corporation)
rstrui.exe -> C:\Windows\SysNative\rstrui.exe -> [2009/06/04 04:47:26 | 00,339,968 | ---- | C | MD5 = 8DBF26D220D8EE44D7A6286BE2F2C767] (Microsoft Corporation)
modemui.dll -> C:\Windows\SysWow64\modemui.dll -> [2009/06/04 04:47:26 | 00,288,256 | ---- | C | MD5 = 2E837F3D406224DF131C34BC8F71621E] (Microsoft Corporation)
input.dll -> C:\Windows\SysNative\input.dll -> [2009/06/04 04:47:26 | 00,257,024 | ---- | C | MD5 = 4E1C98C621E500B241614A8C533CC1E4] (Microsoft Corporation)
mscandui.dll -> C:\Windows\SysWow64\mscandui.dll -> [2009/06/04 04:47:26 | 00,218,624 | ---- | C | MD5 = 74E6A4BCEC88F11E5CCD3626BCFFD509] (Microsoft Corporation)
rasmontr.dll -> C:\Windows\SysNative\rasmontr.dll -> [2009/06/04 04:47:26 | 00,216,064 | ---- | C | MD5 = 66E5D0F89803A6BEB6E9E7494A8415AC] (Microsoft Corporation)
netplwiz.dll -> C:\Windows\SysWow64\netplwiz.dll -> [2009/06/04 04:47:26 | 00,180,736 | ---- | C | MD5 = 63EF059BD3CC6194C6514068979A543A] (Microsoft Corporation)
credui.dll -> C:\Windows\SysWow64\credui.dll -> [2009/06/04 04:47:26 | 00,178,176 | ---- | C | MD5 = 93E317D7AD783D8EAEE2E3500BFE889D] (Microsoft Corporation)
softkbd.dll -> C:\Windows\SysNative\softkbd.dll -> [2009/06/04 04:47:26 | 00,158,208 | ---- | C | MD5 = 2F4985D18E63504B30257E4E337C355F] (Microsoft Corporation)
rasmontr.dll -> C:\Windows\SysWow64\rasmontr.dll -> [2009/06/04 04:47:26 | 00,155,136 | ---- | C | MD5 = 74A20AB7737D972815556A016B46674A] (Microsoft Corporation)
btpanui.dll -> C:\Windows\SysNative\btpanui.dll -> [2009/06/04 04:47:26 | 00,109,056 | ---- | C | MD5 = 5B27827FA354F192D887AA7576BB0C3B] (Microsoft Corporation)
shsetup.dll -> C:\Windows\SysWow64\shsetup.dll -> [2009/06/04 04:47:26 | 00,101,376 | ---- | C | MD5 = C87DA82ADB2B3A50C764268684D7919D] (Microsoft Corporation)
wlgpclnt.dll -> C:\Windows\SysWow64\wlgpclnt.dll -> [2009/06/04 04:47:26 | 00,083,456 | ---- | C | MD5 = 91D995A67D9447592A1BF21CBC15C628] (Microsoft Corporation)
ohci1394.sys -> C:\Windows\SysNative\drivers\ohci1394.sys -> [2009/06/04 04:47:26 | 00,072,448 | ---- | C | MD5 = B5B1CE65AC15BBD11C0619E3EF7CFC28] (Microsoft Corporation)
dataclen.dll -> C:\Windows\SysWow64\dataclen.dll -> [2009/06/04 04:47:26 | 00,045,056 | ---- | C | MD5 = C2D9DA17737BF49E3B8E8E3C142B3008] (Microsoft Corporation)
cscapi.dll -> C:\Windows\SysNative\cscapi.dll -> [2009/06/04 04:47:26 | 00,038,400 | ---- | C | MD5 = 75C34D22D3E7D1D0238B62C55F604BFC] (Microsoft Corporation)
Apphlpdm.dll -> C:\Windows\SysNative\Apphlpdm.dll -> [2009/06/04 04:47:26 | 00,032,256 | ---- | C | MD5 = 95F88AF2FF2BE656998C7C42834DED36] (Microsoft Corporation)
findstr.exe -> C:\Windows\SysNative\findstr.exe -> [2009/06/04 04:47:26 | 00,029,696 | ---- | C | MD5 = 90787371516843E301C794C7E35FB44C] (Microsoft Corporation)
NcdProp.dll -> C:\Windows\SysNative\NcdProp.dll -> [2009/06/04 04:47:26 | 00,024,064 | ---- | C | MD5 = ED4D776031DDF0B0E4127D3D117B1B66] (Microsoft Corporation)
networkexplorer.dll -> C:\Windows\SysWow64\networkexplorer.dll -> [2009/06/04 04:47:25 | 02,226,688 | ---- | C | MD5 = 04044BF8E6989BE45FA718C24407CA28] (Microsoft Corporation)
WMADMOD.DLL -> C:\Windows\SysNative\WMADMOD.DLL -> [2009/06/04 04:47:25 | 00,946,176 | ---- | C | MD5 = 51031E18169332575721D7B7A6E5EE52] (Microsoft Corporation)
wmdrmnet.dll -> C:\Windows\SysNative\wmdrmnet.dll -> [2009/06/04 04:47:25 | 00,428,032 | ---- | C | MD5 = 991C17B9FA553A2F474142CD68312974] (Microsoft Corporation)
msscp.dll -> C:\Windows\SysWow64\msscp.dll -> [2009/06/04 04:47:25 | 00,414,208 | ---- | C | MD5 = 501F9CDADC4BF4069BC90B3C2BB298AE] (Microsoft Corporation)
thawbrkr.dll -> C:\Windows\SysWow64\thawbrkr.dll -> [2009/06/04 04:47:25 | 00,313,344 | ---- | C | MD5 = 1D74B130D34A945CA5795C92C1BF8E93] (Microsoft Corporation)
wmpeffects.dll -> C:\Windows\SysWow64\wmpeffects.dll -> [2009/06/04 04:47:25 | 00,303,616 | ---- | C | MD5 = 3F7572CD9C6DB0B25FE0863F36FF6B76] (Microsoft Corporation)
AUDIOKSE.dll -> C:\Windows\SysWow64\AUDIOKSE.dll -> [2009/06/04 04:47:25 | 00,274,944 | ---- | C | MD5 = 0495EEF29F5B39AB4763BF5DE28FA3AA] (Microsoft Corporation)
mstask.dll -> C:\Windows\SysNative\mstask.dll -> [2009/06/04 04:47:25 | 00,235,008 | ---- | C | MD5 = F54D10EA2FE5EC846603A4CABDD6F235] (Microsoft Corporation)
mpg2splt.ax -> C:\Windows\SysNative\mpg2splt.ax -> [2009/06/04 04:47:25 | 00,227,328 | ---- | C | MD5 = 28AC7FEA182333C38AB9322530B591F3] (Microsoft Corporation)
wpdwcn.dll -> C:\Windows\SysNative\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,223,232 | ---- | C | MD5 = CB57138FA7554ABCEA9F8307253A632C] (Microsoft Corporation)
InkEd.dll -> C:\Windows\SysWow64\InkEd.dll -> [2009/06/04 04:47:25 | 00,217,600 | ---- | C | MD5 = D2A8D0EE4EEAAE913A19AC37E2CD07ED] (Microsoft Corporation)
mdminst.dll -> C:\Windows\SysNative\mdminst.dll -> [2009/06/04 04:47:25 | 00,215,552 | ---- | C | MD5 = 0257570C58B4F482AC65B87B1D9E7FBA] (Microsoft Corporation)
PortableDeviceTypes.dll -> C:\Windows\SysNative\PortableDeviceTypes.dll -> [2009/06/04 04:47:25 | 00,214,528 | ---- | C | MD5 = 7326B6CA36F40384EF4817DDA09344CF] (Microsoft Corporation)
wpdwcn.dll -> C:\Windows\SysWow64\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,203,776 | ---- | C | MD5 = 5D9C083A316B1FEE442E9B3505C357E5] (Microsoft Corporation)
credui.dll -> C:\Windows\SysNative\credui.dll -> [2009/06/04 04:47:25 | 00,190,976 | ---- | C | MD5 = 77C276A0E431203EE56E52600A2575EA] (Microsoft Corporation)
WSDMon.dll -> C:\Windows\SysWow64\WSDMon.dll -> [2009/06/04 04:47:25 | 00,177,664 | ---- | C | MD5 = 0EB1CC5EBFCAAB7DBAEE881E2887F7F9] (Microsoft Corporation)
wpcsvc.dll -> C:\Windows\SysWow64\wpcsvc.dll -> [2009/06/04 04:47:25 | 00,140,288 | ---- | C | MD5 = CFC5A04558F5070CEE3E3A7809F3FF52] (Microsoft Corporation)
gpresult.exe -> C:\Windows\SysWow64\gpresult.exe -> [2009/06/04 04:47:25 | 00,128,000 | ---- | C | MD5 = F01C34454A2DBA34439C2FB2B6CDDB9A] (Microsoft Corporation)
softkbd.dll -> C:\Windows\SysWow64\softkbd.dll -> [2009/06/04 04:47:25 | 00,125,952 | ---- | C | MD5 = 39351FB421C6450FBDDB51B4FBA0155D] (Microsoft Corporation)
msctfui.dll -> C:\Windows\SysNative\msctfui.dll -> [2009/06/04 04:47:25 | 00,113,664 | ---- | C | MD5 = 724B0A07CD1B32E90A770CD94ADDFA03] (Microsoft Corporation)
logagent.exe -> C:\Windows\SysNative\logagent.exe -> [2009/06/04 04:47:25 | 00,112,640 | ---- | C | MD5 = 3CADC3DB8333B2162CA0CC8EF8062D75] (Microsoft Corporation)
adsmsext.dll -> C:\Windows\SysNative\adsmsext.dll -> [2009/06/04 04:47:25 | 00,105,472 | ---- | C | MD5 = C6E7B39C1AB4B8DC6883EFC72A770BED] (Microsoft Corporation)
logagent.exe -> C:\Windows\SysWow64\logagent.exe -> [2009/06/04 04:47:25 | 00,094,720 | ---- | C | MD5 = C634E1F76E1FCA6D010F279A2FFF95E6] (Microsoft Corporation)
sendmail.dll -> C:\Windows\SysWow64\sendmail.dll -> [2009/06/04 04:47:25 | 00,069,632 | ---- | C | MD5 = ED3CA4BCB1F7C14B369019BEC6A4448D] (Microsoft Corporation)
cipher.exe -> C:\Windows\SysWow64\cipher.exe -> [2009/06/04 04:47:25 | 00,058,368 | ---- | C | MD5 = 9E447B628CBF81F006218E7B6127B7E2] (Microsoft Corporation)
cdd.dll -> C:\Windows\SysNative\cdd.dll -> [2009/06/04 04:47:25 | 00,047,104 | ---- | C | MD5 = 40D8CB1E16C541327FFFFA3F756A3656] (Microsoft Corporation)
deskmon.dll -> C:\Windows\SysNative\deskmon.dll -> [2009/06/04 04:47:25 | 00,046,592 | ---- | C | MD5 = 5070DA479999F0525FA2BBB3160E76D1] (Microsoft Corporation)
wscapi.dll -> C:\Windows\SysWow64\wscapi.dll -> [2009/06/04 04:47:25 | 00,033,280 | ---- | C | MD5 = A0F4852A5DB9754BEC06F84B400AE743] (Microsoft Corporation)
msimtf.dll -> C:\Windows\SysWow64\msimtf.dll -> [2009/06/04 04:47:25 | 00,031,232 | ---- | C | MD5 = AC6B8F8058EE27932F9AF8A2D959D201] (Microsoft Corporation)
ifmon.dll -> C:\Windows\SysWow64\ifmon.dll -> [2009/06/04 04:47:25 | 00,029,696 | ---- | C | MD5 = 17CBA378C42E4525A3BC9DDD77EF5DD2] (Microsoft Corporation)
version.dll -> C:\Windows\SysNative\version.dll -> [2009/06/04 04:47:25 | 00,027,136 | ---- | C | MD5 = EA3D2B63BA304EB6EDABBAFA21599B47] (Microsoft Corporation)
WMSPDMOD.DLL -> C:\Windows\SysNative\WMSPDMOD.DLL -> [2009/06/04 04:47:24 | 00,818,688 | ---- | C | MD5 = 5B3949DE5697E40FC3CA7084649E7F88] (Microsoft Corporation)
wmdrmdev.dll -> C:\Windows\SysWow64\wmdrmdev.dll -> [2009/06/04 04:47:24 | 00,418,304 | ---- | C | MD5 = 717F6AD9E35383E2AA5C6B946AAD23AF] (Microsoft Corporation)
MediaMetadataHandler.dll -> C:\Windows\SysNative\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,403,456 | ---- | C | MD5 = A037DCD348601056CF65E701D4D60738] (Microsoft Corporation)
MediaMetadataHandler.dll -> C:\Windows\SysWow64\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,356,864 | ---- | C | MD5 = 8DDFDF8A433DC09F92ACA1F3DE4DE067] (Microsoft Corporation)
drmmgrtn.dll -> C:\Windows\SysWow64\drmmgrtn.dll -> [2009/06/04 04:47:24 | 00,284,672 | ---- | C | MD5 = D01817B15EFF45054FC24D63AD183F72] (Microsoft Corporation)
WSDMon.dll -> C:\Windows\SysNative\WSDMon.dll -> [2009/06/04 04:47:24 | 00,214,016 | ---- | C | MD5 = DE0EED5106BD03CE11CDBF690285FE6C] (Microsoft Corporation)
input.dll -> C:\Windows\SysWow64\input.dll -> [2009/06/04 04:47:24 | 00,200,704 | ---- | C | MD5 = A763901E05BBF173CE4C01D1E82B20D3] (Microsoft Corporation)
MSAC3ENC.DLL -> C:\Windows\SysNative\MSAC3ENC.DLL -> [2009/06/04 04:47:24 | 00,193,536 | ---- | C | MD5 = ECF31DDAF1F479889671C1C8A376EBDA] (Microsoft Corporation)
mpg2splt.ax -> C:\Windows\SysWow64\mpg2splt.ax -> [2009/06/04 04:47:24 | 00,177,664 | ---- | C | MD5 = 5AF065566779B0D716EA413816B73AD4] (Microsoft Corporation)
puiapi.dll -> C:\Windows\SysWow64\puiapi.dll -> [2009/06/04 04:47:24 | 00,166,400 | ---- | C | MD5 = D1F4E028FDC4F8BACB94E07B44969C4E] (Microsoft Corporation)
mprapi.dll -> C:\Windows\SysNative\mprapi.dll -> [2009/06/04 04:47:24 | 00,129,536 | ---- | C | MD5 = F77B49A32331FA80F11C86877A6700DB] (Microsoft Corporation)
SMBHelperClass.dll -> C:\Windows\SysNative\SMBHelperClass.dll -> [2009/06/04 04:47:24 | 00,116,736 | ---- | C | MD5 = 7168FF41C6B0145D846AECE996220A9E] (Microsoft)
dmsynth.dll -> C:\Windows\SysWow64\dmsynth.dll -> [2009/06/04 04:47:24 | 00,105,472 | ---- | C | MD5 = 8527C6F8DFF8CD9502FC4688CCBAEF77] (Microsoft Corporation)
mprapi.dll -> C:\Windows\SysWow64\mprapi.dll -> [2009/06/04 04:47:24 | 00,097,792 | ---- | C | MD5 = 56E315ACFB08A177B4D01E42B9044DB5] (Microsoft Corporation)
olepro32.dll -> C:\Windows\SysWow64\olepro32.dll -> [2009/06/04 04:47:24 | 00,088,576 | ---- | C | MD5 = A944A73CEC5921B871542FE5CC5E03E4] (Microsoft Corporation)
smb.sys -> C:\Windows\SysNative\drivers\smb.sys -> [2009/06/04 04:47:24 | 00,088,064 | ---- | C | MD5 = 290B6F6A0EC4FCDFC90F5CB6D7020473] (Microsoft Corporation)
msctfui.dll -> C:\Windows\SysWow64\msctfui.dll -> [2009/06/04 04:47:24 | 00,085,504 | ---- | C | MD5 = 7570C39D5CA95CFF5E3D49789A347542] (Microsoft Corporation)
fdSSDP.dll -> C:\Windows\SysNative\fdSSDP.dll -> [2009/06/04 04:47:24 | 00,083,968 | ---- | C | MD5 = DDCDE414B6DB14707DBD504EB23EF13E] (Microsoft Corporation)
rshx32.dll -> C:\Windows\SysNative\rshx32.dll -> [2009/06/04 04:47:24 | 00,053,760 | ---- | C | MD5 = 6F7B7F50E25C99E7AFA466565920DC36] (Microsoft Corporation)
FwRemoteSvr.dll -> C:\Windows\SysNative\FwRemoteSvr.dll -> [2009/06/04 04:47:24 | 00,050,176 | ---- | C | MD5 = 14DC30962660BA05F1F54EB11AA5A2B4] (Microsoft Corporation)
deskadp.dll -> C:\Windows\SysNative\deskadp.dll -> [2009/06/04 04:47:24 | 00,049,664 | ---- | C | MD5 = 0ADC37AC189C7DE1EF753AA89B23AF5B] (Microsoft Corporation)
wshbth.dll -> C:\Windows\SysWow64\wshbth.dll -> [2009/06/04 04:47:24 | 00,034,304 | ---- | C | MD5 = EFA80360111D8D179E39E314A49C9ED4] (Microsoft Corporation)
cscdll.dll -> C:\Windows\SysNative\cscdll.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 884C24919B57C1B03B21DD62399D1491] (Microsoft Corporation)
Apphlpdm.dll -> C:\Windows\SysWow64\Apphlpdm.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 2C4AC5541ADB54DEF9244F87F9AD6AF8] (Microsoft Corporation)
ExplorerFrame.dll -> C:\Windows\SysWow64\ExplorerFrame.dll -> [2009/06/04 04:47:24 | 00,020,992 | ---- | C | MD5 = 61216539E55DDF2F78E421E7EF140650] (Microsoft Corporation)
version.dll -> C:\Windows\SysWow64\version.dll -> [2009/06/04 04:47:24 | 00,020,480 | ---- | C | MD5 = 69827805A221C21450BA22F4326A2EE3] (Microsoft Corporation)
fc.exe -> C:\Windows\SysWow64\fc.exe -> [2009/06/04 04:47:24 | 00,019,968 | ---- | C | MD5 = 3105CFE0ADAAED21148597001478E89F] (Microsoft Corporation)
rasdial.exe -> C:\Windows\SysNative\rasdial.exe -> [2009/06/04 04:47:24 | 00,018,944 | ---- | C | MD5 = 7C2E6D36766468987CDA22A2C499A8A5] (Microsoft Corporation)
msisip.dll -> C:\Windows\SysWow64\msisip.dll -> [2009/06/04 04:47:24 | 00,016,384 | ---- | C | MD5 = 2955A48BE10FD1F7A112B0A890A6271D] (Microsoft Corporation)
hidusb.sys -> C:\Windows\SysNative\drivers\hidusb.sys -> [2009/06/04 04:47:24 | 00,015,872 | ---- | C | MD5 = 443BDD2D30BB4F00795C797E2CF99EDF] (Microsoft Corporation)
networkexplorer.dll -> C:\Windows\SysNative\networkexplorer.dll -> [2009/06/04 04:47:23 | 02,247,168 | ---- | C | MD5 = E572915DB4DAD7F062D99334D9F10BFF] (Microsoft Corporation)
WMADMOD.DLL -> C:\Windows\SysWow64\WMADMOD.DLL -> [2009/06/04 04:47:23 | 00,758,784 | ---- | C | MD5 = D3679C1B53E4E1BF9B99AFB0FD3966B1] (Microsoft Corporation)
wmpps.dll -> C:\Windows\SysNative\wmpps.dll -> [2009/06/04 04:47:23 | 00,434,176 | ---- | C | MD5 = 6B80D55576B222FDF6F8407D6237EFC6] (Microsoft Corporation)
wmdrmnet.dll -> C:\Windows\SysWow64\wmdrmnet.dll -> [2009/06/04 04:47:23 | 00,347,648 | ---- | C | MD5 = A8D2C8BE9C499266A485264FD55819FF] (Microsoft Corporation)
eapp3hst.dll -> C:\Windows\SysNative\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,291,840 | ---- | C | MD5 = 05ECDC5250F707C729BB5D3B08285EA6] (Microsoft Corporation)
wscntfy.dll -> C:\Windows\SysNative\wscntfy.dll -> [2009/06/04 04:47:23 | 00,231,424 | ---- | C | MD5 = 70DD82E202BD8022452DC8D2B73231AA] (Microsoft Corporation)
wdmaud.drv -> C:\Windows\SysNative\wdmaud.drv -> [2009/06/04 04:47:23 | 00,212,992 | ---- | C | MD5 = 35FBB6F5993C9EE70CDB72CC8AAB5D38] (Microsoft Corporation)
mfps.dll -> C:\Windows\SysNative\mfps.dll -> [2009/06/04 04:47:23 | 00,194,560 | ---- | C | MD5 = E01582FE7EFCA6F3AD64377D62E7A1D7] (Microsoft Corporation)
eapp3hst.dll -> C:\Windows\SysWow64\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,187,904 | ---- | C | MD5 = 1303F1E8C79BDB50EA942B7494761EB8] (Microsoft Corporation)
PortableDeviceTypes.dll -> C:\Windows\SysWow64\PortableDeviceTypes.dll -> [2009/06/04 04:47:23 | 00,160,768 | ---- | C | MD5 = 290A5AA84C6F06E0B82E94F419FEE9C5] (Microsoft Corporation)
aaclient.dll -> C:\Windows\SysNative\aaclient.dll -> [2009/06/04 04:47:23 | 00,151,552 | ---- | C | MD5 = B153AAE12936788390696BE6B34186C6] (Microsoft Corporation)
mydocs.dll -> C:\Windows\SysNative\mydocs.dll -> [2009/06/04 04:47:23 | 00,143,360 | ---- | C | MD5 = 9031F95454316C6FC229D0FE4A535CD8] (Microsoft Corporation)
aaclient.dll -> C:\Windows\SysWow64\aaclient.dll -> [2009/06/04 04:47:23 | 00,136,192 | ---- | C | MD5 = 11CBE5E2940FC6CBD041779B0F707E6F] (Microsoft Corporation)
tintlgnt.ime -> C:\Windows\SysWow64\tintlgnt.ime -> [2009/06/04 04:47:23 | 00,125,952 | ---- | C | MD5 = AE240477D5C1EB209D172FE9D9D0C121] (Microsoft Corporation)
PortableDeviceClassExtension.dll -> C:\Windows\SysNative\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,105,472 | ---- | C | MD5 = 2631DE1DA75E6D589520F19E6BEB85C9] (Microsoft Corporation)
dmusic.dll -> C:\Windows\SysWow64\dmusic.dll -> [2009/06/04 04:47:23 | 00,101,888 | ---- | C | MD5 = 0FEA204289B8C5EAC19C1BC3809ECCF0] (Microsoft Corporation)
dxg.sys -> C:\Windows\SysNative\drivers\dxg.sys -> [2009/06/04 04:47:23 | 00,098,816 | ---- | C | MD5 = 59E9264A96CA82C5CCFBE14523934104] (Microsoft Corporation)
PortableDeviceClassExtension.dll -> C:\Windows\SysWow64\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,094,720 | ---- | C | MD5 = 5A87FD90634C9A05157469DA2441EBB4] (Microsoft Corporation)
fdWCN.dll -> C:\Windows\SysNative\fdWCN.dll -> [2009/06/04 04:47:23 | 00,089,088 | ---- | C | MD5 = 4EA0133FC219D00F63816D7FF540989A] (Microsoft Corporation)
gpapi.dll -> C:\Windows\SysNative\gpapi.dll -> [2009/06/04 04:47:23 | 00,084,480 | ---- | C | MD5 = 899F834C330A96A80EC36DAEDA2FF018] (Microsoft Corporation)
SMBHelperClass.dll -> C:\Windows\SysWow64\SMBHelperClass.dll -> [2009/06/04 04:47:23 | 00,083,456 | ---- | C | MD5 = 81638E6E467193699B5A800732ECBDE4] (Microsoft)
MSNP.ax -> C:\Windows\SysWow64\MSNP.ax -> [2009/06/04 04:47:23 | 00,080,896 | ---- | C | MD5 = BDDE0F9ED0F89E16B63401D9EC033870] (Microsoft Corporation)
PNPXAssoc.dll -> C:\Windows\SysNative\PNPXAssoc.dll -> [2009/06/04 04:47:23 | 00,075,264 | ---- | C | MD5 = A486EC7C6D3345448DC7E4475B531FE8] (Microsoft Corporation)
fdWCN.dll -> C:\Windows\SysWow64\fdWCN.dll -> [2009/06/04 04:47:23 | 00,069,120 | ---- | C | MD5 = 78700DB5A0C319A9C3765F0673140092] (Microsoft Corporation)
fdSSDP.dll -> C:\Windows\SysWow64\fdSSDP.dll -> [2009/06/04 04:47:23 | 00,068,096 | ---- | C | MD5 = 443C5961CACD4ABC16648874AF06E4A0] (Microsoft Corporation)
Storprop.dll -> C:\Windows\SysNative\Storprop.dll -> [2009/06/04 04:47:23 | 00,065,024 | ---- | C | MD5 = 0B6A036AC887DC20E677BF26A319C3A9] (Microsoft Corporation)
dot3cfg.dll -> C:\Windows\SysNative\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,062,976 | ---- | C | MD5 = E9B3B0104D974AF4BA592C3B0FC30875] (Microsoft Corporation)
rrinstaller.exe -> C:\Windows\SysNative\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,060,416 | ---- | C | MD5 = EAC71F00589AE3F845E5F9FEC5939E09] (Microsoft Corporation)
rrinstaller.exe -> C:\Windows\SysWow64\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,053,248 | ---- | C | MD5 = F6A9BE76DC7FA60BB9E3B14E504CB22F] (Microsoft Corporation)
rasdiag.dll -> C:\Windows\SysWow64\rasdiag.dll -> [2009/06/04 04:47:23 | 00,052,736 | ---- | C | MD5 = 1361CD59C411F47E2E2829B9A44BADD4] (Microsoft Corporation)
hbaapi.dll -> C:\Windows\SysNative\hbaapi.dll -> [2009/06/04 04:47:23 | 00,051,200 | ---- | C | MD5 = A4DE833AF637E17827D199BEF8322000] (Microsoft Corporation)
dot3cfg.dll -> C:\Windows\SysWow64\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,049,664 | ---- | C | MD5 = 07D79E9B1569ECC5EFC487E9F4C8235D] (Microsoft Corporation)
l2nacp.dll -> C:\Windows\SysWow64\l2nacp.dll -> [2009/06/04 04:47:23 | 00,048,128 | ---- | C | MD5 = 44DA7EE9F50381DBA0F63BB2401DC8FD] (Microsoft Corporation)
ftp.exe -> C:\Windows\SysNative\ftp.exe -> [2009/06/04 04:47:23 | 00,047,616 | ---- | C | MD5 = 83E4DD677E0DF98294E273DCEC39E53E] (Microsoft Corporation)
bthci.dll -> C:\Windows\SysNative\bthci.dll -> [2009/06/04 04:47:23 | 00,046,592 | ---- | C | MD5 = 47F2A54950EEDD33A9C3889CF3B1B436] (Microsoft Corporation)
ftp.exe -> C:\Windows\SysWow64\ftp.exe -> [2009/06/04 04:47:23 | 00,041,984 | ---- | C | MD5 = 1E2940E465AA5B2C4840E8D220BF1F32] (Microsoft Corporation)
bthudtask.exe -> C:\Windows\SysWow64\bthudtask.exe -> [2009/06/04 04:47:23 | 00,034,304 | ---- | C | MD5 = 7F5936A3FF5E83272EA1DC8985B2A228] (Microsoft Corporation)
cscapi.dll -> C:\Windows\SysWow64\cscapi.dll -> [2009/06/04 04:47:23 | 00,031,744 | ---- | C | MD5 = D922592AB65C5D9B88B30B4510A3464E] (Microsoft Corporation)
tdi.sys -> C:\Windows\SysNative\drivers\tdi.sys -> [2009/06/04 04:47:23 | 00,026,112 | ---- | C | MD5 = C39A90534C5B1E28B8BC8B38A3900AFF] (Microsoft Corporation)
msjint40.dll -> C:\Windows\SysWow64\msjint40.dll -> [2009/06/04 04:47:23 | 00,024,576 | ---- | C | MD5 = 9371540C7231BC156501AB933F269762] (Microsoft Corporation)
cscdll.dll -> C:\Windows\SysWow64\cscdll.dll -> [2009/06/04 04:47:23 | 00,022,016 | ---- | C | MD5 = C1BB3EF5FAFCBC9573DEEB57E8DF9309] (Microsoft Corporation)
wsdchngr.dll -> C:\Windows\SysWow64\wsdchngr.dll -> [2009/06/04 04:47:23 | 00,020,992 | ---- | C | MD5 = 4DBA143F06BAD1DF935CB9603140CF2A] (Microsoft Corporation)
MsCtfMonitor.dll -> C:\Windows\SysWow64\MsCtfMonitor.dll -> [2009/06/04 04:47:23 | 00,019,456 | ---- | C | MD5 = 43E1054C713C48D252A1826C5E14AACA] (Microsoft Corporation)
rasdial.exe -> C:\Windows\SysWow64\rasdial.exe -> [2009/06/04 04:47:23 | 00,016,896 | ---- | C | MD5 = CE89D942BECC4E4350FC76D4A0443997] (Microsoft Corporation)
CHxReadingStringIME.dll -> C:\Windows\SysNative\CHxReadingStringIME.dll -> [2009/06/04 04:47:23 | 00,012,800 | ---- | C | MD5 = D1CC48039B7914C42A48A19DF56489BC] (Microsoft Corporation)
MSMPEG2ENC.DLL -> C:\Windows\SysWow64\MSMPEG2ENC.DLL -> [2009/06/04 04:47:22 | 00,506,880 | ---- | C | MD5 = 64C738D1F96D1D04CAAAD5F5FB72A85D] (Microsoft Corporation)
eappcfg.dll -> C:\Windows\SysNative\eappcfg.dll -> [2009/06/04 04:47:22 | 00,211,456 | ---- | C | MD5 = 03FDED7449428CE493432EE35FE5A2FB] (Microsoft Corporation)
SLLUA.exe -> C:\Windows\SysNative\SLLUA.exe -> [2009/06/04 04:47:22 | 00,190,464 | ---- | C | MD5 = 3C4AFFB870029E26CDEB5F41DA1982ED] (Microsoft Corporation)
MSAC3ENC.DLL -> C:\Windows\SysWow64\MSAC3ENC.DLL -> [2009/06/04 04:47:22 | 00,160,256 | ---- | C | MD5 = 7F2D7F2D147A600518351E8F8ECBB114] (Microsoft Corporation)
eappcfg.dll -> C:\Windows\SysWow64\eappcfg.dll -> [2009/06/04 04:47:22 | 00,135,680 | ---- | C | MD5 = 5D0FE613570CABE3992F7DBCD68E61D1] (Microsoft Corporation)
eappgnui.dll -> C:\Windows\SysNative\eappgnui.dll -> [2009/06/04 04:47:22 | 00,104,448 | ---- | C | MD5 = B013D8A6989CC1603F15BE372E779329] (Microsoft Corporation)
mfps.dll -> C:\Windows\SysWow64\mfps.dll -> [2009/06/04 04:47:22 | 00,098,816 | ---- | C | MD5 = EFD23147B334B686E614A9B8806DBAA6] (Microsoft Corporation)
dfsc.sys -> C:\Windows\SysNative\drivers\dfsc.sys -> [2009/06/04 04:47:22 | 00,097,792 | ---- | C | MD5 = 36CD31121F228E7E79BAE60AA45764C6] (Microsoft Corporation)
eappgnui.dll -> C:\Windows\SysWow64\eappgnui.dll -> [2009/06/04 04:47:22 | 00,093,696 | ---- | C | MD5 = BBE1CD4620CBA35F383E5C499F5CECA5] (Microsoft Corporation)
nslookup.exe -> C:\Windows\SysWow64\nslookup.exe -> [2009/06/04 04:47:22 | 00,082,944 | ---- | C | MD5 = BCAA8437FC3CC898C76BA120F88CFBCD] (Microsoft Corporation)
tscupgrd.exe -> C:\Windows\SysWow64\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,063,488 | ---- | C | MD5 = C349AED1B0201258217ADBCEEA49623A] (Microsoft Corporation)
tscupgrd.exe -> C:\Windows\SysNative\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,062,464 | ---- | C | MD5 = AACD89BC01844644FF70EE7C62A249EE] (Microsoft Corporation)
fdeploy.dll -> C:\Windows\SysWow64\fdeploy.dll -> [2009/06/04 04:47:22 | 00,053,760 | ---- | C | MD5 = BFEB58743A6D96B609DA0F1FD0ACE4EB] (Microsoft Corporation)
tsgqec.dll -> C:\Windows\SysWow64\tsgqec.dll -> [2009/06/04 04:47:22 | 00,053,248 | ---- | C | MD5 = 197A6855F30CE60D3C93E6072EF742A7] (Microsoft Corporation)
networkitemfactory.dll -> C:\Windows\SysNative\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,052,224 | ---- | C | MD5 = 9E0B212585249A2B14547A0599ECAEF2] (Microsoft Corporation)
cbsra.exe -> C:\Windows\SysNative\cbsra.exe -> [2009/06/04 04:47:22 | 00,047,104 | ---- | C | MD5 = 170AC0E881F1132921F0093B4285800B] (Microsoft Corporation)
bitsigd.dll -> C:\Windows\SysNative\bitsigd.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 980F1A36B970F5AE361C5C2A90C9E972] (Microsoft Corporation)
slcinst.dll -> C:\Windows\SysNative\slcinst.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 2FE0D0DA82A9C680F3A911D95819080B] (Microsoft Corporation)
tsgqec.dll -> C:\Windows\SysNative\tsgqec.dll -> [2009/06/04 04:47:22 | 00,045,056 | ---- | C | MD5 = C767BC5E320C4621A2A1980BD2D3E9F2] (Microsoft Corporation)
slcinst.dll -> C:\Windows\SysWow64\slcinst.dll -> [2009/06/04 04:47:22 | 00,042,496 | ---- | C | MD5 = FE78D886A33624E0FA74164B274DE7A8] (Microsoft Corporation)
hbaapi.dll -> C:\Windows\SysWow64\hbaapi.dll -> [2009/06/04 04:47:22 | 00,041,472 | ---- | C | MD5 = 9F4C8DA21AC626BFB92DD9C7C6FF7F23] (Microsoft Corporation)
wscapi.dll -> C:\Windows\SysNative\wscapi.dll -> [2009/06/04 04:47:22 | 00,040,448 | ---- | C | MD5 = 2CAB7B034B867AAB48D298F93D04BD3E] (Microsoft Corporation)
networkitemfactory.dll -> C:\Windows\SysWow64\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,039,936 | ---- | C | MD5 = A479AE2DA6D04C4DBC3A76C4B6347E78] (Microsoft Corporation)
ocsetup.exe -> C:\Windows\SysNative\ocsetup.exe -> [2009/06/04 04:47:22 | 00,038,400 | ---- | C | MD5 = 3D46EF4CA4FFF3E5B2F20762E0717FA1] (Microsoft Corporation)
ocsetup.exe -> C:\Windows\SysWow64\ocsetup.exe -> [2009/06/04 04:47:22 | 00,035,840 | ---- | C | MD5 = BC89C1733F25EEADD9C765D2C9C0E8B8] (Microsoft Corporation)
mfpmp.exe -> C:\Windows\SysNative\mfpmp.exe -> [2009/06/04 04:47:22 | 00,034,304 | ---- | C | MD5 = 9A04DEFE7359B182DB5DBE84483CB5FE] (Microsoft Corporation)
FwRemoteSvr.dll -> C:\Windows\SysWow64\FwRemoteSvr.dll -> [2009/06/04 04:47:22 | 00,028,672 | ---- | C | MD5 = 42608AE9AF2641EE473A1797C25CFFC2] (Microsoft Corporation)
ipconfig.exe -> C:\Windows\SysWow64\ipconfig.exe -> [2009/06/04 04:47:22 | 00,026,624 | ---- | C | MD5 = A5CBBED853E6183D4E067B42B73A20DA] (Microsoft Corporation)
msacm32.drv -> C:\Windows\SysNative\msacm32.drv -> [2009/06/04 04:47:22 | 00,025,600 | ---- | C | MD5 = 9A328CC4E4490E929E30332AC902CAC1] (Microsoft Corporation)
mfpmp.exe -> C:\Windows\SysWow64\mfpmp.exe -> [2009/06/04 04:47:22 | 00,024,576 | ---- | C | MD5 = 8F5F5038465559C754D0C72FF74660D4] (Microsoft Corporation)
msacm32.drv -> C:\Windows\SysWow64\msacm32.drv -> [2009/06/04 04:47:22 | 00,021,504 | ---- | C | MD5 = 166F004D73EA2CF4AC61800CA469458D] (Microsoft Corporation)
gpupdate.exe -> C:\Windows\SysWow64\gpupdate.exe -> [2009/06/04 04:47:22 | 00,016,896 | ---- | C | MD5 = BADB6B77C2C9F729528543D79418429F] (Microsoft Corporation)
mmcico.dll -> C:\Windows\SysWow64\mmcico.dll -> [2009/06/04 04:47:22 | 00,012,800 | ---- | C | MD5 = E1A0CB2579D30466E43957E98B68A586] (Microsoft Corporation)
CHxReadingStringIME.dll -> C:\Windows\SysWow64\CHxReadingStringIME.dll -> [2009/06/04 04:47:22 | 00,010,752 | ---- | C | MD5 = 3048B1D3029D5D8424E018BD7FBFDA75] (Microsoft Corporation)
wmpps.dll -> C:\Windows\SysWow64\wmpps.dll -> [2009/06/04 04:47:21 | 00,131,072 | ---- | C | MD5 = 94BEEEBD916F7836EEF2CCA38218BD31] (Microsoft Corporation)
cdrom.sys -> C:\Windows\SysNative\drivers\cdrom.sys -> [2009/06/04 04:47:21 | 00,079,872 | ---- | C | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
vss_ps.dll -> C:\Windows\SysNative\vss_ps.dll -> [2009/06/04 04:47:21 | 00,060,416 | ---- | C | MD5 = 71C53455C533E3DD8A93466B123DDB39] (Microsoft Corporation)
odbcconf.dll -> C:\Windows\SysNative\odbcconf.dll -> [2009/06/04 04:47:21 | 00,045,056 | ---- | C | MD5 = 2C70DC0FD91CFEFB9B047DAA27E112FD] (Microsoft Corporation)
odbcconf.dll -> C:\Windows\SysWow64\odbcconf.dll -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 87F1B6EF700AF7C0BCEBE380964EE9DE] (Microsoft Corporation)
RNDISMP.sys -> C:\Windows\SysNative\drivers\RNDISMP.sys -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 0EAA68043CDED5DC83351A4931E66987] (Microsoft Corporation)
bthudtask.exe -> C:\Windows\SysNative\bthudtask.exe -> [2009/06/04 04:47:21 | 00,035,840 | ---- | C | MD5 = 69BDE89D95561C06DC1FF5497C7D2648] (Microsoft Corporation)
usbohci.sys -> C:\Windows\SysNative\drivers\usbohci.sys -> [2009/06/04 04:47:21 | 00,024,064 | ---- | C | MD5 = E406B003A354776D317762694956B0FC] (Microsoft Corporation)
midimap.dll -> C:\Windows\SysNative\midimap.dll -> [2009/06/04 04:47:21 | 00,020,480 | ---- | C | MD5 = 62BDB059ED8AE0C63E33BBF990941E0F] (Microsoft Corporation)
winrnr.dll -> C:\Windows\SysWow64\winrnr.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = C411C80F90D6732380352B98B37BBD53] (Microsoft Corporation)
NcdProp.dll -> C:\Windows\SysWow64\NcdProp.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = 1C4DB2F8A68BF7BF891E76C429129DFD] (Microsoft Corporation)
usb8023.sys -> C:\Windows\SysNative\drivers\usb8023.sys -> [2009/06/04 04:47:21 | 00,019,456 | ---- | C | MD5 = F4F8D86E6FCAB839438B23DFAFC7951F] (Microsoft Corporation)
vdmdbg.dll -> C:\Windows\SysWow64\vdmdbg.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = DF1F51D2938A403BFE671B13A12FA434] (Microsoft Corporation)
midimap.dll -> C:\Windows\SysWow64\midimap.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 83199EF88D691E730B80666E29F90D58] (Microsoft Corporation)
inetppui.dll -> C:\Windows\SysNative\inetppui.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 7B207E9923716BD040FF56C9EC1DF7B2] (Microsoft Corporation)
iscsilog.dll -> C:\Windows\SysNative\iscsilog.dll -> [2009/06/04 04:47:21 | 00,016,384 | ---- | C | MD5 = C8EFA4244000C88E92B0DB80C63AFAE0] (Microsoft Corporation)
slwga.dll -> C:\Windows\SysWow64\slwga.dll -> [2009/06/04 04:47:21 | 00,012,288 | ---- | C | MD5 = DA887F28054D78EE8637BEBB924A2DB5] (Microsoft Corporation)
RacUR.xml -> C:\Windows\SysWow64\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
RacUR.xml -> C:\Windows\SysNative\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
wmploc.DLL -> C:\Windows\SysNative\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,968 | ---- | C | MD5 = 23462A3BDBD5EF4DE119950176054455] (Microsoft Corporation)
wmploc.DLL -> C:\Windows\SysWow64\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,456 | ---- | C | MD5 = CC41E8691F0685EA9A820E40FE541500] (Microsoft Corporation)
stream.sys -> C:\Windows\SysNative\drivers\stream.sys -> [2009/06/04 04:47:20 | 00,068,224 | ---- | C | MD5 = EB69069B969F4252A3BDE2BB3621811E] (Microsoft Corporation)
raspppoe.sys -> C:\Windows\SysNative\drivers\raspppoe.sys -> [2009/06/04 04:47:20 | 00,050,176 | ---- | C | MD5 = 4517FBF8B42524AFE4EDE1DE102AAE3E] (Microsoft Corporation)
f3ahvoas.dll -> C:\Windows\SysNative\f3ahvoas.dll -> [2009/06/04 04:47:20 | 00,033,280 | ---- | C | MD5 = 1BC63DDF769D3D6887565F774E177B7A] (Microsoft Corporation)
Diskdump.sys -> C:\Windows\SysNative\drivers\Diskdump.sys -> [2009/06/04 04:47:20 | 00,019,968 | ---- | C | MD5 = 3333213D1902942196D7BFF8E34FFB7F] (Microsoft Corporation)
wow64cpu.dll -> C:\Windows\SysNative\wow64cpu.dll -> [2009/06/04 04:47:20 | 00,017,408 | ---- | C | MD5 = CA9EECC6092B9C2CE86D95C04B51BA20] (Microsoft Corporation)
spwmp.dll -> C:\Windows\SysNative\spwmp.dll -> [2009/06/04 04:47:20 | 00,009,216 | ---- | C | MD5 = 304C0C318EF9E45FF0934DA87C34FA32] (Microsoft Corporation)
spwmp.dll -> C:\Windows\SysWow64\spwmp.dll -> [2009/06/04 04:47:20 | 00,007,680 | ---- | C | MD5 = 9D7330628360245D3FB8779C831BCCDE] (Microsoft Corporation)
msdxm.ocx -> C:\Windows\SysNative\msdxm.ocx -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
dxmasf.dll -> C:\Windows\SysNative\dxmasf.dll -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
msdxm.ocx -> C:\Windows\SysWow64\msdxm.ocx -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
dxmasf.dll -> C:\Windows\SysWow64\dxmasf.dll -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
f3ahvoas.dll -> C:\Windows\SysWow64\f3ahvoas.dll -> [2009/06/04 04:47:19 | 00,007,680 | ---- | C | MD5 = F42DC8DD28EC15507F44B801273E758E] (Microsoft Corporation)
msimsg.dll -> C:\Windows\SysNative\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = FCD84867883C365A24C61E50AF8A6DB9] (Microsoft Corporation)
msimsg.dll -> C:\Windows\SysWow64\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = ED21401F1E2F6BC2F54C462BB66D0D6B] (Microsoft Corporation)
mferror.dll -> C:\Windows\SysWow64\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = A5C978DD5B123D6070B2076FF3B36600] (Microsoft Corporation)
mferror.dll -> C:\Windows\SysNative\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = 45415CC9CE3979EDC93F9856D9ED22BF] (Microsoft Corporation)
bthport.sys.mui -> C:\Windows\SysNative\drivers\en-US\bthport.sys.mui -> [2009/06/04 04:47:18 | 00,007,680 | ---- | C | MD5 = 81F35F34188E8BBE153F895717E27214] (Microsoft Corporation)
hdaudbus.sys.mui -> C:\Windows\SysNative\drivers\en-US\hdaudbus.sys.mui -> [2009/06/04 04:47:18 | 00,003,584 | ---- | C | MD5 = AC8A0B65B6285EBA73968BC49BA9C640] (Microsoft Corporation)
wdscore.dll -> C:\Windows\SysWow64\wdscore.dll -> [2009/06/04 04:47:13 | 00,218,624 | ---- | C | MD5 = E7D0F91E44D9D3B2116FA549BDCDB756] (Microsoft Corporation)
drvstore.dll -> C:\Windows\SysWow64\drvstore.dll -> [2009/06/04 04:47:08 | 00,247,808 | ---- | C | MD5 = 6A7908973D49248E4018E8E61B3DCDAA] (Microsoft Corporation)
SmiEngine.dll -> C:\Windows\SysNative\SmiEngine.dll -> [2009/06/04 04:46:42 | 00,936,448 | ---- | C | MD5 = 925ECB3366EDFCB50B04DFAA5A529B63] (Microsoft Corporation)
wdscore.dll -> C:\Windows\SysNative\wdscore.dll -> [2009/06/04 04:46:40 | 00,293,888 | ---- | C | MD5 = A6BCDC241B6578C7DB57B5973B99FE7E] (Microsoft Corporation)
PkgMgr.exe -> C:\Windows\SysNative\PkgMgr.exe -> [2009/06/04 04:46:40 | 00,138,752 | ---- | C | MD5 = 8832EFA58F39033442841A6535396A40] (Microsoft Corporation)
drvstore.dll -> C:\Windows\SysNative\drvstore.dll -> [2009/06/04 04:46:35 | 00,315,904 | ---- | C | MD5 = 403C9B0E7D827337611FBA20EBC7692C] (Microsoft Corporation)
MSXML 4.0 -> C:\Program Files (x86)\MSXML 4.0 -> [2009/05/29 03:00:23 | 00,000,000 | ---D | C]
KGyGaAvL.sys -> C:\Windows\SysWow64\KGyGaAvL.sys -> [2009/05/28 00:06:52 | 00,000,848 | -HS- | C | MD5 = 04B0435CF26A43D9171E7A896C7BB94E] ()
InstallShield -> C:\ProgramData\InstallShield -> [2009/05/28 00:06:40 | 00,000,000 | ---D | C]
Corel Paint Shop Pro X.lnk -> C:\Users\Public\Desktop\Corel Paint Shop Pro X.lnk -> [2009/05/28 00:06:36 | 00,001,978 | ---- | C | MD5 = 49E7ABFB3FB66CC0DAF189C4ED174D98] ()
Corel -> C:\Users\Owner\AppData\Roaming\Corel -> [2009/05/28 00:06:16 | 00,000,000 | ---D | C]
Spool -> C:\Windows\SysWow64\Spool -> [2009/05/28 00:05:59 | 00,000,000 | ---D | C]
My PSP Files -> C:\Users\Owner\Documents\My PSP Files -> [2009/05/28 00:05:48 | 00,000,000 | ---D | C]
Corel -> C:\Program Files (x86)\Corel -> [2009/05/28 00:05:48 | 00,000,000 | ---D | C]
Corel -> C:\Program Files (x86)\Common Files\Corel -> [2009/05/28 00:05:48 | 00,000,000 | ---D | C]
utterbently.rtf -> C:\Users\Owner\Documents\utterbently.rtf -> [2009/05/27 11:58:16 | 00,001,563 | ---- | C | MD5 = 8B7E2E6FFD582DA6B1EB1743B921236C] ()
Adobe -> C:\Windows\SysWow64\Adobe -> [2009/05/24 17:49:26 | 00,000,000 | ---D | C]
Minidump -> C:\Windows\Minidump -> [2009/05/23 23:34:28 | 00,000,000 | ---D | C]
224.rtf -> C:\Users\Owner\Documents\224.rtf -> [2009/05/11 14:59:11 | 00,000,312 | ---- | C | MD5 = 4B05FCACD2C4B523910414BFE943537A] ()
VTExtra -> C:\Users\Owner\AppData\Roaming\VTExtra -> [2009/05/11 14:57:11 | 00,000,000 | ---D | C]
VTShared -> C:\Users\Owner\AppData\Local\VTShared -> [2009/05/11 14:55:00 | 00,000,000 | ---D | C]
Go Casino.lnk -> C:\Users\Owner\Desktop\Go Casino.lnk -> [2009/05/11 14:54:54 | 00,000,885 | ---- | C | MD5 = EC175328F5376D1468392D6D9E721F72] ()
GoCasino -> C:\Users\Owner\AppData\Local\GoCasino -> [2009/05/11 14:54:54 | 00,000,000 | ---D | C]
InstallShield -> C:\Users\Owner\AppData\Roaming\InstallShield -> [2009/05/11 14:54:51 | 00,000,000 | ---D | C]
basefx.INI -> C:\Windows\basefx.INI -> [2009/05/08 00:05:54 | 00,000,032 | ---- | C | MD5 = 51A542B2C1A87F328D1FAEF3BFF9942E] ()
Jasc -> C:\Users\Owner\AppData\Roaming\Jasc -> [2009/05/07 23:36:10 | 00,000,000 | ---D | C]
Jasc Software Inc -> C:\Program Files (x86)\Jasc Software Inc -> [2009/05/07 23:35:34 | 00,000,000 | ---D | C]
Selteco -> C:\Program Files (x86)\Selteco -> [2009/05/07 23:31:49 | 00,000,000 | ---D | C]
User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> C:\Windows\tasks\User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> [2009/05/07 12:27:34 | 00,000,434 | -H-- | C | MD5 = F141DC7F164B9C2AE2DD4063F15E0B78] ()
advpack.dll -> C:\Windows\SysNative\advpack.dll -> [2009/05/07 12:12:11 | 00,161,792 | ---- | C | MD5 = 57606718C74205932B1BDC6335DAE1F7] (Microsoft Corporation)
admparse.dll -> C:\Windows\SysNative\admparse.dll -> [2009/05/07 12:12:11 | 00,088,064 | ---- | C | MD5 = 6F2FB33CBA3D5F816C1C87351996E354] (Microsoft Corporation)
corpol.dll -> C:\Windows\SysNative\corpol.dll -> [2009/05/07 12:12:11 | 00,022,528 | ---- | C | MD5 = 2FBF5CF0E7318692260910D6FAF486D3] (Microsoft Corporation)
msls31.dll -> C:\Windows\SysNative\msls31.dll -> [2009/05/07 12:12:10 | 00,223,232 | ---- | C | MD5 = A8FC574E55DE70F7DDEFB0085B2EC10A] (Microsoft Corporation)
ieakeng.dll -> C:\Windows\SysNative\ieakeng.dll -> [2009/05/07 12:12:10 | 00,157,696 | ---- | C | MD5 = 1AF08DC21DE2CA9713142207AC6A11F3] (Microsoft Corporation)
advpack.dll -> C:\Windows\SysWow64\advpack.dll -> [2009/05/07 12:12:10 | 00,128,512 | ---- | C | MD5 = 8FED1E0A491D4990853D23F21C59C730] (Microsoft Corporation)
ieakeng.dll -> C:\Windows\SysWow64\ieakeng.dll -> [2009/05/07 12:12:10 | 00,125,952 | ---- | C | MD5 = FCF52888B8AD1BDC80275108172BD76D] (Microsoft Corporation)
icardie.dll -> C:\Windows\SysNative\icardie.dll -> [2009/05/07 12:12:10 | 00,085,504 | ---- | C | MD5 = BE48D4B6A208C2B0C3E69887A395A024] (Microsoft Corporation)
tdc.ocx -> C:\Windows\SysNative\tdc.ocx -> [2009/05/07 12:12:10 | 00,077,824 | ---- | C | MD5 = 006F68A89884349840670919EB69A530] (Microsoft Corporation)
admparse.dll -> C:\Windows\SysWow64\admparse.dll -> [2009/05/07 12:12:10 | 00,072,704 | ---- | C | MD5 = 6DB2CAE1A84068CEBA0E768BB5C29009] (Microsoft Corporation)
tdc.ocx -> C:\Windows\SysWow64\tdc.ocx -> [2009/05/07 12:12:10 | 00,066,560 | ---- | C | MD5 = 9BAA9D6879028C32FCE8808C4C7E86BE] (Microsoft Corporation)
icardie.dll -> C:\Windows\SysWow64\icardie.dll -> [2009/05/07 12:12:10 | 00,059,904 | ---- | C | MD5 = 17A6B9EFC1D37368379F4E77EC3F2761] (Microsoft Corporation)
imgutil.dll -> C:\Windows\SysNative\imgutil.dll -> [2009/05/07 12:12:10 | 00,052,736 | ---- | C | MD5 = 10017A667F938526DFC69F319B870AE3] (Microsoft Corporation)
corpol.dll -> C:\Windows\SysWow64\corpol.dll -> [2009/05/07 12:12:10 | 00,018,944 | ---- | C | MD5 = 8FCF03E4D7BE9B5587CCF11719959006] (Microsoft Corporation)
msfeedssync.exe -> C:\Windows\SysNative\msfeedssync.exe -> [2009/05/07 12:12:10 | 00,012,800 | ---- | C | MD5 = 2E92BBBB52E6BE5B080E992909A9F59C] (Microsoft Corporation)
msfeeds.dll -> C:\Windows\SysNative\msfeeds.dll -> [2009/05/07 12:12:09 | 00,700,928 | ---- | C | MD5 = 4F12108B0C1614D5F7B7B292EC6256A9] (Microsoft Corporation)
msfeeds.dll -> C:\Windows\SysWow64\msfeeds.dll -> [2009/05/07 12:12:09 | 00,594,432 | ---- | C | MD5 = 63F6826E5C59CB04C5835BF95BC87B52] (Microsoft Corporation)
ieapfltr.dll -> C:\Windows\SysNative\ieapfltr.dll -> [2009/05/07 12:12:09 | 00,481,280 | ---- | C | MD5 = 1697C9E56C504616FBDA749500185023] (Microsoft Corporation)
ieapfltr.dll -> C:\Windows\SysWow64\ieapfltr.dll -> [2009/05/07 12:12:09 | 00,445,952 | ---- | C | MD5 = 66F1C930F4572816BB15C3A863590305] (Microsoft Corporation)
dxtmsft.dll -> C:\Windows\SysWow64\dxtmsft.dll -> [2009/05/07 12:12:09 | 00,348,160 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
msls31.dll -> C:\Windows\SysWow64\msls31.dll -> [2009/05/07 12:12:09 | 00,156,160 | ---- | C | MD5 = 2ACCD352451EC0F99AF2AD9DB6DB4439] (Microsoft Corporation)
inseng.dll -> C:\Windows\SysNative\inseng.dll -> [2009/05/07 12:12:09 | 00,125,952 | ---- | C | MD5 = AD06F2D152944EB0350C6B51D9FD82D4] (Microsoft Corporation)
wextract.exe -> C:\Windows\SysNative\wextract.exe -> [2009/05/07 12:12:09 | 00,076,288 | ---- | C | MD5 = 57F5B42CE7132BF8E8364B3A3DB6FBEB] (Microsoft Corporation)
msfeedsbs.dll -> C:\Windows\SysNative\msfeedsbs.dll -> [2009/05/07 12:12:09 | 00,071,680 | ---- | C | MD5 = 28D9B9E6CAA62C7F105CD56D12DFFB18] (Microsoft Corporation)
wextract.exe -> C:\Windows\SysWow64\wextract.exe -> [2009/05/07 12:12:09 | 00,066,560 | ---- | C | MD5 = 06235ADF5C75913B131A1430648B4387] (Microsoft Corporation)
pngfilt.dll -> C:\Windows\SysNative\pngfilt.dll -> [2009/05/07 12:12:09 | 00,063,488 | ---- | C | MD5 = 4B9A9E789097AA01BA79088B1B9D8434] (Microsoft Corporation)
ieuinit.inf -> C:\Windows\SysWow64\ieuinit.inf -> [2009/05/07 12:12:09 | 00,057,667 | ---- | C | MD5 = D16E158B285BA79D465DC8271AC02229] ()
ieuinit.inf -> C:\Windows\SysNative\ieuinit.inf -> [2009/05/07 12:12:09 | 00,057,667 | ---- | C | MD5 = D16E158B285BA79D465DC8271AC02229] ()
licmgr10.dll -> C:\Windows\SysNative\licmgr10.dll -> [2009/05/07 12:12:09 | 00,055,808 | ---- | C | MD5 = 4D274100603CBA245492AC7DC0BC48CA] (Microsoft Corporation)
msfeedsbs.dll -> C:\Windows\SysWow64\msfeedsbs.dll -> [2009/05/07 12:12:09 | 00,055,296 | ---- | C | MD5 = 85D30B4D5278DE932C47C5B3AE25F22C] (Microsoft Corporation)
pngfilt.dll -> C:\Windows\SysWow64\pngfilt.dll -> [2009/05/07 12:12:09 | 00,046,592 | ---- | C | MD5 = E5FA1B044DAC5F6F600A1742D73F6936] (Microsoft Corporation)
imgutil.dll -> C:\Windows\SysWow64\imgutil.dll -> [2009/05/07 12:12:09 | 00,034,816 | ---- | C | MD5 = 42B928FC8518D793BF7A5EAFC57B1D8B] (Microsoft Corporation)
msfeedssync.exe -> C:\Windows\SysWow64\msfeedssync.exe -> [2009/05/07 12:12:09 | 00,013,312 | ---- | C | MD5 = FEE2BA1AD38F457F418E82EA30724053] (Microsoft Corporation)
mstime.dll -> C:\Windows\SysNative\mstime.dll -> [2009/05/07 12:12:08 | 01,062,912 | ---- | C | MD5 = 3D6AC28742F28F5D7F1BED09A8DECCE9] (Microsoft Corporation)
mstime.dll -> C:\Windows\SysWow64\mstime.dll -> [2009/05/07 12:12:08 | 00,611,840 | ---- | C | MD5 = 1B3DE45BFADB29CC8252D9C92374BA7E] (Microsoft Corporation)
dxtmsft.dll -> C:\Windows\SysNative\dxtmsft.dll -> [2009/05/07 12:12:08 | 00,508,416 | ---- | C | MD5 = 72FEDB9CB7AD10AD7ACE2867FCABF4C0] (Microsoft Corporation)
dxtrans.dll -> C:\Windows\SysNative\dxtrans.dll -> [2009/05/07 12:12:08 | 00,318,464 | ---- | C | MD5 = EE15594454DE778F897547EEC4E042DE] (Microsoft Corporation)
webcheck.dll -> C:\Windows\SysNative\webcheck.dll -> [2009/05/07 12:12:08 | 00,304,640 | ---- | C | MD5 = 48FC58A3089830A0956D3165BAF5BDCC] (Microsoft Corporation)
iepeers.dll -> C:\Windows\SysNative\iepeers.dll -> [2009/05/07 12:12:08 | 00,252,416 | ---- | C | MD5 = 37CCD93051EF81E6D1C84F92C37FFBD7] (Microsoft Corporation)
webcheck.dll -> C:\Windows\SysWow64\webcheck.dll -> [2009/05/07 12:12:08 | 00,236,544 | ---- | C | MD5 = CC8915DB4E33E8FB29CA0D2DBF75306E] (Microsoft Corporation)
ieaksie.dll -> C:\Windows\SysWow64\ieaksie.dll -> [2009/05/07 12:12:08 | 00,229,376 | ---- | C | MD5 = 69F138A7E93F2646CDEC3B68CE7011DF] (Microsoft Corporation)
dxtrans.dll -> C:\Windows\SysWow64\dxtrans.dll -> [2009/05/07 12:12:08 | 00,216,064 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
iepeers.dll -> C:\Windows\SysWow64\iepeers.dll -> [2009/05/07 12:12:08 | 00,183,808 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
occache.dll -> C:\Windows\SysNative\occache.dll -> [2009/05/07 12:12:08 | 00,146,432 | ---- | C | MD5 = 86171613A521728ED6B9EBB603C27ACA] (Microsoft Corporation)
occache.dll -> C:\Windows\SysWow64\occache.dll -> [2009/05/07 12:12:08 | 00,109,568 | ---- | C | MD5 = 9DA08300F5D41783E69452AE77AA76A1] (Microsoft Corporation)
mshtmled.dll -> C:\Windows\SysNative\mshtmled.dll -> [2009/05/07 12:12:08 | 00,096,768 | ---- | C | MD5 = 35DF2437C36FFCCC5AEA2A633B865696] (Microsoft Corporation)
inseng.dll -> C:\Windows\SysWow64\inseng.dll -> [2009/05/07 12:12:08 | 00,094,720 | ---- | C | MD5 = 8FAAFF28147935E5847F980607965FFE] (Microsoft Corporation)
mshtmled.dll -> C:\Windows\SysWow64\mshtmled.dll -> [2009/05/07 12:12:08 | 00,066,560 | ---- | C | MD5 = 7C9AAF547A0AF93C3F1BB7DC3AED4ECC] (Microsoft Corporation)
licmgr10.dll -> C:\Windows\SysWow64\licmgr10.dll -> [2009/05/07 12:12:08 | 00,043,008 | ---- | C | MD5 = ADA72593022EFC0A5CBE17955FD051E2] (Microsoft Corporation)
jscript.dll -> C:\Windows\SysNative\jscript.dll -> [2009/05/07 12:12:07 | 00,817,664 | ---- | C | MD5 = 0EC192D493D434F4BF1AF981E13644B1] (Microsoft Corporation)
jscript.dll -> C:\Windows\SysWow64\jscript.dll -> [2009/05/07 12:12:07 | 00,726,528 | ---- | C | MD5 = 38FFEC2CD31441A6B57D7A0B490D7299] (Microsoft Corporation)
vbscript.dll -> C:\Windows\SysNative\vbscript.dll -> [2009/05/07 12:12:07 | 00,612,864 | ---- | C | MD5 = 27E37DC66131599D319B4A487791B2E6] (Microsoft Corporation)
vbscript.dll -> C:\Windows\SysWow64\vbscript.dll -> [2009/05/07 12:12:07 | 00,420,352 | ---- | C | MD5 = 7CC3C8FC1056A229B05926C44D1ADEE4] (Microsoft Corporation)
WinFXDocObj.exe -> C:\Windows\SysNative\WinFXDocObj.exe -> [2009/05/07 12:12:07 | 00,278,528 | ---- | C | MD5 = 3BB39EAAECFDC64961551C7A09EC0E6E] (Microsoft Corporation)
ieaksie.dll -> C:\Windows\SysNative\ieaksie.dll -> [2009/05/07 12:12:07 | 00,271,872 | ---- | C | MD5 = EF7F4195B78361420C2FD2CB09B6D387] (Microsoft Corporation)
msrating.dll -> C:\Windows\SysNative\msrating.dll -> [2009/05/07 12:12:07 | 00,241,664 | ---- | C | MD5 = C8C96A57386C9E9D71A2516B71AF5C57] (Microsoft Corporation)
WinFXDocObj.exe -> C:\Windows\SysWow64\WinFXDocObj.exe -> [2009/05/07 12:12:07 | 00,208,384 | ---- | C | MD5 = CB61F20255C666E59F076247203D8496] (Microsoft Corporation)
msrating.dll -> C:\Windows\SysWow64\msrating.dll -> [2009/05/07 12:12:07 | 00,193,536 | ---- | C | MD5 = 29BD913D8FD1FEB6728DC9B43B55C1D2] (Microsoft Corporation)
ieakui.dll -> C:\Windows\SysNative\ieakui.dll -> [2009/05/07 12:12:07 | 00,163,840 | ---- | C | MD5 = D89502771519BA121481AD67547EBAE8] (Microsoft Corporation)
ieakui.dll -> C:\Windows\SysWow64\ieakui.dll -> [2009/05/07 12:12:07 | 00,163,840 | ---- | C | MD5 = 36A86C1B6406CC493554F16BA13BE7D9] (Microsoft Corporation)
ieUnatt.exe -> C:\Windows\SysNative\ieUnatt.exe -> [2009/05/07 12:12:07 | 00,161,792 | ---- | C | MD5 = DC33A342BCDD21FC8F315706C4030798] (Microsoft Corporation)
iesysprep.dll -> C:\Windows\SysNative\iesysprep.dll -> [2009/05/07 12:12:07 | 00,132,096 | ---- | C | MD5 = 4FA9446554FFBED235D498B5D4661BBB] (Microsoft Corporation)
PDMSetup.exe -> C:\Windows\SysNative\PDMSetup.exe -> [2009/05/07 12:12:07 | 00,131,584 | ---- | C | MD5 = ABCBEB808CC7F2742F31162E5D29667E] (Microsoft Corporation)
RegisterIEPKEYs.exe -> C:\Windows\SysNative\RegisterIEPKEYs.exe -> [2009/05/07 12:12:07 | 00,129,024 | ---- | C | MD5 = 7F8877B03BFF934E6E5167041DDA6142] (Microsoft Corporation)
SetIEInstalledDate.exe -> C:\Windows\SysNative\SetIEInstalledDate.exe -> [2009/05/07 12:12:07 | 00,128,512 | ---- | C | MD5 = 7CAF82680541BFD41723B5E4EDD5784F] (Microsoft Corporation)
SetDepNx.exe -> C:\Windows\SysNative\SetDepNx.exe -> [2009/05/07 12:12:07 | 00,125,440 | ---- | C | MD5 = F602CEED80851FD811FEA499F9693B39] (Microsoft Corporation)
url.dll -> C:\Windows\SysNative\url.dll -> [2009/05/07 12:12:07 | 00,108,032 | ---- | C | MD5 = CC3FE21EB74EE792B404F15533A8C9D1] (Microsoft Corporation)
url.dll -> C:\Windows\SysWow64\url.dll -> [2009/05/07 12:12:07 | 00,105,984 | ---- | C | MD5 = 91617515AA185259694A1C4882080B99] (Microsoft Corporation)
mshtmler.dll -> C:\Windows\SysWow64\mshtmler.dll -> [2009/05/07 12:12:07 | 00,048,128 | ---- | C | MD5 = EA817DC2C977376369547295B7212C43] (Microsoft Corporation)
mshtmler.dll -> C:\Windows\SysNative\mshtmler.dll -> [2009/05/07 12:12:07 | 00,048,128 | ---- | C | MD5 = 8FA7FE0CBAB8ADEA67DD5E29E827952A] (Microsoft Corporation)
mshta.exe -> C:\Windows\SysNative\mshta.exe -> [2009/05/07 12:12:07 | 00,041,984 | ---- | C | MD5 = D7191F1ED678DAB7C09695845DF4EAFB] (Microsoft Corporation)
ieapfltr.dat -> C:\Windows\SysWow64\ieapfltr.dat -> [2009/05/07 12:12:06 | 03,698,584 | ---- | C | MD5 = EC6A0643FC55E87A12F4C5BC49E9F431] (Microsoft Corporation)
ieapfltr.dat -> C:\Windows\SysNative\ieapfltr.dat -> [2009/05/07 12:12:06 | 03,698,584 | ---- | C | MD5 = EC6A0643FC55E87A12F4C5BC49E9F431] (Microsoft Corporation)
html.iec -> C:\Windows\SysNative\html.iec -> [2009/05/07 12:12:06 | 00,479,744 | ---- | C | MD5 = 20B65D0CCA196F859FB9243F5C28C444] (Microsoft Corporation)
html.iec -> C:\Windows\SysWow64\html.iec -> [2009/05/07 12:12:06 | 00,385,024 | ---- | C | MD5 = EC45CE35652FE1B9784BAC48BA200CD4] (Microsoft Corporation)
iexpress.exe -> C:\Windows\SysNative\iexpress.exe -> [2009/05/07 12:12:06 | 00,193,536 | ---- | C | MD5 = 06FA458E5158C71FB945B40CEC05C1DF] (Microsoft Corporation)
iexpress.exe -> C:\Windows\SysWow64\iexpress.exe -> [2009/05/07 12:12:06 | 00,169,472 | ---- | C | MD5 = 378552CD226DC08A300A386E222FD76F] (Microsoft Corporation)
ieUnatt.exe -> C:\Windows\SysWow64\ieUnatt.exe -> [2009/05/07 12:12:06 | 00,132,608 | ---- | C | MD5 = 3DB5229AFC5A08587BEDECDBEA9601E3] (Microsoft Corporation)
PDMSetup.exe -> C:\Windows\SysWow64\PDMSetup.exe -> [2009/05/07 12:12:06 | 00,109,568 | ---- | C | MD5 = A82C22EF35D7F9DBBFB1335D6BD76799] (Microsoft Corporation)
iesysprep.dll -> C:\Windows\SysWow64\iesysprep.dll -> [2009/05/07 12:12:06 | 00,109,056 | ---- | C | MD5 = 84458AB0AAF50AAE47D6922CDE3F3BDA] (Microsoft Corporation)
RegisterIEPKEYs.exe -> C:\Windows\SysWow64\RegisterIEPKEYs.exe -> [2009/05/07 12:12:06 | 00,107,520 | ---- | C | MD5 = 50B3DC4E6B89A9EA2D62F95B519C6F13] (Microsoft Corporation)
SetIEInstalledDate.exe -> C:\Windows\SysWow64\SetIEInstalledDate.exe -> [2009/05/07 12:12:06 | 00,107,008 | ---- | C | MD5 = 85AAEAADE50427A7184D6CA1C71C3BA3] (Microsoft Corporation)
SetDepNx.exe -> C:\Windows\SysWow64\SetDepNx.exe -> [2009/05/07 12:12:06 | 00,103,936 | ---- | C | MD5 = 9DAEFBF88495DD400C9A3945E2EA1932] (Microsoft Corporation)
mshta.exe -> C:\Windows\SysWow64\mshta.exe -> [2009/05/07 12:12:06 | 00,045,568 | ---- | C | MD5 = AD8F83F16A3CE2B093B38B279B419387] (Microsoft Corporation)
1236890173476.jpg -> C:\Users\Owner\Documents\1236890173476.jpg -> [2009/05/07 01:04:45 | 00,463,321 | ---- | C | MD5 = C0A621E0438D07F65B48D4492EBDA62A] ()
1236973823773.jpg -> C:\Users\Owner\Documents\1236973823773.jpg -> [2009/05/07 01:03:23 | 00,342,923 | ---- | C | MD5 = 051BEC4B6692E251056C43FF0E19FD38] ()
ZoomBrowser EX -> C:\Users\Owner\AppData\Roaming\ZoomBrowser EX -> [2009/05/05 16:58:52 | 00,000,000 | ---D | C]
Msft_User_WpdMtpDr_01_00_00.Wdf -> C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf -> [2009/05/04 13:46:35 | 00,000,000 | -H-- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
DCSD40-46 Software Starter Guide.lnk -> C:\Users\Public\Desktop\DCSD40-46 Software Starter Guide.lnk -> [2009/05/04 13:42:13 | 00,001,034 | ---- | C | MD5 = 374C0DD712BCF8890695F61A869004E3] ()
Personal Printing Guide.lnk -> C:\Users\Public\Desktop\Personal Printing Guide.lnk -> [2009/05/04 13:42:11 | 00,001,039 | ---- | C | MD5 = 189A154484643D47EF3D7D795C702A43] ()
ZoomBrowser EX.lnk -> C:\Users\Public\Desktop\ZoomBrowser EX.lnk -> [2009/05/04 13:41:15 | 00,001,125 | ---- | C | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
ZoomBrowser -> C:\ProgramData\ZoomBrowser -> [2009/05/04 13:41:15 | 00,000,000 | ---D | C]
Canon -> C:\Program Files (x86)\Canon -> [2009/05/04 13:41:00 | 00,000,000 | ---D | C]
Canon -> C:\Program Files (x86)\Common Files\Canon -> [2009/05/04 13:39:12 | 00,000,000 | ---D | C]
INFORMATION -> C:\Users\Owner\Desktop\INFORMATION -> [2009/05/04 04:51:19 | 00,000,000 | ---D | C]
FIXTOOL -> C:\FIXTOOL -> [2009/05/04 03:38:01 | 00,000,000 | ---D | C]
IconCache.db -> C:\Users\Owner\AppData\Local\IconCache.db -> [2009/05/04 03:35:01 | 02,245,847 | -H-- | C | MD5 = 85505CA8B1BAE590C8A5C82174EE451F] ()
d3d9caps64.dat -> C:\Users\Owner\AppData\Local\d3d9caps64.dat -> [2009/05/03 20:36:42 | 00,000,732 | ---- | C | MD5 = 7B2E630861781C771667C2A12E49C6F2] ()
backup -> C:\Windows\SysWow64\backup -> [2009/05/03 20:09:59 | 00,000,000 | ---D | C]
report -> C:\Windows\SysWow64\report -> [2009/05/03 20:09:51 | 00,000,000 | ---D | C]
debug -> C:\Windows\SysWow64\debug -> [2009/05/03 20:09:51 | 00,000,000 | ---D | C]
ssapiptn.da5 -> C:\Windows\SysWow64\ssapiptn.da5 -> [2009/05/03 20:09:31 | 06,158,064 | ---- | C | MD5 = 1D25EDFFCB7F94E5CBFADF278D8D0B21] ()
lpt$vpn.104 -> C:\Windows\SysWow64\lpt$vpn.104 -> [2009/05/03 20:09:30 | 22,009,461 | ---- | C | MD5 = 0D0CAD6931A11238A4C11FDC6696492B] ()
lpt$vpn.103 -> C:\Windows\SysWow64\lpt$vpn.103 -> [2009/05/03 20:09:30 | 21,973,109 | ---- | C | MD5 = 0B71C83967FFA778F1E2EB92D05A0EEC] ()
sysclean.com -> C:\Windows\SysWow64\sysclean.com -> [2009/05/03 20:02:08 | 04,808,583 | ---- | C | MD5 = F1D0B0B797D9841756AAE984CA3949BD] ()
sysclean.bat -> C:\Windows\SysWow64\sysclean.bat -> [2009/05/03 20:02:07 | 00,000,531 | ---- | C | MD5 = 174E412075F058402DDDE74EEB5BD742] ()
MCE Logs -> C:\Users\Public\Documents\MCE Logs -> [2009/04/29 20:04:38 | 00,000,000 | -HSD | C]
~$cument.rtf -> C:\Users\Owner\Documents\~$cument.rtf -> [2009/04/29 09:02:28 | 00,000,162 | -H-- | C | MD5 = F844F1CB7E8C12BBDF79045ACCC8B08B] ()
Malwarebytes' Anti-Malware 1.38
Database version: 2347
Windows 6.0.6002 Service Pack 2
6/28/2009 8:10:12 PM
mbam-log-2009-06-28 (20-10-12).txt
Scan type: Full Scan (C:\|D:\|E:\|F:\|G:\|H:\|)
Objects scanned: 243344
Time elapsed: 37 minute(s), 58 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 8
Registry Values Infected: 0
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\TypeLib\{86676e13-d6d8-4652-9fcf-f2047f1fb000} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\partner service (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\partner service (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\partner service (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\kt_bho.KettleBho (Trojan.BHO) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowSearch (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
c:\programdata\Partner\partner.dll (Trojan.BHO) -> Quarantined and deleted successfully.
c:\programdata\Partner\partner.exe (Trojan.BHO) -> Quarantined and deleted successfully.
I have found why the log is so big though ... Please set OTScanIt using the following info
Run a new scan with these settings, and then post the log.
You may still need more than one post, but it should be a lot smaller.
OTS logfile created on: 6/29/2009 1:17:09 PM - Run 5
OTS by OldTimer - Version 3.0.9.0 Folder = C:\Users\Owner\Desktop
64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18783)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 4.00 Gb Available Physical Memory | 100.00% Memory free
4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 581.52 Gb Total Space | 533.48 Gb Free Space | 91.74% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: OWNER-PC
Current User Name: Owner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Include 64bit Scans
Company Name Whitelist: On
Skip Microsoft Files: Off
File Age = 30 Days
[Processes - Safe List]
aolacsd.exe -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
aolsoftware.exe -> C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
aoltpsd3.exe -> C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe -> [2007/04/02 08:33:32 | 00,063,120 | ---- | M | MD5 = CAA1EBD9AD92E6C6E83A5642EBC34CA6] (AOL LLC)
chifuncext.exe -> C:\Windows\ChiFuncExt.exe -> [2008/02/01 15:04:50 | 00,057,344 | ---- | M | MD5 = 82A85D80EAD5B3950CFD775A84AE1651] (Chicony)
cnyhkey.exe -> C:\Windows\CNYHKey.exe -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
googletoolbarnotifier.exe -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
ielowutil.exe -> C:\Program Files (x86)\Internet Explorer\IELowutil.exe -> [2009/03/08 07:34:00 | 00,115,712 | ---- | M | MD5 = B9E350C3EEE748E332251274DEC33829] (Microsoft Corporation)
jusched.exe -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
mhotkey.exe -> C:\Windows\MHotKey.exe -> [2008/05/30 14:50:28 | 00,581,120 | ---- | M | MD5 = ED2674E1796B46A6FDD3E81F66AD45DB] ()
modledkey.exe -> C:\Windows\ModLedKey.exe -> [2007/01/08 18:51:56 | 00,053,248 | ---- | M | MD5 = 9DC803349108C74DED49990BA3E042FE] (Chicony)
ots.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:15 | 00,513,024 | ---- | M | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
richvideo.exe -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
shellmon.exe -> C:\Program Files (x86)\AOL 9.1\shellmon.exe -> [2008/11/06 07:42:59 | 00,054,568 | ---- | M | MD5 = 9A2A25E1B8FD6260F2DA8611465DB712] (AOL, LLC.)
smartcopy.exe -> C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe -> [2008/08/11 20:57:02 | 00,319,488 | ---- | M | MD5 = 7E433ED3F7822E46E759956D0ECB7AA4] ()
smartlauncher.exe -> C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe -> [2008/08/11 13:20:28 | 00,335,872 | ---- | M | MD5 = 5B2819B7FCD02A0FA4386A718DB0274A] (North Star com.)
waol.exe -> C:\Program Files (x86)\AOL 9.1\waol.exe -> [2008/11/06 07:42:59 | 00,039,208 | ---- | M | MD5 = 19AC8BB35611FD56280BAD07625ACAFB] (AOL, LLC.)
ymsgr_tray.exe -> C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe -> [2009/03/18 18:50:30 | 00,079,088 | ---- | M | MD5 = 5697CF86049652DBD80054ACE4F29812] (Yahoo! Inc.)
[Win32 Services - Safe List]
64bit-(AgereModemAudio) Agere Modem Call Progress Audio [Win32_Own | Auto | Running] -> C:\Windows\SysNative\agr64svc.exe -> [2008/07/22 22:54:06 | 00,015,872 | ---- | M | MD5 = 8B0D8B5BAFD4C9D57B41426BC68B32F9] (Agere Systems)
64bit-(ETService) Empowering Technology Service [Win32_Own | Auto | Running] -> C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe -> [2008/06/11 15:18:30 | 00,024,576 | ---- | M | MD5 = 4D06D9A26227AC485305133916888DF1] ()
64bit-(ForceWare Intelligent Application Manager (IAM)) ForceWare Intelligent Application Manager (IAM) [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -> [2008/09/08 15:11:02 | 00,726,016 | ---- | M | MD5 = EDFE4EE6513E9D9B33799C6838DA7B5F] ()
64bit-(lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysNative\lxbccoms.exe -> [2007/03/16 01:24:18 | 00,566,704 | ---- | M | MD5 = 5179331910B68F41F70E8CB481349D4A] ( )
64bit-(nSvcIp) ForceWare IP service [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -> [2008/09/08 15:09:52 | 00,221,696 | ---- | M | MD5 = 0304AC408043C6CB9E88FA6C813CF841] ()
64bit-(SfCtlCom) Trend Micro Central Control Component [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe -> [2009/03/31 23:25:06 | 00,833,872 | ---- | M | MD5 = 067C6A28521DC73D60BF1759B0AA8287] (Trend Micro Inc.)
64bit-(TMBMServer) Trend Micro Unauthorized Change Prevention Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\BM\TMBMSRV.exe -> [2009/03/03 04:39:56 | 00,565,512 | ---- | M | MD5 = 5868DA3C4C678D82BE43B62908265E7E] (Trend Micro Inc.)
64bit-(TmProxy) Trend Micro Proxy Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\TmProxy.exe -> [2009/03/31 23:25:32 | 00,900,360 | ---- | M | MD5 = F06885E70F0746F082CFC196288B3412] (Trend Micro Inc.)
64bit-(WinDefend) Windows Defender [Win32_Shared | Auto | Stopped] -> C:\Program Files\Windows Defender\mpsvc.dll -> [2008/01/20 22:47:32 | 00,383,544 | ---- | M | MD5 = 7D2A43E8FDF725A1133F6C6056A72CDC] (Microsoft Corporation)
64bit-(WMPNetworkSvc) Windows Media Player Network Sharing Service [Win32_Own | On_Demand | Running] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/20 22:52:15 | 01,216,000 | ---- | M | MD5 = 56382A5EB85A25446745E3BD6D50A3A5] (Microsoft Corporation)
(AOL ACS) AOL Connectivity Service [Win32_Own | Auto | Running] -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
(clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:42:14 | 00,066,368 | ---- | M | MD5 = 8EE772032E2FE80A924F3B8DD5082194] (Microsoft Corporation)
(clr_optimization_v2.0.50727_64) Microsoft .NET Framework NGEN v2.0.50727_X64 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:39:54 | 00,089,920 | ---- | M | MD5 = CE07A466201096F021CD09D631B21540] (Microsoft Corporation)
(ehRecvr) Windows Media Center Receiver Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehRecvr.exe -> [2008/01/20 22:51:36 | 00,344,064 | ---- | M | MD5 = 14CE384D2E27B64C256BDA4DC39C312D] (Microsoft Corporation)
(ehSched) Windows Media Center Scheduler Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehsched.exe -> [2008/01/20 22:51:36 | 00,153,600 | ---- | M | MD5 = B93159C1313D66FDFBBE876F5189CD52] (Microsoft Corporation)
(ehstart) Windows Media Center Service Launcher [Win32_Shared | Auto | Stopped] -> C:\Windows\ehome\ehstart.dll -> [2006/11/02 11:03:48 | 00,015,360 | ---- | M | MD5 = F5EE2527D74449868E3C3227A59BCD28] (Microsoft Corporation)
(FontCache3.0.0.0) Windows Presentation Foundation Font Cache 3.0.0.0 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe -> [2009/02/18 14:40:04 | 00,042,840 | ---- | M | MD5 = BC5B0BE5AF3510B0FD8C140EE42C6D3E] (Microsoft Corporation)
(GameConsoleService) GameConsoleService [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe -> [2008/05/05 18:25:46 | 00,165,416 | ---- | M | MD5 = 617DC2877015270914CA3C03873560D5] (WildTangent, Inc.)
(gusvc) Google Software Updater [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe -> [2009/04/25 02:15:11 | 00,182,768 | ---- | M | MD5 = CC839E8D766CC31A7710C9F38CF3E375] (Google)
(idsvc) Windows CardSpace [Win32_Shared | Unknown | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 14:39:11 | 00,857,432 | ---- | M | MD5 = 749F5F8CEDCA70F2A512945325FC489D] (Microsoft Corporation)
(KeyIso) CNG Key Isolation [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\keyiso.dll -> [2006/11/02 05:46:05 | 00,018,944 | ---- | M | MD5 = 74C2F29CC612B2B34231BEBD824D2FB2] (Microsoft Corporation)
(lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysWow64\lxbccoms.exe -> [2007/03/16 01:24:02 | 00,537,520 | ---- | M | MD5 = 31E0CCB891B94056E062886CB69174D2] ( )
(MSDTC) Distributed Transaction Coordinator [Win32_Own | Unknown | Stopped] -> C:\Windows\SysWow64\Msdtc -> [2006/11/02 09:34:14 | 00,000,000 | ---D | M]
(Netlogon) Netlogon [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\netlogon.dll -> [2009/04/11 02:28:23 | 00,592,896 | ---- | M | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
(odserv) Microsoft Office Diagnostics Service [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -> [2007/08/24 07:19:12 | 00,443,776 | ---- | M | MD5 = E54AA592A65F317390EEE386A8821692] (Microsoft Corporation)
(ose) Office Source Engine [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE -> [2006/10/26 18:03:08 | 00,145,184 | ---- | M | MD5 = 5A432A042DAE460ABE7199B758E8606C] (Microsoft Corporation)
(RichVideo) Cyberlink RichVideo Service(CRVS) [Win32_Own | Auto | Running] -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
(vds) Virtual Disk [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vds.mof -> [2006/11/02 02:35:15 | 00,060,994 | ---- | M | MD5 = 21A96F0C1B123F2463C6D624F125EAC9] ()
(VSS) Volume Shadow Copy [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vss.mof -> [2006/11/02 02:35:15 | 00,055,846 | ---- | M | MD5 = 9E4414C27EEC14EAF36A4BD24CFEEA93] ()
[Driver Services - Safe List]
64bit-(AgereSoftModem) Agere Systems Soft Modem [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\agrsm64.sys -> [2008/07/22 22:54:33 | 01,253,376 | ---- | M | MD5 = 385471F8147E1BD6A08C031E3AAD3910] (Agere Systems)
64bit-(AVer88xHD) AVerMedia 23888 AvStream Video Capture [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\AVer88xHD64.sys -> [2007/04/10 04:51:10 | 00,432,256 | ---- | M | MD5 = 5E76DEBBA4311AC1C44DE83D59A9584E] (AVerMedia TECHNOLOGIES, Inc.)
64bit-(HdAudAddService) Microsoft 1.1 UAA Function Driver for High Definition Audio Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\HdAudio.sys -> [2006/11/02 01:28:10 | 00,273,920 | ---- | M | MD5 = DF45F8142DC6DF9D18C39B3EFFBD0409] (Microsoft Corporation)
64bit-(nvamacpi) Nvidia Away Mode System [Kernel | Boot | Running] -> C:\Windows\SysNative\DRIVERS\NVAMACPI.sys -> [2005/08/27 13:19:21 | 00,028,192 | ---- | M | MD5 = 2B0885148F27B49365D3AD489F7D7B70] (NVIDIA Corporation)
64bit-(PAC207) SoC PC-Camera [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\PFC027.SYS -> [2006/12/05 11:34:26 | 00,572,416 | ---- | M | MD5 = 3A6DCEB1848470320E4A3C12D7A35B1C] (PixArt Imaging Inc.)
64bit-(RSUSBSTOR) RTS5121.Sys Realtek USB Card Reader [Kernel | On_Demand | Running] -> C:\Windows\SysNative\Drivers\RTS5121.sys -> [2008/06/04 02:06:54 | 00,204,288 | ---- | M | MD5 = 1807EA271C9685A25571D94AE4E3A8DD] (Realtek Semiconductor Corporation)
64bit-(tmpreflt) tmpreflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmpreflt.sys -> [2009/03/05 21:17:50 | 00,042,000 | ---- | M | MD5 = 681747A1EDEF58209192B2C4975516FC] (Trend Micro Inc.)
64bit-(tmtdi) Trend Micro TDI Driver [Kernel | System | Running] -> C:\Windows\SysNative\DRIVERS\tmtdi.sys -> [2009/03/03 19:12:46 | 00,096,784 | ---- | M | MD5 = C12D4E5E96A8CE0FD6F74F9C43191CFE] (Trend Micro Inc.)
64bit-(tmxpflt) tmxpflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmxpflt.sys -> [2009/03/05 21:17:50 | 00,235,536 | ---- | M | MD5 = 77E4C0F95931FEEB32E55A8596C9B79A] (Trend Micro Inc.)
64bit-(vsapint) vsapint [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\vsapint.sys -> [2009/03/05 21:17:50 | 01,839,632 | ---- | M | MD5 = F7D9B9631A59C9E4C14C6904D4376C13] (Trend Micro Inc.)
64bit-(wanatw) WAN Miniport (ATW) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\wanatw64.sys -> [2006/11/29 18:24:49 | 00,024,064 | ---- | M | MD5 = ECEB715BECE47E101DDEC06B11126066] (America Online, Inc.)
64bit-(WpdUsb) WpdUsb [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\wpdusb.sys -> [2008/01/20 22:47:28 | 00,046,080 | ---- | M | MD5 = 6329D1990DB931073B86AB5946D8E317] (Microsoft Corporation)
(int15) int15 [Kernel | Auto | Running] -> C:\Windows\SysWOW64\drivers\int15_64.sys -> [2008/06/11 15:13:24 | 00,017,952 | ---- | M | MD5 = 8C7FA71CB1EBCD3EDE8958D27B1BF0B4] (Acer, Inc.)
(mpsdrv) Windows Firewall Authorization Driver [Kernel | On_Demand | Running] -> C:\Windows\SysWow64\Wbem\mpsdrv.mof -> [2006/09/18 17:35:23 | 00,001,088 | ---- | M | MD5 = 74D68CB40BCD45AAE89A8BECC87D3868] ()
(Tcpip) TCP/IP Protocol Driver [Kernel | Boot | Running] -> C:\Windows\SysWow64\Wbem\tcpip.mof -> [2006/09/18 17:36:40 | 00,003,066 | ---- | M | MD5 = EEC4A068DE477651214F6C8014ECBEC0] ()
[Registry - Safe List]
< 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\System32\blank.htm ->
HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\SysWOW64\blank.htm ->
HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_LOCAL_MACHINE\: URLSearchHooks\\"{EA756889-2338-43DB-8F07-D1CA6FB9C90D}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [IAOLTBSearch Class] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
< Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> ->
HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> ->
HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> ->
< Internet Explorer Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Local Page" -> C:\Windows\system32\blank.htm ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"SearchDefaultBranded" -> 1 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Start Page" -> http://www.google.com/ ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"StartPageCache" -> 1 ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: "ProxyEnable" -> 0 ->
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\Extensions -> ->
HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} -> C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\] -> [2009/06/26 04:11:05 | 00,000,000 | ---D | M]
< FireFox Extensions [User Folders] > ->
< HOSTS File > (761 bytes and 20 lines) -> C:\Windows\SysNative\Drivers\etc\hosts ->
Reset Hosts
127.0.0.1 localhost
::1 localhost
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{02478D38-C3F9-4efb-9B51-7695ECA05670} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [&Yahoo! Toolbar Helper] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} [HKLM] -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [Adobe PDF Link Helper] -> [2009/02/27 12:07:26 | 00,075,128 | ---- | M | MD5 = 5CF6190CD875DA6B35256FEE573E7908] (Adobe Systems Incorporated)
{5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{7C554162-8CB7-45A4-B8F4-8EA1C75885F9} [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar Loader] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
{9030D464-4C02-4ABF-8ECC-5164760863C6} [HKLM] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [Windows Live Sign-in Helper] -> [2008/11/18 17:47:06 | 00,408,952 | ---- | M | MD5 = 4B9CBC54FA3A846649F59BC185DF63DF] (Microsoft Corporation)
{AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar Helper] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [Google Toolbar Notifier BHO] -> [2009/04/25 02:15:12 | 00,668,656 | ---- | M | MD5 = D1585B06DED161E13B905DC4FFBF7F12] (Google Inc.)
{C84D72FE-E17D-4195-BB24-76C02E2E7C4E} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [Google Dictionary Compression sdch] -> [2009/04/25 02:02:33 | 00,470,512 | ---- | M | MD5 = E35BCCB1D1D96F8E5B09C72AF70EC3F6] (Google Inc.)
{DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2009/04/19 22:18:14 | 00,035,840 | ---- | M | MD5 = 96A225C7F5346A9E81FC3DFA89A900C0] (Sun Microsystems, Inc.)
{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [SingleInstance Class] -> [2008/07/28 06:47:42 | 00,160,496 | ---- | M | MD5 = F64C4241FE5E519F62C47C361DC671D7] (Yahoo! Inc)
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
"{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
"{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [Yahoo! Toolbar] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
< Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
WebBrowser\\"{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
< 64bit-Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"NvCplDaemon" -> C:\Windows\SysNative\NvCpl.DLL [RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup] -> [2008/10/07 14:03:00 | 15,934,496 | ---- | M | MD5 = ABB919582B746BF56271F1E4B2410498] (NVIDIA Corporation)
"NVRaidService" -> C:\Windows\SysNative\nvraidservice.exe [C:\Windows\system32\nvraidservice.exe] -> [2008/08/18 23:01:52 | 00,333,344 | ---- | M | MD5 = 5686E81D6247A61C67F2C1055271205C] (NVIDIA Corporation)
"RtHDVCpl" -> C:\Windows\RAVCpl64.exe [RAVCpl64.exe] -> [2008/09/18 07:02:14 | 06,495,264 | ---- | M | MD5 = BAA1FEA046B3F857C82595B396719AAC] (Realtek Semiconductor)
"Skytel" -> C:\Windows\SkyTel.exe [Skytel.exe] -> [2008/09/18 07:02:52 | 01,833,504 | ---- | M | MD5 = C2B406805F8F6B8642464FF053A22F8F] (Realtek Semiconductor Corp.)
"UfSeAgnt.exe" -> C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe ["C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"] -> [2009/03/31 23:25:36 | 00,989,432 | ---- | M | MD5 = ED1EC273AF8E0BFCF34EE76F210EF482] (Trend Micro Inc.)
"Windows Defender" -> C:\Program Files\Windows Defender\MSASCui.exe [%ProgramFiles%\Windows Defender\MSASCui.exe -hide] -> [2008/01/20 22:47:32 | 01,584,184 | ---- | M | MD5 = 48DD40677817CE1053C2315F5A87E0D3] (Microsoft Corporation)
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"Adobe Reader Speed Launcher" -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe ["C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"] -> [2009/02/27 17:10:28 | 00,035,696 | ---- | M | MD5 = 452FA961163EF4AEE4815796A13AB2CF] (Adobe Systems Incorporated)
"eRecoveryService" -> [] -> File not found
"HostManager" -> C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe ["C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"] -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
"LchDrvKey" -> C:\Windows\LchDrvKey.exe [LchDrvKey.exe] -> [2007/03/28 21:55:54 | 00,036,864 | ---- | M | MD5 = B94C288D7BC9760A01304880A7CE18EB] ()
"LedKey" -> C:\Windows\CNYHKey.exe [CNYHKey.exe] -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
"P2Go_Menu" -> C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"] -> [2008/06/13 22:11:32 | 00,210,216 | ---- | M | MD5 = 601D77C0AA637A99073210894554B6BA] (CyberLink Corp.)
"SunJavaUpdateSched" -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe ["C:\Program Files (x86)\Java\jre6\bin\jusched.exe"] -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
"UpdatePDRShortCut" -> C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"] -> [2008/01/04 15:02:26 | 00,222,504 | ---- | M | MD5 = AAD52179D4A526AD4A705B87C6E4F72A] (CyberLink Corp.)
< Run [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
"WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
< Run [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
"WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
< Run [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"AOL Fast Start" -> C:\Program Files (x86)\AOL 9.1\aol.exe ["C:\PROGRA~2\AOL9~1.1\AOL.EXE" -b] -> [2008/11/06 07:42:54 | 00,050,472 | ---- | M | MD5 = C05CF2CA46A3AB41E6A2632A4C940A87] (AOL, LLC.)
"ehTray.exe" -> C:\Windows\ehome\ehTray.exe [C:\Windows\ehome\ehTray.exe] -> [2008/01/20 22:51:33 | 00,138,240 | ---- | M | MD5 = 65437DAD4F238EA9549408A783002222] (Microsoft Corporation)
"Messenger (Yahoo!)" -> C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe ["C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet] -> [2009/03/18 18:50:30 | 04,363,504 | ---- | M | MD5 = DB06B12E8DE572AB8B8C482E3EE574F5] (Yahoo! Inc.)
"Sidebar" -> C:\Program Files\Windows Sidebar\sidebar.exe [C:\Program Files\Windows Sidebar\sidebar.exe /autoRun] -> [2009/04/11 03:10:53 | 01,555,968 | ---- | M | Unable to obtain MD5] (Microsoft Corporation)
"swg" -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe] -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
"WMPNSCFG" -> C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe [C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe] -> File not found
< RunOnce [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
"Shockwave Updater" -> [C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"[URL]http://www.playhub.com/sports-games/313/Sewer-Run.html[/URL]"] -> File not found
< Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}
\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppName" -> [MyCamera.exe] -> File not found
\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppPath" -> C:\Program Files (x86)\Canon\CameraWindow\MyCamera [C:\Program Files (x86)\Canon\CameraWindow\MyCamera] -> [2009/05/04 13:41:48 | 00,000,000 | ---D | M]
\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"Policy" -> [3] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}
\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppName" -> [ZoomBrowser.exe] -> File not found
\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppPath" -> C:\Program Files (x86)\Canon\ZoomBrowser EX\Program [C:\Program Files (x86)\Canon\ZoomBrowser EX\Program] -> [2009/05/04 13:42:05 | 00,000,000 | ---D | M]
\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"Policy" -> [3] -> File not found
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
[URL="file://\\"NoActiveDesktop"]\\"NoActiveDesktop[/URL]" -> [1] -> File not found
[URL="file://\\"ForceActiveDesktopOn"]\\"ForceActiveDesktopOn[/URL]" -> [0] -> File not found
[URL="file://\\"BindDirectlyToPropertySetStorage"]\\"BindDirectlyToPropertySetStorage[/URL]" -> [0] -> File not found
[URL="file://\\"NoActiveDesktopChanges"]\\"NoActiveDesktopChanges[/URL]" -> [0] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
[URL="file://\\"ConsentPromptBehaviorAdmin"]\\"ConsentPromptBehaviorAdmin[/URL]" -> [2] -> File not found
[URL="file://\\"ConsentPromptBehaviorUser"]\\"ConsentPromptBehaviorUser[/URL]" -> [1] -> File not found
[URL="file://\\"EnableInstallerDetection"]\\"EnableInstallerDetection[/URL]" -> [1] -> File not found
[URL="file://\\"EnableLUA"]\\"EnableLUA[/URL]" -> [1] -> File not found
[URL="file://\\"EnableSecureUIAPaths"]\\"EnableSecureUIAPaths[/URL]" -> [1] -> File not found
[URL="file://\\"EnableVirtualization"]\\"EnableVirtualization[/URL]" -> [1] -> File not found
[URL="file://\\"PromptOnSecureDesktop"]\\"PromptOnSecureDesktop[/URL]" -> [1] -> File not found
[URL="file://\\"ValidateAdminCodeSignatures"]\\"ValidateAdminCodeSignatures[/URL]" -> [0] -> File not found
[URL="file://\\"dontdisplaylastusername"]\\"dontdisplaylastusername[/URL]" -> [0] -> File not found
[URL="file://\\"legalnoticecaption"]\\"legalnoticecaption[/URL]" -> [] -> File not found
[URL="file://\\"legalnoticetext"]\\"legalnoticetext[/URL]" -> [] -> File not found
[URL="file://\\"scforceoption"]\\"scforceoption[/URL]" -> [0] -> File not found
[URL="file://\\"shutdownwithoutlogon"]\\"shutdownwithoutlogon[/URL]" -> [1] -> File not found
[URL="file://\\"undockwithoutlogon"]\\"undockwithoutlogon[/URL]" -> [1] -> File not found
[URL="file://\\"FilterAdministratorToken"]\\"FilterAdministratorToken[/URL]" -> [0] -> File not found
[URL="file://\\"EnableUIADesktopToggle"]\\"EnableUIADesktopToggle[/URL]" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
\UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found
< CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
[URL="file://\\"NoDesktopCleanupWizard"]\\"NoDesktopCleanupWizard[/URL]" -> [1] -> File not found
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Button: Blog This] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Menu: &Blog This in Windows Live Writer] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
{2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Button: Send to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
{2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Menu: S&end to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
{92780B25-18CC-41C8-B9BE-3C9C571A8263}:{FF059E31-CC5A-4E2E-BF3B-96E929D65503} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL [Button: Research] -> [2006/10/27 00:12:22 | 00,040,424 | ---- | M | MD5 = 7FC19DA1DC70C78D2FBD7A1D10942051] (Microsoft Corporation)
< 64bit-Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< 64bit-Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< 64bit-Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
< Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
objects_aol.com
[*] -> Out of zone range - ( 5 ) ->
1 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab [Shockwave ActiveX Control] ->
{4871A87A-BFDD-4106-8153-FFDE2BAC2967} [HKLM] -> http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab [DLM Control] ->
{9C23D886-43CB-43DE-B2DB-112A68D7E10A} [HKLM] -> http://lads.myspace.com/upload/MySpaceUploader2.cab [MySpace Uploader Control] ->
{D4323BF2-006A-4440-A2F5-27E3E7AB25F8} [HKLM] -> http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe [Reg Error: Key error.] ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
DhcpNameServer -> 10.0.0.1 ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{9712E214-2095-4240-BE72-812D046DB980}\\DhcpNameServer -> 10.0.0.1 (NVIDIA nForce 10/100/1000 Mbps Ethernet ) ->
< 64bit-Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
64bit-*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 03:10:17 | 03,079,168 | ---- | M | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
*MultiFile Done* -> ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/04/11 02:27:36 | 02,926,592 | ---- | M | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
*MultiFile Done* -> ->
< Vista Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications ->
< Vista Active Firewall Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
{3F8907F3-E4DE-4260-BB5F-938A3DE8E186} -> lport=2869 | protocol=6 | dir=in | action=allow | name=windows live messenger (upnp-in) | app=system |
{4104AA77-862A-4930-8044-BB2521DFCFFE} -> lport=1900 | protocol=17 | dir=in | action=allow | name=windows live messenger (ssdp-in) | app=svchost.exe | svc=ssdpsrv |
< Vista Active Application Exception Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
{0B724075-D525-47F6-8D4B-9E245EC70262} -> profile=private | protocol=6 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
{109D9062-5376-4803-87AC-657754C3D249} -> profile=private | protocol=17 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
{1B42F944-37D0-4489-BD8D-B48BEA9B315D} -> dir=in | action=allow | name=windows live messenger | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
{40D8ACBC-D4AA-4FF0-9CBC-D519575686A9} -> profile=private | protocol=17 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
{44211C36-AA6F-4C10-88A7-C468053E0DED} -> dir=in | action=allow | name=cyberlink powerdirector | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |
{52C00A5E-B486-4A04-8830-50426C0CDEC1} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
{5E7E5103-2C83-4832-BB34-45E2BFA3E760} -> profile=public | protocol=6 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
{79F58122-9134-420A-9DE3-606741936991} -> profile=private | protocol=6 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
{874CBC43-45DF-4CB6-A706-3036EC2A1EFA} -> dir=in | action=allow | name=windows live call | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe |
{8FF32FF2-91BF-4786-BAF7-ED52E99B5686} -> profile=private | protocol=17 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
{9083699D-DA2A-489B-AF64-AE61BBDEBC78} -> profile=private | protocol=17 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
{9B85772F-6E6E-42FB-9036-DC90C765F5E5} -> profile=private | protocol=6 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
{A3E0E701-CF8A-47F7-9C91-31067D3050A6} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
{A442B7B5-04C7-47C8-A27C-FDBA207AB5AB} -> profile=private | protocol=6 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
{A6FF2A80-7BA5-4D3E-9E9E-3A8882969504} -> profile=private | protocol=17 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
{B8E5CDEB-F407-4A20-A242-DC1CC504AA7E} -> profile=private | protocol=6 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
{C0142577-923F-4E22-A0DF-8489C85CA3DC} -> profile=private | protocol=17 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
{C11858D5-051F-42B8-9C8D-2B05E596ABDF} -> profile=private | protocol=6 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
{C4ED3121-7FF3-42C6-9C51-135DF8317CD0} -> profile=private | protocol=6 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
{C88934A9-D75C-47E1-B214-23297DD1DBAF} -> profile=private | protocol=17 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
{C9C3854F-F530-45C8-B10E-B15236BD2332} -> profile=private | protocol=6 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
{CDA3C051-F009-4EDF-8FF7-D98D030B5BFC} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
{D9E28F03-2CED-4A60-9C0B-202149E69932} -> profile=private | protocol=17 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
{E1FE8404-25BC-4E59-B8AF-A215A4B51D1F} -> profile=public | protocol=17 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
{E5638F40-7C0E-4BBD-A02A-50501C0E8432} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
{EB9061D6-6081-4E5D-954F-284764B346C1} -> profile=private | protocol=6 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
{F55E85FC-E7D1-4771-8D3F-22F505B458D0} -> profile=private | protocol=17 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
{FC53E6EB-19E6-4867-BA34-8B33A3833C39} -> dir=in | action=allow | name=windows live sync | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
TCP Query User{907A49E8-F920-4158-8172-426988741353}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=6 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
UDP Query User{99BE73CA-B2F5-40F4-BBB0-0AA16F0D47DE}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=17 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
"AlternateShell" -> cmd.exe ->
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 1 ->
"DisplayName" -> CD-ROM Driver ->
"ImagePath" -> C:\Windows\SysNative\DRIVERS\cdrom.sys [system32\DRIVERS\cdrom.sys] -> [2009/04/11 01:34:39 | 00,079,872 | ---- | M | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->
[Registry - Additional Scans - Safe List]
< 64bit-Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
{071c9b48-7c32-4621-a0ac-3f809523288f} -> Microsoft Visual C++ 2005 Redistributable (x64)
{40E12A55-C504-4223-AFAC-7672DBF1ACDE} -> Trend Micro AntiVirus
{70E8EBD5-78C9-4258-B20A-5098CCA000F0} -> Dolby Control Center
{718D791F-F4E8-4aa7-98A6-15FDED17BDD0} -> Trend Micro AntiVirus
{7CFA46E3-CC2F-4355-82AE-6012DC3633FD} -> NVIDIA ForceWare Network Access Manager
{90120000-002A-0000-1000-0000000FF1CE} -> Microsoft Office Office 64-bit Components 2007
{90120000-002A-0409-1000-0000000FF1CE} -> Microsoft Office Shared 64-bit MUI (English) 2007
{90120000-0116-0409-1000-0000000FF1CE} -> Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
{95120000-00B9-0409-1000-0000000FF1CE} -> Microsoft Application Error Reporting
{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} -> Microsoft .NET Framework 3.5 SP1
Agere Systems Soft Modem -> Agere Systems PCI-SV92PP Soft Modem
Lexmark Z500-Z600 Series -> Lexmark Z500-Z600 Series
Microsoft .NET Framework 3.5 SP1 -> Microsoft .NET Framework 3.5 SP1
NVIDIA Drivers -> NVIDIA Drivers
< Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
{020D8396-D6D9-4B53-A9A1-83C47E2E27AA} -> Windows Live Call
{0AAA9C97-74D4-47CE-B089-0B147EF3553C} -> Windows Live Messenger
{18455581-E099-4BA8-BC6B-F34B2F06600C} -> Google Toolbar for Internet Explorer
{1A15507A-8551-4626-915D-3D5FA095CC1B} -> Corel Paint Shop Pro X
{205C6BDD-7B73-42DE-8505-9A093F35A238} -> Windows Live Upload Tool
{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} -> MSVCRT
{2318C2B1-4965-11d4-9B18-009027A5CD4F} -> Google Toolbar for Internet Explorer
{236CFC57-AA67-4AA4-B948-0CD713BB7760} -> Go Casino
{26A24AE4-039D-4CA4-87B4-2F83216013FF} -> Java(TM) 6 Update 13
{3248F0A8-6813-11D6-A77B-00B0D0160050} -> Java(TM) 6 Update 5
{40BF1E83-20EB-11D8-97C5-0009C5020658} -> CyberLink Power2Go
{44CDBD1B-89FB-4E02-8319-2A4C550F664A} -> RTC Client API v1.2
{4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A} -> Junk Mail filter update
{505DF7A3-88D5-4DD6-9AD5-C98C2ED0CEC4} -> Windows Live Sign-in Assistant
{57634571-FD82-4BEC-B822-A1ED7765474F}_is1 -> SmartLauncher
{5F00DF7E-418B-4CD9-8EC5-781156BCC49E} -> Microsoft Money Shared Libraries
{63C1109E-D977-49ED-BCE3-D00D0BF187D6} -> Windows Live Mail
{67E03279-F703-408F-B4BF-46B5FC8D70CD} -> Microsoft Works
{6A92E5C5-0578-443D-91F3-92ECE5F2CAE2} -> Windows Live Writer
{7299052b-02a4-4627-81f2-1818da5d550d} -> Microsoft Visual C++ 2005 Redistributable
{797EE0CA-8165-405C-B5CE-F11EC20F1BB0} -> Microsoft VC9 runtime libraries
{7C4196CA-CA41-4F34-9C08-7724E7705D52} -> Jasc Animation Shop 3
{7F811A54-5A09-4579-90E1-C93498E230D9} -> Gateway Recovery Management
{80E158EA-7181-40FE-A701-301CE6BE64AB} -> CyberLink MediaShow
{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E} -> Choice Guard
{90120000-0016-0409-0000-0000000FF1CE} -> Microsoft Office Excel MUI (English) 2007
{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-0018-0409-0000-0000000FF1CE} -> Microsoft Office PowerPoint MUI (English) 2007
{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-001B-0409-0000-0000000FF1CE} -> Microsoft Office Word MUI (English) 2007
{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-001F-0409-0000-0000000FF1CE} -> Microsoft Office Proof (English) 2007
{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{3EC77D26-799B-4CD8-914F-C1565E796173} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-001F-040C-0000-0000000FF1CE} -> Microsoft Office Proof (French) 2007
{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{430971B1-C31E-45DA-81E0-72C095BAB72C} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-001F-0C0A-0000-0000000FF1CE} -> Microsoft Office Proof (Spanish) 2007
{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-0020-0409-0000-0000000FF1CE} -> Compatibility Pack for the 2007 Office system
{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{00C5525B-3CB3-467D-8100-2E6FB306CD86} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-002C-0409-0000-0000000FF1CE} -> Microsoft Office Proofing (English) 2007
{90120000-006E-0409-0000-0000000FF1CE} -> Microsoft Office Shared MUI (English) 2007
{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-00A1-0409-0000-0000000FF1CE} -> Microsoft Office OneNote MUI (English) 2007
{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-0115-0409-0000-0000000FF1CE} -> Microsoft Office Shared Setup Metadata MUI (English) 2007
{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{91120000-002F-0000-0000-0000000FF1CE} -> Microsoft Office Home and Student 2007
{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{BEE75E01-DD3F-4D5F-B96C-609E6538D419} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
{95120000-00AF-0409-0000-0000000FF1CE} -> Microsoft Office PowerPoint Viewer 2007 (English)
{AC76BA86-7AD7-1033-7B44-A91000000001} -> Adobe Reader 9.1
{B7BD291B-D415-4484-89A4-82077504BE93}_is1 -> SmartCopy
{C59C179C-668D-49A9-B6EA-0121CCFC1243} -> CyberLink LabelPrint
{CB099890-1D5F-11D5-9EA9-0050BAE317E1} -> CyberLink PowerDirector
{D9D754A1-EAC5-406C-A28B-C49B1E846711} -> Windows Live Essentials
{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E} -> Microsoft Office Suite Activation Assistant
{ED5DCA6F-5FEA-47CB-83DB-210A468C298B} -> KB0817 Keyboard Driver
{EFC1B3CA-9B90-458D-AD7A-A0F2CD6F4A84} -> Realtek Card Reader
{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} -> Microsoft SQL Server 2005 Compact Edition [ENU]
{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} -> Realtek High Definition Audio Driver
{F226C1DA-66D7-4ABC-86B5-3F978A660EBF} -> AOL Mail and AIM Gadget
{F69E83CF-B440-43F8-89E6-6EA80712109B} -> Windows Live Communications Platform
{F73A5B18-EB75-4B2C-B32D-9457576E2417} -> Windows Live Photo Gallery
{FDD810CA-D5E3-40E9-AB7B-36440B0D41EF} -> Windows Live Sync
Adobe Flash Player ActiveX -> Adobe Flash Player 10 ActiveX
Adobe Shockwave Player -> Adobe Shockwave Player 11.5
AOL Emergency Connect Utility 1.0 -> Uninstall AOL Emergency Connect Utility 1.0
AOL Toolbar -> AOL Toolbar
AOL Uninstaller -> AOL Uninstaller (Choose which Products to Remove)
AVerMedia M791 PCIe Combo NTSC/ATSC -> AVerMedia M791 PCIe Combo NTSC/ATSC 6.104.64.5
Bannershop GIF Animator -> Selteco Bannershop GIF Animator
CameraWindowDC -> Canon Utilities CameraWindow DC
CameraWindowDVC6 -> Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
CameraWindowLauncher -> Canon Utilities CameraWindow
CANON iMAGE GATEWAY Task -> CANON iMAGE GATEWAY Task for ZoomBrowser EX
Canon Internet Library for ZoomBrowser EX -> Canon Internet Library for ZoomBrowser EX
Canon MOV Decoder -> Canon MOV Decoder
Canon MOV Encoder -> Canon MOV Encoder
HijackThis -> HijackThis 2.0.2
HOMESTUDENTR -> Microsoft Office Home and Student 2007
InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} -> CyberLink Power2Go
InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD} -> NVIDIA ForceWare Network Access Manager
InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB} -> CyberLink MediaShow
InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} -> CyberLink PowerDirector
Malwarebytes' Anti-Malware_is1 -> Malwarebytes' Anti-Malware
Money2007b -> Microsoft Money Essentials
MovieEditTask -> Canon MovieEdit Task for ZoomBrowser EX
MyCamera -> Canon Utilities MyCamera
MyCameraDC -> Canon Utilities MyCamera DC
Personal Printing Guide -> Canon Personal Printing Guide
PhotoStitch -> Canon Utilities PhotoStitch
RemoteCaptureTask -> Canon Utilities RemoteCapture Task for ZoomBrowser EX
SoftwareStarterGuide-DCSD40_46 -> Canon Digital Camera Solution Disk 40-46 Software Starter Guide
SoftwareUpdUtility -> Download Updater (AOL LLC)
ViewpointMediaPlayer -> Viewpoint Media Player
WildTangent gateway Master Uninstall -> Gateway Games
WinLiveSuite_Wave3 -> Windows Live Essentials
Yahoo! Companion -> Yahoo! Toolbar
Yahoo! Messenger -> Yahoo! Messenger
ZoomBrowser EX -> Canon Utilities ZoomBrowser EX
ZoomBrowser EX Memory Card Utility -> Canon ZoomBrowser EX Memory Card Utility
[Files/Folders - Created Within 30 Days]
TT.png -> C:\Users\Owner\Desktop\TT.png -> [2009/06/28 20:43:52 | 00,200,241 | ---- | C | MD5 = 448D42215DA5326560BB8A1CA93C9566] ()
OTS.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:13 | 00,513,024 | ---- | C | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
Malwarebytes -> C:\Users\Owner\AppData\Roaming\Malwarebytes -> [2009/06/28 19:30:23 | 00,000,000 | ---D | C]
Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/06/28 19:30:22 | 00,000,850 | ---- | C | MD5 = 9AD6C291BC07B05FD556F5132E14FCCE] ()
mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2009/06/28 19:30:19 | 00,038,160 | ---- | C | MD5 = 148D5D488BA502381C2B7B615F7F84CF] (Malwarebytes Corporation)
mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2009/06/28 19:30:17 | 00,022,040 | ---- | C | MD5 = CEDB73ADD243D2D654A32C191A9DBDB5] (Malwarebytes Corporation)
Malwarebytes' Anti-Malware -> C:\Program Files (x86)\Malwarebytes' Anti-Malware -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
Malwarebytes -> C:\ProgramData\Malwarebytes -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
psp -> C:\Users\Owner\Desktop\psp -> [2009/06/28 03:57:16 | 00,000,000 | ---D | C]
HijackThis.lnk -> C:\Users\Owner\Desktop\HijackThis.lnk -> [2009/06/28 02:04:16 | 00,001,930 | ---- | C | MD5 = 284D8E8B7E19D0413BB2F9BF09BB64A1] ()
Trend Micro -> C:\Program Files (x86)\Trend Micro -> [2009/06/28 02:04:16 | 00,000,000 | ---D | C]
Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2009/06/22 18:24:27 | 00,001,919 | ---- | C | MD5 = 95478CD74436938A7C9C41158D8A132A] ()
Adobe -> C:\Program Files (x86)\Common Files\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
Adobe -> C:\Program Files (x86)\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
NINA.html -> C:\Users\Owner\Documents\NINA.html -> [2009/06/20 02:14:40 | 00,000,989 | ---- | C | MD5 = 4C33571BCB02BECF1362DE1F9DFD2646] ()
English_PSPX_RegXtras.exe -> C:\Users\Owner\Desktop\English_PSPX_RegXtras.exe -> [2009/06/12 16:14:32 | 15,935,168 | ---- | C | MD5 = 99FAE6E1E7E13FA9AD43336308084709] (Corel )
Download Manager -> C:\Users\Owner\AppData\Roaming\Download Manager -> [2009/06/12 16:14:25 | 00,000,000 | ---D | C]
rpcrt4.dll -> C:\Windows\SysNative\rpcrt4.dll -> [2009/06/09 16:57:55 | 01,305,600 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
rpcrt4.dll -> C:\Windows\SysWow64\rpcrt4.dll -> [2009/06/09 16:57:54 | 00,677,376 | ---- | C | MD5 = 0ABE67004EB4C162F4456E64F90A11FD] (Microsoft Corporation)
localspl.dll -> C:\Windows\SysNative\localspl.dll -> [2009/06/09 16:57:43 | 00,772,608 | ---- | C | MD5 = 6D82554101FFC7F3F048611FB55327BD] (Microsoft Corporation)
localspl.dll -> C:\Windows\SysWow64\localspl.dll -> [2009/06/09 16:57:43 | 00,623,616 | ---- | C | MD5 = 3F5F5A4D358126FA69C79FB15A4878B8] (Microsoft Corporation)
mshtml.dll -> C:\Windows\SysWow64\mshtml.dll -> [2009/06/09 16:57:29 | 05,936,128 | ---- | C | MD5 = 89CCF8069B59780BDEF45E345E671347] (Microsoft Corporation)
ieframe.dll -> C:\Windows\SysWow64\ieframe.dll -> [2009/06/09 16:57:28 | 11,064,832 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
mshtml.dll -> C:\Windows\SysNative\mshtml.dll -> [2009/06/09 16:57:28 | 09,234,432 | ---- | C | MD5 = BAC71BF7A84AD0BDBD58E46B68D9EB81] (Microsoft Corporation)
ieframe.dll -> C:\Windows\SysNative\ieframe.dll -> [2009/06/09 16:57:27 | 12,454,912 | ---- | C | MD5 = 01C3CB1BB522A96804AF62C635108488] (Microsoft Corporation)
iertutil.dll -> C:\Windows\SysNative\iertutil.dll -> [2009/06/09 16:57:27 | 02,332,672 | ---- | C | MD5 = 6321C0B8E53C80775BC93BA6898FEFFC] (Microsoft Corporation)
iertutil.dll -> C:\Windows\SysWow64\iertutil.dll -> [2009/06/09 16:57:27 | 01,985,024 | ---- | C | MD5 = AFA8DE49250609F01EF8D7C488993B45] (Microsoft Corporation)
urlmon.dll -> C:\Windows\SysWow64\urlmon.dll -> [2009/06/09 16:57:27 | 01,207,808 | ---- | C | MD5 = CC12F6C30002D4C0B9FA7CCE6D52F71D] (Microsoft Corporation)
mshtml.tlb -> C:\Windows\SysWow64\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
mshtml.tlb -> C:\Windows\SysNative\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | MD5 = E1E65F6D47527415EB364E21FB37682F] (Microsoft Corporation)
inetcpl.cpl -> C:\Windows\SysNative\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,538,560 | ---- | C | MD5 = 1D9BFC7F4451057DAC8943DB1FC07EB6] (Microsoft Corporation)
urlmon.dll -> C:\Windows\SysNative\urlmon.dll -> [2009/06/09 16:57:26 | 01,484,288 | ---- | C | MD5 = D7B749FAD99A86EA743A2A339B887ABA] (Microsoft Corporation)
inetcpl.cpl -> C:\Windows\SysWow64\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,469,440 | ---- | C | MD5 = 2C1BD1E52DECC9B5F46BA484ED01A68E] (Microsoft Corporation)
wininet.dll -> C:\Windows\SysNative\wininet.dll -> [2009/06/09 16:57:26 | 01,146,368 | ---- | C | MD5 = 18A01A9307257637D8FB4FA86F4A689F] (Microsoft Corporation)
wininet.dll -> C:\Windows\SysWow64\wininet.dll -> [2009/06/09 16:57:26 | 00,915,456 | ---- | C | MD5 = D78B62CC91F043CED52F23F0085E7FE2] (Microsoft Corporation)
iedkcs32.dll -> C:\Windows\SysNative\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,457,728 | ---- | C | MD5 = DE1C1049F2C48DA5CC6BD7B1CC8FDD7F] (Microsoft Corporation)
iedkcs32.dll -> C:\Windows\SysWow64\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,385,536 | ---- | C | MD5 = B012602C3FD7D55222E9C03BB6213085] (Microsoft Corporation)
ieui.dll -> C:\Windows\SysNative\ieui.dll -> [2009/06/09 16:57:26 | 00,219,136 | ---- | C | MD5 = 2CF92A1FEFBE01F92D45D2A94DEABEDD] (Microsoft Corporation)
ie4uinit.exe -> C:\Windows\SysWow64\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,173,056 | ---- | C | MD5 = 6A3FFA937B9C7B19BDA1AB0DE5B4CCDE] (Microsoft Corporation)
ieui.dll -> C:\Windows\SysWow64\ieui.dll -> [2009/06/09 16:57:26 | 00,164,352 | ---- | C | MD5 = 90E89697993E0800B32A0E7BC615970F] (Microsoft Corporation)
iesetup.dll -> C:\Windows\SysNative\iesetup.dll -> [2009/06/09 16:57:26 | 00,077,312 | ---- | C | MD5 = 0CA82EF5FD31BE470914F27C3F23C988] (Microsoft Corporation)
iernonce.dll -> C:\Windows\SysNative\iernonce.dll -> [2009/06/09 16:57:26 | 00,072,192 | ---- | C | MD5 = 2E97D916BA32C2263B2EDC1303588300] (Microsoft Corporation)
iesetup.dll -> C:\Windows\SysWow64\iesetup.dll -> [2009/06/09 16:57:26 | 00,071,680 | ---- | C | MD5 = 3B88C6AD6525FE839AE465AD6F9CEAB1] (Microsoft Corporation)
ie4uinit.exe -> C:\Windows\SysNative\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,070,656 | ---- | C | MD5 = 25941103997FEACAF0FEE929171E0DD5] (Microsoft Corporation)
iernonce.dll -> C:\Windows\SysWow64\iernonce.dll -> [2009/06/09 16:57:26 | 00,055,808 | ---- | C | MD5 = 19267896F66836EAB6C0D458A9C0A7BE] (Microsoft Corporation)
jsproxy.dll -> C:\Windows\SysNative\jsproxy.dll -> [2009/06/09 16:57:26 | 00,031,744 | ---- | C | MD5 = B5E87364A9099745131012130CDA56D6] (Microsoft Corporation)
jsproxy.dll -> C:\Windows\SysWow64\jsproxy.dll -> [2009/06/09 16:57:26 | 00,025,600 | ---- | C | MD5 = 5DD32FE00D58AB21A16B91F063EA0CCB] (Microsoft Corporation)
win32k.sys -> C:\Windows\SysNative\win32k.sys -> [2009/06/09 16:55:58 | 02,745,344 | ---- | C | MD5 = D29C0E2572452DF3819A1FD70DF70960] (Microsoft Corporation)
sabrina aunt kelly letter.rtf -> C:\Users\Owner\Documents\sabrina aunt kelly letter.rtf -> [2009/06/06 11:56:11 | 00,000,767 | ---- | C | MD5 = 9F27BD1E947E628ED8C075DF231D4BE6] ()
ZoomBrowser EX.lnk -> C:\Users\Owner\ZoomBrowser EX.lnk -> [2009/06/04 23:26:57 | 00,001,125 | ---- | C | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
Personal Printing Guide.lnk -> C:\Users\Owner\Personal Printing Guide.lnk -> [2009/06/04 23:26:57 | 00,001,039 | ---- | C | MD5 = 189A154484643D47EF3D7D795C702A43] ()
INFORMATION - Shortcut.lnk -> C:\Users\Owner\INFORMATION - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,395 | ---- | C | MD5 = 31534B3665D8838EDA892E6E252B1D4D] ()
Computer - Shortcut.lnk -> C:\Users\Owner\Computer - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,104 | ---- | C | MD5 = FD8F1F54665903B748744026D47A4967] ()
vi-VN -> C:\Windows\SysWow64\vi-VN -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
eu-ES -> C:\Windows\SysWow64\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
eu-ES -> C:\Windows\SysNative\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
ca-ES -> C:\Windows\SysWow64\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
ca-ES -> C:\Windows\SysNative\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
vi-VN -> C:\Windows\SysNative\vi-VN -> [2009/06/04 05:23:38 | 00,000,000 | ---D | C]
EventProviders -> C:\Windows\SysNative\EventProviders -> [2009/06/04 04:48:51 | 00,000,000 | ---D | C]
NlsLexicons0007.dll -> C:\Windows\SysNative\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = AFA4BC5B25F9280C6B954A37BF74C343] (Microsoft Corporation)
NlsLexicons0007.dll -> C:\Windows\SysWow64\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = 795166DED9B1B32136B150A12A1DEBAE] (Microsoft Corporation)
SLsvc.exe -> C:\Windows\SysNative\SLsvc.exe -> [2009/06/04 04:48:32 | 02,582,016 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
FunctionDiscoveryFolder.dll -> C:\Windows\SysNative\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,146,304 | ---- | C | MD5 = 9CD8BD40C8A3A69E875E34B357AE4975] (Microsoft Corporation)
FunctionDiscoveryFolder.dll -> C:\Windows\SysWow64\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,134,528 | ---- | C | MD5 = 780E82F54147B3D11F52D3128B727534] (Microsoft Corporation)
SLCExt.dll -> C:\Windows\SysNative\SLCExt.dll -> [2009/06/04 04:48:32 | 00,710,144 | ---- | C | MD5 = 110967BBD4D778FC0BB04FC9DAEFCB44] (Microsoft Corporation)
NlsLexicons0009.dll -> C:\Windows\SysNative\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = C8E7E069468BC0DEAFE69375421FE839] (Microsoft Corporation)
NlsLexicons0009.dll -> C:\Windows\SysWow64\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = 8629B71343F61E1140243581C63BC0C7] (Microsoft Corporation)
ntoskrnl.exe -> C:\Windows\SysNative\ntoskrnl.exe -> [2009/06/04 04:48:29 | 04,699,608 | ---- | C | MD5 = 1B60CCC70788044404EEFBBB389FC111] (Microsoft Corporation)
mssrch.dll -> C:\Windows\SysNative\mssrch.dll -> [2009/06/04 04:48:29 | 02,280,448 | ---- | C | MD5 = A0B762992A52FA8A657A97C34BEEA807] (Microsoft Corporation)
SLCExt.dll -> C:\Windows\SysWow64\SLCExt.dll -> [2009/06/04 04:48:29 | 01,081,344 | ---- | C | MD5 = 1D40A5268C1517BC445BA0053584C4AA] (Microsoft Corporation)
msstrc.dll -> C:\Windows\SysNative\msstrc.dll -> [2009/06/04 04:48:29 | 00,078,336 | ---- | C | MD5 = 3CEA019D459582AFE7551F267DDEF23A] (Microsoft Corporation)
msscntrs.dll -> C:\Windows\SysNative\msscntrs.dll -> [2009/06/04 04:48:29 | 00,073,728 | ---- | C | MD5 = 4702DF71B9AD487C84A90BAAC967615D] (Microsoft Corporation)
xmlfilter.dll -> C:\Windows\SysNative\xmlfilter.dll -> [2009/06/04 04:48:29 | 00,067,072 | ---- | C | MD5 = A6C454A7E75ACC924E9F2FB8BA4FC8A0] (Microsoft Corporation)
kd1394.dll -> C:\Windows\SysNative\kd1394.dll -> [2009/06/04 04:48:29 | 00,019,928 | ---- | C | MD5 = 9334A2D1CDB6D4DC4060B94021BB7A59] (Microsoft Corporation)
msshooks.dll -> C:\Windows\SysNative\msshooks.dll -> [2009/06/04 04:48:29 | 00,011,776 | ---- | C | MD5 = EBCEDFD064A4F210037AD21EC8AFC220] (Microsoft Corporation)
mssrch.dll -> C:\Windows\SysWow64\mssrch.dll -> [2009/06/04 04:48:27 | 01,480,704 | ---- | C | MD5 = 218B73EA8341EA9FDF018D43052E790A] (Microsoft Corporation)
wcnwiz2.dll -> C:\Windows\SysWow64\wcnwiz2.dll -> [2009/06/04 04:48:26 | 00,968,192 | ---- | C | MD5 = 0BA42FAEEE97512603876A908EDB6BF4] (Microsoft Corporation)
WscEapPr.dll -> C:\Windows\SysNative\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,397,312 | ---- | C | MD5 = 543D30393843BEBFF7215CC36AC3B303] (Microsoft Corporation)
WscEapPr.dll -> C:\Windows\SysWow64\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,291,328 | ---- | C | MD5 = 2E97EB05C0FD5AA7E229481584C73309] (Microsoft Corporation)
tquery.dll -> C:\Windows\SysNative\tquery.dll -> [2009/06/04 04:48:25 | 02,204,672 | ---- | C | MD5 = 6FF25F418D373097C199E3ACCFA06E78] (Microsoft Corporation)
icardagt.exe -> C:\Windows\SysNative\icardagt.exe -> [2009/06/04 04:48:25 | 01,381,720 | ---- | C | MD5 = 7CAE6C298C4EF4A9BDB25A0C8BC79AD5] (Microsoft Corporation)
PresentationNative_v0300.dll -> C:\Windows\SysNative\PresentationNative_v0300.dll -> [2009/06/04 04:48:25 | 01,165,664 | ---- | C | MD5 = 79B7FFFFF8C5F4F1674A47647D0C6FF6] (Microsoft Corporation)
imapi2fs.dll -> C:\Windows\SysNative\imapi2fs.dll -> [2009/06/04 04:48:25 | 01,146,880 | ---- | C | MD5 = D14B95A4CC72AD0A196FA1C9738FE93C] (Microsoft Corporation)
wcnwiz2.dll -> C:\Windows\SysNative\wcnwiz2.dll -> [2009/06/04 04:48:25 | 01,085,440 | ---- | C | MD5 = 53A508E583F7EC971BCA8FEA4D861741] (Microsoft Corporation)
hdaudbus.sys -> C:\Windows\SysNative\drivers\hdaudbus.sys -> [2009/06/04 04:48:25 | 00,948,736 | ---- | C | MD5 = F942C5820205F2FB453243EDFEC82A3D] (Microsoft Corporation)
infocardcpl.cpl -> C:\Windows\SysNative\infocardcpl.cpl -> [2009/06/04 04:48:25 | 00,046,944 | ---- | C | MD5 = 563AB05EA9F646A7B8B1A83FFD9E27F6] (Microsoft Corporation)
lsasrv.dll -> C:\Windows\SysNative\lsasrv.dll -> [2009/06/04 04:48:24 | 01,688,064 | ---- | C | MD5 = 5A7CAD479A8729D2B500997404C153D8] (Microsoft Corporation)
tquery.dll -> C:\Windows\SysWow64\tquery.dll -> [2009/06/04 04:48:24 | 01,576,960 | ---- | C | MD5 = DEB9D08750423069647C3A066CEC7A1B] (Microsoft Corporation)
RMActivate_isv.exe -> C:\Windows\SysNative\RMActivate_isv.exe -> [2009/06/04 04:48:24 | 00,600,576 | ---- | C | MD5 = E415C8BFF0807B1C74E280BA036B038C] (Microsoft Corporation)
RMActivate.exe -> C:\Windows\SysNative\RMActivate.exe -> [2009/06/04 04:48:24 | 00,599,552 | ---- | C | MD5 = 5E465CD2D27700DD2A63671EE8153519] (Microsoft Corporation)
msi.dll -> C:\Windows\SysNative\msi.dll -> [2009/06/04 04:48:23 | 03,108,864 | ---- | C | MD5 = D092AA9740076D7B55BA7E3ECD22DFA7] (Microsoft Corporation)
ntfs.sys -> C:\Windows\SysNative\drivers\ntfs.sys -> [2009/06/04 04:48:23 | 01,515,496 | ---- | C | MD5 = BAC869DFB98E499BA4D9BB1FB43270E1] (Microsoft Corporation)
tcpip.sys -> C:\Windows\SysNative\drivers\tcpip.sys -> [2009/06/04 04:48:23 | 01,426,408 | ---- | C | MD5 = 99D07AD0EF2C535610F6573C29BC045E] (Microsoft Corporation)
sysmain.dll -> C:\Windows\SysNative\sysmain.dll -> [2009/06/04 04:48:23 | 00,886,784 | ---- | C | MD5 = 92D7A8B0F87B036F17D25885937897A6] (Microsoft Corporation)
PresentationNative_v0300.dll -> C:\Windows\SysWow64\PresentationNative_v0300.dll -> [2009/06/04 04:48:23 | 00,779,136 | ---- | C | MD5 = E5866CA09AC74AC6C1F8501BB60DFD90] (Microsoft Corporation)
shell32.dll -> C:\Windows\SysNative\shell32.dll -> [2009/06/04 04:48:22 | 12,897,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
ntdll.dll -> C:\Windows\SysNative\ntdll.dll -> [2009/06/04 04:48:22 | 01,582,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
RMActivate_isv.exe -> C:\Windows\SysWow64\RMActivate_isv.exe -> [2009/06/04 04:48:22 | 00,526,336 | ---- | C | MD5 = BAE3E8E95A9F62496A38F14D1B36AD10] (Microsoft Corporation)
msi.dll -> C:\Windows\SysWow64\msi.dll -> [2009/06/04 04:48:21 | 02,241,536 | ---- | C | MD5 = 401DFFDBBBD3F07C747ED1AE2BB88106] (Microsoft Corporation)
scavenge.dll -> C:\Windows\SysNative\scavenge.dll -> [2009/06/04 04:48:21 | 00,946,688 | ---- | C | MD5 = 589286073C7AB737330CE8642EA38980] (Microsoft Corporation)
spsys.sys -> C:\Windows\SysNative\drivers\spsys.sys -> [2009/06/04 04:48:21 | 00,594,432 | ---- | C | MD5 = 75C881C65CEF2C7B911EB0A351957368] (Microsoft Corporation)
secproc.dll -> C:\Windows\SysNative\secproc.dll -> [2009/06/04 04:48:21 | 00,539,136 | ---- | C | MD5 = 267D3A1025626604EEA3E5EE2EA1BEAD] (Microsoft Corporation)
secproc_isv.dll -> C:\Windows\SysNative\secproc_isv.dll -> [2009/06/04 04:48:21 | 00,538,624 | ---- | C | MD5 = A9A8EB2B3E4746145D1E536B528A7D12] (Microsoft Corporation)
RMActivate.exe -> C:\Windows\SysWow64\RMActivate.exe -> [2009/06/04 04:48:21 | 00,518,144 | ---- | C | MD5 = 2DC9C62DF0538700978C66F00379C653] (Microsoft Corporation)
mf.dll -> C:\Windows\SysNative\mf.dll -> [2009/06/04 04:48:20 | 03,547,136 | ---- | C | MD5 = 328DBE4B9FEEF811E4053FA5D5462E6D] (Microsoft Corporation)
imapi2fs.dll -> C:\Windows\SysWow64\imapi2fs.dll -> [2009/06/04 04:48:20 | 00,677,376 | ---- | C | MD5 = C3EB60969612B265FB7265E76B6AEA6F] (Microsoft Corporation)
secproc_isv.dll -> C:\Windows\SysWow64\secproc_isv.dll -> [2009/06/04 04:48:20 | 00,476,672 | ---- | C | MD5 = 8CDA3C2DC9B265DAD2589FE0F1A8B4E4] (Microsoft Corporation)
mmcndmgr.dll -> C:\Windows\SysNative\mmcndmgr.dll -> [2009/06/04 04:48:19 | 03,263,488 | ---- | C | MD5 = 9F498D2409C9F31D2019C3AB528DAD5D] (Microsoft Corporation)
mf.dll -> C:\Windows\SysWow64\mf.dll -> [2009/06/04 04:48:19 | 02,868,224 | ---- | C | MD5 = 3962F0B55426E75B579974A6C96F5FEA] (Microsoft Corporation)
msxml3.dll -> C:\Windows\SysNative\msxml3.dll -> [2009/06/04 04:48:19 | 01,804,288 | ---- | C | MD5 = 1BB8A40C45A577B6901A4A21EDDE1B27] (Microsoft Corporation)
icardagt.exe -> C:\Windows\SysWow64\icardagt.exe -> [2009/06/04 04:48:19 | 00,619,864 | ---- | C | MD5 = EBAE6CE901EDB7F0F794589BF5FDF695] (Microsoft Corporation)
infocardcpl.cpl -> C:\Windows\SysWow64\infocardcpl.cpl -> [2009/06/04 04:48:19 | 00,035,168 | ---- | C | MD5 = F67843CFD59FB2015823E2CE2D2A65D8] (Microsoft Corporation)
mmc.exe -> C:\Windows\SysNative\mmc.exe -> [2009/06/04 04:48:18 | 02,715,136 | ---- | C | MD5 = CFAFFCA9AAA29F89CA71C02CE82FF546] (Microsoft Corporation)
AuxiliaryDisplayCpl.dll -> C:\Windows\SysNative\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:18 | 01,418,752 | ---- | C | MD5 = 4E7D270CF881377567D2090B5ACA077F] (Microsoft Corporation)
kernel32.dll -> C:\Windows\SysNative\kernel32.dll -> [2009/06/04 04:48:18 | 01,217,536 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
drmv2clt.dll -> C:\Windows\SysNative\drmv2clt.dll -> [2009/06/04 04:48:18 | 01,185,280 | ---- | C | MD5 = 2AD435E35966C65619A272B4831D72BB] (Microsoft Corporation)
p2psvc.dll -> C:\Windows\SysNative\p2psvc.dll -> [2009/06/04 04:48:18 | 00,836,608 | ---- | C | MD5 = 9AE31D2E1D15C10D91318E0EC149CEAC] (Microsoft Corporation)
spinstall.exe -> C:\Windows\SysNative\spinstall.exe -> [2009/06/04 04:48:18 | 00,435,712 | ---- | C | MD5 = 374A60A1498CBC697510F305FAE1A583] (Microsoft Corporation)
spreview.exe -> C:\Windows\SysNative\spreview.exe -> [2009/06/04 04:48:18 | 00,147,456 | ---- | C | MD5 = 7382050E59321AFE64BA4AF46AE81C97] (Microsoft Corporation)
esent.dll -> C:\Windows\SysNative\esent.dll -> [2009/06/04 04:48:17 | 02,506,752 | ---- | C | MD5 = E21FFFE678FF09BAA6BF5F76BD8805C6] (Microsoft Corporation)
AuxiliaryDisplayCpl.dll -> C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:17 | 01,216,000 | ---- | C | MD5 = 79B0EC7806B563475A211C5B0F9A4B9C] (Microsoft Corporation)
SearchIndexer.exe -> C:\Windows\SysNative\SearchIndexer.exe -> [2009/06/04 04:48:17 | 00,597,504 | ---- | C | MD5 = A2AC37A1EEF83BD9E912B0EFCBEA06BD] (Microsoft Corporation)
spwizui.dll -> C:\Windows\SysNative\spwizui.dll -> [2009/06/04 04:48:17 | 00,173,568 | ---- | C | MD5 = 155D06AE01296DBD7287AB50419A0B85] (Microsoft Corporation)
spwizui.dll -> C:\Windows\SysWow64\spwizui.dll -> [2009/06/04 04:48:17 | 00,164,352 | ---- | C | MD5 = 27E22847E91344C338016F6A4276F041] (Microsoft Corporation)
wmp.dll -> C:\Windows\SysNative\wmp.dll -> [2009/06/04 04:48:16 | 13,424,640 | ---- | C | MD5 = E4CD65D24DEB8BDE679B62B6626A0FCC] (Microsoft Corporation)
dfsr.exe -> C:\Windows\SysNative\dfsr.exe -> [2009/06/04 04:48:15 | 03,433,472 | ---- | C | MD5 = C647F468F7DE343DF8C143655C5557D4] (Microsoft Corporation)
ole32.dll -> C:\Windows\SysNative\ole32.dll -> [2009/06/04 04:48:15 | 01,915,392 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
drmv2clt.dll -> C:\Windows\SysWow64\drmv2clt.dll -> [2009/06/04 04:48:15 | 00,978,432 | ---- | C | MD5 = 7C7C620860819A62F926D7EC0B72C50B] (Microsoft Corporation)
mssvp.dll -> C:\Windows\SysNative\mssvp.dll -> [2009/06/04 04:48:15 | 00,796,672 | ---- | C | MD5 = D9F0D37D97862C15D1417903B8FCBF5C] (Microsoft Corporation)
sdohlp.dll -> C:\Windows\SysNative\sdohlp.dll -> [2009/06/04 04:48:15 | 00,499,200 | ---- | C | MD5 = F0E90F35D5FFCF3E474B709124D26159] (Microsoft Corporation)
spinstall.exe -> C:\Windows\SysWow64\spinstall.exe -> [2009/06/04 04:48:15 | 00,289,792 | ---- | C | MD5 = E953D69576A1BF077E709A0231E4714C] (Microsoft Corporation)
spreview.exe -> C:\Windows\SysWow64\spreview.exe -> [2009/06/04 04:48:15 | 00,112,640 | ---- | C | MD5 = 73157FFB9EF9E9C61740A5F9CA5C7B17] (Microsoft Corporation)
shell32.dll -> C:\Windows\SysWow64\shell32.dll -> [2009/06/04 04:48:14 | 11,584,000 | ---- | C | MD5 = 43466A7FF452883B68F52B963023949C] (Microsoft Corporation)
wlan.tmf -> C:\Windows\SysNative\wlan.tmf -> [2009/06/04 04:48:14 | 02,607,774 | ---- | C | MD5 = 276CD36D47AF3E91238AEE8A5BC49ED7] ()
MSMPEG2VDEC.DLL -> C:\Windows\SysNative\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:14 | 00,778,752 | ---- | C | MD5 = 6B00BFBCA33958AC95B666B4EE7244CA] (Microsoft Corporation)
mssvp.dll -> C:\Windows\SysWow64\mssvp.dll -> [2009/06/04 04:48:14 | 00,670,720 | ---- | C | MD5 = 771AF583BC58373A84496CCD52C36E33] (Microsoft Corporation)
p2psvc.dll -> C:\Windows\SysWow64\p2psvc.dll -> [2009/06/04 04:48:14 | 00,644,608 | ---- | C | MD5 = 0C8E8E61AD1EB0B250B846712C917506] (Microsoft Corporation)
mssph.dll -> C:\Windows\SysNative\mssph.dll -> [2009/06/04 04:48:14 | 00,501,248 | ---- | C | MD5 = 93655E5D1E940E5A0F73F5A1719A0DA0] (Microsoft Corporation)
secproc.dll -> C:\Windows\SysWow64\secproc.dll -> [2009/06/04 04:48:14 | 00,472,064 | ---- | C | MD5 = 86950C4B28196F1C678814A5FEA5FD4F] (Microsoft Corporation)
SearchIndexer.exe -> C:\Windows\SysWow64\SearchIndexer.exe -> [2009/06/04 04:48:14 | 00,441,344 | ---- | C | MD5 = AED0DFF80C6B3914769407E78D7AB21A] (Microsoft Corporation)
mssphtb.dll -> C:\Windows\SysNative\mssphtb.dll -> [2009/06/04 04:48:14 | 00,312,832 | ---- | C | MD5 = EE60A80BA41AE79AAC95F8788460D536] (Microsoft Corporation)
mcupdate_GenuineIntel.dll -> C:\Windows\SysNative\mcupdate_GenuineIntel.dll -> [2009/06/04 04:48:14 | 00,223,720 | ---- | C | MD5 = E15C2A9E2448E572A58A7E69CCB8140A] (Microsoft Corporation)
EhStorAuthn.dll -> C:\Windows\SysNative\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,121,856 | ---- | C | MD5 = E36E7BEC7918708163143693884F6E77] ()
EhStorAuthn.dll -> C:\Windows\SysWow64\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,117,248 | ---- | C | MD5 = 358A03A7A47F0AD71E84306AC635A626] ()
EhStorPwdMgr.dll -> C:\Windows\SysNative\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,042,496 | ---- | C | MD5 = 8B4D332731F425E6F2B3B4C8B57274CB] (Microsoft Corporation)
EhStorPwdMgr.dll -> C:\Windows\SysWow64\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,037,376 | ---- | C | MD5 = 1E73E1591DA1D44E5F865E8ADD8C09FF] (Microsoft Corporation)
kernel32.dll -> C:\Windows\SysWow64\kernel32.dll -> [2009/06/04 04:48:13 | 00,858,112 | ---- | C | MD5 = A5830F679B5B38AE9700A72087178745] (Microsoft Corporation)
imapi2.dll -> C:\Windows\SysNative\imapi2.dll -> [2009/06/04 04:48:13 | 00,506,880 | ---- | C | MD5 = ED10D55B28FCD8A6DEA09AE3FE20EC3A] (Microsoft Corporation)
srv.sys -> C:\Windows\SysNative\drivers\srv.sys -> [2009/06/04 04:48:13 | 00,440,832 | ---- | C | MD5 = 08D8358006D13B61AA3D25EFA558F101] (Microsoft Corporation)
RMActivate_ssp_isv.exe -> C:\Windows\SysNative\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:13 | 00,413,696 | ---- | C | MD5 = 6C5019724773FF072B14F33ED9CABEC6] (Microsoft Corporation)
RMActivate_ssp.exe -> C:\Windows\SysNative\RMActivate_ssp.exe -> [2009/06/04 04:48:13 | 00,409,600 | ---- | C | MD5 = 3B8D66CA55261A71B825C0ADD8863C28] (Microsoft Corporation)
mscoree.dll -> C:\Windows\SysWow64\mscoree.dll -> [2009/06/04 04:48:13 | 00,278,848 | ---- | C | MD5 = 363C34FB89B8ED269659270FB06BEC9F] (Microsoft Corporation)
WinSAT.exe -> C:\Windows\SysNative\WinSAT.exe -> [2009/06/04 04:48:12 | 03,894,272 | ---- | C | MD5 = 73B0CA77ADC7F52B94CA6DEDEF2A67C7] (Microsoft Corporation)
Query.dll -> C:\Windows\SysNative\Query.dll -> [2009/06/04 04:48:12 | 02,028,032 | ---- | C | MD5 = 27F479DFA5E1BD942E056888DCF5C270] (Microsoft Corporation)
ntdll.dll -> C:\Windows\SysWow64\ntdll.dll -> [2009/06/04 04:48:12 | 01,165,088 | ---- | C | MD5 = 6EF8A9B1E0B83DB8009B626F6627C63F] (Microsoft Corporation)
IMJP10K.DLL -> C:\Windows\SysNative\IMJP10K.DLL -> [2009/06/04 04:48:12 | 00,922,624 | ---- | C | MD5 = 72CD5B8F299ADD9C8ED3520D003D7354] (Microsoft Corporation)
MSMPEG2VDEC.DLL -> C:\Windows\SysWow64\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:12 | 00,613,888 | ---- | C | MD5 = 9D1EE179965F9DDF964A9EA99D1D70A1] (Microsoft Corporation)
mscoree.dll -> C:\Windows\SysNative\mscoree.dll -> [2009/06/04 04:48:12 | 00,403,280 | ---- | C | MD5 = 4A68B66078F07BB429A86A7844F3F2A8] (Microsoft Corporation)
imapi2.dll -> C:\Windows\SysWow64\imapi2.dll -> [2009/06/04 04:48:12 | 00,378,368 | ---- | C | MD5 = 9B0726A03B790E5B82BED44D24009BEF] (Microsoft Corporation)
uDWM.dll -> C:\Windows\SysNative\uDWM.dll -> [2009/06/04 04:48:12 | 00,367,104 | ---- | C | MD5 = 7B005E3F9825A98312E089CBA0F83DAA] (Microsoft Corporation)
mssph.dll -> C:\Windows\SysWow64\mssph.dll -> [2009/06/04 04:48:12 | 00,351,744 | ---- | C | MD5 = 351319EF11C263C95FB721AC76F436D6] (Microsoft Corporation)
sdohlp.dll -> C:\Windows\SysWow64\sdohlp.dll -> [2009/06/04 04:48:12 | 00,324,608 | ---- | C | MD5 = 723F45FB4C5D362EFC64D8F9D9B0B7B7] (Microsoft Corporation)
mssphtb.dll -> C:\Windows\SysWow64\mssphtb.dll -> [2009/06/04 04:48:12 | 00,203,264 | ---- | C | MD5 = 5E542EDAEFCDA1684463B58C0F86283A] (Microsoft Corporation)
korwbrkr.dll -> C:\Windows\SysNative\korwbrkr.dll -> [2009/06/04 04:48:12 | 00,180,736 | ---- | C | MD5 = FDD2B6B94CBB830887EED54CDC7C5E18] (Microsoft Corporation)
WMVCORE.DLL -> C:\Windows\SysNative\WMVCORE.DLL -> [2009/06/04 04:48:11 | 02,900,480 | ---- | C | MD5 = 04E0E4A26E07E2CAB3617648A2B6FD95] (Microsoft Corporation)
esent.dll -> C:\Windows\SysWow64\esent.dll -> [2009/06/04 04:48:11 | 01,459,200 | ---- | C | MD5 = 22DC784B32BEE306A99F50D6DC2460BC] (Microsoft Corporation)
IMJP10K.DLL -> C:\Windows\SysWow64\IMJP10K.DLL -> [2009/06/04 04:48:11 | 00,729,600 | ---- | C | MD5 = 5178E1791950054638DA0CC444E2D187] (Microsoft Corporation)
http.sys -> C:\Windows\SysNative\drivers\http.sys -> [2009/06/04 04:48:11 | 00,606,720 | ---- | C | MD5 = 5E16D9CCA86CE0E117FF1856C6649B33] (Microsoft Corporation)
DevicePairing.dll -> C:\Windows\SysNative\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,483,328 | ---- | C | MD5 = CF9836A7C6D247235845F6BA61122783] (Microsoft Corporation)
DevicePairing.dll -> C:\Windows\SysWow64\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,478,208 | ---- | C | MD5 = 74A68B1E09AB06FBFB494179F84544FF] (Microsoft Corporation)
msshsq.dll -> C:\Windows\SysNative\msshsq.dll -> [2009/06/04 04:48:11 | 00,316,928 | ---- | C | MD5 = AEA31124372857278FE549050206F9F5] (Microsoft Corporation)
sperror.dll -> C:\Windows\SysNative\sperror.dll -> [2009/06/04 04:48:11 | 00,238,592 | ---- | C | MD5 = 610DBE2A2A14768EC4103B5F6911BD9B] (Microsoft Corporation)
korwbrkr.dll -> C:\Windows\SysWow64\korwbrkr.dll -> [2009/06/04 04:48:11 | 00,143,872 | ---- | C | MD5 = A35B257A0A45EFCBF548E74E7E883268] (Microsoft Corporation)
wmp.dll -> C:\Windows\SysWow64\wmp.dll -> [2009/06/04 04:48:10 | 10,625,536 | ---- | C | MD5 = 42C17B457D1A21491A6E10E6EA4DDCD5] (Microsoft Corporation)
WindowsAnytimeUpgradeCPL.dll -> C:\Windows\SysNative\WindowsAnytimeUpgradeCPL.dll -> [2009/06/04 04:48:10 | 01,673,216 | ---- | C | MD5 = 23E4E5A6876082BADECA7B80DD7B21C0] (Microsoft Corporation)
IMJP10.IME -> C:\Windows\SysNative\IMJP10.IME -> [2009/06/04 04:48:10 | 01,019,904 | ---- | C | MD5 = ACB086DA910FB73B409D09B1194326C2] (Microsoft Corporation)
P2PGraph.dll -> C:\Windows\SysNative\P2PGraph.dll -> [2009/06/04 04:48:10 | 00,401,920 | ---- | C | MD5 = 1376F3B79E742A78D40BF045AB7C6542] (Microsoft Corporation)
RMActivate_ssp.exe -> C:\Windows\SysWow64\RMActivate_ssp.exe -> [2009/06/04 04:48:10 | 00,347,136 | ---- | C | MD5 = 85204698CA6BE51EF1E4CB07FC4986F7] (Microsoft Corporation)
RMActivate_ssp_isv.exe -> C:\Windows\SysWow64\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:10 | 00,346,624 | ---- | C | MD5 = 4845670F79AD77625176D764CBBFFA7F] (Microsoft Corporation)
msshsq.dll -> C:\Windows\SysWow64\msshsq.dll -> [2009/06/04 04:48:10 | 00,231,424 | ---- | C | MD5 = B2D4F14BB320E724D23B5F6795BBBC85] (Microsoft Corporation)
SLC.dll -> C:\Windows\SysWow64\SLC.dll -> [2009/06/04 04:48:10 | 00,228,352 | ---- | C | MD5 = C6DF7A87063D006ECF1FD8156CB6DE3F] (Microsoft Corporation)
sperror.dll -> C:\Windows\SysWow64\sperror.dll -> [2009/06/04 04:48:10 | 00,190,464 | ---- | C | MD5 = B731203932CC0DBEC910A9AABBFEBD43] (Microsoft Corporation)
PresentationHostProxy.dll -> C:\Windows\SysWow64\PresentationHostProxy.dll -> [2009/06/04 04:48:10 | 00,041,344 | ---- | C | MD5 = 01D8839404E8752A688D0B69715C28C1] (Microsoft Corporation)
WMVCORE.DLL -> C:\Windows\SysWow64\WMVCORE.DLL -> [2009/06/04 04:48:09 | 02,386,944 | ---- | C | MD5 = 8BB86C9F2DEEAFF88243368E0B1A78C1] (Microsoft Corporation)
setupapi.dll -> C:\Windows\SysNative\setupapi.dll -> [2009/06/04 04:48:09 | 01,925,120 | ---- | C | MD5 = BE2E23B3DD533B33338D9B3D826574DA] (Microsoft Corporation)
msjet40.dll -> C:\Windows\SysWow64\msjet40.dll -> [2009/06/04 04:48:09 | 01,589,248 | ---- | C | MD5 = 7CE1E4240F9FA41EE85683B9EEAB8767] (Microsoft Corporation)
wevtsvc.dll -> C:\Windows\SysNative\wevtsvc.dll -> [2009/06/04 04:48:09 | 01,491,968 | ---- | C | MD5 = B3564B747D0B059D99E888F8369E56BC] (Microsoft Corporation)
msxml6.dll -> C:\Windows\SysWow64\msxml6.dll -> [2009/06/04 04:48:09 | 01,336,320 | ---- | C | MD5 = 376099B0E17AA5B2157FF0C2B66F072A] (Microsoft Corporation)
crypt32.dll -> C:\Windows\SysNative\crypt32.dll -> [2009/06/04 04:48:09 | 01,259,520 | ---- | C | MD5 = 92399DADA49153870A7C178B7116C356] (Microsoft Corporation)
ndis.sys -> C:\Windows\SysNative\drivers\ndis.sys -> [2009/06/04 04:48:09 | 00,738,264 | ---- | C | MD5 = 65950E07329FCEE8E6516B17C8D0ABB6] (Microsoft Corporation)
IasMigPlugin.dll -> C:\Windows\SysNative\IasMigPlugin.dll -> [2009/06/04 04:48:09 | 00,581,632 | ---- | C | MD5 = E704B2C60A10A5353333F74E674D9D2C] (Microsoft)
EhStorAPI.dll -> C:\Windows\SysNative\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,131,072 | ---- | C | MD5 = 9ABCF91512AE8120F3E931301E28B6C1] (Microsoft Corporation)
EhStorAPI.dll -> C:\Windows\SysWow64\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,120,320 | ---- | C | MD5 = 9E5C1D19851FAE2ACDBA118AB20D55AC] (Microsoft Corporation)
SearchFilterHost.exe -> C:\Windows\SysNative\SearchFilterHost.exe -> [2009/06/04 04:48:09 | 00,111,616 | ---- | C | MD5 = BBDE232916FC116C8CB46011683AD854] (Microsoft Corporation)
compcln.exe -> C:\Windows\SysNative\compcln.exe -> [2009/06/04 04:48:09 | 00,056,320 | ---- | C | MD5 = 0168977CBD9CD8F1ED2AB3FC8851044F] (Microsoft Corporation)
PresentationHostProxy.dll -> C:\Windows\SysNative\PresentationHostProxy.dll -> [2009/06/04 04:48:09 | 00,049,496 | ---- | C | MD5 = 9FB61D236B378F761E926B16436AFAAD] (Microsoft Corporation)
vssapi.dll -> C:\Windows\SysNative\vssapi.dll -> [2009/06/04 04:48:08 | 01,495,040 | ---- | C | MD5 = 2E10EB73ED1E094E9A113D0798058B88] (Microsoft Corporation)
Query.dll -> C:\Windows\SysWow64\Query.dll -> [2009/06/04 04:48:08 | 01,381,376 | ---- | C | MD5 = B458B58F7BB97C48D01AC3CF5805AAAC] (Microsoft Corporation)
qmgr.dll -> C:\Windows\SysNative\qmgr.dll -> [2009/06/04 04:48:08 | 01,081,856 | ---- | C | MD5 = 6D316F4859634071CC25C4FD4589AD2C] (Microsoft Corporation)
winload.efi -> C:\Windows\SysNative\winload.efi -> [2009/06/04 04:48:08 | 01,078,232 | ---- | C | MD5 = D26F602EB4B8B7D69FFDEC4551902B83] (Microsoft Corporation)
winload.exe -> C:\Windows\SysNative\winload.exe -> [2009/06/04 04:48:08 | 01,064,920 | ---- | C | MD5 = E50526E2D00E27A27C0454525081604E] (Microsoft Corporation)
printfilterpipelinesvc.exe -> C:\Windows\SysNative\printfilterpipelinesvc.exe -> [2009/06/04 04:48:08 | 01,030,144 | ---- | C | MD5 = B7EF680BE91D4C2EC93A77FF41AFF518] (Microsoft Corporation)
IMJP10.IME -> C:\Windows\SysWow64\IMJP10.IME -> [2009/06/04 04:48:08 | 00,883,712 | ---- | C | MD5 = AE4DAA8F0F9AE5EC2DE1ACB5D37AFA55] (Microsoft Corporation)
user32.dll -> C:\Windows\SysWow64\user32.dll -> [2009/06/04 04:48:08 | 00,648,704 | ---- | C | MD5 = D29FDB5DEDBDC1BD882164DC6DC4DD53] (Microsoft Corporation)
EncDec.dll -> C:\Windows\SysNative\EncDec.dll -> [2009/06/04 04:48:08 | 00,558,592 | ---- | C | MD5 = 2C17ACB012C53FE4900A3DEB96FCF720] (Microsoft Corporation)
msexch40.dll -> C:\Windows\SysWow64\msexch40.dll -> [2009/06/04 04:48:08 | 00,409,600 | ---- | C | MD5 = D151AE6587F22CED36C6BF5787C25FCA] (Microsoft Corporation)
srchadmin.dll -> C:\Windows\SysNative\srchadmin.dll -> [2009/06/04 04:48:08 | 00,347,648 | ---- | C | MD5 = B6D5917CF9FDA3B434AD908559EBD2B3] (Microsoft Corporation)
systemsf.ebd -> C:\Windows\SysNative\systemsf.ebd -> [2009/06/04 04:48:08 | 00,262,552 | ---- | C | MD5 = B4F9DF6FBA2700C2017B0F766595267B] ()
infocardapi.dll -> C:\Windows\SysNative\infocardapi.dll -> [2009/06/04 04:48:08 | 00,171,360 | ---- | C | MD5 = CFA0A7E9800D3298A3C24070C0AF53D0] (Microsoft Corporation)
EhStorShell.dll -> C:\Windows\SysNative\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,123,904 | ---- | C | MD5 = B2E32F41E1D6500F62CAEF5EF2B17196] (Microsoft Corporation)
EhStorShell.dll -> C:\Windows\SysWow64\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,114,176 | ---- | C | MD5 = 14E4470BF8ACA69A85D741BA99F75F96] (Microsoft Corporation)
fdBth.dll -> C:\Windows\SysNative\fdBth.dll -> [2009/06/04 04:48:08 | 00,112,640 | ---- | C | MD5 = CC23D5006ED2FF61F033188D971AD1CB] (Microsoft Corporation)
explorer.exe -> C:\Windows\explorer.exe -> [2009/06/04 04:48:07 | 03,079,168 | ---- | C | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
msxml6.dll -> C:\Windows\SysNative\msxml6.dll -> [2009/06/04 04:48:07 | 01,733,120 | ---- | C | MD5 = 93D7D5D1DBAA7EFA317098C5204DDDA4] (Microsoft Corporation)
CertEnroll.dll -> C:\Windows\SysNative\CertEnroll.dll -> [2009/06/04 04:48:07 | 01,658,368 | ---- | C | MD5 = 5AF34B08C676F16A070A7D7EF2AB4C3E] (Microsoft Corporation)
diagperf.dll -> C:\Windows\SysNative\diagperf.dll -> [2009/06/04 04:48:07 | 01,584,128 | ---- | C | MD5 = 7371D6B52B85190971CB3F35FA0CED05] (Microsoft Corporation)
ole32.dll -> C:\Windows\SysWow64\ole32.dll -> [2009/06/04 04:48:07 | 01,316,864 | ---- | C | MD5 = C50A0AB19094BC362FBA69E105EBCCFD] (Microsoft Corporation)
msxml3.dll -> C:\Windows\SysWow64\msxml3.dll -> [2009/06/04 04:48:07 | 01,183,232 | ---- | C | MD5 = 5942F272BBEF5A77BF1DCE13BB5FAC8E] (Microsoft Corporation)
advapi32.dll -> C:\Windows\SysNative\advapi32.dll -> [2009/06/04 04:48:07 | 01,065,472 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
mblctr.exe -> C:\Windows\SysNative\mblctr.exe -> [2009/06/04 04:48:07 | 00,967,168 | ---- | C | MD5 = DB4A027E320B226D33F68C71D85103F6] (Microsoft Corporation)
rpcss.dll -> C:\Windows\SysNative\rpcss.dll -> [2009/06/04 04:48:07 | 00,719,872 | ---- | C | MD5 = CF8B9A3A5E7DC57724A89D0C3E8CF9EF] (Microsoft Corporation)
IasMigReader.exe -> C:\Windows\SysWow64\IasMigReader.exe -> [2009/06/04 04:48:07 | 00,463,872 | ---- | C | MD5 = 520FCEF4D87E37C17BB6D554B2A332E8] (Microsoft Corporation)
EncDec.dll -> C:\Windows\SysWow64\EncDec.dll -> [2009/06/04 04:48:07 | 00,428,544 | ---- | C | MD5 = 27D1A4045917EF6ED42039CC6CDCA719] (Microsoft Corporation)
P2PGraph.dll -> C:\Windows\SysWow64\P2PGraph.dll -> [2009/06/04 04:48:07 | 00,327,168 | ---- | C | MD5 = CE42E875BFF00D9561C6E1B0FF2C8943] (Microsoft Corporation)
srchadmin.dll -> C:\Windows\SysWow64\srchadmin.dll -> [2009/06/04 04:48:07 | 00,301,568 | ---- | C | MD5 = 744F08CF9ACFFB1C715191D04DEEE907] (Microsoft Corporation)
psisrndr.ax -> C:\Windows\SysWow64\psisrndr.ax -> [2009/06/04 04:48:07 | 00,217,088 | ---- | C | MD5 = 31016280DB16915C88EC6829E1628DA4] (Microsoft Corporation)
d3d9.dll -> C:\Windows\SysNative\d3d9.dll -> [2009/06/04 04:48:06 | 01,930,240 | ---- | C | MD5 = D4175BE7CA634C7BB9205F7EE4F3F7E4] (Microsoft Corporation)
mmc.exe -> C:\Windows\SysWow64\mmc.exe -> [2009/06/04 04:48:06 | 01,792,512 | ---- | C | MD5 = BB96D0590B491CDEA2EBF6D697BE8976] (Microsoft Corporation)
comsvcs.dll -> C:\Windows\SysNative\comsvcs.dll -> [2009/06/04 04:48:06 | 01,686,528 | ---- | C | MD5 = 51F2402CA69906A0839CED561BE3C0AA] (Microsoft Corporation)
browseui.dll -> C:\Windows\SysNative\browseui.dll -> [2009/06/04 04:48:06 | 01,650,688 | ---- | C | MD5 = EE9040473EB1339E75E79A75FA47A825] (Microsoft Corporation)
VSSVC.exe -> C:\Windows\SysNative\VSSVC.exe -> [2009/06/04 04:48:06 | 01,433,600 | ---- | C | MD5 = B75232DAD33BFD95BF6F0A3E6BFF51E1] (Microsoft Corporation)
mfc42u.dll -> C:\Windows\SysNative\mfc42u.dll -> [2009/06/04 04:48:06 | 01,357,824 | ---- | C | MD5 = 912655E769785458E6ED439AE2A4E92C] (Microsoft Corporation)
kerberos.dll -> C:\Windows\SysNative\kerberos.dll -> [2009/06/04 04:48:06 | 00,654,848 | ---- | C | MD5 = F60FA5685C90FDBF97EF0E28681A4004] (Microsoft Corporation)
riched20.dll -> C:\Windows\SysWow64\riched20.dll -> [2009/06/04 04:48:06 | 00,466,944 | ---- | C | MD5 = 0CFCDE5D9D074D96B78D1F1CBF1AAB1D] (Microsoft Corporation)
IasMigPlugin.dll -> C:\Windows\SysWow64\IasMigPlugin.dll -> [2009/06/04 04:48:06 | 00,454,144 | ---- | C | MD5 = 9A7E344C3D52EE1A2EF003B33B1C1BF1] (Microsoft)
gdi32.dll -> C:\Windows\SysWow64\gdi32.dll -> [2009/06/04 04:48:06 | 00,303,616 | ---- | C | MD5 = 05C8C8767E29163FC251164FF6839EA5] (Microsoft Corporation)
spoolss.dll -> C:\Windows\SysNative\spoolss.dll -> [2009/06/04 04:48:06 | 00,238,080 | ---- | C | MD5 = D48445B07F61CAFE2FE8972AAB4E31B8] (Microsoft Corporation)
DevicePairingWizard.exe -> C:\Windows\SysNative\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,069,120 | ---- | C | MD5 = 52B40ECFE9814D1C28154EA51E5D93F7] (Microsoft Corporation)
DevicePairingWizard.exe -> C:\Windows\SysWow64\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,065,536 | ---- | C | MD5 = 5AAE542EBB0F3CA7C1E5E6D5457BA2CE] (Microsoft Corporation)
milcore.dll -> C:\Windows\SysWow64\milcore.dll -> [2009/06/04 04:48:05 | 02,012,160 | ---- | C | MD5 = C99403A5B641520DAED0021DDA06F272] (Microsoft Corporation)
mfc42.dll -> C:\Windows\SysNative\mfc42.dll -> [2009/06/04 04:48:05 | 01,395,712 | ---- | C | MD5 = 13E3B46DA1D334762B6AD2E86B12DA94] (Microsoft Corporation)
WsmSvc.dll -> C:\Windows\SysNative\WsmSvc.dll -> [2009/06/04 04:48:05 | 01,092,096 | ---- | C | MD5 = 42717DB2BE3A075D0F0CD5C927C27A43] (Microsoft Corporation)
RacEngn.dll -> C:\Windows\SysWow64\RacEngn.dll -> [2009/06/04 04:48:05 | 00,880,640 | ---- | C | MD5 = 9EFF12E09FF0EA85D43A3AC1F1EEBCE9] (Microsoft Corporation)
Magnify.exe -> C:\Windows\SysWow64\Magnify.exe -> [2009/06/04 04:48:05 | 00,710,144 | ---- | C | MD5 = E47C854A28A81F2939F42CBE9FEA994C] (Microsoft Corporation)
afd.sys -> C:\Windows\SysNative\drivers\afd.sys -> [2009/06/04 04:48:05 | 00,406,016 | ---- | C | MD5 = 12415CCFD3E7CEC55B5184E67B039FE4] (Microsoft Corporation)
WMPhoto.dll -> C:\Windows\SysNative\WMPhoto.dll -> [2009/06/04 04:48:05 | 00,379,392 | ---- | C | MD5 = 548EDDC705789D7FD564C5DE5A2B90D9] (Microsoft Corporation)
netio.sys -> C:\Windows\SysNative\drivers\netio.sys -> [2009/06/04 04:48:05 | 00,347,112 | ---- | C | MD5 = 2E4C6D76DB8FAADCF4A020758CD0B2C5] (Microsoft Corporation)
bcrypt.dll -> C:\Windows\SysWow64\bcrypt.dll -> [2009/06/04 04:48:05 | 00,275,968 | ---- | C | MD5 = 4ACF748A8E576761E4C610ACAB67B1BC] (Microsoft Corporation)
SearchProtocolHost.exe -> C:\Windows\SysWow64\SearchProtocolHost.exe -> [2009/06/04 04:48:05 | 00,185,344 | ---- | C | MD5 = B5EF1DA337DB9859709A387638AC5E07] (Microsoft Corporation)
PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:48:05 | 00,123,256 | ---- | C | MD5 = E7F360082D6949844519BA00E793B09E] (Microsoft Corporation)
fdBth.dll -> C:\Windows\SysWow64\fdBth.dll -> [2009/06/04 04:48:05 | 00,088,064 | ---- | C | MD5 = D07E4D54CC014C4D3FEB9EFC2304C84E] (Microsoft Corporation)
SearchFilterHost.exe -> C:\Windows\SysWow64\SearchFilterHost.exe -> [2009/06/04 04:48:05 | 00,087,552 | ---- | C | MD5 = C9EE7FF225EAC1CB9C78C413667CDB80] (Microsoft Corporation)
dbgeng.dll -> C:\Windows\SysNative\dbgeng.dll -> [2009/06/04 04:48:04 | 02,484,224 | ---- | C | MD5 = 3BBDC794EC79F4776ADCC50F6DDF90AA] (Microsoft Corporation)
mstscax.dll -> C:\Windows\SysNative\mstscax.dll -> [2009/06/04 04:48:04 | 02,424,320 | ---- | C | MD5 = EF222AE54FF7B3B1055CC83C3DA81B18] (Microsoft Corporation)
apds.dll -> C:\Windows\SysNative\apds.dll -> [2009/06/04 04:48:04 | 02,112,000 | ---- | C | MD5 = F90ED5EE26169B69A3F915CFD014BA60] (Microsoft Corporation)
CertEnroll.dll -> C:\Windows\SysWow64\CertEnroll.dll -> [2009/06/04 04:48:04 | 01,112,064 | ---- | C | MD5 = 0053319C4438CDE659AA75C19BBD22F1] (Microsoft Corporation)
Magnify.exe -> C:\Windows\SysNative\Magnify.exe -> [2009/06/04 04:48:04 | 00,859,648 | ---- | C | MD5 = DFFB91500638FACA4CDEA50E4E1F02F9] (Microsoft Corporation)
schedsvc.dll -> C:\Windows\SysNative\schedsvc.dll -> [2009/06/04 04:48:04 | 00,843,776 | ---- | C | MD5 = 717C12DF4B7C93FEC97D146AC1342B25] (Microsoft Corporation)
NaturalLanguage6.dll -> C:\Windows\SysWow64\NaturalLanguage6.dll -> [2009/06/04 04:48:04 | 00,805,376 | ---- | C | MD5 = 1CE4A2790EB4A96F4ED1E4264866AFE6] (Microsoft Corporation)
dpapimig.exe -> C:\Windows\SysNative\dpapimig.exe -> [2009/06/04 04:48:04 | 00,553,472 | ---- | C | MD5 = 38A245916DE7BD6DF73DE9E98D377213] (Microsoft Corporation)
eudcedit.exe -> C:\Windows\SysNative\eudcedit.exe -> [2009/06/04 04:48:04 | 00,280,064 | ---- | C | MD5 = EBA67A3AC3DFB2EDDC5E7B967428669A] (Microsoft Corporation)
iasrecst.dll -> C:\Windows\SysNative\iasrecst.dll -> [2009/06/04 04:48:04 | 00,192,000 | ---- | C | MD5 = 7940F88C3D5BAFEE6749D3FE6CDF0569] (Microsoft Corporation)
spoolss.dll -> C:\Windows\SysWow64\spoolss.dll -> [2009/06/04 04:48:04 | 00,160,768 | ---- | C | MD5 = E79FDA8D320147FDC347C504B3487F87] (Microsoft Corporation)
RacEngn.dll -> C:\Windows\SysNative\RacEngn.dll -> [2009/06/04 04:48:03 | 01,244,672 | ---- | C | MD5 = 95F7DB7DD8259D013831E35EE6C7A270] (Microsoft Corporation)
msctf.dll -> C:\Windows\SysNative\msctf.dll -> [2009/06/04 04:48:03 | 01,040,896 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
gpedit.dll -> C:\Windows\SysNative\gpedit.dll -> [2009/06/04 04:48:03 | 01,013,248 | ---- | C | MD5 = 0BC0B3C27E4A5F4FFD864C6BA7F4F4A6] (Microsoft Corporation)
gpedit.dll -> C:\Windows\SysWow64\gpedit.dll -> [2009/06/04 04:48:03 | 00,950,784 | ---- | C | MD5 = 4E51A7052D162B2BA85612B486A68A45] (Microsoft Corporation)
comuid.dll -> C:\Windows\SysNative\comuid.dll -> [2009/06/04 04:48:03 | 00,918,528 | ---- | C | MD5 = 8B95404FC3B191192A70534C5B74C861] (Microsoft Corporation)
oleaut32.dll -> C:\Windows\SysNative\oleaut32.dll -> [2009/06/04 04:48:03 | 00,847,360 | ---- | C | MD5 = 1785F3FC389381B6F44F52011E47685E] (Microsoft Corporation)
user32.dll -> C:\Windows\SysNative\user32.dll -> [2009/06/04 04:48:03 | 00,820,224 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
bthprops.cpl -> C:\Windows\SysNative\bthprops.cpl -> [2009/06/04 04:48:03 | 00,668,160 | ---- | C | MD5 = DBC0B012A13C7738871D569005DEB5D1] (Microsoft Corporation)
evr.dll -> C:\Windows\SysNative\evr.dll -> [2009/06/04 04:48:03 | 00,647,680 | ---- | C | MD5 = AF96CCADA9B7ADB6488DDB6A60374821] (Microsoft Corporation)
ipsmsnap.dll -> C:\Windows\SysNative\ipsmsnap.dll -> [2009/06/04 04:48:03 | 00,620,544 | ---- | C | MD5 = D1F7EB45DE179124288EE090B6CDE424] (Microsoft Corporation)
msdrm.dll -> C:\Windows\SysNative\msdrm.dll -> [2009/06/04 04:48:03 | 00,460,288 | ---- | C | MD5 = 37B431C27C022C406E1104378737CF1D] (Microsoft Corporation)
audiosrv.dll -> C:\Windows\SysNative\audiosrv.dll -> [2009/06/04 04:48:03 | 00,446,464 | ---- | C | MD5 = 79318C744693EC983D20E9337A2F8196] (Microsoft Corporation)
msvcp60.dll -> C:\Windows\SysWow64\msvcp60.dll -> [2009/06/04 04:48:03 | 00,406,528 | ---- | C | MD5 = 2310A32BB0164552A311BFA02102A3D6] (Microsoft Corporation)
photowiz.dll -> C:\Windows\SysNative\photowiz.dll -> [2009/06/04 04:48:03 | 00,402,944 | ---- | C | MD5 = A58E57E542EF8F41DC5842F4AB9C9EA5] (Microsoft Corporation)
es.dll -> C:\Windows\SysNative\es.dll -> [2009/06/04 04:48:03 | 00,361,984 | ---- | C | MD5 = E12F22B73F153DECE721CD45EC05B4AF] (Microsoft Corporation)
msjtes40.dll -> C:\Windows\SysWow64\msjtes40.dll -> [2009/06/04 04:48:03 | 00,290,816 | ---- | C | MD5 = 79B0463638C7ED08DB71FE3437C95A44] (Microsoft Corporation)
infocardapi.dll -> C:\Windows\SysWow64\infocardapi.dll -> [2009/06/04 04:48:03 | 00,099,680 | ---- | C | MD5 = E6AA880A6AE64D9C5FED9D7CCC9DA8EF] (Microsoft Corporation)
slwmi.dll -> C:\Windows\SysNative\slwmi.dll -> [2009/06/04 04:48:03 | 00,088,064 | ---- | C | MD5 = BDFDEBFEB67DEC4A82792E421778805F] (Microsoft Corporation)
Storprop.dll -> C:\Windows\SysWow64\Storprop.dll -> [2009/06/04 04:48:03 | 00,055,808 | ---- | C | MD5 = 61BB723E9AF2D1505337402F4AE79E94] (Microsoft Corporation)
quartz.dll -> C:\Windows\SysNative\quartz.dll -> [2009/06/04 04:48:02 | 01,570,304 | ---- | C | MD5 = 7C928C97C0E24CC5FDB13D705C122C09] (Microsoft Corporation)
advapi32.dll -> C:\Windows\SysWow64\advapi32.dll -> [2009/06/04 04:48:02 | 00,800,768 | ---- | C | MD5 = 50CAA7072C171B9887215C83D52069E4] (Microsoft Corporation)
msihnd.dll -> C:\Windows\SysNative\msihnd.dll -> [2009/06/04 04:48:02 | 00,503,296 | ---- | C | MD5 = CC5A06E21510501BFAC469B36490FD86] (Microsoft Corporation)
shlwapi.dll -> C:\Windows\SysNative\shlwapi.dll -> [2009/06/04 04:48:02 | 00,455,680 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
certcli.dll -> C:\Windows\SysNative\certcli.dll -> [2009/06/04 04:48:02 | 00,447,488 | ---- | C | MD5 = C88208718545410FA0F11E06F6E7F01B] (Microsoft Corporation)
wevtapi.dll -> C:\Windows\SysNative\wevtapi.dll -> [2009/06/04 04:48:02 | 00,394,240 | ---- | C | MD5 = 45B4004F43B48E4A3F12B85891F81221] (Microsoft Corporation)
msexcl40.dll -> C:\Windows\SysWow64\msexcl40.dll -> [2009/06/04 04:48:02 | 00,339,968 | ---- | C | MD5 = 35525EE95CEDB5E9908CFF676C7A2D97] (Microsoft Corporation)
WMPhoto.dll -> C:\Windows\SysWow64\WMPhoto.dll -> [2009/06/04 04:48:02 | 00,321,536 | ---- | C | MD5 = 845D8122008558B9A3A5EE81B15C8C46] (Microsoft Corporation)
psisrndr.ax -> C:\Windows\SysNative\psisrndr.ax -> [2009/06/04 04:48:02 | 00,289,792 | ---- | C | MD5 = F581D89097400BB3142F7E2EA7AF55A2] (Microsoft Corporation)
mstext40.dll -> C:\Windows\SysWow64\mstext40.dll -> [2009/06/04 04:48:02 | 00,282,624 | ---- | C | MD5 = 946D35645E672E01B35ED194F9BE4F7A] (Microsoft Corporation)
fltMgr.sys -> C:\Windows\SysNative\drivers\fltMgr.sys -> [2009/06/04 04:48:02 | 00,275,432 | ---- | C | MD5 = E3041BC26D6930D61F42AEDB79C91720] (Microsoft Corporation)
es.dll -> C:\Windows\SysWow64\es.dll -> [2009/06/04 04:48:02 | 00,268,800 | ---- | C | MD5 = 67058C46504BC12D821F38CF99B7B28F] (Microsoft Corporation)
WebClnt.dll -> C:\Windows\SysWow64\WebClnt.dll -> [2009/06/04 04:48:02 | 00,199,680 | ---- | C | MD5 = 04C37D8107320312FBAE09926103D5E2] (Microsoft Corporation)
nlhtml.dll -> C:\Windows\SysNative\nlhtml.dll -> [2009/06/04 04:48:02 | 00,181,248 | ---- | C | MD5 = E02D92397E7F43E47244F33C88BB3DB0] (Microsoft Corporation)
PresentationSettings.exe -> C:\Windows\SysNative\PresentationSettings.exe -> [2009/06/04 04:48:02 | 00,173,568 | ---- | C | MD5 = 5537EBC1209B3AA1332A03896B1184C3] (Microsoft Corporation)
SLC.dll -> C:\Windows\SysNative\SLC.dll -> [2009/06/04 04:48:02 | 00,151,552 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
AuxiliaryDisplayDriverLib.dll -> C:\Windows\SysNative\AuxiliaryDisplayDriverLib.dll -> [2009/06/04 04:48:02 | 00,131,072 | ---- | C | MD5 = C96425341E76EE123521C84448C4FFC3] (Microsoft Corporation)
AuxiliaryDisplayServices.dll -> C:\Windows\SysNative\AuxiliaryDisplayServices.dll -> [2009/06/04 04:48:02 | 00,126,464 | ---- | C | MD5 = FCBF244FE64C227839EC365333CBE79B] (Microsoft Corporation)
wcnwiz.dll -> C:\Windows\SysNative\wcnwiz.dll -> [2009/06/04 04:48:01 | 01,681,920 | ---- | C | MD5 = 22CB55E35C2FFC08711473738A629BB5] (Microsoft Corporation)
comsvcs.dll -> C:\Windows\SysWow64\comsvcs.dll -> [2009/06/04 04:48:01 | 01,209,856 | ---- | C | MD5 = 95A5497D129D95D12A46F7848AFFE1DB] (Microsoft Corporation)
vssapi.dll -> C:\Windows\SysWow64\vssapi.dll -> [2009/06/04 04:48:01 | 01,077,248 | ---- | C | MD5 = 17FC3EDA0162F513E858B8C8FA7FA6E0] (Microsoft Corporation)
msvcrt.dll -> C:\Windows\SysNative\msvcrt.dll -> [2009/06/04 04:48:01 | 00,621,056 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
devmgr.dll -> C:\Windows\SysNative\devmgr.dll -> [2009/06/04 04:48:01 | 00,498,688 | ---- | C | MD5 = C4A4967907A8820761EEA49FE2A35AE3] (Microsoft Corporation)
msxbde40.dll -> C:\Windows\SysWow64\msxbde40.dll -> [2009/06/04 04:48:01 | 00,454,656 | ---- | C | MD5 = A02537DD475CC0BAB7FC07F9B44720C0] (Microsoft Corporation)
WcnNetsh.dll -> C:\Windows\SysNative\WcnNetsh.dll -> [2009/06/04 04:48:01 | 00,238,592 | ---- | C | MD5 = EEB896D38B7A5CC1CC621278254EC9C8] (Microsoft Corporation)
srvnet.sys -> C:\Windows\SysNative\drivers\srvnet.sys -> [2009/06/04 04:48:01 | 00,143,360 | ---- | C | MD5 = 54F34EF396760EC51ABF85E12CC72ACF] (Microsoft Corporation)
slwmi.dll -> C:\Windows\SysWow64\slwmi.dll -> [2009/06/04 04:48:01 | 00,067,584 | ---- | C | MD5 = A0D83B84678410994372D7D4BABAF7E0] (Microsoft Corporation)
DevicePairingProxy.dll -> C:\Windows\SysNative\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,057,856 | ---- | C | MD5 = 63C9915DB262D87566F748E51DA536CF] (Microsoft Corporation)
DevicePairingProxy.dll -> C:\Windows\SysWow64\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,054,784 | ---- | C | MD5 = 3C7A18013E99EAA45188A7C57B1AA758] (Microsoft Corporation)
mstscax.dll -> C:\Windows\SysWow64\mstscax.dll -> [2009/06/04 04:48:00 | 02,066,432 | ---- | C | MD5 = 32A920003B5AFB260F86473D9D550457] (Microsoft Corporation)
authui.dll -> C:\Windows\SysWow64\authui.dll -> [2009/06/04 04:48:00 | 01,985,024 | ---- | C | MD5 = 58C2521D87C494831A625202C80354AD] (Microsoft Corporation)
msdtctm.dll -> C:\Windows\SysNative\msdtctm.dll -> [2009/06/04 04:48:00 | 01,499,136 | ---- | C | MD5 = 5CB1477EEABBEE128C759283514AFA93] (Microsoft Corporation)
shdocvw.dll -> C:\Windows\SysNative\shdocvw.dll -> [2009/06/04 04:48:00 | 01,195,520 | ---- | C | MD5 = 52414CF37708E802AA6F058695592DF9] (Microsoft Corporation)
NetProjW.dll -> C:\Windows\SysNative\NetProjW.dll -> [2009/06/04 04:48:00 | 01,098,240 | ---- | C | MD5 = 61D4DBC6D1C1C98DC935888295A89D01] (Microsoft Corporation)
wcncsvc.dll -> C:\Windows\SysNative\wcncsvc.dll -> [2009/06/04 04:48:00 | 00,581,120 | ---- | C | MD5 = B4E4C37D0AA6100090A53213EE2BF1C1] (Microsoft Corporation)
msctfp.dll -> C:\Windows\SysNative\msctfp.dll -> [2009/06/04 04:48:00 | 00,230,400 | ---- | C | MD5 = 21D24F722E08B8E3AA7F19855403C5C2] (Microsoft Corporation)
fdBthProxy.dll -> C:\Windows\SysNative\fdBthProxy.dll -> [2009/06/04 04:48:00 | 00,012,288 | ---- | C | MD5 = 06422CA4D1F57C78F2BE9722EC20FB0A] (Microsoft Corporation)
certutil.exe -> C:\Windows\SysNative\certutil.exe -> [2009/06/04 04:47:59 | 01,060,864 | ---- | C | MD5 = C4AA6E59A319E5D51470D1809B1354C4] (Microsoft Corporation)
propsys.dll -> C:\Windows\SysWow64\propsys.dll -> [2009/06/04 04:47:59 | 00,754,688 | ---- | C | MD5 = 7DACD94118E2D8B6D72F47ADEB0367BF] (Microsoft Corporation)
gpsvc.dll -> C:\Windows\SysNative\gpsvc.dll -> [2009/06/04 04:47:59 | 00,719,360 | ---- | C | MD5 = A0E1B575BA8F504968CD40C0FAEB2384] (Microsoft Corporation)
win32spl.dll -> C:\Windows\SysNative\win32spl.dll -> [2009/06/04 04:47:59 | 00,660,480 | ---- | C | MD5 = 1D2CC592516BD0544A107104461688F4] (Microsoft Corporation)
msrepl40.dll -> C:\Windows\SysWow64\msrepl40.dll -> [2009/06/04 04:47:59 | 00,643,072 | ---- | C | MD5 = A4D9AB211B376EB363550A250A64D84D] (Microsoft Corporation)
bthprops.cpl -> C:\Windows\SysWow64\bthprops.cpl -> [2009/06/04 04:47:59 | 00,640,512 | ---- | C | MD5 = C0ABD66F31C0B84CD944802E6D3D02C2] (Microsoft Corporation)
SLCommDlg.dll -> C:\Windows\SysNative\SLCommDlg.dll -> [2009/06/04 04:47:59 | 00,631,296 | ---- | C | MD5 = 77A8C01035EF074AAA930C971A54598B] (Microsoft Corporation)
msvcp60.dll -> C:\Windows\SysNative\msvcp60.dll -> [2009/06/04 04:47:59 | 00,598,016 | ---- | C | MD5 = FC26F6B403512A3224B16CA59976D1CB] (Microsoft Corporation)
newdev.dll -> C:\Windows\SysWow64\newdev.dll -> [2009/06/04 04:47:59 | 00,469,504 | ---- | C | MD5 = E1B80644E7125231AAEF62FC2C81C8FE] (Microsoft Corporation)
w32time.dll -> C:\Windows\SysNative\w32time.dll -> [2009/06/04 04:47:59 | 00,372,736 | ---- | C | MD5 = F14A7DE2EA41883E250892E1E5230A9A] (Microsoft Corporation)
PresentationHost.exe -> C:\Windows\SysNative\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,354,640 | ---- | C | MD5 = 25A85D10DE6A1D7E1BFC294B82726AC4] (Microsoft Corporation)
PresentationHost.exe -> C:\Windows\SysWow64\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,323,952 | ---- | C | MD5 = 44E6658E2466566E1AC82E31EAE572F8] (Microsoft Corporation)
rsaenh.dll -> C:\Windows\SysNative\rsaenh.dll -> [2009/06/04 04:47:59 | 00,289,768 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
spoolsv.exe -> C:\Windows\SysNative\spoolsv.exe -> [2009/06/04 04:47:59 | 00,268,288 | ---- | C | MD5 = EADA445EAEDD1D7DF4C5EB42B3612729] (Microsoft Corporation)
netbt.sys -> C:\Windows\SysNative\drivers\netbt.sys -> [2009/06/04 04:47:59 | 00,248,320 | ---- | C | MD5 = FC2C792EBDDC8E28DF939D6A92C83D61] (Microsoft Corporation)
WebClnt.dll -> C:\Windows\SysNative\WebClnt.dll -> [2009/06/04 04:47:59 | 00,218,624 | ---- | C | MD5 = 3E6D05381CF35F75EBB055544A8ED9AC] (Microsoft Corporation)
Classpnp.sys -> C:\Windows\SysNative\drivers\Classpnp.sys -> [2009/06/04 04:47:59 | 00,164,840 | ---- | C | MD5 = 6B6BEA1421FC416E35B2D17495380104] (Microsoft Corporation)
iasrecst.dll -> C:\Windows\SysWow64\iasrecst.dll -> [2009/06/04 04:47:59 | 00,119,296 | ---- | C | MD5 = E176452A085570571A38C0CB33B1F99A] (Microsoft Corporation)
PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:47:59 | 00,102,816 | ---- | C | MD5 = 199FBF92E3F750637F2C027A4792949B] (Microsoft Corporation)
davclnt.dll -> C:\Windows\SysNative\davclnt.dll -> [2009/06/04 04:47:59 | 00,082,432 | ---- | C | MD5 = AAC4DFF79689736D8B316FC05A3E25EC] (Microsoft Corporation)
explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/06/04 04:47:58 | 02,926,592 | ---- | C | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
certmgr.dll -> C:\Windows\SysNative\certmgr.dll -> [2009/06/04 04:47:58 | 01,748,992 | ---- | C | MD5 = 1E72CD50DB40A2034E37C1D269D518BF] (Microsoft Corporation)
setupapi.dll -> C:\Windows\SysWow64\setupapi.dll -> [2009/06/04 04:47:58 | 01,591,296 | ---- | C | MD5 = 551F51B66E5EA87A38D8197EB3BDB57A] (Microsoft Corporation)
crypt32.dll -> C:\Windows\SysWow64\crypt32.dll -> [2009/06/04 04:47:58 | 00,978,944 | ---- | C | MD5 = 6659EC6006FD99A3AF1B8A6306F8BE3C] (Microsoft Corporation)
msdtcprx.dll -> C:\Windows\SysNative\msdtcprx.dll -> [2009/06/04 04:47:58 | 00,727,552 | ---- | C | MD5 = 649672EED4626058CB740117DD453BFC] (Microsoft Corporation)
eaphost.tmf -> C:\Windows\SysNative\eaphost.tmf -> [2009/06/04 04:47:58 | 00,700,507 | ---- | C | MD5 = 5D459A67C06671DAAAB378FBA07A1268] ()
dot3.tmf -> C:\Windows\SysNative\dot3.tmf -> [2009/06/04 04:47:58 | 00,471,992 | ---- | C | MD5 = FBB5C98267F271BE897A47D220BBA131] ()
mspbde40.dll -> C:\Windows\SysWow64\mspbde40.dll -> [2009/06/04 04:47:58 | 00,368,640 | ---- | C | MD5 = 81379121E6028612D821009636A6BB95] (Microsoft Corporation)
umpnpmgr.dll -> C:\Windows\SysNative\umpnpmgr.dll -> [2009/06/04 04:47:58 | 00,313,344 | ---- | C | MD5 = FE6B0F59215C9FD9F9D26539C58C8B82] (Microsoft Corporation)
eudcedit.exe -> C:\Windows\SysWow64\eudcedit.exe -> [2009/06/04 04:47:58 | 00,205,824 | ---- | C | MD5 = 7095D31979FFB0B917987B388779BD01] (Microsoft Corporation)
d3d9.dll -> C:\Windows\SysWow64\d3d9.dll -> [2009/06/04 04:47:57 | 01,788,416 | ---- | C | MD5 = 8AAEEE8E59A70F37579993D118A34EE0] (Microsoft Corporation)
WMNetMgr.dll -> C:\Windows\SysNative\WMNetMgr.dll -> [2009/06/04 04:47:57 | 01,245,696 | ---- | C | MD5 = D2C36317F072C58D4AB8C0203010C9B1] (Microsoft Corporation)
WindowsCodecs.dll -> C:\Windows\SysNative\WindowsCodecs.dll -> [2009/06/04 04:47:57 | 00,841,728 | ---- | C | MD5 = EED4C9B2249DBFC81ADC18DCB7EEF2AB] (Microsoft Corporation)
PhotoScreensaver.scr -> C:\Windows\SysNative\PhotoScreensaver.scr -> [2009/06/04 04:47:57 | 00,840,704 | ---- | C | MD5 = 7AC5EDC47BA33E02B7D55B6C10E01688] (Microsoft Corporation)
MPSSVC.dll -> C:\Windows\SysNative\MPSSVC.dll -> [2009/06/04 04:47:57 | 00,603,136 | ---- | C | MD5 = 897E3BAF68BA406A61682AE39C83900C] (Microsoft Corporation)
wmicmiplugin.dll -> C:\Windows\SysNative\wmicmiplugin.dll -> [2009/06/04 04:47:57 | 00,497,152 | ---- | C | MD5 = FED22F5556D652C9F87BF3255D463C24] (Microsoft Corporation)
swprv.dll -> C:\Windows\SysNative\swprv.dll -> [2009/06/04 04:47:57 | 00,480,768 | ---- | C | MD5 = 6DE37F4DE19D4EFD9C48C43ADDBC949A] (Microsoft Corporation)
gdi32.dll -> C:\Windows\SysNative\gdi32.dll -> [2009/06/04 04:47:57 | 00,389,632 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
SLUI.exe -> C:\Windows\SysNative\SLUI.exe -> [2009/06/04 04:47:57 | 00,385,024 | ---- | C | MD5 = 21C15BAC64D61959FD79959F1EAF3DC4] (Microsoft Corporation)
rdbss.sys -> C:\Windows\SysNative\drivers\rdbss.sys -> [2009/06/04 04:47:57 | 00,287,744 | ---- | C | MD5 = 322DB5C6B55E8D8EE8D6F358B2AAABB1] (Microsoft Corporation)
msv1_0.dll -> C:\Windows\SysNative\msv1_0.dll -> [2009/06/04 04:47:57 | 00,265,728 | ---- | C | MD5 = 4D7969AF7FFFB45F53CCCEDEBE5A1136] (Microsoft Corporation)
msltus40.dll -> C:\Windows\SysWow64\msltus40.dll -> [2009/06/04 04:47:57 | 00,241,664 | ---- | C | MD5 = 1A703DA65271886A8DDFB31ACA215DAE] (Microsoft Corporation)
StructuredQuerySchema.bin -> C:\Windows\SysWow64\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
StructuredQuerySchema.bin -> C:\Windows\SysNative\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
davclnt.dll -> C:\Windows\SysWow64\davclnt.dll -> [2009/06/04 04:47:57 | 00,061,440 | ---- | C | MD5 = CFBD2E1FE18B50748A76703A2DC6D4E3] (Microsoft Corporation)
WMVSDECD.DLL -> C:\Windows\SysNative\WMVSDECD.DLL -> [2009/06/04 04:47:56 | 01,543,680 | ---- | C | MD5 = D4F0833AD5C60422BC63B740D7198EB0] (Microsoft Corporation)
wercon.exe -> C:\Windows\SysNative\wercon.exe -> [2009/06/04 04:47:56 | 01,394,176 | ---- | C | MD5 = 406121C827A2901E72DAB2197DAE180E] (Microsoft Corporation)
browseui.dll -> C:\Windows\SysWow64\browseui.dll -> [2009/06/04 04:47:56 | 01,324,032 | ---- | C | MD5 = 4504819D18FAC09B6108D8728467E5B2] (Microsoft Corporation)
mfc42.dll -> C:\Windows\SysWow64\mfc42.dll -> [2009/06/04 04:47:56 | 01,135,104 | ---- | C | MD5 = 9A8880BE64A67FA72A8F4DC71AF882E1] (Microsoft Corporation)
ipsecsnp.dll -> C:\Windows\SysNative\ipsecsnp.dll -> [2009/06/04 04:47:56 | 00,935,424 | ---- | C | MD5 = F6FA73DC89FF88360AEDBCE64BF55DD1] (Microsoft Corporation)
dxgkrnl.sys -> C:\Windows\SysNative\drivers\dxgkrnl.sys -> [2009/06/04 04:47:56 | 00,885,248 | ---- | C | MD5 = E828CDCA431D1F98D33501DFC390079A] (Microsoft Corporation)
samsrv.dll -> C:\Windows\SysNative\samsrv.dll -> [2009/06/04 04:47:56 | 00,671,744 | ---- | C | MD5 = 60EEC5440C2D05E5FDA04900E45FF717] (Microsoft Corporation)
netapi32.dll -> C:\Windows\SysNative\netapi32.dll -> [2009/06/04 04:47:56 | 00,648,192 | ---- | C | MD5 = EAA6D9F1C23A5C3375E6D3653F57E7BE] (Microsoft Corporation)
sqlsrv32.dll -> C:\Windows\SysNative\sqlsrv32.dll -> [2009/06/04 04:47:56 | 00,581,632 | ---- | C | MD5 = 9B385CED28719273914D64556AA2DFC7] (Microsoft Corporation)
ci.dll -> C:\Windows\SysNative\ci.dll -> [2009/06/04 04:47:56 | 00,380,392 | ---- | C | MD5 = 57D469072472C9F14125A347C522DD18] (Microsoft Corporation)
shlwapi.dll -> C:\Windows\SysWow64\shlwapi.dll -> [2009/06/04 04:47:56 | 00,353,280 | ---- | C | MD5 = 8246FC0B1759EBE4E0E60BA1BD13C467] (Microsoft Corporation)
iassdo.dll -> C:\Windows\SysNative\iassdo.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = ED50FAC6BC71FBA60F845A3F683CA056] (Microsoft Corporation)
msrd3x40.dll -> C:\Windows\SysWow64\msrd3x40.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = 447E79497D059943519434A7D5EA0963] (Microsoft Corporation)
PortableDeviceApi.dll -> C:\Windows\SysNative\PortableDeviceApi.dll -> [2009/06/04 04:47:56 | 00,324,608 | ---- | C | MD5 = 494B0A9A4DB58EF767DC115512823A8A] (Microsoft Corporation)
photowiz.dll -> C:\Windows\SysWow64\photowiz.dll -> [2009/06/04 04:47:56 | 00,293,376 | ---- | C | MD5 = ED49ADAF173B23E48A9BA110BD80160F] (Microsoft Corporation)
usbhub.sys -> C:\Windows\SysNative\drivers\usbhub.sys -> [2009/06/04 04:47:56 | 00,273,920 | ---- | C | MD5 = BB35CD80A2ECECFADC73569B3D70C7D1] (Microsoft Corporation)
wevtapi.dll -> C:\Windows\SysWow64\wevtapi.dll -> [2009/06/04 04:47:56 | 00,250,368 | ---- | C | MD5 = 4DE3C4D07BAFDE616EFA0ADE076CBAC2] (Microsoft Corporation)
nlhtml.dll -> C:\Windows\SysWow64\nlhtml.dll -> [2009/06/04 04:47:56 | 00,136,192 | ---- | C | MD5 = 70352EFA22EAFF59D50F0ADF7D27D918] (Microsoft Corporation)
locale.nls -> C:\Windows\SysWow64\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
locale.nls -> C:\Windows\SysNative\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
authui.dll -> C:\Windows\SysNative\authui.dll -> [2009/06/04 04:47:55 | 02,272,256 | ---- | C | MD5 = 363D07C0F427C72BDE0B6D6492A205C9] (Microsoft Corporation)
quartz.dll -> C:\Windows\SysWow64\quartz.dll -> [2009/06/04 04:47:55 | 01,314,816 | ---- | C | MD5 = F82BEBFF620C728CD4CC532E5D266D44] (Microsoft Corporation)
win32spl.dll -> C:\Windows\SysWow64\win32spl.dll -> [2009/06/04 04:47:55 | 00,443,392 | ---- | C | MD5 = C90B296C43EDD9DD1751AD3B590ACDE6] (Microsoft Corporation)
onex.tmf -> C:\Windows\SysNative\onex.tmf -> [2009/06/04 04:47:55 | 00,395,723 | ---- | C | MD5 = 4E18EBFC135590B5462EEF830224A1B2] ()
services.exe -> C:\Windows\SysNative\services.exe -> [2009/06/04 04:47:55 | 00,384,512 | ---- | C | MD5 = 934E0B7D77FF78C18D9F8891221B6DE3] (Microsoft Corporation)
USBSTOR.SYS -> C:\Windows\SysNative\drivers\USBSTOR.SYS -> [2009/06/04 04:47:55 | 00,077,824 | ---- | C | MD5 = B854C1558FCA0C269A38663E8B59B581] (Microsoft Corporation)
netshell.dll -> C:\Windows\SysWow64\netshell.dll -> [2009/06/04 04:47:54 | 03,174,400 | ---- | C | MD5 = E98E402067978DB38282158F9E8609CA] (Microsoft Corporation)
apds.dll -> C:\Windows\SysWow64\apds.dll -> [2009/06/04 04:47:54 | 01,730,560 | ---- | C | MD5 = AC40F8899BEC013EB1CA7CCC2D69E00C] (Microsoft Corporation)
mswstr10.dll -> C:\Windows\SysWow64\mswstr10.dll -> [2009/06/04 04:47:54 | 00,618,496 | ---- | C | MD5 = E0B787702BAF0CF4CEDF8F61B71F8383] (Microsoft Corporation)
comdlg32.dll -> C:\Windows\SysNative\comdlg32.dll -> [2009/06/04 04:47:54 | 00,549,888 | ---- | C | MD5 = AA09B70F619CBF499EFC22E7A63E3CE6] (Microsoft Corporation)
kerberos.dll -> C:\Windows\SysWow64\kerberos.dll -> [2009/06/04 04:47:54 | 00,497,664 | ---- | C | MD5 = 9E419B0C91886247B004002126A733A2] (Microsoft Corporation)
odbc32.dll -> C:\Windows\SysNative\odbc32.dll -> [2009/06/04 04:47:54 | 00,462,848 | ---- | C | MD5 = 8583DDE24C687658FCB8080FCF0BE618] (Microsoft Corporation)
QAGENTRT.DLL -> C:\Windows\SysNative\QAGENTRT.DLL -> [2009/06/04 04:47:54 | 00,409,600 | ---- | C | MD5 = A5B10C845E7538C60C0F5D87A57CB3F5] (Microsoft Corporation)
winhttp.dll -> C:\Windows\SysWow64\winhttp.dll -> [2009/06/04 04:47:54 | 00,375,808 | ---- | C | MD5 = 6B0373ED07C3523D74070085E0BF8FD2] (Microsoft Corporation)
mswsock.dll -> C:\Windows\SysNative\mswsock.dll -> [2009/06/04 04:47:54 | 00,304,128 | ---- | C | MD5 = BB08D93011B82883EC33C7707A9627BE] (Microsoft Corporation)
ws2_32.dll -> C:\Windows\SysNative\ws2_32.dll -> [2009/06/04 04:47:54 | 00,264,704 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
dnsapi.dll -> C:\Windows\SysNative\dnsapi.dll -> [2009/06/04 04:47:54 | 00,221,696 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
msv1_0.dll -> C:\Windows\SysWow64\msv1_0.dll -> [2009/06/04 04:47:54 | 00,215,040 | ---- | C | MD5 = A24D2F08743454A51F688BA4AE5863A1] (Microsoft Corporation)
WcnNetsh.dll -> C:\Windows\SysWow64\WcnNetsh.dll -> [2009/06/04 04:47:54 | 00,165,376 | ---- | C | MD5 = 2999CA596EB9E4BEDBA65EF2A47EECB1] (Microsoft Corporation)
propdefs.dll -> C:\Windows\SysNative\propdefs.dll -> [2009/06/04 04:47:54 | 00,080,896 | ---- | C | MD5 = C332027B1DDAA66141217AFFBFB73754] (Microsoft Corporation)
mfc42u.dll -> C:\Windows\SysWow64\mfc42u.dll -> [2009/06/04 04:47:53 | 01,160,704 | ---- | C | MD5 = 1DC99BA7265ACF7A5E19A924800EB823] (Microsoft Corporation)
WerFaultSecure.exe -> C:\Windows\SysNative\WerFaultSecure.exe -> [2009/06/04 04:47:53 | 01,114,112 | ---- | C | MD5 = C457FFC56D38D295B0E57E8550589710] (Microsoft Corporation)
winresume.efi -> C:\Windows\SysNative\winresume.efi -> [2009/06/04 04:47:53 | 00,992,728 | ---- | C | MD5 = 19CE8FF54DE700D7EAF98D96B6FECF11] (Microsoft Corporation)
msctf.dll -> C:\Windows\SysWow64\msctf.dll -> [2009/06/04 04:47:53 | 00,807,424 | ---- | C | MD5 = E3C3BD69701CE6B7B17101E4F7740534] (Microsoft Corporation)
netlogon.dll -> C:\Windows\SysNative\netlogon.dll -> [2009/06/04 04:47:53 | 00,717,312 | ---- | C | MD5 = A3F1B171702CA04744EE514243B45BFB] (Microsoft Corporation)
msvcrt.dll -> C:\Windows\SysWow64\msvcrt.dll -> [2009/06/04 04:47:53 | 00,679,936 | ---- | C | MD5 = F5E991236960137B1F5449C5E5DF4656] (Microsoft Corporation)
PhotoMetadataHandler.dll -> C:\Windows\SysNative\PhotoMetadataHandler.dll -> [2009/06/04 04:47:53 | 00,470,016 | ---- | C | MD5 = AA866B1970E18CD92DAD3B32611598A4] (Microsoft Corporation)
emdmgmt.dll -> C:\Windows\SysNative\emdmgmt.dll -> [2009/06/04 04:47:53 | 00,399,360 | ---- | C | MD5 = A9B18B63A4FD6BAAB83326706D857FAB] (Microsoft Corporation)
eapphost.dll -> C:\Windows\SysNative\eapphost.dll -> [2009/06/04 04:47:53 | 00,261,632 | ---- | C | MD5 = E0159CE395B31F746AA26D0A6996DB29] (Microsoft Corporation)
newdev.dll -> C:\Windows\SysNative\newdev.dll -> [2009/06/04 04:47:53 | 00,215,552 | ---- | C | MD5 = 42BE9AE02DF6B7FB112E70E7CE825CED] (Microsoft Corporation)
WinSCard.dll -> C:\Windows\SysNative\WinSCard.dll -> [2009/06/04 04:47:53 | 00,190,464 | ---- | C | MD5 = B1D4BB8DFD7128A90982562268920724] (Microsoft Corporation)
eapphost.dll -> C:\Windows\SysWow64\eapphost.dll -> [2009/06/04 04:47:53 | 00,183,808 | ---- | C | MD5 = 3AB4023CBD406AC33AB8CDFF6C8079A0] (Microsoft Corporation)
FWPKCLNT.SYS -> C:\Windows\SysNative\drivers\FWPKCLNT.SYS -> [2009/06/04 04:47:53 | 00,166,888 | ---- | C | MD5 = DC83A8659514AB95972B13C71F50D0CB] (Microsoft Corporation)
mrxdav.sys -> C:\Windows\SysNative\drivers\mrxdav.sys -> [2009/06/04 04:47:53 | 00,139,264 | ---- | C | MD5 = 7C1DE4AA96DC0C071611F9E7DE02A68D] (Microsoft Corporation)
xmlfilter.dll -> C:\Windows\SysWow64\xmlfilter.dll -> [2009/06/04 04:47:53 | 00,056,320 | ---- | C | MD5 = 7C0FC379D4B066C2D2189792DED0E4AA] (Microsoft Corporation)
wlanpref.dll -> C:\Windows\SysNative\wlanpref.dll -> [2009/06/04 04:47:52 | 01,792,512 | ---- | C | MD5 = CFAC4A69ED38D8A3BF7D1EE3DBC1840E] (Microsoft Corporation)
winresume.exe -> C:\Windows\SysNative\winresume.exe -> [2009/06/04 04:47:52 | 00,981,480 | ---- | C | MD5 = 68B5B3D21475AB5F4270E98010D3565A] (Microsoft Corporation)
azroles.dll -> C:\Windows\SysNative\azroles.dll -> [2009/06/04 04:47:52 | 00,894,976 | ---- | C | MD5 = 78480FA9495F5F207043A17D8E799C5E] (Microsoft Corporation)
usp10.dll -> C:\Windows\SysNative\usp10.dll -> [2009/06/04 04:47:52 | 00,621,568 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
IPSECSVC.DLL -> C:\Windows\SysNative\IPSECSVC.DLL -> [2009/06/04 04:47:52 | 00,533,504 | ---- | C | MD5 = 89A5560671C2D8B4A4B51F3E1AA069D8] (Microsoft Corporation)
sqlsrv32.dll -> C:\Windows\SysWow64\sqlsrv32.dll -> [2009/06/04 04:47:52 | 00,524,288 | ---- | C | MD5 = A052F8FF7D6C6C32BCDCDA745134E569] (Microsoft Corporation)
odbc32.dll -> C:\Windows\SysWow64\odbc32.dll -> [2009/06/04 04:47:52 | 00,409,600 | ---- | C | MD5 = 676AEC53D9D3E74A556089E665C3B586] (Microsoft Corporation)
msrd2x40.dll -> C:\Windows\SysWow64\msrd2x40.dll -> [2009/06/04 04:47:52 | 00,319,488 | ---- | C | MD5 = 9A4B7595905E5A0DD530ECD23F77A578] (Microsoft Corporation)
wevtutil.exe -> C:\Windows\SysNative\wevtutil.exe -> [2009/06/04 04:47:52 | 00,248,832 | ---- | C | MD5 = 27F21278BE6223D44D86FD4382E2D4A9] (Microsoft Corporation)
MMDevAPI.dll -> C:\Windows\SysNative\MMDevAPI.dll -> [2009/06/04 04:47:52 | 00,203,776 | ---- | C | MD5 = 303C4EB5C2FB40F194E2B24CAD7148EF] (Microsoft Corporation)
secur32.dll -> C:\Windows\SysWow64\secur32.dll -> [2009/06/04 04:47:52 | 00,077,312 | ---- | C | MD5 = 7BC0997C62B9FF56D63EAD4B66E55861] (Microsoft Corporation)
propdefs.dll -> C:\Windows\SysWow64\propdefs.dll -> [2009/06/04 04:47:52 | 00,071,680 | ---- | C | MD5 = 88E1D14E26CB222D6B94AF85490E37F8] (Microsoft Corporation)
milcore.dll -> C:\Windows\SysNative\milcore.dll -> [2009/06/04 04:47:51 | 02,570,240 | ---- | C | MD5 = B77AD1818DBD476245B1281016E075E4] (Microsoft Corporation)
dbgeng.dll -> C:\Windows\SysWow64\dbgeng.dll -> [2009/06/04 04:47:51 | 01,856,512 | ---- | C | MD5 = 447983959A8CF49C4CC3B65DED69AF28] (Microsoft Corporation)
shdocvw.dll -> C:\Windows\SysWow64\shdocvw.dll -> [2009/06/04 04:47:51 | 01,068,032 | ---- | C | MD5 = 2AA4117EE5F4765AD8404DCF9D552C71] (Microsoft Corporation)
WsmSvc.dll -> C:\Windows\SysWow64\WsmSvc.dll -> [2009/06/04 04:47:51 | 00,747,008 | ---- | C | MD5 = 01874D4689C212460FBABF0ECD7CB7F7] (Microsoft Corporation)
WSDApi.dll -> C:\Windows\SysNative\WSDApi.dll -> [2009/06/04 04:47:51 | 00,441,856 | ---- | C | MD5 = D485E7EA44BEE4CF783CE3566C3119D2] (Microsoft Corporation)
Wldap32.dll -> C:\Windows\SysNative\Wldap32.dll -> [2009/06/04 04:47:51 | 00,328,704 | ---- | C | MD5 = ADC1964755BB12485A15070A4D4F2697] (Microsoft Corporation)
iasnap.dll -> C:\Windows\SysNative\iasnap.dll -> [2009/06/04 04:47:51 | 00,213,504 | ---- | C | MD5 = 3232D6CA64C56F49A806674721A6F029] (Microsoft Corporation)
wevtutil.exe -> C:\Windows\SysWow64\wevtutil.exe -> [2009/06/04 04:47:51 | 00,163,840 | ---- | C | MD5 = 2C2DE9CD93DD4F11F8715B7334EB40A7] (Microsoft Corporation)
mssitlb.dll -> C:\Windows\SysNative\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,552 | ---- | C | MD5 = 1EE53C36447CE03E4E65F201E0D547DD] (Microsoft Corporation)
mssitlb.dll -> C:\Windows\SysWow64\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,040 | ---- | C | MD5 = B9E13F49530213AB974E070A60DEB97B] (Microsoft Corporation)
msscb.dll -> C:\Windows\SysNative\msscb.dll -> [2009/06/04 04:47:51 | 00,044,544 | ---- | C | MD5 = A44E61A183FD6D65C655E31A330ECA7E] (Microsoft Corporation)
mmcndmgr.dll -> C:\Windows\SysWow64\mmcndmgr.dll -> [2009/06/04 04:47:50 | 02,167,808 | ---- | C | MD5 = 99BFB01E148169E6E8DA7B7232F874CE] (Microsoft Corporation)
wmpmde.dll -> C:\Windows\SysNative\wmpmde.dll -> [2009/06/04 04:47:50 | 01,090,048 | ---- | C | MD5 = 4745415AE82069D623A805B69916F42E] (Microsoft Corporation)
mcmde.dll -> C:\Windows\SysNative\mcmde.dll -> [2009/06/04 04:47:50 | 01,074,176 | ---- | C | MD5 = C34EA290A77FC029AC223234F210F665] (Microsoft Corporation)
usp10.dll -> C:\Windows\SysWow64\usp10.dll -> [2009/06/04 04:47:50 | 00,502,272 | ---- | C | MD5 = 5A8E28037289FCCBF7AD3FC57DF7048F] (Microsoft Corporation)
iassam.dll -> C:\Windows\SysNative\iassam.dll -> [2009/06/04 04:47:50 | 00,242,176 | ---- | C | MD5 = 97C86944F4FA60DEB053E2D4733CD3AA] (Microsoft Corporation)
msiscsi.sys -> C:\Windows\SysNative\drivers\msiscsi.sys -> [2009/06/04 04:47:50 | 00,215,528 | ---- | C | MD5 = E4FDF99599F27EC25D2CF6D754243520] (Microsoft Corporation)
gameux.dll -> C:\Windows\SysNative\gameux.dll -> [2009/06/04 04:47:49 | 01,927,680 | ---- | C | MD5 = 4697694DDF74F76E37D3E76EE4468CE4] (Microsoft Corporation)
propsys.dll -> C:\Windows\SysNative\propsys.dll -> [2009/06/04 04:47:49 | 00,923,136 | ---- | C | MD5 = FE13271EF661F8BE83A1A0D3366164D0] (Microsoft Corporation)
netlogon.dll -> C:\Windows\SysWow64\netlogon.dll -> [2009/06/04 04:47:49 | 00,592,896 | ---- | C | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
winsrv.dll -> C:\Windows\SysNative\winsrv.dll -> [2009/06/04 04:47:49 | 00,450,560 | ---- | C | MD5 = 36F234FD1AA7BAE559BB1C483FC76286] (Microsoft Corporation)
devmgr.dll -> C:\Windows\SysWow64\devmgr.dll -> [2009/06/04 04:47:49 | 00,378,368 | ---- | C | MD5 = 5CAA965A14ADBDEF4359F3D2BEA9D9F7] (Microsoft Corporation)
schannel.dll -> C:\Windows\SysNative\schannel.dll -> [2009/06/04 04:47:49 | 00,335,360 | ---- | C | MD5 = F870ECC00D60B40E0894414F7833B002] (Microsoft Corporation)
schannel.dll -> C:\Windows\SysWow64\schannel.dll -> [2009/06/04 04:47:49 | 00,268,800 | ---- | C | MD5 = 17038AA83CCC0E1573FCE458CA790380] (Microsoft Corporation)
adsldpc.dll -> C:\Windows\SysWow64\adsldpc.dll -> [2009/06/04 04:47:49 | 00,199,168 | ---- | C | MD5 = E9B9C1B98C8D6D48407E1C1203EAC659] (Microsoft Corporation)
drvinst.exe -> C:\Windows\SysWow64\drvinst.exe -> [2009/06/04 04:47:49 | 00,194,048 | ---- | C | MD5 = 488F6147CBBF38ADFA29710537E02E61] (Microsoft Corporation)
srv2.sys -> C:\Windows\SysNative\drivers\srv2.sys -> [2009/06/04 04:47:49 | 00,174,592 | ---- | C | MD5 = EFCA77E9F9FDAB1DE37CC473066DC715] (Microsoft Corporation)
cryptsvc.dll -> C:\Windows\SysNative\cryptsvc.dll -> [2009/06/04 04:47:49 | 00,166,912 | ---- | C | MD5 = 18918613E63F387CDE4D95CA7D49DCF7] (Microsoft Corporation)
msctfp.dll -> C:\Windows\SysWow64\msctfp.dll -> [2009/06/04 04:47:49 | 00,084,992 | ---- | C | MD5 = 89C91775A8332D9DB03AFE8A884185F9] (Microsoft Corporation)
bthserv.dll -> C:\Windows\SysNative\bthserv.dll -> [2009/06/04 04:47:49 | 00,053,760 | ---- | C | MD5 = 22E65FFD640F16968F855F5B3528D366] (Microsoft Corporation)
rtffilt.dll -> C:\Windows\SysNative\rtffilt.dll -> [2009/06/04 04:47:49 | 00,042,496 | ---- | C | MD5 = 97A11F16ACF1904145B92DBB687CC156] (Microsoft Corporation)
msscb.dll -> C:\Windows\SysWow64\msscb.dll -> [2009/06/04 04:47:49 | 00,035,328 | ---- | C | MD5 = F85134BF76CB335A39F8D7BC4173D4FB] (Microsoft Corporation)
fdBthProxy.dll -> C:\Windows\SysWow64\fdBthProxy.dll -> [2009/06/04 04:47:49 | 00,009,728 | ---- | C | MD5 = BF741696C521FF5503CDE10E36345E4D] (Microsoft Corporation)
wcnwiz.dll -> C:\Windows\SysWow64\wcnwiz.dll -> [2009/06/04 04:47:48 | 01,533,440 | ---- | C | MD5 = 9EF2D0475B0DC496ACD0B7034D593840] (Microsoft Corporation)
WMVSDECD.DLL -> C:\Windows\SysWow64\WMVSDECD.DLL -> [2009/06/04 04:47:48 | 01,382,912 | ---- | C | MD5 = 487565A576DCBA47D2E44FA116E15D64] (Microsoft Corporation)
WindowsCodecs.dll -> C:\Windows\SysWow64\WindowsCodecs.dll -> [2009/06/04 04:47:48 | 00,712,704 | ---- | C | MD5 = F7F4AD3D174CB5EC3C12F04C99478B84] (Microsoft Corporation)
adtschema.dll -> C:\Windows\SysWow64\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = EC43D9CC95C3BB5FEFDBCF22D375E1F5] (Microsoft Corporation)
adtschema.dll -> C:\Windows\SysNative\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = 99AA51A6AE40DED4A74776E6E1C066C1] (Microsoft Corporation)
mscms.dll -> C:\Windows\SysNative\mscms.dll -> [2009/06/04 04:47:48 | 00,519,680 | ---- | C | MD5 = 87B1E9B5DBFADA04D9FFDC52D16CB000] (Microsoft Corporation)
evr.dll -> C:\Windows\SysWow64\evr.dll -> [2009/06/04 04:47:48 | 00,485,888 | ---- | C | MD5 = 2495C4204C63678F8FD5D488CA7DAD26] (Microsoft Corporation)
vds.exe -> C:\Windows\SysNative\vds.exe -> [2009/06/04 04:47:48 | 00,454,656 | ---- | C | MD5 = 294945381DFA7CE58CECF0A9896AF327] (Microsoft Corporation)
comdlg32.dll -> C:\Windows\SysWow64\comdlg32.dll -> [2009/06/04 04:47:48 | 00,450,560 | ---- | C | MD5 = 4AA2A0E26CEF1A803741253DCF9A1503] (Microsoft Corporation)
PhotoMetadataHandler.dll -> C:\Windows\SysWow64\PhotoMetadataHandler.dll -> [2009/06/04 04:47:48 | 00,425,472 | ---- | C | MD5 = BE7C04C89126072D368D3DDCE0710985] (Microsoft Corporation)
winlogon.exe -> C:\Windows\SysNative\winlogon.exe -> [2009/06/04 04:47:48 | 00,405,504 | ---- | C | MD5 = 6D0773A3A65D28B663F334C90441D01A] (Microsoft Corporation)
WSDApi.dll -> C:\Windows\SysWow64\WSDApi.dll -> [2009/06/04 04:47:48 | 00,355,328 | ---- | C | MD5 = 5FF741BF7F6DB47F1F03E9B995DC2D3C] (Microsoft Corporation)
Wldap32.dll -> C:\Windows\SysWow64\Wldap32.dll -> [2009/06/04 04:47:48 | 00,287,744 | ---- | C | MD5 = B8A609FB5EFB4E44FC1355B1C01C64BC] (Microsoft Corporation)
services.exe -> C:\Windows\SysWow64\services.exe -> [2009/06/04 04:47:48 | 00,279,552 | ---- | C | MD5 = D4E6D91C1349B7BFB3599A6ADA56851B] (Microsoft Corporation)
volsnap.sys -> C:\Windows\SysNative\drivers\volsnap.sys -> [2009/06/04 04:47:48 | 00,269,288 | ---- | C | MD5 = 5280AADA24AB36B01A84A6424C475C8D] (Microsoft Corporation)
taskeng.exe -> C:\Windows\SysNative\taskeng.exe -> [2009/06/04 04:47:48 | 00,265,216 | ---- | C | MD5 = 2009F2E44758BECD3195B40D0B3650B3] (Microsoft Corporation)
scrrun.dll -> C:\Windows\SysNative\scrrun.dll -> [2009/06/04 04:47:48 | 00,198,656 | ---- | C | MD5 = EB3D80F14D593C3ABCCEE58464BFE59C] (Microsoft Corporation)
imapi.dll -> C:\Windows\SysNative\imapi.dll -> [2009/06/04 04:47:48 | 00,151,040 | ---- | C | MD5 = 50BABB0E2AD8A8C5B692D0D030FDFA03] (Microsoft Corporation)
qintlgnt.ime -> C:\Windows\SysWow64\qintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = EABE8490A252D8B2020357D560A93850] (Microsoft Corporation)
cintlgnt.ime -> C:\Windows\SysWow64\cintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = E04FA091879E982F77024DF9461649E3] (Microsoft Corporation)
chajei.ime -> C:\Windows\SysWow64\chajei.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 50AE4C1B7A68DE9FFD3D433C93BA270A] (Microsoft Corporation)
quick.ime -> C:\Windows\SysWow64\quick.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 1171CEB628BA19D69182935FF81DE24E] (Microsoft Corporation)
phon.ime -> C:\Windows\SysWow64\phon.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 008EA1117A5F3A1866FCC94F34D1424E] (Microsoft Corporation)
reg.exe -> C:\Windows\SysNative\reg.exe -> [2009/06/04 04:47:48 | 00,074,240 | ---- | C | MD5 = 314053DF55929FED67215E871EC7CEDF] (Microsoft Corporation)
partmgr.sys -> C:\Windows\SysNative\drivers\partmgr.sys -> [2009/06/04 04:47:48 | 00,073,176 | ---- | C | MD5 = F9B5EDA4C17A2BE7663F064DBF0FE254] (Microsoft Corporation)
fdProxy.dll -> C:\Windows\SysNative\fdProxy.dll -> [2009/06/04 04:47:48 | 00,065,536 | ---- | C | MD5 = 9DD626CC4FB7CAAC19B2F4C33CD6A2A3] (Microsoft Corporation)
mimefilt.dll -> C:\Windows\SysWow64\mimefilt.dll -> [2009/06/04 04:47:48 | 00,041,984 | ---- | C | MD5 = FAF53B680C7DE42328EAE23638934D10] (Microsoft Corporation)
mimefilt.dll -> C:\Windows\SysNative\mimefilt.dll -> [2009/06/04 04:47:48 | 00,038,912 | ---- | C | MD5 = D48FBAFD097E23E6BB255A09FA7EF06D] (Microsoft Corporation)
brcpl.dll -> C:\Windows\SysNative\brcpl.dll -> [2009/06/04 04:47:47 | 01,538,560 | ---- | C | MD5 = EF6D2BC5AF87B6DDFB52245FF77046B7] (Microsoft Corporation)
wdc.dll -> C:\Windows\SysNative\wdc.dll -> [2009/06/04 04:47:47 | 01,234,432 | ---- | C | MD5 = 832726DEFA39BBA2D34C9E20CEA471C0] (Microsoft Corporation)
mswdat10.dll -> C:\Windows\SysWow64\mswdat10.dll -> [2009/06/04 04:47:47 | 00,856,064 | ---- | C | MD5 = 7483E59A7A7A7891ACD4C63EE97D1BF1] (Microsoft Corporation)
CertEnrollUI.dll -> C:\Windows\SysNative\CertEnrollUI.dll -> [2009/06/04 04:47:47 | 00,810,496 | ---- | C | MD5 = 777FED68045FC30A869237A10277075F] (Microsoft Corporation)
stobject.dll -> C:\Windows\SysNative\stobject.dll -> [2009/06/04 04:47:47 | 00,748,544 | ---- | C | MD5 = 2539DFDB16F616B60D9D6858D36C5710] (Microsoft Corporation)
msdtcprx.dll -> C:\Windows\SysWow64\msdtcprx.dll -> [2009/06/04 04:47:47 | 00,560,640 | ---- | C | MD5 = EF9E3316F1106998D1904C3578C63C32] (Microsoft Corporation)
ksecdd.sys -> C:\Windows\SysNative\drivers\ksecdd.sys -> [2009/06/04 04:47:47 | 00,514,536 | ---- | C | MD5 = FB88B233AF3D6204F19D85934C102BA7] (Microsoft Corporation)
wcncsvc.dll -> C:\Windows\SysWow64\wcncsvc.dll -> [2009/06/04 04:47:47 | 00,413,696 | ---- | C | MD5 = A3CD60FD826381B49F03832590E069AF] (Microsoft Corporation)
ipsmsnap.dll -> C:\Windows\SysWow64\ipsmsnap.dll -> [2009/06/04 04:47:47 | 00,396,288 | ---- | C | MD5 = C192DD0C53FD0616AC31A9E0ADAE0C39] (Microsoft Corporation)
msdrm.dll -> C:\Windows\SysWow64\msdrm.dll -> [2009/06/04 04:47:47 | 00,332,288 | ---- | C | MD5 = 9A4156DE0BBC936B2F61EEFC376E7DFC] (Microsoft Corporation)
certcli.dll -> C:\Windows\SysWow64\certcli.dll -> [2009/06/04 04:47:47 | 00,323,584 | ---- | C | MD5 = AC48FD62E22C4425879FCA5A63F50497] (Microsoft Corporation)
rasmans.dll -> C:\Windows\SysNative\rasmans.dll -> [2009/06/04 04:47:47 | 00,309,760 | ---- | C | MD5 = 3AD83E4046C43BE510DE681588ACB8AF] (Microsoft Corporation)
pdh.dll -> C:\Windows\SysNative\pdh.dll -> [2009/06/04 04:47:47 | 00,307,712 | ---- | C | MD5 = 185A819D9AC5A1D7F387C45F476CFE32] (Microsoft Corporation)
offfilt.dll -> C:\Windows\SysNative\offfilt.dll -> [2009/06/04 04:47:47 | 00,280,064 | ---- | C | MD5 = C87C18A68AA8BFE1AAFB2E5A19518191] (Microsoft Corporation)
PortableDeviceApi.dll -> C:\Windows\SysWow64\PortableDeviceApi.dll -> [2009/06/04 04:47:47 | 00,241,152 | ---- | C | MD5 = B26C0D2B2186AC508B5EFF976BB7FF9D] (Microsoft Corporation)
taskeng.exe -> C:\Windows\SysWow64\taskeng.exe -> [2009/06/04 04:47:47 | 00,169,984 | ---- | C | MD5 = E5BBFC283D6F5D69B41E464676361020] (Microsoft Corporation)
dnsapi.dll -> C:\Windows\SysWow64\dnsapi.dll -> [2009/06/04 04:47:47 | 00,168,448 | ---- | C | MD5 = F7683EC1225435144F28B611546BA5F2] (Microsoft Corporation)
dhcpcsvc6.dll -> C:\Windows\SysNative\dhcpcsvc6.dll -> [2009/06/04 04:47:47 | 00,163,328 | ---- | C | MD5 = 956148910C7EB6A8C095D9B4E6F94E62] (Microsoft Corporation)
inetpp.dll -> C:\Windows\SysNative\inetpp.dll -> [2009/06/04 04:47:47 | 00,156,160 | ---- | C | MD5 = A5A54257E6FD4AF082CCB0470AD4FC98] (Microsoft Corporation)
rasl2tp.sys -> C:\Windows\SysNative\drivers\rasl2tp.sys -> [2009/06/04 04:47:47 | 00,124,928 | ---- | C | MD5 = AC7BC4D42A7E558718DFDEC599BBFC2C] (Microsoft Corporation)
reg.exe -> C:\Windows\SysWow64\reg.exe -> [2009/06/04 04:47:47 | 00,061,952 | ---- | C | MD5 = DE4E8E68DE8CFBEB1B5C6B6E6022D98C] (Microsoft Corporation)
msjter40.dll -> C:\Windows\SysWow64\msjter40.dll -> [2009/06/04 04:47:47 | 00,061,440 | ---- | C | MD5 = 534FD777CB2684392411CE7BCBBDF78E] (Microsoft Corporation)
rtffilt.dll -> C:\Windows\SysWow64\rtffilt.dll -> [2009/06/04 04:47:47 | 00,038,400 | ---- | C | MD5 = D066FF44590F6F7433F60674C74394C6] (Microsoft Corporation)
WMNetMgr.dll -> C:\Windows\SysWow64\WMNetMgr.dll -> [2009/06/04 04:47:46 | 00,996,352 | ---- | C | MD5 = 3159B65312AEC7CDFAD346D5A1C5068B] (Microsoft Corporation)
certutil.exe -> C:\Windows\SysWow64\certutil.exe -> [2009/06/04 04:47:46 | 00,799,744 | ---- | C | MD5 = 4533F3B0E9AD11A1C02B191F5D873DE2] (Microsoft Corporation)
PhotoScreensaver.scr -> C:\Windows\SysWow64\PhotoScreensaver.scr -> [2009/06/04 04:47:46 | 00,704,512 | ---- | C | MD5 = AAC78A91ED32BC0CA7FC8AEC39975016] (Microsoft Corporation)
wiaservc.dll -> C:\Windows\SysNative\wiaservc.dll -> [2009/06/04 04:47:46 | 00,572,416 | ---- | C | MD5 = 15825C1FBFB8779992CB65087F316AF5] (Microsoft Corporation)
RelMon.dll -> C:\Windows\SysNative\RelMon.dll -> [2009/06/04 04:47:46 | 00,539,136 | ---- | C | MD5 = 86EA84AC57D94A553006850123D22F50] (Microsoft Corporation)
sysmon.ocx -> C:\Windows\SysNative\sysmon.ocx -> [2009/06/04 04:47:46 | 00,475,648 | ---- | C | MD5 = 889D851AD03063E01F7866B1D10044CF] (Microsoft Corporation)
mtxclu.dll -> C:\Windows\SysNative\mtxclu.dll -> [2009/06/04 04:47:46 | 00,361,984 | ---- | C | MD5 = 663A071E67EB7052637E1549BF1A28B5] (Microsoft Corporation)
clfs.sys -> C:\Windows\SysNative\clfs.sys -> [2009/06/04 04:47:46 | 00,361,448 | ---- | C | MD5 = 3DCA9A18B204939CFB24BEA53E31EB48] (Microsoft Corporation)
winspool.drv -> C:\Windows\SysNative\winspool.drv -> [2009/06/04 04:47:46 | 00,342,016 | ---- | C | MD5 = 715628F11CFC90962DBEFEA24556863F] (Microsoft Corporation)
msihnd.dll -> C:\Windows\SysWow64\msihnd.dll -> [2009/06/04 04:47:46 | 00,332,800 | ---- | C | MD5 = DC14113D196060C83BDD99D20E4DBE8E] (Microsoft Corporation)
rsaenh.dll -> C:\Windows\SysWow64\rsaenh.dll -> [2009/06/04 04:47:46 | 00,241,128 | ---- | C | MD5 = E14170AEA125119B98FA2BDE3FF4F462] (Microsoft Corporation)
scrobj.dll -> C:\Windows\SysNative\scrobj.dll -> [2009/06/04 04:47:46 | 00,227,328 | ---- | C | MD5 = D03E2F3215490A268B3DA59AADF10524] (Microsoft Corporation)
pnpsetup.dll -> C:\Windows\SysNative\pnpsetup.dll -> [2009/06/04 04:47:46 | 00,207,872 | ---- | C | MD5 = 91413FA55670EB3036425C4F31826CF4] (Microsoft Corporation)
fundisc.dll -> C:\Windows\SysNative\fundisc.dll -> [2009/06/04 04:47:46 | 00,174,080 | ---- | C | MD5 = 7F80E2C493079E9D42CCECC715790E10] (Microsoft Corporation)
ndiswan.sys -> C:\Windows\SysNative\drivers\ndiswan.sys -> [2009/06/04 04:47:46 | 00,169,472 | ---- | C | MD5 = F8158771905260982CE724076419EF19] (Microsoft Corporation)
MMDevAPI.dll -> C:\Windows\SysWow64\MMDevAPI.dll -> [2009/06/04 04:47:46 | 00,150,528 | ---- | C | MD5 = 56B5914070B2C243DFB3D186070DA89D] (Microsoft Corporation)
sysclass.dll -> C:\Windows\SysNative\sysclass.dll -> [2009/06/04 04:47:46 | 00,115,200 | ---- | C | MD5 = C46E68C6B94705F95C9C7D8BFD7BD9BD] (Microsoft Corporation)
raspptp.sys -> C:\Windows\SysNative\drivers\raspptp.sys -> [2009/06/04 04:47:46 | 00,098,816 | ---- | C | MD5 = 23386E9952025F5F21C368971E2E7301] (Microsoft Corporation)
msscntrs.dll -> C:\Windows\SysWow64\msscntrs.dll -> [2009/06/04 04:47:46 | 00,060,416 | ---- | C | MD5 = 2657D7BB993F49B1A3C554D766FA09F9] (Microsoft Corporation)
msstrc.dll -> C:\Windows\SysWow64\msstrc.dll -> [2009/06/04 04:47:46 | 00,043,008 | ---- | C | MD5 = 3618C1D17AF65C2405009AE02160D298] (Microsoft Corporation)
msshooks.dll -> C:\Windows\SysWow64\msshooks.dll -> [2009/06/04 04:47:46 | 00,011,776 | ---- | C | MD5 = 582BE479E7E286BB3B31C5A4C3DC3987] (Microsoft Corporation)
appwiz.cpl -> C:\Windows\SysNative\appwiz.cpl -> [2009/06/04 04:47:45 | 01,321,472 | ---- | C | MD5 = 8565BEDF9ACD28A9A1FFAADC93F957C5] (Microsoft Corporation)
sethc.exe -> C:\Windows\SysNative\sethc.exe -> [2009/06/04 04:47:45 | 00,776,192 | ---- | C | MD5 = 7E5B8772130C5E66DE982E7033805E2F] (Microsoft Corporation)
inetcomm.dll -> C:\Windows\SysWow64\inetcomm.dll -> [2009/06/04 04:47:45 | 00,738,816 | ---- | C | MD5 = AC9415A1AF0F49570F7515A7131AE2E1] (Microsoft Corporation)
msinfo32.exe -> C:\Windows\SysNative\msinfo32.exe -> [2009/06/04 04:47:45 | 00,488,960 | ---- | C | MD5 = A4AF702E6BB80D014C56EDE22C6BC423] (Microsoft Corporation)
netapi32.dll -> C:\Windows\SysWow64\netapi32.dll -> [2009/06/04 04:47:45 | 00,467,456 | ---- | C | MD5 = C94108296530A097B2E1E18C101E4703] (Microsoft Corporation)
acpi.sys -> C:\Windows\SysNative\drivers\acpi.sys -> [2009/06/04 04:47:45 | 00,325,608 | ---- | C | MD5 = 1965AAFFAB07E3FB03C77F81BEBA3547] (Microsoft Corporation)
mtxclu.dll -> C:\Windows\SysWow64\mtxclu.dll -> [2009/06/04 04:47:45 | 00,310,272 | ---- | C | MD5 = 601C4575875A03798498558D0DB1C91A] (Microsoft Corporation)
wisptis.exe -> C:\Windows\SysNative\wisptis.exe -> [2009/06/04 04:47:45 | 00,287,744 | ---- | C | MD5 = EC587CF25B60660B988218445CB10573] (Microsoft Corporation)
mfplat.dll -> C:\Windows\SysNative\mfplat.dll -> [2009/06/04 04:47:45 | 00,276,992 | ---- | C | MD5 = A17EA1F3A658C80B6493E50351F940CF] (Microsoft Corporation)
usbport.sys -> C:\Windows\SysNative\drivers\usbport.sys -> [2009/06/04 04:47:45 | 00,259,584 | ---- | C | MD5 = A60FDA63F3901AE49C244FF988427A9C] (Microsoft Corporation)
adsldpc.dll -> C:\Windows\SysNative\adsldpc.dll -> [2009/06/04 04:47:45 | 00,231,936 | ---- | C | MD5 = 80B8B7FF3AADD2156EE969C048644CAF] (Microsoft Corporation)
iasrad.dll -> C:\Windows\SysNative\iasrad.dll -> [2009/06/04 04:47:45 | 00,198,144 | ---- | C | MD5 = 2C234A4AD19475408E937816ECE96327] (Microsoft Corporation)
pci.sys -> C:\Windows\SysNative\drivers\pci.sys -> [2009/06/04 04:47:45 | 00,178,664 | ---- | C | MD5 = 47AB1E0FC9D0E12BB53BA246E3A0906D] (Microsoft Corporation)
fundisc.dll -> C:\Windows\SysWow64\fundisc.dll -> [2009/06/04 04:47:45 | 00,153,088 | ---- | C | MD5 = 4EDA94333BDB75B1BC0A7610BED34F00] (Microsoft Corporation)
dhcpcsvc6.dll -> C:\Windows\SysWow64\dhcpcsvc6.dll -> [2009/06/04 04:47:45 | 00,130,560 | ---- | C | MD5 = DFB6B71CDABA9DFB49C9D2B318B97A1A] (Microsoft Corporation)
cryptsvc.dll -> C:\Windows\SysWow64\cryptsvc.dll -> [2009/06/04 04:47:45 | 00,129,024 | ---- | C | MD5 = FB27772BEAF8E1D28CCD825C09DA939B] (Microsoft Corporation)
msiexec.exe -> C:\Windows\SysNative\msiexec.exe -> [2009/06/04 04:47:45 | 00,125,440 | ---- | C | MD5 = AC545DF9370A3E1BF538E403ABE51CC0] (Microsoft Corporation)
dfshim.dll -> C:\Windows\SysNative\dfshim.dll -> [2009/06/04 04:47:45 | 00,108,864 | ---- | C | MD5 = DCEB990982F68B6D8392505433C787D0] (Microsoft Corporation)
dfshim.dll -> C:\Windows\SysWow64\dfshim.dll -> [2009/06/04 04:47:45 | 00,093,512 | ---- | C | MD5 = 2D82E6A9D1F8095F81BDDA21E369D3D2] (Microsoft Corporation)
mscories.dll -> C:\Windows\SysWow64\mscories.dll -> [2009/06/04 04:47:45 | 00,080,720 | ---- | C | MD5 = 9CEDC24DC2A88624A4431C96A13C0C94] (Microsoft Corporation)
rasdiag.dll -> C:\Windows\SysNative\rasdiag.dll -> [2009/06/04 04:47:45 | 00,065,536 | ---- | C | MD5 = 78C9AB22333F1FA642222CD18ABC50C9] (Microsoft Corporation)
TsWpfWrp.exe -> C:\Windows\SysWow64\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,035,680 | ---- | C | MD5 = 7EE55302291DD7AA5C2237B0CC7D49E1] (Microsoft Corporation)
TsWpfWrp.exe -> C:\Windows\SysNative\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,034,624 | ---- | C | MD5 = FB4D090E203E7A5E0D58EDE957296406] (Microsoft Corporation)
hidserv.dll -> C:\Windows\SysWow64\hidserv.dll -> [2009/06/04 04:47:45 | 00,026,112 | ---- | C | MD5 = 84067081F3318162797385E11A8F0582] (Microsoft Corporation)
gameux.dll -> C:\Windows\SysWow64\gameux.dll -> [2009/06/04 04:47:44 | 01,696,768 | ---- | C | MD5 = 9B8F915F1DA844B94700868520C239ED] (Microsoft Corporation)
chsbrkr.dll -> C:\Windows\SysWow64\chsbrkr.dll -> [2009/06/04 04:47:44 | 01,671,680 | ---- | C | MD5 = 9996E936E9926108FBEDED4171B129B7] (Microsoft Corporation)
cryptui.dll -> C:\Windows\SysNative\cryptui.dll -> [2009/06/04 04:47:44 | 01,035,776 | ---- | C | MD5 = A361672E1AE1581B475F035607F4FD87] (Microsoft Corporation)
wdc.dll -> C:\Windows\SysWow64\wdc.dll -> [2009/06/04 04:47:44 | 01,020,928 | ---- | C | MD5 = 1959E5AAEE0D988C10F19CEC7DFF2242] (Microsoft Corporation)
printui.dll -> C:\Windows\SysNative\printui.dll -> [2009/06/04 04:47:44 | 00,980,480 | ---- | C | MD5 = 91ECB960A6E54B48F6901E36DF8EEBAA] (Microsoft Corporation)
Utilman.exe -> C:\Windows\SysNative\Utilman.exe -> [2009/06/04 04:47:44 | 00,785,920 | ---- | C | MD5 = 106A5163D2A23CC82C4C94FE7AEF5841] (Microsoft Corporation)
autofmt.exe -> C:\Windows\SysNative\autofmt.exe -> [2009/06/04 04:47:44 | 00,722,944 | ---- | C | MD5 = A2E4854AF96353AD33D4F167085A4A7B] (Microsoft Corporation)
termsrv.dll -> C:\Windows\SysNative\termsrv.dll -> [2009/06/04 04:47:44 | 00,547,328 | ---- | C | MD5 = 5CDD30BC217082DAC71A9878D9BFD566] (Microsoft Corporation)
mrxsmb10.sys -> C:\Windows\SysNative\drivers\mrxsmb10.sys -> [2009/06/04 04:47:44 | 00,273,408 | ---- | C | MD5 = D35768909607B7B4F827B2105DD6B6CF] (Microsoft Corporation)
shsvcs.dll -> C:\Windows\SysWow64\shsvcs.dll -> [2009/06/04 04:47:44 | 00,247,296 | ---- | C | MD5 = C818C44C201898399BF999BB6B35D4E3] (Microsoft Corporation)
tcpipcfg.dll -> C:\Windows\SysNative\tcpipcfg.dll -> [2009/06/04 04:47:44 | 00,238,080 | ---- | C | MD5 = F8F08779E7D997913607B0146710CC04] (Microsoft Corporation)
osk.exe -> C:\Windows\SysNative\osk.exe -> [2009/06/04 04:47:44 | 00,212,480 | ---- | C | MD5 = 8A777C49978A4E03C4F1442E8FDC5CC2] (Microsoft Corporation)
WFP.TMF -> C:\Windows\SysNative\WFP.TMF -> [2009/06/04 04:47:44 | 00,207,968 | ---- | C | MD5 = 424F4F52583C8AB4D27A34A6B71B6E95] ()
AudioSes.dll -> C:\Windows\SysNative\AudioSes.dll -> [2009/06/04 04:47:44 | 00,190,976 | ---- | C | MD5 = EEFDA2A090E8000740D46B09DCDBEAFF] (Microsoft Corporation)
mrxsmb.sys -> C:\Windows\SysNative\drivers\mrxsmb.sys -> [2009/06/04 04:47:44 | 00,135,168 | ---- | C | MD5 = A6C23405A24C0C48A246D4F23F0A387D] (Microsoft Corporation)
imapi.dll -> C:\Windows\SysWow64\imapi.dll -> [2009/06/04 04:47:44 | 00,107,520 | ---- | C | MD5 = C399E29AC25746CDC126DC621F41F219] (Microsoft Corporation)
SLUINotify.dll -> C:\Windows\SysNative\SLUINotify.dll -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = FD74B4B7C2088E390A30C85A896FC3AF] (Microsoft Corporation)
msiexec.exe -> C:\Windows\SysWow64\msiexec.exe -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = C559672F31ABE6BA7277DD73C4502238] (Microsoft Corporation)
iasdatastore.dll -> C:\Windows\SysNative\iasdatastore.dll -> [2009/06/04 04:47:44 | 00,065,536 | ---- | C | MD5 = 11F1BAD4698745ABE18C96059D43E4D9] (Microsoft Corporation)
termdd.sys -> C:\Windows\SysNative\drivers\termdd.sys -> [2009/06/04 04:47:44 | 00,062,440 | ---- | C | MD5 = 8C19678D22649EC002EF2282EAE92F98] (Microsoft Corporation)
pnidui.dll -> C:\Windows\SysNative\pnidui.dll -> [2009/06/04 04:47:43 | 02,024,960 | ---- | C | MD5 = DE95622B09554A70DB4F035D197330BF] (Microsoft Corporation)
pnidui.dll -> C:\Windows\SysWow64\pnidui.dll -> [2009/06/04 04:47:43 | 01,823,744 | ---- | C | MD5 = 75AD59B9B12EB194486BE8D97B062994] (Microsoft Corporation)
connect.dll -> C:\Windows\SysNative\connect.dll -> [2009/06/04 04:47:43 | 01,691,648 | ---- | C | MD5 = A322BB42609E9D728C9440FB2685F04D] (Microsoft Corporation)
rdpencom.dll -> C:\Windows\SysNative\rdpencom.dll -> [2009/06/04 04:47:43 | 00,708,608 | ---- | C | MD5 = 37CA04B27F4E31F850B899FD06F725F0] (Microsoft Corporation)
autofmt.exe -> C:\Windows\SysWow64\autofmt.exe -> [2009/06/04 04:47:43 | 00,636,416 | ---- | C | MD5 = 34DA5AE04CA114B23D93CD9D4D05FCB7] (Microsoft Corporation)
dsound.dll -> C:\Windows\SysNative\dsound.dll -> [2009/06/04 04:47:43 | 00,522,752 | ---- | C | MD5 = EA47AF4FBF17580D093C0C36C4E49921] (Microsoft Corporation)
volmgrx.sys -> C:\Windows\SysNative\drivers\volmgrx.sys -> [2009/06/04 04:47:43 | 00,408,024 | ---- | C | MD5 = CEC5AC15277D75D9E5DEC2E1C6EAF877] (Microsoft Corporation)
WindowsCodecsExt.dll -> C:\Windows\SysNative\WindowsCodecsExt.dll -> [2009/06/04 04:47:43 | 00,387,584 | ---- | C | MD5 = E3A1F826BB40A8065043D26126D9B189] (Microsoft Corporation)
scansetting.dll -> C:\Windows\SysNative\scansetting.dll -> [2009/06/04 04:47:43 | 00,302,080 | ---- | C | MD5 = 2C64BABEEB0510D508F61DA4CAF5C276] (Microsoft Corporation)
dhcpcsvc.dll -> C:\Windows\SysNative\dhcpcsvc.dll -> [2009/06/04 04:47:43 | 00,268,288 | ---- | C | MD5 = 3ED0321127CE70ACDAABBF77E157C2A7] (Microsoft Corporation)
WerFault.exe -> C:\Windows\SysNative\WerFault.exe -> [2009/06/04 04:47:43 | 00,260,608 | ---- | C | MD5 = 407048A328C3D585FF67D40F11E243D2] (Microsoft Corporation)
ncrypt.dll -> C:\Windows\SysNative\ncrypt.dll -> [2009/06/04 04:47:43 | 00,253,952 | ---- | C | MD5 = 38FEE5CE9CD15E56BF48A7360048C4AB] (Microsoft Corporation)
iassdo.dll -> C:\Windows\SysWow64\iassdo.dll -> [2009/06/04 04:47:43 | 00,252,928 | ---- | C | MD5 = 5A1B9A7761FB1BA3A42C8F7F0EB49994] (Microsoft Corporation)
winmm.dll -> C:\Windows\SysNative\winmm.dll -> [2009/06/04 04:47:43 | 00,211,968 | ---- | C | MD5 = DC2D7A3DE9D5DFB63AD2BA98ADB89D62] (Microsoft Corporation)
scrrun.dll -> C:\Windows\SysWow64\scrrun.dll -> [2009/06/04 04:47:43 | 00,172,032 | ---- | C | MD5 = 3DB1530CDD7AEF2BCFA6FB77D097CDDA] (Microsoft Corporation)
imm32.dll -> C:\Windows\SysWow64\imm32.dll -> [2009/06/04 04:47:43 | 00,116,224 | ---- | C | MD5 = B8FBE5F40B09F5D20E1E5CCFEF893D62] (Microsoft Corporation)
Kswdmcap.ax -> C:\Windows\SysWow64\Kswdmcap.ax -> [2009/06/04 04:47:43 | 00,093,696 | ---- | C | MD5 = FD44B4D9129EDD68BBD0A26683024EF9] (Microsoft Corporation)
slmgr.vbs -> C:\Windows\SysWow64\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
slmgr.vbs -> C:\Windows\SysNative\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
iasads.dll -> C:\Windows\SysNative\iasads.dll -> [2009/06/04 04:47:43 | 00,078,336 | ---- | C | MD5 = 1D5474E8A7F8E48515D83BBB1A1E9E47] (Microsoft Corporation)
drvinst.exe -> C:\Windows\SysNative\drvinst.exe -> [2009/06/04 04:47:43 | 00,061,440 | ---- | C | MD5 = 638DC235181C5202CE6C8232DF854DDE] (Microsoft Corporation)
crashdmp.sys -> C:\Windows\SysNative\drivers\crashdmp.sys -> [2009/06/04 04:47:43 | 00,039,400 | ---- | C | MD5 = 4F4E1093ADFBAE48544DA6E7CCF09FE4] (Microsoft Corporation)
spcmsg.dll -> C:\Windows\SysNative\spcmsg.dll -> [2009/06/04 04:47:43 | 00,014,336 | ---- | C | MD5 = 5AA31D330226F764CDC6FBAF21B4F2AB] (Microsoft Corporation)
spcmsg.dll -> C:\Windows\SysWow64\spcmsg.dll -> [2009/06/04 04:47:43 | 00,013,312 | ---- | C | MD5 = 12013A429B4F658D33CB71CA0C7F8703] (Microsoft Corporation)
netcenter.dll -> C:\Windows\SysNative\netcenter.dll -> [2009/06/04 04:47:42 | 02,420,224 | ---- | C | MD5 = 1094A477FFE9169220B8FCDF6801C3D7] (Microsoft Corporation)
appwiz.cpl -> C:\Windows\SysWow64\appwiz.cpl -> [2009/06/04 04:47:42 | 01,122,304 | ---- | C | MD5 = 19DF185D42AA0DE80AD78C58D4A4E936] (Microsoft Corporation)
pidgenx.dll -> C:\Windows\SysWow64\pidgenx.dll -> [2009/06/04 04:47:42 | 01,107,968 | ---- | C | MD5 = 48EFB6849AA0F6785D05EB468E13F17F] (Microsoft Corporation)
pidgenx.dll -> C:\Windows\SysNative\pidgenx.dll -> [2009/06/04 04:47:42 | 01,093,120 | ---- | C | MD5 = BAE7C9674D1EADB7671BD349ABE4A421] (Microsoft Corporation)
mmsys.cpl -> C:\Windows\SysNative\mmsys.cpl -> [2009/06/04 04:47:42 | 01,060,352 | ---- | C | MD5 = 78943DD269AD01EBC65FC8F78E3DF8DC] (Microsoft Corporation)
rasdlg.dll -> C:\Windows\SysNative\rasdlg.dll -> [2009/06/04 04:47:42 | 00,911,872 | ---- | C | MD5 = 39872A309B2DB96738AF44402F7BD43C] (Microsoft Corporation)
azroles.dll -> C:\Windows\SysWow64\azroles.dll -> [2009/06/04 04:47:42 | 00,757,248 | ---- | C | MD5 = 9AFFE233D49471292E8328FA5775B9DA] (Microsoft Corporation)
prnntfy.dll -> C:\Windows\SysNative\prnntfy.dll -> [2009/06/04 04:47:42 | 00,708,608 | ---- | C | MD5 = 580378414BDF681BCC6B6388FB3F0061] (Microsoft Corporation)
CertEnrollUI.dll -> C:\Windows\SysWow64\CertEnrollUI.dll -> [2009/06/04 04:47:42 | 00,633,856 | ---- | C | MD5 = 039F5070FD21A0FA3ABA305E393F75E7] (Microsoft Corporation)
vdsdyn.dll -> C:\Windows\SysNative\vdsdyn.dll -> [2009/06/04 04:47:42 | 00,571,904 | ---- | C | MD5 = AF887F37C42E829159E90BADF03592B3] (Microsoft Corporation)
sysmon.ocx -> C:\Windows\SysWow64\sysmon.ocx -> [2009/06/04 04:47:42 | 00,389,632 | ---- | C | MD5 = D665F6708EE24DF5B9A0E095ED52ED73] (Microsoft Corporation)
untfs.dll -> C:\Windows\SysNative\untfs.dll -> [2009/06/04 04:47:42 | 00,372,224 | ---- | C | MD5 = D77DD0E9D3A5C9B1A8E1DB8FF674D25D] (Microsoft Corporation)
msrpc.sys -> C:\Windows\SysNative\drivers\msrpc.sys -> [2009/06/04 04:47:42 | 00,310,760 | ---- | C | MD5 = DC6CCF440CDEDE4293DB41C37A5060A5] (Microsoft Corporation)
InkEd.dll -> C:\Windows\SysNative\InkEd.dll -> [2009/06/04 04:47:42 | 00,276,480 | ---- | C | MD5 = 1ED0E10D2766B5F89A656F8EE7FACF6F] (Microsoft Corporation)
winspool.drv -> C:\Windows\SysWow64\winspool.drv -> [2009/06/04 04:47:42 | 00,258,048 | ---- | C | MD5 = 2D1179CDEC6B7400105E68F6AC9B4EFE] (Microsoft Corporation)
pdh.dll -> C:\Windows\SysWow64\pdh.dll -> [2009/06/04 04:47:42 | 00,242,176 | ---- | C | MD5 = 295363D4317820AED0D527E15B90A8ED] (Microsoft Corporation)
dhcpcsvc.dll -> C:\Windows\SysWow64\dhcpcsvc.dll -> [2009/06/04 04:47:42 | 00,204,288 | ---- | C | MD5 = 9028559C132146FB75EB7ACF384B086A] (Microsoft Corporation)
spp.dll -> C:\Windows\SysNative\spp.dll -> [2009/06/04 04:47:42 | 00,188,928 | ---- | C | MD5 = 85515E689B247D6992E0D191400E3F79] (Microsoft Corporation)
secproc_ssp.dll -> C:\Windows\SysNative\secproc_ssp.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 607C2824E75789BEB3EE0807157401C4] (Microsoft Corporation)
secproc_ssp_isv.dll -> C:\Windows\SysNative\secproc_ssp_isv.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 0B55AC0ADA7F3335A2517413579CA37B] (Microsoft Corporation)
diskpart.exe -> C:\Windows\SysNative\diskpart.exe -> [2009/06/04 04:47:42 | 00,149,504 | ---- | C | MD5 = E2F1B0AC853231F9FA2901642D4484A5] (Microsoft Corporation)
SCardSvr.dll -> C:\Windows\SysNative\SCardSvr.dll -> [2009/06/04 04:47:42 | 00,147,968 | ---- | C | MD5 = FD1CDCF108D5EF3366F00D18B70FB89B] (Microsoft Corporation)
userenv.dll -> C:\Windows\SysNative\userenv.dll -> [2009/06/04 04:47:42 | 00,137,216 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
IPHLPAPI.DLL -> C:\Windows\SysNative\IPHLPAPI.DLL -> [2009/06/04 04:47:42 | 00,126,976 | ---- | C | MD5 = A9D70295BA8F31D5EA118B0A6B74183E] (Microsoft Corporation)
ipfltdrv.sys -> C:\Windows\SysNative\drivers\ipfltdrv.sys -> [2009/06/04 04:47:42 | 00,067,584 | ---- | C | MD5 = D8AABC341311E4780D6FCE8C73C0AD81] (Microsoft Corporation)
mup.sys -> C:\Windows\SysNative\drivers\mup.sys -> [2009/06/04 04:47:42 | 00,059,880 | ---- | C | MD5 = 0CC49F78D8ACA0877D885F149084E543] (Microsoft Corporation)
SyncCenter.dll -> C:\Windows\SysWow64\SyncCenter.dll -> [2009/06/04 04:47:41 | 02,205,184 | ---- | C | MD5 = 4ACEA0C4BB15ACE55E3AE5EC4E88DD55] (Microsoft Corporation)
chsbrkr.dll -> C:\Windows\SysNative\chsbrkr.dll -> [2009/06/04 04:47:41 | 01,676,800 | ---- | C | MD5 = FC4F0F9303170DC6212A2B3EA6613FF4] (Microsoft Corporation)
certmgr.dll -> C:\Windows\SysWow64\certmgr.dll -> [2009/06/04 04:47:41 | 01,502,720 | ---- | C | MD5 = 423CFD439195B8178208DE7BEEE52540] (Microsoft Corporation)
wmpmde.dll -> C:\Windows\SysWow64\wmpmde.dll -> [2009/06/04 04:47:41 | 00,867,328 | ---- | C | MD5 = 0C9F94C3BB100C1FE1C06A8EB4B88283] (Microsoft Corporation)
wlansvc.dll -> C:\Windows\SysNative\wlansvc.dll -> [2009/06/04 04:47:41 | 00,616,448 | ---- | C | MD5 = 1C3D795E47E0B851274AD7BC407DC048] (Microsoft Corporation)
comuid.dll -> C:\Windows\SysWow64\comuid.dll -> [2009/06/04 04:47:41 | 00,593,408 | ---- | C | MD5 = C01CF069D98F0E9ED9E8012099D26DC7] (Microsoft Corporation)
msjetoledb40.dll -> C:\Windows\SysWow64\msjetoledb40.dll -> [2009/06/04 04:47:41 | 00,368,640 | ---- | C | MD5 = 52CB0185C73E1BA86CC7F726F22523C3] ()
winlogon.exe -> C:\Windows\SysWow64\winlogon.exe -> [2009/06/04 04:47:41 | 00,314,368 | ---- | C | MD5 = 898E7C06A350D4A1A64A9EA264D55452] (Microsoft Corporation)
dskquoui.dll -> C:\Windows\SysNative\dskquoui.dll -> [2009/06/04 04:47:41 | 00,237,056 | ---- | C | MD5 = 8A63AB1A1D518A9D34984222AEC6E924] (Microsoft Corporation)
ncrypt.dll -> C:\Windows\SysWow64\ncrypt.dll -> [2009/06/04 04:47:41 | 00,204,288 | ---- | C | MD5 = A57260867734FB1F68241ECA3D589F76] (Microsoft Corporation)
iashlpr.dll -> C:\Windows\SysNative\iashlpr.dll -> [2009/06/04 04:47:41 | 00,085,504 | ---- | C | MD5 = C6913E3D07D4BD2E69CB7E85CCE80EC8] (Microsoft Corporation)
mscories.dll -> C:\Windows\SysNative\mscories.dll -> [2009/06/04 04:47:41 | 00,073,024 | ---- | C | MD5 = 084A7BC9EFA170199620214EB36464C9] (Microsoft Corporation)
disk.sys -> C:\Windows\SysNative\drivers\disk.sys -> [2009/06/04 04:47:41 | 00,067,032 | ---- | C | MD5 = B0107E40ECDB5FA692EBF832F295D905] (Microsoft Corporation)
kdcom.dll -> C:\Windows\SysNative\kdcom.dll -> [2009/06/04 04:47:41 | 00,019,432 | ---- | C | MD5 = 62D59EBED0B1004BCD9FA3E4F878D766] (Microsoft Corporation)
onex.dll -> C:\Windows\SysNative\onex.dll -> [2009/06/04 04:47:40 | 01,740,288 | ---- | C | MD5 = DED15764B578A26BE9E45E7692820549] (Microsoft Corporation)
inetcomm.dll -> C:\Windows\SysNative\inetcomm.dll -> [2009/06/04 04:47:40 | 00,974,848 | ---- | C | MD5 = BDB83CDF73775DC4F244970F73FB2A97] (Microsoft Corporation)
autoconv.exe -> C:\Windows\SysNative\autoconv.exe -> [2009/06/04 04:47:40 | 00,750,592 | ---- | C | MD5 = DD1CBF567D20DA1B0A22246ADFC4FADE] (Microsoft Corporation)
autochk.exe -> C:\Windows\SysNative\autochk.exe -> [2009/06/04 04:47:40 | 00,734,720 | ---- | C | MD5 = E24D4475713CB382A720D003BDDA9628] (Microsoft Corporation)
sethc.exe -> C:\Windows\SysWow64\sethc.exe -> [2009/06/04 04:47:40 | 00,627,200 | ---- | C | MD5 = 291B27D159AE56A049C1526AF4B3957E] (Microsoft Corporation)
imkr80.ime -> C:\Windows\SysWow64\imkr80.ime -> [2009/06/04 04:47:40 | 00,413,696 | ---- | C | MD5 = E3E821B879CF04AA13865D5E6A1FC2A0] (Microsoft Corporation)
WindowsCodecsExt.dll -> C:\Windows\SysWow64\WindowsCodecsExt.dll -> [2009/06/04 04:47:40 | 00,347,648 | ---- | C | MD5 = 73B702923D1CB50E2CCB3A7C1EBD8F22] (Microsoft Corporation)
rasapi32.dll -> C:\Windows\SysNative\rasapi32.dll -> [2009/06/04 04:47:40 | 00,337,408 | ---- | C | MD5 = A4F3F34A7146D8633FA8D346535A9CAA] (Microsoft Corporation)
untfs.dll -> C:\Windows\SysWow64\untfs.dll -> [2009/06/04 04:47:40 | 00,324,096 | ---- | C | MD5 = D30A7946B3207C9DBE40361E3B083716] (Microsoft Corporation)
diskraid.exe -> C:\Windows\SysNative\diskraid.exe -> [2009/06/04 04:47:40 | 00,308,224 | ---- | C | MD5 = A6691BF542941E5B0925C49A460AE6B6] (Microsoft Corporation)
rastls.dll -> C:\Windows\SysNative\rastls.dll -> [2009/06/04 04:47:40 | 00,281,088 | ---- | C | MD5 = 6D25CF2F1DC6C51BC8D6D8884F723C20] (Microsoft Corporation)
taskcomp.dll -> C:\Windows\SysWow64\taskcomp.dll -> [2009/06/04 04:47:40 | 00,270,336 | ---- | C | MD5 = 67ECC768ADB04591CBCF15783CB2A817] (Microsoft Corporation)
ntprint.dll -> C:\Windows\SysNative\ntprint.dll -> [2009/06/04 04:47:40 | 00,257,024 | ---- | C | MD5 = 24DC07F75E0683A3D4AB16FA38290A18] (Microsoft Corporation)
iassam.dll -> C:\Windows\SysWow64\iassam.dll -> [2009/06/04 04:47:40 | 00,182,272 | ---- | C | MD5 = 240B65CDA06C38733DF9B65E1D314BC7] (Microsoft Corporation)
scrobj.dll -> C:\Windows\SysWow64\scrobj.dll -> [2009/06/04 04:47:40 | 00,180,224 | ---- | C | MD5 = 01DDF42F77DA1348173C5DC8CB28BDC2] (Microsoft Corporation)
spp.dll -> C:\Windows\SysWow64\spp.dll -> [2009/06/04 04:47:40 | 00,142,336 | ---- | C | MD5 = 43AEF7355D24090CA7C24C83846BD981] (Microsoft Corporation)
netiohlp.dll -> C:\Windows\SysNative\netiohlp.dll -> [2009/06/04 04:47:40 | 00,140,800 | ---- | C | MD5 = 9041A0B145B7F9CB5D2F363683AEFFD4] (Microsoft Corporation)
samlib.dll -> C:\Windows\SysNative\samlib.dll -> [2009/06/04 04:47:40 | 00,099,328 | ---- | C | MD5 = 5279672A8BDAF3CFB0A4C6E0591987AC] (Microsoft Corporation)
secur32.dll -> C:\Windows\SysNative\secur32.dll -> [2009/06/04 04:47:40 | 00,094,720 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
mpr.dll -> C:\Windows\SysNative\mpr.dll -> [2009/06/04 04:47:40 | 00,084,992 | ---- | C | MD5 = B3EBBD687BDFCBBBBCB6115B682D1845] (Microsoft Corporation)
PSHED.DLL -> C:\Windows\SysNative\PSHED.DLL -> [2009/06/04 04:47:40 | 00,055,272 | ---- | C | MD5 = 9E693C6146932B5369DFFA584E805EF6] (Microsoft Corporation)
mssprxy.dll -> C:\Windows\SysNative\mssprxy.dll -> [2009/06/04 04:47:40 | 00,040,448 | ---- | C | MD5 = 595BAC1B188813CEAE88A599738E60F8] (Microsoft Corporation)
rtutils.dll -> C:\Windows\SysWow64\rtutils.dll -> [2009/06/04 04:47:40 | 00,036,352 | ---- | C | MD5 = A32608F048861AD3544AEFBF0126D33F] (Microsoft Corporation)
WMVENCOD.DLL -> C:\Windows\SysNative\WMVENCOD.DLL -> [2009/06/04 04:47:39 | 01,891,840 | ---- | C | MD5 = B7286BBA2B00EAE42401EDF591204C06] (Microsoft Corporation)
WMVDECOD.DLL -> C:\Windows\SysWow64\WMVDECOD.DLL -> [2009/06/04 04:47:39 | 01,548,288 | ---- | C | MD5 = FC27104CAF57E34BF501A84DF655F8F2] (Microsoft Corporation)
PerfCenterCPL.dll -> C:\Windows\SysNative\PerfCenterCPL.dll -> [2009/06/04 04:47:39 | 01,444,352 | ---- | C | MD5 = 4AB65F090554EE12F94E79CF3D6349E6] (Microsoft Corporation)
printui.dll -> C:\Windows\SysWow64\printui.dll -> [2009/06/04 04:47:39 | 00,869,888 | ---- | C | MD5 = C4F3693767A2B93A64C6D67CFC2DAC63] (Microsoft Corporation)
autoconv.exe -> C:\Windows\SysWow64\autoconv.exe -> [2009/06/04 04:47:39 | 00,656,896 | ---- | C | MD5 = 15B7BDA10B91FE62466F2A18682C16E8] (Microsoft Corporation)
autochk.exe -> C:\Windows\SysWow64\autochk.exe -> [2009/06/04 04:47:39 | 00,643,072 | ---- | C | MD5 = 10761177A6EBE45843F443E99509F5E7] (Microsoft Corporation)
psisdecd.dll -> C:\Windows\SysNative\psisdecd.dll -> [2009/06/04 04:47:39 | 00,375,808 | ---- | C | MD5 = 694A11BD75ED2C947955C367F4B6032A] (Microsoft Corporation)
scecli.dll -> C:\Windows\SysNative\scecli.dll -> [2009/06/04 04:47:39 | 00,235,520 | ---- | C | MD5 = 9922ADB6DCA8F0F5EA038BEFF339C08B] (Microsoft Corporation)
portcls.sys -> C:\Windows\SysNative\drivers\portcls.sys -> [2009/06/04 04:47:39 | 00,218,112 | ---- | C | MD5 = 7B7820082CACF593D6FF343D082A3AA3] (Microsoft Corporation)
profsvc.dll -> C:\Windows\SysNative\profsvc.dll -> [2009/06/04 04:47:39 | 00,178,176 | ---- | C | MD5 = E058CE4FC2449D8BFA14739C83B7FF2A] (Microsoft Corporation)
srvsvc.dll -> C:\Windows\SysNative\srvsvc.dll -> [2009/06/04 04:47:39 | 00,176,640 | ---- | C | MD5 = 967D7CB076CD1969156247D03B92CECA] (Microsoft Corporation)
rpchttp.dll -> C:\Windows\SysNative\rpchttp.dll -> [2009/06/04 04:47:39 | 00,164,352 | ---- | C | MD5 = 38B65E838C4AC307DEC37035865F9486] (Microsoft Corporation)
ntmarta.dll -> C:\Windows\SysNative\ntmarta.dll -> [2009/06/04 04:47:39 | 00,159,232 | ---- | C | MD5 = EE3718BCF5CEF1C457C10A745E410959] (Microsoft Corporation)
ecache.sys -> C:\Windows\SysNative\drivers\ecache.sys -> [2009/06/04 04:47:39 | 00,155,112 | ---- | C | MD5 = 5F94962BE5A62DB6E447FF6470C4F48A] (Microsoft Corporation)
iasnap.dll -> C:\Windows\SysWow64\iasnap.dll -> [2009/06/04 04:47:39 | 00,150,528 | ---- | C | MD5 = 1E767541B585BB3ED02FF33BC60E92A7] (Microsoft Corporation)
cscript.exe -> C:\Windows\SysWow64\cscript.exe -> [2009/06/04 04:47:39 | 00,135,168 | ---- | C | MD5 = 63F2534E7E063B4F2054433597D7A1B9] (Microsoft Corporation)
iassvcs.dll -> C:\Windows\SysNative\iassvcs.dll -> [2009/06/04 04:47:39 | 00,088,576 | ---- | C | MD5 = 1AFBEDE3E360444FEE090FC3ED428E70] (Microsoft Corporation)
volmgr.sys -> C:\Windows\SysNative\drivers\volmgr.sys -> [2009/06/04 04:47:39 | 00,067,048 | ---- | C | MD5 = 2B7E885ED951519A12C450D24535DFCA] (Microsoft Corporation)
onex.dll -> C:\Windows\SysWow64\onex.dll -> [2009/06/04 04:47:38 | 01,541,120 | ---- | C | MD5 = B64AC7967D6B9FB2D6152AC768A1CB88] (Microsoft Corporation)
iphlpsvc.dll -> C:\Windows\SysNative\iphlpsvc.dll -> [2009/06/04 04:47:38 | 00,223,744 | ---- | C | MD5 = CD033D871A83E918B14F43F7E7590819] (Microsoft Corporation)
mswsock.dll -> C:\Windows\SysWow64\mswsock.dll -> [2009/06/04 04:47:38 | 00,223,232 | ---- | C | MD5 = 8617350C9B590B63E620881092751BCB] (Microsoft Corporation)
osk.exe -> C:\Windows\SysWow64\osk.exe -> [2009/06/04 04:47:38 | 00,182,272 | ---- | C | MD5 = 877F2939794EBA4F3D1BB967007E99E8] (Microsoft Corporation)
basecsp.dll -> C:\Windows\SysNative\basecsp.dll -> [2009/06/04 04:47:38 | 00,153,064 | ---- | C | MD5 = 34889A7CC7EF7B0972994C7814F782D3] (Microsoft Corporation)
basecsp.dll -> C:\Windows\SysWow64\basecsp.dll -> [2009/06/04 04:47:38 | 00,130,024 | ---- | C | MD5 = 23A732A29E183E9874C86FD93CC7B9B9] (Microsoft Corporation)
powrprof.dll -> C:\Windows\SysNative\powrprof.dll -> [2009/06/04 04:47:38 | 00,123,392 | ---- | C | MD5 = 7823A58BF0FE3CAAA555C12B5CF91290] (Microsoft Corporation)
userenv.dll -> C:\Windows\SysWow64\userenv.dll -> [2009/06/04 04:47:38 | 00,108,544 | ---- | C | MD5 = 665417528489096BBCB8AEA46D3DA924] (Microsoft Corporation)
dwm.exe -> C:\Windows\SysNative\dwm.exe -> [2009/06/04 04:47:38 | 00,098,304 | ---- | C | MD5 = 449F5AB17863698F12F0BC8E99079AA6] (Microsoft Corporation)
audiodg.exe -> C:\Windows\SysWow64\audiodg.exe -> [2009/06/04 04:47:38 | 00,088,576 | ---- | C | MD5 = 3437B9E218A2E4586BEF4F7A3BD00777] (Microsoft Corporation)
iasacct.dll -> C:\Windows\SysNative\iasacct.dll -> [2009/06/04 04:47:38 | 00,072,704 | ---- | C | MD5 = 24E4A41DB1DEBE62C0012EF6D9BEEB28] (Microsoft Corporation)
Dumpata.sys -> C:\Windows\SysNative\drivers\Dumpata.sys -> [2009/06/04 04:47:38 | 00,029,656 | ---- | C | MD5 = 7E7270D67964C9EDDE6BFDAAC07B7999] (Microsoft Corporation)
kdusb.dll -> C:\Windows\SysNative\kdusb.dll -> [2009/06/04 04:47:38 | 00,022,504 | ---- | C | MD5 = BDD7206C3FE4895F133DE5615DD6B492] (Microsoft Corporation)
spldr.sys -> C:\Windows\SysNative\drivers\spldr.sys -> [2009/06/04 04:47:38 | 00,019,432 | ---- | C | MD5 = 386C3C63F00A7040C7EC5E384217E89D] (Microsoft Corporation)
networkmap.dll -> C:\Windows\SysNative\networkmap.dll -> [2009/06/04 04:47:37 | 03,235,328 | ---- | C | MD5 = C3EB4555E37E75906185C1B8D2158237] (Microsoft Corporation)
wpccpl.dll -> C:\Windows\SysNative\wpccpl.dll -> [2009/06/04 04:47:37 | 01,882,624 | ---- | C | MD5 = 7241639333A70BA66D9AEFA5D9E55A80] (Microsoft Corporation)
rdpencom.dll -> C:\Windows\SysWow64\rdpencom.dll -> [2009/06/04 04:47:37 | 00,612,864 | ---- | C | MD5 = FBA13EE4F0838CB6C340128DACF9CF12] (Microsoft Corporation)
mspaint.exe -> C:\Windows\SysNative\mspaint.exe -> [2009/06/04 04:47:37 | 00,593,408 | ---- | C | MD5 = EC0A7FB35A11EEF77C76781E122BAF0C] (Microsoft Corporation)
msftedit.dll -> C:\Windows\SysWow64\msftedit.dll -> [2009/06/04 04:47:37 | 00,564,224 | ---- | C | MD5 = 3A72AB0BAF2DC1AE0BA6E1EE28FFCC0B] (Microsoft Corporation)
scesrv.dll -> C:\Windows\SysNative\scesrv.dll -> [2009/06/04 04:47:37 | 00,399,360 | ---- | C | MD5 = 495EB57ACF30983AA441B70A8DE2B7ED] (Microsoft Corporation)
RelMon.dll -> C:\Windows\SysWow64\RelMon.dll -> [2009/06/04 04:47:37 | 00,340,992 | ---- | C | MD5 = 859E02E3346DC681DFAC96225D2797C6] (Microsoft Corporation)
tapisrv.dll -> C:\Windows\SysNative\tapisrv.dll -> [2009/06/04 04:47:37 | 00,318,976 | ---- | C | MD5 = CC2562B4D55E0B6A4758C65407F63B79] (Microsoft Corporation)
wow64win.dll -> C:\Windows\SysNative\wow64win.dll -> [2009/06/04 04:47:37 | 00,301,568 | ---- | C | MD5 = 8FE910915F14C9C6A9561D8032B603D3] (Microsoft Corporation)
regsvc.dll -> C:\Windows\SysNative\regsvc.dll -> [2009/06/04 04:47:37 | 00,206,848 | ---- | C | MD5 = 44B9D8EC2F3EF3A0EFB00857AF70D861] (Microsoft Corporation)
winmm.dll -> C:\Windows\SysWow64\winmm.dll -> [2009/06/04 04:47:37 | 00,189,952 | ---- | C | MD5 = 934511EFE4461F84CA946B9C0321F365] (Microsoft Corporation)
ks.sys -> C:\Windows\SysNative\drivers\ks.sys -> [2009/06/04 04:47:37 | 00,188,416 | ---- | C | MD5 = 6DF6A6E5642D97B07214B1FBED4A15B3] (Microsoft Corporation)
exfat.sys -> C:\Windows\SysNative\drivers\exfat.sys -> [2009/06/04 04:47:37 | 00,187,904 | ---- | C | MD5 = 486844F47B6636044A42454614ED4523] (Microsoft Corporation)
Faultrep.dll -> C:\Windows\SysNative\Faultrep.dll -> [2009/06/04 04:47:37 | 00,176,640 | ---- | C | MD5 = 90D65E758F4087A529C0703EF322F780] (Microsoft Corporation)
wusa.exe -> C:\Windows\SysNative\wusa.exe -> [2009/06/04 04:47:37 | 00,147,968 | ---- | C | MD5 = 663F13995CF313674C18B4591EA2BF08] (Microsoft Corporation)
dnsrslvr.dll -> C:\Windows\SysNative\dnsrslvr.dll -> [2009/06/04 04:47:37 | 00,117,760 | ---- | C | MD5 = 21D16B37257370975C7457C3A5EFA530] (Microsoft Corporation)
WinSCard.dll -> C:\Windows\SysWow64\WinSCard.dll -> [2009/06/04 04:47:37 | 00,115,712 | ---- | C | MD5 = 627920CFF5DFCF8CF54CF2D592D61307] (Microsoft Corporation)
logman.exe -> C:\Windows\SysNative\logman.exe -> [2009/06/04 04:47:37 | 00,070,144 | ---- | C | MD5 = ADAE934EECFDD8BF8ABBEF10D80381AB] (Microsoft Corporation)
wsepno.dll -> C:\Windows\SysNative\wsepno.dll -> [2009/06/04 04:47:37 | 00,024,064 | ---- | C | MD5 = 5B24E50355A79CD48ED369D8D747411A] (Microsoft Corporation)WerFaultSecure.exe -> C:\Windows\SysWow64\WerFaultSecure.exe -> [2009/06/04 04:47:36 | 00,860,160 | ---- | C | MD5 = DA06BE393317EA5756B218633A537B47] (Microsoft Corporation)
Utilman.exe -> C:\Windows\SysWow64\Utilman.exe -> [2009/06/04 04:47:36 | 00,638,976 | ---- | C | MD5 = 10FB8976B556A75098868CFFAD6DC576] (Microsoft Corporation)
stobject.dll -> C:\Windows\SysWow64\stobject.dll -> [2009/06/04 04:47:36 | 00,586,752 | ---- | C | MD5 = 8EAE44A2EBCBB5D12C5454573EA1F621] (Microsoft Corporation)
prnntfy.dll -> C:\Windows\SysWow64\prnntfy.dll -> [2009/06/04 04:47:36 | 00,551,936 | ---- | C | MD5 = 429A7B2973A57B1EF405DF270CF3F90C] (Microsoft Corporation)
AudioEng.dll -> C:\Windows\SysWow64\AudioEng.dll -> [2009/06/04 04:47:36 | 00,396,800 | ---- | C | MD5 = DA7478BA9E41B60B3D5DA456E253002A] (Microsoft Corporation)
mscms.dll -> C:\Windows\SysWow64\mscms.dll -> [2009/06/04 04:47:36 | 00,391,680 | ---- | C | MD5 = 5F1DEC3824E566457F53F24F493FEF08] (Microsoft Corporation)
shsvcs.dll -> C:\Windows\SysNative\shsvcs.dll -> [2009/06/04 04:47:36 | 00,301,568 | ---- | C | MD5 = 2AD15758174DCC7993FF3C00A955DD66] (Microsoft Corporation)
diskraid.exe -> C:\Windows\SysWow64\diskraid.exe -> [2009/06/04 04:47:36 | 00,230,912 | ---- | C | MD5 = 206B492CC40E0E0C01F6EA73F724AB9A] (Microsoft Corporation)
WerFault.exe -> C:\Windows\SysWow64\WerFault.exe -> [2009/06/04 04:47:36 | 00,217,088 | ---- | C | MD5 = 7BEDD051B53821B040EAD42DB0724848] (Microsoft Corporation)
mfplat.dll -> C:\Windows\SysWow64\mfplat.dll -> [2009/06/04 04:47:36 | 00,208,896 | ---- | C | MD5 = C732992FF9798F2ACBF86314F0E4A6F5] (Microsoft Corporation)
SndVol.exe -> C:\Windows\SysWow64\SndVol.exe -> [2009/06/04 04:47:36 | 00,197,632 | ---- | C | MD5 = 96DD35AB1C1420E0CD70EF9ECD32B825] (Microsoft Corporation)
offfilt.dll -> C:\Windows\SysWow64\offfilt.dll -> [2009/06/04 04:47:36 | 00,194,560 | ---- | C | MD5 = 06588D3E301B53D24281DACEE3C34FE3] (Microsoft Corporation)
msnetobj.dll -> C:\Windows\SysWow64\msnetobj.dll -> [2009/06/04 04:47:36 | 00,179,712 | ---- | C | MD5 = 584C4A26F210B823BBF73BB985CAA2CE] (Microsoft Corporation)
apphelp.dll -> C:\Windows\SysWow64\apphelp.dll -> [2009/06/04 04:47:36 | 00,171,008 | ---- | C | MD5 = 1107BD574A84367735FEC38B9BD64E6B] (Microsoft Corporation)
wscript.exe -> C:\Windows\SysWow64\wscript.exe -> [2009/06/04 04:47:36 | 00,155,648 | ---- | C | MD5 = 1259E03DCD5F265B23DB738FB075DF8C] (Microsoft Corporation)
secproc_ssp_isv.dll -> C:\Windows\SysWow64\secproc_ssp_isv.dll -> [2009/06/04 04:47:36 | 00,152,576 | ---- | C | MD5 = 7167087FBBBAB7518B7E171508A7AEE7] (Microsoft Corporation)
secproc_ssp.dll -> C:\Windows\SysWow64\secproc_ssp.dll -> [2009/06/04 04:47:36 | 00,152,064 | ---- | C | MD5 = 4805AA783E9CA8E60F1AA6F3E1199D83] (Microsoft Corporation)
authz.dll -> C:\Windows\SysNative\authz.dll -> [2009/06/04 04:47:36 | 00,143,360 | ---- | C | MD5 = 5EF9205E045643A5A75A82B116395B25] (Microsoft Corporation)
mstlsapi.dll -> C:\Windows\SysNative\mstlsapi.dll -> [2009/06/04 04:47:36 | 00,139,264 | ---- | C | MD5 = 0DDD4DDE7C1FD5C3C8C4CB378CC9766F] (Microsoft Corporation)
odbccp32.dll -> C:\Windows\SysWow64\odbccp32.dll -> [2009/06/04 04:47:36 | 00,114,688 | ---- | C | MD5 = A1B46928E107D770053E6B4D248298A5] (Microsoft Corporation)
adsmsext.dll -> C:\Windows\SysWow64\adsmsext.dll -> [2009/06/04 04:47:36 | 00,075,264 | ---- | C | MD5 = 27FC7C228999D739C11F76120A121525] (Microsoft Corporation)
wsnmp32.dll -> C:\Windows\SysNative\wsnmp32.dll -> [2009/06/04 04:47:36 | 00,061,952 | ---- | C | MD5 = 57120423BC6342F0EAE16E3720184D5A] (Microsoft Corporation)
TSTheme.exe -> C:\Windows\SysNative\TSTheme.exe -> [2009/06/04 04:47:36 | 00,045,568 | ---- | C | MD5 = 73EE3ACB4284F47FEE55F2DFA634C3FB] (Microsoft Corporation)
usercpl.dll -> C:\Windows\SysNative\usercpl.dll -> [2009/06/04 04:47:35 | 01,279,488 | ---- | C | MD5 = F59E9C431922D78F771B47BD78974A00] (Microsoft Corporation)
wer.dll -> C:\Windows\SysNative\wer.dll -> [2009/06/04 04:47:35 | 01,110,528 | ---- | C | MD5 = 589CDC23CCDC419C36DDD200BEB00944] (Microsoft Corporation)
systemcpl.dll -> C:\Windows\SysNative\systemcpl.dll -> [2009/06/04 04:47:35 | 00,995,328 | ---- | C | MD5 = 423AE00736BE9C4679975B31B9B06E16] (Microsoft Corporation)
cryptui.dll -> C:\Windows\SysWow64\cryptui.dll -> [2009/06/04 04:47:35 | 00,971,264 | ---- | C | MD5 = 248A1F31ABB58DDDDC01490EF0BDC777] (Microsoft Corporation)
timedate.cpl -> C:\Windows\SysNative\timedate.cpl -> [2009/06/04 04:47:35 | 00,881,152 | ---- | C | MD5 = 11449A34FFF4A84C0C81339107C39BDE] (Microsoft Corporation)
ipsecsnp.dll -> C:\Windows\SysWow64\ipsecsnp.dll -> [2009/06/04 04:47:35 | 00,759,296 | ---- | C | MD5 = 0170442A2DF1127A9F4330FDDAEC35F6] (Microsoft Corporation)
themeui.dll -> C:\Windows\SysNative\themeui.dll -> [2009/06/04 04:47:35 | 00,688,640 | ---- | C | MD5 = A83ABA8C35FC10E8CECF4A241ECAFA9F] (Microsoft Corporation)
dsound.dll -> C:\Windows\SysWow64\dsound.dll -> [2009/06/04 04:47:35 | 00,444,416 | ---- | C | MD5 = 84B8827562B005C118CADBA0F25DB2C6] (Microsoft Corporation)
wlangpui.dll -> C:\Windows\SysWow64\wlangpui.dll -> [2009/06/04 04:47:35 | 00,399,360 | ---- | C | MD5 = 6A4ACF2A646637BEA955A7263AE0C424] (Microsoft Corporation)
zipfldr.dll -> C:\Windows\SysNative\zipfldr.dll -> [2009/06/04 04:47:35 | 00,387,072 | ---- | C | MD5 = 5F5EEC2778893CA2EC3A423FBDC10F6F] (Microsoft Corporation)
bcrypt.dll -> C:\Windows\SysNative\bcrypt.dll -> [2009/06/04 04:47:35 | 00,306,688 | ---- | C | MD5 = 02EE316487BCC8F4F6017CAD538365CC] (Microsoft Corporation)
rastls.dll -> C:\Windows\SysWow64\rastls.dll -> [2009/06/04 04:47:35 | 00,244,224 | ---- | C | MD5 = 010A3B1255F9B35E6EB7BB97C57CA086] (Microsoft Corporation)
wow64.dll -> C:\Windows\SysNative\wow64.dll -> [2009/06/04 04:47:35 | 00,234,496 | ---- | C | MD5 = 813C216E14005CB42BBD1B037FCF030F] (Microsoft Corporation)
wscntfy.dll -> C:\Windows\SysWow64\wscntfy.dll -> [2009/06/04 04:47:35 | 00,223,744 | ---- | C | MD5 = 0B5AC46982E77CAF3EC1D55C9AC6AB56] (Microsoft Corporation)
dot3svc.dll -> C:\Windows\SysNative\dot3svc.dll -> [2009/06/04 04:47:35 | 00,208,896 | ---- | C | MD5 = 1A7156DD1E850E9914E5E991E3225B94] (Microsoft Corporation)
pnpsetup.dll -> C:\Windows\SysWow64\pnpsetup.dll -> [2009/06/04 04:47:35 | 00,181,760 | ---- | C | MD5 = 24843AC00885464EA397FE56CBCBAAD7] (Microsoft Corporation)
wshom.ocx -> C:\Windows\SysNative\wshom.ocx -> [2009/06/04 04:47:35 | 00,144,384 | ---- | C | MD5 = C9FEA5BABF18D825C65CBF0AD50EC59A] (Microsoft Corporation)
odbccp32.dll -> C:\Windows\SysNative\odbccp32.dll -> [2009/06/04 04:47:35 | 00,126,976 | ---- | C | MD5 = FE884FEE6FD382CFCC9C3C05133A874D] (Microsoft Corporation)
diskpart.exe -> C:\Windows\SysWow64\diskpart.exe -> [2009/06/04 04:47:35 | 00,119,808 | ---- | C | MD5 = A9F36F9BEC6F23F5B6EDF1EB4D1AA452] (Microsoft Corporation)
Kswdmcap.ax -> C:\Windows\SysNative\Kswdmcap.ax -> [2009/06/04 04:47:35 | 00,115,200 | ---- | C | MD5 = F307C2E569AD9BDA64E3F6D9E78B5AAD] (Microsoft Corporation)
mrxsmb20.sys -> C:\Windows\SysNative\drivers\mrxsmb20.sys -> [2009/06/04 04:47:35 | 00,105,984 | ---- | C | MD5 = 37ABC27460F9D532EFDCC0116B7E5E48] (Microsoft Corporation)
console.dll -> C:\Windows\SysNative\console.dll -> [2009/06/04 04:47:35 | 00,104,448 | ---- | C | MD5 = C04642A57835AEA3D66AE0D896E0F6D1] (Microsoft Corporation)
ulib.dll -> C:\Windows\SysWow64\ulib.dll -> [2009/06/04 04:47:35 | 00,099,840 | ---- | C | MD5 = 5C9541EFCE477BFCFFD0EF9B1A175457] (Microsoft Corporation)
IPHLPAPI.DLL -> C:\Windows\SysWow64\IPHLPAPI.DLL -> [2009/06/04 04:47:35 | 00,091,648 | ---- | C | MD5 = 4FE8425F21B3F0F8C4B4726351D43EAA] (Microsoft Corporation)
rastapi.dll -> C:\Windows\SysNative\rastapi.dll -> [2009/06/04 04:47:35 | 00,081,408 | ---- | C | MD5 = 8F8E0EE62D73C72015D43E91BBF62B01] (Microsoft Corporation)
gpapi.dll -> C:\Windows\SysWow64\gpapi.dll -> [2009/06/04 04:47:35 | 00,075,264 | ---- | C | MD5 = 0F420E81062757EA8363CBACD4D40D6D] (Microsoft Corporation)
rastapi.dll -> C:\Windows\SysWow64\rastapi.dll -> [2009/06/04 04:47:35 | 00,069,632 | ---- | C | MD5 = 1D6B95871DC006190964B04E5657E35F] (Microsoft Corporation)
iasdatastore.dll -> C:\Windows\SysWow64\iasdatastore.dll -> [2009/06/04 04:47:35 | 00,047,104 | ---- | C | MD5 = 68EF5A4ECAB4FE38ACE1B7DBA86EEC71] (Microsoft Corporation)
perfdisk.dll -> C:\Windows\SysNative\perfdisk.dll -> [2009/06/04 04:47:35 | 00,035,328 | ---- | C | MD5 = 67FB44CEBAFF6FB5A01920F9B311C76E] (Microsoft Corporation)
fdProxy.dll -> C:\Windows\SysWow64\fdProxy.dll -> [2009/06/04 04:47:35 | 00,024,064 | ---- | C | MD5 = ABAEAEE763E287BDD39094C4165E1F3F] (Microsoft Corporation)
tsbyuv.dll -> C:\Windows\SysNative\tsbyuv.dll -> [2009/06/04 04:47:35 | 00,014,336 | ---- | C | MD5 = D5A1C956A2A8F757D6141600078D40CE] (Microsoft Corporation)
WMVENCOD.DLL -> C:\Windows\SysWow64\WMVENCOD.DLL -> [2009/06/04 04:47:34 | 01,575,936 | ---- | C | MD5 = 0832B2F03FDF247F048A2A07810CF5CC] (Microsoft Corporation)
sud.dll -> C:\Windows\SysNative\sud.dll -> [2009/06/04 04:47:34 | 01,382,912 | ---- | C | MD5 = 71D1DE39CC39BFB59563820AA364EEE1] (Microsoft Corporation)
powercpl.dll -> C:\Windows\SysNative\powercpl.dll -> [2009/06/04 04:47:34 | 00,898,560 | ---- | C | MD5 = 3096A3E497003224B4E48BAC11C6778C] (Microsoft Corporation)
slcc.dll -> C:\Windows\SysNative\slcc.dll -> [2009/06/04 04:47:34 | 00,810,496 | ---- | C | MD5 = 424CE0D3BDE733C21914B7C415F2EF36] (Microsoft Corporation)
wpcao.dll -> C:\Windows\SysNative\wpcao.dll -> [2009/06/04 04:47:34 | 00,690,688 | ---- | C | MD5 = D6D7D64E008500DB45A1E02A13DC1EEA] (Microsoft Corporation)
autoplay.dll -> C:\Windows\SysNative\autoplay.dll -> [2009/06/04 04:47:34 | 00,667,648 | ---- | C | MD5 = 8039D279CCFB4DA0B1AA41D8E70369BE] (Microsoft Corporation)
pcaui.dll -> C:\Windows\SysNative\pcaui.dll -> [2009/06/04 04:47:34 | 00,617,984 | ---- | C | MD5 = 1B63115D4A0D3B7B53A30CC426722BDD] (Microsoft Corporation)
vdsdyn.dll -> C:\Windows\SysWow64\vdsdyn.dll -> [2009/06/04 04:47:34 | 00,507,904 | ---- | C | MD5 = 759CAC5C047B3DE16E2A59351527DBB3] (Microsoft Corporation)
IKEEXT.DLL -> C:\Windows\SysNative\IKEEXT.DLL -> [2009/06/04 04:47:34 | 00,454,656 | ---- | C | MD5 = 0C9EA6E654E7B0471741E343A6C671AF] (Microsoft Corporation)
imkr80.ime -> C:\Windows\SysNative\imkr80.ime -> [2009/06/04 04:47:34 | 00,437,248 | ---- | C | MD5 = 54550E0ECC435DE30244F15857A8002B] (Microsoft Corporation)
zipfldr.dll -> C:\Windows\SysWow64\zipfldr.dll -> [2009/06/04 04:47:34 | 00,342,528 | ---- | C | MD5 = 7D80F287AEEDD39C03E118E0EBD3311E] (Microsoft Corporation)
modemui.dll -> C:\Windows\SysNative\modemui.dll -> [2009/06/04 04:47:34 | 00,302,592 | ---- | C | MD5 = 0C31659ABF8C63995E355B330ACB3AE2] (Microsoft Corporation)
rasapi32.dll -> C:\Windows\SysWow64\rasapi32.dll -> [2009/06/04 04:47:34 | 00,286,720 | ---- | C | MD5 = 3CB863B78642405371CB3A71C07E2382] (Microsoft Corporation)
ntprint.dll -> C:\Windows\SysWow64\ntprint.dll -> [2009/06/04 04:47:34 | 00,216,064 | ---- | C | MD5 = 16FF3D15D12BFBB0B805FFE71BE3FA15] (Microsoft Corporation)
wscript.exe -> C:\Windows\SysNative\wscript.exe -> [2009/06/04 04:47:34 | 00,166,912 | ---- | C | MD5 = 895083A7A0C4A75C6F8825895050ABB7] (Microsoft Corporation)
SmartcardCredentialProvider.dll -> C:\Windows\SysNative\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:34 | 00,161,280 | ---- | C | MD5 = C501852F1CA40FFC55363ACC0D2DF5BA] (Microsoft Corporation)
iasrad.dll -> C:\Windows\SysWow64\iasrad.dll -> [2009/06/04 04:47:34 | 00,158,208 | ---- | C | MD5 = A080A841827D71F86ACEDC48F3B5AF64] (Microsoft Corporation)
mscorier.dll -> C:\Windows\SysWow64\mscorier.dll -> [2009/06/04 04:47:34 | 00,155,456 | ---- | C | MD5 = 39F8C798CD91E03A26C3A733108CCE41] (Microsoft Corporation)
mscorier.dll -> C:\Windows\SysNative\mscorier.dll -> [2009/06/04 04:47:34 | 00,154,960 | ---- | C | MD5 = BA47897793A16976F4CD9694920C9781] (Microsoft Corporation)
wusa.exe -> C:\Windows\SysWow64\wusa.exe -> [2009/06/04 04:47:34 | 00,140,800 | ---- | C | MD5 = 10BE37532F4AD750958AB53A786F74BD] (Microsoft Corporation)
netiohlp.dll -> C:\Windows\SysWow64\netiohlp.dll -> [2009/06/04 04:47:34 | 00,104,448 | ---- | C | MD5 = 3BA9CEAB6B6BB30ACACC1937C074532D] (Microsoft Corporation)
wlanhlp.dll -> C:\Windows\SysNative\wlanhlp.dll -> [2009/06/04 04:47:34 | 00,097,792 | ---- | C | MD5 = BF89EBF91E1559FA8773AFB4372F40E8] (Microsoft Corporation)
tdx.sys -> C:\Windows\SysNative\drivers\tdx.sys -> [2009/06/04 04:47:34 | 00,094,720 | ---- | C | MD5 = 458919C8C42E398DC4802178D5FFEE27] (Microsoft Corporation)
regapi.dll -> C:\Windows\SysNative\regapi.dll -> [2009/06/04 04:47:34 | 00,089,088 | ---- | C | MD5 = 94CCD9D329BD894E3385CD43F613D554] (Microsoft Corporation)
hdwwiz.exe -> C:\Windows\SysNative\hdwwiz.exe -> [2009/06/04 04:47:34 | 00,080,896 | ---- | C | MD5 = 10F17F3418B50C563BDB4D80D2D7F2C0] (Microsoft Corporation)
newdev.exe -> C:\Windows\SysNative\newdev.exe -> [2009/06/04 04:47:34 | 00,075,776 | ---- | C | MD5 = D0EA1BB7D305DA7F138795CCDBF13040] (Microsoft Corporation)
iashlpr.dll -> C:\Windows\SysWow64\iashlpr.dll -> [2009/06/04 04:47:34 | 00,070,656 | ---- | C | MD5 = 24468F62F811EC51F1DE9FA080E7D2C1] (Microsoft Corporation)
findstr.exe -> C:\Windows\SysWow64\findstr.exe -> [2009/06/04 04:47:34 | 00,060,928 | ---- | C | MD5 = 186954438DE3DDBF0B46F895B7936DE3] (Microsoft Corporation)
logman.exe -> C:\Windows\SysWow64\logman.exe -> [2009/06/04 04:47:34 | 00,057,344 | ---- | C | MD5 = D29E2C7FECB1F1027DAE779B00A3E956] (Microsoft Corporation)
wshbth.dll -> C:\Windows\SysNative\wshbth.dll -> [2009/06/04 04:47:34 | 00,044,032 | ---- | C | MD5 = 2A70994A408D889715DE6A527679397E] (Microsoft Corporation)
DeviceEject.exe -> C:\Windows\SysNative\DeviceEject.exe -> [2009/06/04 04:47:34 | 00,026,624 | ---- | C | MD5 = F03360A8A3059D14FEA41E6BF6E704F0] (Microsoft Corporation)
msisip.dll -> C:\Windows\SysNative\msisip.dll -> [2009/06/04 04:47:34 | 00,022,528 | ---- | C | MD5 = 916E8C67A8D845378E26ACEE7C1CB16F] (Microsoft Corporation)
chtbrkr.dll -> C:\Windows\SysNative\chtbrkr.dll -> [2009/06/04 04:47:33 | 06,100,480 | ---- | C | MD5 = AC8C3CBCA02EBC0FAE7B1A00C4DCEADC] (Microsoft Corporation)
accessibilitycpl.dll -> C:\Windows\SysNative\accessibilitycpl.dll -> [2009/06/04 04:47:33 | 02,680,832 | ---- | C | MD5 = 9E341BB55760A87268862E40DBA1CEF0] (Microsoft Corporation)
netcenter.dll -> C:\Windows\SysWow64\netcenter.dll -> [2009/06/04 04:47:33 | 02,225,664 | ---- | C | MD5 = 28622FC22E0D46EE0A494EF084235F74] (Microsoft Corporation)
themecpl.dll -> C:\Windows\SysWow64\themecpl.dll -> [2009/06/04 04:47:33 | 01,152,000 | ---- | C | MD5 = 7AF5FFF227F2365B2E37C61F5DC84A01] (Microsoft Corporation)
wer.dll -> C:\Windows\SysWow64\wer.dll -> [2009/06/04 04:47:33 | 00,876,032 | ---- | C | MD5 = 8BE000F9A0B0FF7194AAEFB02C9BDE99] (Microsoft Corporation)
rasdlg.dll -> C:\Windows\SysWow64\rasdlg.dll -> [2009/06/04 04:47:33 | 00,825,856 | ---- | C | MD5 = 2DD6AF8E97F59C9D39329BBC2A81F13F] (Microsoft Corporation)
mstsc.exe -> C:\Windows\SysNative\mstsc.exe -> [2009/06/04 04:47:33 | 00,731,648 | ---- | C | MD5 = B9ECFA30BE99EEEA2948A27D85E1F52E] (Microsoft Corporation)
pnpui.dll -> C:\Windows\SysNative\pnpui.dll -> [2009/06/04 04:47:33 | 00,691,712 | ---- | C | MD5 = 0E5D010E4BA6C9477AE6BD4D35F334F4] (Microsoft Corporation)
riched20.dll -> C:\Windows\SysNative\riched20.dll -> [2009/06/04 04:47:33 | 00,606,208 | ---- | C | MD5 = A66325E43C09902374854B285DAC1548] (Microsoft Corporation)
ncryptui.dll -> C:\Windows\SysNative\ncryptui.dll -> [2009/06/04 04:47:33 | 00,589,312 | ---- | C | MD5 = C4EB35DAE78F0FA60E17729E460A157F] (Microsoft Corporation)
udfs.sys -> C:\Windows\SysNative\drivers\udfs.sys -> [2009/06/04 04:47:33 | 00,299,008 | ---- | C | MD5 = FAF2640A2A76ED03D449E443194C4C34] (Microsoft Corporation)
apphelp.dll -> C:\Windows\SysNative\apphelp.dll -> [2009/06/04 04:47:33 | 00,200,704 | ---- | C | MD5 = F33E804A031F160D128AB78990DE7C91] (Microsoft Corporation)
imm32.dll -> C:\Windows\SysNative\imm32.dll -> [2009/06/04 04:47:33 | 00,163,840 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
vdsutil.dll -> C:\Windows\SysNative\vdsutil.dll -> [2009/06/04 04:47:33 | 00,157,696 | ---- | C | MD5 = 220349D1D90EE438AD031EBEF5F6D7A3] (Microsoft Corporation)
cscript.exe -> C:\Windows\SysNative\cscript.exe -> [2009/06/04 04:47:33 | 00,147,968 | ---- | C | MD5 = FDD38054BABF076AA91DD02A2F1501C0] (Microsoft Corporation)
ulib.dll -> C:\Windows\SysNative\ulib.dll -> [2009/06/04 04:47:33 | 00,128,000 | ---- | C | MD5 = 10D22E8EF75C8E63007492B524A008F8] (Microsoft Corporation)
wshext.dll -> C:\Windows\SysNative\wshext.dll -> [2009/06/04 04:47:33 | 00,101,888 | ---- | C | MD5 = 6DC1F2034B8ECAB0C7848A9B522076AB] (Microsoft Corporation)
pacer.sys -> C:\Windows\SysNative\drivers\pacer.sys -> [2009/06/04 04:47:33 | 00,094,208 | ---- | C | MD5 = C5AB7F0809392D0DA027F4A2A81BFA31] (Microsoft Corporation)
wshext.dll -> C:\Windows\SysWow64\wshext.dll -> [2009/06/04 04:47:33 | 00,090,112 | ---- | C | MD5 = 9C50130E941A24805A608E6F3D2A3C8F] (Microsoft Corporation)
iassvcs.dll -> C:\Windows\SysWow64\iassvcs.dll -> [2009/06/04 04:47:33 | 00,076,288 | ---- | C | MD5 = CAC183ABA07231B031EC0627E3A4A618] (Microsoft Corporation)
feclient.dll -> C:\Windows\SysNative\feclient.dll -> [2009/06/04 04:47:33 | 00,068,608 | ---- | C | MD5 = D7924B0F3AB5574BF59CA2892BE8961A] (Microsoft Corporation)
wsnmp32.dll -> C:\Windows\SysWow64\wsnmp32.dll -> [2009/06/04 04:47:33 | 00,050,688 | ---- | C | MD5 = 1EDE113859276E4B0F19B80F39E2CC95] (Microsoft Corporation)
usbehci.sys -> C:\Windows\SysNative\drivers\usbehci.sys -> [2009/06/04 04:47:33 | 00,049,664 | ---- | C | MD5 = 827E44DE934A736EA31E91D353EB126F] (Microsoft Corporation)
networkmap.dll -> C:\Windows\SysWow64\networkmap.dll -> [2009/06/04 04:47:32 | 03,072,000 | ---- | C | MD5 = 681D46C02A26F00C5F767B78BDAC7D1E] (Microsoft Corporation)
PerfCenterCPL.dll -> C:\Windows\SysWow64\PerfCenterCPL.dll -> [2009/06/04 04:47:32 | 01,248,768 | ---- | C | MD5 = 1B360BE74EEF51393234D23552AEE403] (Microsoft Corporation)
slcc.dll -> C:\Windows\SysWow64\slcc.dll -> [2009/06/04 04:47:32 | 00,777,216 | ---- | C | MD5 = 3CEADB7938575606D5334E44A7274B92] (Microsoft Corporation)
powercpl.dll -> C:\Windows\SysWow64\powercpl.dll -> [2009/06/04 04:47:32 | 00,723,968 | ---- | C | MD5 = 8DDC387167FA0234F3656EB34C78BFFB] (Microsoft Corporation)
timedate.cpl -> C:\Windows\SysWow64\timedate.cpl -> [2009/06/04 04:47:32 | 00,714,240 | ---- | C | MD5 = 45D4135CFA747CDFCF7CB247A6399002] (Microsoft Corporation)
mstsc.exe -> C:\Windows\SysWow64\mstsc.exe -> [2009/06/04 04:47:32 | 00,678,400 | ---- | C | MD5 = 4F7A9842012D948EB16DC7B8B91366FE] (Microsoft Corporation)
qedit.dll -> C:\Windows\SysNative\qedit.dll -> [2009/06/04 04:47:32 | 00,619,008 | ---- | C | MD5 = C4E2A5EC3D4AB3D0652F6A70FDE24C78] (Microsoft Corporation)
srcore.dll -> C:\Windows\SysNative\srcore.dll -> [2009/06/04 04:47:32 | 00,474,624 | ---- | C | MD5 = 8BD38D1BF56559DF5E28EA74ADA63A07] (Microsoft Corporation)
rasplap.dll -> C:\Windows\SysNative\rasplap.dll -> [2009/06/04 04:47:32 | 00,389,632 | ---- | C | MD5 = F59CF3BFE865EB795C5DE5850F48B321] (Microsoft Corporation)
rasppp.dll -> C:\Windows\SysNative\rasppp.dll -> [2009/06/04 04:47:32 | 00,306,176 | ---- | C | MD5 = 4500B574CB7F5ED6EE8E0BBC72AE2E31] (Microsoft Corporation)
scansetting.dll -> C:\Windows\SysWow64\scansetting.dll -> [2009/06/04 04:47:32 | 00,245,760 | ---- | C | MD5 = E60FA45D987DBA869B28532E2F0E6B76] (Microsoft Corporation)
SndVolSSO.dll -> C:\Windows\SysNative\SndVolSSO.dll -> [2009/06/04 04:47:32 | 00,177,664 | ---- | C | MD5 = 5C8C51B679B947F3DF948533C0926240] (Microsoft Corporation)
tcpmon.dll -> C:\Windows\SysNative\tcpmon.dll -> [2009/06/04 04:47:32 | 00,168,960 | ---- | C | MD5 = 74D59F72104C9FF8D154D1AB372A5A57] (Microsoft Corporation)
msutb.dll -> C:\Windows\SysWow64\msutb.dll -> [2009/06/04 04:47:32 | 00,163,328 | ---- | C | MD5 = C6DA42ADA0C5FC8CB05744229D632B47] (Microsoft Corporation)
wshom.ocx -> C:\Windows\SysWow64\wshom.ocx -> [2009/06/04 04:47:32 | 00,135,168 | ---- | C | MD5 = 8992F45DED6B63B919BDEB6D270FF9C8] (Microsoft Corporation)
ntmarta.dll -> C:\Windows\SysWow64\ntmarta.dll -> [2009/06/04 04:47:32 | 00,121,344 | ---- | C | MD5 = CD08EEC61C591AF59A39F4363C567D30] (Microsoft Corporation)
oleprn.dll -> C:\Windows\SysNative\oleprn.dll -> [2009/06/04 04:47:32 | 00,115,712 | ---- | C | MD5 = D00EE9DF8224EAED0690EF80FFAE9EAA] (Microsoft Corporation)
powrprof.dll -> C:\Windows\SysWow64\powrprof.dll -> [2009/06/04 04:47:32 | 00,098,816 | ---- | C | MD5 = 9A7F4B2EDACD11444D048AA19CBB26AF] (Microsoft Corporation)
wanarp.sys -> C:\Windows\SysNative\drivers\wanarp.sys -> [2009/06/04 04:47:32 | 00,086,528 | ---- | C | MD5 = B8E7049622300D20BA6D8BE0C47C0CFD] (Microsoft Corporation)
mstlsapi.dll -> C:\Windows\SysWow64\mstlsapi.dll -> [2009/06/04 04:47:32 | 00,084,992 | ---- | C | MD5 = EE60FC8F65B94C392DE0F75533C014FB] (Microsoft Corporation)
iasacct.dll -> C:\Windows\SysWow64\iasacct.dll -> [2009/06/04 04:47:32 | 00,058,880 | ---- | C | MD5 = 8F29E2E9FA5830317158BB6AE5D2BBA0] (Microsoft Corporation)
iasads.dll -> C:\Windows\SysWow64\iasads.dll -> [2009/06/04 04:47:32 | 00,057,344 | ---- | C | MD5 = 1111EA117266132F5057ED8F35C47ACD] (Microsoft Corporation)
dataclen.dll -> C:\Windows\SysNative\dataclen.dll -> [2009/06/04 04:47:32 | 00,048,640 | ---- | C | MD5 = FC15E96BE5E1B1002C72AD91677E5577] (Microsoft Corporation)
ifmon.dll -> C:\Windows\SysNative\ifmon.dll -> [2009/06/04 04:47:32 | 00,036,352 | ---- | C | MD5 = DD49BE6A0BB0136BBAE9AF0A0BD15F52] (Microsoft Corporation)
mssprxy.dll -> C:\Windows\SysWow64\mssprxy.dll -> [2009/06/04 04:47:32 | 00,033,280 | ---- | C | MD5 = FEA6D21F78922D641A0C9346D885133B] (Microsoft Corporation)
lpk.dll -> C:\Windows\SysWow64\lpk.dll -> [2009/06/04 04:47:32 | 00,023,552 | ---- | C | MD5 = DF37346EA13082E3E1B423B54014E641] (Microsoft Corporation)
tsbyuv.dll -> C:\Windows\SysWow64\tsbyuv.dll -> [2009/06/04 04:47:32 | 00,012,288 | ---- | C | MD5 = 8A057FA5B3C6B982C7D819618770BC2D] (Microsoft Corporation)
icardres.dll -> C:\Windows\SysWow64\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 34B7FA82A85231348C170EF39B636DB4] (Microsoft Corporation)
icardres.dll -> C:\Windows\SysNative\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 2CA500FCA65202221265909F14B0A9AE] (Microsoft Corporation)
accessibilitycpl.dll -> C:\Windows\SysWow64\accessibilitycpl.dll -> [2009/06/04 04:47:31 | 02,515,968 | ---- | C | MD5 = 941486AB385556BF6A62342F8CA15BD8] (Microsoft Corporation)
wlanpref.dll -> C:\Windows\SysWow64\wlanpref.dll -> [2009/06/04 04:47:31 | 01,671,680 | ---- | C | MD5 = 2EC3531A49A6937446259C540EDE4535] (Microsoft Corporation)
connect.dll -> C:\Windows\SysWow64\connect.dll -> [2009/06/04 04:47:31 | 01,645,568 | ---- | C | MD5 = 36509ECC02172D09507A16FAD12C566F] (Microsoft Corporation)
sud.dll -> C:\Windows\SysWow64\sud.dll -> [2009/06/04 04:47:31 | 01,224,192 | ---- | C | MD5 = F9F9E7F0D4EBAC06334C9BF76C9E11B4] (Microsoft Corporation)
usercpl.dll -> C:\Windows\SysWow64\usercpl.dll -> [2009/06/04 04:47:31 | 01,123,840 | ---- | C | MD5 = E3CE1997725EE8E14F7B4A7CD746538E] (Microsoft Corporation)
systemcpl.dll -> C:\Windows\SysWow64\systemcpl.dll -> [2009/06/04 04:47:31 | 00,842,240 | ---- | C | MD5 = 2A7D73202A7299CD35AC6D0D96128B5B] (Microsoft Corporation)
WMVXENCD.DLL -> C:\Windows\SysNative\WMVXENCD.DLL -> [2009/06/04 04:47:31 | 00,622,592 | ---- | C | MD5 = 5413960D8A16697626FED4A1F1508856] (Microsoft Corporation)
themeui.dll -> C:\Windows\SysWow64\themeui.dll -> [2009/06/04 04:47:31 | 00,615,424 | ---- | C | MD5 = 4CF66D8014ECB3BF517E38C5B90AAC74] (Microsoft Corporation)
autoplay.dll -> C:\Windows\SysWow64\autoplay.dll -> [2009/06/04 04:47:31 | 00,516,608 | ---- | C | MD5 = 2AE61DEF9112DA8948EEAB3631FF4525] (Microsoft Corporation)
qdvd.dll -> C:\Windows\SysWow64\qdvd.dll -> [2009/06/04 04:47:31 | 00,497,152 | ---- | C | MD5 = 971F512A83EC50B8A72C8F8BFBF4E5B2] (Microsoft Corporation)
wlangpui.dll -> C:\Windows\SysNative\wlangpui.dll -> [2009/06/04 04:47:31 | 00,489,984 | ---- | C | MD5 = 5C1E2FBBBE6F14FAAFA8AAA20C7E2D71] (Microsoft Corporation)
pcaui.dll -> C:\Windows\SysWow64\pcaui.dll -> [2009/06/04 04:47:31 | 00,464,384 | ---- | C | MD5 = 7E05BE3F599B3F0C46389241C6820C8B] (Microsoft Corporation)
BFE.DLL -> C:\Windows\SysNative\BFE.DLL -> [2009/06/04 04:47:31 | 00,458,240 | ---- | C | MD5 = FFB96C2589FFA60473EAD78B39FBDE29] (Microsoft Corporation)
qdvd.dll -> C:\Windows\SysNative\qdvd.dll -> [2009/06/04 04:47:31 | 00,352,256 | ---- | C | MD5 = 354315DD7C8DF536E7B08E922CB9AA18] (Microsoft Corporation)
thawbrkr.dll -> C:\Windows\SysNative\thawbrkr.dll -> [2009/06/04 04:47:31 | 00,317,440 | ---- | C | MD5 = 4F9D5C5FEC7DCAA32EA82FAC7215D1C3] (Microsoft Corporation)
raschap.dll -> C:\Windows\SysNative\raschap.dll -> [2009/06/04 04:47:31 | 00,295,936 | ---- | C | MD5 = BFDF69526CB6476992540D4C477CC27A] (Microsoft Corporation)
scksp.dll -> C:\Windows\SysNative\scksp.dll -> [2009/06/04 04:47:31 | 00,186,880 | ---- | C | MD5 = 4B2512952CCD6C2C7E610F21E28A5163] (Microsoft Corporation)
authz.dll -> C:\Windows\SysWow64\authz.dll -> [2009/06/04 04:47:31 | 00,079,872 | ---- | C | MD5 = 1AE011BB950A5E0B05023D2AFEC3666D] (Microsoft Corporation)
newdev.exe -> C:\Windows\SysWow64\newdev.exe -> [2009/06/04 04:47:31 | 00,074,752 | ---- | C | MD5 = DD251E13AAAA5F5AF09934759A4E1FC5] (Microsoft Corporation)
wlanhlp.dll -> C:\Windows\SysWow64\wlanhlp.dll -> [2009/06/04 04:47:31 | 00,068,096 | ---- | C | MD5 = 8D544AC1B7AA7FB9DFF0C3E7DA6AD295] (Microsoft Corporation)
samlib.dll -> C:\Windows\SysWow64\samlib.dll -> [2009/06/04 04:47:31 | 00,057,344 | ---- | C | MD5 = 453DE2958C885527E20C79A3FEFE6AF7] (Microsoft Corporation)
mmci.dll -> C:\Windows\SysWow64\mmci.dll -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = CBBFCB6801D0A9F9BD4D477284C86D1C] (Microsoft Corporation)
cmmon32.exe -> C:\Windows\SysNative\cmmon32.exe -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = 900006FA862F2E631168C8F9CFE33AC1] (Microsoft Corporation)
rtutils.dll -> C:\Windows\SysNative\rtutils.dll -> [2009/06/04 04:47:31 | 00,050,688 | ---- | C | MD5 = 5A2008B581F4759CC7A25BBAD9BFD2B7] (Microsoft Corporation)
npfs.sys -> C:\Windows\SysNative\drivers\npfs.sys -> [2009/06/04 04:47:31 | 00,044,544 | ---- | C | MD5 = B298874F8E0EA93F06EC40AA8D146478] (Microsoft Corporation)
iaspolcy.dll -> C:\Windows\SysNative\iaspolcy.dll -> [2009/06/04 04:47:31 | 00,037,888 | ---- | C | MD5 = 559C060F694FCA4FC0A538DD6D7C4489] (Microsoft Corporation)
fc.exe -> C:\Windows\SysNative\fc.exe -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 9382063462441C0D2452A40CFE8CAC43] (Microsoft Corporation)
hidserv.dll -> C:\Windows\SysNative\hidserv.dll -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 59361D38A297755D46A540E450202B2A] (Microsoft Corporation)
kbdhid.sys -> C:\Windows\SysNative\drivers\kbdhid.sys -> [2009/06/04 04:47:31 | 00,022,528 | ---- | C | MD5 = DBDF75D51464FBC47D0104EC3D572C05] (Microsoft Corporation)
wscisvif.dll -> C:\Windows\SysNative\wscisvif.dll -> [2009/06/04 04:47:31 | 00,020,992 | ---- | C | MD5 = EBFA7A306C65010DED108F5A26598642] (Microsoft Corporation)
spwinsat.dll -> C:\Windows\SysNative\spwinsat.dll -> [2009/06/04 04:47:31 | 00,013,824 | ---- | C | MD5 = 1EAE8FB082D759DAD2ED990843E9C0C2] (Microsoft Corporation)
SyncCenter.dll -> C:\Windows\SysNative\SyncCenter.dll -> [2009/06/04 04:47:30 | 02,575,360 | ---- | C | MD5 = E55DE59CD89138BD973602F9F202E84D] (Microsoft Corporation)
WMPEncEn.dll -> C:\Windows\SysNative\WMPEncEn.dll -> [2009/06/04 04:47:30 | 02,043,904 | ---- | C | MD5 = BBEF15F506B97522B918D09A3662F9B0] (Microsoft Corporation)
msftedit.dll -> C:\Windows\SysNative\msftedit.dll -> [2009/06/04 04:47:30 | 00,735,232 | ---- | C | MD5 = 554BD984C71129A8BD4450BE8170695C] (Microsoft Corporation)
msscp.dll -> C:\Windows\SysNative\msscp.dll -> [2009/06/04 04:47:30 | 00,534,528 | ---- | C | MD5 = 1AD1CC73AC29E7139A32B54DBE235635] (Microsoft Corporation)
wpcao.dll -> C:\Windows\SysWow64\wpcao.dll -> [2009/06/04 04:47:30 | 00,532,992 | ---- | C | MD5 = 5D2FDA874FED0D3FEDF41F5961663F3B] (Microsoft Corporation)
msinfo32.exe -> C:\Windows\SysWow64\msinfo32.exe -> [2009/06/04 04:47:30 | 00,408,064 | ---- | C | MD5 = D3D1CE8FF30786D50272DA3085149904] (Microsoft Corporation)
wlanmsm.dll -> C:\Windows\SysNative\wlanmsm.dll -> [2009/06/04 04:47:30 | 00,353,792 | ---- | C | MD5 = DE52345E9E9684205D1AF593DC5B30F4] (Microsoft Corporation)
mscandui.dll -> C:\Windows\SysNative\mscandui.dll -> [2009/06/04 04:47:30 | 00,289,792 | ---- | C | MD5 = FD18A06BA0BF4E535E6DE153C9525960] (Microsoft Corporation)
tapisrv.dll -> C:\Windows\SysWow64\tapisrv.dll -> [2009/06/04 04:47:30 | 00,242,688 | ---- | C | MD5 = D7673E4B38CE21EE54C59EEEB65E2483] (Microsoft Corporation)
fastfat.sys -> C:\Windows\SysNative\drivers\fastfat.sys -> [2009/06/04 04:47:30 | 00,198,144 | ---- | C | MD5 = 1A4BEE34277784619DDAF0422C0C6E23] (Microsoft Corporation)
dsprop.dll -> C:\Windows\SysNative\dsprop.dll -> [2009/06/04 04:47:30 | 00,164,864 | ---- | C | MD5 = FD5AE1C64B86B4BEFEF2691306183E09] (Microsoft Corporation)
scksp.dll -> C:\Windows\SysWow64\scksp.dll -> [2009/06/04 04:47:30 | 00,140,288 | ---- | C | MD5 = 74B514A1FB5742CFB0DDC700D832D166] (Microsoft Corporation)
vdsutil.dll -> C:\Windows\SysWow64\vdsutil.dll -> [2009/06/04 04:47:30 | 00,128,000 | ---- | C | MD5 = FE7742C93F6904A9B08BC6749C039CE9] (Microsoft Corporation)
rpchttp.dll -> C:\Windows\SysWow64\rpchttp.dll -> [2009/06/04 04:47:30 | 00,127,488 | ---- | C | MD5 = 305460BC9F6C2888D291ADCB23FC5AE1] (Microsoft Corporation)
rdpwsx.dll -> C:\Windows\SysNative\rdpwsx.dll -> [2009/06/04 04:47:30 | 00,117,760 | ---- | C | MD5 = 06BEFFD308C5796D3D6FD2FAD267A6C2] (Microsoft Corporation)
pintlgnt.ime -> C:\Windows\SysWow64\pintlgnt.ime -> [2009/06/04 04:47:30 | 00,089,088 | ---- | C | MD5 = 1298AE079E74D8691BF1722CF1E32F67] (Microsoft Corporation)
smss.exe -> C:\Windows\SysNative\smss.exe -> [2009/06/04 04:47:30 | 00,075,264 | ---- | C | MD5 = C17704EA5B0F83D78F1377075FFE1C89] (Microsoft Corporation)
regapi.dll -> C:\Windows\SysWow64\regapi.dll -> [2009/06/04 04:47:30 | 00,067,584 | ---- | C | MD5 = A6250DF429D0D78DACFBC6B87074E584] (Microsoft Corporation)
PnPUnattend.exe -> C:\Windows\SysNative\PnPUnattend.exe -> [2009/06/04 04:47:30 | 00,064,512 | ---- | C | MD5 = 1BC046E369CDF1201AFDA63FBD071630] (Microsoft Corporation)
feclient.dll -> C:\Windows\SysWow64\feclient.dll -> [2009/06/04 04:47:30 | 00,054,272 | ---- | C | MD5 = 965AC9FBF2C67231C157E99C03C58D24] (Microsoft Corporation)
rekeywiz.exe -> C:\Windows\SysNative\rekeywiz.exe -> [2009/06/04 04:47:30 | 00,051,200 | ---- | C | MD5 = 40335F6499E5A2EF9C74B499E5B97F9C] (Microsoft Corporation)
certprop.dll -> C:\Windows\SysNative\certprop.dll -> [2009/06/04 04:47:30 | 00,049,664 | ---- | C | MD5 = 5A268127633C7EE2A7FB87F39D748D56] (Microsoft Corporation)
msimtf.dll -> C:\Windows\SysNative\msimtf.dll -> [2009/06/04 04:47:30 | 00,041,472 | ---- | C | MD5 = 84F9BAD395DADAFA8E46BE7946B18ECD] (Microsoft Corporation)
printfilterpipelineprxy.dll -> C:\Windows\SysNative\printfilterpipelineprxy.dll -> [2009/06/04 04:47:30 | 00,035,840 | ---- | C | MD5 = 7D58ED6F0A190ACA4043C4BD0A14B94E] (Microsoft Corporation)
wscui.cpl -> C:\Windows\SysNative\wscui.cpl -> [2009/06/04 04:47:29 | 01,738,752 | ---- | C | MD5 = 2A81DBACEF86D5698880BE8C0035F5A2] (Microsoft Corporation)
wscui.cpl -> C:\Windows\SysWow64\wscui.cpl -> [2009/06/04 04:47:29 | 01,689,600 | ---- | C | MD5 = 62C92BE2414AC9D0BC0196CA52D2CD2B] (Microsoft Corporation)
WMPEncEn.dll -> C:\Windows\SysWow64\WMPEncEn.dll -> [2009/06/04 04:47:29 | 01,642,496 | ---- | C | MD5 = 52C8CD06900B5B9FC4EF5C880D5AD9CB] (Microsoft Corporation)
mmsys.cpl -> C:\Windows\SysWow64\mmsys.cpl -> [2009/06/04 04:47:29 | 01,102,848 | ---- | C | MD5 = 69405254E704895F4F519422818D35B6] (Microsoft Corporation)
FWPUCLNT.DLL -> C:\Windows\SysNative\FWPUCLNT.DLL -> [2009/06/04 04:47:29 | 00,779,776 | ---- | C | MD5 = 7972615E382EF39785FD45F136F64D8C] (Microsoft Corporation)
wiaaut.dll -> C:\Windows\SysNative\wiaaut.dll -> [2009/06/04 04:47:29 | 00,669,184 | ---- | C | MD5 = 4309F5CDE2396B8B1649633186F48A8F] (Microsoft Corporation)
wmpeffects.dll -> C:\Windows\SysNative\wmpeffects.dll -> [2009/06/04 04:47:29 | 00,557,056 | ---- | C | MD5 = 903D3F4BD98DF8023B764AD677126C9F] (Microsoft Corporation)
qedit.dll -> C:\Windows\SysWow64\qedit.dll -> [2009/06/04 04:47:29 | 00,505,344 | ---- | C | MD5 = 8F960A1A3D9A7B829FD9DCE2689030F6] (Microsoft Corporation)
ncryptui.dll -> C:\Windows\SysWow64\ncryptui.dll -> [2009/06/04 04:47:29 | 00,445,952 | ---- | C | MD5 = 29215EAF81447CB95F82FDE671751330] (Microsoft Corporation)
winhttp.dll -> C:\Windows\SysNative\winhttp.dll -> [2009/06/04 04:47:29 | 00,439,808 | ---- | C | MD5 = 780473D0EEB23D40F1EEE69A70719399] (Microsoft Corporation)
dpapimig.exe -> C:\Windows\SysWow64\dpapimig.exe -> [2009/06/04 04:47:29 | 00,407,040 | ---- | C | MD5 = 29B84718CDCBCA66A47B64AA2B02318F] (Microsoft Corporation)
unimdm.tsp -> C:\Windows\SysNative\unimdm.tsp -> [2009/06/04 04:47:29 | 00,320,000 | ---- | C | MD5 = 8139F933EF1559D4E7187E48F93EA136] (Microsoft Corporation)
AUDIOKSE.dll -> C:\Windows\SysNative\AUDIOKSE.dll -> [2009/06/04 04:47:29 | 00,313,856 | ---- | C | MD5 = E08935E54CEE225BEB3CC220CBCC734A] (Microsoft Corporation)
scesrv.dll -> C:\Windows\SysWow64\scesrv.dll -> [2009/06/04 04:47:29 | 00,306,176 | ---- | C | MD5 = D90911B3FA05D7B930C1286084B404DE] (Microsoft Corporation)
psisdecd.dll -> C:\Windows\SysWow64\psisdecd.dll -> [2009/06/04 04:47:29 | 00,293,376 | ---- | C | MD5 = 16628EE6CDFDA509820509D7E65F3F62] (Microsoft Corporation)
certreq.exe -> C:\Windows\SysWow64\certreq.exe -> [2009/06/04 04:47:29 | 00,215,552 | ---- | C | MD5 = 56C182F55BF68556C974E9AD32BF56BF] (Microsoft Corporation)
fontext.dll -> C:\Windows\SysNative\fontext.dll -> [2009/06/04 04:47:29 | 00,163,328 | ---- | C | MD5 = 0C8E0E7E708BDE406315F3C1A653B0E3] (Microsoft Corporation)
Faultrep.dll -> C:\Windows\SysWow64\Faultrep.dll -> [2009/06/04 04:47:29 | 00,147,456 | ---- | C | MD5 = 77784A2BD5912A4EC6284255865526BC] (Microsoft Corporation)
AudioSes.dll -> C:\Windows\SysWow64\AudioSes.dll -> [2009/06/04 04:47:29 | 00,115,712 | ---- | C | MD5 = 7258434974EA735725FD2D4A65C5E821] (Microsoft Corporation)
oleprn.dll -> C:\Windows\SysWow64\oleprn.dll -> [2009/06/04 04:47:29 | 00,097,792 | ---- | C | MD5 = 23E10EC351836F14606CCCFF5C6CF292] (Microsoft Corporation)
dot3msm.dll -> C:\Windows\SysNative\dot3msm.dll -> [2009/06/04 04:47:29 | 00,092,160 | ---- | C | MD5 = 1F97A9910F45BA77802DE68D35BD2829] (Microsoft Corporation)
hdwwiz.exe -> C:\Windows\SysWow64\hdwwiz.exe -> [2009/06/04 04:47:29 | 00,080,384 | ---- | C | MD5 = 1BAF5FE4C31D20CF805B2FA7A7C2B886] (Microsoft Corporation)
dot3msm.dll -> C:\Windows\SysWow64\dot3msm.dll -> [2009/06/04 04:47:29 | 00,075,264 | ---- | C | MD5 = 7366AB74CF8489749AC4CBFBAEE9F9E2] (Microsoft Corporation)
mpr.dll -> C:\Windows\SysWow64\mpr.dll -> [2009/06/04 04:47:29 | 00,068,608 | ---- | C | MD5 = 1F94EA31C9543B855F53BDAC7792DA4E] (Microsoft Corporation)
rekeywiz.exe -> C:\Windows\SysWow64\rekeywiz.exe -> [2009/06/04 04:47:29 | 00,043,520 | ---- | C | MD5 = 79DB32BA1FED01EC05A5D5158CF1A279] (Microsoft Corporation)
iaspolcy.dll -> C:\Windows\SysWow64\iaspolcy.dll -> [2009/06/04 04:47:29 | 00,033,792 | ---- | C | MD5 = 97C89AA7146D73B387AADAA11D8B56F1] (Microsoft Corporation)
whealogr.dll -> C:\Windows\SysNative\whealogr.dll -> [2009/06/04 04:47:29 | 00,033,280 | ---- | C | MD5 = F937669EAA18DF36D4ECDE87FE011152] (Microsoft Corporation)
perfdisk.dll -> C:\Windows\SysWow64\perfdisk.dll -> [2009/06/04 04:47:29 | 00,031,744 | ---- | C | MD5 = 9104EDD1D3BF91AD079A73FBB515E492] (Microsoft Corporation)
wsdchngr.dll -> C:\Windows\SysNative\wsdchngr.dll -> [2009/06/04 04:47:29 | 00,025,600 | ---- | C | MD5 = 8E10B36901325C1ABE28E71FB8E437D9] (Microsoft Corporation)
wscisvif.dll -> C:\Windows\SysWow64\wscisvif.dll -> [2009/06/04 04:47:29 | 00,017,920 | ---- | C | MD5 = D0A95E567224B4C347CBDD6541E5D928] (Microsoft Corporation)
spcinstrumentation.man -> C:\Windows\SysWow64\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
spcinstrumentation.man -> C:\Windows\SysNative\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
netshell.dll -> C:\Windows\SysNative\netshell.dll -> [2009/06/04 04:47:28 | 03,341,312 | ---- | C | MD5 = AA6FAA30D3D0D4424DBA3D74D1CA1E14] (Microsoft Corporation)
MSMPEG2ENC.DLL -> C:\Windows\SysNative\MSMPEG2ENC.DLL -> [2009/06/04 04:47:28 | 00,644,608 | ---- | C | MD5 = 68C35C27C32BDAFAF6E8705B839E9A45] (Microsoft Corporation)
rasgcw.dll -> C:\Windows\SysWow64\rasgcw.dll -> [2009/06/04 04:47:28 | 00,642,560 | ---- | C | MD5 = 94B67798159ACB26D7104E55903B6FEF] (Microsoft Corporation)
FWPUCLNT.DLL -> C:\Windows\SysWow64\FWPUCLNT.DLL -> [2009/06/04 04:47:28 | 00,595,456 | ---- | C | MD5 = B0D12F4344EB2AE96E487D2DF6F74413] (Microsoft Corporation)
wmdrmdev.dll -> C:\Windows\SysNative\wmdrmdev.dll -> [2009/06/04 04:47:28 | 00,539,136 | ---- | C | MD5 = 9E703EC2E91C9071D75E34F1A7327ECA] (Microsoft Corporation)
rasplap.dll -> C:\Windows\SysWow64\rasplap.dll -> [2009/06/04 04:47:28 | 00,376,832 | ---- | C | MD5 = 9DC3723519F52B6BC63EACD4BD411313] (Microsoft Corporation)
drmmgrtn.dll -> C:\Windows\SysNative\drmmgrtn.dll -> [2009/06/04 04:47:28 | 00,365,568 | ---- | C | MD5 = 482F86F951A6A884F8A4361A67260FE8] (Microsoft Corporation)
certreq.exe -> C:\Windows\SysNative\certreq.exe -> [2009/06/04 04:47:28 | 00,259,072 | ---- | C | MD5 = C8C33F31398217BC62D0B12FF456BB7D] (Microsoft Corporation)
msutb.dll -> C:\Windows\SysNative\msutb.dll -> [2009/06/04 04:47:28 | 00,227,840 | ---- | C | MD5 = AD27B41DA928C0338E6F364BE928D3F7] (Microsoft Corporation)
msnetobj.dll -> C:\Windows\SysNative\msnetobj.dll -> [2009/06/04 04:47:28 | 00,221,696 | ---- | C | MD5 = BAB9E1E8D5C9DEFDCCC5736CC1FEC38B] (Microsoft Corporation)
wlanui.dll -> C:\Windows\SysNative\wlanui.dll -> [2009/06/04 04:47:28 | 00,218,624 | ---- | C | MD5 = 808F32604D3A77A113C768380A1F61F8] (Microsoft Corporation)
rdpwd.sys -> C:\Windows\SysNative\drivers\rdpwd.sys -> [2009/06/04 04:47:28 | 00,209,920 | ---- | C | MD5 = B1D741C87CEA8D7282146366CC9C3F81] (Microsoft Corporation)
netplwiz.dll -> C:\Windows\SysNative\netplwiz.dll -> [2009/06/04 04:47:28 | 00,197,632 | ---- | C | MD5 = 55F61E2EBBAC854879B2016F2383BC83] (Microsoft Corporation)
scecli.dll -> C:\Windows\SysWow64\scecli.dll -> [2009/06/04 04:47:28 | 00,177,152 | ---- | C | MD5 = 8FC182167381E9915651267044105EE1] (Microsoft Corporation)
SndVol.exe -> C:\Windows\SysNative\SndVol.exe -> [2009/06/04 04:47:28 | 00,172,032 | ---- | C | MD5 = 7A31C805A372EB80D84C5562481F82F7] (Microsoft Corporation)
tcpipcfg.dll -> C:\Windows\SysWow64\tcpipcfg.dll -> [2009/06/04 04:47:28 | 00,170,496 | ---- | C | MD5 = E4060CFE50F87C72316CB0FDB20E4913] (Microsoft Corporation)
rmcast.sys -> C:\Windows\SysNative\drivers\rmcast.sys -> [2009/06/04 04:47:28 | 00,140,288 | ---- | C | MD5 = F913517BB2F3A73EC6B9B65E5DC7B420] (Microsoft Corporation)
tcpmon.dll -> C:\Windows\SysWow64\tcpmon.dll -> [2009/06/04 04:47:28 | 00,135,168 | ---- | C | MD5 = BB0EB921877A1A7EF15AE2D97A71CBA9] (Microsoft Corporation)
SmartcardCredentialProvider.dll -> C:\Windows\SysWow64\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:28 | 00,134,656 | ---- | C | MD5 = B25DBBA6C63A61FF4AFDB5ADAB4E70CB] (Microsoft Corporation)
shsetup.dll -> C:\Windows\SysNative\shsetup.dll -> [2009/06/04 04:47:28 | 00,121,856 | ---- | C | MD5 = 25467BCC0718C01F3A96C85468B19334] (Microsoft Corporation)
MSNP.ax -> C:\Windows\SysNative\MSNP.ax -> [2009/06/04 04:47:28 | 00,101,376 | ---- | C | MD5 = 3C4D4C68A9D63F01AF18B6ECC7274B8A] (Microsoft Corporation)
conime.exe -> C:\Windows\SysNative\conime.exe -> [2009/06/04 04:47:28 | 00,086,528 | ---- | C | MD5 = 00E1D5F656B13C00CC31CEB6B43C1D69] (Microsoft Corporation)
fdWSD.dll -> C:\Windows\SysWow64\fdWSD.dll -> [2009/06/04 04:47:28 | 00,067,072 | ---- | C | MD5 = 4BAEC13BCAA595639EBB5185278DEFEA] (Microsoft Corporation)
dimsroam.dll -> C:\Windows\SysNative\dimsroam.dll -> [2009/06/04 04:47:28 | 00,064,512 | ---- | C | MD5 = 69CD3A812AF2187751F99FDD86E8EE50] (Microsoft Corporation)
cmmon32.exe -> C:\Windows\SysWow64\cmmon32.exe -> [2009/06/04 04:47:28 | 00,049,152 | ---- | C | MD5 = 86497C6A9825B6252804D5C4E189AA67] (Microsoft Corporation)
tcpipreg.sys -> C:\Windows\SysNative\drivers\tcpipreg.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = FF0C49DB68D4F451343EF06ABAEA3DC9] (Microsoft Corporation)
watchdog.sys -> C:\Windows\SysNative\drivers\watchdog.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = 2F956EA22FCCE4C9F15C64175C891A1E] (Microsoft Corporation)
TSTheme.exe -> C:\Windows\SysWow64\TSTheme.exe -> [2009/06/04 04:47:28 | 00,038,400 | ---- | C | MD5 = 1904DBA08C2D63CE2025CAD78F5DF2BB] (Microsoft Corporation)
PnPutil.exe -> C:\Windows\SysNative\PnPutil.exe -> [2009/06/04 04:47:28 | 00,036,864 | ---- | C | MD5 = 96C9A012901B35AAC91360D8698929C3] (Microsoft Corporation)
uxsms.dll -> C:\Windows\SysNative\uxsms.dll -> [2009/06/04 04:47:28 | 00,032,768 | ---- | C | MD5 = D76E231E4850BB3F88A3D9A78DF191E3] (Microsoft Corporation)
USBCAMD2.sys -> C:\Windows\SysNative\drivers\USBCAMD2.sys -> [2009/06/04 04:47:28 | 00,032,640 | ---- | C | MD5 = D46BDF1C810138E2D3B985FA3A7AB05E] (Microsoft Corporation)
whealogr.dll -> C:\Windows\SysWow64\whealogr.dll -> [2009/06/04 04:47:28 | 00,031,232 | ---- | C | MD5 = 72F1789EBA824BB977DB83B0A0B57B26] (Microsoft Corporation)
spwinsat.dll -> C:\Windows\SysWow64\spwinsat.dll -> [2009/06/04 04:47:28 | 00,011,776 | ---- | C | MD5 = DEAD790AF988C4C70B6371FC02AA9104] (Microsoft Corporation)
MSVidCtl.dll -> C:\Windows\SysNative\MSVidCtl.dll -> [2009/06/04 04:47:27 | 02,535,424 | ---- | C | MD5 = 5448FF8A9527E46C85B48801254C5C24] (Microsoft Corporation)
oobefldr.dll -> C:\Windows\SysNative\oobefldr.dll -> [2009/06/04 04:47:27 | 02,438,656 | ---- | C | MD5 = 8E29B921BC400F51276F781C4CFB87F6] (Microsoft Corporation)
oobefldr.dll -> C:\Windows\SysWow64\oobefldr.dll -> [2009/06/04 04:47:27 | 02,153,472 | ---- | C | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
WMVDECOD.DLL -> C:\Windows\SysNative\WMVDECOD.DLL -> [2009/06/04 04:47:27 | 01,702,912 | ---- | C | MD5 = 3568FCAB1FC248397EF81231D53F598C] (Microsoft Corporation)
MSVidCtl.dll -> C:\Windows\SysWow64\MSVidCtl.dll -> [2009/06/04 04:47:27 | 01,544,704 | ---- | C | MD5 = 73F97C8899429EFAEE8C8944DCC08C2E] (Microsoft Corporation)
wmdrmsdk.dll -> C:\Windows\SysNative\wmdrmsdk.dll -> [2009/06/04 04:47:27 | 00,688,128 | ---- | C | MD5 = A949AA49376F8CB91D19EA8A7ADC94D4] (Microsoft Corporation)
WMVXENCD.DLL -> C:\Windows\SysWow64\WMVXENCD.DLL -> [2009/06/04 04:47:27 | 00,657,408 | ---- | C | MD5 = EABB7AF39A6587B57AA70EFD8ECD2661] (Microsoft Corporation)
blackbox.dll -> C:\Windows\SysNative\blackbox.dll -> [2009/06/04 04:47:27 | 00,616,448 | ---- | C | MD5 = 89CA6D83DCB5D41FBF4D23BE5343F8A8] (Microsoft Corporation)
wiaaut.dll -> C:\Windows\SysWow64\wiaaut.dll -> [2009/06/04 04:47:27 | 00,547,840 | ---- | C | MD5 = 6E45D15DAAA98D105AB3280D2BCA7C13] (Microsoft Corporation)
cmdial32.dll -> C:\Windows\SysNative\cmdial32.dll -> [2009/06/04 04:47:27 | 00,521,216 | ---- | C | MD5 = 32AC6D36688923ECAE89B438BEFD6DB2] (Microsoft Corporation)
cmdial32.dll -> C:\Windows\SysWow64\cmdial32.dll -> [2009/06/04 04:47:27 | 00,481,792 | ---- | C | MD5 = 72EC7D98F26B962414899C83F20A9442] (Microsoft Corporation)
shwebsvc.dll -> C:\Windows\SysWow64\shwebsvc.dll -> [2009/06/04 04:47:27 | 00,425,472 | ---- | C | MD5 = 3F1B146BBB4F11E26543938F42257B86] (Microsoft Corporation)
taskcomp.dll -> C:\Windows\SysNative\taskcomp.dll -> [2009/06/04 04:47:27 | 00,409,600 | ---- | C | MD5 = 065A9580FA32807EB895EE4D512FEC1D] (Microsoft Corporation)
wlanmsm.dll -> C:\Windows\SysWow64\wlanmsm.dll -> [2009/06/04 04:47:27 | 00,293,376 | ---- | C | MD5 = 9D7C0037F4EFA36C35F7B5A48940B4F4] (Microsoft Corporation)
raschap.dll -> C:\Windows\SysWow64\raschap.dll -> [2009/06/04 04:47:27 | 00,281,088 | ---- | C | MD5 = 82A79D5BE740D0AE9C91AA6DE4B3AC5A] (Microsoft Corporation)
unimdm.tsp -> C:\Windows\SysWow64\unimdm.tsp -> [2009/06/04 04:47:27 | 00,280,064 | ---- | C | MD5 = B96B60EC821F86D445C9739A0F3DED59] (Microsoft Corporation)
rasppp.dll -> C:\Windows\SysWow64\rasppp.dll -> [2009/06/04 04:47:27 | 00,259,584 | ---- | C | MD5 = 8B645890A93F1FBBC7DA3E07CC72D762] (Microsoft Corporation)
wlanui.dll -> C:\Windows\SysWow64\wlanui.dll -> [2009/06/04 04:47:27 | 00,202,752 | ---- | C | MD5 = 94FF7D87E0639701DF79A40C436149C5] (Microsoft Corporation)
nwifi.sys -> C:\Windows\SysNative\drivers\nwifi.sys -> [2009/06/04 04:47:27 | 00,187,392 | ---- | C | MD5 = 2007B826C4ACD94AE32232B41F0842B9] (Microsoft Corporation)
wdmaud.drv -> C:\Windows\SysWow64\wdmaud.drv -> [2009/06/04 04:47:27 | 00,167,424 | ---- | C | MD5 = 4DF066ECEE5A7B20BF8B39EF4D646600] (Microsoft Corporation)
fontext.dll -> C:\Windows\SysWow64\fontext.dll -> [2009/06/04 04:47:27 | 00,142,336 | ---- | C | MD5 = 88198AEB7F71DD2F8B6176533D70F63E] (Microsoft Corporation)
WMADMOD.DLL -> C:\Windows\SysNative\WMADMOD.DLL -> [2009/06/04 04:47:25 | 00,946,176 | ---- | C | MD5 = 51031E18169332575721D7B7A6E5EE52] (Microsoft Corporation)
wmdrmnet.dll -> C:\Windows\SysNative\wmdrmnet.dll -> [2009/06/04 04:47:25 | 00,428,032 | ---- | C | MD5 = 991C17B9FA553A2F474142CD68312974] (Microsoft Corporation)
msscp.dll -> C:\Windows\SysWow64\msscp.dll -> [2009/06/04 04:47:25 | 00,414,208 | ---- | C | MD5 = 501F9CDADC4BF4069BC90B3C2BB298AE] (Microsoft Corporation)
thawbrkr.dll -> C:\Windows\SysWow64\thawbrkr.dll -> [2009/06/04 04:47:25 | 00,313,344 | ---- | C | MD5 = 1D74B130D34A945CA5795C92C1BF8E93] (Microsoft Corporation)
wmpeffects.dll -> C:\Windows\SysWow64\wmpeffects.dll -> [2009/06/04 04:47:25 | 00,303,616 | ---- | C | MD5 = 3F7572CD9C6DB0B25FE0863F36FF6B76] (Microsoft Corporation)
AUDIOKSE.dll -> C:\Windows\SysWow64\AUDIOKSE.dll -> [2009/06/04 04:47:25 | 00,274,944 | ---- | C | MD5 = 0495EEF29F5B39AB4763BF5DE28FA3AA] (Microsoft Corporation)
mstask.dll -> C:\Windows\SysNative\mstask.dll -> [2009/06/04 04:47:25 | 00,235,008 | ---- | C | MD5 = F54D10EA2FE5EC846603A4CABDD6F235] (Microsoft Corporation)
mpg2splt.ax -> C:\Windows\SysNative\mpg2splt.ax -> [2009/06/04 04:47:25 | 00,227,328 | ---- | C | MD5 = 28AC7FEA182333C38AB9322530B591F3] (Microsoft Corporation)
wpdwcn.dll -> C:\Windows\SysNative\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,223,232 | ---- | C | MD5 = CB57138FA7554ABCEA9F8307253A632C] (Microsoft Corporation)
InkEd.dll -> C:\Windows\SysWow64\InkEd.dll -> [2009/06/04 04:47:25 | 00,217,600 | ---- | C | MD5 = D2A8D0EE4EEAAE913A19AC37E2CD07ED] (Microsoft Corporation)
mdminst.dll -> C:\Windows\SysNative\mdminst.dll -> [2009/06/04 04:47:25 | 00,215,552 | ---- | C | MD5 = 0257570C58B4F482AC65B87B1D9E7FBA] (Microsoft Corporation)
PortableDeviceTypes.dll -> C:\Windows\SysNative\PortableDeviceTypes.dll -> [2009/06/04 04:47:25 | 00,214,528 | ---- | C | MD5 = 7326B6CA36F40384EF4817DDA09344CF] (Microsoft Corporation)
wpdwcn.dll -> C:\Windows\SysWow64\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,203,776 | ---- | C | MD5 = 5D9C083A316B1FEE442E9B3505C357E5] (Microsoft Corporation)
credui.dll -> C:\Windows\SysNative\credui.dll -> [2009/06/04 04:47:25 | 00,190,976 | ---- | C | MD5 = 77C276A0E431203EE56E52600A2575EA] (Microsoft Corporation)
WSDMon.dll -> C:\Windows\SysWow64\WSDMon.dll -> [2009/06/04 04:47:25 | 00,177,664 | ---- | C | MD5 = 0EB1CC5EBFCAAB7DBAEE881E2887F7F9] (Microsoft Corporation)
wpcsvc.dll -> C:\Windows\SysWow64\wpcsvc.dll -> [2009/06/04 04:47:25 | 00,140,288 | ---- | C | MD5 = CFC5A04558F5070CEE3E3A7809F3FF52] (Microsoft Corporation)
gpresult.exe -> C:\Windows\SysWow64\gpresult.exe -> [2009/06/04 04:47:25 | 00,128,000 | ---- | C | MD5 = F01C34454A2DBA34439C2FB2B6CDDB9A] (Microsoft Corporation)
softkbd.dll -> C:\Windows\SysWow64\softkbd.dll -> [2009/06/04 04:47:25 | 00,125,952 | ---- | C | MD5 = 39351FB421C6450FBDDB51B4FBA0155D] (Microsoft Corporation)
msctfui.dll -> C:\Windows\SysNative\msctfui.dll -> [2009/06/04 04:47:25 | 00,113,664 | ---- | C | MD5 = 724B0A07CD1B32E90A770CD94ADDFA03] (Microsoft Corporation)
logagent.exe -> C:\Windows\SysNative\logagent.exe -> [2009/06/04 04:47:25 | 00,112,640 | ---- | C | MD5 = 3CADC3DB8333B2162CA0CC8EF8062D75] (Microsoft Corporation)
adsmsext.dll -> C:\Windows\SysNative\adsmsext.dll -> [2009/06/04 04:47:25 | 00,105,472 | ---- | C | MD5 = C6E7B39C1AB4B8DC6883EFC72A770BED] (Microsoft Corporation)
logagent.exe -> C:\Windows\SysWow64\logagent.exe -> [2009/06/04 04:47:25 | 00,094,720 | ---- | C | MD5 = C634E1F76E1FCA6D010F279A2FFF95E6] (Microsoft Corporation)
sendmail.dll -> C:\Windows\SysWow64\sendmail.dll -> [2009/06/04 04:47:25 | 00,069,632 | ---- | C | MD5 = ED3CA4BCB1F7C14B369019BEC6A4448D] (Microsoft Corporation)
cipher.exe -> C:\Windows\SysWow64\cipher.exe -> [2009/06/04 04:47:25 | 00,058,368 | ---- | C | MD5 = 9E447B628CBF81F006218E7B6127B7E2] (Microsoft Corporation)
cdd.dll -> C:\Windows\SysNative\cdd.dll -> [2009/06/04 04:47:25 | 00,047,104 | ---- | C | MD5 = 40D8CB1E16C541327FFFFA3F756A3656] (Microsoft Corporation)
deskmon.dll -> C:\Windows\SysNative\deskmon.dll -> [2009/06/04 04:47:25 | 00,046,592 | ---- | C | MD5 = 5070DA479999F0525FA2BBB3160E76D1] (Microsoft Corporation)
wscapi.dll -> C:\Windows\SysWow64\wscapi.dll -> [2009/06/04 04:47:25 | 00,033,280 | ---- | C | MD5 = A0F4852A5DB9754BEC06F84B400AE743] (Microsoft Corporation)
msimtf.dll -> C:\Windows\SysWow64\msimtf.dll -> [2009/06/04 04:47:25 | 00,031,232 | ---- | C | MD5 = AC6B8F8058EE27932F9AF8A2D959D201] (Microsoft Corporation)
ifmon.dll -> C:\Windows\SysWow64\ifmon.dll -> [2009/06/04 04:47:25 | 00,029,696 | ---- | C | MD5 = 17CBA378C42E4525A3BC9DDD77EF5DD2] (Microsoft Corporation)
version.dll -> C:\Windows\SysNative\version.dll -> [2009/06/04 04:47:25 | 00,027,136 | ---- | C | MD5 = EA3D2B63BA304EB6EDABBAFA21599B47] (Microsoft Corporation)
WMSPDMOD.DLL -> C:\Windows\SysNative\WMSPDMOD.DLL -> [2009/06/04 04:47:24 | 00,818,688 | ---- | C | MD5 = 5B3949DE5697E40FC3CA7084649E7F88] (Microsoft Corporation)
wmdrmdev.dll -> C:\Windows\SysWow64\wmdrmdev.dll -> [2009/06/04 04:47:24 | 00,418,304 | ---- | C | MD5 = 717F6AD9E35383E2AA5C6B946AAD23AF] (Microsoft Corporation)
MediaMetadataHandler.dll -> C:\Windows\SysNative\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,403,456 | ---- | C | MD5 = A037DCD348601056CF65E701D4D60738] (Microsoft Corporation)
MediaMetadataHandler.dll -> C:\Windows\SysWow64\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,356,864 | ---- | C | MD5 = 8DDFDF8A433DC09F92ACA1F3DE4DE067] (Microsoft Corporation)
drmmgrtn.dll -> C:\Windows\SysWow64\drmmgrtn.dll -> [2009/06/04 04:47:24 | 00,284,672 | ---- | C | MD5 = D01817B15EFF45054FC24D63AD183F72] (Microsoft Corporation)
WSDMon.dll -> C:\Windows\SysNative\WSDMon.dll -> [2009/06/04 04:47:24 | 00,214,016 | ---- | C | MD5 = DE0EED5106BD03CE11CDBF690285FE6C] (Microsoft Corporation)
input.dll -> C:\Windows\SysWow64\input.dll -> [2009/06/04 04:47:24 | 00,200,704 | ---- | C | MD5 = A763901E05BBF173CE4C01D1E82B20D3] (Microsoft Corporation)
MSAC3ENC.DLL -> C:\Windows\SysNative\MSAC3ENC.DLL -> [2009/06/04 04:47:24 | 00,193,536 | ---- | C | MD5 = ECF31DDAF1F479889671C1C8A376EBDA] (Microsoft Corporation)
mpg2splt.ax -> C:\Windows\SysWow64\mpg2splt.ax -> [2009/06/04 04:47:24 | 00,177,664 | ---- | C | MD5 = 5AF065566779B0D716EA413816B73AD4] (Microsoft Corporation)
puiapi.dll -> C:\Windows\SysWow64\puiapi.dll -> [2009/06/04 04:47:24 | 00,166,400 | ---- | C | MD5 = D1F4E028FDC4F8BACB94E07B44969C4E] (Microsoft Corporation)
mprapi.dll -> C:\Windows\SysNative\mprapi.dll -> [2009/06/04 04:47:24 | 00,129,536 | ---- | C | MD5 = F77B49A32331FA80F11C86877A6700DB] (Microsoft Corporation)
SMBHelperClass.dll -> C:\Windows\SysNative\SMBHelperClass.dll -> [2009/06/04 04:47:24 | 00,116,736 | ---- | C | MD5 = 7168FF41C6B0145D846AECE996220A9E] (Microsoft)
dmsynth.dll -> C:\Windows\SysWow64\dmsynth.dll -> [2009/06/04 04:47:24 | 00,105,472 | ---- | C | MD5 = 8527C6F8DFF8CD9502FC4688CCBAEF77] (Microsoft Corporation)
mprapi.dll -> C:\Windows\SysWow64\mprapi.dll -> [2009/06/04 04:47:24 | 00,097,792 | ---- | C | MD5 = 56E315ACFB08A177B4D01E42B9044DB5] (Microsoft Corporation)
olepro32.dll -> C:\Windows\SysWow64\olepro32.dll -> [2009/06/04 04:47:24 | 00,088,576 | ---- | C | MD5 = A944A73CEC5921B871542FE5CC5E03E4] (Microsoft Corporation)
smb.sys -> C:\Windows\SysNative\drivers\smb.sys -> [2009/06/04 04:47:24 | 00,088,064 | ---- | C | MD5 = 290B6F6A0EC4FCDFC90F5CB6D7020473] (Microsoft Corporation)
msctfui.dll -> C:\Windows\SysWow64\msctfui.dll -> [2009/06/04 04:47:24 | 00,085,504 | ---- | C | MD5 = 7570C39D5CA95CFF5E3D49789A347542] (Microsoft Corporation)
fdSSDP.dll -> C:\Windows\SysNative\fdSSDP.dll -> [2009/06/04 04:47:24 | 00,083,968 | ---- | C | MD5 = DDCDE414B6DB14707DBD504EB23EF13E] (Microsoft Corporation)
rshx32.dll -> C:\Windows\SysNative\rshx32.dll -> [2009/06/04 04:47:24 | 00,053,760 | ---- | C | MD5 = 6F7B7F50E25C99E7AFA466565920DC36] (Microsoft Corporation)
FwRemoteSvr.dll -> C:\Windows\SysNative\FwRemoteSvr.dll -> [2009/06/04 04:47:24 | 00,050,176 | ---- | C | MD5 = 14DC30962660BA05F1F54EB11AA5A2B4] (Microsoft Corporation)
deskadp.dll -> C:\Windows\SysNative\deskadp.dll -> [2009/06/04 04:47:24 | 00,049,664 | ---- | C | MD5 = 0ADC37AC189C7DE1EF753AA89B23AF5B] (Microsoft Corporation)
wshbth.dll -> C:\Windows\SysWow64\wshbth.dll -> [2009/06/04 04:47:24 | 00,034,304 | ---- | C | MD5 = EFA80360111D8D179E39E314A49C9ED4] (Microsoft Corporation)
cscdll.dll -> C:\Windows\SysNative\cscdll.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 884C24919B57C1B03B21DD62399D1491] (Microsoft Corporation)
Apphlpdm.dll -> C:\Windows\SysWow64\Apphlpdm.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 2C4AC5541ADB54DEF9244F87F9AD6AF8] (Microsoft Corporation)
ExplorerFrame.dll -> C:\Windows\SysWow64\ExplorerFrame.dll -> [2009/06/04 04:47:24 | 00,020,992 | ---- | C | MD5 = 61216539E55DDF2F78E421E7EF140650] (Microsoft Corporation)
version.dll -> C:\Windows\SysWow64\version.dll -> [2009/06/04 04:47:24 | 00,020,480 | ---- | C | MD5 = 69827805A221C21450BA22F4326A2EE3] (Microsoft Corporation)
fc.exe -> C:\Windows\SysWow64\fc.exe -> [2009/06/04 04:47:24 | 00,019,968 | ---- | C | MD5 = 3105CFE0ADAAED21148597001478E89F] (Microsoft Corporation)
rasdial.exe -> C:\Windows\SysNative\rasdial.exe -> [2009/06/04 04:47:24 | 00,018,944 | ---- | C | MD5 = 7C2E6D36766468987CDA22A2C499A8A5] (Microsoft Corporation)
msisip.dll -> C:\Windows\SysWow64\msisip.dll -> [2009/06/04 04:47:24 | 00,016,384 | ---- | C | MD5 = 2955A48BE10FD1F7A112B0A890A6271D] (Microsoft Corporation)
hidusb.sys -> C:\Windows\SysNative\drivers\hidusb.sys -> [2009/06/04 04:47:24 | 00,015,872 | ---- | C | MD5 = 443BDD2D30BB4F00795C797E2CF99EDF] (Microsoft Corporation)
networkexplorer.dll -> C:\Windows\SysNative\networkexplorer.dll -> [2009/06/04 04:47:23 | 02,247,168 | ---- | C | MD5 = E572915DB4DAD7F062D99334D9F10BFF] (Microsoft Corporation)
WMADMOD.DLL -> C:\Windows\SysWow64\WMADMOD.DLL -> [2009/06/04 04:47:23 | 00,758,784 | ---- | C | MD5 = D3679C1B53E4E1BF9B99AFB0FD3966B1] (Microsoft Corporation)
wmpps.dll -> C:\Windows\SysNative\wmpps.dll -> [2009/06/04 04:47:23 | 00,434,176 | ---- | C | MD5 = 6B80D55576B222FDF6F8407D6237EFC6] (Microsoft Corporation)
wmdrmnet.dll -> C:\Windows\SysWow64\wmdrmnet.dll -> [2009/06/04 04:47:23 | 00,347,648 | ---- | C | MD5 = A8D2C8BE9C499266A485264FD55819FF] (Microsoft Corporation)
eapp3hst.dll -> C:\Windows\SysNative\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,291,840 | ---- | C | MD5 = 05ECDC5250F707C729BB5D3B08285EA6] (Microsoft Corporation)
wscntfy.dll -> C:\Windows\SysNative\wscntfy.dll -> [2009/06/04 04:47:23 | 00,231,424 | ---- | C | MD5 = 70DD82E202BD8022452DC8D2B73231AA] (Microsoft Corporation)
wdmaud.drv -> C:\Windows\SysNative\wdmaud.drv -> [2009/06/04 04:47:23 | 00,212,992 | ---- | C | MD5 = 35FBB6F5993C9EE70CDB72CC8AAB5D38] (Microsoft Corporation)
mfps.dll -> C:\Windows\SysNative\mfps.dll -> [2009/06/04 04:47:23 | 00,194,560 | ---- | C | MD5 = E01582FE7EFCA6F3AD64377D62E7A1D7] (Microsoft Corporation)
eapp3hst.dll -> C:\Windows\SysWow64\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,187,904 | ---- | C | MD5 = 1303F1E8C79BDB50EA942B7494761EB8] (Microsoft Corporation)
PortableDeviceTypes.dll -> C:\Windows\SysWow64\PortableDeviceTypes.dll -> [2009/06/04 04:47:23 | 00,160,768 | ---- | C | MD5 = 290A5AA84C6F06E0B82E94F419FEE9C5] (Microsoft Corporation)
aaclient.dll -> C:\Windows\SysNative\aaclient.dll -> [2009/06/04 04:47:23 | 00,151,552 | ---- | C | MD5 = B153AAE12936788390696BE6B34186C6] (Microsoft Corporation)
mydocs.dll -> C:\Windows\SysNative\mydocs.dll -> [2009/06/04 04:47:23 | 00,143,360 | ---- | C | MD5 = 9031F95454316C6FC229D0FE4A535CD8] (Microsoft Corporation)
aaclient.dll -> C:\Windows\SysWow64\aaclient.dll -> [2009/06/04 04:47:23 | 00,136,192 | ---- | C | MD5 = 11CBE5E2940FC6CBD041779B0F707E6F] (Microsoft Corporation)
tintlgnt.ime -> C:\Windows\SysWow64\tintlgnt.ime -> [2009/06/04 04:47:23 | 00,125,952 | ---- | C | MD5 = AE240477D5C1EB209D172FE9D9D0C121] (Microsoft Corporation)
PortableDeviceClassExtension.dll -> C:\Windows\SysNative\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,105,472 | ---- | C | MD5 = 2631DE1DA75E6D589520F19E6BEB85C9] (Microsoft Corporation)
dmusic.dll -> C:\Windows\SysWow64\dmusic.dll -> [2009/06/04 04:47:23 | 00,101,888 | ---- | C | MD5 = 0FEA204289B8C5EAC19C1BC3809ECCF0] (Microsoft Corporation)
dxg.sys -> C:\Windows\SysNative\drivers\dxg.sys -> [2009/06/04 04:47:23 | 00,098,816 | ---- | C | MD5 = 59E9264A96CA82C5CCFBE14523934104] (Microsoft Corporation)
PortableDeviceClassExtension.dll -> C:\Windows\SysWow64\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,094,720 | ---- | C | MD5 = 5A87FD90634C9A05157469DA2441EBB4] (Microsoft Corporation)
fdWCN.dll -> C:\Windows\SysNative\fdWCN.dll -> [2009/06/04 04:47:23 | 00,089,088 | ---- | C | MD5 = 4EA0133FC219D00F63816D7FF540989A] (Microsoft Corporation)
gpapi.dll -> C:\Windows\SysNative\gpapi.dll -> [2009/06/04 04:47:23 | 00,084,480 | ---- | C | MD5 = 899F834C330A96A80EC36DAEDA2FF018] (Microsoft Corporation)
SMBHelperClass.dll -> C:\Windows\SysWow64\SMBHelperClass.dll -> [2009/06/04 04:47:23 | 00,083,456 | ---- | C | MD5 = 81638E6E467193699B5A800732ECBDE4] (Microsoft)
MSNP.ax -> C:\Windows\SysWow64\MSNP.ax -> [2009/06/04 04:47:23 | 00,080,896 | ---- | C | MD5 = BDDE0F9ED0F89E16B63401D9EC033870] (Microsoft Corporation)
PNPXAssoc.dll -> C:\Windows\SysNative\PNPXAssoc.dll -> [2009/06/04 04:47:23 | 00,075,264 | ---- | C | MD5 = A486EC7C6D3345448DC7E4475B531FE8] (Microsoft Corporation)
fdWCN.dll -> C:\Windows\SysWow64\fdWCN.dll -> [2009/06/04 04:47:23 | 00,069,120 | ---- | C | MD5 = 78700DB5A0C319A9C3765F0673140092] (Microsoft Corporation)
fdSSDP.dll -> C:\Windows\SysWow64\fdSSDP.dll -> [2009/06/04 04:47:23 | 00,068,096 | ---- | C | MD5 = 443C5961CACD4ABC16648874AF06E4A0] (Microsoft Corporation)
Storprop.dll -> C:\Windows\SysNative\Storprop.dll -> [2009/06/04 04:47:23 | 00,065,024 | ---- | C | MD5 = 0B6A036AC887DC20E677BF26A319C3A9] (Microsoft Corporation)
dot3cfg.dll -> C:\Windows\SysNative\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,062,976 | ---- | C | MD5 = E9B3B0104D974AF4BA592C3B0FC30875] (Microsoft Corporation)
rrinstaller.exe -> C:\Windows\SysNative\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,060,416 | ---- | C | MD5 = EAC71F00589AE3F845E5F9FEC5939E09] (Microsoft Corporation)
rrinstaller.exe -> C:\Windows\SysWow64\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,053,248 | ---- | C | MD5 = F6A9BE76DC7FA60BB9E3B14E504CB22F] (Microsoft Corporation)
rasdiag.dll -> C:\Windows\SysWow64\rasdiag.dll -> [2009/06/04 04:47:23 | 00,052,736 | ---- | C | MD5 = 1361CD59C411F47E2E2829B9A44BADD4] (Microsoft Corporation)
hbaapi.dll -> C:\Windows\SysNative\hbaapi.dll -> [2009/06/04 04:47:23 | 00,051,200 | ---- | C | MD5 = A4DE833AF637E17827D199BEF8322000] (Microsoft Corporation)
dot3cfg.dll -> C:\Windows\SysWow64\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,049,664 | ---- | C | MD5 = 07D79E9B1569ECC5EFC487E9F4C8235D] (Microsoft Corporation)
hidclass.sys -> C:\Windows\SysNative\drivers\hidclass.sys -> [2009/06/04 04:47:23 | 00,049,152 | ---- | C | MD5 = 70B7902B8DDD3C4B88AC3FC278A9B987] (Microsoft Corporation)
l2nacp.dll -> C:\Windows\SysWow64\l2nacp.dll -> [2009/06/04 04:47:23 | 00,048,128 | ---- | C | MD5 = 44DA7EE9F50381DBA0F63BB2401DC8FD] (Microsoft Corporation)
ftp.exe -> C:\Windows\SysNative\ftp.exe -> [2009/06/04 04:47:23 | 00,047,616 | ---- | C | MD5 = 83E4DD677E0DF98294E273DCEC39E53E] (Microsoft Corporation)
bthci.dll -> C:\Windows\SysNative\bthci.dll -> [2009/06/04 04:47:23 | 00,046,592 | ---- | C | MD5 = 47F2A54950EEDD33A9C3889CF3B1B436] (Microsoft Corporation)
ftp.exe -> C:\Windows\SysWow64\ftp.exe -> [2009/06/04 04:47:23 | 00,041,984 | ---- | C | MD5 = 1E2940E465AA5B2C4840E8D220BF1F32] (Microsoft Corporation)
bthudtask.exe -> C:\Windows\SysWow64\bthudtask.exe -> [2009/06/04 04:47:23 | 00,034,304 | ---- | C | MD5 = 7F5936A3FF5E83272EA1DC8985B2A228] (Microsoft Corporation)
cscapi.dll -> C:\Windows\SysWow64\cscapi.dll -> [2009/06/04 04:47:23 | 00,031,744 | ---- | C | MD5 = D922592AB65C5D9B88B30B4510A3464E] (Microsoft Corporation)
tdi.sys -> C:\Windows\SysNative\drivers\tdi.sys -> [2009/06/04 04:47:23 | 00,026,112 | ---- | C | MD5 = C39A90534C5B1E28B8BC8B38A3900AFF] (Microsoft Corporation)
msjint40.dll -> C:\Windows\SysWow64\msjint40.dll -> [2009/06/04 04:47:23 | 00,024,576 | ---- | C | MD5 = 9371540C7231BC156501AB933F269762] (Microsoft Corporation)
cscdll.dll -> C:\Windows\SysWow64\cscdll.dll -> [2009/06/04 04:47:23 | 00,022,016 | ---- | C | MD5 = C1BB3EF5FAFCBC9573DEEB57E8DF9309] (Microsoft Corporation)
wsdchngr.dll -> C:\Windows\SysWow64\wsdchngr.dll -> [2009/06/04 04:47:23 | 00,020,992 | ---- | C | MD5 = 4DBA143F06BAD1DF935CB9603140CF2A] (Microsoft Corporation)
MsCtfMonitor.dll -> C:\Windows\SysWow64\MsCtfMonitor.dll -> [2009/06/04 04:47:23 | 00,019,456 | ---- | C | MD5 = 43E1054C713C48D252A1826C5E14AACA] (Microsoft Corporation)
rasdial.exe -> C:\Windows\SysWow64\rasdial.exe -> [2009/06/04 04:47:23 | 00,016,896 | ---- | C | MD5 = CE89D942BECC4E4350FC76D4A0443997] (Microsoft Corporation)
CHxReadingStringIME.dll -> C:\Windows\SysNative\CHxReadingStringIME.dll -> [2009/06/04 04:47:23 | 00,012,800 | ---- | C | MD5 = D1CC48039B7914C42A48A19DF56489BC] (Microsoft Corporation)
MSMPEG2ENC.DLL -> C:\Windows\SysWow64\MSMPEG2ENC.DLL -> [2009/06/04 04:47:22 | 00,506,880 | ---- | C | MD5 = 64C738D1F96D1D04CAAAD5F5FB72A85D] (Microsoft Corporation)
eappcfg.dll -> C:\Windows\SysNative\eappcfg.dll -> [2009/06/04 04:47:22 | 00,211,456 | ---- | C | MD5 = 03FDED7449428CE493432EE35FE5A2FB] (Microsoft Corporation)
SLLUA.exe -> C:\Windows\SysNative\SLLUA.exe -> [2009/06/04 04:47:22 | 00,190,464 | ---- | C | MD5 = 3C4AFFB870029E26CDEB5F41DA1982ED] (Microsoft Corporation)
MSAC3ENC.DLL -> C:\Windows\SysWow64\MSAC3ENC.DLL -> [2009/06/04 04:47:22 | 00,160,256 | ---- | C | MD5 = 7F2D7F2D147A600518351E8F8ECBB114] (Microsoft Corporation)
eappcfg.dll -> C:\Windows\SysWow64\eappcfg.dll -> [2009/06/04 04:47:22 | 00,135,680 | ---- | C | MD5 = 5D0FE613570CABE3992F7DBCD68E61D1] (Microsoft Corporation)
eappgnui.dll -> C:\Windows\SysNative\eappgnui.dll -> [2009/06/04 04:47:22 | 00,104,448 | ---- | C | MD5 = B013D8A6989CC1603F15BE372E779329] (Microsoft Corporation)
mfps.dll -> C:\Windows\SysWow64\mfps.dll -> [2009/06/04 04:47:22 | 00,098,816 | ---- | C | MD5 = EFD23147B334B686E614A9B8806DBAA6] (Microsoft Corporation)
dfsc.sys -> C:\Windows\SysNative\drivers\dfsc.sys -> [2009/06/04 04:47:22 | 00,097,792 | ---- | C | MD5 = 36CD31121F228E7E79BAE60AA45764C6] (Microsoft Corporation)
eappgnui.dll -> C:\Windows\SysWow64\eappgnui.dll -> [2009/06/04 04:47:22 | 00,093,696 | ---- | C | MD5 = BBE1CD4620CBA35F383E5C499F5CECA5] (Microsoft Corporation)
nslookup.exe -> C:\Windows\SysWow64\nslookup.exe -> [2009/06/04 04:47:22 | 00,082,944 | ---- | C | MD5 = BCAA8437FC3CC898C76BA120F88CFBCD] (Microsoft Corporation)
tscupgrd.exe -> C:\Windows\SysWow64\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,063,488 | ---- | C | MD5 = C349AED1B0201258217ADBCEEA49623A] (Microsoft Corporation)
tscupgrd.exe -> C:\Windows\SysNative\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,062,464 | ---- | C | MD5 = AACD89BC01844644FF70EE7C62A249EE] (Microsoft Corporation)
fdeploy.dll -> C:\Windows\SysWow64\fdeploy.dll -> [2009/06/04 04:47:22 | 00,053,760 | ---- | C | MD5 = BFEB58743A6D96B609DA0F1FD0ACE4EB] (Microsoft Corporation)
tsgqec.dll -> C:\Windows\SysWow64\tsgqec.dll -> [2009/06/04 04:47:22 | 00,053,248 | ---- | C | MD5 = 197A6855F30CE60D3C93E6072EF742A7] (Microsoft Corporation)
networkitemfactory.dll -> C:\Windows\SysNative\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,052,224 | ---- | C | MD5 = 9E0B212585249A2B14547A0599ECAEF2] (Microsoft Corporation)
cbsra.exe -> C:\Windows\SysNative\cbsra.exe -> [2009/06/04 04:47:22 | 00,047,104 | ---- | C | MD5 = 170AC0E881F1132921F0093B4285800B] (Microsoft Corporation)
bitsigd.dll -> C:\Windows\SysNative\bitsigd.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 980F1A36B970F5AE361C5C2A90C9E972] (Microsoft Corporation)
slcinst.dll -> C:\Windows\SysNative\slcinst.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 2FE0D0DA82A9C680F3A911D95819080B] (Microsoft Corporation)
tsgqec.dll -> C:\Windows\SysNative\tsgqec.dll -> [2009/06/04 04:47:22 | 00,045,056 | ---- | C | MD5 = C767BC5E320C4621A2A1980BD2D3E9F2] (Microsoft Corporation)
slcinst.dll -> C:\Windows\SysWow64\slcinst.dll -> [2009/06/04 04:47:22 | 00,042,496 | ---- | C | MD5 = FE78D886A33624E0FA74164B274DE7A8] (Microsoft Corporation)
hbaapi.dll -> C:\Windows\SysWow64\hbaapi.dll -> [2009/06/04 04:47:22 | 00,041,472 | ---- | C | MD5 = 9F4C8DA21AC626BFB92DD9C7C6FF7F23] (Microsoft Corporation)
wscapi.dll -> C:\Windows\SysNative\wscapi.dll -> [2009/06/04 04:47:22 | 00,040,448 | ---- | C | MD5 = 2CAB7B034B867AAB48D298F93D04BD3E] (Microsoft Corporation)
networkitemfactory.dll -> C:\Windows\SysWow64\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,039,936 | ---- | C | MD5 = A479AE2DA6D04C4DBC3A76C4B6347E78] (Microsoft Corporation)
ocsetup.exe -> C:\Windows\SysNative\ocsetup.exe -> [2009/06/04 04:47:22 | 00,038,400 | ---- | C | MD5 = 3D46EF4CA4FFF3E5B2F20762E0717FA1] (Microsoft Corporation)
ocsetup.exe -> C:\Windows\SysWow64\ocsetup.exe -> [2009/06/04 04:47:22 | 00,035,840 | ---- | C | MD5 = BC89C1733F25EEADD9C765D2C9C0E8B8] (Microsoft Corporation)
mfpmp.exe -> C:\Windows\SysNative\mfpmp.exe -> [2009/06/04 04:47:22 | 00,034,304 | ---- | C | MD5 = 9A04DEFE7359B182DB5DBE84483CB5FE] (Microsoft Corporation)
FwRemoteSvr.dll -> C:\Windows\SysWow64\FwRemoteSvr.dll -> [2009/06/04 04:47:22 | 00,028,672 | ---- | C | MD5 = 42608AE9AF2641EE473A1797C25CFFC2] (Microsoft Corporation)
ipconfig.exe -> C:\Windows\SysWow64\ipconfig.exe -> [2009/06/04 04:47:22 | 00,026,624 | ---- | C | MD5 = A5CBBED853E6183D4E067B42B73A20DA] (Microsoft Corporation)
msacm32.drv -> C:\Windows\SysNative\msacm32.drv -> [2009/06/04 04:47:22 | 00,025,600 | ---- | C | MD5 = 9A328CC4E4490E929E30332AC902CAC1] (Microsoft Corporation)
mfpmp.exe -> C:\Windows\SysWow64\mfpmp.exe -> [2009/06/04 04:47:22 | 00,024,576 | ---- | C | MD5 = 8F5F5038465559C754D0C72FF74660D4] (Microsoft Corporation)
msacm32.drv -> C:\Windows\SysWow64\msacm32.drv -> [2009/06/04 04:47:22 | 00,021,504 | ---- | C | MD5 = 166F004D73EA2CF4AC61800CA469458D] (Microsoft Corporation)
gpupdate.exe -> C:\Windows\SysWow64\gpupdate.exe -> [2009/06/04 04:47:22 | 00,016,896 | ---- | C | MD5 = BADB6B77C2C9F729528543D79418429F] (Microsoft Corporation)
mmcico.dll -> C:\Windows\SysWow64\mmcico.dll -> [2009/06/04 04:47:22 | 00,012,800 | ---- | C | MD5 = E1A0CB2579D30466E43957E98B68A586] (Microsoft Corporation)
CHxReadingStringIME.dll -> C:\Windows\SysWow64\CHxReadingStringIME.dll -> [2009/06/04 04:47:22 | 00,010,752 | ---- | C | MD5 = 3048B1D3029D5D8424E018BD7FBFDA75] (Microsoft Corporation)
wmpps.dll -> C:\Windows\SysWow64\wmpps.dll -> [2009/06/04 04:47:21 | 00,131,072 | ---- | C | MD5 = 94BEEEBD916F7836EEF2CCA38218BD31] (Microsoft Corporation)
cdrom.sys -> C:\Windows\SysNative\drivers\cdrom.sys -> [2009/06/04 04:47:21 | 00,079,872 | ---- | C | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
vss_ps.dll -> C:\Windows\SysNative\vss_ps.dll -> [2009/06/04 04:47:21 | 00,060,416 | ---- | C | MD5 = 71C53455C533E3DD8A93466B123DDB39] (Microsoft Corporation)
odbcconf.dll -> C:\Windows\SysNative\odbcconf.dll -> [2009/06/04 04:47:21 | 00,045,056 | ---- | C | MD5 = 2C70DC0FD91CFEFB9B047DAA27E112FD] (Microsoft Corporation)
odbcconf.dll -> C:\Windows\SysWow64\odbcconf.dll -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 87F1B6EF700AF7C0BCEBE380964EE9DE] (Microsoft Corporation)
RNDISMP.sys -> C:\Windows\SysNative\drivers\RNDISMP.sys -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 0EAA68043CDED5DC83351A4931E66987] (Microsoft Corporation)
bthudtask.exe -> C:\Windows\SysNative\bthudtask.exe -> [2009/06/04 04:47:21 | 00,035,840 | ---- | C | MD5 = 69BDE89D95561C06DC1FF5497C7D2648] (Microsoft Corporation)
usbohci.sys -> C:\Windows\SysNative\drivers\usbohci.sys -> [2009/06/04 04:47:21 | 00,024,064 | ---- | C | MD5 = E406B003A354776D317762694956B0FC] (Microsoft Corporation)
midimap.dll -> C:\Windows\SysNative\midimap.dll -> [2009/06/04 04:47:21 | 00,020,480 | ---- | C | MD5 = 62BDB059ED8AE0C63E33BBF990941E0F] (Microsoft Corporation)
winrnr.dll -> C:\Windows\SysWow64\winrnr.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = C411C80F90D6732380352B98B37BBD53] (Microsoft Corporation)
NcdProp.dll -> C:\Windows\SysWow64\NcdProp.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = 1C4DB2F8A68BF7BF891E76C429129DFD] (Microsoft Corporation)
usb8023.sys -> C:\Windows\SysNative\drivers\usb8023.sys -> [2009/06/04 04:47:21 | 00,019,456 | ---- | C | MD5 = F4F8D86E6FCAB839438B23DFAFC7951F] (Microsoft Corporation)
vdmdbg.dll -> C:\Windows\SysWow64\vdmdbg.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = DF1F51D2938A403BFE671B13A12FA434] (Microsoft Corporation)
midimap.dll -> C:\Windows\SysWow64\midimap.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 83199EF88D691E730B80666E29F90D58] (Microsoft Corporation)
inetppui.dll -> C:\Windows\SysNative\inetppui.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 7B207E9923716BD040FF56C9EC1DF7B2] (Microsoft Corporation)
iscsilog.dll -> C:\Windows\SysNative\iscsilog.dll -> [2009/06/04 04:47:21 | 00,016,384 | ---- | C | MD5 = C8EFA4244000C88E92B0DB80C63AFAE0] (Microsoft Corporation)
slwga.dll -> C:\Windows\SysWow64\slwga.dll -> [2009/06/04 04:47:21 | 00,012,288 | ---- | C | MD5 = DA887F28054D78EE8637BEBB924A2DB5] (Microsoft Corporation)
RacUR.xml -> C:\Windows\SysWow64\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
RacUR.xml -> C:\Windows\SysNative\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
wmploc.DLL -> C:\Windows\SysNative\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,968 | ---- | C | MD5 = 23462A3BDBD5EF4DE119950176054455] (Microsoft Corporation)
wmploc.DLL -> C:\Windows\SysWow64\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,456 | ---- | C | MD5 = CC41E8691F0685EA9A820E40FE541500] (Microsoft Corporation)
stream.sys -> C:\Windows\SysNative\drivers\stream.sys -> [2009/06/04 04:47:20 | 00,068,224 | ---- | C | MD5 = EB69069B969F4252A3BDE2BB3621811E] (Microsoft Corporation)
raspppoe.sys -> C:\Windows\SysNative\drivers\raspppoe.sys -> [2009/06/04 04:47:20 | 00,050,176 | ---- | C | MD5 = 4517FBF8B42524AFE4EDE1DE102AAE3E] (Microsoft Corporation)
f3ahvoas.dll -> C:\Windows\SysNative\f3ahvoas.dll -> [2009/06/04 04:47:20 | 00,033,280 | ---- | C | MD5 = 1BC63DDF769D3D6887565F774E177B7A] (Microsoft Corporation)
Diskdump.sys -> C:\Windows\SysNative\drivers\Diskdump.sys -> [2009/06/04 04:47:20 | 00,019,968 | ---- | C | MD5 = 3333213D1902942196D7BFF8E34FFB7F] (Microsoft Corporation)
wow64cpu.dll -> C:\Windows\SysNative\wow64cpu.dll -> [2009/06/04 04:47:20 | 00,017,408 | ---- | C | MD5 = CA9EECC6092B9C2CE86D95C04B51BA20] (Microsoft Corporation)
spwmp.dll -> C:\Windows\SysNative\spwmp.dll -> [2009/06/04 04:47:20 | 00,009,216 | ---- | C | MD5 = 304C0C318EF9E45FF0934DA87C34FA32] (Microsoft Corporation)
spwmp.dll -> C:\Windows\SysWow64\spwmp.dll -> [2009/06/04 04:47:20 | 00,007,680 | ---- | C | MD5 = 9D7330628360245D3FB8779C831BCCDE] (Microsoft Corporation)
msdxm.ocx -> C:\Windows\SysNative\msdxm.ocx -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
dxmasf.dll -> C:\Windows\SysNative\dxmasf.dll -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
msdxm.ocx -> C:\Windows\SysWow64\msdxm.ocx -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
dxmasf.dll -> C:\Windows\SysWow64\dxmasf.dll -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
f3ahvoas.dll -> C:\Windows\SysWow64\f3ahvoas.dll -> [2009/06/04 04:47:19 | 00,007,680 | ---- | C | MD5 = F42DC8DD28EC15507F44B801273E758E] (Microsoft Corporation)
msimsg.dll -> C:\Windows\SysNative\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = FCD84867883C365A24C61E50AF8A6DB9] (Microsoft Corporation)
msimsg.dll -> C:\Windows\SysWow64\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = ED21401F1E2F6BC2F54C462BB66D0D6B] (Microsoft Corporation)
mferror.dll -> C:\Windows\SysWow64\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = A5C978DD5B123D6070B2076FF3B36600] (Microsoft Corporation)
mferror.dll -> C:\Windows\SysNative\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = 45415CC9CE3979EDC93F9856D9ED22BF] (Microsoft Corporation)
wdscore.dll -> C:\Windows\SysWow64\wdscore.dll -> [2009/06/04 04:47:13 | 00,218,624 | ---- | C | MD5 = E7D0F91E44D9D3B2116FA549BDCDB756] (Microsoft Corporation)
drvstore.dll -> C:\Windows\SysWow64\drvstore.dll -> [2009/06/04 04:47:08 | 00,247,808 | ---- | C | MD5 = 6A7908973D49248E4018E8E61B3DCDAA] (Microsoft Corporation)
SmiEngine.dll -> C:\Windows\SysNative\SmiEngine.dll -> [2009/06/04 04:46:42 | 00,936,448 | ---- | C | MD5 = 925ECB3366EDFCB50B04DFAA5A529B63] (Microsoft Corporation)
wdscore.dll -> C:\Windows\SysNative\wdscore.dll -> [2009/06/04 04:46:40 | 00,293,888 | ---- | C | MD5 = A6BCDC241B6578C7DB57B5973B99FE7E] (Microsoft Corporation)
PkgMgr.exe -> C:\Windows\SysNative\PkgMgr.exe -> [2009/06/04 04:46:40 | 00,138,752 | ---- | C | MD5 = 8832EFA58F39033442841A6535396A40] (Microsoft Corporation)
drvstore.dll -> C:\Windows\SysNative\drvstore.dll -> [2009/06/04 04:46:35 | 00,315,904 | ---- | C | MD5 = 403C9B0E7D827337611FBA20EBC7692C] (Microsoft Corporation)
KGyGaAvL.sys -> C:\Windows\SysWow64\KGyGaAvL.sys -> [2009/05/28 00:06:52 | 00,000,848 | -HS- | C | MD5 = 04B0435CF26A43D9171E7A896C7BB94E] ()
basefx.INI -> C:\Windows\basefx.INI -> [2009/05/08 00:05:54 | 00,000,032 | ---- | C | MD5 = 51A542B2C1A87F328D1FAEF3BFF9942E] ()
wininit.ini -> C:\Windows\wininit.ini -> [2009/04/23 19:46:49 | 00,000,062 | ---- | C | MD5 = 7F5DCD8C80133A018F72B06098070165] ()
Lexstat.ini -> C:\Windows\Lexstat.ini -> [2009/04/19 22:21:32 | 00,000,311 | ---- | C | MD5 = 627D15C11A096E3173D3A5D67181E526] ()
lxbcserv.dll -> C:\Windows\SysWow64\lxbcserv.dll -> [2009/04/19 22:20:24 | 01,224,704 | ---- | C | MD5 = 1A177DE6130FA7CB474C59967E409331] ( )
lxbcusb1.dll -> C:\Windows\SysWow64\lxbcusb1.dll -> [2009/04/19 22:20:24 | 00,995,328 | ---- | C | MD5 = B2F331C2315DC96A266E4839167CF638] ( )
lxbcpmui.dll -> C:\Windows\SysWow64\lxbcpmui.dll -> [2009/04/19 22:20:24 | 00,643,072 | ---- | C | MD5 = AC42E2C9F3F1A22F6BC8C7EA591488B3] ( )
lxbcinpa.dll -> C:\Windows\SysWow64\lxbcinpa.dll -> [2009/04/19 22:20:24 | 00,413,696 | ---- | C | MD5 = B558D56A0BAE0B522535554BE896AC9E] ( )
lxbcutil.dll -> C:\Windows\SysWow64\lxbcutil.dll -> [2009/04/19 22:20:24 | 00,413,696 | ---- | C | MD5 = B34F89AAF289F207CF818CA2DB93AFDB] ()
lxbciesc.dll -> C:\Windows\SysWow64\lxbciesc.dll -> [2009/04/19 22:20:24 | 00,397,312 | ---- | C | MD5 = 268DB9ECA6A0D22789AC25866813E287] ( )
LXBCinst.dll -> C:\Windows\SysWow64\LXBCinst.dll -> [2009/04/19 22:20:24 | 00,274,432 | ---- | C | MD5 = 2E72EE59F400C9DAACB98B6DF3FC556F] ()
lxbcprox.dll -> C:\Windows\SysWow64\lxbcprox.dll -> [2009/04/19 22:20:24 | 00,163,840 | ---- | C | MD5 = 011D5DF398ED437A2CD8E52E11DD1A60] ( )
lxbcpplc.dll -> C:\Windows\SysWow64\lxbcpplc.dll -> [2009/04/19 22:20:24 | 00,094,208 | ---- | C | MD5 = C4A287E04936CAB866AD966EC6CDA220] ( )
lxbchbn3.dll -> C:\Windows\SysWow64\lxbchbn3.dll -> [2009/04/19 22:20:23 | 00,696,320 | ---- | C | MD5 = 48BE097D8BC190806AC2572C04B22D99] ( )
lxbccomc.dll -> C:\Windows\SysWow64\lxbccomc.dll -> [2009/04/19 22:20:23 | 00,684,032 | ---- | C | MD5 = FC3844A7E993C20CD411635DEF63F04D] ( )
lxbclmpm.dll -> C:\Windows\SysWow64\lxbclmpm.dll -> [2009/04/19 22:20:23 | 00,585,728 | ---- | C | MD5 = B81077ABFAC6B52A84B5947697102BF6] ( )
lxbccomm.dll -> C:\Windows\SysWow64\lxbccomm.dll -> [2009/04/19 22:20:23 | 00,421,888 | ---- | C | MD5 = 0AEC06606824F4E26DE6A782B869681E] ( )
PIC.dll -> C:\Windows\PIC.dll -> [2009/02/28 04:53:50 | 00,294,912 | ---- | C | MD5 = D189A21EE0C68C0252B76D10B3A5D13D] ()
mhotkey_reg.ini -> C:\Windows\mhotkey_reg.ini -> [2009/02/28 04:53:50 | 00,000,870 | ---- | C | MD5 = 3EC0ABB69217F14CA1D106CB514411B9] ()
tcpmon.ini -> C:\Windows\SysWow64\tcpmon.ini -> [2008/01/20 22:50:05 | 00,060,124 | ---- | C | MD5 = 47F22CAD4A16BB40153555D631546B94] ()
SP207.INI -> C:\Windows\SysWow64\SP207.INI -> [2006/11/02 09:27:46 | 00,000,518 | ---- | C | MD5 = 37D06B03D94D1A7F5DD1691B7BD9E5BF] ()
win.ini -> C:\Windows\win.ini -> [2006/11/02 08:34:27 | 00,000,329 | ---- | C | MD5 = 59D8B45C73128A57CDE668ACB68DB23F] ()
system.ini -> C:\Windows\system.ini -> [2006/11/02 08:34:27 | 00,000,219 | ---- | C | MD5 = 286A9EDB379DC3423A528B0864A0F111] ()
[Files/Folders - Modified Within 30 Days]
tmvsthfud.bin -> C:\Windows\SysNative\drivers\etc\tmvsthfud.bin -> [2009/06/29 13:17:38 | 00,000,761 | ---- | M | MD5 = 01505BB3F7004537F4F2C0FBBA349A1F] ()
tmvsthfss.bin -> C:\Windows\SysNative\drivers\etc\tmvsthfss.bin -> [2009/06/29 13:17:38 | 00,000,761 | ---- | M | MD5 = 01505BB3F7004537F4F2C0FBBA349A1F] ()
NTUSER.DAT -> C:\Users\Owner\NTUSER.DAT -> [2009/06/29 13:16:21 | 02,883,584 | -HS- | M | Unable to obtain MD5] ()
User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> C:\Windows\tasks\User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> [2009/06/29 12:35:20 | 00,000,434 | -H-- | M | MD5 = 2CBF1EC42EC00BE69693F90DCBEBD315] ()
7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> [2009/06/29 11:39:23 | 00,004,784 | -H-- | M | Unable to obtain MD5] ()
7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> [2009/06/29 11:39:23 | 00,004,784 | -H-- | M | Unable to obtain MD5] ()
bootstat.dat -> C:\Windows\bootstat.dat -> [2009/06/29 09:39:29 | 00,067,584 | --S- | M | MD5 = E44FBED4C9633B3235AA63CF3762E938] ()
qmgr1.dat -> C:\ProgramData\Microsoft\Network\Downloader\qmgr1.dat -> [2009/06/29 06:07:53 | 04,194,304 | ---- | M | Unable to obtain MD5] ()
qmgr0.dat -> C:\ProgramData\Microsoft\Network\Downloader\qmgr0.dat -> [2009/06/29 06:07:53 | 04,194,304 | ---- | M | Unable to obtain MD5] ()
PublishedRacMonSWITable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonSWITable.DAT -> [2009/06/29 00:27:13 | 00,064,752 | ---- | M | MD5 = F785608573958A88EF6B687718BFE137] ()
PublishedRacMonAFLTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonAFLTable.DAT -> [2009/06/29 00:27:13 | 00,005,520 | ---- | M | MD5 = 1A98E8A24AF7EB773E92981A2C3416F2] ()
PublishedRacMonIndex.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonIndex.DAT -> [2009/06/29 00:27:13 | 00,001,896 | ---- | M | MD5 = CBE6F7716AA186AB75B08AD01CA80298] ()
PublishedRacMonOSFTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonOSFTable.DAT -> [2009/06/29 00:27:13 | 00,001,656 | ---- | M | MD5 = 7D5277203ECC6B5D6DB8F1E5673EDED6] ()
PublishedRacMonHFLTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonHFLTable.DAT -> [2009/06/29 00:27:13 | 00,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
PublishedRacMonCLKTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonCLKTable.DAT -> [2009/06/29 00:27:13 | 00,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
TT.png -> C:\Users\Owner\Desktop\TT.png -> [2009/06/28 20:43:53 | 00,200,241 | ---- | M | MD5 = 448D42215DA5326560BB8A1CA93C9566] ()
PerfStringBackup.INI -> C:\Windows\SysNative\PerfStringBackup.INI -> [2009/06/28 20:19:25 | 00,690,960 | ---- | M | MD5 = 6D315A3A78114F7172DFE18E65E0CEF3] ()
perfh009.dat -> C:\Windows\SysNative\perfh009.dat -> [2009/06/28 20:19:25 | 00,595,446 | ---- | M | MD5 = 0890AF57E84C4686C035B19BD0F52C11] ()
perfc009.dat -> C:\Windows\SysNative\perfc009.dat -> [2009/06/28 20:19:25 | 00,101,144 | ---- | M | MD5 = 40F75DF9DD3EA03B6B6EAC6D580A7001] ()
index.dat -> C:\Windows\Temp\History\History.IE5\index.dat -> [2009/06/28 20:12:14 | 00,016,384 | -HS- | M | MD5 = D7A950FEFD60DBAA01DF2D85FEFB3862] ()
index.dat -> C:\Windows\Temp\Cookies\index.dat -> [2009/06/28 20:12:14 | 00,016,384 | -HS- | M | MD5 = D7A950FEFD60DBAA01DF2D85FEFB3862] ()
index.dat -> C:\Windows\Temp\Temporary Internet Files\Content.IE5\index.dat -> [2009/06/28 20:12:14 | 00,016,384 | -HS- | M | MD5 = B4F12D40A795E5027B2449E247A3F0C5] ()
LogConfigTemp.xml -> C:\Windows\SysNative\LogConfigTemp.xml -> [2009/06/28 20:12:13 | 00,000,000 | ---- | M | Unable to obtain MD5] ()
SA.DAT -> C:\Windows\tasks\SA.DAT -> [2009/06/28 20:12:10 | 00,000,006 | -H-- | M | MD5 = F1A6CD5ADAAB953A6764EA364E17BFB8] ()
NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TMContainer00000000000000000001.regtrans-ms -> C:\Users\Owner\NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TMContainer00000000000000000001.regtrans-ms -> [2009/06/28 20:11:22 | 00,524,288 | -HS- | M | Unable to obtain MD5] ()
NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TM.blf -> C:\Users\Owner\NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TM.blf -> [2009/06/28 20:11:22 | 00,065,536 | -HS- | M | Unable to obtain MD5] ()
IconCache.db -> C:\Users\Owner\AppData\Local\IconCache.db -> [2009/06/28 20:11:14 | 02,247,259 | -H-- | M | MD5 = FFF34285C5015093BFC4122C5398DF0D] ()
OTS.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:15 | 00,513,024 | ---- | M | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/06/28 19:30:22 | 00,000,850 | ---- | M | MD5 = 9AD6C291BC07B05FD556F5132E14FCCE] ()
HijackThis.lnk -> C:\Users\Owner\Desktop\HijackThis.lnk -> [2009/06/28 02:04:16 | 00,001,930 | ---- | M | MD5 = 284D8E8B7E19D0413BB2F9BF09BB64A1] ()
Lexstat.ini -> C:\Windows\Lexstat.ini -> [2009/06/24 12:56:55 | 00,000,311 | ---- | M | MD5 = 627D15C11A096E3173D3A5D67181E526] ()
opa12.dat -> C:\ProgramData\Microsoft\OFFICE\DATA\opa12.dat -> [2009/06/23 11:18:08 | 00,008,306 | ---- | M | MD5 = 737CDA847BDC74D1F9DF1CBF3CBE8FCC] ()
Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2009/06/22 18:24:27 | 00,001,919 | ---- | M | MD5 = 95478CD74436938A7C9C41158D8A132A] ()
FNTCACHE.DAT -> C:\Windows\SysNative\FNTCACHE.DAT -> [2009/06/20 02:49:09 | 00,314,840 | ---- | M | MD5 = BEF51E6334DC76E1023DB45874DD8B25] ()
NINA.html -> C:\Users\Owner\Documents\NINA.html -> [2009/06/20 02:14:40 | 00,000,989 | ---- | M | MD5 = 4C33571BCB02BECF1362DE1F9DFD2646] ()
GDIPFONTCACHEV1.DAT -> C:\Users\Owner\AppData\Local\GDIPFONTCACHEV1.DAT -> [2009/06/20 01:36:13 | 00,079,576 | ---- | M | MD5 = 65865A851CF981E578A5C68CD4DE3E23] ()
mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2009/06/17 11:27:56 | 00,038,160 | ---- | M | MD5 = 148D5D488BA502381C2B7B615F7F84CF] (Malwarebytes Corporation)
mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2009/06/17 11:27:46 | 00,022,040 | ---- | M | MD5 = CEDB73ADD243D2D654A32C191A9DBDB5] (Malwarebytes Corporation)
English_PSPX_RegXtras.exe -> C:\Users\Owner\Desktop\English_PSPX_RegXtras.exe -> [2009/06/12 16:17:31 | 15,935,168 | ---- | M | MD5 = 99FAE6E1E7E13FA9AD43336308084709] (Corel )
KGyGaAvL.sys -> C:\Windows\SysWow64\KGyGaAvL.sys -> [2009/06/12 16:13:33 | 00,000,848 | -HS- | M | MD5 = 04B0435CF26A43D9171E7A896C7BB94E] ()
sabrina aunt kelly letter.rtf -> C:\Users\Owner\Documents\sabrina aunt kelly letter.rtf -> [2009/06/06 11:56:11 | 00,000,767 | ---- | M | MD5 = 9F27BD1E947E628ED8C075DF231D4BE6] ()
ZoomBrowser EX.lnk -> C:\Users\Owner\ZoomBrowser EX.lnk -> [2009/06/04 23:26:57 | 00,001,125 | ---- | M | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
Personal Printing Guide.lnk -> C:\Users\Owner\Personal Printing Guide.lnk -> [2009/06/04 23:26:57 | 00,001,039 | ---- | M | MD5 = 189A154484643D47EF3D7D795C702A43] ()
INFORMATION - Shortcut.lnk -> C:\Users\Owner\INFORMATION - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,395 | ---- | M | MD5 = 31534B3665D8838EDA892E6E252B1D4D] ()
Computer - Shortcut.lnk -> C:\Users\Owner\Computer - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,104 | ---- | M | MD5 = FD8F1F54665903B748744026D47A4967] ()
mrt.exe -> C:\Windows\SysNative\mrt.exe -> [2009/06/01 13:16:48 | 25,255,368 | ---- | M | MD5 = 24E45FA8FF7D125B8E7BFE3DAD8F042D] (Microsoft Corporation)
basefx.INI -> C:\Windows\basefx.INI -> [2009/05/31 09:40:40 | 00,000,032 | ---- | M | MD5 = 51A542B2C1A87F328D1FAEF3BFF9942E] ()
Owner.dat -> C:\ProgramData\Microsoft\User Account Pictures\Owner.dat -> [2009/04/11 15:52:28 | 00,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
nvuninst.exe -> C:\Windows\Temp\{8C72CC07-17CA-409E-B92B-23313BE78A58}\{EFB7D050-CAD2-11D4-B34D-00105A1C23DD}\nvuninst.exe -> [2008/10/02 14:08:02 | 00,501,280 | ---- | M | MD5 = DD27501AFBA41A787AAA3AF70DC2E0B6] (NVIDIA Corporation)
mfc80u.dll -> C:\Windows\Temp\tismsi\mfc80u.dll -> [2008/07/29 17:04:22 | 01,652,736 | ---- | M | MD5 = 21EE912784A013DC44071ECC4F932388] (Microsoft Corporation)
atl80.dll -> C:\Windows\Temp\tismsi\atl80.dll -> [2008/07/29 17:04:22 | 00,113,152 | ---- | M | MD5 = 8AD2485047CC64CB04B66040E62FE5FD] (Microsoft Corporation)
mfcm80.dll -> C:\Windows\Temp\tismsi\mfcm80.dll -> [2008/07/29 17:04:22 | 00,065,536 | ---- | M | MD5 = 4FF468C640DEBC678D6E57617D523806] (Microsoft Corporation)
mfcm80u.dll -> C:\Windows\Temp\tismsi\mfcm80u.dll -> [2008/07/29 17:04:22 | 00,064,000 | ---- | M | MD5 = 47ACD0AEA4A32EF2B446B01076C62D28] (Microsoft Corporation)
mfc80.dll -> C:\Windows\Temp\tismsi\mfc80.dll -> [2008/07/29 17:04:20 | 01,656,320 | ---- | M | MD5 = 9173F70AF60C0A864EECDFB3342DC789] (Microsoft Corporation)
msvcp80.dll -> C:\Windows\Temp\tismsi\msvcp80.dll -> [2008/07/29 17:04:20 | 01,061,376 | ---- | M | MD5 = C332DB81197E6E5D4A67D3789DBEB02A] (Microsoft Corporation)
msvcr80.dll -> C:\Windows\Temp\tismsi\msvcr80.dll -> [2008/07/29 17:04:20 | 00,796,672 | ---- | M | MD5 = 4D89F6191DB56CFA659388378F3DD688] (Microsoft Corporation)
msvcm80.dll -> C:\Windows\Temp\tismsi\msvcm80.dll -> [2008/07/29 17:04:20 | 00,516,096 | ---- | M | MD5 = 60A6DE55AA50D57A01B7148B0A7EA139] (Microsoft Corporation)
libexpat.dll -> C:\Windows\Temp\tismsi\libexpat.dll -> [2008/07/29 17:04:20 | 00,181,424 | ---- | M | MD5 = B95C7E50A4934887CFC59C159A576458] ()
GENKEY64.dll -> C:\Windows\Temp\tismsi\GENKEY64.dll -> [2008/07/29 17:04:18 | 00,036,200 | ---- | M | MD5 = 6D9906DA60C335E84AAD92895D07BF47] ()
< End of report >
[/code]
That's looking clean now, how are things running ?
Step 1
Open OTScanIt. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button. The fix should only take a very short time and then you will be asked if you want to reboot. Choose Yes.
Warning: This fix is for this user only. DO NOT duplicate this fix or you risk damaging your own system
Step 2
Kaspersky Online Scanner .
Your Antivirus and/or Antispyware may give a warning during the scan. This is perfectly normal
NOTE:- This scan is best done from IE (Internet Explorer)
NOTE:- Vista users should start IE by Start(Vista Orb) >> Internet Explorer >> Right-Click Run As Admin
Go Here http://www.kaspersky.com/kos/eng/partner/default/kavwebscan.html
Read the Requirements and limitations before you click Accept.
Once the database has downloaded, click My Computer in the left pane
Now go and put the kettle on !
When the scan has completed, click Save Report As...
Enter a name for the file in the Filename: text box and then click the down arrow to the right of Save as type: and select text file (*.txt)
Click Save - by default the file will be saved to your Desktop, but you can change this if you wish.
**Note**
To optimize scanning time and produce a more sensible report for review:
Note for Internet Explorer 7 users: If at any time you have trouble viewing the accept button of the license, click on the Zoom tool located at the bottom right of the IE window and set the zoom to 75%. Once the license is accepted, reset to 100%.
Logs/Information to Post in Reply
Please post the following logs/Information in your reply
Some of the logs I request will be quite large, You may need to split them over a couple of replies.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
< End of fix log >
OTS by OldTimer - Version 3.0.9.0 fix logfile created on 06302009_125740
this is what i got and i never got a if i want to reboot!
Scan saved at 4:33:35 PM, on 6/30/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\MHotKey.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Windows\ChiFuncExt.exe
C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
C:\Windows\CNYHKey.exe
C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe
C:\Windows\ModLedKey.exe
C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
C:\PROGRA~2\AOL9~1.1\waol.exe
C:\PROGRA~2\AOL9~1.1\shellmon.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: AOL Toolbar Loader - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [LedKey] CNYHKey.exe
O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [HostManager] "C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"http://www.playhub.com/sports-games/313/Sewer-Run.html"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: SmartCopy.lnk = C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
O4 - Global Startup: SmartLauncher.lnk = C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader2.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Unknown owner - C:\Windows\system32\agr64svc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: lxbc_device - - C:\Windows\system32\lxbccoms.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11028 bytes
Active Scan
Your Antivirus and/or Antispyware may give a warning during the scan. This is perfectly normal
NOTE:- Vista users should start IE by Start(Vista Orb) >> Internet Explorer >> Right-Click Run As Admin
Please go to this site Link >> ActiveScan << LINK
;***********************************************************************************************************************************************************************************
ANALYSIS: 2009-07-01 01:56:34
PROTECTIONS: 2
MALWARE: 17
SUSPECTS: 0
;***********************************************************************************************************************************************************************************
PROTECTIONS
Description Version Active Updated
;===================================================================================================================================================================================
Trend Micro AntiVirus 17.1.1250 Yes Yes
Windows Defender 1.1.1505.0 No Yes
;===================================================================================================================================================================================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===================================================================================================================================================================================
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@casalemedia[2].txt
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@doubleclick[2].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@atdmt[1].txt
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@fastclick[2].txt
00167747 Cookie/Azjmp TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@azjmp[1].txt
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@ad.yieldmanager[1].txt
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@apmebf[1].txt
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@burstnet[2].txt
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@bs.serving-sys[1].txt
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@bs.serving-sys[2].txt
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@advertising[2].txt
00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@statse.webtrendslive[1].txt
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@ads.pointroll[1].txt
00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@overture[2].txt
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@questionmarket[1].txt
00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@go[1].txt
00262020 Cookie/Atwola TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@atwola[1].txt
00286732 Cookie/Cgi-bin TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@www3.addfreestats[1].txt
;===================================================================================================================================================================================
SUSPECTS
Sent Location pV��
�9
;===================================================================================================================================================================================
;===================================================================================================================================================================================
VULNERABILITIES
Id Severity Description pV��
�9
;===================================================================================================================================================================================
;===================================================================================================================================================================================