please help think im infected hijack log included

:respect:Hello everyone who reads i am here because i just bought a new tower(1700$) i paid cash for this is my 3rd tower in 5 yrs!i have not downloaded any music nothing like that only thing that was downloaded was psp brushes(but scanned b4 open) my computer has a large memory like 600g+harddrive! for some reason the other day it just shut down on my daughter then when i turn my computer on something pops up but its to fast to catch it! i scanned 1000 times 5-6 times a day nothing but cookies i cleaned it i disk cleaned all the good stuff today it shut down again after that my internet shut down no clue why i was playing on pogo and out of no where this music started to play(nothing else was open) then shut the game down my computer is only about 21/2 months old please help in anyway u can thanks sooo much<3 Nina

ps if i have any thing that i dont need in the hj list please let me know puttin out all this money is breaking my pockets thanks a bunch


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:04:27 AM, on 6/28/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\MHotKey.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Windows\CNYHKey.exe
C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe
C:\Windows\ChiFuncExt.exe
C:\Windows\ModLedKey.exe
C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\AOL 9.1\waol.exe
C:\Program Files (x86)\AOL 9.1\shellmon.exe
C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: AOL Toolbar Loader - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\partner.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
O4 - HKLM\..\Run: [LedKey] CNYHKey.exe
O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [HostManager] "C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files (x86)\AOL 9.1\AOL.EXE" -b
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"http://www.playhub.com/sports-games/313/Sewer-Run.html"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: SmartCopy.lnk = C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
O4 - Global Startup: SmartLauncher.lnk = C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader2.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Unknown owner - C:\Windows\system32\agr64svc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: lxbc_device - - C:\Windows\system32\lxbccoms.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\partner.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11436 bytes
«1

Comments

  • edited June 2009
    forgot to mention im using vista i have a dell duo 600+g hard drive so my memory not full
  • edited June 2009
    Please note that all instructions given are customised for this computer only,
    the tools used may cause damage if used on a computer with different infections.

    If you think you have similar problems, please post a log in the HJT forum and wait for help.


    Hello and welcome to the forums

    My name is Katana and I will be helping you to remove any infection(s) that you may have.

    Please observe these rules while we work:
    1. Please Read All Instructions Carefully
    2. If you don't understand something, stop and ask! Don't keep going on.
    3. Please do not run any other tools or scans whilst I am helping you
    4. Failure to reply within 5 days will result in the topic being closed.
    5. Please continue to respond until I give you the "All Clear"
      (Just because you can't see a problem doesn't mean it isn't there)

    If you can do those few things, everything should go smoothly laechel.gif

    Please Note, your security programs may give warnings for some of the tools I will ask you to use.
    Be assured, any links I give are safe




    Please note:-
    Your log shows signs that this is a 64 bit machine.
    Most of the tools we use don't run on 64 bit machines, so the help I can offer is limited.
    I will do my best though :)

    Malwarebytes' Anti-Malware

    Please download Malwarebytes' Anti-Malware to your desktop.

    • Double-click mbam-setup.exe and follow the prompts to install the program.
    • At the end, be sure a checkmark is placed next to
      • Update Malwarebytes' Anti-Malware
      • and Launch Malwarebytes' Anti-Malware
    • then click Finish.
    • If an update is found, it will download and install the latest version.
    • Once the program has loaded, select Perform full scan, then click Scan.
    • When the scan is complete, click OK, then Show Results to view the results.
    • Be sure that everything is checked, and click Remove Selected.
    • When completed, a log will open in Notepad. please copy and paste the log into your next reply
    • If requested, please reboot
      • If you accidently close it, the log file is saved here and will be named like this:
      • C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt


    OTScanIt

    1. Please download OTS.exe by OldTimer and save it to your desktop.
    2. Double click on OTS.exe to run it.
    3. Put a checkmark in the Include 64Bit Scans box
    4. Under Drivers section, select Non-Microsoft.
    5. Click on the Run Scan button at the top left hand corner.
    6. OTS will start running. Once done, Notepad will open. Please post the contents of this Notepad file in your next reply.



    You may need more than one post for the OTScanIt log as it will be quite long
  • edited June 2009
    [code]
    OTS logfile created on: 6/28/2009 7:35:12 PM - Run 1
    OTS by OldTimer - Version 3.0.9.0 Folder = C:\Users\Owner\Desktop
    64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18783)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    4.00 Gb Total Physical Memory | 4.00 Gb Available Physical Memory | 100.00% Memory free
    4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 581.52 Gb Total Space | 534.52 Gb Free Space | 91.92% Space Free | Partition Type: NTFS
    D: Drive not present or media not loaded
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded

    Computer Name: OWNER-PC
    Current User Name: Owner
    Logged in as Administrator.

    Current Boot Mode: Normal
    Scan Mode: All users
    Include 64bit Scans
    Company Name Whitelist: On
    Skip Microsoft Files: Off
    File Age = All Days

    [Processes - Safe List]
    aolacsd.exe -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
    aolsoftware.exe -> C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
    aoltpsd3.exe -> C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe -> [2007/04/02 08:33:32 | 00,063,120 | ---- | M | MD5 = CAA1EBD9AD92E6C6E83A5642EBC34CA6] (AOL LLC)
    chifuncext.exe -> C:\Windows\ChiFuncExt.exe -> [2008/02/01 15:04:50 | 00,057,344 | ---- | M | MD5 = 82A85D80EAD5B3950CFD775A84AE1651] (Chicony)
    cnyhkey.exe -> C:\Windows\CNYHKey.exe -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
    googletoolbarnotifier.exe -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
    ielowutil.exe -> C:\Program Files (x86)\Internet Explorer\IELowutil.exe -> [2009/03/08 07:34:00 | 00,115,712 | ---- | M | MD5 = B9E350C3EEE748E332251274DEC33829] (Microsoft Corporation)
    jusched.exe -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
    mbam.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe -> [2009/06/17 11:27:48 | 01,287,440 | ---- | M | MD5 = 8C011B63EC5B2ABFBF4CCF5212794F52] (Malwarebytes Corporation)
    mhotkey.exe -> C:\Windows\MHotKey.exe -> [2008/05/30 14:50:28 | 00,581,120 | ---- | M | MD5 = ED2674E1796B46A6FDD3E81F66AD45DB] ()
    modledkey.exe -> C:\Windows\ModLedKey.exe -> [2007/01/08 18:51:56 | 00,053,248 | ---- | M | MD5 = 9DC803349108C74DED49990BA3E042FE] (Chicony)
    ots.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:15 | 00,513,024 | ---- | M | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
    richvideo.exe -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
    shellmon.exe -> C:\Program Files (x86)\AOL 9.1\shellmon.exe -> [2008/11/06 07:42:59 | 00,054,568 | ---- | M | MD5 = 9A2A25E1B8FD6260F2DA8611465DB712] (AOL, LLC.)
    smartcopy.exe -> C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe -> [2008/08/11 20:57:02 | 00,319,488 | ---- | M | MD5 = 7E433ED3F7822E46E759956D0ECB7AA4] ()
    smartlauncher.exe -> C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe -> [2008/08/11 13:20:28 | 00,335,872 | ---- | M | MD5 = 5B2819B7FCD02A0FA4386A718DB0274A] (North Star com.)
    waol.exe -> C:\Program Files (x86)\AOL 9.1\waol.exe -> [2008/11/06 07:42:59 | 00,039,208 | ---- | M | MD5 = 19AC8BB35611FD56280BAD07625ACAFB] (AOL, LLC.)
    ymsgr_tray.exe -> C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe -> [2009/03/18 18:50:30 | 00,079,088 | ---- | M | MD5 = 5697CF86049652DBD80054ACE4F29812] (Yahoo! Inc.)

    [Win32 Services - Safe List]
    64bit-(AgereModemAudio) Agere Modem Call Progress Audio [Win32_Own | Auto | Running] -> C:\Windows\SysNative\agr64svc.exe -> [2008/07/22 22:54:06 | 00,015,872 | ---- | M | MD5 = 8B0D8B5BAFD4C9D57B41426BC68B32F9] (Agere Systems)
    64bit-(ETService) Empowering Technology Service [Win32_Own | Auto | Running] -> C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe -> [2008/06/11 15:18:30 | 00,024,576 | ---- | M | MD5 = 4D06D9A26227AC485305133916888DF1] ()
    64bit-(ForceWare Intelligent Application Manager (IAM)) ForceWare Intelligent Application Manager (IAM) [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -> [2008/09/08 15:11:02 | 00,726,016 | ---- | M | MD5 = EDFE4EE6513E9D9B33799C6838DA7B5F] ()
    64bit-(lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysNative\lxbccoms.exe -> [2007/03/16 01:24:18 | 00,566,704 | ---- | M | MD5 = 5179331910B68F41F70E8CB481349D4A] ( )
    64bit-(nSvcIp) ForceWare IP service [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -> [2008/09/08 15:09:52 | 00,221,696 | ---- | M | MD5 = 0304AC408043C6CB9E88FA6C813CF841] ()
    64bit-(SfCtlCom) Trend Micro Central Control Component [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe -> [2009/03/31 23:25:06 | 00,833,872 | ---- | M | MD5 = 067C6A28521DC73D60BF1759B0AA8287] (Trend Micro Inc.)
    64bit-(TMBMServer) Trend Micro Unauthorized Change Prevention Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\BM\TMBMSRV.exe -> [2009/03/03 04:39:56 | 00,565,512 | ---- | M | MD5 = 5868DA3C4C678D82BE43B62908265E7E] (Trend Micro Inc.)
    64bit-(TmProxy) Trend Micro Proxy Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\TmProxy.exe -> [2009/03/31 23:25:32 | 00,900,360 | ---- | M | MD5 = F06885E70F0746F082CFC196288B3412] (Trend Micro Inc.)
    64bit-(WinDefend) Windows Defender [Win32_Shared | Auto | Stopped] -> C:\Program Files\Windows Defender\mpsvc.dll -> [2008/01/20 22:47:32 | 00,383,544 | ---- | M | MD5 = 7D2A43E8FDF725A1133F6C6056A72CDC] (Microsoft Corporation)
    64bit-(WMPNetworkSvc) Windows Media Player Network Sharing Service [Win32_Own | On_Demand | Running] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/20 22:52:15 | 01,216,000 | ---- | M | MD5 = 56382A5EB85A25446745E3BD6D50A3A5] (Microsoft Corporation)
    (AOL ACS) AOL Connectivity Service [Win32_Own | Auto | Running] -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
    (clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:42:14 | 00,066,368 | ---- | M | MD5 = 8EE772032E2FE80A924F3B8DD5082194] (Microsoft Corporation)
    (clr_optimization_v2.0.50727_64) Microsoft .NET Framework NGEN v2.0.50727_X64 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:39:54 | 00,089,920 | ---- | M | MD5 = CE07A466201096F021CD09D631B21540] (Microsoft Corporation)
    (ehRecvr) Windows Media Center Receiver Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehRecvr.exe -> [2008/01/20 22:51:36 | 00,344,064 | ---- | M | MD5 = 14CE384D2E27B64C256BDA4DC39C312D] (Microsoft Corporation)
    (ehSched) Windows Media Center Scheduler Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehsched.exe -> [2008/01/20 22:51:36 | 00,153,600 | ---- | M | MD5 = B93159C1313D66FDFBBE876F5189CD52] (Microsoft Corporation)
    (ehstart) Windows Media Center Service Launcher [Win32_Shared | Auto | Stopped] -> C:\Windows\ehome\ehstart.dll -> [2006/11/02 11:03:48 | 00,015,360 | ---- | M | MD5 = F5EE2527D74449868E3C3227A59BCD28] (Microsoft Corporation)
    (FontCache3.0.0.0) Windows Presentation Foundation Font Cache 3.0.0.0 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe -> [2009/02/18 14:40:04 | 00,042,840 | ---- | M | MD5 = BC5B0BE5AF3510B0FD8C140EE42C6D3E] (Microsoft Corporation)
    (GameConsoleService) GameConsoleService [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe -> [2008/05/05 18:25:46 | 00,165,416 | ---- | M | MD5 = 617DC2877015270914CA3C03873560D5] (WildTangent, Inc.)
    (gusvc) Google Software Updater [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe -> [2009/04/25 02:15:11 | 00,182,768 | ---- | M | MD5 = CC839E8D766CC31A7710C9F38CF3E375] (Google)
    (idsvc) Windows CardSpace [Win32_Shared | Unknown | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 14:39:11 | 00,857,432 | ---- | M | MD5 = 749F5F8CEDCA70F2A512945325FC489D] (Microsoft Corporation)
    (KeyIso) CNG Key Isolation [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\keyiso.dll -> [2006/11/02 05:46:05 | 00,018,944 | ---- | M | MD5 = 74C2F29CC612B2B34231BEBD824D2FB2] (Microsoft Corporation)
    (lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysWow64\lxbccoms.exe -> [2007/03/16 01:24:02 | 00,537,520 | ---- | M | MD5 = 31E0CCB891B94056E062886CB69174D2] ( )
    (MSDTC) Distributed Transaction Coordinator [Win32_Own | Unknown | Stopped] -> C:\Windows\SysWow64\Msdtc -> [2006/11/02 09:34:14 | 00,000,000 | ---D | M]
    (Netlogon) Netlogon [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\netlogon.dll -> [2009/04/11 02:28:23 | 00,592,896 | ---- | M | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
    (odserv) Microsoft Office Diagnostics Service [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -> [2007/08/24 07:19:12 | 00,443,776 | ---- | M | MD5 = E54AA592A65F317390EEE386A8821692] (Microsoft Corporation)
    (ose) Office Source Engine [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE -> [2006/10/26 18:03:08 | 00,145,184 | ---- | M | MD5 = 5A432A042DAE460ABE7199B758E8606C] (Microsoft Corporation)
    (Partner Service) Partner Service [Win32_Own | On_Demand | Stopped] -> C:\ProgramData\Partner\partner.exe -> [2009/04/11 15:53:35 | 00,110,576 | ---- | M | MD5 = 3C6E7D73B0E9BC21D5E4B531AB7EC091] (Google Inc.)
    (RichVideo) Cyberlink RichVideo Service(CRVS) [Win32_Own | Auto | Running] -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
    (vds) Virtual Disk [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vds.mof -> [2006/11/02 02:35:15 | 00,060,994 | ---- | M | MD5 = 21A96F0C1B123F2463C6D624F125EAC9] ()
    (VSS) Volume Shadow Copy [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vss.mof -> [2006/11/02 02:35:15 | 00,055,846 | ---- | M | MD5 = 9E4414C27EEC14EAF36A4BD24CFEEA93] ()

    [Driver Services - Safe List]
    64bit-(AgereSoftModem) Agere Systems Soft Modem [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\agrsm64.sys -> [2008/07/22 22:54:33 | 01,253,376 | ---- | M | MD5 = 385471F8147E1BD6A08C031E3AAD3910] (Agere Systems)
    64bit-(AVer88xHD) AVerMedia 23888 AvStream Video Capture [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\AVer88xHD64.sys -> [2007/04/10 04:51:10 | 00,432,256 | ---- | M | MD5 = 5E76DEBBA4311AC1C44DE83D59A9584E] (AVerMedia TECHNOLOGIES, Inc.)
    64bit-(HdAudAddService) Microsoft 1.1 UAA Function Driver for High Definition Audio Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\HdAudio.sys -> [2006/11/02 01:28:10 | 00,273,920 | ---- | M | MD5 = DF45F8142DC6DF9D18C39B3EFFBD0409] (Microsoft Corporation)
    64bit-(nvamacpi) Nvidia Away Mode System [Kernel | Boot | Running] -> C:\Windows\SysNative\DRIVERS\NVAMACPI.sys -> [2005/08/27 13:19:21 | 00,028,192 | ---- | M | MD5 = 2B0885148F27B49365D3AD489F7D7B70] (NVIDIA Corporation)
    64bit-(PAC207) SoC PC-Camera [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\PFC027.SYS -> [2006/12/05 11:34:26 | 00,572,416 | ---- | M | MD5 = 3A6DCEB1848470320E4A3C12D7A35B1C] (PixArt Imaging Inc.)
    64bit-(RSUSBSTOR) RTS5121.Sys Realtek USB Card Reader [Kernel | On_Demand | Running] -> C:\Windows\SysNative\Drivers\RTS5121.sys -> [2008/06/04 02:06:54 | 00,204,288 | ---- | M | MD5 = 1807EA271C9685A25571D94AE4E3A8DD] (Realtek Semiconductor Corporation)
    64bit-(tmpreflt) tmpreflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmpreflt.sys -> [2009/03/05 21:17:50 | 00,042,000 | ---- | M | MD5 = 681747A1EDEF58209192B2C4975516FC] (Trend Micro Inc.)
    64bit-(tmtdi) Trend Micro TDI Driver [Kernel | System | Running] -> C:\Windows\SysNative\DRIVERS\tmtdi.sys -> [2009/03/03 19:12:46 | 00,096,784 | ---- | M | MD5 = C12D4E5E96A8CE0FD6F74F9C43191CFE] (Trend Micro Inc.)
    64bit-(tmxpflt) tmxpflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmxpflt.sys -> [2009/03/05 21:17:50 | 00,235,536 | ---- | M | MD5 = 77E4C0F95931FEEB32E55A8596C9B79A] (Trend Micro Inc.)
    64bit-(vsapint) vsapint [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\vsapint.sys -> [2009/03/05 21:17:50 | 01,839,632 | ---- | M | MD5 = F7D9B9631A59C9E4C14C6904D4376C13] (Trend Micro Inc.)
    64bit-(wanatw) WAN Miniport (ATW) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\wanatw64.sys -> [2006/11/29 18:24:49 | 00,024,064 | ---- | M | MD5 = ECEB715BECE47E101DDEC06B11126066] (America Online, Inc.)
    64bit-(WpdUsb) WpdUsb [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\wpdusb.sys -> [2008/01/20 22:47:28 | 00,046,080 | ---- | M | MD5 = 6329D1990DB931073B86AB5946D8E317] (Microsoft Corporation)
    (int15) int15 [Kernel | Auto | Running] -> C:\Windows\SysWOW64\drivers\int15_64.sys -> [2008/06/11 15:13:24 | 00,017,952 | ---- | M | MD5 = 8C7FA71CB1EBCD3EDE8958D27B1BF0B4] (Acer, Inc.)
    (mpsdrv) Windows Firewall Authorization Driver [Kernel | On_Demand | Running] -> C:\Windows\SysWow64\Wbem\mpsdrv.mof -> [2006/09/18 17:35:23 | 00,001,088 | ---- | M | MD5 = 74D68CB40BCD45AAE89A8BECC87D3868] ()
    (Tcpip) TCP/IP Protocol Driver [Kernel | Boot | Running] -> C:\Windows\SysWow64\Wbem\tcpip.mof -> [2006/09/18 17:36:40 | 00,003,066 | ---- | M | MD5 = EEC4A068DE477651214F6C8014ECBEC0] ()

    [Registry - Safe List]
    < 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
    HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
    HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\System32\blank.htm ->
    HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
    HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
    HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
    HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\SysWOW64\blank.htm ->
    HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
    HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_LOCAL_MACHINE\: URLSearchHooks\\"{EA756889-2338-43DB-8F07-D1CA6FB9C90D}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [IAOLTBSearch Class] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    < Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> ->
    HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> ->
    HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Local Page" -> C:\Windows\system32\blank.htm ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"SearchDefaultBranded" -> 1 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Start Page" -> http://www.google.com/ ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"StartPageCache" -> 1 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: "ProxyEnable" -> 0 ->
    < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
    HKLM\software\mozilla\Firefox\Extensions -> ->
    HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} -> C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\] -> [2009/06/26 04:11:05 | 00,000,000 | ---D | M]
    < FireFox Extensions [User Folders] > ->
    < HOSTS File > (761 bytes and 20 lines) -> C:\Windows\SysNative\Drivers\etc\hosts ->
    Reset Hosts
    127.0.0.1 localhost
    ::1 localhost
    < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
    {02478D38-C3F9-4efb-9B51-7695ECA05670} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [&Yahoo! Toolbar Helper] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
    {18DF081C-E8AD-4283-A596-FA578C2EBDC3} [HKLM] -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [Adobe PDF Link Helper] -> [2009/02/27 12:07:26 | 00,075,128 | ---- | M | MD5 = 5CF6190CD875DA6B35256FEE573E7908] (Adobe Systems Incorporated)
    {5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
    {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar Loader] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} [HKLM] -> C:\ProgramData\Partner\partner.dll [Partner BHO Class] -> [2009/04/11 15:53:35 | 00,157,168 | ---- | M | MD5 = EEBD77C767456AB5A8290A2007D8F823] (Google Inc.)
    {9030D464-4C02-4ABF-8ECC-5164760863C6} [HKLM] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [Windows Live Sign-in Helper] -> [2008/11/18 17:47:06 | 00,408,952 | ---- | M | MD5 = 4B9CBC54FA3A846649F59BC185DF63DF] (Microsoft Corporation)
    {AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar Helper] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
    {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [Google Toolbar Notifier BHO] -> [2009/04/25 02:15:12 | 00,668,656 | ---- | M | MD5 = D1585B06DED161E13B905DC4FFBF7F12] (Google Inc.)
    {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [Google Dictionary Compression sdch] -> [2009/04/25 02:02:33 | 00,470,512 | ---- | M | MD5 = E35BCCB1D1D96F8E5B09C72AF70EC3F6] (Google Inc.)
    {DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2009/04/19 22:18:14 | 00,035,840 | ---- | M | MD5 = 96A225C7F5346A9E81FC3DFA89A900C0] (Sun Microsystems, Inc.)
    {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [SingleInstance Class] -> [2008/07/28 06:47:42 | 00,160,496 | ---- | M | MD5 = F64C4241FE5E519F62C47C361DC671D7] (Yahoo! Inc)
    < Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
    "{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [Yahoo! Toolbar] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
    < Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\Software\Microsoft\Internet Explorer\Toolbar\ ->
    WebBrowser\\"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
    WebBrowser\\"{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    < 64bit-Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "NvCplDaemon" -> C:\Windows\SysNative\NvCpl.DLL [RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup] -> [2008/10/07 14:03:00 | 15,934,496 | ---- | M | MD5 = ABB919582B746BF56271F1E4B2410498] (NVIDIA Corporation)
    "NVRaidService" -> C:\Windows\SysNative\nvraidservice.exe [C:\Windows\system32\nvraidservice.exe] -> [2008/08/18 23:01:52 | 00,333,344 | ---- | M | MD5 = 5686E81D6247A61C67F2C1055271205C] (NVIDIA Corporation)
    "RtHDVCpl" -> C:\Windows\RAVCpl64.exe [RAVCpl64.exe] -> [2008/09/18 07:02:14 | 06,495,264 | ---- | M | MD5 = BAA1FEA046B3F857C82595B396719AAC] (Realtek Semiconductor)
    "Skytel" -> C:\Windows\SkyTel.exe [Skytel.exe] -> [2008/09/18 07:02:52 | 01,833,504 | ---- | M | MD5 = C2B406805F8F6B8642464FF053A22F8F] (Realtek Semiconductor Corp.)
    "UfSeAgnt.exe" -> C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe ["C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"] -> [2009/03/31 23:25:36 | 00,989,432 | ---- | M | MD5 = ED1EC273AF8E0BFCF34EE76F210EF482] (Trend Micro Inc.)
    "Windows Defender" -> C:\Program Files\Windows Defender\MSASCui.exe [%ProgramFiles%\Windows Defender\MSASCui.exe -hide] -> [2008/01/20 22:47:32 | 01,584,184 | ---- | M | MD5 = 48DD40677817CE1053C2315F5A87E0D3] (Microsoft Corporation)
    < Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "Adobe Reader Speed Launcher" -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe ["C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"] -> [2009/02/27 17:10:28 | 00,035,696 | ---- | M | MD5 = 452FA961163EF4AEE4815796A13AB2CF] (Adobe Systems Incorporated)
    "eRecoveryService" -> [] -> File not found
    "HostManager" -> C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe ["C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"] -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
    "LchDrvKey" -> C:\Windows\LchDrvKey.exe [LchDrvKey.exe] -> [2007/03/28 21:55:54 | 00,036,864 | ---- | M | MD5 = B94C288D7BC9760A01304880A7CE18EB] ()
    "LedKey" -> C:\Windows\CNYHKey.exe [CNYHKey.exe] -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
    "P2Go_Menu" -> C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"] -> [2008/06/13 22:11:32 | 00,210,216 | ---- | M | MD5 = 601D77C0AA637A99073210894554B6BA] (CyberLink Corp.)
    "SunJavaUpdateSched" -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe ["C:\Program Files (x86)\Java\jre6\bin\jusched.exe"] -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
    "UpdatePDRShortCut" -> C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"] -> [2008/01/04 15:02:26 | 00,222,504 | ---- | M | MD5 = AAD52179D4A526AD4A705B87C6E4F72A] (CyberLink Corp.)
    < RunOnce [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
    "Malwarebytes' Anti-Malware" -> ["C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /install /silent] -> File not found
    < Run [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
    "WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
    < Run [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
    "WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
    < Run [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "AOL Fast Start" -> C:\Program Files (x86)\AOL 9.1\AOL.EXE ["C:\Program Files (x86)\AOL 9.1\AOL.EXE" -b] -> [2008/11/06 07:42:54 | 00,050,472 | ---- | M | MD5 = C05CF2CA46A3AB41E6A2632A4C940A87] (AOL, LLC.)
    "ehTray.exe" -> C:\Windows\ehome\ehTray.exe [C:\Windows\ehome\ehTray.exe] -> [2008/01/20 22:51:33 | 00,138,240 | ---- | M | MD5 = 65437DAD4F238EA9549408A783002222] (Microsoft Corporation)
    "Messenger (Yahoo!)" -> C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe ["C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet] -> [2009/03/18 18:50:30 | 04,363,504 | ---- | M | MD5 = DB06B12E8DE572AB8B8C482E3EE574F5] (Yahoo! Inc.)
    "Sidebar" -> C:\Program Files\Windows Sidebar\sidebar.exe [C:\Program Files\Windows Sidebar\sidebar.exe /autoRun] -> [2009/04/11 03:10:53 | 01,555,968 | ---- | M | Unable to obtain MD5] (Microsoft Corporation)
    "swg" -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe] -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
    "WMPNSCFG" -> C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe [C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe] -> File not found
    < RunOnce [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
    "Shockwave Updater" -> [C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"[URL]http://www.playhub.com/sports-games/313/Sewer-Run.html[/URL]"] -> File not found
    < Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}
    \Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppName" -> [MyCamera.exe] -> File not found
    \Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppPath" -> C:\Program Files (x86)\Canon\CameraWindow\MyCamera [C:\Program Files (x86)\Canon\CameraWindow\MyCamera] -> [2009/05/04 13:41:48 | 00,000,000 | ---D | M]
    \Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"Policy" -> [3] -> File not found
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}
    \Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppName" -> [ZoomBrowser.exe] -> File not found
    \Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppPath" -> C:\Program Files (x86)\Canon\ZoomBrowser EX\Program [C:\Program Files (x86)\Canon\ZoomBrowser EX\Program] -> [2009/05/04 13:42:05 | 00,000,000 | ---D | M]
    \Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"Policy" -> [3] -> File not found
    < CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
    [URL="file://\\"NoActiveDesktop"]\\"NoActiveDesktop[/URL]" -> [1] -> File not found
    [URL="file://\\"NoActiveDesktopChanges"]\\"NoActiveDesktopChanges[/URL]" -> [1] -> File not found
    [URL="file://\\"ForceActiveDesktopOn"]\\"ForceActiveDesktopOn[/URL]" -> [0] -> File not found
    [URL="file://\\"BindDirectlyToPropertySetStorage"]\\"BindDirectlyToPropertySetStorage[/URL]" -> [0] -> File not found
    < CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
    [URL="file://\\"ConsentPromptBehaviorAdmin"]\\"ConsentPromptBehaviorAdmin[/URL]" -> [2] -> File not found
    [URL="file://\\"ConsentPromptBehaviorUser"]\\"ConsentPromptBehaviorUser[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableInstallerDetection"]\\"EnableInstallerDetection[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableLUA"]\\"EnableLUA[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableSecureUIAPaths"]\\"EnableSecureUIAPaths[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableVirtualization"]\\"EnableVirtualization[/URL]" -> [1] -> File not found
    [URL="file://\\"PromptOnSecureDesktop"]\\"PromptOnSecureDesktop[/URL]" -> [1] -> File not found
    [URL="file://\\"ValidateAdminCodeSignatures"]\\"ValidateAdminCodeSignatures[/URL]" -> [0] -> File not found
    [URL="file://\\"dontdisplaylastusername"]\\"dontdisplaylastusername[/URL]" -> [0] -> File not found
    [URL="file://\\"legalnoticecaption"]\\"legalnoticecaption[/URL]" -> [] -> File not found
    [URL="file://\\"legalnoticetext"]\\"legalnoticetext[/URL]" -> [] -> File not found
    [URL="file://\\"scforceoption"]\\"scforceoption[/URL]" -> [0] -> File not found
    [URL="file://\\"shutdownwithoutlogon"]\\"shutdownwithoutlogon[/URL]" -> [1] -> File not found
    [URL="file://\\"undockwithoutlogon"]\\"undockwithoutlogon[/URL]" -> [1] -> File not found
    [URL="file://\\"FilterAdministratorToken"]\\"FilterAdministratorToken[/URL]" -> [0] -> File not found
    [URL="file://\\"EnableUIADesktopToggle"]\\"EnableUIADesktopToggle[/URL]" -> [0] -> File not found
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
    \UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found
    < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
    [URL="file://\\"NoDesktopCleanupWizard"]\\"NoDesktopCleanupWizard[/URL]" -> [1] -> File not found
    < Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
    {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Button: Blog This] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
    {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Menu: &Blog This in Windows Live Writer] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
    {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Button: Send to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
    {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Menu: S&end to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
    {92780B25-18CC-41C8-B9BE-3C9C571A8263}:{FF059E31-CC5A-4E2E-BF3B-96E929D65503} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL [Button: Research] -> [2006/10/27 00:12:22 | 00,040,424 | ---- | M | MD5 = 7FC19DA1DC70C78D2FBD7A1D10942051] (Microsoft Corporation)
    < 64bit-Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
    "" -> http://
    < Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
    "" -> http://
    < 64bit-Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < 64bit-Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
    objects_aol.com
    [*] -> Out of zone range - ( 5 ) ->
    1 domain(s) and sub-domain(s) not assigned to a zone.
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
    {166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab [Shockwave ActiveX Control] ->
    {4871A87A-BFDD-4106-8153-FFDE2BAC2967} [HKLM] -> http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab [DLM Control] ->
    {9C23D886-43CB-43DE-B2DB-112A68D7E10A} [HKLM] -> http://lads.myspace.com/upload/MySpaceUploader2.cab [MySpace Uploader Control] ->
    {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} [HKLM] -> http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe [Reg Error: Key error.] ->
    < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
    DhcpNameServer -> 10.0.0.1 ->
    < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
    {9712E214-2095-4240-BE72-812D046DB980}\\DhcpNameServer -> 10.0.0.1 (NVIDIA nForce 10/100/1000 Mbps Ethernet ) ->
    < 64bit-Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
    64bit-*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
    explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 03:10:17 | 03,079,168 | ---- | M | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
    *MultiFile Done* -> ->
    < Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
    *Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
    explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/04/11 02:27:36 | 02,926,592 | ---- | M | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
    *MultiFile Done* -> ->
    < Vista Public Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\AuthorizedApplications ->
    < Vista Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications ->
    < Vista Active Firewall Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
    {3F8907F3-E4DE-4260-BB5F-938A3DE8E186} -> lport=2869 | protocol=6 | dir=in | action=allow | name=windows live messenger (upnp-in) | app=system |
    {4104AA77-862A-4930-8044-BB2521DFCFFE} -> lport=1900 | protocol=17 | dir=in | action=allow | name=windows live messenger (ssdp-in) | app=svchost.exe | svc=ssdpsrv |
    < Vista Active Application Exception Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
    {0B724075-D525-47F6-8D4B-9E245EC70262} -> profile=private | protocol=6 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
    {109D9062-5376-4803-87AC-657754C3D249} -> profile=private | protocol=17 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
    {1B42F944-37D0-4489-BD8D-B48BEA9B315D} -> dir=in | action=allow | name=windows live messenger | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
    {40D8ACBC-D4AA-4FF0-9CBC-D519575686A9} -> profile=private | protocol=17 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
    {44211C36-AA6F-4C10-88A7-C468053E0DED} -> dir=in | action=allow | name=cyberlink powerdirector | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |
    {52C00A5E-B486-4A04-8830-50426C0CDEC1} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
    {5E7E5103-2C83-4832-BB34-45E2BFA3E760} -> profile=public | protocol=6 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    {79F58122-9134-420A-9DE3-606741936991} -> profile=private | protocol=6 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
    {874CBC43-45DF-4CB6-A706-3036EC2A1EFA} -> dir=in | action=allow | name=windows live call | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe |
    {8FF32FF2-91BF-4786-BAF7-ED52E99B5686} -> profile=private | protocol=17 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
    {9083699D-DA2A-489B-AF64-AE61BBDEBC78} -> profile=private | protocol=17 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
    {9B85772F-6E6E-42FB-9036-DC90C765F5E5} -> profile=private | protocol=6 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
    {A3E0E701-CF8A-47F7-9C91-31067D3050A6} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
    {A442B7B5-04C7-47C8-A27C-FDBA207AB5AB} -> profile=private | protocol=6 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
    {A6FF2A80-7BA5-4D3E-9E9E-3A8882969504} -> profile=private | protocol=17 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
    {B8E5CDEB-F407-4A20-A242-DC1CC504AA7E} -> profile=private | protocol=6 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
    {C0142577-923F-4E22-A0DF-8489C85CA3DC} -> profile=private | protocol=17 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
    {C11858D5-051F-42B8-9C8D-2B05E596ABDF} -> profile=private | protocol=6 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
    {C4ED3121-7FF3-42C6-9C51-135DF8317CD0} -> profile=private | protocol=6 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
    {C88934A9-D75C-47E1-B214-23297DD1DBAF} -> profile=private | protocol=17 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
    {C9C3854F-F530-45C8-B10E-B15236BD2332} -> profile=private | protocol=6 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
    {CDA3C051-F009-4EDF-8FF7-D98D030B5BFC} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
    {D9E28F03-2CED-4A60-9C0B-202149E69932} -> profile=private | protocol=17 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
    {E1FE8404-25BC-4E59-B8AF-A215A4B51D1F} -> profile=public | protocol=17 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    {E5638F40-7C0E-4BBD-A02A-50501C0E8432} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
    {EB9061D6-6081-4E5D-954F-284764B346C1} -> profile=private | protocol=6 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
    {F55E85FC-E7D1-4771-8D3F-22F505B458D0} -> profile=private | protocol=17 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
    {FC53E6EB-19E6-4867-BA34-8B33A3833C39} -> dir=in | action=allow | name=windows live sync | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
    TCP Query User{907A49E8-F920-4158-8172-426988741353}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=6 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
    UDP Query User{99BE73CA-B2F5-40F4-BBB0-0AA16F0D47DE}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=17 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
    < SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
    "AlternateShell" -> cmd.exe ->
    < CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
    "AutoRun" -> 1 ->
    "DisplayName" -> CD-ROM Driver ->
    "ImagePath" -> C:\Windows\SysNative\DRIVERS\cdrom.sys [system32\DRIVERS\cdrom.sys] -> [2009/04/11 01:34:39 | 00,079,872 | ---- | M | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
    < MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->
  • edited June 2009
    [Files/Folders - Created Within All Days]
    OTS.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:13 | 00,513,024 | ---- | C | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
    Malwarebytes -> C:\Users\Owner\AppData\Roaming\Malwarebytes -> [2009/06/28 19:30:23 | 00,000,000 | ---D | C]
    Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/06/28 19:30:22 | 00,000,850 | ---- | C | MD5 = 9AD6C291BC07B05FD556F5132E14FCCE] ()
    mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2009/06/28 19:30:19 | 00,038,160 | ---- | C | MD5 = 148D5D488BA502381C2B7B615F7F84CF] (Malwarebytes Corporation)
    mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2009/06/28 19:30:17 | 00,022,040 | ---- | C | MD5 = CEDB73ADD243D2D654A32C191A9DBDB5] (Malwarebytes Corporation)
    Malwarebytes' Anti-Malware -> C:\Program Files (x86)\Malwarebytes' Anti-Malware -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
    Malwarebytes -> C:\ProgramData\Malwarebytes -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
    Image14.png -> C:\Users\Owner\Desktop\Image14.png -> [2009/06/28 05:34:24 | 00,161,417 | ---- | C | MD5 = A71B728D81BCC7F64D75D2520A3D7CBE] ()
    Image13.png -> C:\Users\Owner\Desktop\Image13.png -> [2009/06/28 05:23:11 | 00,042,455 | ---- | C | MD5 = 4086B04E50B51B9667ECA29B1638094F] ()
    1zombiegif.gif -> C:\Users\Owner\Desktop\1zombiegif.gif -> [2009/06/28 05:14:52 | 00,017,429 | ---- | C | MD5 = 0A2293FB2A5E6E56AAD59CAFE3C2E634] ()
    Image6.jpg -> C:\Users\Owner\Desktop\Image6.jpg -> [2009/06/28 05:05:00 | 00,021,252 | ---- | C | MD5 = B603A15512B59F8265DA1E0684A46375] ()
    12.png -> C:\Users\Owner\Desktop\12.png -> [2009/06/28 05:04:34 | 00,068,970 | ---- | C | MD5 = C235CB85D05D8D7A8D69C3FE1E311E43] ()
    foliage-swirls-images.zip -> C:\Users\Owner\Desktop\foliage-swirls-images.zip -> [2009/06/28 03:58:52 | 03,039,670 | ---- | C | MD5 = 92964B63B5649364E4C41DADE58F3A13] ()
    psp -> C:\Users\Owner\Desktop\psp -> [2009/06/28 03:57:16 | 00,000,000 | ---D | C]
    fairy-wings-images -> C:\Users\Owner\Desktop\fairy-wings-images -> [2009/06/28 03:51:36 | 00,000,000 | ---D | C]
    HijackThis.lnk -> C:\Users\Owner\Desktop\HijackThis.lnk -> [2009/06/28 02:04:16 | 00,001,930 | ---- | C | MD5 = 284D8E8B7E19D0413BB2F9BF09BB64A1] ()
    Trend Micro -> C:\Program Files (x86)\Trend Micro -> [2009/06/28 02:04:16 | 00,000,000 | ---D | C]
    222.jpg -> C:\Users\Owner\Desktop\222.jpg -> [2009/06/27 00:22:56 | 00,956,953 | ---- | C | MD5 = 4E6AB33D6C5DB3B5038B52A0F23F66B0] ()
    l_3d3493b255294081a56ede11ec7e2102.jpg -> C:\Users\Owner\Desktop\l_3d3493b255294081a56ede11ec7e2102.jpg -> [2009/06/25 22:22:11 | 00,032,565 | ---- | C | MD5 = 7D51162BBF7ED9164B581B8232B76876] ()
    love.png -> C:\Users\Owner\Desktop\love.png -> [2009/06/24 20:54:20 | 00,003,077 | ---- | C | MD5 = 926A48CAC6C27D00FB0BC187560DD821] ()
    love.jpg -> C:\Users\Owner\Desktop\love.jpg -> [2009/06/24 20:53:40 | 00,009,591 | ---- | C | MD5 = 4C308250E84C33918F0D5D1BEF8D055C] ()
    Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2009/06/22 18:24:27 | 00,001,919 | ---- | C | MD5 = 95478CD74436938A7C9C41158D8A132A] ()
    Adobe -> C:\Program Files (x86)\Common Files\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
    Adobe -> C:\Program Files (x86)\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
    NINA.html -> C:\Users\Owner\Documents\NINA.html -> [2009/06/20 02:14:40 | 00,000,989 | ---- | C | MD5 = 4C33571BCB02BECF1362DE1F9DFD2646] ()
    English_PSPX_RegXtras.exe -> C:\Users\Owner\Desktop\English_PSPX_RegXtras.exe -> [2009/06/12 16:14:32 | 15,935,168 | ---- | C | MD5 = 99FAE6E1E7E13FA9AD43336308084709] (Corel )
    Download Manager -> C:\Users\Owner\AppData\Roaming\Download Manager -> [2009/06/12 16:14:25 | 00,000,000 | ---D | C]
    rpcrt4.dll -> C:\Windows\SysNative\rpcrt4.dll -> [2009/06/09 16:57:55 | 01,305,600 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    rpcrt4.dll -> C:\Windows\SysWow64\rpcrt4.dll -> [2009/06/09 16:57:54 | 00,677,376 | ---- | C | MD5 = 0ABE67004EB4C162F4456E64F90A11FD] (Microsoft Corporation)
    localspl.dll -> C:\Windows\SysNative\localspl.dll -> [2009/06/09 16:57:43 | 00,772,608 | ---- | C | MD5 = 6D82554101FFC7F3F048611FB55327BD] (Microsoft Corporation)
    localspl.dll -> C:\Windows\SysWow64\localspl.dll -> [2009/06/09 16:57:43 | 00,623,616 | ---- | C | MD5 = 3F5F5A4D358126FA69C79FB15A4878B8] (Microsoft Corporation)
    mshtml.dll -> C:\Windows\SysWow64\mshtml.dll -> [2009/06/09 16:57:29 | 05,936,128 | ---- | C | MD5 = 89CCF8069B59780BDEF45E345E671347] (Microsoft Corporation)
    ieframe.dll -> C:\Windows\SysWow64\ieframe.dll -> [2009/06/09 16:57:28 | 11,064,832 | ---- | C | MD5 = 4BDD02DD6FDC19698DAA841554782897] (Microsoft Corporation)
    mshtml.dll -> C:\Windows\SysNative\mshtml.dll -> [2009/06/09 16:57:28 | 09,234,432 | ---- | C | MD5 = BAC71BF7A84AD0BDBD58E46B68D9EB81] (Microsoft Corporation)
    ieframe.dll -> C:\Windows\SysNative\ieframe.dll -> [2009/06/09 16:57:27 | 12,454,912 | ---- | C | MD5 = 01C3CB1BB522A96804AF62C635108488] (Microsoft Corporation)
    iertutil.dll -> C:\Windows\SysNative\iertutil.dll -> [2009/06/09 16:57:27 | 02,332,672 | ---- | C | MD5 = 6321C0B8E53C80775BC93BA6898FEFFC] (Microsoft Corporation)
    iertutil.dll -> C:\Windows\SysWow64\iertutil.dll -> [2009/06/09 16:57:27 | 01,985,024 | ---- | C | MD5 = AFA8DE49250609F01EF8D7C488993B45] (Microsoft Corporation)
    urlmon.dll -> C:\Windows\SysWow64\urlmon.dll -> [2009/06/09 16:57:27 | 01,207,808 | ---- | C | MD5 = CC12F6C30002D4C0B9FA7CCE6D52F71D] (Microsoft Corporation)
    mshtml.tlb -> C:\Windows\SysWow64\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    mshtml.tlb -> C:\Windows\SysNative\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | MD5 = E1E65F6D47527415EB364E21FB37682F] (Microsoft Corporation)
    inetcpl.cpl -> C:\Windows\SysNative\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,538,560 | ---- | C | MD5 = 1D9BFC7F4451057DAC8943DB1FC07EB6] (Microsoft Corporation)
    urlmon.dll -> C:\Windows\SysNative\urlmon.dll -> [2009/06/09 16:57:26 | 01,484,288 | ---- | C | MD5 = D7B749FAD99A86EA743A2A339B887ABA] (Microsoft Corporation)
    inetcpl.cpl -> C:\Windows\SysWow64\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,469,440 | ---- | C | MD5 = 2C1BD1E52DECC9B5F46BA484ED01A68E] (Microsoft Corporation)
    wininet.dll -> C:\Windows\SysNative\wininet.dll -> [2009/06/09 16:57:26 | 01,146,368 | ---- | C | MD5 = 18A01A9307257637D8FB4FA86F4A689F] (Microsoft Corporation)
    wininet.dll -> C:\Windows\SysWow64\wininet.dll -> [2009/06/09 16:57:26 | 00,915,456 | ---- | C | MD5 = D78B62CC91F043CED52F23F0085E7FE2] (Microsoft Corporation)
    iedkcs32.dll -> C:\Windows\SysNative\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,457,728 | ---- | C | MD5 = DE1C1049F2C48DA5CC6BD7B1CC8FDD7F] (Microsoft Corporation)
    iedkcs32.dll -> C:\Windows\SysWow64\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,385,536 | ---- | C | MD5 = B012602C3FD7D55222E9C03BB6213085] (Microsoft Corporation)
    ieui.dll -> C:\Windows\SysNative\ieui.dll -> [2009/06/09 16:57:26 | 00,219,136 | ---- | C | MD5 = 2CF92A1FEFBE01F92D45D2A94DEABEDD] (Microsoft Corporation)
    ie4uinit.exe -> C:\Windows\SysWow64\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,173,056 | ---- | C | MD5 = 6A3FFA937B9C7B19BDA1AB0DE5B4CCDE] (Microsoft Corporation)
    ieui.dll -> C:\Windows\SysWow64\ieui.dll -> [2009/06/09 16:57:26 | 00,164,352 | ---- | C | MD5 = 90E89697993E0800B32A0E7BC615970F] (Microsoft Corporation)
    iesetup.dll -> C:\Windows\SysNative\iesetup.dll -> [2009/06/09 16:57:26 | 00,077,312 | ---- | C | MD5 = 0CA82EF5FD31BE470914F27C3F23C988] (Microsoft Corporation)
    iernonce.dll -> C:\Windows\SysNative\iernonce.dll -> [2009/06/09 16:57:26 | 00,072,192 | ---- | C | MD5 = 2E97D916BA32C2263B2EDC1303588300] (Microsoft Corporation)
    iesetup.dll -> C:\Windows\SysWow64\iesetup.dll -> [2009/06/09 16:57:26 | 00,071,680 | ---- | C | MD5 = 3B88C6AD6525FE839AE465AD6F9CEAB1] (Microsoft Corporation)
    ie4uinit.exe -> C:\Windows\SysNative\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,070,656 | ---- | C | MD5 = 25941103997FEACAF0FEE929171E0DD5] (Microsoft Corporation)
    iernonce.dll -> C:\Windows\SysWow64\iernonce.dll -> [2009/06/09 16:57:26 | 00,055,808 | ---- | C | MD5 = 19267896F66836EAB6C0D458A9C0A7BE] (Microsoft Corporation)
    jsproxy.dll -> C:\Windows\SysNative\jsproxy.dll -> [2009/06/09 16:57:26 | 00,031,744 | ---- | C | MD5 = B5E87364A9099745131012130CDA56D6] (Microsoft Corporation)
    jsproxy.dll -> C:\Windows\SysWow64\jsproxy.dll -> [2009/06/09 16:57:26 | 00,025,600 | ---- | C | MD5 = 5DD32FE00D58AB21A16B91F063EA0CCB] (Microsoft Corporation)
    win32k.sys -> C:\Windows\SysNative\win32k.sys -> [2009/06/09 16:55:58 | 02,745,344 | ---- | C | MD5 = D29C0E2572452DF3819A1FD70DF70960] (Microsoft Corporation)
    sabrina aunt kelly letter.rtf -> C:\Users\Owner\Documents\sabrina aunt kelly letter.rtf -> [2009/06/06 11:56:11 | 00,000,767 | ---- | C | MD5 = 9F27BD1E947E628ED8C075DF231D4BE6] ()
    ZoomBrowser EX.lnk -> C:\Users\Owner\ZoomBrowser EX.lnk -> [2009/06/04 23:26:57 | 00,001,125 | ---- | C | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
    Personal Printing Guide.lnk -> C:\Users\Owner\Personal Printing Guide.lnk -> [2009/06/04 23:26:57 | 00,001,039 | ---- | C | MD5 = 189A154484643D47EF3D7D795C702A43] ()
    INFORMATION - Shortcut.lnk -> C:\Users\Owner\INFORMATION - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,395 | ---- | C | MD5 = 31534B3665D8838EDA892E6E252B1D4D] ()
    Computer - Shortcut.lnk -> C:\Users\Owner\Computer - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,104 | ---- | C | MD5 = FD8F1F54665903B748744026D47A4967] ()
    vi-VN -> C:\Windows\SysWow64\vi-VN -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    eu-ES -> C:\Windows\SysWow64\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    eu-ES -> C:\Windows\SysNative\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    ca-ES -> C:\Windows\SysWow64\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    ca-ES -> C:\Windows\SysNative\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    vi-VN -> C:\Windows\SysNative\vi-VN -> [2009/06/04 05:23:38 | 00,000,000 | ---D | C]
    EventProviders -> C:\Windows\SysNative\EventProviders -> [2009/06/04 04:48:51 | 00,000,000 | ---D | C]
    NlsLexicons0007.dll -> C:\Windows\SysNative\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = AFA4BC5B25F9280C6B954A37BF74C343] (Microsoft Corporation)
    NlsLexicons0007.dll -> C:\Windows\SysWow64\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = 795166DED9B1B32136B150A12A1DEBAE] (Microsoft Corporation)
    SLsvc.exe -> C:\Windows\SysNative\SLsvc.exe -> [2009/06/04 04:48:32 | 02,582,016 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    FunctionDiscoveryFolder.dll -> C:\Windows\SysNative\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,146,304 | ---- | C | MD5 = 9CD8BD40C8A3A69E875E34B357AE4975] (Microsoft Corporation)
    FunctionDiscoveryFolder.dll -> C:\Windows\SysWow64\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,134,528 | ---- | C | MD5 = 780E82F54147B3D11F52D3128B727534] (Microsoft Corporation)
    SLCExt.dll -> C:\Windows\SysNative\SLCExt.dll -> [2009/06/04 04:48:32 | 00,710,144 | ---- | C | MD5 = 110967BBD4D778FC0BB04FC9DAEFCB44] (Microsoft Corporation)
    NlsLexicons0009.dll -> C:\Windows\SysNative\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = C8E7E069468BC0DEAFE69375421FE839] (Microsoft Corporation)
    NlsLexicons0009.dll -> C:\Windows\SysWow64\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = 8629B71343F61E1140243581C63BC0C7] (Microsoft Corporation)
    ntoskrnl.exe -> C:\Windows\SysNative\ntoskrnl.exe -> [2009/06/04 04:48:29 | 04,699,608 | ---- | C | MD5 = 1B60CCC70788044404EEFBBB389FC111] (Microsoft Corporation)
    mssrch.dll -> C:\Windows\SysNative\mssrch.dll -> [2009/06/04 04:48:29 | 02,280,448 | ---- | C | MD5 = A0B762992A52FA8A657A97C34BEEA807] (Microsoft Corporation)
    SLCExt.dll -> C:\Windows\SysWow64\SLCExt.dll -> [2009/06/04 04:48:29 | 01,081,344 | ---- | C | MD5 = 1D40A5268C1517BC445BA0053584C4AA] (Microsoft Corporation)
    msstrc.dll -> C:\Windows\SysNative\msstrc.dll -> [2009/06/04 04:48:29 | 00,078,336 | ---- | C | MD5 = 3CEA019D459582AFE7551F267DDEF23A] (Microsoft Corporation)
    msscntrs.dll -> C:\Windows\SysNative\msscntrs.dll -> [2009/06/04 04:48:29 | 00,073,728 | ---- | C | MD5 = 4702DF71B9AD487C84A90BAAC967615D] (Microsoft Corporation)
    xmlfilter.dll -> C:\Windows\SysNative\xmlfilter.dll -> [2009/06/04 04:48:29 | 00,067,072 | ---- | C | MD5 = A6C454A7E75ACC924E9F2FB8BA4FC8A0] (Microsoft Corporation)
    kd1394.dll -> C:\Windows\SysNative\kd1394.dll -> [2009/06/04 04:48:29 | 00,019,928 | ---- | C | MD5 = 9334A2D1CDB6D4DC4060B94021BB7A59] (Microsoft Corporation)
    msshooks.dll -> C:\Windows\SysNative\msshooks.dll -> [2009/06/04 04:48:29 | 00,011,776 | ---- | C | MD5 = EBCEDFD064A4F210037AD21EC8AFC220] (Microsoft Corporation)
    mssrch.dll -> C:\Windows\SysWow64\mssrch.dll -> [2009/06/04 04:48:27 | 01,480,704 | ---- | C | MD5 = 218B73EA8341EA9FDF018D43052E790A] (Microsoft Corporation)
    wcnwiz2.dll -> C:\Windows\SysWow64\wcnwiz2.dll -> [2009/06/04 04:48:26 | 00,968,192 | ---- | C | MD5 = 0BA42FAEEE97512603876A908EDB6BF4] (Microsoft Corporation)
    WscEapPr.dll -> C:\Windows\SysNative\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,397,312 | ---- | C | MD5 = 543D30393843BEBFF7215CC36AC3B303] (Microsoft Corporation)
    WscEapPr.dll -> C:\Windows\SysWow64\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,291,328 | ---- | C | MD5 = 2E97EB05C0FD5AA7E229481584C73309] (Microsoft Corporation)
    tquery.dll -> C:\Windows\SysNative\tquery.dll -> [2009/06/04 04:48:25 | 02,204,672 | ---- | C | MD5 = 6FF25F418D373097C199E3ACCFA06E78] (Microsoft Corporation)
    icardagt.exe -> C:\Windows\SysNative\icardagt.exe -> [2009/06/04 04:48:25 | 01,381,720 | ---- | C | MD5 = 7CAE6C298C4EF4A9BDB25A0C8BC79AD5] (Microsoft Corporation)
    PresentationNative_v0300.dll -> C:\Windows\SysNative\PresentationNative_v0300.dll -> [2009/06/04 04:48:25 | 01,165,664 | ---- | C | MD5 = 79B7FFFFF8C5F4F1674A47647D0C6FF6] (Microsoft Corporation)
    imapi2fs.dll -> C:\Windows\SysNative\imapi2fs.dll -> [2009/06/04 04:48:25 | 01,146,880 | ---- | C | MD5 = D14B95A4CC72AD0A196FA1C9738FE93C] (Microsoft Corporation)
    wcnwiz2.dll -> C:\Windows\SysNative\wcnwiz2.dll -> [2009/06/04 04:48:25 | 01,085,440 | ---- | C | MD5 = 53A508E583F7EC971BCA8FEA4D861741] (Microsoft Corporation)
    hdaudbus.sys -> C:\Windows\SysNative\drivers\hdaudbus.sys -> [2009/06/04 04:48:25 | 00,948,736 | ---- | C | MD5 = F942C5820205F2FB453243EDFEC82A3D] (Microsoft Corporation)
    infocardcpl.cpl -> C:\Windows\SysNative\infocardcpl.cpl -> [2009/06/04 04:48:25 | 00,046,944 | ---- | C | MD5 = 563AB05EA9F646A7B8B1A83FFD9E27F6] (Microsoft Corporation)
    lsasrv.dll -> C:\Windows\SysNative\lsasrv.dll -> [2009/06/04 04:48:24 | 01,688,064 | ---- | C | MD5 = 5A7CAD479A8729D2B500997404C153D8] (Microsoft Corporation)
    tquery.dll -> C:\Windows\SysWow64\tquery.dll -> [2009/06/04 04:48:24 | 01,576,960 | ---- | C | MD5 = DEB9D08750423069647C3A066CEC7A1B] (Microsoft Corporation)
    RMActivate_isv.exe -> C:\Windows\SysNative\RMActivate_isv.exe -> [2009/06/04 04:48:24 | 00,600,576 | ---- | C | MD5 = E415C8BFF0807B1C74E280BA036B038C] (Microsoft Corporation)
    RMActivate.exe -> C:\Windows\SysNative\RMActivate.exe -> [2009/06/04 04:48:24 | 00,599,552 | ---- | C | MD5 = 5E465CD2D27700DD2A63671EE8153519] (Microsoft Corporation)
    msi.dll -> C:\Windows\SysNative\msi.dll -> [2009/06/04 04:48:23 | 03,108,864 | ---- | C | MD5 = D092AA9740076D7B55BA7E3ECD22DFA7] (Microsoft Corporation)
    ntfs.sys -> C:\Windows\SysNative\drivers\ntfs.sys -> [2009/06/04 04:48:23 | 01,515,496 | ---- | C | MD5 = BAC869DFB98E499BA4D9BB1FB43270E1] (Microsoft Corporation)
    tcpip.sys -> C:\Windows\SysNative\drivers\tcpip.sys -> [2009/06/04 04:48:23 | 01,426,408 | ---- | C | MD5 = 99D07AD0EF2C535610F6573C29BC045E] (Microsoft Corporation)
    sysmain.dll -> C:\Windows\SysNative\sysmain.dll -> [2009/06/04 04:48:23 | 00,886,784 | ---- | C | MD5 = 92D7A8B0F87B036F17D25885937897A6] (Microsoft Corporation)
    PresentationNative_v0300.dll -> C:\Windows\SysWow64\PresentationNative_v0300.dll -> [2009/06/04 04:48:23 | 00,779,136 | ---- | C | MD5 = E5866CA09AC74AC6C1F8501BB60DFD90] (Microsoft Corporation)
    shell32.dll -> C:\Windows\SysNative\shell32.dll -> [2009/06/04 04:48:22 | 12,897,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    ntdll.dll -> C:\Windows\SysNative\ntdll.dll -> [2009/06/04 04:48:22 | 01,582,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    RMActivate_isv.exe -> C:\Windows\SysWow64\RMActivate_isv.exe -> [2009/06/04 04:48:22 | 00,526,336 | ---- | C | MD5 = BAE3E8E95A9F62496A38F14D1B36AD10] (Microsoft Corporation)
    msi.dll -> C:\Windows\SysWow64\msi.dll -> [2009/06/04 04:48:21 | 02,241,536 | ---- | C | MD5 = 401DFFDBBBD3F07C747ED1AE2BB88106] (Microsoft Corporation)
    scavenge.dll -> C:\Windows\SysNative\scavenge.dll -> [2009/06/04 04:48:21 | 00,946,688 | ---- | C | MD5 = 589286073C7AB737330CE8642EA38980] (Microsoft Corporation)
    spsys.sys -> C:\Windows\SysNative\drivers\spsys.sys -> [2009/06/04 04:48:21 | 00,594,432 | ---- | C | MD5 = 75C881C65CEF2C7B911EB0A351957368] (Microsoft Corporation)
    secproc.dll -> C:\Windows\SysNative\secproc.dll -> [2009/06/04 04:48:21 | 00,539,136 | ---- | C | MD5 = 267D3A1025626604EEA3E5EE2EA1BEAD] (Microsoft Corporation)
    secproc_isv.dll -> C:\Windows\SysNative\secproc_isv.dll -> [2009/06/04 04:48:21 | 00,538,624 | ---- | C | MD5 = A9A8EB2B3E4746145D1E536B528A7D12] (Microsoft Corporation)
    RMActivate.exe -> C:\Windows\SysWow64\RMActivate.exe -> [2009/06/04 04:48:21 | 00,518,144 | ---- | C | MD5 = 2DC9C62DF0538700978C66F00379C653] (Microsoft Corporation)
  • edited June 2009
    mf.dll -> C:\Windows\SysNative\mf.dll -> [2009/06/04 04:48:20 | 03,547,136 | ---- | C | MD5 = 328DBE4B9FEEF811E4053FA5D5462E6D] (Microsoft Corporation)
    imapi2fs.dll -> C:\Windows\SysWow64\imapi2fs.dll -> [2009/06/04 04:48:20 | 00,677,376 | ---- | C | MD5 = C3EB60969612B265FB7265E76B6AEA6F] (Microsoft Corporation)
    secproc_isv.dll -> C:\Windows\SysWow64\secproc_isv.dll -> [2009/06/04 04:48:20 | 00,476,672 | ---- | C | MD5 = 8CDA3C2DC9B265DAD2589FE0F1A8B4E4] (Microsoft Corporation)
    mmcndmgr.dll -> C:\Windows\SysNative\mmcndmgr.dll -> [2009/06/04 04:48:19 | 03,263,488 | ---- | C | MD5 = 9F498D2409C9F31D2019C3AB528DAD5D] (Microsoft Corporation)
    mf.dll -> C:\Windows\SysWow64\mf.dll -> [2009/06/04 04:48:19 | 02,868,224 | ---- | C | MD5 = 3962F0B55426E75B579974A6C96F5FEA] (Microsoft Corporation)
    msxml3.dll -> C:\Windows\SysNative\msxml3.dll -> [2009/06/04 04:48:19 | 01,804,288 | ---- | C | MD5 = 1BB8A40C45A577B6901A4A21EDDE1B27] (Microsoft Corporation)
    icardagt.exe -> C:\Windows\SysWow64\icardagt.exe -> [2009/06/04 04:48:19 | 00,619,864 | ---- | C | MD5 = EBAE6CE901EDB7F0F794589BF5FDF695] (Microsoft Corporation)
    infocardcpl.cpl -> C:\Windows\SysWow64\infocardcpl.cpl -> [2009/06/04 04:48:19 | 00,035,168 | ---- | C | MD5 = F67843CFD59FB2015823E2CE2D2A65D8] (Microsoft Corporation)
    mmc.exe -> C:\Windows\SysNative\mmc.exe -> [2009/06/04 04:48:18 | 02,715,136 | ---- | C | MD5 = CFAFFCA9AAA29F89CA71C02CE82FF546] (Microsoft Corporation)
    AuxiliaryDisplayCpl.dll -> C:\Windows\SysNative\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:18 | 01,418,752 | ---- | C | MD5 = 4E7D270CF881377567D2090B5ACA077F] (Microsoft Corporation)
    kernel32.dll -> C:\Windows\SysNative\kernel32.dll -> [2009/06/04 04:48:18 | 01,217,536 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    drmv2clt.dll -> C:\Windows\SysNative\drmv2clt.dll -> [2009/06/04 04:48:18 | 01,185,280 | ---- | C | MD5 = 2AD435E35966C65619A272B4831D72BB] (Microsoft Corporation)
    p2psvc.dll -> C:\Windows\SysNative\p2psvc.dll -> [2009/06/04 04:48:18 | 00,836,608 | ---- | C | MD5 = 9AE31D2E1D15C10D91318E0EC149CEAC] (Microsoft Corporation)
    spinstall.exe -> C:\Windows\SysNative\spinstall.exe -> [2009/06/04 04:48:18 | 00,435,712 | ---- | C | MD5 = 374A60A1498CBC697510F305FAE1A583] (Microsoft Corporation)
    spreview.exe -> C:\Windows\SysNative\spreview.exe -> [2009/06/04 04:48:18 | 00,147,456 | ---- | C | MD5 = 7382050E59321AFE64BA4AF46AE81C97] (Microsoft Corporation)
    esent.dll -> C:\Windows\SysNative\esent.dll -> [2009/06/04 04:48:17 | 02,506,752 | ---- | C | MD5 = E21FFFE678FF09BAA6BF5F76BD8805C6] (Microsoft Corporation)
    AuxiliaryDisplayCpl.dll -> C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:17 | 01,216,000 | ---- | C | MD5 = 79B0EC7806B563475A211C5B0F9A4B9C] (Microsoft Corporation)
    SearchIndexer.exe -> C:\Windows\SysNative\SearchIndexer.exe -> [2009/06/04 04:48:17 | 00,597,504 | ---- | C | MD5 = A2AC37A1EEF83BD9E912B0EFCBEA06BD] (Microsoft Corporation)
    spwizui.dll -> C:\Windows\SysNative\spwizui.dll -> [2009/06/04 04:48:17 | 00,173,568 | ---- | C | MD5 = 155D06AE01296DBD7287AB50419A0B85] (Microsoft Corporation)
    spwizui.dll -> C:\Windows\SysWow64\spwizui.dll -> [2009/06/04 04:48:17 | 00,164,352 | ---- | C | MD5 = 27E22847E91344C338016F6A4276F041] (Microsoft Corporation)
    wmp.dll -> C:\Windows\SysNative\wmp.dll -> [2009/06/04 04:48:16 | 13,424,640 | ---- | C | MD5 = E4CD65D24DEB8BDE679B62B6626A0FCC] (Microsoft Corporation)
    dfsr.exe -> C:\Windows\SysNative\dfsr.exe -> [2009/06/04 04:48:15 | 03,433,472 | ---- | C | MD5 = C647F468F7DE343DF8C143655C5557D4] (Microsoft Corporation)
    ole32.dll -> C:\Windows\SysNative\ole32.dll -> [2009/06/04 04:48:15 | 01,915,392 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    drmv2clt.dll -> C:\Windows\SysWow64\drmv2clt.dll -> [2009/06/04 04:48:15 | 00,978,432 | ---- | C | MD5 = 7C7C620860819A62F926D7EC0B72C50B] (Microsoft Corporation)
    mssvp.dll -> C:\Windows\SysNative\mssvp.dll -> [2009/06/04 04:48:15 | 00,796,672 | ---- | C | MD5 = D9F0D37D97862C15D1417903B8FCBF5C] (Microsoft Corporation)
    sdohlp.dll -> C:\Windows\SysNative\sdohlp.dll -> [2009/06/04 04:48:15 | 00,499,200 | ---- | C | MD5 = F0E90F35D5FFCF3E474B709124D26159] (Microsoft Corporation)
    spinstall.exe -> C:\Windows\SysWow64\spinstall.exe -> [2009/06/04 04:48:15 | 00,289,792 | ---- | C | MD5 = E953D69576A1BF077E709A0231E4714C] (Microsoft Corporation)
    spreview.exe -> C:\Windows\SysWow64\spreview.exe -> [2009/06/04 04:48:15 | 00,112,640 | ---- | C | MD5 = 73157FFB9EF9E9C61740A5F9CA5C7B17] (Microsoft Corporation)
    shell32.dll -> C:\Windows\SysWow64\shell32.dll -> [2009/06/04 04:48:14 | 11,584,000 | ---- | C | MD5 = 43466A7FF452883B68F52B963023949C] (Microsoft Corporation)
    wlan.tmf -> C:\Windows\SysNative\wlan.tmf -> [2009/06/04 04:48:14 | 02,607,774 | ---- | C | MD5 = 276CD36D47AF3E91238AEE8A5BC49ED7] ()
    MSMPEG2VDEC.DLL -> C:\Windows\SysNative\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:14 | 00,778,752 | ---- | C | MD5 = 6B00BFBCA33958AC95B666B4EE7244CA] (Microsoft Corporation)
    mssvp.dll -> C:\Windows\SysWow64\mssvp.dll -> [2009/06/04 04:48:14 | 00,670,720 | ---- | C | MD5 = 771AF583BC58373A84496CCD52C36E33] (Microsoft Corporation)
    p2psvc.dll -> C:\Windows\SysWow64\p2psvc.dll -> [2009/06/04 04:48:14 | 00,644,608 | ---- | C | MD5 = 0C8E8E61AD1EB0B250B846712C917506] (Microsoft Corporation)
    mssph.dll -> C:\Windows\SysNative\mssph.dll -> [2009/06/04 04:48:14 | 00,501,248 | ---- | C | MD5 = 93655E5D1E940E5A0F73F5A1719A0DA0] (Microsoft Corporation)
    secproc.dll -> C:\Windows\SysWow64\secproc.dll -> [2009/06/04 04:48:14 | 00,472,064 | ---- | C | MD5 = 86950C4B28196F1C678814A5FEA5FD4F] (Microsoft Corporation)
    SearchIndexer.exe -> C:\Windows\SysWow64\SearchIndexer.exe -> [2009/06/04 04:48:14 | 00,441,344 | ---- | C | MD5 = AED0DFF80C6B3914769407E78D7AB21A] (Microsoft Corporation)
    mssphtb.dll -> C:\Windows\SysNative\mssphtb.dll -> [2009/06/04 04:48:14 | 00,312,832 | ---- | C | MD5 = EE60A80BA41AE79AAC95F8788460D536] (Microsoft Corporation)
    mcupdate_GenuineIntel.dll -> C:\Windows\SysNative\mcupdate_GenuineIntel.dll -> [2009/06/04 04:48:14 | 00,223,720 | ---- | C | MD5 = E15C2A9E2448E572A58A7E69CCB8140A] (Microsoft Corporation)
    EhStorAuthn.dll -> C:\Windows\SysNative\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,121,856 | ---- | C | MD5 = E36E7BEC7918708163143693884F6E77] ()
    EhStorAuthn.dll -> C:\Windows\SysWow64\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,117,248 | ---- | C | MD5 = 358A03A7A47F0AD71E84306AC635A626] ()
    EhStorPwdMgr.dll -> C:\Windows\SysNative\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,042,496 | ---- | C | MD5 = 8B4D332731F425E6F2B3B4C8B57274CB] (Microsoft Corporation)
    EhStorPwdMgr.dll -> C:\Windows\SysWow64\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,037,376 | ---- | C | MD5 = 1E73E1591DA1D44E5F865E8ADD8C09FF] (Microsoft Corporation)
    kernel32.dll -> C:\Windows\SysWow64\kernel32.dll -> [2009/06/04 04:48:13 | 00,858,112 | ---- | C | MD5 = A5830F679B5B38AE9700A72087178745] (Microsoft Corporation)
    imapi2.dll -> C:\Windows\SysNative\imapi2.dll -> [2009/06/04 04:48:13 | 00,506,880 | ---- | C | MD5 = ED10D55B28FCD8A6DEA09AE3FE20EC3A] (Microsoft Corporation)
    srv.sys -> C:\Windows\SysNative\drivers\srv.sys -> [2009/06/04 04:48:13 | 00,440,832 | ---- | C | MD5 = 08D8358006D13B61AA3D25EFA558F101] (Microsoft Corporation)
    RMActivate_ssp_isv.exe -> C:\Windows\SysNative\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:13 | 00,413,696 | ---- | C | MD5 = 6C5019724773FF072B14F33ED9CABEC6] (Microsoft Corporation)
    RMActivate_ssp.exe -> C:\Windows\SysNative\RMActivate_ssp.exe -> [2009/06/04 04:48:13 | 00,409,600 | ---- | C | MD5 = 3B8D66CA55261A71B825C0ADD8863C28] (Microsoft Corporation)
    mscoree.dll -> C:\Windows\SysWow64\mscoree.dll -> [2009/06/04 04:48:13 | 00,278,848 | ---- | C | MD5 = 363C34FB89B8ED269659270FB06BEC9F] (Microsoft Corporation)
    WinSAT.exe -> C:\Windows\SysNative\WinSAT.exe -> [2009/06/04 04:48:12 | 03,894,272 | ---- | C | MD5 = 73B0CA77ADC7F52B94CA6DEDEF2A67C7] (Microsoft Corporation)
    Query.dll -> C:\Windows\SysNative\Query.dll -> [2009/06/04 04:48:12 | 02,028,032 | ---- | C | MD5 = 27F479DFA5E1BD942E056888DCF5C270] (Microsoft Corporation)
    ntdll.dll -> C:\Windows\SysWow64\ntdll.dll -> [2009/06/04 04:48:12 | 01,165,088 | ---- | C | MD5 = 6EF8A9B1E0B83DB8009B626F6627C63F] (Microsoft Corporation)
    IMJP10K.DLL -> C:\Windows\SysNative\IMJP10K.DLL -> [2009/06/04 04:48:12 | 00,922,624 | ---- | C | MD5 = 72CD5B8F299ADD9C8ED3520D003D7354] (Microsoft Corporation)
    MSMPEG2VDEC.DLL -> C:\Windows\SysWow64\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:12 | 00,613,888 | ---- | C | MD5 = 9D1EE179965F9DDF964A9EA99D1D70A1] (Microsoft Corporation)
    mscoree.dll -> C:\Windows\SysNative\mscoree.dll -> [2009/06/04 04:48:12 | 00,403,280 | ---- | C | MD5 = 4A68B66078F07BB429A86A7844F3F2A8] (Microsoft Corporation)
    imapi2.dll -> C:\Windows\SysWow64\imapi2.dll -> [2009/06/04 04:48:12 | 00,378,368 | ---- | C | MD5 = 9B0726A03B790E5B82BED44D24009BEF] (Microsoft Corporation)
    uDWM.dll -> C:\Windows\SysNative\uDWM.dll -> [2009/06/04 04:48:12 | 00,367,104 | ---- | C | MD5 = 7B005E3F9825A98312E089CBA0F83DAA] (Microsoft Corporation)
    mssph.dll -> C:\Windows\SysWow64\mssph.dll -> [2009/06/04 04:48:12 | 00,351,744 | ---- | C | MD5 = 351319EF11C263C95FB721AC76F436D6] (Microsoft Corporation)
    sdohlp.dll -> C:\Windows\SysWow64\sdohlp.dll -> [2009/06/04 04:48:12 | 00,324,608 | ---- | C | MD5 = 723F45FB4C5D362EFC64D8F9D9B0B7B7] (Microsoft Corporation)
    mssphtb.dll -> C:\Windows\SysWow64\mssphtb.dll -> [2009/06/04 04:48:12 | 00,203,264 | ---- | C | MD5 = 5E542EDAEFCDA1684463B58C0F86283A] (Microsoft Corporation)
    korwbrkr.dll -> C:\Windows\SysNative\korwbrkr.dll -> [2009/06/04 04:48:12 | 00,180,736 | ---- | C | MD5 = FDD2B6B94CBB830887EED54CDC7C5E18] (Microsoft Corporation)
    WMVCORE.DLL -> C:\Windows\SysNative\WMVCORE.DLL -> [2009/06/04 04:48:11 | 02,900,480 | ---- | C | MD5 = 04E0E4A26E07E2CAB3617648A2B6FD95] (Microsoft Corporation)
    esent.dll -> C:\Windows\SysWow64\esent.dll -> [2009/06/04 04:48:11 | 01,459,200 | ---- | C | MD5 = 22DC784B32BEE306A99F50D6DC2460BC] (Microsoft Corporation)
    IMJP10K.DLL -> C:\Windows\SysWow64\IMJP10K.DLL -> [2009/06/04 04:48:11 | 00,729,600 | ---- | C | MD5 = 5178E1791950054638DA0CC444E2D187] (Microsoft Corporation)
    http.sys -> C:\Windows\SysNative\drivers\http.sys -> [2009/06/04 04:48:11 | 00,606,720 | ---- | C | MD5 = 5E16D9CCA86CE0E117FF1856C6649B33] (Microsoft Corporation)
    DevicePairing.dll -> C:\Windows\SysNative\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,483,328 | ---- | C | MD5 = CF9836A7C6D247235845F6BA61122783] (Microsoft Corporation)
    DevicePairing.dll -> C:\Windows\SysWow64\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,478,208 | ---- | C | MD5 = 74A68B1E09AB06FBFB494179F84544FF] (Microsoft Corporation)
    msshsq.dll -> C:\Windows\SysNative\msshsq.dll -> [2009/06/04 04:48:11 | 00,316,928 | ---- | C | MD5 = AEA31124372857278FE549050206F9F5] (Microsoft Corporation)
    sperror.dll -> C:\Windows\SysNative\sperror.dll -> [2009/06/04 04:48:11 | 00,238,592 | ---- | C | MD5 = 610DBE2A2A14768EC4103B5F6911BD9B] (Microsoft Corporation)
    korwbrkr.dll -> C:\Windows\SysWow64\korwbrkr.dll -> [2009/06/04 04:48:11 | 00,143,872 | ---- | C | MD5 = A35B257A0A45EFCBF548E74E7E883268] (Microsoft Corporation)
    wmp.dll -> C:\Windows\SysWow64\wmp.dll -> [2009/06/04 04:48:10 | 10,625,536 | ---- | C | MD5 = 42C17B457D1A21491A6E10E6EA4DDCD5] (Microsoft Corporation)
    WindowsAnytimeUpgradeCPL.dll -> C:\Windows\SysNative\WindowsAnytimeUpgradeCPL.dll -> [2009/06/04 04:48:10 | 01,673,216 | ---- | C | MD5 = 23E4E5A6876082BADECA7B80DD7B21C0] (Microsoft Corporation)
    IMJP10.IME -> C:\Windows\SysNative\IMJP10.IME -> [2009/06/04 04:48:10 | 01,019,904 | ---- | C | MD5 = ACB086DA910FB73B409D09B1194326C2] (Microsoft Corporation)
    P2PGraph.dll -> C:\Windows\SysNative\P2PGraph.dll -> [2009/06/04 04:48:10 | 00,401,920 | ---- | C | MD5 = 1376F3B79E742A78D40BF045AB7C6542] (Microsoft Corporation)
    RMActivate_ssp.exe -> C:\Windows\SysWow64\RMActivate_ssp.exe -> [2009/06/04 04:48:10 | 00,347,136 | ---- | C | MD5 = 85204698CA6BE51EF1E4CB07FC4986F7] (Microsoft Corporation)
    RMActivate_ssp_isv.exe -> C:\Windows\SysWow64\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:10 | 00,346,624 | ---- | C | MD5 = 4845670F79AD77625176D764CBBFFA7F] (Microsoft Corporation)
    msshsq.dll -> C:\Windows\SysWow64\msshsq.dll -> [2009/06/04 04:48:10 | 00,231,424 | ---- | C | MD5 = B2D4F14BB320E724D23B5F6795BBBC85] (Microsoft Corporation)
    SLC.dll -> C:\Windows\SysWow64\SLC.dll -> [2009/06/04 04:48:10 | 00,228,352 | ---- | C | MD5 = C6DF7A87063D006ECF1FD8156CB6DE3F] (Microsoft Corporation)
    sperror.dll -> C:\Windows\SysWow64\sperror.dll -> [2009/06/04 04:48:10 | 00,190,464 | ---- | C | MD5 = B731203932CC0DBEC910A9AABBFEBD43] (Microsoft Corporation)
    PresentationHostProxy.dll -> C:\Windows\SysWow64\PresentationHostProxy.dll -> [2009/06/04 04:48:10 | 00,041,344 | ---- | C | MD5 = 01D8839404E8752A688D0B69715C28C1] (Microsoft Corporation)
    WMVCORE.DLL -> C:\Windows\SysWow64\WMVCORE.DLL -> [2009/06/04 04:48:09 | 02,386,944 | ---- | C | MD5 = 8BB86C9F2DEEAFF88243368E0B1A78C1] (Microsoft Corporation)
    setupapi.dll -> C:\Windows\SysNative\setupapi.dll -> [2009/06/04 04:48:09 | 01,925,120 | ---- | C | MD5 = BE2E23B3DD533B33338D9B3D826574DA] (Microsoft Corporation)
    msjet40.dll -> C:\Windows\SysWow64\msjet40.dll -> [2009/06/04 04:48:09 | 01,589,248 | ---- | C | MD5 = 7CE1E4240F9FA41EE85683B9EEAB8767] (Microsoft Corporation)
    wevtsvc.dll -> C:\Windows\SysNative\wevtsvc.dll -> [2009/06/04 04:48:09 | 01,491,968 | ---- | C | MD5 = B3564B747D0B059D99E888F8369E56BC] (Microsoft Corporation)
    msxml6.dll -> C:\Windows\SysWow64\msxml6.dll -> [2009/06/04 04:48:09 | 01,336,320 | ---- | C | MD5 = 376099B0E17AA5B2157FF0C2B66F072A] (Microsoft Corporation)
    crypt32.dll -> C:\Windows\SysNative\crypt32.dll -> [2009/06/04 04:48:09 | 01,259,520 | ---- | C | MD5 = 92399DADA49153870A7C178B7116C356] (Microsoft Corporation)
    ndis.sys -> C:\Windows\SysNative\drivers\ndis.sys -> [2009/06/04 04:48:09 | 00,738,264 | ---- | C | MD5 = 65950E07329FCEE8E6516B17C8D0ABB6] (Microsoft Corporation)
    IasMigPlugin.dll -> C:\Windows\SysNative\IasMigPlugin.dll -> [2009/06/04 04:48:09 | 00,581,632 | ---- | C | MD5 = E704B2C60A10A5353333F74E674D9D2C] (Microsoft)
    SearchProtocolHost.exe -> C:\Windows\SysNative\SearchProtocolHost.exe -> [2009/06/04 04:48:09 | 00,258,560 | ---- | C | MD5 = 1DEAF8D21FCCB72FFCF374E0FE6C1DB5] (Microsoft Corporation)
    Storport.sys -> C:\Windows\SysNative\drivers\Storport.sys -> [2009/06/04 04:48:09 | 00,164,328 | ---- | C | MD5 = F78A39ED87D918058A14F36159DE5BDA] (Microsoft Corporation)
    EhStorAPI.dll -> C:\Windows\SysNative\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,131,072 | ---- | C | MD5 = 9ABCF91512AE8120F3E931301E28B6C1] (Microsoft Corporation)
    EhStorAPI.dll -> C:\Windows\SysWow64\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,120,320 | ---- | C | MD5 = 9E5C1D19851FAE2ACDBA118AB20D55AC] (Microsoft Corporation)
    SearchFilterHost.exe -> C:\Windows\SysNative\SearchFilterHost.exe -> [2009/06/04 04:48:09 | 00,111,616 | ---- | C | MD5 = BBDE232916FC116C8CB46011683AD854] (Microsoft Corporation)
    compcln.exe -> C:\Windows\SysNative\compcln.exe -> [2009/06/04 04:48:09 | 00,056,320 | ---- | C | MD5 = 0168977CBD9CD8F1ED2AB3FC8851044F] (Microsoft Corporation)
    PresentationHostProxy.dll -> C:\Windows\SysNative\PresentationHostProxy.dll -> [2009/06/04 04:48:09 | 00,049,496 | ---- | C | MD5 = 9FB61D236B378F761E926B16436AFAAD] (Microsoft Corporation)
    vssapi.dll -> C:\Windows\SysNative\vssapi.dll -> [2009/06/04 04:48:08 | 01,495,040 | ---- | C | MD5 = 2E10EB73ED1E094E9A113D0798058B88] (Microsoft Corporation)
    Query.dll -> C:\Windows\SysWow64\Query.dll -> [2009/06/04 04:48:08 | 01,381,376 | ---- | C | MD5 = B458B58F7BB97C48D01AC3CF5805AAAC] (Microsoft Corporation)
    qmgr.dll -> C:\Windows\SysNative\qmgr.dll -> [2009/06/04 04:48:08 | 01,081,856 | ---- | C | MD5 = 6D316F4859634071CC25C4FD4589AD2C] (Microsoft Corporation)
    winload.efi -> C:\Windows\SysNative\winload.efi -> [2009/06/04 04:48:08 | 01,078,232 | ---- | C | MD5 = D26F602EB4B8B7D69FFDEC4551902B83] (Microsoft Corporation)
    winload.exe -> C:\Windows\SysNative\winload.exe -> [2009/06/04 04:48:08 | 01,064,920 | ---- | C | MD5 = E50526E2D00E27A27C0454525081604E] (Microsoft Corporation)
    printfilterpipelinesvc.exe -> C:\Windows\SysNative\printfilterpipelinesvc.exe -> [2009/06/04 04:48:08 | 01,030,144 | ---- | C | MD5 = B7EF680BE91D4C2EC93A77FF41AFF518] (Microsoft Corporation)
    IMJP10.IME -> C:\Windows\SysWow64\IMJP10.IME -> [2009/06/04 04:48:08 | 00,883,712 | ---- | C | MD5 = AE4DAA8F0F9AE5EC2DE1ACB5D37AFA55] (Microsoft Corporation)
    user32.dll -> C:\Windows\SysWow64\user32.dll -> [2009/06/04 04:48:08 | 00,648,704 | ---- | C | MD5 = D29FDB5DEDBDC1BD882164DC6DC4DD53] (Microsoft Corporation)
    EncDec.dll -> C:\Windows\SysNative\EncDec.dll -> [2009/06/04 04:48:08 | 00,558,592 | ---- | C | MD5 = 2C17ACB012C53FE4900A3DEB96FCF720] (Microsoft Corporation)
    msexch40.dll -> C:\Windows\SysWow64\msexch40.dll -> [2009/06/04 04:48:08 | 00,409,600 | ---- | C | MD5 = D151AE6587F22CED36C6BF5787C25FCA] (Microsoft Corporation)
    srchadmin.dll -> C:\Windows\SysNative\srchadmin.dll -> [2009/06/04 04:48:08 | 00,347,648 | ---- | C | MD5 = B6D5917CF9FDA3B434AD908559EBD2B3] (Microsoft Corporation)
    systemsf.ebd -> C:\Windows\SysNative\systemsf.ebd -> [2009/06/04 04:48:08 | 00,262,552 | ---- | C | MD5 = B4F9DF6FBA2700C2017B0F766595267B] ()
    infocardapi.dll -> C:\Windows\SysNative\infocardapi.dll -> [2009/06/04 04:48:08 | 00,171,360 | ---- | C | MD5 = CFA0A7E9800D3298A3C24070C0AF53D0] (Microsoft Corporation)
    EhStorShell.dll -> C:\Windows\SysNative\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,123,904 | ---- | C | MD5 = B2E32F41E1D6500F62CAEF5EF2B17196] (Microsoft Corporation)
    EhStorShell.dll -> C:\Windows\SysWow64\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,114,176 | ---- | C | MD5 = 14E4470BF8ACA69A85D741BA99F75F96] (Microsoft Corporation)
    fdBth.dll -> C:\Windows\SysNative\fdBth.dll -> [2009/06/04 04:48:08 | 00,112,640 | ---- | C | MD5 = CC23D5006ED2FF61F033188D971AD1CB] (Microsoft Corporation)
    explorer.exe -> C:\Windows\explorer.exe -> [2009/06/04 04:48:07 | 03,079,168 | ---- | C | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
    msxml6.dll -> C:\Windows\SysNative\msxml6.dll -> [2009/06/04 04:48:07 | 01,733,120 | ---- | C | MD5 = 93D7D5D1DBAA7EFA317098C5204DDDA4] (Microsoft Corporation)
    CertEnroll.dll -> C:\Windows\SysNative\CertEnroll.dll -> [2009/06/04 04:48:07 | 01,658,368 | ---- | C | MD5 = 5AF34B08C676F16A070A7D7EF2AB4C3E] (Microsoft Corporation)
    diagperf.dll -> C:\Windows\SysNative\diagperf.dll -> [2009/06/04 04:48:07 | 01,584,128 | ---- | C | MD5 = 7371D6B52B85190971CB3F35FA0CED05] (Microsoft Corporation)
    ole32.dll -> C:\Windows\SysWow64\ole32.dll -> [2009/06/04 04:48:07 | 01,316,864 | ---- | C | MD5 = C50A0AB19094BC362FBA69E105EBCCFD] (Microsoft Corporation)
    msxml3.dll -> C:\Windows\SysWow64\msxml3.dll -> [2009/06/04 04:48:07 | 01,183,232 | ---- | C | MD5 = 5942F272BBEF5A77BF1DCE13BB5FAC8E] (Microsoft Corporation)
    advapi32.dll -> C:\Windows\SysNative\advapi32.dll -> [2009/06/04 04:48:07 | 01,065,472 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    mblctr.exe -> C:\Windows\SysNative\mblctr.exe -> [2009/06/04 04:48:07 | 00,967,168 | ---- | C | MD5 = DB4A027E320B226D33F68C71D85103F6] (Microsoft Corporation)
    rpcss.dll -> C:\Windows\SysNative\rpcss.dll -> [2009/06/04 04:48:07 | 00,719,872 | ---- | C | MD5 = CF8B9A3A5E7DC57724A89D0C3E8CF9EF] (Microsoft Corporation)
    IasMigReader.exe -> C:\Windows\SysWow64\IasMigReader.exe -> [2009/06/04 04:48:07 | 00,463,872 | ---- | C | MD5 = 520FCEF4D87E37C17BB6D554B2A332E8] (Microsoft Corporation)
    EncDec.dll -> C:\Windows\SysWow64\EncDec.dll -> [2009/06/04 04:48:07 | 00,428,544 | ---- | C | MD5 = 27D1A4045917EF6ED42039CC6CDCA719] (Microsoft Corporation)
    P2PGraph.dll -> C:\Windows\SysWow64\P2PGraph.dll -> [2009/06/04 04:48:07 | 00,327,168 | ---- | C | MD5 = CE42E875BFF00D9561C6E1B0FF2C8943] (Microsoft Corporation)
    srchadmin.dll -> C:\Windows\SysWow64\srchadmin.dll -> [2009/06/04 04:48:07 | 00,301,568 | ---- | C | MD5 = 744F08CF9ACFFB1C715191D04DEEE907] (Microsoft Corporation)
    psisrndr.ax -> C:\Windows\SysWow64\psisrndr.ax -> [2009/06/04 04:48:07 | 00,217,088 | ---- | C | MD5 = 31016280DB16915C88EC6829E1628DA4] (Microsoft Corporation)
    d3d9.dll -> C:\Windows\SysNative\d3d9.dll -> [2009/06/04 04:48:06 | 01,930,240 | ---- | C | MD5 = D4175BE7CA634C7BB9205F7EE4F3F7E4] (Microsoft Corporation)
    mmc.exe -> C:\Windows\SysWow64\mmc.exe -> [2009/06/04 04:48:06 | 01,792,512 | ---- | C | MD5 = BB96D0590B491CDEA2EBF6D697BE8976] (Microsoft Corporation)
    comsvcs.dll -> C:\Windows\SysNative\comsvcs.dll -> [2009/06/04 04:48:06 | 01,686,528 | ---- | C | MD5 = 51F2402CA69906A0839CED561BE3C0AA] (Microsoft Corporation)
    browseui.dll -> C:\Windows\SysNative\browseui.dll -> [2009/06/04 04:48:06 | 01,650,688 | ---- | C | MD5 = EE9040473EB1339E75E79A75FA47A825] (Microsoft Corporation)
    VSSVC.exe -> C:\Windows\SysNative\VSSVC.exe -> [2009/06/04 04:48:06 | 01,433,600 | ---- | C | MD5 = B75232DAD33BFD95BF6F0A3E6BFF51E1] (Microsoft Corporation)
    mfc42u.dll -> C:\Windows\SysNative\mfc42u.dll -> [2009/06/04 04:48:06 | 01,357,824 | ---- | C | MD5 = 912655E769785458E6ED439AE2A4E92C] (Microsoft Corporation)
    kerberos.dll -> C:\Windows\SysNative\kerberos.dll -> [2009/06/04 04:48:06 | 00,654,848 | ---- | C | MD5 = F60FA5685C90FDBF97EF0E28681A4004] (Microsoft Corporation)
    riched20.dll -> C:\Windows\SysWow64\riched20.dll -> [2009/06/04 04:48:06 | 00,466,944 | ---- | C | MD5 = 0CFCDE5D9D074D96B78D1F1CBF1AAB1D] (Microsoft Corporation)
    IasMigPlugin.dll -> C:\Windows\SysWow64\IasMigPlugin.dll -> [2009/06/04 04:48:06 | 00,454,144 | ---- | C | MD5 = 9A7E344C3D52EE1A2EF003B33B1C1BF1] (Microsoft)
    gdi32.dll -> C:\Windows\SysWow64\gdi32.dll -> [2009/06/04 04:48:06 | 00,303,616 | ---- | C | MD5 = 05C8C8767E29163FC251164FF6839EA5] (Microsoft Corporation)
    spoolss.dll -> C:\Windows\SysNative\spoolss.dll -> [2009/06/04 04:48:06 | 00,238,080 | ---- | C | MD5 = D48445B07F61CAFE2FE8972AAB4E31B8] (Microsoft Corporation)
    DevicePairingWizard.exe -> C:\Windows\SysNative\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,069,120 | ---- | C | MD5 = 52B40ECFE9814D1C28154EA51E5D93F7] (Microsoft Corporation)
    DevicePairingWizard.exe -> C:\Windows\SysWow64\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,065,536 | ---- | C | MD5 = 5AAE542EBB0F3CA7C1E5E6D5457BA2CE] (Microsoft Corporation)
    milcore.dll -> C:\Windows\SysWow64\milcore.dll -> [2009/06/04 04:48:05 | 02,012,160 | ---- | C | MD5 = C99403A5B641520DAED0021DDA06F272] (Microsoft Corporation)
    mfc42.dll -> C:\Windows\SysNative\mfc42.dll -> [2009/06/04 04:48:05 | 01,395,712 | ---- | C | MD5 = 13E3B46DA1D334762B6AD2E86B12DA94] (Microsoft Corporation)
    WsmSvc.dll -> C:\Windows\SysNative\WsmSvc.dll -> [2009/06/04 04:48:05 | 01,092,096 | ---- | C | MD5 = 42717DB2BE3A075D0F0CD5C927C27A43] (Microsoft Corporation)
    RacEngn.dll -> C:\Windows\SysWow64\RacEngn.dll -> [2009/06/04 04:48:05 | 00,880,640 | ---- | C | MD5 = 9EFF12E09FF0EA85D43A3AC1F1EEBCE9] (Microsoft Corporation)
    Magnify.exe -> C:\Windows\SysWow64\Magnify.exe -> [2009/06/04 04:48:05 | 00,710,144 | ---- | C | MD5 = E47C854A28A81F2939F42CBE9FEA994C] (Microsoft Corporation)
    afd.sys -> C:\Windows\SysNative\drivers\afd.sys -> [2009/06/04 04:48:05 | 00,406,016 | ---- | C | MD5 = 12415CCFD3E7CEC55B5184E67B039FE4] (Microsoft Corporation)
    WMPhoto.dll -> C:\Windows\SysNative\WMPhoto.dll -> [2009/06/04 04:48:05 | 00,379,392 | ---- | C | MD5 = 548EDDC705789D7FD564C5DE5A2B90D9] (Microsoft Corporation)
    netio.sys -> C:\Windows\SysNative\drivers\netio.sys -> [2009/06/04 04:48:05 | 00,347,112 | ---- | C | MD5 = 2E4C6D76DB8FAADCF4A020758CD0B2C5] (Microsoft Corporation)
    bcrypt.dll -> C:\Windows\SysWow64\bcrypt.dll -> [2009/06/04 04:48:05 | 00,275,968 | ---- | C | MD5 = 4ACF748A8E576761E4C610ACAB67B1BC] (Microsoft Corporation)
    SearchProtocolHost.exe -> C:\Windows\SysWow64\SearchProtocolHost.exe -> [2009/06/04 04:48:05 | 00,185,344 | ---- | C | MD5 = B5EF1DA337DB9859709A387638AC5E07] (Microsoft Corporation)
    PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:48:05 | 00,123,256 | ---- | C | MD5 = E7F360082D6949844519BA00E793B09E] (Microsoft Corporation)
    fdBth.dll -> C:\Windows\SysWow64\fdBth.dll -> [2009/06/04 04:48:05 | 00,088,064 | ---- | C | MD5 = D07E4D54CC014C4D3FEB9EFC2304C84E] (Microsoft Corporation)
    SearchFilterHost.exe -> C:\Windows\SysWow64\SearchFilterHost.exe -> [2009/06/04 04:48:05 | 00,087,552 | ---- | C | MD5 = C9EE7FF225EAC1CB9C78C413667CDB80] (Microsoft Corporation)
    dbgeng.dll -> C:\Windows\SysNative\dbgeng.dll -> [2009/06/04 04:48:04 | 02,484,224 | ---- | C | MD5 = 3BBDC794EC79F4776ADCC50F6DDF90AA] (Microsoft Corporation)
    mstscax.dll -> C:\Windows\SysNative\mstscax.dll -> [2009/06/04 04:48:04 | 02,424,320 | ---- | C | MD5 = EF222AE54FF7B3B1055CC83C3DA81B18] (Microsoft Corporation)
    apds.dll -> C:\Windows\SysNative\apds.dll -> [2009/06/04 04:48:04 | 02,112,000 | ---- | C | MD5 = F90ED5EE26169B69A3F915CFD014BA60] (Microsoft Corporation)
    CertEnroll.dll -> C:\Windows\SysWow64\CertEnroll.dll -> [2009/06/04 04:48:04 | 01,112,064 | ---- | C | MD5 = 0053319C4438CDE659AA75C19BBD22F1] (Microsoft Corporation)
    Magnify.exe -> C:\Windows\SysNative\Magnify.exe -> [2009/06/04 04:48:04 | 00,859,648 | ---- | C | MD5 = DFFB91500638FACA4CDEA50E4E1F02F9] (Microsoft Corporation)
    schedsvc.dll -> C:\Windows\SysNative\schedsvc.dll -> [2009/06/04 04:48:04 | 00,843,776 | ---- | C | MD5 = 717C12DF4B7C93FEC97D146AC1342B25] (Microsoft Corporation)
    NaturalLanguage6.dll -> C:\Windows\SysWow64\NaturalLanguage6.dll -> [2009/06/04 04:48:04 | 00,805,376 | ---- | C | MD5 = 1CE4A2790EB4A96F4ED1E4264866AFE6] (Microsoft Corporation)
    dpapimig.exe -> C:\Windows\SysNative\dpapimig.exe -> [2009/06/04 04:48:04 | 00,553,472 | ---- | C | MD5 = 38A245916DE7BD6DF73DE9E98D377213] (Microsoft Corporation)
    eudcedit.exe -> C:\Windows\SysNative\eudcedit.exe -> [2009/06/04 04:48:04 | 00,280,064 | ---- | C | MD5 = EBA67A3AC3DFB2EDDC5E7B967428669A] (Microsoft Corporation)
    iasrecst.dll -> C:\Windows\SysNative\iasrecst.dll -> [2009/06/04 04:48:04 | 00,192,000 | ---- | C | MD5 = 7940F88C3D5BAFEE6749D3FE6CDF0569] (Microsoft Corporation)
    spoolss.dll -> C:\Windows\SysWow64\spoolss.dll -> [2009/06/04 04:48:04 | 00,160,768 | ---- | C | MD5 = E79FDA8D320147FDC347C504B3487F87] (Microsoft Corporation)
    RacEngn.dll -> C:\Windows\SysNative\RacEngn.dll -> [2009/06/04 04:48:03 | 01,244,672 | ---- | C | MD5 = 95F7DB7DD8259D013831E35EE6C7A270] (Microsoft Corporation)
    msctf.dll -> C:\Windows\SysNative\msctf.dll -> [2009/06/04 04:48:03 | 01,040,896 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    gpedit.dll -> C:\Windows\SysNative\gpedit.dll -> [2009/06/04 04:48:03 | 01,013,248 | ---- | C | MD5 = 0BC0B3C27E4A5F4FFD864C6BA7F4F4A6] (Microsoft Corporation)
    gpedit.dll -> C:\Windows\SysWow64\gpedit.dll -> [2009/06/04 04:48:03 | 00,950,784 | ---- | C | MD5 = 4E51A7052D162B2BA85612B486A68A45] (Microsoft Corporation)
    comuid.dll -> C:\Windows\SysNative\comuid.dll -> [2009/06/04 04:48:03 | 00,918,528 | ---- | C | MD5 = 8B95404FC3B191192A70534C5B74C861] (Microsoft Corporation)
    oleaut32.dll -> C:\Windows\SysNative\oleaut32.dll -> [2009/06/04 04:48:03 | 00,847,360 | ---- | C | MD5 = 1785F3FC389381B6F44F52011E47685E] (Microsoft Corporation)
    user32.dll -> C:\Windows\SysNative\user32.dll -> [2009/06/04 04:48:03 | 00,820,224 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    bthprops.cpl -> C:\Windows\SysNative\bthprops.cpl -> [2009/06/04 04:48:03 | 00,668,160 | ---- | C | MD5 = DBC0B012A13C7738871D569005DEB5D1] (Microsoft Corporation)
    evr.dll -> C:\Windows\SysNative\evr.dll -> [2009/06/04 04:48:03 | 00,647,680 | ---- | C | MD5 = AF96CCADA9B7ADB6488DDB6A60374821] (Microsoft Corporation)
    ipsmsnap.dll -> C:\Windows\SysNative\ipsmsnap.dll -> [2009/06/04 04:48:03 | 00,620,544 | ---- | C | MD5 = D1F7EB45DE179124288EE090B6CDE424] (Microsoft Corporation)
    msdrm.dll -> C:\Windows\SysNative\msdrm.dll -> [2009/06/04 04:48:03 | 00,460,288 | ---- | C | MD5 = 37B431C27C022C406E1104378737CF1D] (Microsoft Corporation)
    audiosrv.dll -> C:\Windows\SysNative\audiosrv.dll -> [2009/06/04 04:48:03 | 00,446,464 | ---- | C | MD5 = 79318C744693EC983D20E9337A2F8196] (Microsoft Corporation)
    msvcp60.dll -> C:\Windows\SysWow64\msvcp60.dll -> [2009/06/04 04:48:03 | 00,406,528 | ---- | C | MD5 = 2310A32BB0164552A311BFA02102A3D6] (Microsoft Corporation)
    photowiz.dll -> C:\Windows\SysNative\photowiz.dll -> [2009/06/04 04:48:03 | 00,402,944 | ---- | C | MD5 = A58E57E542EF8F41DC5842F4AB9C9EA5] (Microsoft Corporation)
    es.dll -> C:\Windows\SysNative\es.dll -> [2009/06/04 04:48:03 | 00,361,984 | ---- | C | MD5 = E12F22B73F153DECE721CD45EC05B4AF] (Microsoft Corporation)
    msjtes40.dll -> C:\Windows\SysWow64\msjtes40.dll -> [2009/06/04 04:48:03 | 00,290,816 | ---- | C | MD5 = 79B0463638C7ED08DB71FE3437C95A44] (Microsoft Corporation)
    infocardapi.dll -> C:\Windows\SysWow64\infocardapi.dll -> [2009/06/04 04:48:03 | 00,099,680 | ---- | C | MD5 = E6AA880A6AE64D9C5FED9D7CCC9DA8EF] (Microsoft Corporation)
    slwmi.dll -> C:\Windows\SysNative\slwmi.dll -> [2009/06/04 04:48:03 | 00,088,064 | ---- | C | MD5 = BDFDEBFEB67DEC4A82792E421778805F] (Microsoft Corporation)
    Storprop.dll -> C:\Windows\SysWow64\Storprop.dll -> [2009/06/04 04:48:03 | 00,055,808 | ---- | C | MD5 = 61BB723E9AF2D1505337402F4AE79E94] (Microsoft Corporation)
    quartz.dll -> C:\Windows\SysNative\quartz.dll -> [2009/06/04 04:48:02 | 01,570,304 | ---- | C | MD5 = 7C928C97C0E24CC5FDB13D705C122C09] (Microsoft Corporation)
    advapi32.dll -> C:\Windows\SysWow64\advapi32.dll -> [2009/06/04 04:48:02 | 00,800,768 | ---- | C | MD5 = 50CAA7072C171B9887215C83D52069E4] (Microsoft Corporation)
    msihnd.dll -> C:\Windows\SysNative\msihnd.dll -> [2009/06/04 04:48:02 | 00,503,296 | ---- | C | MD5 = CC5A06E21510501BFAC469B36490FD86] (Microsoft Corporation)
    shlwapi.dll -> C:\Windows\SysNative\shlwapi.dll -> [2009/06/04 04:48:02 | 00,455,680 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    certcli.dll -> C:\Windows\SysNative\certcli.dll -> [2009/06/04 04:48:02 | 00,447,488 | ---- | C | MD5 = C88208718545410FA0F11E06F6E7F01B] (Microsoft Corporation)
    wevtapi.dll -> C:\Windows\SysNative\wevtapi.dll -> [2009/06/04 04:48:02 | 00,394,240 | ---- | C | MD5 = 45B4004F43B48E4A3F12B85891F81221] (Microsoft Corporation)
    msexcl40.dll -> C:\Windows\SysWow64\msexcl40.dll -> [2009/06/04 04:48:02 | 00,339,968 | ---- | C | MD5 = 35525EE95CEDB5E9908CFF676C7A2D97] (Microsoft Corporation)
    WMPhoto.dll -> C:\Windows\SysWow64\WMPhoto.dll -> [2009/06/04 04:48:02 | 00,321,536 | ---- | C | MD5 = 845D8122008558B9A3A5EE81B15C8C46] (Microsoft Corporation)
    psisrndr.ax -> C:\Windows\SysNative\psisrndr.ax -> [2009/06/04 04:48:02 | 00,289,792 | ---- | C | MD5 = F581D89097400BB3142F7E2EA7AF55A2] (Microsoft Corporation)
    mstext40.dll -> C:\Windows\SysWow64\mstext40.dll -> [2009/06/04 04:48:02 | 00,282,624 | ---- | C | MD5 = 946D35645E672E01B35ED194F9BE4F7A] (Microsoft Corporation)
    fltMgr.sys -> C:\Windows\SysNative\drivers\fltMgr.sys -> [2009/06/04 04:48:02 | 00,275,432 | ---- | C | MD5 = E3041BC26D6930D61F42AEDB79C91720] (Microsoft Corporation)
    es.dll -> C:\Windows\SysWow64\es.dll -> [2009/06/04 04:48:02 | 00,268,800 | ---- | C | MD5 = 67058C46504BC12D821F38CF99B7B28F] (Microsoft Corporation)
    WebClnt.dll -> C:\Windows\SysWow64\WebClnt.dll -> [2009/06/04 04:48:02 | 00,199,680 | ---- | C | MD5 = 04C37D8107320312FBAE09926103D5E2] (Microsoft Corporation)
    nlhtml.dll -> C:\Windows\SysNative\nlhtml.dll -> [2009/06/04 04:48:02 | 00,181,248 | ---- | C | MD5 = E02D92397E7F43E47244F33C88BB3DB0] (Microsoft Corporation)
    PresentationSettings.exe -> C:\Windows\SysNative\PresentationSettings.exe -> [2009/06/04 04:48:02 | 00,173,568 | ---- | C | MD5 = 5537EBC1209B3AA1332A03896B1184C3] (Microsoft Corporation)
    SLC.dll -> C:\Windows\SysNative\SLC.dll -> [2009/06/04 04:48:02 | 00,151,552 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    AuxiliaryDisplayDriverLib.dll -> C:\Windows\SysNative\AuxiliaryDisplayDriverLib.dll -> [2009/06/04 04:48:02 | 00,131,072 | ---- | C | MD5 = C96425341E76EE123521C84448C4FFC3] (Microsoft Corporation)
    AuxiliaryDisplayServices.dll -> C:\Windows\SysNative\AuxiliaryDisplayServices.dll -> [2009/06/04 04:48:02 | 00,126,464 | ---- | C | MD5 = FCBF244FE64C227839EC365333CBE79B] (Microsoft Corporation)
    wcnwiz.dll -> C:\Windows\SysNative\wcnwiz.dll -> [2009/06/04 04:48:01 | 01,681,920 | ---- | C | MD5 = 22CB55E35C2FFC08711473738A629BB5] (Microsoft Corporation)
    comsvcs.dll -> C:\Windows\SysWow64\comsvcs.dll -> [2009/06/04 04:48:01 | 01,209,856 | ---- | C | MD5 = 95A5497D129D95D12A46F7848AFFE1DB] (Microsoft Corporation)
    vssapi.dll -> C:\Windows\SysWow64\vssapi.dll -> [2009/06/04 04:48:01 | 01,077,248 | ---- | C | MD5 = 17FC3EDA0162F513E858B8C8FA7FA6E0] (Microsoft Corporation)
    msvcrt.dll -> C:\Windows\SysNative\msvcrt.dll -> [2009/06/04 04:48:01 | 00,621,056 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    devmgr.dll -> C:\Windows\SysNative\devmgr.dll -> [2009/06/04 04:48:01 | 00,498,688 | ---- | C | MD5 = C4A4967907A8820761EEA49FE2A35AE3] (Microsoft Corporation)
    msxbde40.dll -> C:\Windows\SysWow64\msxbde40.dll -> [2009/06/04 04:48:01 | 00,454,656 | ---- | C | MD5 = A02537DD475CC0BAB7FC07F9B44720C0] (Microsoft Corporation)
    WcnNetsh.dll -> C:\Windows\SysNative\WcnNetsh.dll -> [2009/06/04 04:48:01 | 00,238,592 | ---- | C | MD5 = EEB896D38B7A5CC1CC621278254EC9C8] (Microsoft Corporation)
    srvnet.sys -> C:\Windows\SysNative\drivers\srvnet.sys -> [2009/06/04 04:48:01 | 00,143,360 | ---- | C | MD5 = 54F34EF396760EC51ABF85E12CC72ACF] (Microsoft Corporation)
    slwmi.dll -> C:\Windows\SysWow64\slwmi.dll -> [2009/06/04 04:48:01 | 00,067,584 | ---- | C | MD5 = A0D83B84678410994372D7D4BABAF7E0] (Microsoft Corporation)
    DevicePairingProxy.dll -> C:\Windows\SysNative\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,057,856 | ---- | C | MD5 = 63C9915DB262D87566F748E51DA536CF] (Microsoft Corporation)
    DevicePairingProxy.dll -> C:\Windows\SysWow64\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,054,784 | ---- | C | MD5 = 3C7A18013E99EAA45188A7C57B1AA758] (Microsoft Corporation)
    mstscax.dll -> C:\Windows\SysWow64\mstscax.dll -> [2009/06/04 04:48:00 | 02,066,432 | ---- | C | MD5 = 32A920003B5AFB260F86473D9D550457] (Microsoft Corporation)
    authui.dll -> C:\Windows\SysWow64\authui.dll -> [2009/06/04 04:48:00 | 01,985,024 | ---- | C | MD5 = 58C2521D87C494831A625202C80354AD] (Microsoft Corporation)
    msdtctm.dll -> C:\Windows\SysNative\msdtctm.dll -> [2009/06/04 04:48:00 | 01,499,136 | ---- | C | MD5 = 5CB1477EEABBEE128C759283514AFA93] (Microsoft Corporation)
    shdocvw.dll -> C:\Windows\SysNative\shdocvw.dll -> [2009/06/04 04:48:00 | 01,195,520 | ---- | C | MD5 = 52414CF37708E802AA6F058695592DF9] (Microsoft Corporation)
    NetProjW.dll -> C:\Windows\SysNative\NetProjW.dll -> [2009/06/04 04:48:00 | 01,098,240 | ---- | C | MD5 = 61D4DBC6D1C1C98DC935888295A89D01] (Microsoft Corporation)
    wcncsvc.dll -> C:\Windows\SysNative\wcncsvc.dll -> [2009/06/04 04:48:00 | 00,581,120 | ---- | C | MD5 = B4E4C37D0AA6100090A53213EE2BF1C1] (Microsoft Corporation)
    msctfp.dll -> C:\Windows\SysNative\msctfp.dll -> [2009/06/04 04:48:00 | 00,230,400 | ---- | C | MD5 = 21D24F722E08B8E3AA7F19855403C5C2] (Microsoft Corporation)
    fdBthProxy.dll -> C:\Windows\SysNative\fdBthProxy.dll -> [2009/06/04 04:48:00 | 00,012,288 | ---- | C | MD5 = 06422CA4D1F57C78F2BE9722EC20FB0A] (Microsoft Corporation)
    certutil.exe -> C:\Windows\SysNative\certutil.exe -> [2009/06/04 04:47:59 | 01,060,864 | ---- | C | MD5 = C4AA6E59A319E5D51470D1809B1354C4] (Microsoft Corporation)
    propsys.dll -> C:\Windows\SysWow64\propsys.dll -> [2009/06/04 04:47:59 | 00,754,688 | ---- | C | MD5 = 7DACD94118E2D8B6D72F47ADEB0367BF] (Microsoft Corporation)
    gpsvc.dll -> C:\Windows\SysNative\gpsvc.dll -> [2009/06/04 04:47:59 | 00,719,360 | ---- | C | MD5 = A0E1B575BA8F504968CD40C0FAEB2384] (Microsoft Corporation)
    win32spl.dll -> C:\Windows\SysNative\win32spl.dll -> [2009/06/04 04:47:59 | 00,660,480 | ---- | C | MD5 = 1D2CC592516BD0544A107104461688F4] (Microsoft Corporation)
    msrepl40.dll -> C:\Windows\SysWow64\msrepl40.dll -> [2009/06/04 04:47:59 | 00,643,072 | ---- | C | MD5 = A4D9AB211B376EB363550A250A64D84D] (Microsoft Corporation)
    bthprops.cpl -> C:\Windows\SysWow64\bthprops.cpl -> [2009/06/04 04:47:59 | 00,640,512 | ---- | C | MD5 = C0ABD66F31C0B84CD944802E6D3D02C2] (Microsoft Corporation)
    SLCommDlg.dll -> C:\Windows\SysNative\SLCommDlg.dll -> [2009/06/04 04:47:59 | 00,631,296 | ---- | C | MD5 = 77A8C01035EF074AAA930C971A54598B] (Microsoft Corporation)
    msvcp60.dll -> C:\Windows\SysNative\msvcp60.dll -> [2009/06/04 04:47:59 | 00,598,016 | ---- | C | MD5 = FC26F6B403512A3224B16CA59976D1CB] (Microsoft Corporation)
    newdev.dll -> C:\Windows\SysWow64\newdev.dll -> [2009/06/04 04:47:59 | 00,469,504 | ---- | C | MD5 = E1B80644E7125231AAEF62FC2C81C8FE] (Microsoft Corporation)
    w32time.dll -> C:\Windows\SysNative\w32time.dll -> [2009/06/04 04:47:59 | 00,372,736 | ---- | C | MD5 = F14A7DE2EA41883E250892E1E5230A9A] (Microsoft Corporation)
    PresentationHost.exe -> C:\Windows\SysNative\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,354,640 | ---- | C | MD5 = 25A85D10DE6A1D7E1BFC294B82726AC4] (Microsoft Corporation)
    PresentationHost.exe -> C:\Windows\SysWow64\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,323,952 | ---- | C | MD5 = 44E6658E2466566E1AC82E31EAE572F8] (Microsoft Corporation)
    rsaenh.dll -> C:\Windows\SysNative\rsaenh.dll -> [2009/06/04 04:47:59 | 00,289,768 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    spoolsv.exe -> C:\Windows\SysNative\spoolsv.exe -> [2009/06/04 04:47:59 | 00,268,288 | ---- | C | MD5 = EADA445EAEDD1D7DF4C5EB42B3612729] (Microsoft Corporation)
    netbt.sys -> C:\Windows\SysNative\drivers\netbt.sys -> [2009/06/04 04:47:59 | 00,248,320 | ---- | C | MD5 = FC2C792EBDDC8E28DF939D6A92C83D61] (Microsoft Corporation)
    WebClnt.dll -> C:\Windows\SysNative\WebClnt.dll -> [2009/06/04 04:47:59 | 00,218,624 | ---- | C | MD5 = 3E6D05381CF35F75EBB055544A8ED9AC] (Microsoft Corporation)
    Classpnp.sys -> C:\Windows\SysNative\drivers\Classpnp.sys -> [2009/06/04 04:47:59 | 00,164,840 | ---- | C | MD5 = 6B6BEA1421FC416E35B2D17495380104] (Microsoft Corporation)
    iasrecst.dll -> C:\Windows\SysWow64\iasrecst.dll -> [2009/06/04 04:47:59 | 00,119,296 | ---- | C | MD5 = E176452A085570571A38C0CB33B1F99A] (Microsoft Corporation)
    PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:47:59 | 00,102,816 | ---- | C | MD5 = 199FBF92E3F750637F2C027A4792949B] (Microsoft Corporation)
    davclnt.dll -> C:\Windows\SysNative\davclnt.dll -> [2009/06/04 04:47:59 | 00,082,432 | ---- | C | MD5 = AAC4DFF79689736D8B316FC05A3E25EC] (Microsoft Corporation)
    explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/06/04 04:47:58 | 02,926,592 | ---- | C | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
    certmgr.dll -> C:\Windows\SysNative\certmgr.dll -> [2009/06/04 04:47:58 | 01,748,992 | ---- | C | MD5 = 1E72CD50DB40A2034E37C1D269D518BF] (Microsoft Corporation)
    setupapi.dll -> C:\Windows\SysWow64\setupapi.dll -> [2009/06/04 04:47:58 | 01,591,296 | ---- | C | MD5 = 551F51B66E5EA87A38D8197EB3BDB57A] (Microsoft Corporation)
    crypt32.dll -> C:\Windows\SysWow64\crypt32.dll -> [2009/06/04 04:47:58 | 00,978,944 | ---- | C | MD5 = 6659EC6006FD99A3AF1B8A6306F8BE3C] (Microsoft Corporation)
    msdtcprx.dll -> C:\Windows\SysNative\msdtcprx.dll -> [2009/06/04 04:47:58 | 00,727,552 | ---- | C | MD5 = 649672EED4626058CB740117DD453BFC] (Microsoft Corporation)
    eaphost.tmf -> C:\Windows\SysNative\eaphost.tmf -> [2009/06/04 04:47:58 | 00,700,507 | ---- | C | MD5 = 5D459A67C06671DAAAB378FBA07A1268] ()
    dot3.tmf -> C:\Windows\SysNative\dot3.tmf -> [2009/06/04 04:47:58 | 00,471,992 | ---- | C | MD5 = FBB5C98267F271BE897A47D220BBA131] ()
    mspbde40.dll -> C:\Windows\SysWow64\mspbde40.dll -> [2009/06/04 04:47:58 | 00,368,640 | ---- | C | MD5 = 81379121E6028612D821009636A6BB95] (Microsoft Corporation)
    umpnpmgr.dll -> C:\Windows\SysNative\umpnpmgr.dll -> [2009/06/04 04:47:58 | 00,313,344 | ---- | C | MD5 = FE6B0F59215C9FD9F9D26539C58C8B82] (Microsoft Corporation)
    eudcedit.exe -> C:\Windows\SysWow64\eudcedit.exe -> [2009/06/04 04:47:58 | 00,205,824 | ---- | C | MD5 = 7095D31979FFB0B917987B388779BD01] (Microsoft Corporation)
    d3d9.dll -> C:\Windows\SysWow64\d3d9.dll -> [2009/06/04 04:47:57 | 01,788,416 | ---- | C | MD5 = 8AAEEE8E59A70F37579993D118A34EE0] (Microsoft Corporation)
    WMNetMgr.dll -> C:\Windows\SysNative\WMNetMgr.dll -> [2009/06/04 04:47:57 | 01,245,696 | ---- | C | MD5 = D2C36317F072C58D4AB8C0203010C9B1] (Microsoft Corporation)
    WindowsCodecs.dll -> C:\Windows\SysNative\WindowsCodecs.dll -> [2009/06/04 04:47:57 | 00,841,728 | ---- | C | MD5 = EED4C9B2249DBFC81ADC18DCB7EEF2AB] (Microsoft Corporation)
    PhotoScreensaver.scr -> C:\Windows\SysNative\PhotoScreensaver.scr -> [2009/06/04 04:47:57 | 00,840,704 | ---- | C | MD5 = 7AC5EDC47BA33E02B7D55B6C10E01688] (Microsoft Corporation)
    MPSSVC.dll -> C:\Windows\SysNative\MPSSVC.dll -> [2009/06/04 04:47:57 | 00,603,136 | ---- | C | MD5 = 897E3BAF68BA406A61682AE39C83900C] (Microsoft Corporation)
  • edited June 2009
    wmicmiplugin.dll -> C:\Windows\SysNative\wmicmiplugin.dll -> [2009/06/04 04:47:57 | 00,497,152 | ---- | C | MD5 = FED22F5556D652C9F87BF3255D463C24] (Microsoft Corporation)
    swprv.dll -> C:\Windows\SysNative\swprv.dll -> [2009/06/04 04:47:57 | 00,480,768 | ---- | C | MD5 = 6DE37F4DE19D4EFD9C48C43ADDBC949A] (Microsoft Corporation)
    gdi32.dll -> C:\Windows\SysNative\gdi32.dll -> [2009/06/04 04:47:57 | 00,389,632 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    SLUI.exe -> C:\Windows\SysNative\SLUI.exe -> [2009/06/04 04:47:57 | 00,385,024 | ---- | C | MD5 = 21C15BAC64D61959FD79959F1EAF3DC4] (Microsoft Corporation)
    rdbss.sys -> C:\Windows\SysNative\drivers\rdbss.sys -> [2009/06/04 04:47:57 | 00,287,744 | ---- | C | MD5 = 322DB5C6B55E8D8EE8D6F358B2AAABB1] (Microsoft Corporation)
    msv1_0.dll -> C:\Windows\SysNative\msv1_0.dll -> [2009/06/04 04:47:57 | 00,265,728 | ---- | C | MD5 = 4D7969AF7FFFB45F53CCCEDEBE5A1136] (Microsoft Corporation)
    msltus40.dll -> C:\Windows\SysWow64\msltus40.dll -> [2009/06/04 04:47:57 | 00,241,664 | ---- | C | MD5 = 1A703DA65271886A8DDFB31ACA215DAE] (Microsoft Corporation)
    StructuredQuerySchema.bin -> C:\Windows\SysWow64\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
    StructuredQuerySchema.bin -> C:\Windows\SysNative\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
    davclnt.dll -> C:\Windows\SysWow64\davclnt.dll -> [2009/06/04 04:47:57 | 00,061,440 | ---- | C | MD5 = CFBD2E1FE18B50748A76703A2DC6D4E3] (Microsoft Corporation)
    WMVSDECD.DLL -> C:\Windows\SysNative\WMVSDECD.DLL -> [2009/06/04 04:47:56 | 01,543,680 | ---- | C | MD5 = D4F0833AD5C60422BC63B740D7198EB0] (Microsoft Corporation)
    wercon.exe -> C:\Windows\SysNative\wercon.exe -> [2009/06/04 04:47:56 | 01,394,176 | ---- | C | MD5 = 406121C827A2901E72DAB2197DAE180E] (Microsoft Corporation)
    browseui.dll -> C:\Windows\SysWow64\browseui.dll -> [2009/06/04 04:47:56 | 01,324,032 | ---- | C | MD5 = 4504819D18FAC09B6108D8728467E5B2] (Microsoft Corporation)
    mfc42.dll -> C:\Windows\SysWow64\mfc42.dll -> [2009/06/04 04:47:56 | 01,135,104 | ---- | C | MD5 = 9A8880BE64A67FA72A8F4DC71AF882E1] (Microsoft Corporation)
    ipsecsnp.dll -> C:\Windows\SysNative\ipsecsnp.dll -> [2009/06/04 04:47:56 | 00,935,424 | ---- | C | MD5 = F6FA73DC89FF88360AEDBCE64BF55DD1] (Microsoft Corporation)
    dxgkrnl.sys -> C:\Windows\SysNative\drivers\dxgkrnl.sys -> [2009/06/04 04:47:56 | 00,885,248 | ---- | C | MD5 = E828CDCA431D1F98D33501DFC390079A] (Microsoft Corporation)
    samsrv.dll -> C:\Windows\SysNative\samsrv.dll -> [2009/06/04 04:47:56 | 00,671,744 | ---- | C | MD5 = 60EEC5440C2D05E5FDA04900E45FF717] (Microsoft Corporation)
    netapi32.dll -> C:\Windows\SysNative\netapi32.dll -> [2009/06/04 04:47:56 | 00,648,192 | ---- | C | MD5 = EAA6D9F1C23A5C3375E6D3653F57E7BE] (Microsoft Corporation)
    sqlsrv32.dll -> C:\Windows\SysNative\sqlsrv32.dll -> [2009/06/04 04:47:56 | 00,581,632 | ---- | C | MD5 = 9B385CED28719273914D64556AA2DFC7] (Microsoft Corporation)
    ci.dll -> C:\Windows\SysNative\ci.dll -> [2009/06/04 04:47:56 | 00,380,392 | ---- | C | MD5 = 57D469072472C9F14125A347C522DD18] (Microsoft Corporation)
    shlwapi.dll -> C:\Windows\SysWow64\shlwapi.dll -> [2009/06/04 04:47:56 | 00,353,280 | ---- | C | MD5 = 8246FC0B1759EBE4E0E60BA1BD13C467] (Microsoft Corporation)
    iassdo.dll -> C:\Windows\SysNative\iassdo.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = ED50FAC6BC71FBA60F845A3F683CA056] (Microsoft Corporation)
    msrd3x40.dll -> C:\Windows\SysWow64\msrd3x40.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = 447E79497D059943519434A7D5EA0963] (Microsoft Corporation)
    PortableDeviceApi.dll -> C:\Windows\SysNative\PortableDeviceApi.dll -> [2009/06/04 04:47:56 | 00,324,608 | ---- | C | MD5 = 494B0A9A4DB58EF767DC115512823A8A] (Microsoft Corporation)
    photowiz.dll -> C:\Windows\SysWow64\photowiz.dll -> [2009/06/04 04:47:56 | 00,293,376 | ---- | C | MD5 = ED49ADAF173B23E48A9BA110BD80160F] (Microsoft Corporation)
    usbhub.sys -> C:\Windows\SysNative\drivers\usbhub.sys -> [2009/06/04 04:47:56 | 00,273,920 | ---- | C | MD5 = BB35CD80A2ECECFADC73569B3D70C7D1] (Microsoft Corporation)
    wevtapi.dll -> C:\Windows\SysWow64\wevtapi.dll -> [2009/06/04 04:47:56 | 00,250,368 | ---- | C | MD5 = 4DE3C4D07BAFDE616EFA0ADE076CBAC2] (Microsoft Corporation)
    nlhtml.dll -> C:\Windows\SysWow64\nlhtml.dll -> [2009/06/04 04:47:56 | 00,136,192 | ---- | C | MD5 = 70352EFA22EAFF59D50F0ADF7D27D918] (Microsoft Corporation)
    locale.nls -> C:\Windows\SysWow64\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
    locale.nls -> C:\Windows\SysNative\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
    authui.dll -> C:\Windows\SysNative\authui.dll -> [2009/06/04 04:47:55 | 02,272,256 | ---- | C | MD5 = 363D07C0F427C72BDE0B6D6492A205C9] (Microsoft Corporation)
    quartz.dll -> C:\Windows\SysWow64\quartz.dll -> [2009/06/04 04:47:55 | 01,314,816 | ---- | C | MD5 = F82BEBFF620C728CD4CC532E5D266D44] (Microsoft Corporation)
    win32spl.dll -> C:\Windows\SysWow64\win32spl.dll -> [2009/06/04 04:47:55 | 00,443,392 | ---- | C | MD5 = C90B296C43EDD9DD1751AD3B590ACDE6] (Microsoft Corporation)
    onex.tmf -> C:\Windows\SysNative\onex.tmf -> [2009/06/04 04:47:55 | 00,395,723 | ---- | C | MD5 = 4E18EBFC135590B5462EEF830224A1B2] ()
    services.exe -> C:\Windows\SysNative\services.exe -> [2009/06/04 04:47:55 | 00,384,512 | ---- | C | MD5 = 934E0B7D77FF78C18D9F8891221B6DE3] (Microsoft Corporation)
    USBSTOR.SYS -> C:\Windows\SysNative\drivers\USBSTOR.SYS -> [2009/06/04 04:47:55 | 00,077,824 | ---- | C | MD5 = B854C1558FCA0C269A38663E8B59B581] (Microsoft Corporation)
    netshell.dll -> C:\Windows\SysWow64\netshell.dll -> [2009/06/04 04:47:54 | 03,174,400 | ---- | C | MD5 = E98E402067978DB38282158F9E8609CA] (Microsoft Corporation)
    apds.dll -> C:\Windows\SysWow64\apds.dll -> [2009/06/04 04:47:54 | 01,730,560 | ---- | C | MD5 = AC40F8899BEC013EB1CA7CCC2D69E00C] (Microsoft Corporation)
    mswstr10.dll -> C:\Windows\SysWow64\mswstr10.dll -> [2009/06/04 04:47:54 | 00,618,496 | ---- | C | MD5 = E0B787702BAF0CF4CEDF8F61B71F8383] (Microsoft Corporation)
    SLCommDlg.dll -> C:\Windows\SysWow64\SLCommDlg.dll -> [2009/06/04 04:47:54 | 00,582,144 | ---- | C | MD5 = A2F612CBFEE5268CB7DB88EAF3992454] (Microsoft Corporation)
    oleaut32.dll -> C:\Windows\SysWow64\oleaut32.dll -> [2009/06/04 04:47:54 | 00,563,712 | ---- | C | MD5 = CA85552B1A307CB03FF1A1D2D12CB1C5] (Microsoft Corporation)
    comdlg32.dll -> C:\Windows\SysNative\comdlg32.dll -> [2009/06/04 04:47:54 | 00,549,888 | ---- | C | MD5 = AA09B70F619CBF499EFC22E7A63E3CE6] (Microsoft Corporation)
    kerberos.dll -> C:\Windows\SysWow64\kerberos.dll -> [2009/06/04 04:47:54 | 00,497,664 | ---- | C | MD5 = 9E419B0C91886247B004002126A733A2] (Microsoft Corporation)
    odbc32.dll -> C:\Windows\SysNative\odbc32.dll -> [2009/06/04 04:47:54 | 00,462,848 | ---- | C | MD5 = 8583DDE24C687658FCB8080FCF0BE618] (Microsoft Corporation)
    QAGENTRT.DLL -> C:\Windows\SysNative\QAGENTRT.DLL -> [2009/06/04 04:47:54 | 00,409,600 | ---- | C | MD5 = A5B10C845E7538C60C0F5D87A57CB3F5] (Microsoft Corporation)
    winhttp.dll -> C:\Windows\SysWow64\winhttp.dll -> [2009/06/04 04:47:54 | 00,375,808 | ---- | C | MD5 = 6B0373ED07C3523D74070085E0BF8FD2] (Microsoft Corporation)
    mswsock.dll -> C:\Windows\SysNative\mswsock.dll -> [2009/06/04 04:47:54 | 00,304,128 | ---- | C | MD5 = BB08D93011B82883EC33C7707A9627BE] (Microsoft Corporation)
    ws2_32.dll -> C:\Windows\SysNative\ws2_32.dll -> [2009/06/04 04:47:54 | 00,264,704 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    dnsapi.dll -> C:\Windows\SysNative\dnsapi.dll -> [2009/06/04 04:47:54 | 00,221,696 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    msv1_0.dll -> C:\Windows\SysWow64\msv1_0.dll -> [2009/06/04 04:47:54 | 00,215,040 | ---- | C | MD5 = A24D2F08743454A51F688BA4AE5863A1] (Microsoft Corporation)
    WcnNetsh.dll -> C:\Windows\SysWow64\WcnNetsh.dll -> [2009/06/04 04:47:54 | 00,165,376 | ---- | C | MD5 = 2999CA596EB9E4BEDBA65EF2A47EECB1] (Microsoft Corporation)
    propdefs.dll -> C:\Windows\SysNative\propdefs.dll -> [2009/06/04 04:47:54 | 00,080,896 | ---- | C | MD5 = C332027B1DDAA66141217AFFBFB73754] (Microsoft Corporation)
    mfc42u.dll -> C:\Windows\SysWow64\mfc42u.dll -> [2009/06/04 04:47:53 | 01,160,704 | ---- | C | MD5 = 1DC99BA7265ACF7A5E19A924800EB823] (Microsoft Corporation)
    WerFaultSecure.exe -> C:\Windows\SysNative\WerFaultSecure.exe -> [2009/06/04 04:47:53 | 01,114,112 | ---- | C | MD5 = C457FFC56D38D295B0E57E8550589710] (Microsoft Corporation)
    winresume.efi -> C:\Windows\SysNative\winresume.efi -> [2009/06/04 04:47:53 | 00,992,728 | ---- | C | MD5 = 19CE8FF54DE700D7EAF98D96B6FECF11] (Microsoft Corporation)
    WpdMtpDr.dll -> C:\Windows\SysNative\drivers\UMDF\WpdMtpDr.dll -> [2009/06/04 04:47:53 | 00,934,912 | ---- | C | MD5 = 8419889AEC9DBEA7756173FE8F0EB9F2] (Microsoft Corporation)
    msctf.dll -> C:\Windows\SysWow64\msctf.dll -> [2009/06/04 04:47:53 | 00,807,424 | ---- | C | MD5 = E3C3BD69701CE6B7B17101E4F7740534] (Microsoft Corporation)
    netlogon.dll -> C:\Windows\SysNative\netlogon.dll -> [2009/06/04 04:47:53 | 00,717,312 | ---- | C | MD5 = A3F1B171702CA04744EE514243B45BFB] (Microsoft Corporation)
    msvcrt.dll -> C:\Windows\SysWow64\msvcrt.dll -> [2009/06/04 04:47:53 | 00,679,936 | ---- | C | MD5 = F5E991236960137B1F5449C5E5DF4656] (Microsoft Corporation)
    PhotoMetadataHandler.dll -> C:\Windows\SysNative\PhotoMetadataHandler.dll -> [2009/06/04 04:47:53 | 00,470,016 | ---- | C | MD5 = AA866B1970E18CD92DAD3B32611598A4] (Microsoft Corporation)
    emdmgmt.dll -> C:\Windows\SysNative\emdmgmt.dll -> [2009/06/04 04:47:53 | 00,399,360 | ---- | C | MD5 = A9B18B63A4FD6BAAB83326706D857FAB] (Microsoft Corporation)
    eapphost.dll -> C:\Windows\SysNative\eapphost.dll -> [2009/06/04 04:47:53 | 00,261,632 | ---- | C | MD5 = E0159CE395B31F746AA26D0A6996DB29] (Microsoft Corporation)
    newdev.dll -> C:\Windows\SysNative\newdev.dll -> [2009/06/04 04:47:53 | 00,215,552 | ---- | C | MD5 = 42BE9AE02DF6B7FB112E70E7CE825CED] (Microsoft Corporation)
    WinSCard.dll -> C:\Windows\SysNative\WinSCard.dll -> [2009/06/04 04:47:53 | 00,190,464 | ---- | C | MD5 = B1D4BB8DFD7128A90982562268920724] (Microsoft Corporation)
    eapphost.dll -> C:\Windows\SysWow64\eapphost.dll -> [2009/06/04 04:47:53 | 00,183,808 | ---- | C | MD5 = 3AB4023CBD406AC33AB8CDFF6C8079A0] (Microsoft Corporation)
    FWPKCLNT.SYS -> C:\Windows\SysNative\drivers\FWPKCLNT.SYS -> [2009/06/04 04:47:53 | 00,166,888 | ---- | C | MD5 = DC83A8659514AB95972B13C71F50D0CB] (Microsoft Corporation)
    mrxdav.sys -> C:\Windows\SysNative\drivers\mrxdav.sys -> [2009/06/04 04:47:53 | 00,139,264 | ---- | C | MD5 = 7C1DE4AA96DC0C071611F9E7DE02A68D] (Microsoft Corporation)
    xmlfilter.dll -> C:\Windows\SysWow64\xmlfilter.dll -> [2009/06/04 04:47:53 | 00,056,320 | ---- | C | MD5 = 7C0FC379D4B066C2D2189792DED0E4AA] (Microsoft Corporation)
    wlanpref.dll -> C:\Windows\SysNative\wlanpref.dll -> [2009/06/04 04:47:52 | 01,792,512 | ---- | C | MD5 = CFAC4A69ED38D8A3BF7D1EE3DBC1840E] (Microsoft Corporation)
    winresume.exe -> C:\Windows\SysNative\winresume.exe -> [2009/06/04 04:47:52 | 00,981,480 | ---- | C | MD5 = 68B5B3D21475AB5F4270E98010D3565A] (Microsoft Corporation)
    azroles.dll -> C:\Windows\SysNative\azroles.dll -> [2009/06/04 04:47:52 | 00,894,976 | ---- | C | MD5 = 78480FA9495F5F207043A17D8E799C5E] (Microsoft Corporation)
    usp10.dll -> C:\Windows\SysNative\usp10.dll -> [2009/06/04 04:47:52 | 00,621,568 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    IPSECSVC.DLL -> C:\Windows\SysNative\IPSECSVC.DLL -> [2009/06/04 04:47:52 | 00,533,504 | ---- | C | MD5 = 89A5560671C2D8B4A4B51F3E1AA069D8] (Microsoft Corporation)
    sqlsrv32.dll -> C:\Windows\SysWow64\sqlsrv32.dll -> [2009/06/04 04:47:52 | 00,524,288 | ---- | C | MD5 = A052F8FF7D6C6C32BCDCDA745134E569] (Microsoft Corporation)
    odbc32.dll -> C:\Windows\SysWow64\odbc32.dll -> [2009/06/04 04:47:52 | 00,409,600 | ---- | C | MD5 = 676AEC53D9D3E74A556089E665C3B586] (Microsoft Corporation)
    msrd2x40.dll -> C:\Windows\SysWow64\msrd2x40.dll -> [2009/06/04 04:47:52 | 00,319,488 | ---- | C | MD5 = 9A4B7595905E5A0DD530ECD23F77A578] (Microsoft Corporation)
    wevtutil.exe -> C:\Windows\SysNative\wevtutil.exe -> [2009/06/04 04:47:52 | 00,248,832 | ---- | C | MD5 = 27F21278BE6223D44D86FD4382E2D4A9] (Microsoft Corporation)
    MMDevAPI.dll -> C:\Windows\SysNative\MMDevAPI.dll -> [2009/06/04 04:47:52 | 00,203,776 | ---- | C | MD5 = 303C4EB5C2FB40F194E2B24CAD7148EF] (Microsoft Corporation)
    secur32.dll -> C:\Windows\SysWow64\secur32.dll -> [2009/06/04 04:47:52 | 00,077,312 | ---- | C | MD5 = 7BC0997C62B9FF56D63EAD4B66E55861] (Microsoft Corporation)
    propdefs.dll -> C:\Windows\SysWow64\propdefs.dll -> [2009/06/04 04:47:52 | 00,071,680 | ---- | C | MD5 = 88E1D14E26CB222D6B94AF85490E37F8] (Microsoft Corporation)
    milcore.dll -> C:\Windows\SysNative\milcore.dll -> [2009/06/04 04:47:51 | 02,570,240 | ---- | C | MD5 = B77AD1818DBD476245B1281016E075E4] (Microsoft Corporation)
    dbgeng.dll -> C:\Windows\SysWow64\dbgeng.dll -> [2009/06/04 04:47:51 | 01,856,512 | ---- | C | MD5 = 447983959A8CF49C4CC3B65DED69AF28] (Microsoft Corporation)
    shdocvw.dll -> C:\Windows\SysWow64\shdocvw.dll -> [2009/06/04 04:47:51 | 01,068,032 | ---- | C | MD5 = 2AA4117EE5F4765AD8404DCF9D552C71] (Microsoft Corporation)
    WsmSvc.dll -> C:\Windows\SysWow64\WsmSvc.dll -> [2009/06/04 04:47:51 | 00,747,008 | ---- | C | MD5 = 01874D4689C212460FBABF0ECD7CB7F7] (Microsoft Corporation)
    WSDApi.dll -> C:\Windows\SysNative\WSDApi.dll -> [2009/06/04 04:47:51 | 00,441,856 | ---- | C | MD5 = D485E7EA44BEE4CF783CE3566C3119D2] (Microsoft Corporation)
    Wldap32.dll -> C:\Windows\SysNative\Wldap32.dll -> [2009/06/04 04:47:51 | 00,328,704 | ---- | C | MD5 = ADC1964755BB12485A15070A4D4F2697] (Microsoft Corporation)
    iasnap.dll -> C:\Windows\SysNative\iasnap.dll -> [2009/06/04 04:47:51 | 00,213,504 | ---- | C | MD5 = 3232D6CA64C56F49A806674721A6F029] (Microsoft Corporation)
    wevtutil.exe -> C:\Windows\SysWow64\wevtutil.exe -> [2009/06/04 04:47:51 | 00,163,840 | ---- | C | MD5 = 2C2DE9CD93DD4F11F8715B7334EB40A7] (Microsoft Corporation)
    mssitlb.dll -> C:\Windows\SysNative\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,552 | ---- | C | MD5 = 1EE53C36447CE03E4E65F201E0D547DD] (Microsoft Corporation)
    mssitlb.dll -> C:\Windows\SysWow64\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,040 | ---- | C | MD5 = B9E13F49530213AB974E070A60DEB97B] (Microsoft Corporation)
    msscb.dll -> C:\Windows\SysNative\msscb.dll -> [2009/06/04 04:47:51 | 00,044,544 | ---- | C | MD5 = A44E61A183FD6D65C655E31A330ECA7E] (Microsoft Corporation)
    mmcndmgr.dll -> C:\Windows\SysWow64\mmcndmgr.dll -> [2009/06/04 04:47:50 | 02,167,808 | ---- | C | MD5 = 99BFB01E148169E6E8DA7B7232F874CE] (Microsoft Corporation)
    wmpmde.dll -> C:\Windows\SysNative\wmpmde.dll -> [2009/06/04 04:47:50 | 01,090,048 | ---- | C | MD5 = 4745415AE82069D623A805B69916F42E] (Microsoft Corporation)
    mcmde.dll -> C:\Windows\SysNative\mcmde.dll -> [2009/06/04 04:47:50 | 01,074,176 | ---- | C | MD5 = C34EA290A77FC029AC223234F210F665] (Microsoft Corporation)
    usp10.dll -> C:\Windows\SysWow64\usp10.dll -> [2009/06/04 04:47:50 | 00,502,272 | ---- | C | MD5 = 5A8E28037289FCCBF7AD3FC57DF7048F] (Microsoft Corporation)
    iassam.dll -> C:\Windows\SysNative\iassam.dll -> [2009/06/04 04:47:50 | 00,242,176 | ---- | C | MD5 = 97C86944F4FA60DEB053E2D4733CD3AA] (Microsoft Corporation)
    msiscsi.sys -> C:\Windows\SysNative\drivers\msiscsi.sys -> [2009/06/04 04:47:50 | 00,215,528 | ---- | C | MD5 = E4FDF99599F27EC25D2CF6D754243520] (Microsoft Corporation)
    gameux.dll -> C:\Windows\SysNative\gameux.dll -> [2009/06/04 04:47:49 | 01,927,680 | ---- | C | MD5 = 4697694DDF74F76E37D3E76EE4468CE4] (Microsoft Corporation)
    propsys.dll -> C:\Windows\SysNative\propsys.dll -> [2009/06/04 04:47:49 | 00,923,136 | ---- | C | MD5 = FE13271EF661F8BE83A1A0D3366164D0] (Microsoft Corporation)
    netlogon.dll -> C:\Windows\SysWow64\netlogon.dll -> [2009/06/04 04:47:49 | 00,592,896 | ---- | C | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
    winsrv.dll -> C:\Windows\SysNative\winsrv.dll -> [2009/06/04 04:47:49 | 00,450,560 | ---- | C | MD5 = 36F234FD1AA7BAE559BB1C483FC76286] (Microsoft Corporation)
    devmgr.dll -> C:\Windows\SysWow64\devmgr.dll -> [2009/06/04 04:47:49 | 00,378,368 | ---- | C | MD5 = 5CAA965A14ADBDEF4359F3D2BEA9D9F7] (Microsoft Corporation)
    schannel.dll -> C:\Windows\SysNative\schannel.dll -> [2009/06/04 04:47:49 | 00,335,360 | ---- | C | MD5 = F870ECC00D60B40E0894414F7833B002] (Microsoft Corporation)
    schannel.dll -> C:\Windows\SysWow64\schannel.dll -> [2009/06/04 04:47:49 | 00,268,800 | ---- | C | MD5 = 17038AA83CCC0E1573FCE458CA790380] (Microsoft Corporation)
    adsldpc.dll -> C:\Windows\SysWow64\adsldpc.dll -> [2009/06/04 04:47:49 | 00,199,168 | ---- | C | MD5 = E9B9C1B98C8D6D48407E1C1203EAC659] (Microsoft Corporation)
    drvinst.exe -> C:\Windows\SysWow64\drvinst.exe -> [2009/06/04 04:47:49 | 00,194,048 | ---- | C | MD5 = 488F6147CBBF38ADFA29710537E02E61] (Microsoft Corporation)
    srv2.sys -> C:\Windows\SysNative\drivers\srv2.sys -> [2009/06/04 04:47:49 | 00,174,592 | ---- | C | MD5 = EFCA77E9F9FDAB1DE37CC473066DC715] (Microsoft Corporation)
    cryptsvc.dll -> C:\Windows\SysNative\cryptsvc.dll -> [2009/06/04 04:47:49 | 00,166,912 | ---- | C | MD5 = 18918613E63F387CDE4D95CA7D49DCF7] (Microsoft Corporation)
    msctfp.dll -> C:\Windows\SysWow64\msctfp.dll -> [2009/06/04 04:47:49 | 00,084,992 | ---- | C | MD5 = 89C91775A8332D9DB03AFE8A884185F9] (Microsoft Corporation)
    bthserv.dll -> C:\Windows\SysNative\bthserv.dll -> [2009/06/04 04:47:49 | 00,053,760 | ---- | C | MD5 = 22E65FFD640F16968F855F5B3528D366] (Microsoft Corporation)
    rtffilt.dll -> C:\Windows\SysNative\rtffilt.dll -> [2009/06/04 04:47:49 | 00,042,496 | ---- | C | MD5 = 97A11F16ACF1904145B92DBB687CC156] (Microsoft Corporation)
    msscb.dll -> C:\Windows\SysWow64\msscb.dll -> [2009/06/04 04:47:49 | 00,035,328 | ---- | C | MD5 = F85134BF76CB335A39F8D7BC4173D4FB] (Microsoft Corporation)
    fdBthProxy.dll -> C:\Windows\SysWow64\fdBthProxy.dll -> [2009/06/04 04:47:49 | 00,009,728 | ---- | C | MD5 = BF741696C521FF5503CDE10E36345E4D] (Microsoft Corporation)
    wcnwiz.dll -> C:\Windows\SysWow64\wcnwiz.dll -> [2009/06/04 04:47:48 | 01,533,440 | ---- | C | MD5 = 9EF2D0475B0DC496ACD0B7034D593840] (Microsoft Corporation)
    WMVSDECD.DLL -> C:\Windows\SysWow64\WMVSDECD.DLL -> [2009/06/04 04:47:48 | 01,382,912 | ---- | C | MD5 = 487565A576DCBA47D2E44FA116E15D64] (Microsoft Corporation)
    WindowsCodecs.dll -> C:\Windows\SysWow64\WindowsCodecs.dll -> [2009/06/04 04:47:48 | 00,712,704 | ---- | C | MD5 = F7F4AD3D174CB5EC3C12F04C99478B84] (Microsoft Corporation)
    adtschema.dll -> C:\Windows\SysWow64\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = EC43D9CC95C3BB5FEFDBCF22D375E1F5] (Microsoft Corporation)
    adtschema.dll -> C:\Windows\SysNative\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = 99AA51A6AE40DED4A74776E6E1C066C1] (Microsoft Corporation)
    mscms.dll -> C:\Windows\SysNative\mscms.dll -> [2009/06/04 04:47:48 | 00,519,680 | ---- | C | MD5 = 87B1E9B5DBFADA04D9FFDC52D16CB000] (Microsoft Corporation)
    evr.dll -> C:\Windows\SysWow64\evr.dll -> [2009/06/04 04:47:48 | 00,485,888 | ---- | C | MD5 = 2495C4204C63678F8FD5D488CA7DAD26] (Microsoft Corporation)
    vds.exe -> C:\Windows\SysNative\vds.exe -> [2009/06/04 04:47:48 | 00,454,656 | ---- | C | MD5 = 294945381DFA7CE58CECF0A9896AF327] (Microsoft Corporation)
    comdlg32.dll -> C:\Windows\SysWow64\comdlg32.dll -> [2009/06/04 04:47:48 | 00,450,560 | ---- | C | MD5 = 4AA2A0E26CEF1A803741253DCF9A1503] (Microsoft Corporation)
    PhotoMetadataHandler.dll -> C:\Windows\SysWow64\PhotoMetadataHandler.dll -> [2009/06/04 04:47:48 | 00,425,472 | ---- | C | MD5 = BE7C04C89126072D368D3DDCE0710985] (Microsoft Corporation)
    winlogon.exe -> C:\Windows\SysNative\winlogon.exe -> [2009/06/04 04:47:48 | 00,405,504 | ---- | C | MD5 = 6D0773A3A65D28B663F334C90441D01A] (Microsoft Corporation)
    WSDApi.dll -> C:\Windows\SysWow64\WSDApi.dll -> [2009/06/04 04:47:48 | 00,355,328 | ---- | C | MD5 = 5FF741BF7F6DB47F1F03E9B995DC2D3C] (Microsoft Corporation)
    Wldap32.dll -> C:\Windows\SysWow64\Wldap32.dll -> [2009/06/04 04:47:48 | 00,287,744 | ---- | C | MD5 = B8A609FB5EFB4E44FC1355B1C01C64BC] (Microsoft Corporation)
    services.exe -> C:\Windows\SysWow64\services.exe -> [2009/06/04 04:47:48 | 00,279,552 | ---- | C | MD5 = D4E6D91C1349B7BFB3599A6ADA56851B] (Microsoft Corporation)
    volsnap.sys -> C:\Windows\SysNative\drivers\volsnap.sys -> [2009/06/04 04:47:48 | 00,269,288 | ---- | C | MD5 = 5280AADA24AB36B01A84A6424C475C8D] (Microsoft Corporation)
    taskeng.exe -> C:\Windows\SysNative\taskeng.exe -> [2009/06/04 04:47:48 | 00,265,216 | ---- | C | MD5 = 2009F2E44758BECD3195B40D0B3650B3] (Microsoft Corporation)
    scrrun.dll -> C:\Windows\SysNative\scrrun.dll -> [2009/06/04 04:47:48 | 00,198,656 | ---- | C | MD5 = EB3D80F14D593C3ABCCEE58464BFE59C] (Microsoft Corporation)
    imapi.dll -> C:\Windows\SysNative\imapi.dll -> [2009/06/04 04:47:48 | 00,151,040 | ---- | C | MD5 = 50BABB0E2AD8A8C5B692D0D030FDFA03] (Microsoft Corporation)
    qintlgnt.ime -> C:\Windows\SysWow64\qintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = EABE8490A252D8B2020357D560A93850] (Microsoft Corporation)
    cintlgnt.ime -> C:\Windows\SysWow64\cintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = E04FA091879E982F77024DF9461649E3] (Microsoft Corporation)
    chajei.ime -> C:\Windows\SysWow64\chajei.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 50AE4C1B7A68DE9FFD3D433C93BA270A] (Microsoft Corporation)
    quick.ime -> C:\Windows\SysWow64\quick.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 1171CEB628BA19D69182935FF81DE24E] (Microsoft Corporation)
    phon.ime -> C:\Windows\SysWow64\phon.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 008EA1117A5F3A1866FCC94F34D1424E] (Microsoft Corporation)
    reg.exe -> C:\Windows\SysNative\reg.exe -> [2009/06/04 04:47:48 | 00,074,240 | ---- | C | MD5 = 314053DF55929FED67215E871EC7CEDF] (Microsoft Corporation)
    partmgr.sys -> C:\Windows\SysNative\drivers\partmgr.sys -> [2009/06/04 04:47:48 | 00,073,176 | ---- | C | MD5 = F9B5EDA4C17A2BE7663F064DBF0FE254] (Microsoft Corporation)
    fdProxy.dll -> C:\Windows\SysNative\fdProxy.dll -> [2009/06/04 04:47:48 | 00,065,536 | ---- | C | MD5 = 9DD626CC4FB7CAAC19B2F4C33CD6A2A3] (Microsoft Corporation)
    mimefilt.dll -> C:\Windows\SysWow64\mimefilt.dll -> [2009/06/04 04:47:48 | 00,041,984 | ---- | C | MD5 = FAF53B680C7DE42328EAE23638934D10] (Microsoft Corporation)
    mimefilt.dll -> C:\Windows\SysNative\mimefilt.dll -> [2009/06/04 04:47:48 | 00,038,912 | ---- | C | MD5 = D48FBAFD097E23E6BB255A09FA7EF06D] (Microsoft Corporation)
    brcpl.dll -> C:\Windows\SysNative\brcpl.dll -> [2009/06/04 04:47:47 | 01,538,560 | ---- | C | MD5 = EF6D2BC5AF87B6DDFB52245FF77046B7] (Microsoft Corporation)
    wdc.dll -> C:\Windows\SysNative\wdc.dll -> [2009/06/04 04:47:47 | 01,234,432 | ---- | C | MD5 = 832726DEFA39BBA2D34C9E20CEA471C0] (Microsoft Corporation)
    mswdat10.dll -> C:\Windows\SysWow64\mswdat10.dll -> [2009/06/04 04:47:47 | 00,856,064 | ---- | C | MD5 = 7483E59A7A7A7891ACD4C63EE97D1BF1] (Microsoft Corporation)
    CertEnrollUI.dll -> C:\Windows\SysNative\CertEnrollUI.dll -> [2009/06/04 04:47:47 | 00,810,496 | ---- | C | MD5 = 777FED68045FC30A869237A10277075F] (Microsoft Corporation)
    stobject.dll -> C:\Windows\SysNative\stobject.dll -> [2009/06/04 04:47:47 | 00,748,544 | ---- | C | MD5 = 2539DFDB16F616B60D9D6858D36C5710] (Microsoft Corporation)
    msdtcprx.dll -> C:\Windows\SysWow64\msdtcprx.dll -> [2009/06/04 04:47:47 | 00,560,640 | ---- | C | MD5 = EF9E3316F1106998D1904C3578C63C32] (Microsoft Corporation)
    ksecdd.sys -> C:\Windows\SysNative\drivers\ksecdd.sys -> [2009/06/04 04:47:47 | 00,514,536 | ---- | C | MD5 = FB88B233AF3D6204F19D85934C102BA7] (Microsoft Corporation)
    wcncsvc.dll -> C:\Windows\SysWow64\wcncsvc.dll -> [2009/06/04 04:47:47 | 00,413,696 | ---- | C | MD5 = A3CD60FD826381B49F03832590E069AF] (Microsoft Corporation)
    ipsmsnap.dll -> C:\Windows\SysWow64\ipsmsnap.dll -> [2009/06/04 04:47:47 | 00,396,288 | ---- | C | MD5 = C192DD0C53FD0616AC31A9E0ADAE0C39] (Microsoft Corporation)
    msdrm.dll -> C:\Windows\SysWow64\msdrm.dll -> [2009/06/04 04:47:47 | 00,332,288 | ---- | C | MD5 = 9A4156DE0BBC936B2F61EEFC376E7DFC] (Microsoft Corporation)
    certcli.dll -> C:\Windows\SysWow64\certcli.dll -> [2009/06/04 04:47:47 | 00,323,584 | ---- | C | MD5 = AC48FD62E22C4425879FCA5A63F50497] (Microsoft Corporation)
    rasmans.dll -> C:\Windows\SysNative\rasmans.dll -> [2009/06/04 04:47:47 | 00,309,760 | ---- | C | MD5 = 3AD83E4046C43BE510DE681588ACB8AF] (Microsoft Corporation)
    pdh.dll -> C:\Windows\SysNative\pdh.dll -> [2009/06/04 04:47:47 | 00,307,712 | ---- | C | MD5 = 185A819D9AC5A1D7F387C45F476CFE32] (Microsoft Corporation)
    offfilt.dll -> C:\Windows\SysNative\offfilt.dll -> [2009/06/04 04:47:47 | 00,280,064 | ---- | C | MD5 = C87C18A68AA8BFE1AAFB2E5A19518191] (Microsoft Corporation)
    PortableDeviceApi.dll -> C:\Windows\SysWow64\PortableDeviceApi.dll -> [2009/06/04 04:47:47 | 00,241,152 | ---- | C | MD5 = B26C0D2B2186AC508B5EFF976BB7FF9D] (Microsoft Corporation)
    taskeng.exe -> C:\Windows\SysWow64\taskeng.exe -> [2009/06/04 04:47:47 | 00,169,984 | ---- | C | MD5 = E5BBFC283D6F5D69B41E464676361020] (Microsoft Corporation)
    dnsapi.dll -> C:\Windows\SysWow64\dnsapi.dll -> [2009/06/04 04:47:47 | 00,168,448 | ---- | C | MD5 = F7683EC1225435144F28B611546BA5F2] (Microsoft Corporation)
    dhcpcsvc6.dll -> C:\Windows\SysNative\dhcpcsvc6.dll -> [2009/06/04 04:47:47 | 00,163,328 | ---- | C | MD5 = 956148910C7EB6A8C095D9B4E6F94E62] (Microsoft Corporation)
    inetpp.dll -> C:\Windows\SysNative\inetpp.dll -> [2009/06/04 04:47:47 | 00,156,160 | ---- | C | MD5 = A5A54257E6FD4AF082CCB0470AD4FC98] (Microsoft Corporation)
    rasl2tp.sys -> C:\Windows\SysNative\drivers\rasl2tp.sys -> [2009/06/04 04:47:47 | 00,124,928 | ---- | C | MD5 = AC7BC4D42A7E558718DFDEC599BBFC2C] (Microsoft Corporation)
    reg.exe -> C:\Windows\SysWow64\reg.exe -> [2009/06/04 04:47:47 | 00,061,952 | ---- | C | MD5 = DE4E8E68DE8CFBEB1B5C6B6E6022D98C] (Microsoft Corporation)
    msjter40.dll -> C:\Windows\SysWow64\msjter40.dll -> [2009/06/04 04:47:47 | 00,061,440 | ---- | C | MD5 = 534FD777CB2684392411CE7BCBBDF78E] (Microsoft Corporation)
    rtffilt.dll -> C:\Windows\SysWow64\rtffilt.dll -> [2009/06/04 04:47:47 | 00,038,400 | ---- | C | MD5 = D066FF44590F6F7433F60674C74394C6] (Microsoft Corporation)
    WMNetMgr.dll -> C:\Windows\SysWow64\WMNetMgr.dll -> [2009/06/04 04:47:46 | 00,996,352 | ---- | C | MD5 = 3159B65312AEC7CDFAD346D5A1C5068B] (Microsoft Corporation)
    certutil.exe -> C:\Windows\SysWow64\certutil.exe -> [2009/06/04 04:47:46 | 00,799,744 | ---- | C | MD5 = 4533F3B0E9AD11A1C02B191F5D873DE2] (Microsoft Corporation)
    PhotoScreensaver.scr -> C:\Windows\SysWow64\PhotoScreensaver.scr -> [2009/06/04 04:47:46 | 00,704,512 | ---- | C | MD5 = AAC78A91ED32BC0CA7FC8AEC39975016] (Microsoft Corporation)
    wiaservc.dll -> C:\Windows\SysNative\wiaservc.dll -> [2009/06/04 04:47:46 | 00,572,416 | ---- | C | MD5 = 15825C1FBFB8779992CB65087F316AF5] (Microsoft Corporation)
    RelMon.dll -> C:\Windows\SysNative\RelMon.dll -> [2009/06/04 04:47:46 | 00,539,136 | ---- | C | MD5 = 86EA84AC57D94A553006850123D22F50] (Microsoft Corporation)
    sysmon.ocx -> C:\Windows\SysNative\sysmon.ocx -> [2009/06/04 04:47:46 | 00,475,648 | ---- | C | MD5 = 889D851AD03063E01F7866B1D10044CF] (Microsoft Corporation)
    mtxclu.dll -> C:\Windows\SysNative\mtxclu.dll -> [2009/06/04 04:47:46 | 00,361,984 | ---- | C | MD5 = 663A071E67EB7052637E1549BF1A28B5] (Microsoft Corporation)
    clfs.sys -> C:\Windows\SysNative\clfs.sys -> [2009/06/04 04:47:46 | 00,361,448 | ---- | C | MD5 = 3DCA9A18B204939CFB24BEA53E31EB48] (Microsoft Corporation)
    winspool.drv -> C:\Windows\SysNative\winspool.drv -> [2009/06/04 04:47:46 | 00,342,016 | ---- | C | MD5 = 715628F11CFC90962DBEFEA24556863F] (Microsoft Corporation)
    msihnd.dll -> C:\Windows\SysWow64\msihnd.dll -> [2009/06/04 04:47:46 | 00,332,800 | ---- | C | MD5 = DC14113D196060C83BDD99D20E4DBE8E] (Microsoft Corporation)
    rsaenh.dll -> C:\Windows\SysWow64\rsaenh.dll -> [2009/06/04 04:47:46 | 00,241,128 | ---- | C | MD5 = E14170AEA125119B98FA2BDE3FF4F462] (Microsoft Corporation)
    scrobj.dll -> C:\Windows\SysNative\scrobj.dll -> [2009/06/04 04:47:46 | 00,227,328 | ---- | C | MD5 = D03E2F3215490A268B3DA59AADF10524] (Microsoft Corporation)
    pnpsetup.dll -> C:\Windows\SysNative\pnpsetup.dll -> [2009/06/04 04:47:46 | 00,207,872 | ---- | C | MD5 = 91413FA55670EB3036425C4F31826CF4] (Microsoft Corporation)
    fundisc.dll -> C:\Windows\SysNative\fundisc.dll -> [2009/06/04 04:47:46 | 00,174,080 | ---- | C | MD5 = 7F80E2C493079E9D42CCECC715790E10] (Microsoft Corporation)
    ndiswan.sys -> C:\Windows\SysNative\drivers\ndiswan.sys -> [2009/06/04 04:47:46 | 00,169,472 | ---- | C | MD5 = F8158771905260982CE724076419EF19] (Microsoft Corporation)
    MMDevAPI.dll -> C:\Windows\SysWow64\MMDevAPI.dll -> [2009/06/04 04:47:46 | 00,150,528 | ---- | C | MD5 = 56B5914070B2C243DFB3D186070DA89D] (Microsoft Corporation)
    sysclass.dll -> C:\Windows\SysNative\sysclass.dll -> [2009/06/04 04:47:46 | 00,115,200 | ---- | C | MD5 = C46E68C6B94705F95C9C7D8BFD7BD9BD] (Microsoft Corporation)
    raspptp.sys -> C:\Windows\SysNative\drivers\raspptp.sys -> [2009/06/04 04:47:46 | 00,098,816 | ---- | C | MD5 = 23386E9952025F5F21C368971E2E7301] (Microsoft Corporation)
    msscntrs.dll -> C:\Windows\SysWow64\msscntrs.dll -> [2009/06/04 04:47:46 | 00,060,416 | ---- | C | MD5 = 2657D7BB993F49B1A3C554D766FA09F9] (Microsoft Corporation)
    msstrc.dll -> C:\Windows\SysWow64\msstrc.dll -> [2009/06/04 04:47:46 | 00,043,008 | ---- | C | MD5 = 3618C1D17AF65C2405009AE02160D298] (Microsoft Corporation)
    msshooks.dll -> C:\Windows\SysWow64\msshooks.dll -> [2009/06/04 04:47:46 | 00,011,776 | ---- | C | MD5 = 582BE479E7E286BB3B31C5A4C3DC3987] (Microsoft Corporation)
    appwiz.cpl -> C:\Windows\SysNative\appwiz.cpl -> [2009/06/04 04:47:45 | 01,321,472 | ---- | C | MD5 = 8565BEDF9ACD28A9A1FFAADC93F957C5] (Microsoft Corporation)
    sethc.exe -> C:\Windows\SysNative\sethc.exe -> [2009/06/04 04:47:45 | 00,776,192 | ---- | C | MD5 = 7E5B8772130C5E66DE982E7033805E2F] (Microsoft Corporation)
    inetcomm.dll -> C:\Windows\SysWow64\inetcomm.dll -> [2009/06/04 04:47:45 | 00,738,816 | ---- | C | MD5 = AC9415A1AF0F49570F7515A7131AE2E1] (Microsoft Corporation)
    msinfo32.exe -> C:\Windows\SysNative\msinfo32.exe -> [2009/06/04 04:47:45 | 00,488,960 | ---- | C | MD5 = A4AF702E6BB80D014C56EDE22C6BC423] (Microsoft Corporation)
    netapi32.dll -> C:\Windows\SysWow64\netapi32.dll -> [2009/06/04 04:47:45 | 00,467,456 | ---- | C | MD5 = C94108296530A097B2E1E18C101E4703] (Microsoft Corporation)
    acpi.sys -> C:\Windows\SysNative\drivers\acpi.sys -> [2009/06/04 04:47:45 | 00,325,608 | ---- | C | MD5 = 1965AAFFAB07E3FB03C77F81BEBA3547] (Microsoft Corporation)
    mtxclu.dll -> C:\Windows\SysWow64\mtxclu.dll -> [2009/06/04 04:47:45 | 00,310,272 | ---- | C | MD5 = 601C4575875A03798498558D0DB1C91A] (Microsoft Corporation)
    wisptis.exe -> C:\Windows\SysNative\wisptis.exe -> [2009/06/04 04:47:45 | 00,287,744 | ---- | C | MD5 = EC587CF25B60660B988218445CB10573] (Microsoft Corporation)
    mfplat.dll -> C:\Windows\SysNative\mfplat.dll -> [2009/06/04 04:47:45 | 00,276,992 | ---- | C | MD5 = A17EA1F3A658C80B6493E50351F940CF] (Microsoft Corporation)
    usbport.sys -> C:\Windows\SysNative\drivers\usbport.sys -> [2009/06/04 04:47:45 | 00,259,584 | ---- | C | MD5 = A60FDA63F3901AE49C244FF988427A9C] (Microsoft Corporation)
    adsldpc.dll -> C:\Windows\SysNative\adsldpc.dll -> [2009/06/04 04:47:45 | 00,231,936 | ---- | C | MD5 = 80B8B7FF3AADD2156EE969C048644CAF] (Microsoft Corporation)
    iasrad.dll -> C:\Windows\SysNative\iasrad.dll -> [2009/06/04 04:47:45 | 00,198,144 | ---- | C | MD5 = 2C234A4AD19475408E937816ECE96327] (Microsoft Corporation)
    pci.sys -> C:\Windows\SysNative\drivers\pci.sys -> [2009/06/04 04:47:45 | 00,178,664 | ---- | C | MD5 = 47AB1E0FC9D0E12BB53BA246E3A0906D] (Microsoft Corporation)
    fundisc.dll -> C:\Windows\SysWow64\fundisc.dll -> [2009/06/04 04:47:45 | 00,153,088 | ---- | C | MD5 = 4EDA94333BDB75B1BC0A7610BED34F00] (Microsoft Corporation)
    dhcpcsvc6.dll -> C:\Windows\SysWow64\dhcpcsvc6.dll -> [2009/06/04 04:47:45 | 00,130,560 | ---- | C | MD5 = DFB6B71CDABA9DFB49C9D2B318B97A1A] (Microsoft Corporation)
    cryptsvc.dll -> C:\Windows\SysWow64\cryptsvc.dll -> [2009/06/04 04:47:45 | 00,129,024 | ---- | C | MD5 = FB27772BEAF8E1D28CCD825C09DA939B] (Microsoft Corporation)
    msiexec.exe -> C:\Windows\SysNative\msiexec.exe -> [2009/06/04 04:47:45 | 00,125,440 | ---- | C | MD5 = AC545DF9370A3E1BF538E403ABE51CC0] (Microsoft Corporation)
    dfshim.dll -> C:\Windows\SysNative\dfshim.dll -> [2009/06/04 04:47:45 | 00,108,864 | ---- | C | MD5 = DCEB990982F68B6D8392505433C787D0] (Microsoft Corporation)
    dfshim.dll -> C:\Windows\SysWow64\dfshim.dll -> [2009/06/04 04:47:45 | 00,093,512 | ---- | C | MD5 = 2D82E6A9D1F8095F81BDDA21E369D3D2] (Microsoft Corporation)
    mscories.dll -> C:\Windows\SysWow64\mscories.dll -> [2009/06/04 04:47:45 | 00,080,720 | ---- | C | MD5 = 9CEDC24DC2A88624A4431C96A13C0C94] (Microsoft Corporation)
    rasdiag.dll -> C:\Windows\SysNative\rasdiag.dll -> [2009/06/04 04:47:45 | 00,065,536 | ---- | C | MD5 = 78C9AB22333F1FA642222CD18ABC50C9] (Microsoft Corporation)
    TsWpfWrp.exe -> C:\Windows\SysWow64\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,035,680 | ---- | C | MD5 = 7EE55302291DD7AA5C2237B0CC7D49E1] (Microsoft Corporation)
    TsWpfWrp.exe -> C:\Windows\SysNative\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,034,624 | ---- | C | MD5 = FB4D090E203E7A5E0D58EDE957296406] (Microsoft Corporation)
    hidserv.dll -> C:\Windows\SysWow64\hidserv.dll -> [2009/06/04 04:47:45 | 00,026,112 | ---- | C | MD5 = 84067081F3318162797385E11A8F0582] (Microsoft Corporation)
    gameux.dll -> C:\Windows\SysWow64\gameux.dll -> [2009/06/04 04:47:44 | 01,696,768 | ---- | C | MD5 = 9B8F915F1DA844B94700868520C239ED] (Microsoft Corporation)
    chsbrkr.dll -> C:\Windows\SysWow64\chsbrkr.dll -> [2009/06/04 04:47:44 | 01,671,680 | ---- | C | MD5 = 9996E936E9926108FBEDED4171B129B7] (Microsoft Corporation)
    cryptui.dll -> C:\Windows\SysNative\cryptui.dll -> [2009/06/04 04:47:44 | 01,035,776 | ---- | C | MD5 = A361672E1AE1581B475F035607F4FD87] (Microsoft Corporation)
    wdc.dll -> C:\Windows\SysWow64\wdc.dll -> [2009/06/04 04:47:44 | 01,020,928 | ---- | C | MD5 = 1959E5AAEE0D988C10F19CEC7DFF2242] (Microsoft Corporation)
    printui.dll -> C:\Windows\SysNative\printui.dll -> [2009/06/04 04:47:44 | 00,980,480 | ---- | C | MD5 = 91ECB960A6E54B48F6901E36DF8EEBAA] (Microsoft Corporation)
    Utilman.exe -> C:\Windows\SysNative\Utilman.exe -> [2009/06/04 04:47:44 | 00,785,920 | ---- | C | MD5 = 106A5163D2A23CC82C4C94FE7AEF5841] (Microsoft Corporation)
    autofmt.exe -> C:\Windows\SysNative\autofmt.exe -> [2009/06/04 04:47:44 | 00,722,944 | ---- | C | MD5 = A2E4854AF96353AD33D4F167085A4A7B] (Microsoft Corporation)
    termsrv.dll -> C:\Windows\SysNative\termsrv.dll -> [2009/06/04 04:47:44 | 00,547,328 | ---- | C | MD5 = 5CDD30BC217082DAC71A9878D9BFD566] (Microsoft Corporation)
  • edited June 2009
    mrxsmb10.sys -> C:\Windows\SysNative\drivers\mrxsmb10.sys -> [2009/06/04 04:47:44 | 00,273,408 | ---- | C | MD5 = D35768909607B7B4F827B2105DD6B6CF] (Microsoft Corporation)
    shsvcs.dll -> C:\Windows\SysWow64\shsvcs.dll -> [2009/06/04 04:47:44 | 00,247,296 | ---- | C | MD5 = C818C44C201898399BF999BB6B35D4E3] (Microsoft Corporation)
    tcpipcfg.dll -> C:\Windows\SysNative\tcpipcfg.dll -> [2009/06/04 04:47:44 | 00,238,080 | ---- | C | MD5 = F8F08779E7D997913607B0146710CC04] (Microsoft Corporation)
    osk.exe -> C:\Windows\SysNative\osk.exe -> [2009/06/04 04:47:44 | 00,212,480 | ---- | C | MD5 = 8A777C49978A4E03C4F1442E8FDC5CC2] (Microsoft Corporation)
    WFP.TMF -> C:\Windows\SysNative\WFP.TMF -> [2009/06/04 04:47:44 | 00,207,968 | ---- | C | MD5 = 424F4F52583C8AB4D27A34A6B71B6E95] ()
    AudioSes.dll -> C:\Windows\SysNative\AudioSes.dll -> [2009/06/04 04:47:44 | 00,190,976 | ---- | C | MD5 = EEFDA2A090E8000740D46B09DCDBEAFF] (Microsoft Corporation)
    mrxsmb.sys -> C:\Windows\SysNative\drivers\mrxsmb.sys -> [2009/06/04 04:47:44 | 00,135,168 | ---- | C | MD5 = A6C23405A24C0C48A246D4F23F0A387D] (Microsoft Corporation)
    imapi.dll -> C:\Windows\SysWow64\imapi.dll -> [2009/06/04 04:47:44 | 00,107,520 | ---- | C | MD5 = C399E29AC25746CDC126DC621F41F219] (Microsoft Corporation)
    SLUINotify.dll -> C:\Windows\SysNative\SLUINotify.dll -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = FD74B4B7C2088E390A30C85A896FC3AF] (Microsoft Corporation)
    msiexec.exe -> C:\Windows\SysWow64\msiexec.exe -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = C559672F31ABE6BA7277DD73C4502238] (Microsoft Corporation)
    iasdatastore.dll -> C:\Windows\SysNative\iasdatastore.dll -> [2009/06/04 04:47:44 | 00,065,536 | ---- | C | MD5 = 11F1BAD4698745ABE18C96059D43E4D9] (Microsoft Corporation)
    termdd.sys -> C:\Windows\SysNative\drivers\termdd.sys -> [2009/06/04 04:47:44 | 00,062,440 | ---- | C | MD5 = 8C19678D22649EC002EF2282EAE92F98] (Microsoft Corporation)
    pnidui.dll -> C:\Windows\SysNative\pnidui.dll -> [2009/06/04 04:47:43 | 02,024,960 | ---- | C | MD5 = DE95622B09554A70DB4F035D197330BF] (Microsoft Corporation)
    pnidui.dll -> C:\Windows\SysWow64\pnidui.dll -> [2009/06/04 04:47:43 | 01,823,744 | ---- | C | MD5 = 75AD59B9B12EB194486BE8D97B062994] (Microsoft Corporation)
    connect.dll -> C:\Windows\SysNative\connect.dll -> [2009/06/04 04:47:43 | 01,691,648 | ---- | C | MD5 = A322BB42609E9D728C9440FB2685F04D] (Microsoft Corporation)
    rdpencom.dll -> C:\Windows\SysNative\rdpencom.dll -> [2009/06/04 04:47:43 | 00,708,608 | ---- | C | MD5 = 37CA04B27F4E31F850B899FD06F725F0] (Microsoft Corporation)
    autofmt.exe -> C:\Windows\SysWow64\autofmt.exe -> [2009/06/04 04:47:43 | 00,636,416 | ---- | C | MD5 = 34DA5AE04CA114B23D93CD9D4D05FCB7] (Microsoft Corporation)
    dsound.dll -> C:\Windows\SysNative\dsound.dll -> [2009/06/04 04:47:43 | 00,522,752 | ---- | C | MD5 = EA47AF4FBF17580D093C0C36C4E49921] (Microsoft Corporation)
    volmgrx.sys -> C:\Windows\SysNative\drivers\volmgrx.sys -> [2009/06/04 04:47:43 | 00,408,024 | ---- | C | MD5 = CEC5AC15277D75D9E5DEC2E1C6EAF877] (Microsoft Corporation)
    WindowsCodecsExt.dll -> C:\Windows\SysNative\WindowsCodecsExt.dll -> [2009/06/04 04:47:43 | 00,387,584 | ---- | C | MD5 = E3A1F826BB40A8065043D26126D9B189] (Microsoft Corporation)
    scansetting.dll -> C:\Windows\SysNative\scansetting.dll -> [2009/06/04 04:47:43 | 00,302,080 | ---- | C | MD5 = 2C64BABEEB0510D508F61DA4CAF5C276] (Microsoft Corporation)
    dhcpcsvc.dll -> C:\Windows\SysNative\dhcpcsvc.dll -> [2009/06/04 04:47:43 | 00,268,288 | ---- | C | MD5 = 3ED0321127CE70ACDAABBF77E157C2A7] (Microsoft Corporation)
    WerFault.exe -> C:\Windows\SysNative\WerFault.exe -> [2009/06/04 04:47:43 | 00,260,608 | ---- | C | MD5 = 407048A328C3D585FF67D40F11E243D2] (Microsoft Corporation)
    ncrypt.dll -> C:\Windows\SysNative\ncrypt.dll -> [2009/06/04 04:47:43 | 00,253,952 | ---- | C | MD5 = 38FEE5CE9CD15E56BF48A7360048C4AB] (Microsoft Corporation)
    iassdo.dll -> C:\Windows\SysWow64\iassdo.dll -> [2009/06/04 04:47:43 | 00,252,928 | ---- | C | MD5 = 5A1B9A7761FB1BA3A42C8F7F0EB49994] (Microsoft Corporation)
    winmm.dll -> C:\Windows\SysNative\winmm.dll -> [2009/06/04 04:47:43 | 00,211,968 | ---- | C | MD5 = DC2D7A3DE9D5DFB63AD2BA98ADB89D62] (Microsoft Corporation)
    scrrun.dll -> C:\Windows\SysWow64\scrrun.dll -> [2009/06/04 04:47:43 | 00,172,032 | ---- | C | MD5 = 3DB1530CDD7AEF2BCFA6FB77D097CDDA] (Microsoft Corporation)
    imm32.dll -> C:\Windows\SysWow64\imm32.dll -> [2009/06/04 04:47:43 | 00,116,224 | ---- | C | MD5 = B8FBE5F40B09F5D20E1E5CCFEF893D62] (Microsoft Corporation)
    Kswdmcap.ax -> C:\Windows\SysWow64\Kswdmcap.ax -> [2009/06/04 04:47:43 | 00,093,696 | ---- | C | MD5 = FD44B4D9129EDD68BBD0A26683024EF9] (Microsoft Corporation)
    slmgr.vbs -> C:\Windows\SysWow64\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
    slmgr.vbs -> C:\Windows\SysNative\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
    iasads.dll -> C:\Windows\SysNative\iasads.dll -> [2009/06/04 04:47:43 | 00,078,336 | ---- | C | MD5 = 1D5474E8A7F8E48515D83BBB1A1E9E47] (Microsoft Corporation)
    drvinst.exe -> C:\Windows\SysNative\drvinst.exe -> [2009/06/04 04:47:43 | 00,061,440 | ---- | C | MD5 = 638DC235181C5202CE6C8232DF854DDE] (Microsoft Corporation)
    crashdmp.sys -> C:\Windows\SysNative\drivers\crashdmp.sys -> [2009/06/04 04:47:43 | 00,039,400 | ---- | C | MD5 = 4F4E1093ADFBAE48544DA6E7CCF09FE4] (Microsoft Corporation)
    spcmsg.dll -> C:\Windows\SysNative\spcmsg.dll -> [2009/06/04 04:47:43 | 00,014,336 | ---- | C | MD5 = 5AA31D330226F764CDC6FBAF21B4F2AB] (Microsoft Corporation)
    spcmsg.dll -> C:\Windows\SysWow64\spcmsg.dll -> [2009/06/04 04:47:43 | 00,013,312 | ---- | C | MD5 = 12013A429B4F658D33CB71CA0C7F8703] (Microsoft Corporation)
    netcenter.dll -> C:\Windows\SysNative\netcenter.dll -> [2009/06/04 04:47:42 | 02,420,224 | ---- | C | MD5 = 1094A477FFE9169220B8FCDF6801C3D7] (Microsoft Corporation)
    appwiz.cpl -> C:\Windows\SysWow64\appwiz.cpl -> [2009/06/04 04:47:42 | 01,122,304 | ---- | C | MD5 = 19DF185D42AA0DE80AD78C58D4A4E936] (Microsoft Corporation)
    pidgenx.dll -> C:\Windows\SysWow64\pidgenx.dll -> [2009/06/04 04:47:42 | 01,107,968 | ---- | C | MD5 = 48EFB6849AA0F6785D05EB468E13F17F] (Microsoft Corporation)
    pidgenx.dll -> C:\Windows\SysNative\pidgenx.dll -> [2009/06/04 04:47:42 | 01,093,120 | ---- | C | MD5 = BAE7C9674D1EADB7671BD349ABE4A421] (Microsoft Corporation)
    mmsys.cpl -> C:\Windows\SysNative\mmsys.cpl -> [2009/06/04 04:47:42 | 01,060,352 | ---- | C | MD5 = 78943DD269AD01EBC65FC8F78E3DF8DC] (Microsoft Corporation)
    rasdlg.dll -> C:\Windows\SysNative\rasdlg.dll -> [2009/06/04 04:47:42 | 00,911,872 | ---- | C | MD5 = 39872A309B2DB96738AF44402F7BD43C] (Microsoft Corporation)
    azroles.dll -> C:\Windows\SysWow64\azroles.dll -> [2009/06/04 04:47:42 | 00,757,248 | ---- | C | MD5 = 9AFFE233D49471292E8328FA5775B9DA] (Microsoft Corporation)
    prnntfy.dll -> C:\Windows\SysNative\prnntfy.dll -> [2009/06/04 04:47:42 | 00,708,608 | ---- | C | MD5 = 580378414BDF681BCC6B6388FB3F0061] (Microsoft Corporation)
    CertEnrollUI.dll -> C:\Windows\SysWow64\CertEnrollUI.dll -> [2009/06/04 04:47:42 | 00,633,856 | ---- | C | MD5 = 039F5070FD21A0FA3ABA305E393F75E7] (Microsoft Corporation)
    vdsdyn.dll -> C:\Windows\SysNative\vdsdyn.dll -> [2009/06/04 04:47:42 | 00,571,904 | ---- | C | MD5 = AF887F37C42E829159E90BADF03592B3] (Microsoft Corporation)
    sysmon.ocx -> C:\Windows\SysWow64\sysmon.ocx -> [2009/06/04 04:47:42 | 00,389,632 | ---- | C | MD5 = D665F6708EE24DF5B9A0E095ED52ED73] (Microsoft Corporation)
    untfs.dll -> C:\Windows\SysNative\untfs.dll -> [2009/06/04 04:47:42 | 00,372,224 | ---- | C | MD5 = D77DD0E9D3A5C9B1A8E1DB8FF674D25D] (Microsoft Corporation)
    msrpc.sys -> C:\Windows\SysNative\drivers\msrpc.sys -> [2009/06/04 04:47:42 | 00,310,760 | ---- | C | MD5 = DC6CCF440CDEDE4293DB41C37A5060A5] (Microsoft Corporation)
    InkEd.dll -> C:\Windows\SysNative\InkEd.dll -> [2009/06/04 04:47:42 | 00,276,480 | ---- | C | MD5 = 1ED0E10D2766B5F89A656F8EE7FACF6F] (Microsoft Corporation)
    winspool.drv -> C:\Windows\SysWow64\winspool.drv -> [2009/06/04 04:47:42 | 00,258,048 | ---- | C | MD5 = 2D1179CDEC6B7400105E68F6AC9B4EFE] (Microsoft Corporation)
    pdh.dll -> C:\Windows\SysWow64\pdh.dll -> [2009/06/04 04:47:42 | 00,242,176 | ---- | C | MD5 = 295363D4317820AED0D527E15B90A8ED] (Microsoft Corporation)
    dhcpcsvc.dll -> C:\Windows\SysWow64\dhcpcsvc.dll -> [2009/06/04 04:47:42 | 00,204,288 | ---- | C | MD5 = 9028559C132146FB75EB7ACF384B086A] (Microsoft Corporation)
    spp.dll -> C:\Windows\SysNative\spp.dll -> [2009/06/04 04:47:42 | 00,188,928 | ---- | C | MD5 = 85515E689B247D6992E0D191400E3F79] (Microsoft Corporation)
    secproc_ssp.dll -> C:\Windows\SysNative\secproc_ssp.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 607C2824E75789BEB3EE0807157401C4] (Microsoft Corporation)
    secproc_ssp_isv.dll -> C:\Windows\SysNative\secproc_ssp_isv.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 0B55AC0ADA7F3335A2517413579CA37B] (Microsoft Corporation)
    diskpart.exe -> C:\Windows\SysNative\diskpart.exe -> [2009/06/04 04:47:42 | 00,149,504 | ---- | C | MD5 = E2F1B0AC853231F9FA2901642D4484A5] (Microsoft Corporation)
    SCardSvr.dll -> C:\Windows\SysNative\SCardSvr.dll -> [2009/06/04 04:47:42 | 00,147,968 | ---- | C | MD5 = FD1CDCF108D5EF3366F00D18B70FB89B] (Microsoft Corporation)
    userenv.dll -> C:\Windows\SysNative\userenv.dll -> [2009/06/04 04:47:42 | 00,137,216 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    IPHLPAPI.DLL -> C:\Windows\SysNative\IPHLPAPI.DLL -> [2009/06/04 04:47:42 | 00,126,976 | ---- | C | MD5 = A9D70295BA8F31D5EA118B0A6B74183E] (Microsoft Corporation)
    ipfltdrv.sys -> C:\Windows\SysNative\drivers\ipfltdrv.sys -> [2009/06/04 04:47:42 | 00,067,584 | ---- | C | MD5 = D8AABC341311E4780D6FCE8C73C0AD81] (Microsoft Corporation)
    mup.sys -> C:\Windows\SysNative\drivers\mup.sys -> [2009/06/04 04:47:42 | 00,059,880 | ---- | C | MD5 = 0CC49F78D8ACA0877D885F149084E543] (Microsoft Corporation)
    SyncCenter.dll -> C:\Windows\SysWow64\SyncCenter.dll -> [2009/06/04 04:47:41 | 02,205,184 | ---- | C | MD5 = 4ACEA0C4BB15ACE55E3AE5EC4E88DD55] (Microsoft Corporation)
    chsbrkr.dll -> C:\Windows\SysNative\chsbrkr.dll -> [2009/06/04 04:47:41 | 01,676,800 | ---- | C | MD5 = FC4F0F9303170DC6212A2B3EA6613FF4] (Microsoft Corporation)
    certmgr.dll -> C:\Windows\SysWow64\certmgr.dll -> [2009/06/04 04:47:41 | 01,502,720 | ---- | C | MD5 = 423CFD439195B8178208DE7BEEE52540] (Microsoft Corporation)
    wmpmde.dll -> C:\Windows\SysWow64\wmpmde.dll -> [2009/06/04 04:47:41 | 00,867,328 | ---- | C | MD5 = 0C9F94C3BB100C1FE1C06A8EB4B88283] (Microsoft Corporation)
    wlansvc.dll -> C:\Windows\SysNative\wlansvc.dll -> [2009/06/04 04:47:41 | 00,616,448 | ---- | C | MD5 = 1C3D795E47E0B851274AD7BC407DC048] (Microsoft Corporation)
    comuid.dll -> C:\Windows\SysWow64\comuid.dll -> [2009/06/04 04:47:41 | 00,593,408 | ---- | C | MD5 = C01CF069D98F0E9ED9E8012099D26DC7] (Microsoft Corporation)
    msjetoledb40.dll -> C:\Windows\SysWow64\msjetoledb40.dll -> [2009/06/04 04:47:41 | 00,368,640 | ---- | C | MD5 = 52CB0185C73E1BA86CC7F726F22523C3] ()
    winlogon.exe -> C:\Windows\SysWow64\winlogon.exe -> [2009/06/04 04:47:41 | 00,314,368 | ---- | C | MD5 = 898E7C06A350D4A1A64A9EA264D55452] (Microsoft Corporation)
    dskquoui.dll -> C:\Windows\SysNative\dskquoui.dll -> [2009/06/04 04:47:41 | 00,237,056 | ---- | C | MD5 = 8A63AB1A1D518A9D34984222AEC6E924] (Microsoft Corporation)
    ncrypt.dll -> C:\Windows\SysWow64\ncrypt.dll -> [2009/06/04 04:47:41 | 00,204,288 | ---- | C | MD5 = A57260867734FB1F68241ECA3D589F76] (Microsoft Corporation)
    iashlpr.dll -> C:\Windows\SysNative\iashlpr.dll -> [2009/06/04 04:47:41 | 00,085,504 | ---- | C | MD5 = C6913E3D07D4BD2E69CB7E85CCE80EC8] (Microsoft Corporation)
    mscories.dll -> C:\Windows\SysNative\mscories.dll -> [2009/06/04 04:47:41 | 00,073,024 | ---- | C | MD5 = 084A7BC9EFA170199620214EB36464C9] (Microsoft Corporation)
    disk.sys -> C:\Windows\SysNative\drivers\disk.sys -> [2009/06/04 04:47:41 | 00,067,032 | ---- | C | MD5 = B0107E40ECDB5FA692EBF832F295D905] (Microsoft Corporation)
    kdcom.dll -> C:\Windows\SysNative\kdcom.dll -> [2009/06/04 04:47:41 | 00,019,432 | ---- | C | MD5 = 62D59EBED0B1004BCD9FA3E4F878D766] (Microsoft Corporation)
    onex.dll -> C:\Windows\SysNative\onex.dll -> [2009/06/04 04:47:40 | 01,740,288 | ---- | C | MD5 = DED15764B578A26BE9E45E7692820549] (Microsoft Corporation)
    inetcomm.dll -> C:\Windows\SysNative\inetcomm.dll -> [2009/06/04 04:47:40 | 00,974,848 | ---- | C | MD5 = BDB83CDF73775DC4F244970F73FB2A97] (Microsoft Corporation)
    autoconv.exe -> C:\Windows\SysNative\autoconv.exe -> [2009/06/04 04:47:40 | 00,750,592 | ---- | C | MD5 = DD1CBF567D20DA1B0A22246ADFC4FADE] (Microsoft Corporation)
    autochk.exe -> C:\Windows\SysNative\autochk.exe -> [2009/06/04 04:47:40 | 00,734,720 | ---- | C | MD5 = E24D4475713CB382A720D003BDDA9628] (Microsoft Corporation)
    sethc.exe -> C:\Windows\SysWow64\sethc.exe -> [2009/06/04 04:47:40 | 00,627,200 | ---- | C | MD5 = 291B27D159AE56A049C1526AF4B3957E] (Microsoft Corporation)
    imkr80.ime -> C:\Windows\SysWow64\imkr80.ime -> [2009/06/04 04:47:40 | 00,413,696 | ---- | C | MD5 = E3E821B879CF04AA13865D5E6A1FC2A0] (Microsoft Corporation)
    WindowsCodecsExt.dll -> C:\Windows\SysWow64\WindowsCodecsExt.dll -> [2009/06/04 04:47:40 | 00,347,648 | ---- | C | MD5 = 73B702923D1CB50E2CCB3A7C1EBD8F22] (Microsoft Corporation)
    rasapi32.dll -> C:\Windows\SysNative\rasapi32.dll -> [2009/06/04 04:47:40 | 00,337,408 | ---- | C | MD5 = A4F3F34A7146D8633FA8D346535A9CAA] (Microsoft Corporation)
    untfs.dll -> C:\Windows\SysWow64\untfs.dll -> [2009/06/04 04:47:40 | 00,324,096 | ---- | C | MD5 = D30A7946B3207C9DBE40361E3B083716] (Microsoft Corporation)
    diskraid.exe -> C:\Windows\SysNative\diskraid.exe -> [2009/06/04 04:47:40 | 00,308,224 | ---- | C | MD5 = A6691BF542941E5B0925C49A460AE6B6] (Microsoft Corporation)
    rastls.dll -> C:\Windows\SysNative\rastls.dll -> [2009/06/04 04:47:40 | 00,281,088 | ---- | C | MD5 = 6D25CF2F1DC6C51BC8D6D8884F723C20] (Microsoft Corporation)
    taskcomp.dll -> C:\Windows\SysWow64\taskcomp.dll -> [2009/06/04 04:47:40 | 00,270,336 | ---- | C | MD5 = 67ECC768ADB04591CBCF15783CB2A817] (Microsoft Corporation)
    ntprint.dll -> C:\Windows\SysNative\ntprint.dll -> [2009/06/04 04:47:40 | 00,257,024 | ---- | C | MD5 = 24DC07F75E0683A3D4AB16FA38290A18] (Microsoft Corporation)
    iassam.dll -> C:\Windows\SysWow64\iassam.dll -> [2009/06/04 04:47:40 | 00,182,272 | ---- | C | MD5 = 240B65CDA06C38733DF9B65E1D314BC7] (Microsoft Corporation)
    scrobj.dll -> C:\Windows\SysWow64\scrobj.dll -> [2009/06/04 04:47:40 | 00,180,224 | ---- | C | MD5 = 01DDF42F77DA1348173C5DC8CB28BDC2] (Microsoft Corporation)
    spp.dll -> C:\Windows\SysWow64\spp.dll -> [2009/06/04 04:47:40 | 00,142,336 | ---- | C | MD5 = 43AEF7355D24090CA7C24C83846BD981] (Microsoft Corporation)
    netiohlp.dll -> C:\Windows\SysNative\netiohlp.dll -> [2009/06/04 04:47:40 | 00,140,800 | ---- | C | MD5 = 9041A0B145B7F9CB5D2F363683AEFFD4] (Microsoft Corporation)
    samlib.dll -> C:\Windows\SysNative\samlib.dll -> [2009/06/04 04:47:40 | 00,099,328 | ---- | C | MD5 = 5279672A8BDAF3CFB0A4C6E0591987AC] (Microsoft Corporation)
    secur32.dll -> C:\Windows\SysNative\secur32.dll -> [2009/06/04 04:47:40 | 00,094,720 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    mpr.dll -> C:\Windows\SysNative\mpr.dll -> [2009/06/04 04:47:40 | 00,084,992 | ---- | C | MD5 = B3EBBD687BDFCBBBBCB6115B682D1845] (Microsoft Corporation)
    PSHED.DLL -> C:\Windows\SysNative\PSHED.DLL -> [2009/06/04 04:47:40 | 00,055,272 | ---- | C | MD5 = 9E693C6146932B5369DFFA584E805EF6] (Microsoft Corporation)
    mssprxy.dll -> C:\Windows\SysNative\mssprxy.dll -> [2009/06/04 04:47:40 | 00,040,448 | ---- | C | MD5 = 595BAC1B188813CEAE88A599738E60F8] (Microsoft Corporation)
    rtutils.dll -> C:\Windows\SysWow64\rtutils.dll -> [2009/06/04 04:47:40 | 00,036,352 | ---- | C | MD5 = A32608F048861AD3544AEFBF0126D33F] (Microsoft Corporation)
    WMVENCOD.DLL -> C:\Windows\SysNative\WMVENCOD.DLL -> [2009/06/04 04:47:39 | 01,891,840 | ---- | C | MD5 = B7286BBA2B00EAE42401EDF591204C06] (Microsoft Corporation)
    WMVDECOD.DLL -> C:\Windows\SysWow64\WMVDECOD.DLL -> [2009/06/04 04:47:39 | 01,548,288 | ---- | C | MD5 = FC27104CAF57E34BF501A84DF655F8F2] (Microsoft Corporation)
    PerfCenterCPL.dll -> C:\Windows\SysNative\PerfCenterCPL.dll -> [2009/06/04 04:47:39 | 01,444,352 | ---- | C | MD5 = 4AB65F090554EE12F94E79CF3D6349E6] (Microsoft Corporation)
    printui.dll -> C:\Windows\SysWow64\printui.dll -> [2009/06/04 04:47:39 | 00,869,888 | ---- | C | MD5 = C4F3693767A2B93A64C6D67CFC2DAC63] (Microsoft Corporation)
    autoconv.exe -> C:\Windows\SysWow64\autoconv.exe -> [2009/06/04 04:47:39 | 00,656,896 | ---- | C | MD5 = 15B7BDA10B91FE62466F2A18682C16E8] (Microsoft Corporation)
    autochk.exe -> C:\Windows\SysWow64\autochk.exe -> [2009/06/04 04:47:39 | 00,643,072 | ---- | C | MD5 = 10761177A6EBE45843F443E99509F5E7] (Microsoft Corporation)
    psisdecd.dll -> C:\Windows\SysNative\psisdecd.dll -> [2009/06/04 04:47:39 | 00,375,808 | ---- | C | MD5 = 694A11BD75ED2C947955C367F4B6032A] (Microsoft Corporation)
    scecli.dll -> C:\Windows\SysNative\scecli.dll -> [2009/06/04 04:47:39 | 00,235,520 | ---- | C | MD5 = 9922ADB6DCA8F0F5EA038BEFF339C08B] (Microsoft Corporation)
    portcls.sys -> C:\Windows\SysNative\drivers\portcls.sys -> [2009/06/04 04:47:39 | 00,218,112 | ---- | C | MD5 = 7B7820082CACF593D6FF343D082A3AA3] (Microsoft Corporation)
    profsvc.dll -> C:\Windows\SysNative\profsvc.dll -> [2009/06/04 04:47:39 | 00,178,176 | ---- | C | MD5 = E058CE4FC2449D8BFA14739C83B7FF2A] (Microsoft Corporation)
    srvsvc.dll -> C:\Windows\SysNative\srvsvc.dll -> [2009/06/04 04:47:39 | 00,176,640 | ---- | C | MD5 = 967D7CB076CD1969156247D03B92CECA] (Microsoft Corporation)
    rpchttp.dll -> C:\Windows\SysNative\rpchttp.dll -> [2009/06/04 04:47:39 | 00,164,352 | ---- | C | MD5 = 38B65E838C4AC307DEC37035865F9486] (Microsoft Corporation)
    ntmarta.dll -> C:\Windows\SysNative\ntmarta.dll -> [2009/06/04 04:47:39 | 00,159,232 | ---- | C | MD5 = EE3718BCF5CEF1C457C10A745E410959] (Microsoft Corporation)
    ecache.sys -> C:\Windows\SysNative\drivers\ecache.sys -> [2009/06/04 04:47:39 | 00,155,112 | ---- | C | MD5 = 5F94962BE5A62DB6E447FF6470C4F48A] (Microsoft Corporation)
    iasnap.dll -> C:\Windows\SysWow64\iasnap.dll -> [2009/06/04 04:47:39 | 00,150,528 | ---- | C | MD5 = 1E767541B585BB3ED02FF33BC60E92A7] (Microsoft Corporation)
    cscript.exe -> C:\Windows\SysWow64\cscript.exe -> [2009/06/04 04:47:39 | 00,135,168 | ---- | C | MD5 = 63F2534E7E063B4F2054433597D7A1B9] (Microsoft Corporation)
    iassvcs.dll -> C:\Windows\SysNative\iassvcs.dll -> [2009/06/04 04:47:39 | 00,088,576 | ---- | C | MD5 = 1AFBEDE3E360444FEE090FC3ED428E70] (Microsoft Corporation)
    volmgr.sys -> C:\Windows\SysNative\drivers\volmgr.sys -> [2009/06/04 04:47:39 | 00,067,048 | ---- | C | MD5 = 2B7E885ED951519A12C450D24535DFCA] (Microsoft Corporation)
    onex.dll -> C:\Windows\SysWow64\onex.dll -> [2009/06/04 04:47:38 | 01,541,120 | ---- | C | MD5 = B64AC7967D6B9FB2D6152AC768A1CB88] (Microsoft Corporation)
    iphlpsvc.dll -> C:\Windows\SysNative\iphlpsvc.dll -> [2009/06/04 04:47:38 | 00,223,744 | ---- | C | MD5 = CD033D871A83E918B14F43F7E7590819] (Microsoft Corporation)
    mswsock.dll -> C:\Windows\SysWow64\mswsock.dll -> [2009/06/04 04:47:38 | 00,223,232 | ---- | C | MD5 = 8617350C9B590B63E620881092751BCB] (Microsoft Corporation)
    osk.exe -> C:\Windows\SysWow64\osk.exe -> [2009/06/04 04:47:38 | 00,182,272 | ---- | C | MD5 = 877F2939794EBA4F3D1BB967007E99E8] (Microsoft Corporation)
    basecsp.dll -> C:\Windows\SysNative\basecsp.dll -> [2009/06/04 04:47:38 | 00,153,064 | ---- | C | MD5 = 34889A7CC7EF7B0972994C7814F782D3] (Microsoft Corporation)
    basecsp.dll -> C:\Windows\SysWow64\basecsp.dll -> [2009/06/04 04:47:38 | 00,130,024 | ---- | C | MD5 = 23A732A29E183E9874C86FD93CC7B9B9] (Microsoft Corporation)
    powrprof.dll -> C:\Windows\SysNative\powrprof.dll -> [2009/06/04 04:47:38 | 00,123,392 | ---- | C | MD5 = 7823A58BF0FE3CAAA555C12B5CF91290] (Microsoft Corporation)
    userenv.dll -> C:\Windows\SysWow64\userenv.dll -> [2009/06/04 04:47:38 | 00,108,544 | ---- | C | MD5 = 665417528489096BBCB8AEA46D3DA924] (Microsoft Corporation)
    dwm.exe -> C:\Windows\SysNative\dwm.exe -> [2009/06/04 04:47:38 | 00,098,304 | ---- | C | MD5 = 449F5AB17863698F12F0BC8E99079AA6] (Microsoft Corporation)
    audiodg.exe -> C:\Windows\SysWow64\audiodg.exe -> [2009/06/04 04:47:38 | 00,088,576 | ---- | C | MD5 = 3437B9E218A2E4586BEF4F7A3BD00777] (Microsoft Corporation)
    iasacct.dll -> C:\Windows\SysNative\iasacct.dll -> [2009/06/04 04:47:38 | 00,072,704 | ---- | C | MD5 = 24E4A41DB1DEBE62C0012EF6D9BEEB28] (Microsoft Corporation)
    Dumpata.sys -> C:\Windows\SysNative\drivers\Dumpata.sys -> [2009/06/04 04:47:38 | 00,029,656 | ---- | C | MD5 = 7E7270D67964C9EDDE6BFDAAC07B7999] (Microsoft Corporation)
    kdusb.dll -> C:\Windows\SysNative\kdusb.dll -> [2009/06/04 04:47:38 | 00,022,504 | ---- | C | MD5 = BDD7206C3FE4895F133DE5615DD6B492] (Microsoft Corporation)
    spldr.sys -> C:\Windows\SysNative\drivers\spldr.sys -> [2009/06/04 04:47:38 | 00,019,432 | ---- | C | MD5 = 386C3C63F00A7040C7EC5E384217E89D] (Microsoft Corporation)
    networkmap.dll -> C:\Windows\SysNative\networkmap.dll -> [2009/06/04 04:47:37 | 03,235,328 | ---- | C | MD5 = C3EB4555E37E75906185C1B8D2158237] (Microsoft Corporation)
    wpccpl.dll -> C:\Windows\SysNative\wpccpl.dll -> [2009/06/04 04:47:37 | 01,882,624 | ---- | C | MD5 = 7241639333A70BA66D9AEFA5D9E55A80] (Microsoft Corporation)
    themecpl.dll -> C:\Windows\SysNative\themecpl.dll -> [2009/06/04 04:47:37 | 01,301,504 | ---- | C | MD5 = 7D09CA1126E311DEF73D83F30CD81692] (Microsoft Corporation)
    rdpencom.dll -> C:\Windows\SysWow64\rdpencom.dll -> [2009/06/04 04:47:37 | 00,612,864 | ---- | C | MD5 = FBA13EE4F0838CB6C340128DACF9CF12] (Microsoft Corporation)
    mspaint.exe -> C:\Windows\SysNative\mspaint.exe -> [2009/06/04 04:47:37 | 00,593,408 | ---- | C | MD5 = EC0A7FB35A11EEF77C76781E122BAF0C] (Microsoft Corporation)
    msftedit.dll -> C:\Windows\SysWow64\msftedit.dll -> [2009/06/04 04:47:37 | 00,564,224 | ---- | C | MD5 = 3A72AB0BAF2DC1AE0BA6E1EE28FFCC0B] (Microsoft Corporation)
    scesrv.dll -> C:\Windows\SysNative\scesrv.dll -> [2009/06/04 04:47:37 | 00,399,360 | ---- | C | MD5 = 495EB57ACF30983AA441B70A8DE2B7ED] (Microsoft Corporation)
    RelMon.dll -> C:\Windows\SysWow64\RelMon.dll -> [2009/06/04 04:47:37 | 00,340,992 | ---- | C | MD5 = 859E02E3346DC681DFAC96225D2797C6] (Microsoft Corporation)
    tapisrv.dll -> C:\Windows\SysNative\tapisrv.dll -> [2009/06/04 04:47:37 | 00,318,976 | ---- | C | MD5 = CC2562B4D55E0B6A4758C65407F63B79] (Microsoft Corporation)
    wow64win.dll -> C:\Windows\SysNative\wow64win.dll -> [2009/06/04 04:47:37 | 00,301,568 | ---- | C | MD5 = 8FE910915F14C9C6A9561D8032B603D3] (Microsoft Corporation)
    regsvc.dll -> C:\Windows\SysNative\regsvc.dll -> [2009/06/04 04:47:37 | 00,206,848 | ---- | C | MD5 = 44B9D8EC2F3EF3A0EFB00857AF70D861] (Microsoft Corporation)
    winmm.dll -> C:\Windows\SysWow64\winmm.dll -> [2009/06/04 04:47:37 | 00,189,952 | ---- | C | MD5 = 934511EFE4461F84CA946B9C0321F365] (Microsoft Corporation)
    ks.sys -> C:\Windows\SysNative\drivers\ks.sys -> [2009/06/04 04:47:37 | 00,188,416 | ---- | C | MD5 = 6DF6A6E5642D97B07214B1FBED4A15B3] (Microsoft Corporation)
    exfat.sys -> C:\Windows\SysNative\drivers\exfat.sys -> [2009/06/04 04:47:37 | 00,187,904 | ---- | C | MD5 = 486844F47B6636044A42454614ED4523] (Microsoft Corporation)
    Faultrep.dll -> C:\Windows\SysNative\Faultrep.dll -> [2009/06/04 04:47:37 | 00,176,640 | ---- | C | MD5 = 90D65E758F4087A529C0703EF322F780] (Microsoft Corporation)
    wusa.exe -> C:\Windows\SysNative\wusa.exe -> [2009/06/04 04:47:37 | 00,147,968 | ---- | C | MD5 = 663F13995CF313674C18B4591EA2BF08] (Microsoft Corporation)
    dnsrslvr.dll -> C:\Windows\SysNative\dnsrslvr.dll -> [2009/06/04 04:47:37 | 00,117,760 | ---- | C | MD5 = 21D16B37257370975C7457C3A5EFA530] (Microsoft Corporation)
    WinSCard.dll -> C:\Windows\SysWow64\WinSCard.dll -> [2009/06/04 04:47:37 | 00,115,712 | ---- | C | MD5 = 627920CFF5DFCF8CF54CF2D592D61307] (Microsoft Corporation)
    logman.exe -> C:\Windows\SysNative\logman.exe -> [2009/06/04 04:47:37 | 00,070,144 | ---- | C | MD5 = ADAE934EECFDD8BF8ABBEF10D80381AB] (Microsoft Corporation)
    wsepno.dll -> C:\Windows\SysNative\wsepno.dll -> [2009/06/04 04:47:37 | 00,024,064 | ---- | C | MD5 = 5B24E50355A79CD48ED369D8D747411A] (Microsoft Corporation)
    WerFaultSecure.exe -> C:\Windows\SysWow64\WerFaultSecure.exe -> [2009/06/04 04:47:36 | 00,860,160 | ---- | C | MD5 = DA06BE393317EA5756B218633A537B47] (Microsoft Corporation)
    Utilman.exe -> C:\Windows\SysWow64\Utilman.exe -> [2009/06/04 04:47:36 | 00,638,976 | ---- | C | MD5 = 10FB8976B556A75098868CFFAD6DC576] (Microsoft Corporation)
    stobject.dll -> C:\Windows\SysWow64\stobject.dll -> [2009/06/04 04:47:36 | 00,586,752 | ---- | C | MD5 = 8EAE44A2EBCBB5D12C5454573EA1F621] (Microsoft Corporation)
    prnntfy.dll -> C:\Windows\SysWow64\prnntfy.dll -> [2009/06/04 04:47:36 | 00,551,936 | ---- | C | MD5 = 429A7B2973A57B1EF405DF270CF3F90C] (Microsoft Corporation)
    AudioEng.dll -> C:\Windows\SysWow64\AudioEng.dll -> [2009/06/04 04:47:36 | 00,396,800 | ---- | C | MD5 = DA7478BA9E41B60B3D5DA456E253002A] (Microsoft Corporation)
    mscms.dll -> C:\Windows\SysWow64\mscms.dll -> [2009/06/04 04:47:36 | 00,391,680 | ---- | C | MD5 = 5F1DEC3824E566457F53F24F493FEF08] (Microsoft Corporation)
    shsvcs.dll -> C:\Windows\SysNative\shsvcs.dll -> [2009/06/04 04:47:36 | 00,301,568 | ---- | C | MD5 = 2AD15758174DCC7993FF3C00A955DD66] (Microsoft Corporation)
    diskraid.exe -> C:\Windows\SysWow64\diskraid.exe -> [2009/06/04 04:47:36 | 00,230,912 | ---- | C | MD5 = 206B492CC40E0E0C01F6EA73F724AB9A] (Microsoft Corporation)
    WerFault.exe -> C:\Windows\SysWow64\WerFault.exe -> [2009/06/04 04:47:36 | 00,217,088 | ---- | C | MD5 = 7BEDD051B53821B040EAD42DB0724848] (Microsoft Corporation)
    mfplat.dll -> C:\Windows\SysWow64\mfplat.dll -> [2009/06/04 04:47:36 | 00,208,896 | ---- | C | MD5 = C732992FF9798F2ACBF86314F0E4A6F5] (Microsoft Corporation)
    SndVol.exe -> C:\Windows\SysWow64\SndVol.exe -> [2009/06/04 04:47:36 | 00,197,632 | ---- | C | MD5 = 96DD35AB1C1420E0CD70EF9ECD32B825] (Microsoft Corporation)
    offfilt.dll -> C:\Windows\SysWow64\offfilt.dll -> [2009/06/04 04:47:36 | 00,194,560 | ---- | C | MD5 = 06588D3E301B53D24281DACEE3C34FE3] (Microsoft Corporation)
    msnetobj.dll -> C:\Windows\SysWow64\msnetobj.dll -> [2009/06/04 04:47:36 | 00,179,712 | ---- | C | MD5 = 584C4A26F210B823BBF73BB985CAA2CE] (Microsoft Corporation)
    apphelp.dll -> C:\Windows\SysWow64\apphelp.dll -> [2009/06/04 04:47:36 | 00,171,008 | ---- | C | MD5 = 1107BD574A84367735FEC38B9BD64E6B] (Microsoft Corporation)
    wscript.exe -> C:\Windows\SysWow64\wscript.exe -> [2009/06/04 04:47:36 | 00,155,648 | ---- | C | MD5 = 1259E03DCD5F265B23DB738FB075DF8C] (Microsoft Corporation)
    secproc_ssp_isv.dll -> C:\Windows\SysWow64\secproc_ssp_isv.dll -> [2009/06/04 04:47:36 | 00,152,576 | ---- | C | MD5 = 7167087FBBBAB7518B7E171508A7AEE7] (Microsoft Corporation)
    secproc_ssp.dll -> C:\Windows\SysWow64\secproc_ssp.dll -> [2009/06/04 04:47:36 | 00,152,064 | ---- | C | MD5 = 4805AA783E9CA8E60F1AA6F3E1199D83] (Microsoft Corporation)
    authz.dll -> C:\Windows\SysNative\authz.dll -> [2009/06/04 04:47:36 | 00,143,360 | ---- | C | MD5 = 5EF9205E045643A5A75A82B116395B25] (Microsoft Corporation)
    mstlsapi.dll -> C:\Windows\SysNative\mstlsapi.dll -> [2009/06/04 04:47:36 | 00,139,264 | ---- | C | MD5 = 0DDD4DDE7C1FD5C3C8C4CB378CC9766F] (Microsoft Corporation)
    odbccp32.dll -> C:\Windows\SysWow64\odbccp32.dll -> [2009/06/04 04:47:36 | 00,114,688 | ---- | C | MD5 = A1B46928E107D770053E6B4D248298A5] (Microsoft Corporation)
    adsmsext.dll -> C:\Windows\SysWow64\adsmsext.dll -> [2009/06/04 04:47:36 | 00,075,264 | ---- | C | MD5 = 27FC7C228999D739C11F76120A121525] (Microsoft Corporation)
    wsnmp32.dll -> C:\Windows\SysNative\wsnmp32.dll -> [2009/06/04 04:47:36 | 00,061,952 | ---- | C | MD5 = 57120423BC6342F0EAE16E3720184D5A] (Microsoft Corporation)
    TSTheme.exe -> C:\Windows\SysNative\TSTheme.exe -> [2009/06/04 04:47:36 | 00,045,568 | ---- | C | MD5 = 73EE3ACB4284F47FEE55F2DFA634C3FB] (Microsoft Corporation)
    usercpl.dll -> C:\Windows\SysNative\usercpl.dll -> [2009/06/04 04:47:35 | 01,279,488 | ---- | C | MD5 = F59E9C431922D78F771B47BD78974A00] (Microsoft Corporation)
    wer.dll -> C:\Windows\SysNative\wer.dll -> [2009/06/04 04:47:35 | 01,110,528 | ---- | C | MD5 = 589CDC23CCDC419C36DDD200BEB00944] (Microsoft Corporation)
    systemcpl.dll -> C:\Windows\SysNative\systemcpl.dll -> [2009/06/04 04:47:35 | 00,995,328 | ---- | C | MD5 = 423AE00736BE9C4679975B31B9B06E16] (Microsoft Corporation)
    cryptui.dll -> C:\Windows\SysWow64\cryptui.dll -> [2009/06/04 04:47:35 | 00,971,264 | ---- | C | MD5 = 248A1F31ABB58DDDDC01490EF0BDC777] (Microsoft Corporation)
    timedate.cpl -> C:\Windows\SysNative\timedate.cpl -> [2009/06/04 04:47:35 | 00,881,152 | ---- | C | MD5 = 11449A34FFF4A84C0C81339107C39BDE] (Microsoft Corporation)
    ipsecsnp.dll -> C:\Windows\SysWow64\ipsecsnp.dll -> [2009/06/04 04:47:35 | 00,759,296 | ---- | C | MD5 = 0170442A2DF1127A9F4330FDDAEC35F6] (Microsoft Corporation)
    themeui.dll -> C:\Windows\SysNative\themeui.dll -> [2009/06/04 04:47:35 | 00,688,640 | ---- | C | MD5 = A83ABA8C35FC10E8CECF4A241ECAFA9F] (Microsoft Corporation)
    dsound.dll -> C:\Windows\SysWow64\dsound.dll -> [2009/06/04 04:47:35 | 00,444,416 | ---- | C | MD5 = 84B8827562B005C118CADBA0F25DB2C6] (Microsoft Corporation)
    wlangpui.dll -> C:\Windows\SysWow64\wlangpui.dll -> [2009/06/04 04:47:35 | 00,399,360 | ---- | C | MD5 = 6A4ACF2A646637BEA955A7263AE0C424] (Microsoft Corporation)
    zipfldr.dll -> C:\Windows\SysNative\zipfldr.dll -> [2009/06/04 04:47:35 | 00,387,072 | ---- | C | MD5 = 5F5EEC2778893CA2EC3A423FBDC10F6F] (Microsoft Corporation)
    bcrypt.dll -> C:\Windows\SysNative\bcrypt.dll -> [2009/06/04 04:47:35 | 00,306,688 | ---- | C | MD5 = 02EE316487BCC8F4F6017CAD538365CC] (Microsoft Corporation)
    rastls.dll -> C:\Windows\SysWow64\rastls.dll -> [2009/06/04 04:47:35 | 00,244,224 | ---- | C | MD5 = 010A3B1255F9B35E6EB7BB97C57CA086] (Microsoft Corporation)
    wow64.dll -> C:\Windows\SysNative\wow64.dll -> [2009/06/04 04:47:35 | 00,234,496 | ---- | C | MD5 = 813C216E14005CB42BBD1B037FCF030F] (Microsoft Corporation)
    wscntfy.dll -> C:\Windows\SysWow64\wscntfy.dll -> [2009/06/04 04:47:35 | 00,223,744 | ---- | C | MD5 = 0B5AC46982E77CAF3EC1D55C9AC6AB56] (Microsoft Corporation)
    dot3svc.dll -> C:\Windows\SysNative\dot3svc.dll -> [2009/06/04 04:47:35 | 00,208,896 | ---- | C | MD5 = 1A7156DD1E850E9914E5E991E3225B94] (Microsoft Corporation)
    pnpsetup.dll -> C:\Windows\SysWow64\pnpsetup.dll -> [2009/06/04 04:47:35 | 00,181,760 | ---- | C | MD5 = 24843AC00885464EA397FE56CBCBAAD7] (Microsoft Corporation)
    wshom.ocx -> C:\Windows\SysNative\wshom.ocx -> [2009/06/04 04:47:35 | 00,144,384 | ---- | C | MD5 = C9FEA5BABF18D825C65CBF0AD50EC59A] (Microsoft Corporation)
    odbccp32.dll -> C:\Windows\SysNative\odbccp32.dll -> [2009/06/04 04:47:35 | 00,126,976 | ---- | C | MD5 = FE884FEE6FD382CFCC9C3C05133A874D] (Microsoft Corporation)
    diskpart.exe -> C:\Windows\SysWow64\diskpart.exe -> [2009/06/04 04:47:35 | 00,119,808 | ---- | C | MD5 = A9F36F9BEC6F23F5B6EDF1EB4D1AA452] (Microsoft Corporation)
    Kswdmcap.ax -> C:\Windows\SysNative\Kswdmcap.ax -> [2009/06/04 04:47:35 | 00,115,200 | ---- | C | MD5 = F307C2E569AD9BDA64E3F6D9E78B5AAD] (Microsoft Corporation)
    mrxsmb20.sys -> C:\Windows\SysNative\drivers\mrxsmb20.sys -> [2009/06/04 04:47:35 | 00,105,984 | ---- | C | MD5 = 37ABC27460F9D532EFDCC0116B7E5E48] (Microsoft Corporation)
    console.dll -> C:\Windows\SysNative\console.dll -> [2009/06/04 04:47:35 | 00,104,448 | ---- | C | MD5 = C04642A57835AEA3D66AE0D896E0F6D1] (Microsoft Corporation)
    ulib.dll -> C:\Windows\SysWow64\ulib.dll -> [2009/06/04 04:47:35 | 00,099,840 | ---- | C | MD5 = 5C9541EFCE477BFCFFD0EF9B1A175457] (Microsoft Corporation)
    IPHLPAPI.DLL -> C:\Windows\SysWow64\IPHLPAPI.DLL -> [2009/06/04 04:47:35 | 00,091,648 | ---- | C | MD5 = 4FE8425F21B3F0F8C4B4726351D43EAA] (Microsoft Corporation)
    rastapi.dll -> C:\Windows\SysNative\rastapi.dll -> [2009/06/04 04:47:35 | 00,081,408 | ---- | C | MD5 = 8F8E0EE62D73C72015D43E91BBF62B01] (Microsoft Corporation)
    gpapi.dll -> C:\Windows\SysWow64\gpapi.dll -> [2009/06/04 04:47:35 | 00,075,264 | ---- | C | MD5 = 0F420E81062757EA8363CBACD4D40D6D] (Microsoft Corporation)
    rastapi.dll -> C:\Windows\SysWow64\rastapi.dll -> [2009/06/04 04:47:35 | 00,069,632 | ---- | C | MD5 = 1D6B95871DC006190964B04E5657E35F] (Microsoft Corporation)
    iasdatastore.dll -> C:\Windows\SysWow64\iasdatastore.dll -> [2009/06/04 04:47:35 | 00,047,104 | ---- | C | MD5 = 68EF5A4ECAB4FE38ACE1B7DBA86EEC71] (Microsoft Corporation)
    perfdisk.dll -> C:\Windows\SysNative\perfdisk.dll -> [2009/06/04 04:47:35 | 00,035,328 | ---- | C | MD5 = 67FB44CEBAFF6FB5A01920F9B311C76E] (Microsoft Corporation)
    fdProxy.dll -> C:\Windows\SysWow64\fdProxy.dll -> [2009/06/04 04:47:35 | 00,024,064 | ---- | C | MD5 = ABAEAEE763E287BDD39094C4165E1F3F] (Microsoft Corporation)
    tsbyuv.dll -> C:\Windows\SysNative\tsbyuv.dll -> [2009/06/04 04:47:35 | 00,014,336 | ---- | C | MD5 = D5A1C956A2A8F757D6141600078D40CE] (Microsoft Corporation)
    WMVENCOD.DLL -> C:\Windows\SysWow64\WMVENCOD.DLL -> [2009/06/04 04:47:34 | 01,575,936 | ---- | C | MD5 = 0832B2F03FDF247F048A2A07810CF5CC] (Microsoft Corporation)
    sud.dll -> C:\Windows\SysNative\sud.dll -> [2009/06/04 04:47:34 | 01,382,912 | ---- | C | MD5 = 71D1DE39CC39BFB59563820AA364EEE1] (Microsoft Corporation)
    powercpl.dll -> C:\Windows\SysNative\powercpl.dll -> [2009/06/04 04:47:34 | 00,898,560 | ---- | C | MD5 = 3096A3E497003224B4E48BAC11C6778C] (Microsoft Corporation)
    slcc.dll -> C:\Windows\SysNative\slcc.dll -> [2009/06/04 04:47:34 | 00,810,496 | ---- | C | MD5 = 424CE0D3BDE733C21914B7C415F2EF36] (Microsoft Corporation)
    wpcao.dll -> C:\Windows\SysNative\wpcao.dll -> [2009/06/04 04:47:34 | 00,690,688 | ---- | C | MD5 = D6D7D64E008500DB45A1E02A13DC1EEA] (Microsoft Corporation)
    autoplay.dll -> C:\Windows\SysNative\autoplay.dll -> [2009/06/04 04:47:34 | 00,667,648 | ---- | C | MD5 = 8039D279CCFB4DA0B1AA41D8E70369BE] (Microsoft Corporation)
    pcaui.dll -> C:\Windows\SysNative\pcaui.dll -> [2009/06/04 04:47:34 | 00,617,984 | ---- | C | MD5 = 1B63115D4A0D3B7B53A30CC426722BDD] (Microsoft Corporation)
    vdsdyn.dll -> C:\Windows\SysWow64\vdsdyn.dll -> [2009/06/04 04:47:34 | 00,507,904 | ---- | C | MD5 = 759CAC5C047B3DE16E2A59351527DBB3] (Microsoft Corporation)
    IKEEXT.DLL -> C:\Windows\SysNative\IKEEXT.DLL -> [2009/06/04 04:47:34 | 00,454,656 | ---- | C | MD5 = 0C9EA6E654E7B0471741E343A6C671AF] (Microsoft Corporation)
    imkr80.ime -> C:\Windows\SysNative\imkr80.ime -> [2009/06/04 04:47:34 | 00,437,248 | ---- | C | MD5 = 54550E0ECC435DE30244F15857A8002B] (Microsoft Corporation)
    zipfldr.dll -> C:\Windows\SysWow64\zipfldr.dll -> [2009/06/04 04:47:34 | 00,342,528 | ---- | C | MD5 = 7D80F287AEEDD39C03E118E0EBD3311E] (Microsoft Corporation)
    modemui.dll -> C:\Windows\SysNative\modemui.dll -> [2009/06/04 04:47:34 | 00,302,592 | ---- | C | MD5 = 0C31659ABF8C63995E355B330ACB3AE2] (Microsoft Corporation)
    rasapi32.dll -> C:\Windows\SysWow64\rasapi32.dll -> [2009/06/04 04:47:34 | 00,286,720 | ---- | C | MD5 = 3CB863B78642405371CB3A71C07E2382] (Microsoft Corporation)
    ntprint.dll -> C:\Windows\SysWow64\ntprint.dll -> [2009/06/04 04:47:34 | 00,216,064 | ---- | C | MD5 = 16FF3D15D12BFBB0B805FFE71BE3FA15] (Microsoft Corporation)
    wscript.exe -> C:\Windows\SysNative\wscript.exe -> [2009/06/04 04:47:34 | 00,166,912 | ---- | C | MD5 = 895083A7A0C4A75C6F8825895050ABB7] (Microsoft Corporation)
    SmartcardCredentialProvider.dll -> C:\Windows\SysNative\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:34 | 00,161,280 | ---- | C | MD5 = C501852F1CA40FFC55363ACC0D2DF5BA] (Microsoft Corporation)
    iasrad.dll -> C:\Windows\SysWow64\iasrad.dll -> [2009/06/04 04:47:34 | 00,158,208 | ---- | C | MD5 = A080A841827D71F86ACEDC48F3B5AF64] (Microsoft Corporation)
    mscorier.dll -> C:\Windows\SysWow64\mscorier.dll -> [2009/06/04 04:47:34 | 00,155,456 | ---- | C | MD5 = 39F8C798CD91E03A26C3A733108CCE41] (Microsoft Corporation)
    mscorier.dll -> C:\Windows\SysNative\mscorier.dll -> [2009/06/04 04:47:34 | 00,154,960 | ---- | C | MD5 = BA47897793A16976F4CD9694920C9781] (Microsoft Corporation)
    wusa.exe -> C:\Windows\SysWow64\wusa.exe -> [2009/06/04 04:47:34 | 00,140,800 | ---- | C | MD5 = 10BE37532F4AD750958AB53A786F74BD] (Microsoft Corporation)
    netiohlp.dll -> C:\Windows\SysWow64\netiohlp.dll -> [2009/06/04 04:47:34 | 00,104,448 | ---- | C | MD5 = 3BA9CEAB6B6BB30ACACC1937C074532D] (Microsoft Corporation)
    wlanhlp.dll -> C:\Windows\SysNative\wlanhlp.dll -> [2009/06/04 04:47:34 | 00,097,792 | ---- | C | MD5 = BF89EBF91E1559FA8773AFB4372F40E8] (Microsoft Corporation)
    tdx.sys -> C:\Windows\SysNative\drivers\tdx.sys -> [2009/06/04 04:47:34 | 00,094,720 | ---- | C | MD5 = 458919C8C42E398DC4802178D5FFEE27] (Microsoft Corporation)
    regapi.dll -> C:\Windows\SysNative\regapi.dll -> [2009/06/04 04:47:34 | 00,089,088 | ---- | C | MD5 = 94CCD9D329BD894E3385CD43F613D554] (Microsoft Corporation)
    hdwwiz.exe -> C:\Windows\SysNative\hdwwiz.exe -> [2009/06/04 04:47:34 | 00,080,896 | ---- | C | MD5 = 10F17F3418B50C563BDB4D80D2D7F2C0] (Microsoft Corporation)
    newdev.exe -> C:\Windows\SysNative\newdev.exe -> [2009/06/04 04:47:34 | 00,075,776 | ---- | C | MD5 = D0EA1BB7D305DA7F138795CCDBF13040] (Microsoft Corporation)
    iashlpr.dll -> C:\Windows\SysWow64\iashlpr.dll -> [2009/06/04 04:47:34 | 00,070,656 | ---- | C | MD5 = 24468F62F811EC51F1DE9FA080E7D2C1] (Microsoft Corporation)
    findstr.exe -> C:\Windows\SysWow64\findstr.exe -> [2009/06/04 04:47:34 | 00,060,928 | ---- | C | MD5 = 186954438DE3DDBF0B46F895B7936DE3] (Microsoft Corporation)
    logman.exe -> C:\Windows\SysWow64\logman.exe -> [2009/06/04 04:47:34 | 00,057,344 | ---- | C | MD5 = D29E2C7FECB1F1027DAE779B00A3E956] (Microsoft Corporation)
    wshbth.dll -> C:\Windows\SysNative\wshbth.dll -> [2009/06/04 04:47:34 | 00,044,032 | ---- | C | MD5 = 2A70994A408D889715DE6A527679397E] (Microsoft Corporation)
    DeviceEject.exe -> C:\Windows\SysNative\DeviceEject.exe -> [2009/06/04 04:47:34 | 00,026,624 | ---- | C | MD5 = F03360A8A3059D14FEA41E6BF6E704F0] (Microsoft Corporation)
    msisip.dll -> C:\Windows\SysNative\msisip.dll -> [2009/06/04 04:47:34 | 00,022,528 | ---- | C | MD5 = 916E8C67A8D845378E26ACEE7C1CB16F] (Microsoft Corporation)
    chtbrkr.dll -> C:\Windows\SysNative\chtbrkr.dll -> [2009/06/04 04:47:33 | 06,100,480 | ---- | C | MD5 = AC8C3CBCA02EBC0FAE7B1A00C4DCEADC] (Microsoft Corporation)
    accessibilitycpl.dll -> C:\Windows\SysNative\accessibilitycpl.dll -> [2009/06/04 04:47:33 | 02,680,832 | ---- | C | MD5 = 9E341BB55760A87268862E40DBA1CEF0] (Microsoft Corporation)
    netcenter.dll -> C:\Windows\SysWow64\netcenter.dll -> [2009/06/04 04:47:33 | 02,225,664 | ---- | C | MD5 = 28622FC22E0D46EE0A494EF084235F74] (Microsoft Corporation)
    themecpl.dll -> C:\Windows\SysWow64\themecpl.dll -> [2009/06/04 04:47:33 | 01,152,000 | ---- | C | MD5 = 7AF5FFF227F2365B2E37C61F5DC84A01] (Microsoft Corporation)
    wer.dll -> C:\Windows\SysWow64\wer.dll -> [2009/06/04 04:47:33 | 00,876,032 | ---- | C | MD5 = 8BE000F9A0B0FF7194AAEFB02C9BDE99] (Microsoft Corporation)
    rasdlg.dll -> C:\Windows\SysWow64\rasdlg.dll -> [2009/06/04 04:47:33 | 00,825,856 | ---- | C | MD5 = 2DD6AF8E97F59C9D39329BBC2A81F13F] (Microsoft Corporation)
    mstsc.exe -> C:\Windows\SysNative\mstsc.exe -> [2009/06/04 04:47:33 | 00,731,648 | ---- | C | MD5 = B9ECFA30BE99EEEA2948A27D85E1F52E] (Microsoft Corporation)
    pnpui.dll -> C:\Windows\SysNative\pnpui.dll -> [2009/06/04 04:47:33 | 00,691,712 | ---- | C | MD5 = 0E5D010E4BA6C9477AE6BD4D35F334F4] (Microsoft Corporation)
    riched20.dll -> C:\Windows\SysNative\riched20.dll -> [2009/06/04 04:47:33 | 00,606,208 | ---- | C | MD5 = A66325E43C09902374854B285DAC1548] (Microsoft Corporation)
    ncryptui.dll -> C:\Windows\SysNative\ncryptui.dll -> [2009/06/04 04:47:33 | 00,589,312 | ---- | C | MD5 = C4EB35DAE78F0FA60E17729E460A157F] (Microsoft Corporation)
    udfs.sys -> C:\Windows\SysNative\drivers\udfs.sys -> [2009/06/04 04:47:33 | 00,299,008 | ---- | C | MD5 = FAF2640A2A76ED03D449E443194C4C34] (Microsoft Corporation)
    apphelp.dll -> C:\Windows\SysNative\apphelp.dll -> [2009/06/04 04:47:33 | 00,200,704 | ---- | C | MD5 = F33E804A031F160D128AB78990DE7C91] (Microsoft Corporation)
    imm32.dll -> C:\Windows\SysNative\imm32.dll -> [2009/06/04 04:47:33 | 00,163,840 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    vdsutil.dll -> C:\Windows\SysNative\vdsutil.dll -> [2009/06/04 04:47:33 | 00,157,696 | ---- | C | MD5 = 220349D1D90EE438AD031EBEF5F6D7A3] (Microsoft Corporation)
    cscript.exe -> C:\Windows\SysNative\cscript.exe -> [2009/06/04 04:47:33 | 00,147,968 | ---- | C | MD5 = FDD38054BABF076AA91DD02A2F1501C0] (Microsoft Corporation)
    ulib.dll -> C:\Windows\SysNative\ulib.dll -> [2009/06/04 04:47:33 | 00,128,000 | ---- | C | MD5 = 10D22E8EF75C8E63007492B524A008F8] (Microsoft Corporation)
    wshext.dll -> C:\Windows\SysNative\wshext.dll -> [2009/06/04 04:47:33 | 00,101,888 | ---- | C | MD5 = 6DC1F2034B8ECAB0C7848A9B522076AB] (Microsoft Corporation)
    pacer.sys -> C:\Windows\SysNative\drivers\pacer.sys -> [2009/06/04 04:47:33 | 00,094,208 | ---- | C | MD5 = C5AB7F0809392D0DA027F4A2A81BFA31] (Microsoft Corporation)
    wshext.dll -> C:\Windows\SysWow64\wshext.dll -> [2009/06/04 04:47:33 | 00,090,112 | ---- | C | MD5 = 9C50130E941A24805A608E6F3D2A3C8F] (Microsoft Corporation)
    iassvcs.dll -> C:\Windows\SysWow64\iassvcs.dll -> [2009/06/04 04:47:33 | 00,076,288 | ---- | C | MD5 = CAC183ABA07231B031EC0627E3A4A618] (Microsoft Corporation)
    feclient.dll -> C:\Windows\SysNative\feclient.dll -> [2009/06/04 04:47:33 | 00,068,608 | ---- | C | MD5 = D7924B0F3AB5574BF59CA2892BE8961A] (Microsoft Corporation)
    wsnmp32.dll -> C:\Windows\SysWow64\wsnmp32.dll -> [2009/06/04 04:47:33 | 00,050,688 | ---- | C | MD5 = 1EDE113859276E4B0F19B80F39E2CC95] (Microsoft Corporation)
    usbehci.sys -> C:\Windows\SysNative\drivers\usbehci.sys -> [2009/06/04 04:47:33 | 00,049,664 | ---- | C | MD5 = 827E44DE934A736EA31E91D353EB126F] (Microsoft Corporation)
    networkmap.dll -> C:\Windows\SysWow64\networkmap.dll -> [2009/06/04 04:47:32 | 03,072,000 | ---- | C | MD5 = 681D46C02A26F00C5F767B78BDAC7D1E] (Microsoft Corporation)
    PerfCenterCPL.dll -> C:\Windows\SysWow64\PerfCenterCPL.dll -> [2009/06/04 04:47:32 | 01,248,768 | ---- | C | MD5 = 1B360BE74EEF51393234D23552AEE403] (Microsoft Corporation)
    slcc.dll -> C:\Windows\SysWow64\slcc.dll -> [2009/06/04 04:47:32 | 00,777,216 | ---- | C | MD5 = 3CEADB7938575606D5334E44A7274B92] (Microsoft Corporation)
    powercpl.dll -> C:\Windows\SysWow64\powercpl.dll -> [2009/06/04 04:47:32 | 00,723,968 | ---- | C | MD5 = 8DDC387167FA0234F3656EB34C78BFFB] (Microsoft Corporation)
    timedate.cpl -> C:\Windows\SysWow64\timedate.cpl -> [2009/06/04 04:47:32 | 00,714,240 | ---- | C | MD5 = 45D4135CFA747CDFCF7CB247A6399002] (Microsoft Corporation)
    mstsc.exe -> C:\Windows\SysWow64\mstsc.exe -> [2009/06/04 04:47:32 | 00,678,400 | ---- | C | MD5 = 4F7A9842012D948EB16DC7B8B91366FE] (Microsoft Corporation)
    qedit.dll -> C:\Windows\SysNative\qedit.dll -> [2009/06/04 04:47:32 | 00,619,008 | ---- | C | MD5 = C4E2A5EC3D4AB3D0652F6A70FDE24C78] (Microsoft Corporation)
    srcore.dll -> C:\Windows\SysNative\srcore.dll -> [2009/06/04 04:47:32 | 00,474,624 | ---- | C | MD5 = 8BD38D1BF56559DF5E28EA74ADA63A07] (Microsoft Corporation)
    rasplap.dll -> C:\Windows\SysNative\rasplap.dll -> [2009/06/04 04:47:32 | 00,389,632 | ---- | C | MD5 = F59CF3BFE865EB795C5DE5850F48B321] (Microsoft Corporation)
    rasppp.dll -> C:\Windows\SysNative\rasppp.dll -> [2009/06/04 04:47:32 | 00,306,176 | ---- | C | MD5 = 4500B574CB7F5ED6EE8E0BBC72AE2E31] (Microsoft Corporation)
    scansetting.dll -> C:\Windows\SysWow64\scansetting.dll -> [2009/06/04 04:47:32 | 00,245,760 | ---- | C | MD5 = E60FA45D987DBA869B28532E2F0E6B76] (Microsoft Corporation)
    SndVolSSO.dll -> C:\Windows\SysNative\SndVolSSO.dll -> [2009/06/04 04:47:32 | 00,177,664 | ---- | C | MD5 = 5C8C51B679B947F3DF948533C0926240] (Microsoft Corporation)
    tcpmon.dll -> C:\Windows\SysNative\tcpmon.dll -> [2009/06/04 04:47:32 | 00,168,960 | ---- | C | MD5 = 74D59F72104C9FF8D154D1AB372A5A57] (Microsoft Corporation)
    msutb.dll -> C:\Windows\SysWow64\msutb.dll -> [2009/06/04 04:47:32 | 00,163,328 | ---- | C | MD5 = C6DA42ADA0C5FC8CB05744229D632B47] (Microsoft Corporation)
    wshom.ocx -> C:\Windows\SysWow64\wshom.ocx -> [2009/06/04 04:47:32 | 00,135,168 | ---- | C | MD5 = 8992F45DED6B63B919BDEB6D270FF9C8] (Microsoft Corporation)
    ntmarta.dll -> C:\Windows\SysWow64\ntmarta.dll -> [2009/06/04 04:47:32 | 00,121,344 | ---- | C | MD5 = CD08EEC61C591AF59A39F4363C567D30] (Microsoft Corporation)
    oleprn.dll -> C:\Windows\SysNative\oleprn.dll -> [2009/06/04 04:47:32 | 00,115,712 | ---- | C | MD5 = D00EE9DF8224EAED0690EF80FFAE9EAA] (Microsoft Corporation)
    powrprof.dll -> C:\Windows\SysWow64\powrprof.dll -> [2009/06/04 04:47:32 | 00,098,816 | ---- | C | MD5 = 9A7F4B2EDACD11444D048AA19CBB26AF] (Microsoft Corporation)
    wanarp.sys -> C:\Windows\SysNative\drivers\wanarp.sys -> [2009/06/04 04:47:32 | 00,086,528 | ---- | C | MD5 = B8E7049622300D20BA6D8BE0C47C0CFD] (Microsoft Corporation)
    mstlsapi.dll -> C:\Windows\SysWow64\mstlsapi.dll -> [2009/06/04 04:47:32 | 00,084,992 | ---- | C | MD5 = EE60FC8F65B94C392DE0F75533C014FB] (Microsoft Corporation)
    iasacct.dll -> C:\Windows\SysWow64\iasacct.dll -> [2009/06/04 04:47:32 | 00,058,880 | ---- | C | MD5 = 8F29E2E9FA5830317158BB6AE5D2BBA0] (Microsoft Corporation)
    iasads.dll -> C:\Windows\SysWow64\iasads.dll -> [2009/06/04 04:47:32 | 00,057,344 | ---- | C | MD5 = 1111EA117266132F5057ED8F35C47ACD] (Microsoft Corporation)
    dataclen.dll -> C:\Windows\SysNative\dataclen.dll -> [2009/06/04 04:47:32 | 00,048,640 | ---- | C | MD5 = FC15E96BE5E1B1002C72AD91677E5577] (Microsoft Corporation)
    ifmon.dll -> C:\Windows\SysNative\ifmon.dll -> [2009/06/04 04:47:32 | 00,036,352 | ---- | C | MD5 = DD49BE6A0BB0136BBAE9AF0A0BD15F52] (Microsoft Corporation)
    mssprxy.dll -> C:\Windows\SysWow64\mssprxy.dll -> [2009/06/04 04:47:32 | 00,033,280 | ---- | C | MD5 = FEA6D21F78922D641A0C9346D885133B] (Microsoft Corporation)
    lpk.dll -> C:\Windows\SysWow64\lpk.dll -> [2009/06/04 04:47:32 | 00,023,552 | ---- | C | MD5 = DF37346EA13082E3E1B423B54014E641] (Microsoft Corporation)
    tsbyuv.dll -> C:\Windows\SysWow64\tsbyuv.dll -> [2009/06/04 04:47:32 | 00,012,288 | ---- | C | MD5 = 8A057FA5B3C6B982C7D819618770BC2D] (Microsoft Corporation)
    icardres.dll -> C:\Windows\SysWow64\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 34B7FA82A85231348C170EF39B636DB4] (Microsoft Corporation)
    icardres.dll -> C:\Windows\SysNative\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 2CA500FCA65202221265909F14B0A9AE] (Microsoft Corporation)
    accessibilitycpl.dll -> C:\Windows\SysWow64\accessibilitycpl.dll -> [2009/06/04 04:47:31 | 02,515,968 | ---- | C | MD5 = 941486AB385556BF6A62342F8CA15BD8] (Microsoft Corporation)
    wlanpref.dll -> C:\Windows\SysWow64\wlanpref.dll -> [2009/06/04 04:47:31 | 01,671,680 | ---- | C | MD5 = 2EC3531A49A6937446259C540EDE4535] (Microsoft Corporation)
    connect.dll -> C:\Windows\SysWow64\connect.dll -> [2009/06/04 04:47:31 | 01,645,568 | ---- | C | MD5 = 36509ECC02172D09507A16FAD12C566F] (Microsoft Corporation)
    sud.dll -> C:\Windows\SysWow64\sud.dll -> [2009/06/04 04:47:31 | 01,224,192 | ---- | C | MD5 = F9F9E7F0D4EBAC06334C9BF76C9E11B4] (Microsoft Corporation)
    usercpl.dll -> C:\Windows\SysWow64\usercpl.dll -> [2009/06/04 04:47:31 | 01,123,840 | ---- | C | MD5 = E3CE1997725EE8E14F7B4A7CD746538E] (Microsoft Corporation)
    systemcpl.dll -> C:\Windows\SysWow64\systemcpl.dll -> [2009/06/04 04:47:31 | 00,842,240 | ---- | C | MD5 = 2A7D73202A7299CD35AC6D0D96128B5B] (Microsoft Corporation)
    WMVXENCD.DLL -> C:\Windows\SysNative\WMVXENCD.DLL -> [2009/06/04 04:47:31 | 00,622,592 | ---- | C | MD5 = 5413960D8A16697626FED4A1F1508856] (Microsoft Corporation)
  • edited June 2009
    themeui.dll -> C:\Windows\SysWow64\themeui.dll -> [2009/06/04 04:47:31 | 00,615,424 | ---- | C | MD5 = 4CF66D8014ECB3BF517E38C5B90AAC74] (Microsoft Corporation)
    autoplay.dll -> C:\Windows\SysWow64\autoplay.dll -> [2009/06/04 04:47:31 | 00,516,608 | ---- | C | MD5 = 2AE61DEF9112DA8948EEAB3631FF4525] (Microsoft Corporation)
    qdvd.dll -> C:\Windows\SysWow64\qdvd.dll -> [2009/06/04 04:47:31 | 00,497,152 | ---- | C | MD5 = 971F512A83EC50B8A72C8F8BFBF4E5B2] (Microsoft Corporation)
    wlangpui.dll -> C:\Windows\SysNative\wlangpui.dll -> [2009/06/04 04:47:31 | 00,489,984 | ---- | C | MD5 = 5C1E2FBBBE6F14FAAFA8AAA20C7E2D71] (Microsoft Corporation)
    pcaui.dll -> C:\Windows\SysWow64\pcaui.dll -> [2009/06/04 04:47:31 | 00,464,384 | ---- | C | MD5 = 7E05BE3F599B3F0C46389241C6820C8B] (Microsoft Corporation)
    BFE.DLL -> C:\Windows\SysNative\BFE.DLL -> [2009/06/04 04:47:31 | 00,458,240 | ---- | C | MD5 = FFB96C2589FFA60473EAD78B39FBDE29] (Microsoft Corporation)
    qdvd.dll -> C:\Windows\SysNative\qdvd.dll -> [2009/06/04 04:47:31 | 00,352,256 | ---- | C | MD5 = 354315DD7C8DF536E7B08E922CB9AA18] (Microsoft Corporation)
    thawbrkr.dll -> C:\Windows\SysNative\thawbrkr.dll -> [2009/06/04 04:47:31 | 00,317,440 | ---- | C | MD5 = 4F9D5C5FEC7DCAA32EA82FAC7215D1C3] (Microsoft Corporation)
    raschap.dll -> C:\Windows\SysNative\raschap.dll -> [2009/06/04 04:47:31 | 00,295,936 | ---- | C | MD5 = BFDF69526CB6476992540D4C477CC27A] (Microsoft Corporation)
    scksp.dll -> C:\Windows\SysNative\scksp.dll -> [2009/06/04 04:47:31 | 00,186,880 | ---- | C | MD5 = 4B2512952CCD6C2C7E610F21E28A5163] (Microsoft Corporation)
    authz.dll -> C:\Windows\SysWow64\authz.dll -> [2009/06/04 04:47:31 | 00,079,872 | ---- | C | MD5 = 1AE011BB950A5E0B05023D2AFEC3666D] (Microsoft Corporation)
    newdev.exe -> C:\Windows\SysWow64\newdev.exe -> [2009/06/04 04:47:31 | 00,074,752 | ---- | C | MD5 = DD251E13AAAA5F5AF09934759A4E1FC5] (Microsoft Corporation)
    wlanhlp.dll -> C:\Windows\SysWow64\wlanhlp.dll -> [2009/06/04 04:47:31 | 00,068,096 | ---- | C | MD5 = 8D544AC1B7AA7FB9DFF0C3E7DA6AD295] (Microsoft Corporation)
    samlib.dll -> C:\Windows\SysWow64\samlib.dll -> [2009/06/04 04:47:31 | 00,057,344 | ---- | C | MD5 = 453DE2958C885527E20C79A3FEFE6AF7] (Microsoft Corporation)
    mmci.dll -> C:\Windows\SysWow64\mmci.dll -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = CBBFCB6801D0A9F9BD4D477284C86D1C] (Microsoft Corporation)
    cmmon32.exe -> C:\Windows\SysNative\cmmon32.exe -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = 900006FA862F2E631168C8F9CFE33AC1] (Microsoft Corporation)
    rtutils.dll -> C:\Windows\SysNative\rtutils.dll -> [2009/06/04 04:47:31 | 00,050,688 | ---- | C | MD5 = 5A2008B581F4759CC7A25BBAD9BFD2B7] (Microsoft Corporation)
    npfs.sys -> C:\Windows\SysNative\drivers\npfs.sys -> [2009/06/04 04:47:31 | 00,044,544 | ---- | C | MD5 = B298874F8E0EA93F06EC40AA8D146478] (Microsoft Corporation)
    iaspolcy.dll -> C:\Windows\SysNative\iaspolcy.dll -> [2009/06/04 04:47:31 | 00,037,888 | ---- | C | MD5 = 559C060F694FCA4FC0A538DD6D7C4489] (Microsoft Corporation)
    fc.exe -> C:\Windows\SysNative\fc.exe -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 9382063462441C0D2452A40CFE8CAC43] (Microsoft Corporation)
    hidserv.dll -> C:\Windows\SysNative\hidserv.dll -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 59361D38A297755D46A540E450202B2A] (Microsoft Corporation)
    kbdhid.sys -> C:\Windows\SysNative\drivers\kbdhid.sys -> [2009/06/04 04:47:31 | 00,022,528 | ---- | C | MD5 = DBDF75D51464FBC47D0104EC3D572C05] (Microsoft Corporation)
    wscisvif.dll -> C:\Windows\SysNative\wscisvif.dll -> [2009/06/04 04:47:31 | 00,020,992 | ---- | C | MD5 = EBFA7A306C65010DED108F5A26598642] (Microsoft Corporation)
    spwinsat.dll -> C:\Windows\SysNative\spwinsat.dll -> [2009/06/04 04:47:31 | 00,013,824 | ---- | C | MD5 = 1EAE8FB082D759DAD2ED990843E9C0C2] (Microsoft Corporation)
    SyncCenter.dll -> C:\Windows\SysNative\SyncCenter.dll -> [2009/06/04 04:47:30 | 02,575,360 | ---- | C | MD5 = E55DE59CD89138BD973602F9F202E84D] (Microsoft Corporation)
    WMPEncEn.dll -> C:\Windows\SysNative\WMPEncEn.dll -> [2009/06/04 04:47:30 | 02,043,904 | ---- | C | MD5 = BBEF15F506B97522B918D09A3662F9B0] (Microsoft Corporation)
    msftedit.dll -> C:\Windows\SysNative\msftedit.dll -> [2009/06/04 04:47:30 | 00,735,232 | ---- | C | MD5 = 554BD984C71129A8BD4450BE8170695C] (Microsoft Corporation)
    msscp.dll -> C:\Windows\SysNative\msscp.dll -> [2009/06/04 04:47:30 | 00,534,528 | ---- | C | MD5 = 1AD1CC73AC29E7139A32B54DBE235635] (Microsoft Corporation)
    wpcao.dll -> C:\Windows\SysWow64\wpcao.dll -> [2009/06/04 04:47:30 | 00,532,992 | ---- | C | MD5 = 5D2FDA874FED0D3FEDF41F5961663F3B] (Microsoft Corporation)
    msinfo32.exe -> C:\Windows\SysWow64\msinfo32.exe -> [2009/06/04 04:47:30 | 00,408,064 | ---- | C | MD5 = D3D1CE8FF30786D50272DA3085149904] (Microsoft Corporation)
    wlanmsm.dll -> C:\Windows\SysNative\wlanmsm.dll -> [2009/06/04 04:47:30 | 00,353,792 | ---- | C | MD5 = DE52345E9E9684205D1AF593DC5B30F4] (Microsoft Corporation)
    mscandui.dll -> C:\Windows\SysNative\mscandui.dll -> [2009/06/04 04:47:30 | 00,289,792 | ---- | C | MD5 = FD18A06BA0BF4E535E6DE153C9525960] (Microsoft Corporation)
    tapisrv.dll -> C:\Windows\SysWow64\tapisrv.dll -> [2009/06/04 04:47:30 | 00,242,688 | ---- | C | MD5 = D7673E4B38CE21EE54C59EEEB65E2483] (Microsoft Corporation)
    fastfat.sys -> C:\Windows\SysNative\drivers\fastfat.sys -> [2009/06/04 04:47:30 | 00,198,144 | ---- | C | MD5 = 1A4BEE34277784619DDAF0422C0C6E23] (Microsoft Corporation)
    dsprop.dll -> C:\Windows\SysNative\dsprop.dll -> [2009/06/04 04:47:30 | 00,164,864 | ---- | C | MD5 = FD5AE1C64B86B4BEFEF2691306183E09] (Microsoft Corporation)
    scksp.dll -> C:\Windows\SysWow64\scksp.dll -> [2009/06/04 04:47:30 | 00,140,288 | ---- | C | MD5 = 74B514A1FB5742CFB0DDC700D832D166] (Microsoft Corporation)
    vdsutil.dll -> C:\Windows\SysWow64\vdsutil.dll -> [2009/06/04 04:47:30 | 00,128,000 | ---- | C | MD5 = FE7742C93F6904A9B08BC6749C039CE9] (Microsoft Corporation)
    rpchttp.dll -> C:\Windows\SysWow64\rpchttp.dll -> [2009/06/04 04:47:30 | 00,127,488 | ---- | C | MD5 = 305460BC9F6C2888D291ADCB23FC5AE1] (Microsoft Corporation)
    rdpwsx.dll -> C:\Windows\SysNative\rdpwsx.dll -> [2009/06/04 04:47:30 | 00,117,760 | ---- | C | MD5 = 06BEFFD308C5796D3D6FD2FAD267A6C2] (Microsoft Corporation)
    pintlgnt.ime -> C:\Windows\SysWow64\pintlgnt.ime -> [2009/06/04 04:47:30 | 00,089,088 | ---- | C | MD5 = 1298AE079E74D8691BF1722CF1E32F67] (Microsoft Corporation)
    smss.exe -> C:\Windows\SysNative\smss.exe -> [2009/06/04 04:47:30 | 00,075,264 | ---- | C | MD5 = C17704EA5B0F83D78F1377075FFE1C89] (Microsoft Corporation)
    regapi.dll -> C:\Windows\SysWow64\regapi.dll -> [2009/06/04 04:47:30 | 00,067,584 | ---- | C | MD5 = A6250DF429D0D78DACFBC6B87074E584] (Microsoft Corporation)
    PnPUnattend.exe -> C:\Windows\SysNative\PnPUnattend.exe -> [2009/06/04 04:47:30 | 00,064,512 | ---- | C | MD5 = 1BC046E369CDF1201AFDA63FBD071630] (Microsoft Corporation)
    feclient.dll -> C:\Windows\SysWow64\feclient.dll -> [2009/06/04 04:47:30 | 00,054,272 | ---- | C | MD5 = 965AC9FBF2C67231C157E99C03C58D24] (Microsoft Corporation)
    rekeywiz.exe -> C:\Windows\SysNative\rekeywiz.exe -> [2009/06/04 04:47:30 | 00,051,200 | ---- | C | MD5 = 40335F6499E5A2EF9C74B499E5B97F9C] (Microsoft Corporation)
    certprop.dll -> C:\Windows\SysNative\certprop.dll -> [2009/06/04 04:47:30 | 00,049,664 | ---- | C | MD5 = 5A268127633C7EE2A7FB87F39D748D56] (Microsoft Corporation)
    msimtf.dll -> C:\Windows\SysNative\msimtf.dll -> [2009/06/04 04:47:30 | 00,041,472 | ---- | C | MD5 = 84F9BAD395DADAFA8E46BE7946B18ECD] (Microsoft Corporation)
    printfilterpipelineprxy.dll -> C:\Windows\SysNative\printfilterpipelineprxy.dll -> [2009/06/04 04:47:30 | 00,035,840 | ---- | C | MD5 = 7D58ED6F0A190ACA4043C4BD0A14B94E] (Microsoft Corporation)
    wscui.cpl -> C:\Windows\SysNative\wscui.cpl -> [2009/06/04 04:47:29 | 01,738,752 | ---- | C | MD5 = 2A81DBACEF86D5698880BE8C0035F5A2] (Microsoft Corporation)
    wscui.cpl -> C:\Windows\SysWow64\wscui.cpl -> [2009/06/04 04:47:29 | 01,689,600 | ---- | C | MD5 = 62C92BE2414AC9D0BC0196CA52D2CD2B] (Microsoft Corporation)
    WMPEncEn.dll -> C:\Windows\SysWow64\WMPEncEn.dll -> [2009/06/04 04:47:29 | 01,642,496 | ---- | C | MD5 = 52C8CD06900B5B9FC4EF5C880D5AD9CB] (Microsoft Corporation)
    mmsys.cpl -> C:\Windows\SysWow64\mmsys.cpl -> [2009/06/04 04:47:29 | 01,102,848 | ---- | C | MD5 = 69405254E704895F4F519422818D35B6] (Microsoft Corporation)
    FWPUCLNT.DLL -> C:\Windows\SysNative\FWPUCLNT.DLL -> [2009/06/04 04:47:29 | 00,779,776 | ---- | C | MD5 = 7972615E382EF39785FD45F136F64D8C] (Microsoft Corporation)
    wiaaut.dll -> C:\Windows\SysNative\wiaaut.dll -> [2009/06/04 04:47:29 | 00,669,184 | ---- | C | MD5 = 4309F5CDE2396B8B1649633186F48A8F] (Microsoft Corporation)
    wmpeffects.dll -> C:\Windows\SysNative\wmpeffects.dll -> [2009/06/04 04:47:29 | 00,557,056 | ---- | C | MD5 = 903D3F4BD98DF8023B764AD677126C9F] (Microsoft Corporation)
    qedit.dll -> C:\Windows\SysWow64\qedit.dll -> [2009/06/04 04:47:29 | 00,505,344 | ---- | C | MD5 = 8F960A1A3D9A7B829FD9DCE2689030F6] (Microsoft Corporation)
    ncryptui.dll -> C:\Windows\SysWow64\ncryptui.dll -> [2009/06/04 04:47:29 | 00,445,952 | ---- | C | MD5 = 29215EAF81447CB95F82FDE671751330] (Microsoft Corporation)
    winhttp.dll -> C:\Windows\SysNative\winhttp.dll -> [2009/06/04 04:47:29 | 00,439,808 | ---- | C | MD5 = 780473D0EEB23D40F1EEE69A70719399] (Microsoft Corporation)
    dpapimig.exe -> C:\Windows\SysWow64\dpapimig.exe -> [2009/06/04 04:47:29 | 00,407,040 | ---- | C | MD5 = 29B84718CDCBCA66A47B64AA2B02318F] (Microsoft Corporation)
    unimdm.tsp -> C:\Windows\SysNative\unimdm.tsp -> [2009/06/04 04:47:29 | 00,320,000 | ---- | C | MD5 = 8139F933EF1559D4E7187E48F93EA136] (Microsoft Corporation)
    AUDIOKSE.dll -> C:\Windows\SysNative\AUDIOKSE.dll -> [2009/06/04 04:47:29 | 00,313,856 | ---- | C | MD5 = E08935E54CEE225BEB3CC220CBCC734A] (Microsoft Corporation)
    scesrv.dll -> C:\Windows\SysWow64\scesrv.dll -> [2009/06/04 04:47:29 | 00,306,176 | ---- | C | MD5 = D90911B3FA05D7B930C1286084B404DE] (Microsoft Corporation)
    psisdecd.dll -> C:\Windows\SysWow64\psisdecd.dll -> [2009/06/04 04:47:29 | 00,293,376 | ---- | C | MD5 = 16628EE6CDFDA509820509D7E65F3F62] (Microsoft Corporation)
    certreq.exe -> C:\Windows\SysWow64\certreq.exe -> [2009/06/04 04:47:29 | 00,215,552 | ---- | C | MD5 = 56C182F55BF68556C974E9AD32BF56BF] (Microsoft Corporation)
    fontext.dll -> C:\Windows\SysNative\fontext.dll -> [2009/06/04 04:47:29 | 00,163,328 | ---- | C | MD5 = 0C8E0E7E708BDE406315F3C1A653B0E3] (Microsoft Corporation)
    Faultrep.dll -> C:\Windows\SysWow64\Faultrep.dll -> [2009/06/04 04:47:29 | 00,147,456 | ---- | C | MD5 = 77784A2BD5912A4EC6284255865526BC] (Microsoft Corporation)
    AudioSes.dll -> C:\Windows\SysWow64\AudioSes.dll -> [2009/06/04 04:47:29 | 00,115,712 | ---- | C | MD5 = 7258434974EA735725FD2D4A65C5E821] (Microsoft Corporation)
    oleprn.dll -> C:\Windows\SysWow64\oleprn.dll -> [2009/06/04 04:47:29 | 00,097,792 | ---- | C | MD5 = 23E10EC351836F14606CCCFF5C6CF292] (Microsoft Corporation)
    dot3msm.dll -> C:\Windows\SysNative\dot3msm.dll -> [2009/06/04 04:47:29 | 00,092,160 | ---- | C | MD5 = 1F97A9910F45BA77802DE68D35BD2829] (Microsoft Corporation)
    hdwwiz.exe -> C:\Windows\SysWow64\hdwwiz.exe -> [2009/06/04 04:47:29 | 00,080,384 | ---- | C | MD5 = 1BAF5FE4C31D20CF805B2FA7A7C2B886] (Microsoft Corporation)
    dot3msm.dll -> C:\Windows\SysWow64\dot3msm.dll -> [2009/06/04 04:47:29 | 00,075,264 | ---- | C | MD5 = 7366AB74CF8489749AC4CBFBAEE9F9E2] (Microsoft Corporation)
    mpr.dll -> C:\Windows\SysWow64\mpr.dll -> [2009/06/04 04:47:29 | 00,068,608 | ---- | C | MD5 = 1F94EA31C9543B855F53BDAC7792DA4E] (Microsoft Corporation)
    rekeywiz.exe -> C:\Windows\SysWow64\rekeywiz.exe -> [2009/06/04 04:47:29 | 00,043,520 | ---- | C | MD5 = 79DB32BA1FED01EC05A5D5158CF1A279] (Microsoft Corporation)
    iaspolcy.dll -> C:\Windows\SysWow64\iaspolcy.dll -> [2009/06/04 04:47:29 | 00,033,792 | ---- | C | MD5 = 97C89AA7146D73B387AADAA11D8B56F1] (Microsoft Corporation)
    whealogr.dll -> C:\Windows\SysNative\whealogr.dll -> [2009/06/04 04:47:29 | 00,033,280 | ---- | C | MD5 = F937669EAA18DF36D4ECDE87FE011152] (Microsoft Corporation)
    perfdisk.dll -> C:\Windows\SysWow64\perfdisk.dll -> [2009/06/04 04:47:29 | 00,031,744 | ---- | C | MD5 = 9104EDD1D3BF91AD079A73FBB515E492] (Microsoft Corporation)
    wsdchngr.dll -> C:\Windows\SysNative\wsdchngr.dll -> [2009/06/04 04:47:29 | 00,025,600 | ---- | C | MD5 = 8E10B36901325C1ABE28E71FB8E437D9] (Microsoft Corporation)
    wscisvif.dll -> C:\Windows\SysWow64\wscisvif.dll -> [2009/06/04 04:47:29 | 00,017,920 | ---- | C | MD5 = D0A95E567224B4C347CBDD6541E5D928] (Microsoft Corporation)
    spcinstrumentation.man -> C:\Windows\SysWow64\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
    spcinstrumentation.man -> C:\Windows\SysNative\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
    netshell.dll -> C:\Windows\SysNative\netshell.dll -> [2009/06/04 04:47:28 | 03,341,312 | ---- | C | MD5 = AA6FAA30D3D0D4424DBA3D74D1CA1E14] (Microsoft Corporation)
    MSMPEG2ENC.DLL -> C:\Windows\SysNative\MSMPEG2ENC.DLL -> [2009/06/04 04:47:28 | 00,644,608 | ---- | C | MD5 = 68C35C27C32BDAFAF6E8705B839E9A45] (Microsoft Corporation)
    rasgcw.dll -> C:\Windows\SysWow64\rasgcw.dll -> [2009/06/04 04:47:28 | 00,642,560 | ---- | C | MD5 = 94B67798159ACB26D7104E55903B6FEF] (Microsoft Corporation)
    FWPUCLNT.DLL -> C:\Windows\SysWow64\FWPUCLNT.DLL -> [2009/06/04 04:47:28 | 00,595,456 | ---- | C | MD5 = B0D12F4344EB2AE96E487D2DF6F74413] (Microsoft Corporation)
    wmdrmdev.dll -> C:\Windows\SysNative\wmdrmdev.dll -> [2009/06/04 04:47:28 | 00,539,136 | ---- | C | MD5 = 9E703EC2E91C9071D75E34F1A7327ECA] (Microsoft Corporation)
    rasplap.dll -> C:\Windows\SysWow64\rasplap.dll -> [2009/06/04 04:47:28 | 00,376,832 | ---- | C | MD5 = 9DC3723519F52B6BC63EACD4BD411313] (Microsoft Corporation)
    drmmgrtn.dll -> C:\Windows\SysNative\drmmgrtn.dll -> [2009/06/04 04:47:28 | 00,365,568 | ---- | C | MD5 = 482F86F951A6A884F8A4361A67260FE8] (Microsoft Corporation)
    certreq.exe -> C:\Windows\SysNative\certreq.exe -> [2009/06/04 04:47:28 | 00,259,072 | ---- | C | MD5 = C8C33F31398217BC62D0B12FF456BB7D] (Microsoft Corporation)
    msutb.dll -> C:\Windows\SysNative\msutb.dll -> [2009/06/04 04:47:28 | 00,227,840 | ---- | C | MD5 = AD27B41DA928C0338E6F364BE928D3F7] (Microsoft Corporation)
    msnetobj.dll -> C:\Windows\SysNative\msnetobj.dll -> [2009/06/04 04:47:28 | 00,221,696 | ---- | C | MD5 = BAB9E1E8D5C9DEFDCCC5736CC1FEC38B] (Microsoft Corporation)
    wlanui.dll -> C:\Windows\SysNative\wlanui.dll -> [2009/06/04 04:47:28 | 00,218,624 | ---- | C | MD5 = 808F32604D3A77A113C768380A1F61F8] (Microsoft Corporation)
    rdpwd.sys -> C:\Windows\SysNative\drivers\rdpwd.sys -> [2009/06/04 04:47:28 | 00,209,920 | ---- | C | MD5 = B1D741C87CEA8D7282146366CC9C3F81] (Microsoft Corporation)
    netplwiz.dll -> C:\Windows\SysNative\netplwiz.dll -> [2009/06/04 04:47:28 | 00,197,632 | ---- | C | MD5 = 55F61E2EBBAC854879B2016F2383BC83] (Microsoft Corporation)
    scecli.dll -> C:\Windows\SysWow64\scecli.dll -> [2009/06/04 04:47:28 | 00,177,152 | ---- | C | MD5 = 8FC182167381E9915651267044105EE1] (Microsoft Corporation)
    SndVol.exe -> C:\Windows\SysNative\SndVol.exe -> [2009/06/04 04:47:28 | 00,172,032 | ---- | C | MD5 = 7A31C805A372EB80D84C5562481F82F7] (Microsoft Corporation)
    tcpipcfg.dll -> C:\Windows\SysWow64\tcpipcfg.dll -> [2009/06/04 04:47:28 | 00,170,496 | ---- | C | MD5 = E4060CFE50F87C72316CB0FDB20E4913] (Microsoft Corporation)
    rmcast.sys -> C:\Windows\SysNative\drivers\rmcast.sys -> [2009/06/04 04:47:28 | 00,140,288 | ---- | C | MD5 = F913517BB2F3A73EC6B9B65E5DC7B420] (Microsoft Corporation)
    tcpmon.dll -> C:\Windows\SysWow64\tcpmon.dll -> [2009/06/04 04:47:28 | 00,135,168 | ---- | C | MD5 = BB0EB921877A1A7EF15AE2D97A71CBA9] (Microsoft Corporation)
    SmartcardCredentialProvider.dll -> C:\Windows\SysWow64\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:28 | 00,134,656 | ---- | C | MD5 = B25DBBA6C63A61FF4AFDB5ADAB4E70CB] (Microsoft Corporation)
    shsetup.dll -> C:\Windows\SysNative\shsetup.dll -> [2009/06/04 04:47:28 | 00,121,856 | ---- | C | MD5 = 25467BCC0718C01F3A96C85468B19334] (Microsoft Corporation)
    MSNP.ax -> C:\Windows\SysNative\MSNP.ax -> [2009/06/04 04:47:28 | 00,101,376 | ---- | C | MD5 = 3C4D4C68A9D63F01AF18B6ECC7274B8A] (Microsoft Corporation)
    conime.exe -> C:\Windows\SysNative\conime.exe -> [2009/06/04 04:47:28 | 00,086,528 | ---- | C | MD5 = 00E1D5F656B13C00CC31CEB6B43C1D69] (Microsoft Corporation)
    fdWSD.dll -> C:\Windows\SysWow64\fdWSD.dll -> [2009/06/04 04:47:28 | 00,067,072 | ---- | C | MD5 = 4BAEC13BCAA595639EBB5185278DEFEA] (Microsoft Corporation)
    dimsroam.dll -> C:\Windows\SysNative\dimsroam.dll -> [2009/06/04 04:47:28 | 00,064,512 | ---- | C | MD5 = 69CD3A812AF2187751F99FDD86E8EE50] (Microsoft Corporation)
    cmmon32.exe -> C:\Windows\SysWow64\cmmon32.exe -> [2009/06/04 04:47:28 | 00,049,152 | ---- | C | MD5 = 86497C6A9825B6252804D5C4E189AA67] (Microsoft Corporation)
    tcpipreg.sys -> C:\Windows\SysNative\drivers\tcpipreg.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = FF0C49DB68D4F451343EF06ABAEA3DC9] (Microsoft Corporation)
    watchdog.sys -> C:\Windows\SysNative\drivers\watchdog.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = 2F956EA22FCCE4C9F15C64175C891A1E] (Microsoft Corporation)
    TSTheme.exe -> C:\Windows\SysWow64\TSTheme.exe -> [2009/06/04 04:47:28 | 00,038,400 | ---- | C | MD5 = 1904DBA08C2D63CE2025CAD78F5DF2BB] (Microsoft Corporation)
    PnPutil.exe -> C:\Windows\SysNative\PnPutil.exe -> [2009/06/04 04:47:28 | 00,036,864 | ---- | C | MD5 = 96C9A012901B35AAC91360D8698929C3] (Microsoft Corporation)
    uxsms.dll -> C:\Windows\SysNative\uxsms.dll -> [2009/06/04 04:47:28 | 00,032,768 | ---- | C | MD5 = D76E231E4850BB3F88A3D9A78DF191E3] (Microsoft Corporation)
    USBCAMD2.sys -> C:\Windows\SysNative\drivers\USBCAMD2.sys -> [2009/06/04 04:47:28 | 00,032,640 | ---- | C | MD5 = D46BDF1C810138E2D3B985FA3A7AB05E] (Microsoft Corporation)
    whealogr.dll -> C:\Windows\SysWow64\whealogr.dll -> [2009/06/04 04:47:28 | 00,031,232 | ---- | C | MD5 = 72F1789EBA824BB977DB83B0A0B57B26] (Microsoft Corporation)
    spwinsat.dll -> C:\Windows\SysWow64\spwinsat.dll -> [2009/06/04 04:47:28 | 00,011,776 | ---- | C | MD5 = DEAD790AF988C4C70B6371FC02AA9104] (Microsoft Corporation)
    MSVidCtl.dll -> C:\Windows\SysNative\MSVidCtl.dll -> [2009/06/04 04:47:27 | 02,535,424 | ---- | C | MD5 = 5448FF8A9527E46C85B48801254C5C24] (Microsoft Corporation)
    oobefldr.dll -> C:\Windows\SysNative\oobefldr.dll -> [2009/06/04 04:47:27 | 02,438,656 | ---- | C | MD5 = 8E29B921BC400F51276F781C4CFB87F6] (Microsoft Corporation)
    oobefldr.dll -> C:\Windows\SysWow64\oobefldr.dll -> [2009/06/04 04:47:27 | 02,153,472 | ---- | C | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
    WMVDECOD.DLL -> C:\Windows\SysNative\WMVDECOD.DLL -> [2009/06/04 04:47:27 | 01,702,912 | ---- | C | MD5 = 3568FCAB1FC248397EF81231D53F598C] (Microsoft Corporation)
    MSVidCtl.dll -> C:\Windows\SysWow64\MSVidCtl.dll -> [2009/06/04 04:47:27 | 01,544,704 | ---- | C | MD5 = 73F97C8899429EFAEE8C8944DCC08C2E] (Microsoft Corporation)
    wmdrmsdk.dll -> C:\Windows\SysNative\wmdrmsdk.dll -> [2009/06/04 04:47:27 | 00,688,128 | ---- | C | MD5 = A949AA49376F8CB91D19EA8A7ADC94D4] (Microsoft Corporation)
    WMVXENCD.DLL -> C:\Windows\SysWow64\WMVXENCD.DLL -> [2009/06/04 04:47:27 | 00,657,408 | ---- | C | MD5 = EABB7AF39A6587B57AA70EFD8ECD2661] (Microsoft Corporation)
    blackbox.dll -> C:\Windows\SysNative\blackbox.dll -> [2009/06/04 04:47:27 | 00,616,448 | ---- | C | MD5 = 89CA6D83DCB5D41FBF4D23BE5343F8A8] (Microsoft Corporation)
    wiaaut.dll -> C:\Windows\SysWow64\wiaaut.dll -> [2009/06/04 04:47:27 | 00,547,840 | ---- | C | MD5 = 6E45D15DAAA98D105AB3280D2BCA7C13] (Microsoft Corporation)
    cmdial32.dll -> C:\Windows\SysNative\cmdial32.dll -> [2009/06/04 04:47:27 | 00,521,216 | ---- | C | MD5 = 32AC6D36688923ECAE89B438BEFD6DB2] (Microsoft Corporation)
    cmdial32.dll -> C:\Windows\SysWow64\cmdial32.dll -> [2009/06/04 04:47:27 | 00,481,792 | ---- | C | MD5 = 72EC7D98F26B962414899C83F20A9442] (Microsoft Corporation)
    shwebsvc.dll -> C:\Windows\SysWow64\shwebsvc.dll -> [2009/06/04 04:47:27 | 00,425,472 | ---- | C | MD5 = 3F1B146BBB4F11E26543938F42257B86] (Microsoft Corporation)
    taskcomp.dll -> C:\Windows\SysNative\taskcomp.dll -> [2009/06/04 04:47:27 | 00,409,600 | ---- | C | MD5 = 065A9580FA32807EB895EE4D512FEC1D] (Microsoft Corporation)
    wlanmsm.dll -> C:\Windows\SysWow64\wlanmsm.dll -> [2009/06/04 04:47:27 | 00,293,376 | ---- | C | MD5 = 9D7C0037F4EFA36C35F7B5A48940B4F4] (Microsoft Corporation)
    raschap.dll -> C:\Windows\SysWow64\raschap.dll -> [2009/06/04 04:47:27 | 00,281,088 | ---- | C | MD5 = 82A79D5BE740D0AE9C91AA6DE4B3AC5A] (Microsoft Corporation)
    unimdm.tsp -> C:\Windows\SysWow64\unimdm.tsp -> [2009/06/04 04:47:27 | 00,280,064 | ---- | C | MD5 = B96B60EC821F86D445C9739A0F3DED59] (Microsoft Corporation)
    rasppp.dll -> C:\Windows\SysWow64\rasppp.dll -> [2009/06/04 04:47:27 | 00,259,584 | ---- | C | MD5 = 8B645890A93F1FBBC7DA3E07CC72D762] (Microsoft Corporation)
    wlanui.dll -> C:\Windows\SysWow64\wlanui.dll -> [2009/06/04 04:47:27 | 00,202,752 | ---- | C | MD5 = 94FF7D87E0639701DF79A40C436149C5] (Microsoft Corporation)
    nwifi.sys -> C:\Windows\SysNative\drivers\nwifi.sys -> [2009/06/04 04:47:27 | 00,187,392 | ---- | C | MD5 = 2007B826C4ACD94AE32232B41F0842B9] (Microsoft Corporation)
    wdmaud.drv -> C:\Windows\SysWow64\wdmaud.drv -> [2009/06/04 04:47:27 | 00,167,424 | ---- | C | MD5 = 4DF066ECEE5A7B20BF8B39EF4D646600] (Microsoft Corporation)
    fontext.dll -> C:\Windows\SysWow64\fontext.dll -> [2009/06/04 04:47:27 | 00,142,336 | ---- | C | MD5 = 88198AEB7F71DD2F8B6176533D70F63E] (Microsoft Corporation)
    dsprop.dll -> C:\Windows\SysWow64\dsprop.dll -> [2009/06/04 04:47:27 | 00,137,728 | ---- | C | MD5 = 187AA172E7A5BD212613FBB9D9F770D5] (Microsoft Corporation)
    wlgpclnt.dll -> C:\Windows\SysNative\wlgpclnt.dll -> [2009/06/04 04:47:27 | 00,100,864 | ---- | C | MD5 = 9689076012A34CE4631D0CBFE148D092] (Microsoft Corporation)
    SCardSvr.dll -> C:\Windows\SysWow64\SCardSvr.dll -> [2009/06/04 04:47:27 | 00,095,232 | ---- | C | MD5 = 77B7A11A0C3D78D3386398FBBEA1B632] (Microsoft Corporation)
    fdWSD.dll -> C:\Windows\SysNative\fdWSD.dll -> [2009/06/04 04:47:27 | 00,081,408 | ---- | C | MD5 = 31519A9B25D4A8998EEC9C81E69269D9] (Microsoft Corporation)
    rassstp.sys -> C:\Windows\SysNative\drivers\rassstp.sys -> [2009/06/04 04:47:27 | 00,078,336 | ---- | C | MD5 = C6A593B51F34C33E5474539544072527] (Microsoft Corporation)
    wscsvc.dll -> C:\Windows\SysNative\wscsvc.dll -> [2009/06/04 04:47:27 | 00,074,752 | ---- | C | MD5 = 9EA3E6D0EF7A5C2B9181961052A4B01A] (Microsoft Corporation)
    conime.exe -> C:\Windows\SysWow64\conime.exe -> [2009/06/04 04:47:27 | 00,069,120 | ---- | C | MD5 = 6080A176D09435FC8E6E800996656E18] (Microsoft Corporation)
    cipher.exe -> C:\Windows\SysNative\cipher.exe -> [2009/06/04 04:47:27 | 00,067,584 | ---- | C | MD5 = FAA34F36E3AA7B0B373F702E2CEB21AC] (Microsoft Corporation)
  • edited June 2009
    l2nacp.dll -> C:\Windows\SysNative\l2nacp.dll -> [2009/06/04 04:47:27 | 00,056,832 | ---- | C | MD5 = 96A2B2A4FE3600922DC285E2B5BF8646] (Microsoft Corporation)
    dimsroam.dll -> C:\Windows\SysWow64\dimsroam.dll -> [2009/06/04 04:47:27 | 00,054,784 | ---- | C | MD5 = 8C5E46B7E724C216F55325FB77AB5ABD] (Microsoft Corporation)
    MsCtfMonitor.dll -> C:\Windows\SysNative\MsCtfMonitor.dll -> [2009/06/04 04:47:27 | 00,026,112 | ---- | C | MD5 = B420EB9D254C2C16CCFBB09BCC6AB113] (Microsoft Corporation)
    chtbrkr.dll -> C:\Windows\SysWow64\chtbrkr.dll -> [2009/06/04 04:47:26 | 06,103,040 | ---- | C | MD5 = 9247AB566A1DF0C012D1A518AB0FCD52] (Microsoft Corporation)
    blackbox.dll -> C:\Windows\SysWow64\blackbox.dll -> [2009/06/04 04:47:26 | 00,542,720 | ---- | C | MD5 = 02F0BE91B0F2B1C30F6F48334F47D625] (Microsoft Corporation)
    wmdrmsdk.dll -> C:\Windows\SysWow64\wmdrmsdk.dll -> [2009/06/04 04:47:26 | 00,533,504 | ---- | C | MD5 = 4DF10CE50010D70152944B51E03588B0] (Microsoft Corporation)
    rstrui.exe -> C:\Windows\SysNative\rstrui.exe -> [2009/06/04 04:47:26 | 00,339,968 | ---- | C | MD5 = 8DBF26D220D8EE44D7A6286BE2F2C767] (Microsoft Corporation)
    modemui.dll -> C:\Windows\SysWow64\modemui.dll -> [2009/06/04 04:47:26 | 00,288,256 | ---- | C | MD5 = 2E837F3D406224DF131C34BC8F71621E] (Microsoft Corporation)
    input.dll -> C:\Windows\SysNative\input.dll -> [2009/06/04 04:47:26 | 00,257,024 | ---- | C | MD5 = 4E1C98C621E500B241614A8C533CC1E4] (Microsoft Corporation)
    mscandui.dll -> C:\Windows\SysWow64\mscandui.dll -> [2009/06/04 04:47:26 | 00,218,624 | ---- | C | MD5 = 74E6A4BCEC88F11E5CCD3626BCFFD509] (Microsoft Corporation)
    rasmontr.dll -> C:\Windows\SysNative\rasmontr.dll -> [2009/06/04 04:47:26 | 00,216,064 | ---- | C | MD5 = 66E5D0F89803A6BEB6E9E7494A8415AC] (Microsoft Corporation)
    netplwiz.dll -> C:\Windows\SysWow64\netplwiz.dll -> [2009/06/04 04:47:26 | 00,180,736 | ---- | C | MD5 = 63EF059BD3CC6194C6514068979A543A] (Microsoft Corporation)
    credui.dll -> C:\Windows\SysWow64\credui.dll -> [2009/06/04 04:47:26 | 00,178,176 | ---- | C | MD5 = 93E317D7AD783D8EAEE2E3500BFE889D] (Microsoft Corporation)
    softkbd.dll -> C:\Windows\SysNative\softkbd.dll -> [2009/06/04 04:47:26 | 00,158,208 | ---- | C | MD5 = 2F4985D18E63504B30257E4E337C355F] (Microsoft Corporation)
    rasmontr.dll -> C:\Windows\SysWow64\rasmontr.dll -> [2009/06/04 04:47:26 | 00,155,136 | ---- | C | MD5 = 74A20AB7737D972815556A016B46674A] (Microsoft Corporation)
    btpanui.dll -> C:\Windows\SysNative\btpanui.dll -> [2009/06/04 04:47:26 | 00,109,056 | ---- | C | MD5 = 5B27827FA354F192D887AA7576BB0C3B] (Microsoft Corporation)
    shsetup.dll -> C:\Windows\SysWow64\shsetup.dll -> [2009/06/04 04:47:26 | 00,101,376 | ---- | C | MD5 = C87DA82ADB2B3A50C764268684D7919D] (Microsoft Corporation)
    wlgpclnt.dll -> C:\Windows\SysWow64\wlgpclnt.dll -> [2009/06/04 04:47:26 | 00,083,456 | ---- | C | MD5 = 91D995A67D9447592A1BF21CBC15C628] (Microsoft Corporation)
    ohci1394.sys -> C:\Windows\SysNative\drivers\ohci1394.sys -> [2009/06/04 04:47:26 | 00,072,448 | ---- | C | MD5 = B5B1CE65AC15BBD11C0619E3EF7CFC28] (Microsoft Corporation)
    dataclen.dll -> C:\Windows\SysWow64\dataclen.dll -> [2009/06/04 04:47:26 | 00,045,056 | ---- | C | MD5 = C2D9DA17737BF49E3B8E8E3C142B3008] (Microsoft Corporation)
    cscapi.dll -> C:\Windows\SysNative\cscapi.dll -> [2009/06/04 04:47:26 | 00,038,400 | ---- | C | MD5 = 75C34D22D3E7D1D0238B62C55F604BFC] (Microsoft Corporation)
    Apphlpdm.dll -> C:\Windows\SysNative\Apphlpdm.dll -> [2009/06/04 04:47:26 | 00,032,256 | ---- | C | MD5 = 95F88AF2FF2BE656998C7C42834DED36] (Microsoft Corporation)
    findstr.exe -> C:\Windows\SysNative\findstr.exe -> [2009/06/04 04:47:26 | 00,029,696 | ---- | C | MD5 = 90787371516843E301C794C7E35FB44C] (Microsoft Corporation)
    NcdProp.dll -> C:\Windows\SysNative\NcdProp.dll -> [2009/06/04 04:47:26 | 00,024,064 | ---- | C | MD5 = ED4D776031DDF0B0E4127D3D117B1B66] (Microsoft Corporation)
    networkexplorer.dll -> C:\Windows\SysWow64\networkexplorer.dll -> [2009/06/04 04:47:25 | 02,226,688 | ---- | C | MD5 = 04044BF8E6989BE45FA718C24407CA28] (Microsoft Corporation)
    WMADMOD.DLL -> C:\Windows\SysNative\WMADMOD.DLL -> [2009/06/04 04:47:25 | 00,946,176 | ---- | C | MD5 = 51031E18169332575721D7B7A6E5EE52] (Microsoft Corporation)
    wmdrmnet.dll -> C:\Windows\SysNative\wmdrmnet.dll -> [2009/06/04 04:47:25 | 00,428,032 | ---- | C | MD5 = 991C17B9FA553A2F474142CD68312974] (Microsoft Corporation)
    msscp.dll -> C:\Windows\SysWow64\msscp.dll -> [2009/06/04 04:47:25 | 00,414,208 | ---- | C | MD5 = 501F9CDADC4BF4069BC90B3C2BB298AE] (Microsoft Corporation)
    thawbrkr.dll -> C:\Windows\SysWow64\thawbrkr.dll -> [2009/06/04 04:47:25 | 00,313,344 | ---- | C | MD5 = 1D74B130D34A945CA5795C92C1BF8E93] (Microsoft Corporation)
    wmpeffects.dll -> C:\Windows\SysWow64\wmpeffects.dll -> [2009/06/04 04:47:25 | 00,303,616 | ---- | C | MD5 = 3F7572CD9C6DB0B25FE0863F36FF6B76] (Microsoft Corporation)
    AUDIOKSE.dll -> C:\Windows\SysWow64\AUDIOKSE.dll -> [2009/06/04 04:47:25 | 00,274,944 | ---- | C | MD5 = 0495EEF29F5B39AB4763BF5DE28FA3AA] (Microsoft Corporation)
    mstask.dll -> C:\Windows\SysNative\mstask.dll -> [2009/06/04 04:47:25 | 00,235,008 | ---- | C | MD5 = F54D10EA2FE5EC846603A4CABDD6F235] (Microsoft Corporation)
    mpg2splt.ax -> C:\Windows\SysNative\mpg2splt.ax -> [2009/06/04 04:47:25 | 00,227,328 | ---- | C | MD5 = 28AC7FEA182333C38AB9322530B591F3] (Microsoft Corporation)
    wpdwcn.dll -> C:\Windows\SysNative\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,223,232 | ---- | C | MD5 = CB57138FA7554ABCEA9F8307253A632C] (Microsoft Corporation)
    InkEd.dll -> C:\Windows\SysWow64\InkEd.dll -> [2009/06/04 04:47:25 | 00,217,600 | ---- | C | MD5 = D2A8D0EE4EEAAE913A19AC37E2CD07ED] (Microsoft Corporation)
    mdminst.dll -> C:\Windows\SysNative\mdminst.dll -> [2009/06/04 04:47:25 | 00,215,552 | ---- | C | MD5 = 0257570C58B4F482AC65B87B1D9E7FBA] (Microsoft Corporation)
    PortableDeviceTypes.dll -> C:\Windows\SysNative\PortableDeviceTypes.dll -> [2009/06/04 04:47:25 | 00,214,528 | ---- | C | MD5 = 7326B6CA36F40384EF4817DDA09344CF] (Microsoft Corporation)
    wpdwcn.dll -> C:\Windows\SysWow64\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,203,776 | ---- | C | MD5 = 5D9C083A316B1FEE442E9B3505C357E5] (Microsoft Corporation)
    credui.dll -> C:\Windows\SysNative\credui.dll -> [2009/06/04 04:47:25 | 00,190,976 | ---- | C | MD5 = 77C276A0E431203EE56E52600A2575EA] (Microsoft Corporation)
    WSDMon.dll -> C:\Windows\SysWow64\WSDMon.dll -> [2009/06/04 04:47:25 | 00,177,664 | ---- | C | MD5 = 0EB1CC5EBFCAAB7DBAEE881E2887F7F9] (Microsoft Corporation)
    wpcsvc.dll -> C:\Windows\SysWow64\wpcsvc.dll -> [2009/06/04 04:47:25 | 00,140,288 | ---- | C | MD5 = CFC5A04558F5070CEE3E3A7809F3FF52] (Microsoft Corporation)
    gpresult.exe -> C:\Windows\SysWow64\gpresult.exe -> [2009/06/04 04:47:25 | 00,128,000 | ---- | C | MD5 = F01C34454A2DBA34439C2FB2B6CDDB9A] (Microsoft Corporation)
    softkbd.dll -> C:\Windows\SysWow64\softkbd.dll -> [2009/06/04 04:47:25 | 00,125,952 | ---- | C | MD5 = 39351FB421C6450FBDDB51B4FBA0155D] (Microsoft Corporation)
    msctfui.dll -> C:\Windows\SysNative\msctfui.dll -> [2009/06/04 04:47:25 | 00,113,664 | ---- | C | MD5 = 724B0A07CD1B32E90A770CD94ADDFA03] (Microsoft Corporation)
    logagent.exe -> C:\Windows\SysNative\logagent.exe -> [2009/06/04 04:47:25 | 00,112,640 | ---- | C | MD5 = 3CADC3DB8333B2162CA0CC8EF8062D75] (Microsoft Corporation)
    adsmsext.dll -> C:\Windows\SysNative\adsmsext.dll -> [2009/06/04 04:47:25 | 00,105,472 | ---- | C | MD5 = C6E7B39C1AB4B8DC6883EFC72A770BED] (Microsoft Corporation)
    logagent.exe -> C:\Windows\SysWow64\logagent.exe -> [2009/06/04 04:47:25 | 00,094,720 | ---- | C | MD5 = C634E1F76E1FCA6D010F279A2FFF95E6] (Microsoft Corporation)
    sendmail.dll -> C:\Windows\SysWow64\sendmail.dll -> [2009/06/04 04:47:25 | 00,069,632 | ---- | C | MD5 = ED3CA4BCB1F7C14B369019BEC6A4448D] (Microsoft Corporation)
    cipher.exe -> C:\Windows\SysWow64\cipher.exe -> [2009/06/04 04:47:25 | 00,058,368 | ---- | C | MD5 = 9E447B628CBF81F006218E7B6127B7E2] (Microsoft Corporation)
    cdd.dll -> C:\Windows\SysNative\cdd.dll -> [2009/06/04 04:47:25 | 00,047,104 | ---- | C | MD5 = 40D8CB1E16C541327FFFFA3F756A3656] (Microsoft Corporation)
    deskmon.dll -> C:\Windows\SysNative\deskmon.dll -> [2009/06/04 04:47:25 | 00,046,592 | ---- | C | MD5 = 5070DA479999F0525FA2BBB3160E76D1] (Microsoft Corporation)
    wscapi.dll -> C:\Windows\SysWow64\wscapi.dll -> [2009/06/04 04:47:25 | 00,033,280 | ---- | C | MD5 = A0F4852A5DB9754BEC06F84B400AE743] (Microsoft Corporation)
    msimtf.dll -> C:\Windows\SysWow64\msimtf.dll -> [2009/06/04 04:47:25 | 00,031,232 | ---- | C | MD5 = AC6B8F8058EE27932F9AF8A2D959D201] (Microsoft Corporation)
    ifmon.dll -> C:\Windows\SysWow64\ifmon.dll -> [2009/06/04 04:47:25 | 00,029,696 | ---- | C | MD5 = 17CBA378C42E4525A3BC9DDD77EF5DD2] (Microsoft Corporation)
    version.dll -> C:\Windows\SysNative\version.dll -> [2009/06/04 04:47:25 | 00,027,136 | ---- | C | MD5 = EA3D2B63BA304EB6EDABBAFA21599B47] (Microsoft Corporation)
    WMSPDMOD.DLL -> C:\Windows\SysNative\WMSPDMOD.DLL -> [2009/06/04 04:47:24 | 00,818,688 | ---- | C | MD5 = 5B3949DE5697E40FC3CA7084649E7F88] (Microsoft Corporation)
    wmdrmdev.dll -> C:\Windows\SysWow64\wmdrmdev.dll -> [2009/06/04 04:47:24 | 00,418,304 | ---- | C | MD5 = 717F6AD9E35383E2AA5C6B946AAD23AF] (Microsoft Corporation)
    MediaMetadataHandler.dll -> C:\Windows\SysNative\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,403,456 | ---- | C | MD5 = A037DCD348601056CF65E701D4D60738] (Microsoft Corporation)
    MediaMetadataHandler.dll -> C:\Windows\SysWow64\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,356,864 | ---- | C | MD5 = 8DDFDF8A433DC09F92ACA1F3DE4DE067] (Microsoft Corporation)
    drmmgrtn.dll -> C:\Windows\SysWow64\drmmgrtn.dll -> [2009/06/04 04:47:24 | 00,284,672 | ---- | C | MD5 = D01817B15EFF45054FC24D63AD183F72] (Microsoft Corporation)
    WSDMon.dll -> C:\Windows\SysNative\WSDMon.dll -> [2009/06/04 04:47:24 | 00,214,016 | ---- | C | MD5 = DE0EED5106BD03CE11CDBF690285FE6C] (Microsoft Corporation)
    input.dll -> C:\Windows\SysWow64\input.dll -> [2009/06/04 04:47:24 | 00,200,704 | ---- | C | MD5 = A763901E05BBF173CE4C01D1E82B20D3] (Microsoft Corporation)
    MSAC3ENC.DLL -> C:\Windows\SysNative\MSAC3ENC.DLL -> [2009/06/04 04:47:24 | 00,193,536 | ---- | C | MD5 = ECF31DDAF1F479889671C1C8A376EBDA] (Microsoft Corporation)
    mpg2splt.ax -> C:\Windows\SysWow64\mpg2splt.ax -> [2009/06/04 04:47:24 | 00,177,664 | ---- | C | MD5 = 5AF065566779B0D716EA413816B73AD4] (Microsoft Corporation)
    puiapi.dll -> C:\Windows\SysWow64\puiapi.dll -> [2009/06/04 04:47:24 | 00,166,400 | ---- | C | MD5 = D1F4E028FDC4F8BACB94E07B44969C4E] (Microsoft Corporation)
    mprapi.dll -> C:\Windows\SysNative\mprapi.dll -> [2009/06/04 04:47:24 | 00,129,536 | ---- | C | MD5 = F77B49A32331FA80F11C86877A6700DB] (Microsoft Corporation)
    SMBHelperClass.dll -> C:\Windows\SysNative\SMBHelperClass.dll -> [2009/06/04 04:47:24 | 00,116,736 | ---- | C | MD5 = 7168FF41C6B0145D846AECE996220A9E] (Microsoft)
    dmsynth.dll -> C:\Windows\SysWow64\dmsynth.dll -> [2009/06/04 04:47:24 | 00,105,472 | ---- | C | MD5 = 8527C6F8DFF8CD9502FC4688CCBAEF77] (Microsoft Corporation)
    mprapi.dll -> C:\Windows\SysWow64\mprapi.dll -> [2009/06/04 04:47:24 | 00,097,792 | ---- | C | MD5 = 56E315ACFB08A177B4D01E42B9044DB5] (Microsoft Corporation)
    olepro32.dll -> C:\Windows\SysWow64\olepro32.dll -> [2009/06/04 04:47:24 | 00,088,576 | ---- | C | MD5 = A944A73CEC5921B871542FE5CC5E03E4] (Microsoft Corporation)
    smb.sys -> C:\Windows\SysNative\drivers\smb.sys -> [2009/06/04 04:47:24 | 00,088,064 | ---- | C | MD5 = 290B6F6A0EC4FCDFC90F5CB6D7020473] (Microsoft Corporation)
    msctfui.dll -> C:\Windows\SysWow64\msctfui.dll -> [2009/06/04 04:47:24 | 00,085,504 | ---- | C | MD5 = 7570C39D5CA95CFF5E3D49789A347542] (Microsoft Corporation)
    fdSSDP.dll -> C:\Windows\SysNative\fdSSDP.dll -> [2009/06/04 04:47:24 | 00,083,968 | ---- | C | MD5 = DDCDE414B6DB14707DBD504EB23EF13E] (Microsoft Corporation)
    rshx32.dll -> C:\Windows\SysNative\rshx32.dll -> [2009/06/04 04:47:24 | 00,053,760 | ---- | C | MD5 = 6F7B7F50E25C99E7AFA466565920DC36] (Microsoft Corporation)
    FwRemoteSvr.dll -> C:\Windows\SysNative\FwRemoteSvr.dll -> [2009/06/04 04:47:24 | 00,050,176 | ---- | C | MD5 = 14DC30962660BA05F1F54EB11AA5A2B4] (Microsoft Corporation)
    deskadp.dll -> C:\Windows\SysNative\deskadp.dll -> [2009/06/04 04:47:24 | 00,049,664 | ---- | C | MD5 = 0ADC37AC189C7DE1EF753AA89B23AF5B] (Microsoft Corporation)
    wshbth.dll -> C:\Windows\SysWow64\wshbth.dll -> [2009/06/04 04:47:24 | 00,034,304 | ---- | C | MD5 = EFA80360111D8D179E39E314A49C9ED4] (Microsoft Corporation)
    cscdll.dll -> C:\Windows\SysNative\cscdll.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 884C24919B57C1B03B21DD62399D1491] (Microsoft Corporation)
    Apphlpdm.dll -> C:\Windows\SysWow64\Apphlpdm.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 2C4AC5541ADB54DEF9244F87F9AD6AF8] (Microsoft Corporation)
    ExplorerFrame.dll -> C:\Windows\SysWow64\ExplorerFrame.dll -> [2009/06/04 04:47:24 | 00,020,992 | ---- | C | MD5 = 61216539E55DDF2F78E421E7EF140650] (Microsoft Corporation)
    version.dll -> C:\Windows\SysWow64\version.dll -> [2009/06/04 04:47:24 | 00,020,480 | ---- | C | MD5 = 69827805A221C21450BA22F4326A2EE3] (Microsoft Corporation)
    fc.exe -> C:\Windows\SysWow64\fc.exe -> [2009/06/04 04:47:24 | 00,019,968 | ---- | C | MD5 = 3105CFE0ADAAED21148597001478E89F] (Microsoft Corporation)
    rasdial.exe -> C:\Windows\SysNative\rasdial.exe -> [2009/06/04 04:47:24 | 00,018,944 | ---- | C | MD5 = 7C2E6D36766468987CDA22A2C499A8A5] (Microsoft Corporation)
    msisip.dll -> C:\Windows\SysWow64\msisip.dll -> [2009/06/04 04:47:24 | 00,016,384 | ---- | C | MD5 = 2955A48BE10FD1F7A112B0A890A6271D] (Microsoft Corporation)
    hidusb.sys -> C:\Windows\SysNative\drivers\hidusb.sys -> [2009/06/04 04:47:24 | 00,015,872 | ---- | C | MD5 = 443BDD2D30BB4F00795C797E2CF99EDF] (Microsoft Corporation)
    networkexplorer.dll -> C:\Windows\SysNative\networkexplorer.dll -> [2009/06/04 04:47:23 | 02,247,168 | ---- | C | MD5 = E572915DB4DAD7F062D99334D9F10BFF] (Microsoft Corporation)
    WMADMOD.DLL -> C:\Windows\SysWow64\WMADMOD.DLL -> [2009/06/04 04:47:23 | 00,758,784 | ---- | C | MD5 = D3679C1B53E4E1BF9B99AFB0FD3966B1] (Microsoft Corporation)
    wmpps.dll -> C:\Windows\SysNative\wmpps.dll -> [2009/06/04 04:47:23 | 00,434,176 | ---- | C | MD5 = 6B80D55576B222FDF6F8407D6237EFC6] (Microsoft Corporation)
    wmdrmnet.dll -> C:\Windows\SysWow64\wmdrmnet.dll -> [2009/06/04 04:47:23 | 00,347,648 | ---- | C | MD5 = A8D2C8BE9C499266A485264FD55819FF] (Microsoft Corporation)
    eapp3hst.dll -> C:\Windows\SysNative\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,291,840 | ---- | C | MD5 = 05ECDC5250F707C729BB5D3B08285EA6] (Microsoft Corporation)
    wscntfy.dll -> C:\Windows\SysNative\wscntfy.dll -> [2009/06/04 04:47:23 | 00,231,424 | ---- | C | MD5 = 70DD82E202BD8022452DC8D2B73231AA] (Microsoft Corporation)
    wdmaud.drv -> C:\Windows\SysNative\wdmaud.drv -> [2009/06/04 04:47:23 | 00,212,992 | ---- | C | MD5 = 35FBB6F5993C9EE70CDB72CC8AAB5D38] (Microsoft Corporation)
    mfps.dll -> C:\Windows\SysNative\mfps.dll -> [2009/06/04 04:47:23 | 00,194,560 | ---- | C | MD5 = E01582FE7EFCA6F3AD64377D62E7A1D7] (Microsoft Corporation)
    eapp3hst.dll -> C:\Windows\SysWow64\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,187,904 | ---- | C | MD5 = 1303F1E8C79BDB50EA942B7494761EB8] (Microsoft Corporation)
    PortableDeviceTypes.dll -> C:\Windows\SysWow64\PortableDeviceTypes.dll -> [2009/06/04 04:47:23 | 00,160,768 | ---- | C | MD5 = 290A5AA84C6F06E0B82E94F419FEE9C5] (Microsoft Corporation)
    aaclient.dll -> C:\Windows\SysNative\aaclient.dll -> [2009/06/04 04:47:23 | 00,151,552 | ---- | C | MD5 = B153AAE12936788390696BE6B34186C6] (Microsoft Corporation)
    mydocs.dll -> C:\Windows\SysNative\mydocs.dll -> [2009/06/04 04:47:23 | 00,143,360 | ---- | C | MD5 = 9031F95454316C6FC229D0FE4A535CD8] (Microsoft Corporation)
    aaclient.dll -> C:\Windows\SysWow64\aaclient.dll -> [2009/06/04 04:47:23 | 00,136,192 | ---- | C | MD5 = 11CBE5E2940FC6CBD041779B0F707E6F] (Microsoft Corporation)
    tintlgnt.ime -> C:\Windows\SysWow64\tintlgnt.ime -> [2009/06/04 04:47:23 | 00,125,952 | ---- | C | MD5 = AE240477D5C1EB209D172FE9D9D0C121] (Microsoft Corporation)
    PortableDeviceClassExtension.dll -> C:\Windows\SysNative\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,105,472 | ---- | C | MD5 = 2631DE1DA75E6D589520F19E6BEB85C9] (Microsoft Corporation)
    dmusic.dll -> C:\Windows\SysWow64\dmusic.dll -> [2009/06/04 04:47:23 | 00,101,888 | ---- | C | MD5 = 0FEA204289B8C5EAC19C1BC3809ECCF0] (Microsoft Corporation)
    dxg.sys -> C:\Windows\SysNative\drivers\dxg.sys -> [2009/06/04 04:47:23 | 00,098,816 | ---- | C | MD5 = 59E9264A96CA82C5CCFBE14523934104] (Microsoft Corporation)
    PortableDeviceClassExtension.dll -> C:\Windows\SysWow64\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,094,720 | ---- | C | MD5 = 5A87FD90634C9A05157469DA2441EBB4] (Microsoft Corporation)
    fdWCN.dll -> C:\Windows\SysNative\fdWCN.dll -> [2009/06/04 04:47:23 | 00,089,088 | ---- | C | MD5 = 4EA0133FC219D00F63816D7FF540989A] (Microsoft Corporation)
    gpapi.dll -> C:\Windows\SysNative\gpapi.dll -> [2009/06/04 04:47:23 | 00,084,480 | ---- | C | MD5 = 899F834C330A96A80EC36DAEDA2FF018] (Microsoft Corporation)
    SMBHelperClass.dll -> C:\Windows\SysWow64\SMBHelperClass.dll -> [2009/06/04 04:47:23 | 00,083,456 | ---- | C | MD5 = 81638E6E467193699B5A800732ECBDE4] (Microsoft)
    MSNP.ax -> C:\Windows\SysWow64\MSNP.ax -> [2009/06/04 04:47:23 | 00,080,896 | ---- | C | MD5 = BDDE0F9ED0F89E16B63401D9EC033870] (Microsoft Corporation)
    PNPXAssoc.dll -> C:\Windows\SysNative\PNPXAssoc.dll -> [2009/06/04 04:47:23 | 00,075,264 | ---- | C | MD5 = A486EC7C6D3345448DC7E4475B531FE8] (Microsoft Corporation)
    fdWCN.dll -> C:\Windows\SysWow64\fdWCN.dll -> [2009/06/04 04:47:23 | 00,069,120 | ---- | C | MD5 = 78700DB5A0C319A9C3765F0673140092] (Microsoft Corporation)
    fdSSDP.dll -> C:\Windows\SysWow64\fdSSDP.dll -> [2009/06/04 04:47:23 | 00,068,096 | ---- | C | MD5 = 443C5961CACD4ABC16648874AF06E4A0] (Microsoft Corporation)
    Storprop.dll -> C:\Windows\SysNative\Storprop.dll -> [2009/06/04 04:47:23 | 00,065,024 | ---- | C | MD5 = 0B6A036AC887DC20E677BF26A319C3A9] (Microsoft Corporation)
    dot3cfg.dll -> C:\Windows\SysNative\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,062,976 | ---- | C | MD5 = E9B3B0104D974AF4BA592C3B0FC30875] (Microsoft Corporation)
    rrinstaller.exe -> C:\Windows\SysNative\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,060,416 | ---- | C | MD5 = EAC71F00589AE3F845E5F9FEC5939E09] (Microsoft Corporation)
    rrinstaller.exe -> C:\Windows\SysWow64\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,053,248 | ---- | C | MD5 = F6A9BE76DC7FA60BB9E3B14E504CB22F] (Microsoft Corporation)
    rasdiag.dll -> C:\Windows\SysWow64\rasdiag.dll -> [2009/06/04 04:47:23 | 00,052,736 | ---- | C | MD5 = 1361CD59C411F47E2E2829B9A44BADD4] (Microsoft Corporation)
    hbaapi.dll -> C:\Windows\SysNative\hbaapi.dll -> [2009/06/04 04:47:23 | 00,051,200 | ---- | C | MD5 = A4DE833AF637E17827D199BEF8322000] (Microsoft Corporation)
    dot3cfg.dll -> C:\Windows\SysWow64\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,049,664 | ---- | C | MD5 = 07D79E9B1569ECC5EFC487E9F4C8235D] (Microsoft Corporation)
  • edited June 2009
    hidclass.sys -> C:\Windows\SysNative\drivers\hidclass.sys -> [2009/06/04 04:47:23 | 00,049,152 | ---- | C | MD5 = 70B7902B8DDD3C4B88AC3FC278A9B987] (Microsoft Corporation)
    l2nacp.dll -> C:\Windows\SysWow64\l2nacp.dll -> [2009/06/04 04:47:23 | 00,048,128 | ---- | C | MD5 = 44DA7EE9F50381DBA0F63BB2401DC8FD] (Microsoft Corporation)
    ftp.exe -> C:\Windows\SysNative\ftp.exe -> [2009/06/04 04:47:23 | 00,047,616 | ---- | C | MD5 = 83E4DD677E0DF98294E273DCEC39E53E] (Microsoft Corporation)
    bthci.dll -> C:\Windows\SysNative\bthci.dll -> [2009/06/04 04:47:23 | 00,046,592 | ---- | C | MD5 = 47F2A54950EEDD33A9C3889CF3B1B436] (Microsoft Corporation)
    ftp.exe -> C:\Windows\SysWow64\ftp.exe -> [2009/06/04 04:47:23 | 00,041,984 | ---- | C | MD5 = 1E2940E465AA5B2C4840E8D220BF1F32] (Microsoft Corporation)
    bthudtask.exe -> C:\Windows\SysWow64\bthudtask.exe -> [2009/06/04 04:47:23 | 00,034,304 | ---- | C | MD5 = 7F5936A3FF5E83272EA1DC8985B2A228] (Microsoft Corporation)
    cscapi.dll -> C:\Windows\SysWow64\cscapi.dll -> [2009/06/04 04:47:23 | 00,031,744 | ---- | C | MD5 = D922592AB65C5D9B88B30B4510A3464E] (Microsoft Corporation)
    tdi.sys -> C:\Windows\SysNative\drivers\tdi.sys -> [2009/06/04 04:47:23 | 00,026,112 | ---- | C | MD5 = C39A90534C5B1E28B8BC8B38A3900AFF] (Microsoft Corporation)
    msjint40.dll -> C:\Windows\SysWow64\msjint40.dll -> [2009/06/04 04:47:23 | 00,024,576 | ---- | C | MD5 = 9371540C7231BC156501AB933F269762] (Microsoft Corporation)
    cscdll.dll -> C:\Windows\SysWow64\cscdll.dll -> [2009/06/04 04:47:23 | 00,022,016 | ---- | C | MD5 = C1BB3EF5FAFCBC9573DEEB57E8DF9309] (Microsoft Corporation)
    wsdchngr.dll -> C:\Windows\SysWow64\wsdchngr.dll -> [2009/06/04 04:47:23 | 00,020,992 | ---- | C | MD5 = 4DBA143F06BAD1DF935CB9603140CF2A] (Microsoft Corporation)
    MsCtfMonitor.dll -> C:\Windows\SysWow64\MsCtfMonitor.dll -> [2009/06/04 04:47:23 | 00,019,456 | ---- | C | MD5 = 43E1054C713C48D252A1826C5E14AACA] (Microsoft Corporation)
    rasdial.exe -> C:\Windows\SysWow64\rasdial.exe -> [2009/06/04 04:47:23 | 00,016,896 | ---- | C | MD5 = CE89D942BECC4E4350FC76D4A0443997] (Microsoft Corporation)
    CHxReadingStringIME.dll -> C:\Windows\SysNative\CHxReadingStringIME.dll -> [2009/06/04 04:47:23 | 00,012,800 | ---- | C | MD5 = D1CC48039B7914C42A48A19DF56489BC] (Microsoft Corporation)
    MSMPEG2ENC.DLL -> C:\Windows\SysWow64\MSMPEG2ENC.DLL -> [2009/06/04 04:47:22 | 00,506,880 | ---- | C | MD5 = 64C738D1F96D1D04CAAAD5F5FB72A85D] (Microsoft Corporation)
    eappcfg.dll -> C:\Windows\SysNative\eappcfg.dll -> [2009/06/04 04:47:22 | 00,211,456 | ---- | C | MD5 = 03FDED7449428CE493432EE35FE5A2FB] (Microsoft Corporation)
    SLLUA.exe -> C:\Windows\SysNative\SLLUA.exe -> [2009/06/04 04:47:22 | 00,190,464 | ---- | C | MD5 = 3C4AFFB870029E26CDEB5F41DA1982ED] (Microsoft Corporation)
    MSAC3ENC.DLL -> C:\Windows\SysWow64\MSAC3ENC.DLL -> [2009/06/04 04:47:22 | 00,160,256 | ---- | C | MD5 = 7F2D7F2D147A600518351E8F8ECBB114] (Microsoft Corporation)
    eappcfg.dll -> C:\Windows\SysWow64\eappcfg.dll -> [2009/06/04 04:47:22 | 00,135,680 | ---- | C | MD5 = 5D0FE613570CABE3992F7DBCD68E61D1] (Microsoft Corporation)
    eappgnui.dll -> C:\Windows\SysNative\eappgnui.dll -> [2009/06/04 04:47:22 | 00,104,448 | ---- | C | MD5 = B013D8A6989CC1603F15BE372E779329] (Microsoft Corporation)
    mfps.dll -> C:\Windows\SysWow64\mfps.dll -> [2009/06/04 04:47:22 | 00,098,816 | ---- | C | MD5 = EFD23147B334B686E614A9B8806DBAA6] (Microsoft Corporation)
    dfsc.sys -> C:\Windows\SysNative\drivers\dfsc.sys -> [2009/06/04 04:47:22 | 00,097,792 | ---- | C | MD5 = 36CD31121F228E7E79BAE60AA45764C6] (Microsoft Corporation)
    eappgnui.dll -> C:\Windows\SysWow64\eappgnui.dll -> [2009/06/04 04:47:22 | 00,093,696 | ---- | C | MD5 = BBE1CD4620CBA35F383E5C499F5CECA5] (Microsoft Corporation)
    nslookup.exe -> C:\Windows\SysWow64\nslookup.exe -> [2009/06/04 04:47:22 | 00,082,944 | ---- | C | MD5 = BCAA8437FC3CC898C76BA120F88CFBCD] (Microsoft Corporation)
    tscupgrd.exe -> C:\Windows\SysWow64\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,063,488 | ---- | C | MD5 = C349AED1B0201258217ADBCEEA49623A] (Microsoft Corporation)
    tscupgrd.exe -> C:\Windows\SysNative\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,062,464 | ---- | C | MD5 = AACD89BC01844644FF70EE7C62A249EE] (Microsoft Corporation)
    fdeploy.dll -> C:\Windows\SysWow64\fdeploy.dll -> [2009/06/04 04:47:22 | 00,053,760 | ---- | C | MD5 = BFEB58743A6D96B609DA0F1FD0ACE4EB] (Microsoft Corporation)
    tsgqec.dll -> C:\Windows\SysWow64\tsgqec.dll -> [2009/06/04 04:47:22 | 00,053,248 | ---- | C | MD5 = 197A6855F30CE60D3C93E6072EF742A7] (Microsoft Corporation)
    networkitemfactory.dll -> C:\Windows\SysNative\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,052,224 | ---- | C | MD5 = 9E0B212585249A2B14547A0599ECAEF2] (Microsoft Corporation)
    cbsra.exe -> C:\Windows\SysNative\cbsra.exe -> [2009/06/04 04:47:22 | 00,047,104 | ---- | C | MD5 = 170AC0E881F1132921F0093B4285800B] (Microsoft Corporation)
    bitsigd.dll -> C:\Windows\SysNative\bitsigd.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 980F1A36B970F5AE361C5C2A90C9E972] (Microsoft Corporation)
    slcinst.dll -> C:\Windows\SysNative\slcinst.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 2FE0D0DA82A9C680F3A911D95819080B] (Microsoft Corporation)
    tsgqec.dll -> C:\Windows\SysNative\tsgqec.dll -> [2009/06/04 04:47:22 | 00,045,056 | ---- | C | MD5 = C767BC5E320C4621A2A1980BD2D3E9F2] (Microsoft Corporation)
    slcinst.dll -> C:\Windows\SysWow64\slcinst.dll -> [2009/06/04 04:47:22 | 00,042,496 | ---- | C | MD5 = FE78D886A33624E0FA74164B274DE7A8] (Microsoft Corporation)
    hbaapi.dll -> C:\Windows\SysWow64\hbaapi.dll -> [2009/06/04 04:47:22 | 00,041,472 | ---- | C | MD5 = 9F4C8DA21AC626BFB92DD9C7C6FF7F23] (Microsoft Corporation)
    wscapi.dll -> C:\Windows\SysNative\wscapi.dll -> [2009/06/04 04:47:22 | 00,040,448 | ---- | C | MD5 = 2CAB7B034B867AAB48D298F93D04BD3E] (Microsoft Corporation)
    networkitemfactory.dll -> C:\Windows\SysWow64\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,039,936 | ---- | C | MD5 = A479AE2DA6D04C4DBC3A76C4B6347E78] (Microsoft Corporation)
    ocsetup.exe -> C:\Windows\SysNative\ocsetup.exe -> [2009/06/04 04:47:22 | 00,038,400 | ---- | C | MD5 = 3D46EF4CA4FFF3E5B2F20762E0717FA1] (Microsoft Corporation)
    ocsetup.exe -> C:\Windows\SysWow64\ocsetup.exe -> [2009/06/04 04:47:22 | 00,035,840 | ---- | C | MD5 = BC89C1733F25EEADD9C765D2C9C0E8B8] (Microsoft Corporation)
    mfpmp.exe -> C:\Windows\SysNative\mfpmp.exe -> [2009/06/04 04:47:22 | 00,034,304 | ---- | C | MD5 = 9A04DEFE7359B182DB5DBE84483CB5FE] (Microsoft Corporation)
    FwRemoteSvr.dll -> C:\Windows\SysWow64\FwRemoteSvr.dll -> [2009/06/04 04:47:22 | 00,028,672 | ---- | C | MD5 = 42608AE9AF2641EE473A1797C25CFFC2] (Microsoft Corporation)
    ipconfig.exe -> C:\Windows\SysWow64\ipconfig.exe -> [2009/06/04 04:47:22 | 00,026,624 | ---- | C | MD5 = A5CBBED853E6183D4E067B42B73A20DA] (Microsoft Corporation)
    msacm32.drv -> C:\Windows\SysNative\msacm32.drv -> [2009/06/04 04:47:22 | 00,025,600 | ---- | C | MD5 = 9A328CC4E4490E929E30332AC902CAC1] (Microsoft Corporation)
    mfpmp.exe -> C:\Windows\SysWow64\mfpmp.exe -> [2009/06/04 04:47:22 | 00,024,576 | ---- | C | MD5 = 8F5F5038465559C754D0C72FF74660D4] (Microsoft Corporation)
    msacm32.drv -> C:\Windows\SysWow64\msacm32.drv -> [2009/06/04 04:47:22 | 00,021,504 | ---- | C | MD5 = 166F004D73EA2CF4AC61800CA469458D] (Microsoft Corporation)
    gpupdate.exe -> C:\Windows\SysWow64\gpupdate.exe -> [2009/06/04 04:47:22 | 00,016,896 | ---- | C | MD5 = BADB6B77C2C9F729528543D79418429F] (Microsoft Corporation)
    mmcico.dll -> C:\Windows\SysWow64\mmcico.dll -> [2009/06/04 04:47:22 | 00,012,800 | ---- | C | MD5 = E1A0CB2579D30466E43957E98B68A586] (Microsoft Corporation)
    CHxReadingStringIME.dll -> C:\Windows\SysWow64\CHxReadingStringIME.dll -> [2009/06/04 04:47:22 | 00,010,752 | ---- | C | MD5 = 3048B1D3029D5D8424E018BD7FBFDA75] (Microsoft Corporation)
    wmpps.dll -> C:\Windows\SysWow64\wmpps.dll -> [2009/06/04 04:47:21 | 00,131,072 | ---- | C | MD5 = 94BEEEBD916F7836EEF2CCA38218BD31] (Microsoft Corporation)
    cdrom.sys -> C:\Windows\SysNative\drivers\cdrom.sys -> [2009/06/04 04:47:21 | 00,079,872 | ---- | C | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
    vss_ps.dll -> C:\Windows\SysNative\vss_ps.dll -> [2009/06/04 04:47:21 | 00,060,416 | ---- | C | MD5 = 71C53455C533E3DD8A93466B123DDB39] (Microsoft Corporation)
    odbcconf.dll -> C:\Windows\SysNative\odbcconf.dll -> [2009/06/04 04:47:21 | 00,045,056 | ---- | C | MD5 = 2C70DC0FD91CFEFB9B047DAA27E112FD] (Microsoft Corporation)
    odbcconf.dll -> C:\Windows\SysWow64\odbcconf.dll -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 87F1B6EF700AF7C0BCEBE380964EE9DE] (Microsoft Corporation)
    RNDISMP.sys -> C:\Windows\SysNative\drivers\RNDISMP.sys -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 0EAA68043CDED5DC83351A4931E66987] (Microsoft Corporation)
    bthudtask.exe -> C:\Windows\SysNative\bthudtask.exe -> [2009/06/04 04:47:21 | 00,035,840 | ---- | C | MD5 = 69BDE89D95561C06DC1FF5497C7D2648] (Microsoft Corporation)
    usbohci.sys -> C:\Windows\SysNative\drivers\usbohci.sys -> [2009/06/04 04:47:21 | 00,024,064 | ---- | C | MD5 = E406B003A354776D317762694956B0FC] (Microsoft Corporation)
    midimap.dll -> C:\Windows\SysNative\midimap.dll -> [2009/06/04 04:47:21 | 00,020,480 | ---- | C | MD5 = 62BDB059ED8AE0C63E33BBF990941E0F] (Microsoft Corporation)
    winrnr.dll -> C:\Windows\SysWow64\winrnr.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = C411C80F90D6732380352B98B37BBD53] (Microsoft Corporation)
    NcdProp.dll -> C:\Windows\SysWow64\NcdProp.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = 1C4DB2F8A68BF7BF891E76C429129DFD] (Microsoft Corporation)
    usb8023.sys -> C:\Windows\SysNative\drivers\usb8023.sys -> [2009/06/04 04:47:21 | 00,019,456 | ---- | C | MD5 = F4F8D86E6FCAB839438B23DFAFC7951F] (Microsoft Corporation)
    vdmdbg.dll -> C:\Windows\SysWow64\vdmdbg.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = DF1F51D2938A403BFE671B13A12FA434] (Microsoft Corporation)
    midimap.dll -> C:\Windows\SysWow64\midimap.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 83199EF88D691E730B80666E29F90D58] (Microsoft Corporation)
    inetppui.dll -> C:\Windows\SysNative\inetppui.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 7B207E9923716BD040FF56C9EC1DF7B2] (Microsoft Corporation)
    iscsilog.dll -> C:\Windows\SysNative\iscsilog.dll -> [2009/06/04 04:47:21 | 00,016,384 | ---- | C | MD5 = C8EFA4244000C88E92B0DB80C63AFAE0] (Microsoft Corporation)
    slwga.dll -> C:\Windows\SysWow64\slwga.dll -> [2009/06/04 04:47:21 | 00,012,288 | ---- | C | MD5 = DA887F28054D78EE8637BEBB924A2DB5] (Microsoft Corporation)
    RacUR.xml -> C:\Windows\SysWow64\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
    RacUR.xml -> C:\Windows\SysNative\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
    wmploc.DLL -> C:\Windows\SysNative\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,968 | ---- | C | MD5 = 23462A3BDBD5EF4DE119950176054455] (Microsoft Corporation)
    wmploc.DLL -> C:\Windows\SysWow64\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,456 | ---- | C | MD5 = CC41E8691F0685EA9A820E40FE541500] (Microsoft Corporation)
    stream.sys -> C:\Windows\SysNative\drivers\stream.sys -> [2009/06/04 04:47:20 | 00,068,224 | ---- | C | MD5 = EB69069B969F4252A3BDE2BB3621811E] (Microsoft Corporation)
    raspppoe.sys -> C:\Windows\SysNative\drivers\raspppoe.sys -> [2009/06/04 04:47:20 | 00,050,176 | ---- | C | MD5 = 4517FBF8B42524AFE4EDE1DE102AAE3E] (Microsoft Corporation)
    f3ahvoas.dll -> C:\Windows\SysNative\f3ahvoas.dll -> [2009/06/04 04:47:20 | 00,033,280 | ---- | C | MD5 = 1BC63DDF769D3D6887565F774E177B7A] (Microsoft Corporation)
    Diskdump.sys -> C:\Windows\SysNative\drivers\Diskdump.sys -> [2009/06/04 04:47:20 | 00,019,968 | ---- | C | MD5 = 3333213D1902942196D7BFF8E34FFB7F] (Microsoft Corporation)
    wow64cpu.dll -> C:\Windows\SysNative\wow64cpu.dll -> [2009/06/04 04:47:20 | 00,017,408 | ---- | C | MD5 = CA9EECC6092B9C2CE86D95C04B51BA20] (Microsoft Corporation)
    spwmp.dll -> C:\Windows\SysNative\spwmp.dll -> [2009/06/04 04:47:20 | 00,009,216 | ---- | C | MD5 = 304C0C318EF9E45FF0934DA87C34FA32] (Microsoft Corporation)
    spwmp.dll -> C:\Windows\SysWow64\spwmp.dll -> [2009/06/04 04:47:20 | 00,007,680 | ---- | C | MD5 = 9D7330628360245D3FB8779C831BCCDE] (Microsoft Corporation)
    msdxm.ocx -> C:\Windows\SysNative\msdxm.ocx -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
    dxmasf.dll -> C:\Windows\SysNative\dxmasf.dll -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
    msdxm.ocx -> C:\Windows\SysWow64\msdxm.ocx -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
    dxmasf.dll -> C:\Windows\SysWow64\dxmasf.dll -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
    f3ahvoas.dll -> C:\Windows\SysWow64\f3ahvoas.dll -> [2009/06/04 04:47:19 | 00,007,680 | ---- | C | MD5 = F42DC8DD28EC15507F44B801273E758E] (Microsoft Corporation)
    msimsg.dll -> C:\Windows\SysNative\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = FCD84867883C365A24C61E50AF8A6DB9] (Microsoft Corporation)
    msimsg.dll -> C:\Windows\SysWow64\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = ED21401F1E2F6BC2F54C462BB66D0D6B] (Microsoft Corporation)
    mferror.dll -> C:\Windows\SysWow64\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = A5C978DD5B123D6070B2076FF3B36600] (Microsoft Corporation)
    mferror.dll -> C:\Windows\SysNative\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = 45415CC9CE3979EDC93F9856D9ED22BF] (Microsoft Corporation)
    bthport.sys.mui -> C:\Windows\SysNative\drivers\en-US\bthport.sys.mui -> [2009/06/04 04:47:18 | 00,007,680 | ---- | C | MD5 = 81F35F34188E8BBE153F895717E27214] (Microsoft Corporation)
    hdaudbus.sys.mui -> C:\Windows\SysNative\drivers\en-US\hdaudbus.sys.mui -> [2009/06/04 04:47:18 | 00,003,584 | ---- | C | MD5 = AC8A0B65B6285EBA73968BC49BA9C640] (Microsoft Corporation)
    wdscore.dll -> C:\Windows\SysWow64\wdscore.dll -> [2009/06/04 04:47:13 | 00,218,624 | ---- | C | MD5 = E7D0F91E44D9D3B2116FA549BDCDB756] (Microsoft Corporation)
    drvstore.dll -> C:\Windows\SysWow64\drvstore.dll -> [2009/06/04 04:47:08 | 00,247,808 | ---- | C | MD5 = 6A7908973D49248E4018E8E61B3DCDAA] (Microsoft Corporation)
    SmiEngine.dll -> C:\Windows\SysNative\SmiEngine.dll -> [2009/06/04 04:46:42 | 00,936,448 | ---- | C | MD5 = 925ECB3366EDFCB50B04DFAA5A529B63] (Microsoft Corporation)
    wdscore.dll -> C:\Windows\SysNative\wdscore.dll -> [2009/06/04 04:46:40 | 00,293,888 | ---- | C | MD5 = A6BCDC241B6578C7DB57B5973B99FE7E] (Microsoft Corporation)
    PkgMgr.exe -> C:\Windows\SysNative\PkgMgr.exe -> [2009/06/04 04:46:40 | 00,138,752 | ---- | C | MD5 = 8832EFA58F39033442841A6535396A40] (Microsoft Corporation)
    drvstore.dll -> C:\Windows\SysNative\drvstore.dll -> [2009/06/04 04:46:35 | 00,315,904 | ---- | C | MD5 = 403C9B0E7D827337611FBA20EBC7692C] (Microsoft Corporation)
    MSXML 4.0 -> C:\Program Files (x86)\MSXML 4.0 -> [2009/05/29 03:00:23 | 00,000,000 | ---D | C]
    KGyGaAvL.sys -> C:\Windows\SysWow64\KGyGaAvL.sys -> [2009/05/28 00:06:52 | 00,000,848 | -HS- | C | MD5 = 04B0435CF26A43D9171E7A896C7BB94E] ()
    InstallShield -> C:\ProgramData\InstallShield -> [2009/05/28 00:06:40 | 00,000,000 | ---D | C]
    Corel Paint Shop Pro X.lnk -> C:\Users\Public\Desktop\Corel Paint Shop Pro X.lnk -> [2009/05/28 00:06:36 | 00,001,978 | ---- | C | MD5 = 49E7ABFB3FB66CC0DAF189C4ED174D98] ()
    Corel -> C:\Users\Owner\AppData\Roaming\Corel -> [2009/05/28 00:06:16 | 00,000,000 | ---D | C]
    Spool -> C:\Windows\SysWow64\Spool -> [2009/05/28 00:05:59 | 00,000,000 | ---D | C]
    My PSP Files -> C:\Users\Owner\Documents\My PSP Files -> [2009/05/28 00:05:48 | 00,000,000 | ---D | C]
    Corel -> C:\Program Files (x86)\Corel -> [2009/05/28 00:05:48 | 00,000,000 | ---D | C]
    Corel -> C:\Program Files (x86)\Common Files\Corel -> [2009/05/28 00:05:48 | 00,000,000 | ---D | C]
    utterbently.rtf -> C:\Users\Owner\Documents\utterbently.rtf -> [2009/05/27 11:58:16 | 00,001,563 | ---- | C | MD5 = 8B7E2E6FFD582DA6B1EB1743B921236C] ()
    Adobe -> C:\Windows\SysWow64\Adobe -> [2009/05/24 17:49:26 | 00,000,000 | ---D | C]
    Minidump -> C:\Windows\Minidump -> [2009/05/23 23:34:28 | 00,000,000 | ---D | C]
    224.rtf -> C:\Users\Owner\Documents\224.rtf -> [2009/05/11 14:59:11 | 00,000,312 | ---- | C | MD5 = 4B05FCACD2C4B523910414BFE943537A] ()
    VTExtra -> C:\Users\Owner\AppData\Roaming\VTExtra -> [2009/05/11 14:57:11 | 00,000,000 | ---D | C]
    VTShared -> C:\Users\Owner\AppData\Local\VTShared -> [2009/05/11 14:55:00 | 00,000,000 | ---D | C]
    Go Casino.lnk -> C:\Users\Owner\Desktop\Go Casino.lnk -> [2009/05/11 14:54:54 | 00,000,885 | ---- | C | MD5 = EC175328F5376D1468392D6D9E721F72] ()
    GoCasino -> C:\Users\Owner\AppData\Local\GoCasino -> [2009/05/11 14:54:54 | 00,000,000 | ---D | C]
    InstallShield -> C:\Users\Owner\AppData\Roaming\InstallShield -> [2009/05/11 14:54:51 | 00,000,000 | ---D | C]
    basefx.INI -> C:\Windows\basefx.INI -> [2009/05/08 00:05:54 | 00,000,032 | ---- | C | MD5 = 51A542B2C1A87F328D1FAEF3BFF9942E] ()
    Jasc -> C:\Users\Owner\AppData\Roaming\Jasc -> [2009/05/07 23:36:10 | 00,000,000 | ---D | C]
    Jasc Software Inc -> C:\Program Files (x86)\Jasc Software Inc -> [2009/05/07 23:35:34 | 00,000,000 | ---D | C]
    Selteco -> C:\Program Files (x86)\Selteco -> [2009/05/07 23:31:49 | 00,000,000 | ---D | C]
    User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> C:\Windows\tasks\User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> [2009/05/07 12:27:34 | 00,000,434 | -H-- | C | MD5 = F141DC7F164B9C2AE2DD4063F15E0B78] ()
    advpack.dll -> C:\Windows\SysNative\advpack.dll -> [2009/05/07 12:12:11 | 00,161,792 | ---- | C | MD5 = 57606718C74205932B1BDC6335DAE1F7] (Microsoft Corporation)
    admparse.dll -> C:\Windows\SysNative\admparse.dll -> [2009/05/07 12:12:11 | 00,088,064 | ---- | C | MD5 = 6F2FB33CBA3D5F816C1C87351996E354] (Microsoft Corporation)
    corpol.dll -> C:\Windows\SysNative\corpol.dll -> [2009/05/07 12:12:11 | 00,022,528 | ---- | C | MD5 = 2FBF5CF0E7318692260910D6FAF486D3] (Microsoft Corporation)
    msls31.dll -> C:\Windows\SysNative\msls31.dll -> [2009/05/07 12:12:10 | 00,223,232 | ---- | C | MD5 = A8FC574E55DE70F7DDEFB0085B2EC10A] (Microsoft Corporation)
    ieakeng.dll -> C:\Windows\SysNative\ieakeng.dll -> [2009/05/07 12:12:10 | 00,157,696 | ---- | C | MD5 = 1AF08DC21DE2CA9713142207AC6A11F3] (Microsoft Corporation)
    advpack.dll -> C:\Windows\SysWow64\advpack.dll -> [2009/05/07 12:12:10 | 00,128,512 | ---- | C | MD5 = 8FED1E0A491D4990853D23F21C59C730] (Microsoft Corporation)
    ieakeng.dll -> C:\Windows\SysWow64\ieakeng.dll -> [2009/05/07 12:12:10 | 00,125,952 | ---- | C | MD5 = FCF52888B8AD1BDC80275108172BD76D] (Microsoft Corporation)
    icardie.dll -> C:\Windows\SysNative\icardie.dll -> [2009/05/07 12:12:10 | 00,085,504 | ---- | C | MD5 = BE48D4B6A208C2B0C3E69887A395A024] (Microsoft Corporation)
    tdc.ocx -> C:\Windows\SysNative\tdc.ocx -> [2009/05/07 12:12:10 | 00,077,824 | ---- | C | MD5 = 006F68A89884349840670919EB69A530] (Microsoft Corporation)
    admparse.dll -> C:\Windows\SysWow64\admparse.dll -> [2009/05/07 12:12:10 | 00,072,704 | ---- | C | MD5 = 6DB2CAE1A84068CEBA0E768BB5C29009] (Microsoft Corporation)
    tdc.ocx -> C:\Windows\SysWow64\tdc.ocx -> [2009/05/07 12:12:10 | 00,066,560 | ---- | C | MD5 = 9BAA9D6879028C32FCE8808C4C7E86BE] (Microsoft Corporation)
    icardie.dll -> C:\Windows\SysWow64\icardie.dll -> [2009/05/07 12:12:10 | 00,059,904 | ---- | C | MD5 = 17A6B9EFC1D37368379F4E77EC3F2761] (Microsoft Corporation)
    imgutil.dll -> C:\Windows\SysNative\imgutil.dll -> [2009/05/07 12:12:10 | 00,052,736 | ---- | C | MD5 = 10017A667F938526DFC69F319B870AE3] (Microsoft Corporation)
    corpol.dll -> C:\Windows\SysWow64\corpol.dll -> [2009/05/07 12:12:10 | 00,018,944 | ---- | C | MD5 = 8FCF03E4D7BE9B5587CCF11719959006] (Microsoft Corporation)
    msfeedssync.exe -> C:\Windows\SysNative\msfeedssync.exe -> [2009/05/07 12:12:10 | 00,012,800 | ---- | C | MD5 = 2E92BBBB52E6BE5B080E992909A9F59C] (Microsoft Corporation)
    msfeeds.dll -> C:\Windows\SysNative\msfeeds.dll -> [2009/05/07 12:12:09 | 00,700,928 | ---- | C | MD5 = 4F12108B0C1614D5F7B7B292EC6256A9] (Microsoft Corporation)
    msfeeds.dll -> C:\Windows\SysWow64\msfeeds.dll -> [2009/05/07 12:12:09 | 00,594,432 | ---- | C | MD5 = 63F6826E5C59CB04C5835BF95BC87B52] (Microsoft Corporation)
    ieapfltr.dll -> C:\Windows\SysNative\ieapfltr.dll -> [2009/05/07 12:12:09 | 00,481,280 | ---- | C | MD5 = 1697C9E56C504616FBDA749500185023] (Microsoft Corporation)
    ieapfltr.dll -> C:\Windows\SysWow64\ieapfltr.dll -> [2009/05/07 12:12:09 | 00,445,952 | ---- | C | MD5 = 66F1C930F4572816BB15C3A863590305] (Microsoft Corporation)
    dxtmsft.dll -> C:\Windows\SysWow64\dxtmsft.dll -> [2009/05/07 12:12:09 | 00,348,160 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    msls31.dll -> C:\Windows\SysWow64\msls31.dll -> [2009/05/07 12:12:09 | 00,156,160 | ---- | C | MD5 = 2ACCD352451EC0F99AF2AD9DB6DB4439] (Microsoft Corporation)
    inseng.dll -> C:\Windows\SysNative\inseng.dll -> [2009/05/07 12:12:09 | 00,125,952 | ---- | C | MD5 = AD06F2D152944EB0350C6B51D9FD82D4] (Microsoft Corporation)
    wextract.exe -> C:\Windows\SysNative\wextract.exe -> [2009/05/07 12:12:09 | 00,076,288 | ---- | C | MD5 = 57F5B42CE7132BF8E8364B3A3DB6FBEB] (Microsoft Corporation)
    msfeedsbs.dll -> C:\Windows\SysNative\msfeedsbs.dll -> [2009/05/07 12:12:09 | 00,071,680 | ---- | C | MD5 = 28D9B9E6CAA62C7F105CD56D12DFFB18] (Microsoft Corporation)
    wextract.exe -> C:\Windows\SysWow64\wextract.exe -> [2009/05/07 12:12:09 | 00,066,560 | ---- | C | MD5 = 06235ADF5C75913B131A1430648B4387] (Microsoft Corporation)
    pngfilt.dll -> C:\Windows\SysNative\pngfilt.dll -> [2009/05/07 12:12:09 | 00,063,488 | ---- | C | MD5 = 4B9A9E789097AA01BA79088B1B9D8434] (Microsoft Corporation)
    ieuinit.inf -> C:\Windows\SysWow64\ieuinit.inf -> [2009/05/07 12:12:09 | 00,057,667 | ---- | C | MD5 = D16E158B285BA79D465DC8271AC02229] ()
    ieuinit.inf -> C:\Windows\SysNative\ieuinit.inf -> [2009/05/07 12:12:09 | 00,057,667 | ---- | C | MD5 = D16E158B285BA79D465DC8271AC02229] ()
    licmgr10.dll -> C:\Windows\SysNative\licmgr10.dll -> [2009/05/07 12:12:09 | 00,055,808 | ---- | C | MD5 = 4D274100603CBA245492AC7DC0BC48CA] (Microsoft Corporation)
    msfeedsbs.dll -> C:\Windows\SysWow64\msfeedsbs.dll -> [2009/05/07 12:12:09 | 00,055,296 | ---- | C | MD5 = 85D30B4D5278DE932C47C5B3AE25F22C] (Microsoft Corporation)
    pngfilt.dll -> C:\Windows\SysWow64\pngfilt.dll -> [2009/05/07 12:12:09 | 00,046,592 | ---- | C | MD5 = E5FA1B044DAC5F6F600A1742D73F6936] (Microsoft Corporation)
    imgutil.dll -> C:\Windows\SysWow64\imgutil.dll -> [2009/05/07 12:12:09 | 00,034,816 | ---- | C | MD5 = 42B928FC8518D793BF7A5EAFC57B1D8B] (Microsoft Corporation)
    msfeedssync.exe -> C:\Windows\SysWow64\msfeedssync.exe -> [2009/05/07 12:12:09 | 00,013,312 | ---- | C | MD5 = FEE2BA1AD38F457F418E82EA30724053] (Microsoft Corporation)
    mstime.dll -> C:\Windows\SysNative\mstime.dll -> [2009/05/07 12:12:08 | 01,062,912 | ---- | C | MD5 = 3D6AC28742F28F5D7F1BED09A8DECCE9] (Microsoft Corporation)
    mstime.dll -> C:\Windows\SysWow64\mstime.dll -> [2009/05/07 12:12:08 | 00,611,840 | ---- | C | MD5 = 1B3DE45BFADB29CC8252D9C92374BA7E] (Microsoft Corporation)
    dxtmsft.dll -> C:\Windows\SysNative\dxtmsft.dll -> [2009/05/07 12:12:08 | 00,508,416 | ---- | C | MD5 = 72FEDB9CB7AD10AD7ACE2867FCABF4C0] (Microsoft Corporation)
    dxtrans.dll -> C:\Windows\SysNative\dxtrans.dll -> [2009/05/07 12:12:08 | 00,318,464 | ---- | C | MD5 = EE15594454DE778F897547EEC4E042DE] (Microsoft Corporation)
    webcheck.dll -> C:\Windows\SysNative\webcheck.dll -> [2009/05/07 12:12:08 | 00,304,640 | ---- | C | MD5 = 48FC58A3089830A0956D3165BAF5BDCC] (Microsoft Corporation)
    iepeers.dll -> C:\Windows\SysNative\iepeers.dll -> [2009/05/07 12:12:08 | 00,252,416 | ---- | C | MD5 = 37CCD93051EF81E6D1C84F92C37FFBD7] (Microsoft Corporation)
    webcheck.dll -> C:\Windows\SysWow64\webcheck.dll -> [2009/05/07 12:12:08 | 00,236,544 | ---- | C | MD5 = CC8915DB4E33E8FB29CA0D2DBF75306E] (Microsoft Corporation)
    ieaksie.dll -> C:\Windows\SysWow64\ieaksie.dll -> [2009/05/07 12:12:08 | 00,229,376 | ---- | C | MD5 = 69F138A7E93F2646CDEC3B68CE7011DF] (Microsoft Corporation)
    dxtrans.dll -> C:\Windows\SysWow64\dxtrans.dll -> [2009/05/07 12:12:08 | 00,216,064 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    iepeers.dll -> C:\Windows\SysWow64\iepeers.dll -> [2009/05/07 12:12:08 | 00,183,808 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    occache.dll -> C:\Windows\SysNative\occache.dll -> [2009/05/07 12:12:08 | 00,146,432 | ---- | C | MD5 = 86171613A521728ED6B9EBB603C27ACA] (Microsoft Corporation)
    occache.dll -> C:\Windows\SysWow64\occache.dll -> [2009/05/07 12:12:08 | 00,109,568 | ---- | C | MD5 = 9DA08300F5D41783E69452AE77AA76A1] (Microsoft Corporation)
    mshtmled.dll -> C:\Windows\SysNative\mshtmled.dll -> [2009/05/07 12:12:08 | 00,096,768 | ---- | C | MD5 = 35DF2437C36FFCCC5AEA2A633B865696] (Microsoft Corporation)
    inseng.dll -> C:\Windows\SysWow64\inseng.dll -> [2009/05/07 12:12:08 | 00,094,720 | ---- | C | MD5 = 8FAAFF28147935E5847F980607965FFE] (Microsoft Corporation)
    mshtmled.dll -> C:\Windows\SysWow64\mshtmled.dll -> [2009/05/07 12:12:08 | 00,066,560 | ---- | C | MD5 = 7C9AAF547A0AF93C3F1BB7DC3AED4ECC] (Microsoft Corporation)
    licmgr10.dll -> C:\Windows\SysWow64\licmgr10.dll -> [2009/05/07 12:12:08 | 00,043,008 | ---- | C | MD5 = ADA72593022EFC0A5CBE17955FD051E2] (Microsoft Corporation)
    jscript.dll -> C:\Windows\SysNative\jscript.dll -> [2009/05/07 12:12:07 | 00,817,664 | ---- | C | MD5 = 0EC192D493D434F4BF1AF981E13644B1] (Microsoft Corporation)
    jscript.dll -> C:\Windows\SysWow64\jscript.dll -> [2009/05/07 12:12:07 | 00,726,528 | ---- | C | MD5 = 38FFEC2CD31441A6B57D7A0B490D7299] (Microsoft Corporation)
    vbscript.dll -> C:\Windows\SysNative\vbscript.dll -> [2009/05/07 12:12:07 | 00,612,864 | ---- | C | MD5 = 27E37DC66131599D319B4A487791B2E6] (Microsoft Corporation)
    vbscript.dll -> C:\Windows\SysWow64\vbscript.dll -> [2009/05/07 12:12:07 | 00,420,352 | ---- | C | MD5 = 7CC3C8FC1056A229B05926C44D1ADEE4] (Microsoft Corporation)
    WinFXDocObj.exe -> C:\Windows\SysNative\WinFXDocObj.exe -> [2009/05/07 12:12:07 | 00,278,528 | ---- | C | MD5 = 3BB39EAAECFDC64961551C7A09EC0E6E] (Microsoft Corporation)
    ieaksie.dll -> C:\Windows\SysNative\ieaksie.dll -> [2009/05/07 12:12:07 | 00,271,872 | ---- | C | MD5 = EF7F4195B78361420C2FD2CB09B6D387] (Microsoft Corporation)
    msrating.dll -> C:\Windows\SysNative\msrating.dll -> [2009/05/07 12:12:07 | 00,241,664 | ---- | C | MD5 = C8C96A57386C9E9D71A2516B71AF5C57] (Microsoft Corporation)
    WinFXDocObj.exe -> C:\Windows\SysWow64\WinFXDocObj.exe -> [2009/05/07 12:12:07 | 00,208,384 | ---- | C | MD5 = CB61F20255C666E59F076247203D8496] (Microsoft Corporation)
    msrating.dll -> C:\Windows\SysWow64\msrating.dll -> [2009/05/07 12:12:07 | 00,193,536 | ---- | C | MD5 = 29BD913D8FD1FEB6728DC9B43B55C1D2] (Microsoft Corporation)
    ieakui.dll -> C:\Windows\SysNative\ieakui.dll -> [2009/05/07 12:12:07 | 00,163,840 | ---- | C | MD5 = D89502771519BA121481AD67547EBAE8] (Microsoft Corporation)
    ieakui.dll -> C:\Windows\SysWow64\ieakui.dll -> [2009/05/07 12:12:07 | 00,163,840 | ---- | C | MD5 = 36A86C1B6406CC493554F16BA13BE7D9] (Microsoft Corporation)
    ieUnatt.exe -> C:\Windows\SysNative\ieUnatt.exe -> [2009/05/07 12:12:07 | 00,161,792 | ---- | C | MD5 = DC33A342BCDD21FC8F315706C4030798] (Microsoft Corporation)
    iesysprep.dll -> C:\Windows\SysNative\iesysprep.dll -> [2009/05/07 12:12:07 | 00,132,096 | ---- | C | MD5 = 4FA9446554FFBED235D498B5D4661BBB] (Microsoft Corporation)
    PDMSetup.exe -> C:\Windows\SysNative\PDMSetup.exe -> [2009/05/07 12:12:07 | 00,131,584 | ---- | C | MD5 = ABCBEB808CC7F2742F31162E5D29667E] (Microsoft Corporation)
    RegisterIEPKEYs.exe -> C:\Windows\SysNative\RegisterIEPKEYs.exe -> [2009/05/07 12:12:07 | 00,129,024 | ---- | C | MD5 = 7F8877B03BFF934E6E5167041DDA6142] (Microsoft Corporation)
    SetIEInstalledDate.exe -> C:\Windows\SysNative\SetIEInstalledDate.exe -> [2009/05/07 12:12:07 | 00,128,512 | ---- | C | MD5 = 7CAF82680541BFD41723B5E4EDD5784F] (Microsoft Corporation)
    SetDepNx.exe -> C:\Windows\SysNative\SetDepNx.exe -> [2009/05/07 12:12:07 | 00,125,440 | ---- | C | MD5 = F602CEED80851FD811FEA499F9693B39] (Microsoft Corporation)
    url.dll -> C:\Windows\SysNative\url.dll -> [2009/05/07 12:12:07 | 00,108,032 | ---- | C | MD5 = CC3FE21EB74EE792B404F15533A8C9D1] (Microsoft Corporation)
    url.dll -> C:\Windows\SysWow64\url.dll -> [2009/05/07 12:12:07 | 00,105,984 | ---- | C | MD5 = 91617515AA185259694A1C4882080B99] (Microsoft Corporation)
    mshtmler.dll -> C:\Windows\SysWow64\mshtmler.dll -> [2009/05/07 12:12:07 | 00,048,128 | ---- | C | MD5 = EA817DC2C977376369547295B7212C43] (Microsoft Corporation)
    mshtmler.dll -> C:\Windows\SysNative\mshtmler.dll -> [2009/05/07 12:12:07 | 00,048,128 | ---- | C | MD5 = 8FA7FE0CBAB8ADEA67DD5E29E827952A] (Microsoft Corporation)
    mshta.exe -> C:\Windows\SysNative\mshta.exe -> [2009/05/07 12:12:07 | 00,041,984 | ---- | C | MD5 = D7191F1ED678DAB7C09695845DF4EAFB] (Microsoft Corporation)
    ieapfltr.dat -> C:\Windows\SysWow64\ieapfltr.dat -> [2009/05/07 12:12:06 | 03,698,584 | ---- | C | MD5 = EC6A0643FC55E87A12F4C5BC49E9F431] (Microsoft Corporation)
    ieapfltr.dat -> C:\Windows\SysNative\ieapfltr.dat -> [2009/05/07 12:12:06 | 03,698,584 | ---- | C | MD5 = EC6A0643FC55E87A12F4C5BC49E9F431] (Microsoft Corporation)
    html.iec -> C:\Windows\SysNative\html.iec -> [2009/05/07 12:12:06 | 00,479,744 | ---- | C | MD5 = 20B65D0CCA196F859FB9243F5C28C444] (Microsoft Corporation)
    html.iec -> C:\Windows\SysWow64\html.iec -> [2009/05/07 12:12:06 | 00,385,024 | ---- | C | MD5 = EC45CE35652FE1B9784BAC48BA200CD4] (Microsoft Corporation)
    iexpress.exe -> C:\Windows\SysNative\iexpress.exe -> [2009/05/07 12:12:06 | 00,193,536 | ---- | C | MD5 = 06FA458E5158C71FB945B40CEC05C1DF] (Microsoft Corporation)
    iexpress.exe -> C:\Windows\SysWow64\iexpress.exe -> [2009/05/07 12:12:06 | 00,169,472 | ---- | C | MD5 = 378552CD226DC08A300A386E222FD76F] (Microsoft Corporation)
    ieUnatt.exe -> C:\Windows\SysWow64\ieUnatt.exe -> [2009/05/07 12:12:06 | 00,132,608 | ---- | C | MD5 = 3DB5229AFC5A08587BEDECDBEA9601E3] (Microsoft Corporation)
    PDMSetup.exe -> C:\Windows\SysWow64\PDMSetup.exe -> [2009/05/07 12:12:06 | 00,109,568 | ---- | C | MD5 = A82C22EF35D7F9DBBFB1335D6BD76799] (Microsoft Corporation)
    iesysprep.dll -> C:\Windows\SysWow64\iesysprep.dll -> [2009/05/07 12:12:06 | 00,109,056 | ---- | C | MD5 = 84458AB0AAF50AAE47D6922CDE3F3BDA] (Microsoft Corporation)
    RegisterIEPKEYs.exe -> C:\Windows\SysWow64\RegisterIEPKEYs.exe -> [2009/05/07 12:12:06 | 00,107,520 | ---- | C | MD5 = 50B3DC4E6B89A9EA2D62F95B519C6F13] (Microsoft Corporation)
    SetIEInstalledDate.exe -> C:\Windows\SysWow64\SetIEInstalledDate.exe -> [2009/05/07 12:12:06 | 00,107,008 | ---- | C | MD5 = 85AAEAADE50427A7184D6CA1C71C3BA3] (Microsoft Corporation)
    SetDepNx.exe -> C:\Windows\SysWow64\SetDepNx.exe -> [2009/05/07 12:12:06 | 00,103,936 | ---- | C | MD5 = 9DAEFBF88495DD400C9A3945E2EA1932] (Microsoft Corporation)
    mshta.exe -> C:\Windows\SysWow64\mshta.exe -> [2009/05/07 12:12:06 | 00,045,568 | ---- | C | MD5 = AD8F83F16A3CE2B093B38B279B419387] (Microsoft Corporation)
    1236890173476.jpg -> C:\Users\Owner\Documents\1236890173476.jpg -> [2009/05/07 01:04:45 | 00,463,321 | ---- | C | MD5 = C0A621E0438D07F65B48D4492EBDA62A] ()
    1236973823773.jpg -> C:\Users\Owner\Documents\1236973823773.jpg -> [2009/05/07 01:03:23 | 00,342,923 | ---- | C | MD5 = 051BEC4B6692E251056C43FF0E19FD38] ()
    ZoomBrowser EX -> C:\Users\Owner\AppData\Roaming\ZoomBrowser EX -> [2009/05/05 16:58:52 | 00,000,000 | ---D | C]
    Msft_User_WpdMtpDr_01_00_00.Wdf -> C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf -> [2009/05/04 13:46:35 | 00,000,000 | -H-- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
    DCSD40-46 Software Starter Guide.lnk -> C:\Users\Public\Desktop\DCSD40-46 Software Starter Guide.lnk -> [2009/05/04 13:42:13 | 00,001,034 | ---- | C | MD5 = 374C0DD712BCF8890695F61A869004E3] ()
    Personal Printing Guide.lnk -> C:\Users\Public\Desktop\Personal Printing Guide.lnk -> [2009/05/04 13:42:11 | 00,001,039 | ---- | C | MD5 = 189A154484643D47EF3D7D795C702A43] ()
    ZoomBrowser EX.lnk -> C:\Users\Public\Desktop\ZoomBrowser EX.lnk -> [2009/05/04 13:41:15 | 00,001,125 | ---- | C | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
    ZoomBrowser -> C:\ProgramData\ZoomBrowser -> [2009/05/04 13:41:15 | 00,000,000 | ---D | C]
    Canon -> C:\Program Files (x86)\Canon -> [2009/05/04 13:41:00 | 00,000,000 | ---D | C]
    Canon -> C:\Program Files (x86)\Common Files\Canon -> [2009/05/04 13:39:12 | 00,000,000 | ---D | C]
    INFORMATION -> C:\Users\Owner\Desktop\INFORMATION -> [2009/05/04 04:51:19 | 00,000,000 | ---D | C]
    FIXTOOL -> C:\FIXTOOL -> [2009/05/04 03:38:01 | 00,000,000 | ---D | C]
    IconCache.db -> C:\Users\Owner\AppData\Local\IconCache.db -> [2009/05/04 03:35:01 | 02,245,847 | -H-- | C | MD5 = 85505CA8B1BAE590C8A5C82174EE451F] ()
    d3d9caps64.dat -> C:\Users\Owner\AppData\Local\d3d9caps64.dat -> [2009/05/03 20:36:42 | 00,000,732 | ---- | C | MD5 = 7B2E630861781C771667C2A12E49C6F2] ()
    backup -> C:\Windows\SysWow64\backup -> [2009/05/03 20:09:59 | 00,000,000 | ---D | C]
    report -> C:\Windows\SysWow64\report -> [2009/05/03 20:09:51 | 00,000,000 | ---D | C]
    debug -> C:\Windows\SysWow64\debug -> [2009/05/03 20:09:51 | 00,000,000 | ---D | C]
    ssapiptn.da5 -> C:\Windows\SysWow64\ssapiptn.da5 -> [2009/05/03 20:09:31 | 06,158,064 | ---- | C | MD5 = 1D25EDFFCB7F94E5CBFADF278D8D0B21] ()
    lpt$vpn.104 -> C:\Windows\SysWow64\lpt$vpn.104 -> [2009/05/03 20:09:30 | 22,009,461 | ---- | C | MD5 = 0D0CAD6931A11238A4C11FDC6696492B] ()
    lpt$vpn.103 -> C:\Windows\SysWow64\lpt$vpn.103 -> [2009/05/03 20:09:30 | 21,973,109 | ---- | C | MD5 = 0B71C83967FFA778F1E2EB92D05A0EEC] ()
    sysclean.com -> C:\Windows\SysWow64\sysclean.com -> [2009/05/03 20:02:08 | 04,808,583 | ---- | C | MD5 = F1D0B0B797D9841756AAE984CA3949BD] ()
    sysclean.bat -> C:\Windows\SysWow64\sysclean.bat -> [2009/05/03 20:02:07 | 00,000,531 | ---- | C | MD5 = 174E412075F058402DDDE74EEB5BD742] ()
    MCE Logs -> C:\Users\Public\Documents\MCE Logs -> [2009/04/29 20:04:38 | 00,000,000 | -HSD | C]
    ~$cument.rtf -> C:\Users\Owner\Documents\~$cument.rtf -> [2009/04/29 09:02:28 | 00,000,162 | -H-- | C | MD5 = F844F1CB7E8C12BBDF79045ACCC8B08B] ()
  • edited June 2009
    ok this is no where near the the ending can i send it via email?
  • edited June 2009
    this is the mailware one

    Malwarebytes' Anti-Malware 1.38
    Database version: 2347
    Windows 6.0.6002 Service Pack 2
    6/28/2009 8:10:12 PM
    mbam-log-2009-06-28 (20-10-12).txt
    Scan type: Full Scan (C:\|D:\|E:\|F:\|G:\|H:\|)
    Objects scanned: 243344
    Time elapsed: 37 minute(s), 58 second(s)
    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 8
    Registry Values Infected: 0
    Registry Data Items Infected: 2
    Folders Infected: 0
    Files Infected: 2
    Memory Processes Infected:
    (No malicious items detected)
    Memory Modules Infected:
    (No malicious items detected)
    Registry Keys Infected:
    HKEY_CLASSES_ROOT\TypeLib\{86676e13-d6d8-4652-9fcf-f2047f1fb000} (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\partner service (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\partner service (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\partner service (Trojan.BHO) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\kt_bho.KettleBho (Trojan.BHO) -> Quarantined and deleted successfully.
    Registry Values Infected:
    (No malicious items detected)
    Registry Data Items Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowSearch (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
    Folders Infected:
    (No malicious items detected)
    Files Infected:
    c:\programdata\Partner\partner.dll (Trojan.BHO) -> Quarantined and deleted successfully.
    c:\programdata\Partner\partner.exe (Trojan.BHO) -> Quarantined and deleted successfully.
  • edited June 2009
    The file you sent was corrupted :(

    I have found why the log is so big though ...
    [Files/Folders - Created Within All Days]
    Please set OTScanIt using the following info

    OTSsetup.gif
    Run a new scan with these settings, and then post the log.
    You may still need more than one post, but it should be a lot smaller.
  • edited June 2009
    [code]
    OTS logfile created on: 6/29/2009 1:17:09 PM - Run 5
    OTS by OldTimer - Version 3.0.9.0 Folder = C:\Users\Owner\Desktop
    64bit-Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18783)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

    4.00 Gb Total Physical Memory | 4.00 Gb Available Physical Memory | 100.00% Memory free
    4.00 Gb Paging File | 4.00 Gb Available in Paging File | 100.00% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 581.52 Gb Total Space | 533.48 Gb Free Space | 91.74% Space Free | Partition Type: NTFS
    D: Drive not present or media not loaded
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded

    Computer Name: OWNER-PC
    Current User Name: Owner
    Logged in as Administrator.

    Current Boot Mode: Normal
    Scan Mode: All users
    Include 64bit Scans
    Company Name Whitelist: On
    Skip Microsoft Files: Off
    File Age = 30 Days

    [Processes - Safe List]
    aolacsd.exe -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
    aolsoftware.exe -> C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
    aoltpsd3.exe -> C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe -> [2007/04/02 08:33:32 | 00,063,120 | ---- | M | MD5 = CAA1EBD9AD92E6C6E83A5642EBC34CA6] (AOL LLC)
    chifuncext.exe -> C:\Windows\ChiFuncExt.exe -> [2008/02/01 15:04:50 | 00,057,344 | ---- | M | MD5 = 82A85D80EAD5B3950CFD775A84AE1651] (Chicony)
    cnyhkey.exe -> C:\Windows\CNYHKey.exe -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
    googletoolbarnotifier.exe -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
    ielowutil.exe -> C:\Program Files (x86)\Internet Explorer\IELowutil.exe -> [2009/03/08 07:34:00 | 00,115,712 | ---- | M | MD5 = B9E350C3EEE748E332251274DEC33829] (Microsoft Corporation)
    jusched.exe -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
    mhotkey.exe -> C:\Windows\MHotKey.exe -> [2008/05/30 14:50:28 | 00,581,120 | ---- | M | MD5 = ED2674E1796B46A6FDD3E81F66AD45DB] ()
    modledkey.exe -> C:\Windows\ModLedKey.exe -> [2007/01/08 18:51:56 | 00,053,248 | ---- | M | MD5 = 9DC803349108C74DED49990BA3E042FE] (Chicony)
    ots.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:15 | 00,513,024 | ---- | M | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
    richvideo.exe -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
    shellmon.exe -> C:\Program Files (x86)\AOL 9.1\shellmon.exe -> [2008/11/06 07:42:59 | 00,054,568 | ---- | M | MD5 = 9A2A25E1B8FD6260F2DA8611465DB712] (AOL, LLC.)
    smartcopy.exe -> C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe -> [2008/08/11 20:57:02 | 00,319,488 | ---- | M | MD5 = 7E433ED3F7822E46E759956D0ECB7AA4] ()
    smartlauncher.exe -> C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe -> [2008/08/11 13:20:28 | 00,335,872 | ---- | M | MD5 = 5B2819B7FCD02A0FA4386A718DB0274A] (North Star com.)
    waol.exe -> C:\Program Files (x86)\AOL 9.1\waol.exe -> [2008/11/06 07:42:59 | 00,039,208 | ---- | M | MD5 = 19AC8BB35611FD56280BAD07625ACAFB] (AOL, LLC.)
    ymsgr_tray.exe -> C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe -> [2009/03/18 18:50:30 | 00,079,088 | ---- | M | MD5 = 5697CF86049652DBD80054ACE4F29812] (Yahoo! Inc.)

    [Win32 Services - Safe List]
    64bit-(AgereModemAudio) Agere Modem Call Progress Audio [Win32_Own | Auto | Running] -> C:\Windows\SysNative\agr64svc.exe -> [2008/07/22 22:54:06 | 00,015,872 | ---- | M | MD5 = 8B0D8B5BAFD4C9D57B41426BC68B32F9] (Agere Systems)
    64bit-(ETService) Empowering Technology Service [Win32_Own | Auto | Running] -> C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe -> [2008/06/11 15:18:30 | 00,024,576 | ---- | M | MD5 = 4D06D9A26227AC485305133916888DF1] ()
    64bit-(ForceWare Intelligent Application Manager (IAM)) ForceWare Intelligent Application Manager (IAM) [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -> [2008/09/08 15:11:02 | 00,726,016 | ---- | M | MD5 = EDFE4EE6513E9D9B33799C6838DA7B5F] ()
    64bit-(lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysNative\lxbccoms.exe -> [2007/03/16 01:24:18 | 00,566,704 | ---- | M | MD5 = 5179331910B68F41F70E8CB481349D4A] ( )
    64bit-(nSvcIp) ForceWare IP service [Win32_Own | Auto | Running] -> C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -> [2008/09/08 15:09:52 | 00,221,696 | ---- | M | MD5 = 0304AC408043C6CB9E88FA6C813CF841] ()
    64bit-(SfCtlCom) Trend Micro Central Control Component [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe -> [2009/03/31 23:25:06 | 00,833,872 | ---- | M | MD5 = 067C6A28521DC73D60BF1759B0AA8287] (Trend Micro Inc.)
    64bit-(TMBMServer) Trend Micro Unauthorized Change Prevention Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\BM\TMBMSRV.exe -> [2009/03/03 04:39:56 | 00,565,512 | ---- | M | MD5 = 5868DA3C4C678D82BE43B62908265E7E] (Trend Micro Inc.)
    64bit-(TmProxy) Trend Micro Proxy Service [Win32_Own | Auto | Running] -> C:\Program Files\Trend Micro\Internet Security\TmProxy.exe -> [2009/03/31 23:25:32 | 00,900,360 | ---- | M | MD5 = F06885E70F0746F082CFC196288B3412] (Trend Micro Inc.)
    64bit-(WinDefend) Windows Defender [Win32_Shared | Auto | Stopped] -> C:\Program Files\Windows Defender\mpsvc.dll -> [2008/01/20 22:47:32 | 00,383,544 | ---- | M | MD5 = 7D2A43E8FDF725A1133F6C6056A72CDC] (Microsoft Corporation)
    64bit-(WMPNetworkSvc) Windows Media Player Network Sharing Service [Win32_Own | On_Demand | Running] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/20 22:52:15 | 01,216,000 | ---- | M | MD5 = 56382A5EB85A25446745E3BD6D50A3A5] (Microsoft Corporation)
    (AOL ACS) AOL Connectivity Service [Win32_Own | Auto | Running] -> C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe -> [2006/10/23 08:50:35 | 00,046,640 | R--- | M | MD5 = 85180CF88C5EBAD73B452A43A004CA51] (AOL LLC)
    (clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:42:14 | 00,066,368 | ---- | M | MD5 = 8EE772032E2FE80A924F3B8DD5082194] (Microsoft Corporation)
    (clr_optimization_v2.0.50727_64) Microsoft .NET Framework NGEN v2.0.50727_X64 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -> [2009/03/30 00:39:54 | 00,089,920 | ---- | M | MD5 = CE07A466201096F021CD09D631B21540] (Microsoft Corporation)
    (ehRecvr) Windows Media Center Receiver Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehRecvr.exe -> [2008/01/20 22:51:36 | 00,344,064 | ---- | M | MD5 = 14CE384D2E27B64C256BDA4DC39C312D] (Microsoft Corporation)
    (ehSched) Windows Media Center Scheduler Service [Win32_Own | On_Demand | Stopped] -> C:\Windows\ehome\ehsched.exe -> [2008/01/20 22:51:36 | 00,153,600 | ---- | M | MD5 = B93159C1313D66FDFBBE876F5189CD52] (Microsoft Corporation)
    (ehstart) Windows Media Center Service Launcher [Win32_Shared | Auto | Stopped] -> C:\Windows\ehome\ehstart.dll -> [2006/11/02 11:03:48 | 00,015,360 | ---- | M | MD5 = F5EE2527D74449868E3C3227A59BCD28] (Microsoft Corporation)
    (FontCache3.0.0.0) Windows Presentation Foundation Font Cache 3.0.0.0 [Win32_Own | On_Demand | Stopped] -> C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe -> [2009/02/18 14:40:04 | 00,042,840 | ---- | M | MD5 = BC5B0BE5AF3510B0FD8C140EE42C6D3E] (Microsoft Corporation)
    (GameConsoleService) GameConsoleService [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe -> [2008/05/05 18:25:46 | 00,165,416 | ---- | M | MD5 = 617DC2877015270914CA3C03873560D5] (WildTangent, Inc.)
    (gusvc) Google Software Updater [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe -> [2009/04/25 02:15:11 | 00,182,768 | ---- | M | MD5 = CC839E8D766CC31A7710C9F38CF3E375] (Google)
    (idsvc) Windows CardSpace [Win32_Shared | Unknown | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 14:39:11 | 00,857,432 | ---- | M | MD5 = 749F5F8CEDCA70F2A512945325FC489D] (Microsoft Corporation)
    (KeyIso) CNG Key Isolation [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\keyiso.dll -> [2006/11/02 05:46:05 | 00,018,944 | ---- | M | MD5 = 74C2F29CC612B2B34231BEBD824D2FB2] (Microsoft Corporation)
    (lxbc_device) lxbc_device [Win32_Own | Auto | Running] -> C:\Windows\SysWow64\lxbccoms.exe -> [2007/03/16 01:24:02 | 00,537,520 | ---- | M | MD5 = 31E0CCB891B94056E062886CB69174D2] ( )
    (MSDTC) Distributed Transaction Coordinator [Win32_Own | Unknown | Stopped] -> C:\Windows\SysWow64\Msdtc -> [2006/11/02 09:34:14 | 00,000,000 | ---D | M]
    (Netlogon) Netlogon [Win32_Shared | On_Demand | Stopped] -> C:\Windows\SysWow64\netlogon.dll -> [2009/04/11 02:28:23 | 00,592,896 | ---- | M | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
    (odserv) Microsoft Office Diagnostics Service [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -> [2007/08/24 07:19:12 | 00,443,776 | ---- | M | MD5 = E54AA592A65F317390EEE386A8821692] (Microsoft Corporation)
    (ose) Office Source Engine [Win32_Own | On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE -> [2006/10/26 18:03:08 | 00,145,184 | ---- | M | MD5 = 5A432A042DAE460ABE7199B758E8606C] (Microsoft Corporation)
    (RichVideo) Cyberlink RichVideo Service(CRVS) [Win32_Own | Auto | Running] -> C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe -> [2008/06/29 11:10:18 | 00,241,734 | ---- | M | MD5 = 805AE1F90C64758D19AAA001CF8CBA12] ()
    (vds) Virtual Disk [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vds.mof -> [2006/11/02 02:35:15 | 00,060,994 | ---- | M | MD5 = 21A96F0C1B123F2463C6D624F125EAC9] ()
    (VSS) Volume Shadow Copy [Win32_Own | On_Demand | Stopped] -> C:\Windows\SysWow64\Wbem\vss.mof -> [2006/11/02 02:35:15 | 00,055,846 | ---- | M | MD5 = 9E4414C27EEC14EAF36A4BD24CFEEA93] ()

    [Driver Services - Safe List]
    64bit-(AgereSoftModem) Agere Systems Soft Modem [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\agrsm64.sys -> [2008/07/22 22:54:33 | 01,253,376 | ---- | M | MD5 = 385471F8147E1BD6A08C031E3AAD3910] (Agere Systems)
    64bit-(AVer88xHD) AVerMedia 23888 AvStream Video Capture [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\AVer88xHD64.sys -> [2007/04/10 04:51:10 | 00,432,256 | ---- | M | MD5 = 5E76DEBBA4311AC1C44DE83D59A9584E] (AVerMedia TECHNOLOGIES, Inc.)
    64bit-(HdAudAddService) Microsoft 1.1 UAA Function Driver for High Definition Audio Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\HdAudio.sys -> [2006/11/02 01:28:10 | 00,273,920 | ---- | M | MD5 = DF45F8142DC6DF9D18C39B3EFFBD0409] (Microsoft Corporation)
    64bit-(nvamacpi) Nvidia Away Mode System [Kernel | Boot | Running] -> C:\Windows\SysNative\DRIVERS\NVAMACPI.sys -> [2005/08/27 13:19:21 | 00,028,192 | ---- | M | MD5 = 2B0885148F27B49365D3AD489F7D7B70] (NVIDIA Corporation)
    64bit-(PAC207) SoC PC-Camera [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\PFC027.SYS -> [2006/12/05 11:34:26 | 00,572,416 | ---- | M | MD5 = 3A6DCEB1848470320E4A3C12D7A35B1C] (PixArt Imaging Inc.)
    64bit-(RSUSBSTOR) RTS5121.Sys Realtek USB Card Reader [Kernel | On_Demand | Running] -> C:\Windows\SysNative\Drivers\RTS5121.sys -> [2008/06/04 02:06:54 | 00,204,288 | ---- | M | MD5 = 1807EA271C9685A25571D94AE4E3A8DD] (Realtek Semiconductor Corporation)
    64bit-(tmpreflt) tmpreflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmpreflt.sys -> [2009/03/05 21:17:50 | 00,042,000 | ---- | M | MD5 = 681747A1EDEF58209192B2C4975516FC] (Trend Micro Inc.)
    64bit-(tmtdi) Trend Micro TDI Driver [Kernel | System | Running] -> C:\Windows\SysNative\DRIVERS\tmtdi.sys -> [2009/03/03 19:12:46 | 00,096,784 | ---- | M | MD5 = C12D4E5E96A8CE0FD6F74F9C43191CFE] (Trend Micro Inc.)
    64bit-(tmxpflt) tmxpflt [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\tmxpflt.sys -> [2009/03/05 21:17:50 | 00,235,536 | ---- | M | MD5 = 77E4C0F95931FEEB32E55A8596C9B79A] (Trend Micro Inc.)
    64bit-(vsapint) vsapint [Kernel | Auto | Running] -> C:\Windows\SysNative\DRIVERS\vsapint.sys -> [2009/03/05 21:17:50 | 01,839,632 | ---- | M | MD5 = F7D9B9631A59C9E4C14C6904D4376C13] (Trend Micro Inc.)
    64bit-(wanatw) WAN Miniport (ATW) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\DRIVERS\wanatw64.sys -> [2006/11/29 18:24:49 | 00,024,064 | ---- | M | MD5 = ECEB715BECE47E101DDEC06B11126066] (America Online, Inc.)
    64bit-(WpdUsb) WpdUsb [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\DRIVERS\wpdusb.sys -> [2008/01/20 22:47:28 | 00,046,080 | ---- | M | MD5 = 6329D1990DB931073B86AB5946D8E317] (Microsoft Corporation)
    (int15) int15 [Kernel | Auto | Running] -> C:\Windows\SysWOW64\drivers\int15_64.sys -> [2008/06/11 15:13:24 | 00,017,952 | ---- | M | MD5 = 8C7FA71CB1EBCD3EDE8958D27B1BF0B4] (Acer, Inc.)
    (mpsdrv) Windows Firewall Authorization Driver [Kernel | On_Demand | Running] -> C:\Windows\SysWow64\Wbem\mpsdrv.mof -> [2006/09/18 17:35:23 | 00,001,088 | ---- | M | MD5 = 74D68CB40BCD45AAE89A8BECC87D3868] ()
    (Tcpip) TCP/IP Protocol Driver [Kernel | Boot | Running] -> C:\Windows\SysWow64\Wbem\tcpip.mof -> [2006/09/18 17:36:40 | 00,003,066 | ---- | M | MD5 = EEC4A068DE477651214F6C8014ECBEC0] ()

    [Registry - Safe List]
    < 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
    HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
    HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\System32\blank.htm ->
    HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
    HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
    HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
    HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\SysWOW64\blank.htm ->
    HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
    HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_LOCAL_MACHINE\: URLSearchHooks\\"{EA756889-2338-43DB-8F07-D1CA6FB9C90D}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [IAOLTBSearch Class] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    < Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> ->
    HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> ->
    HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> ->
    < Internet Explorer Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Default_Page_URL" -> http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Local Page" -> C:\Windows\system32\blank.htm ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"SearchDefaultBranded" -> 1 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"Start Page" -> http://www.google.com/ ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: Main\\"StartPageCache" -> 1 ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\: "ProxyEnable" -> 0 ->
    < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
    HKLM\software\mozilla\Firefox\Extensions -> ->
    HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} -> C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\] -> [2009/06/26 04:11:05 | 00,000,000 | ---D | M]
    < FireFox Extensions [User Folders] > ->
    < HOSTS File > (761 bytes and 20 lines) -> C:\Windows\SysNative\Drivers\etc\hosts ->
    Reset Hosts
    127.0.0.1 localhost
    ::1 localhost
    < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
    {02478D38-C3F9-4efb-9B51-7695ECA05670} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [&Yahoo! Toolbar Helper] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
    {18DF081C-E8AD-4283-A596-FA578C2EBDC3} [HKLM] -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [Adobe PDF Link Helper] -> [2009/02/27 12:07:26 | 00,075,128 | ---- | M | MD5 = 5CF6190CD875DA6B35256FEE573E7908] (Adobe Systems Incorporated)
    {5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
    {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar Loader] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    {9030D464-4C02-4ABF-8ECC-5164760863C6} [HKLM] -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [Windows Live Sign-in Helper] -> [2008/11/18 17:47:06 | 00,408,952 | ---- | M | MD5 = 4B9CBC54FA3A846649F59BC185DF63DF] (Microsoft Corporation)
    {AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar Helper] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
    {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} [HKLM] -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [Google Toolbar Notifier BHO] -> [2009/04/25 02:15:12 | 00,668,656 | ---- | M | MD5 = D1585B06DED161E13B905DC4FFBF7F12] (Google Inc.)
    {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [Google Dictionary Compression sdch] -> [2009/04/25 02:02:33 | 00,470,512 | ---- | M | MD5 = E35BCCB1D1D96F8E5B09C72AF70EC3F6] (Google Inc.)
    {DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2009/04/19 22:18:14 | 00,035,840 | ---- | M | MD5 = 96A225C7F5346A9E81FC3DFA89A900C0] (Sun Microsystems, Inc.)
    {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [SingleInstance Class] -> [2008/07/28 06:47:42 | 00,160,496 | ---- | M | MD5 = F64C4241FE5E519F62C47C361DC671D7] (Yahoo! Inc)
    < Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
    "{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" [HKLM] -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [Yahoo! Toolbar] -> [2008/07/28 06:47:40 | 00,882,416 | ---- | M | MD5 = 6A2E0E49A4F2A9DF3E6293E37E7486BD] (Yahoo! Inc.)
    < Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\Software\Microsoft\Internet Explorer\Toolbar\ ->
    WebBrowser\\"{2318C2B1-4965-11D4-9B18-009027A5CD4F}" [HKLM] -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll [Google Toolbar] -> [2009/04/25 02:02:35 | 00,259,696 | ---- | M | MD5 = 6154D449D3856AE42EB38531CE22DC83] (Google Inc.)
    WebBrowser\\"{DE9C389F-3316-41A7-809B-AA305ED9D922}" [HKLM] -> C:\Program Files (x86)\AOL Toolbar\aoltb.dll [AOL Toolbar] -> [2008/10/21 14:40:30 | 01,275,176 | ---- | M | MD5 = 55A679DE09EB2A3E39256226ABAD11F5] (AOL LLC)
    < 64bit-Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "NvCplDaemon" -> C:\Windows\SysNative\NvCpl.DLL [RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup] -> [2008/10/07 14:03:00 | 15,934,496 | ---- | M | MD5 = ABB919582B746BF56271F1E4B2410498] (NVIDIA Corporation)
    "NVRaidService" -> C:\Windows\SysNative\nvraidservice.exe [C:\Windows\system32\nvraidservice.exe] -> [2008/08/18 23:01:52 | 00,333,344 | ---- | M | MD5 = 5686E81D6247A61C67F2C1055271205C] (NVIDIA Corporation)
    "RtHDVCpl" -> C:\Windows\RAVCpl64.exe [RAVCpl64.exe] -> [2008/09/18 07:02:14 | 06,495,264 | ---- | M | MD5 = BAA1FEA046B3F857C82595B396719AAC] (Realtek Semiconductor)
    "Skytel" -> C:\Windows\SkyTel.exe [Skytel.exe] -> [2008/09/18 07:02:52 | 01,833,504 | ---- | M | MD5 = C2B406805F8F6B8642464FF053A22F8F] (Realtek Semiconductor Corp.)
    "UfSeAgnt.exe" -> C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe ["C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"] -> [2009/03/31 23:25:36 | 00,989,432 | ---- | M | MD5 = ED1EC273AF8E0BFCF34EE76F210EF482] (Trend Micro Inc.)
    "Windows Defender" -> C:\Program Files\Windows Defender\MSASCui.exe [%ProgramFiles%\Windows Defender\MSASCui.exe -hide] -> [2008/01/20 22:47:32 | 01,584,184 | ---- | M | MD5 = 48DD40677817CE1053C2315F5A87E0D3] (Microsoft Corporation)
    < Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "Adobe Reader Speed Launcher" -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe ["C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"] -> [2009/02/27 17:10:28 | 00,035,696 | ---- | M | MD5 = 452FA961163EF4AEE4815796A13AB2CF] (Adobe Systems Incorporated)
    "eRecoveryService" -> [] -> File not found
    "HostManager" -> C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe ["C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"] -> [2008/06/24 14:34:50 | 00,041,824 | ---- | M | MD5 = 22870F235504152FE8873986A3D94905] (AOL LLC)
    "LchDrvKey" -> C:\Windows\LchDrvKey.exe [LchDrvKey.exe] -> [2007/03/28 21:55:54 | 00,036,864 | ---- | M | MD5 = B94C288D7BC9760A01304880A7CE18EB] ()
    "LedKey" -> C:\Windows\CNYHKey.exe [CNYHKey.exe] -> [2008/04/23 21:05:16 | 00,339,968 | ---- | M | MD5 = BFB90D4063BD1D976090790E4EB8FD7C] (Creative)
    "P2Go_Menu" -> C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"] -> [2008/06/13 22:11:32 | 00,210,216 | ---- | M | MD5 = 601D77C0AA637A99073210894554B6BA] (CyberLink Corp.)
    "SunJavaUpdateSched" -> C:\Program Files (x86)\Java\jre6\bin\jusched.exe ["C:\Program Files (x86)\Java\jre6\bin\jusched.exe"] -> [2009/04/19 22:18:14 | 00,148,888 | ---- | M | MD5 = A2D390F1F2408B94EF34BFE3A00C29D3] (Sun Microsystems, Inc.)
    "UpdatePDRShortCut" -> C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe ["C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"] -> [2008/01/04 15:02:26 | 00,222,504 | ---- | M | MD5 = AAD52179D4A526AD4A705B87C6E4F72A] (CyberLink Corp.)
    < Run [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
    "WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
    < Run [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem] -> [2009/04/11 02:28:03 | 01,233,920 | ---- | M | MD5 = 9E35FF7F943AE0FB89192BFE058B7FD4] (Microsoft Corporation)
    "WindowsWelcomeCenter" -> C:\Windows\SysWow64\oobefldr.dll [rundll32.exe oobefldr.dll,ShowWelcomeCenter] -> [2009/04/11 02:28:23 | 02,153,472 | ---- | M | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
    < Run [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
    "AOL Fast Start" -> C:\Program Files (x86)\AOL 9.1\aol.exe ["C:\PROGRA~2\AOL9~1.1\AOL.EXE" -b] -> [2008/11/06 07:42:54 | 00,050,472 | ---- | M | MD5 = C05CF2CA46A3AB41E6A2632A4C940A87] (AOL, LLC.)
    "ehTray.exe" -> C:\Windows\ehome\ehTray.exe [C:\Windows\ehome\ehTray.exe] -> [2008/01/20 22:51:33 | 00,138,240 | ---- | M | MD5 = 65437DAD4F238EA9549408A783002222] (Microsoft Corporation)
    "Messenger (Yahoo!)" -> C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe ["C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet] -> [2009/03/18 18:50:30 | 04,363,504 | ---- | M | MD5 = DB06B12E8DE572AB8B8C482E3EE574F5] (Yahoo! Inc.)
    "Sidebar" -> C:\Program Files\Windows Sidebar\sidebar.exe [C:\Program Files\Windows Sidebar\sidebar.exe /autoRun] -> [2009/04/11 03:10:53 | 01,555,968 | ---- | M | Unable to obtain MD5] (Microsoft Corporation)
    "swg" -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe] -> [2009/04/11 15:53:06 | 00,068,856 | ---- | M | MD5 = E616A6A6E91B0A86F2F6217CDE835FFE] (Google Inc.)
    "WMPNSCFG" -> C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe [C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe] -> File not found
    < RunOnce [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce ->
    "Shockwave Updater" -> [C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"[URL]http://www.playhub.com/sports-games/313/Sewer-Run.html[/URL]"] -> File not found
    < Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}
    \Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppName" -> [MyCamera.exe] -> File not found
    \Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"AppPath" -> C:\Program Files (x86)\Canon\CameraWindow\MyCamera [C:\Program Files (x86)\Canon\CameraWindow\MyCamera] -> [2009/05/04 13:41:48 | 00,000,000 | ---D | M]
    \Low Rights\ElevationPolicy\{A89C4660-3DD9-44bc-8194-4824F1733289}\\"Policy" -> [3] -> File not found
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}
    \Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppName" -> [ZoomBrowser.exe] -> File not found
    \Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"AppPath" -> C:\Program Files (x86)\Canon\ZoomBrowser EX\Program [C:\Program Files (x86)\Canon\ZoomBrowser EX\Program] -> [2009/05/04 13:42:05 | 00,000,000 | ---D | M]
    \Low Rights\ElevationPolicy\{F365CC6C-656A-4108-8CF0-16DF98696395}\\"Policy" -> [3] -> File not found
    < CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
    [URL="file://\\"NoActiveDesktop"]\\"NoActiveDesktop[/URL]" -> [1] -> File not found
    [URL="file://\\"ForceActiveDesktopOn"]\\"ForceActiveDesktopOn[/URL]" -> [0] -> File not found
    [URL="file://\\"BindDirectlyToPropertySetStorage"]\\"BindDirectlyToPropertySetStorage[/URL]" -> [0] -> File not found
    [URL="file://\\"NoActiveDesktopChanges"]\\"NoActiveDesktopChanges[/URL]" -> [0] -> File not found
    < CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
    [URL="file://\\"ConsentPromptBehaviorAdmin"]\\"ConsentPromptBehaviorAdmin[/URL]" -> [2] -> File not found
    [URL="file://\\"ConsentPromptBehaviorUser"]\\"ConsentPromptBehaviorUser[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableInstallerDetection"]\\"EnableInstallerDetection[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableLUA"]\\"EnableLUA[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableSecureUIAPaths"]\\"EnableSecureUIAPaths[/URL]" -> [1] -> File not found
    [URL="file://\\"EnableVirtualization"]\\"EnableVirtualization[/URL]" -> [1] -> File not found
    [URL="file://\\"PromptOnSecureDesktop"]\\"PromptOnSecureDesktop[/URL]" -> [1] -> File not found
    [URL="file://\\"ValidateAdminCodeSignatures"]\\"ValidateAdminCodeSignatures[/URL]" -> [0] -> File not found
    [URL="file://\\"dontdisplaylastusername"]\\"dontdisplaylastusername[/URL]" -> [0] -> File not found
    [URL="file://\\"legalnoticecaption"]\\"legalnoticecaption[/URL]" -> [] -> File not found
    [URL="file://\\"legalnoticetext"]\\"legalnoticetext[/URL]" -> [] -> File not found
    [URL="file://\\"scforceoption"]\\"scforceoption[/URL]" -> [0] -> File not found
    [URL="file://\\"shutdownwithoutlogon"]\\"shutdownwithoutlogon[/URL]" -> [1] -> File not found
    [URL="file://\\"undockwithoutlogon"]\\"undockwithoutlogon[/URL]" -> [1] -> File not found
    [URL="file://\\"FilterAdministratorToken"]\\"FilterAdministratorToken[/URL]" -> [0] -> File not found
    [URL="file://\\"EnableUIADesktopToggle"]\\"EnableUIADesktopToggle[/URL]" -> [0] -> File not found
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
    \UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found
    \UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found
    < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
    [URL="file://\\"NoDesktopCleanupWizard"]\\"NoDesktopCleanupWizard[/URL]" -> [1] -> File not found
    < Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
    {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Button: Blog This] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
    {219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll [Menu: &Blog This in Windows Live Writer] -> [2008/12/03 02:27:36 | 00,187,224 | ---- | M | MD5 = 19737BD6606A96AB311BBC87659626AC] (Microsoft Corporation)
    {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Button: Send to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
    {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll [Menu: S&end to OneNote] -> [2007/08/29 04:49:28 | 00,606,120 | ---- | M | MD5 = 151EA80DA6D585BC8D011A89B5A8A97E] (Microsoft Corporation)
    {92780B25-18CC-41C8-B9BE-3C9C571A8263}:{FF059E31-CC5A-4E2E-BF3B-96E929D65503} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL [Button: Research] -> [2006/10/27 00:12:22 | 00,040,424 | ---- | M | MD5 = 7FC19DA1DC70C78D2FBD7A1D10942051] (Microsoft Corporation)
    < 64bit-Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
    "" -> http://
    < Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
    "" -> http://
    < 64bit-Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < 64bit-Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. ->
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Trusted Sites Domains [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
    objects_aol.com
    [*] -> Out of zone range - ( 5 ) ->
    1 domain(s) and sub-domain(s) not assigned to a zone.
    < Trusted Sites Ranges [HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\] > -> HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
    HKEY_USERS\S-1-5-21-2417119570-3117059885-3167079976-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
    < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
    {166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab [Shockwave ActiveX Control] ->
    {4871A87A-BFDD-4106-8153-FFDE2BAC2967} [HKLM] -> http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab [DLM Control] ->
    {9C23D886-43CB-43DE-B2DB-112A68D7E10A} [HKLM] -> http://lads.myspace.com/upload/MySpaceUploader2.cab [MySpace Uploader Control] ->
    {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} [HKLM] -> http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe [Reg Error: Key error.] ->
    < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
    DhcpNameServer -> 10.0.0.1 ->
    < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
    {9712E214-2095-4240-BE72-812D046DB980}\\DhcpNameServer -> 10.0.0.1 (NVIDIA nForce 10/100/1000 Mbps Ethernet ) ->
    < 64bit-Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
    64bit-*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
    explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 03:10:17 | 03,079,168 | ---- | M | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
    *MultiFile Done* -> ->
    < Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
    *Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
    explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/04/11 02:27:36 | 02,926,592 | ---- | M | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
    *MultiFile Done* -> ->
  • edited June 2009
    < Vista Public Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\AuthorizedApplications ->
    < Vista Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications ->
    < Vista Active Firewall Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
    {3F8907F3-E4DE-4260-BB5F-938A3DE8E186} -> lport=2869 | protocol=6 | dir=in | action=allow | name=windows live messenger (upnp-in) | app=system |
    {4104AA77-862A-4930-8044-BB2521DFCFFE} -> lport=1900 | protocol=17 | dir=in | action=allow | name=windows live messenger (ssdp-in) | app=svchost.exe | svc=ssdpsrv |
    < Vista Active Application Exception Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules ->
    {0B724075-D525-47F6-8D4B-9E245EC70262} -> profile=private | protocol=6 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
    {109D9062-5376-4803-87AC-657754C3D249} -> profile=private | protocol=17 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
    {1B42F944-37D0-4489-BD8D-B48BEA9B315D} -> dir=in | action=allow | name=windows live messenger | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
    {40D8ACBC-D4AA-4FF0-9CBC-D519575686A9} -> profile=private | protocol=17 | dir=in | action=allow | name=aol shared components | app=c:\program files (x86)\common files\aol\1240197259\ee\aolsoftware.exe |
    {44211C36-AA6F-4C10-88A7-C468053E0DED} -> dir=in | action=allow | name=cyberlink powerdirector | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |
    {52C00A5E-B486-4A04-8830-50426C0CDEC1} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
    {5E7E5103-2C83-4832-BB34-45E2BFA3E760} -> profile=public | protocol=6 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    {79F58122-9134-420A-9DE3-606741936991} -> profile=private | protocol=6 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
    {874CBC43-45DF-4CB6-A706-3036EC2A1EFA} -> dir=in | action=allow | name=windows live call | app=c:\program files (x86)\windows live\messenger\wlcsdk.exe |
    {8FF32FF2-91BF-4786-BAF7-ED52E99B5686} -> profile=private | protocol=17 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
    {9083699D-DA2A-489B-AF64-AE61BBDEBC78} -> profile=private | protocol=17 | dir=in | action=allow | name=aol | app=c:\program files (x86)\aol 9.1\waol.exe |
    {9B85772F-6E6E-42FB-9036-DC90C765F5E5} -> profile=private | protocol=6 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
    {A3E0E701-CF8A-47F7-9C91-31067D3050A6} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service dialer | app=c:\program files (x86)\common files\aol\acs\aoldial.exe |
    {A442B7B5-04C7-47C8-A27C-FDBA207AB5AB} -> profile=private | protocol=6 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
    {A6FF2A80-7BA5-4D3E-9E9E-3A8882969504} -> profile=private | protocol=17 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
    {B8E5CDEB-F407-4A20-A242-DC1CC504AA7E} -> profile=private | protocol=6 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
    {C0142577-923F-4E22-A0DF-8489C85CA3DC} -> profile=private | protocol=17 | dir=in | action=allow | name=z500-z600 series server | app=c:\windows\syswow64\lxbccoms.exe |
    {C11858D5-051F-42B8-9C8D-2B05E596ABDF} -> profile=private | protocol=6 | dir=in | action=allow | name=yahoo! messenger | app=c:\program files (x86)\yahoo!\messenger\yahoomessenger.exe |
    {C4ED3121-7FF3-42C6-9C51-135DF8317CD0} -> profile=private | protocol=6 | dir=in | action=allow | name=aol topspeed | app=c:\program files (x86)\common files\aol\topspeed\3.0\aoltpsd3.exe |
    {C88934A9-D75C-47E1-B214-23297DD1DBAF} -> profile=private | protocol=17 | dir=in | action=allow | name=lexmark communications system | app=c:\windows\system32\lxbccoms.exe |
    {C9C3854F-F530-45C8-B10E-B15236BD2332} -> profile=private | protocol=6 | dir=in | action=allow | name=printer status window | app=c:\windows\system32\spool\drivers\x64\3\lxbcpswx.exe |
    {CDA3C051-F009-4EDF-8FF7-D98D030B5BFC} -> profile=private | protocol=6 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
    {D9E28F03-2CED-4A60-9C0B-202149E69932} -> profile=private | protocol=17 | dir=in | action=allow | name=aol system information | app=c:\program files (x86)\common files\aol\system information\sinf.exe |
    {E1FE8404-25BC-4E59-B8AF-A215A4B51D1F} -> profile=public | protocol=17 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
    {E5638F40-7C0E-4BBD-A02A-50501C0E8432} -> profile=private | protocol=17 | dir=in | action=allow | name=aol connectivity service | app=c:\program files (x86)\common files\aol\acs\aolacsd.exe |
    {EB9061D6-6081-4E5D-954F-284764B346C1} -> profile=private | protocol=6 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
    {F55E85FC-E7D1-4771-8D3F-22F505B458D0} -> profile=private | protocol=17 | dir=in | action=allow | name=aol loader | app=c:\program files (x86)\common files\aol\loader\aolload.exe |
    {FC53E6EB-19E6-4867-BA34-8B33A3833C39} -> dir=in | action=allow | name=windows live sync | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
    TCP Query User{907A49E8-F920-4158-8172-426988741353}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=6 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
    UDP Query User{99BE73CA-B2F5-40F4-BBB0-0AA16F0D47DE}C:\program files (x86)\internet explorer\iexplore.exe -> profile=private | protocol=17 | dir=in | action=allow | name=internet explorer | app=c:\program files (x86)\internet explorer\iexplore.exe |
    < SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
    "AlternateShell" -> cmd.exe ->
    < CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
    "AutoRun" -> 1 ->
    "DisplayName" -> CD-ROM Driver ->
    "ImagePath" -> C:\Windows\SysNative\DRIVERS\cdrom.sys [system32\DRIVERS\cdrom.sys] -> [2009/04/11 01:34:39 | 00,079,872 | ---- | M | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
    < MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->

    [Registry - Additional Scans - Safe List]
    < 64bit-Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
    {071c9b48-7c32-4621-a0ac-3f809523288f} -> Microsoft Visual C++ 2005 Redistributable (x64)
    {40E12A55-C504-4223-AFAC-7672DBF1ACDE} -> Trend Micro AntiVirus
    {70E8EBD5-78C9-4258-B20A-5098CCA000F0} -> Dolby Control Center
    {718D791F-F4E8-4aa7-98A6-15FDED17BDD0} -> Trend Micro AntiVirus
    {7CFA46E3-CC2F-4355-82AE-6012DC3633FD} -> NVIDIA ForceWare Network Access Manager
    {90120000-002A-0000-1000-0000000FF1CE} -> Microsoft Office Office 64-bit Components 2007
    {90120000-002A-0409-1000-0000000FF1CE} -> Microsoft Office Shared 64-bit MUI (English) 2007
    {90120000-0116-0409-1000-0000000FF1CE} -> Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
    {95120000-00B9-0409-1000-0000000FF1CE} -> Microsoft Application Error Reporting
    {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} -> Microsoft .NET Framework 3.5 SP1
    Agere Systems Soft Modem -> Agere Systems PCI-SV92PP Soft Modem
    Lexmark Z500-Z600 Series -> Lexmark Z500-Z600 Series
    Microsoft .NET Framework 3.5 SP1 -> Microsoft .NET Framework 3.5 SP1
    NVIDIA Drivers -> NVIDIA Drivers
    < Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
    {020D8396-D6D9-4B53-A9A1-83C47E2E27AA} -> Windows Live Call
    {0AAA9C97-74D4-47CE-B089-0B147EF3553C} -> Windows Live Messenger
    {18455581-E099-4BA8-BC6B-F34B2F06600C} -> Google Toolbar for Internet Explorer
    {1A15507A-8551-4626-915D-3D5FA095CC1B} -> Corel Paint Shop Pro X
    {205C6BDD-7B73-42DE-8505-9A093F35A238} -> Windows Live Upload Tool
    {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} -> MSVCRT
    {2318C2B1-4965-11d4-9B18-009027A5CD4F} -> Google Toolbar for Internet Explorer
    {236CFC57-AA67-4AA4-B948-0CD713BB7760} -> Go Casino
    {26A24AE4-039D-4CA4-87B4-2F83216013FF} -> Java(TM) 6 Update 13
    {3248F0A8-6813-11D6-A77B-00B0D0160050} -> Java(TM) 6 Update 5
    {40BF1E83-20EB-11D8-97C5-0009C5020658} -> CyberLink Power2Go
    {44CDBD1B-89FB-4E02-8319-2A4C550F664A} -> RTC Client API v1.2
    {4AB8B41B-3AF1-46BE-99B0-0ACD3B300C0A} -> Junk Mail filter update
    {505DF7A3-88D5-4DD6-9AD5-C98C2ED0CEC4} -> Windows Live Sign-in Assistant
    {57634571-FD82-4BEC-B822-A1ED7765474F}_is1 -> SmartLauncher
    {5F00DF7E-418B-4CD9-8EC5-781156BCC49E} -> Microsoft Money Shared Libraries
    {63C1109E-D977-49ED-BCE3-D00D0BF187D6} -> Windows Live Mail
    {67E03279-F703-408F-B4BF-46B5FC8D70CD} -> Microsoft Works
    {6A92E5C5-0578-443D-91F3-92ECE5F2CAE2} -> Windows Live Writer
    {7299052b-02a4-4627-81f2-1818da5d550d} -> Microsoft Visual C++ 2005 Redistributable
    {797EE0CA-8165-405C-B5CE-F11EC20F1BB0} -> Microsoft VC9 runtime libraries
    {7C4196CA-CA41-4F34-9C08-7724E7705D52} -> Jasc Animation Shop 3
    {7F811A54-5A09-4579-90E1-C93498E230D9} -> Gateway Recovery Management
    {80E158EA-7181-40FE-A701-301CE6BE64AB} -> CyberLink MediaShow
    {8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E} -> Choice Guard
    {90120000-0016-0409-0000-0000000FF1CE} -> Microsoft Office Excel MUI (English) 2007
    {90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-0018-0409-0000-0000000FF1CE} -> Microsoft Office PowerPoint MUI (English) 2007
    {90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-001B-0409-0000-0000000FF1CE} -> Microsoft Office Word MUI (English) 2007
    {90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-001F-0409-0000-0000000FF1CE} -> Microsoft Office Proof (English) 2007
    {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{3EC77D26-799B-4CD8-914F-C1565E796173} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-001F-040C-0000-0000000FF1CE} -> Microsoft Office Proof (French) 2007
    {90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{430971B1-C31E-45DA-81E0-72C095BAB72C} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-001F-0C0A-0000-0000000FF1CE} -> Microsoft Office Proof (Spanish) 2007
    {90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{F7A31780-33C4-4E39-951A-5EC9B91D7BF1} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-0020-0409-0000-0000000FF1CE} -> Compatibility Pack for the 2007 Office system
    {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{00C5525B-3CB3-467D-8100-2E6FB306CD86} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-002C-0409-0000-0000000FF1CE} -> Microsoft Office Proofing (English) 2007
    {90120000-006E-0409-0000-0000000FF1CE} -> Microsoft Office Shared MUI (English) 2007
    {90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-00A1-0409-0000-0000000FF1CE} -> Microsoft Office OneNote MUI (English) 2007
    {90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-0115-0409-0000-0000000FF1CE} -> Microsoft Office Shared Setup Metadata MUI (English) 2007
    {90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{FAD8A83E-9BAC-4179-9268-A35948034D85} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {91120000-002F-0000-0000-0000000FF1CE} -> Microsoft Office Home and Student 2007
    {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{BEE75E01-DD3F-4D5F-B96C-609E6538D419} -> 2007 Microsoft Office Suite Service Pack 1 (SP1)
    {95120000-00AF-0409-0000-0000000FF1CE} -> Microsoft Office PowerPoint Viewer 2007 (English)
    {AC76BA86-7AD7-1033-7B44-A91000000001} -> Adobe Reader 9.1
    {B7BD291B-D415-4484-89A4-82077504BE93}_is1 -> SmartCopy
    {C59C179C-668D-49A9-B6EA-0121CCFC1243} -> CyberLink LabelPrint
    {CB099890-1D5F-11D5-9EA9-0050BAE317E1} -> CyberLink PowerDirector
    {D9D754A1-EAC5-406C-A28B-C49B1E846711} -> Windows Live Essentials
    {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E} -> Microsoft Office Suite Activation Assistant
    {ED5DCA6F-5FEA-47CB-83DB-210A468C298B} -> KB0817 Keyboard Driver
    {EFC1B3CA-9B90-458D-AD7A-A0F2CD6F4A84} -> Realtek Card Reader
    {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} -> Microsoft SQL Server 2005 Compact Edition [ENU]
    {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} -> Realtek High Definition Audio Driver
    {F226C1DA-66D7-4ABC-86B5-3F978A660EBF} -> AOL Mail and AIM Gadget
    {F69E83CF-B440-43F8-89E6-6EA80712109B} -> Windows Live Communications Platform
    {F73A5B18-EB75-4B2C-B32D-9457576E2417} -> Windows Live Photo Gallery
    {FDD810CA-D5E3-40E9-AB7B-36440B0D41EF} -> Windows Live Sync
    Adobe Flash Player ActiveX -> Adobe Flash Player 10 ActiveX
    Adobe Shockwave Player -> Adobe Shockwave Player 11.5
    AOL Emergency Connect Utility 1.0 -> Uninstall AOL Emergency Connect Utility 1.0
    AOL Toolbar -> AOL Toolbar
    AOL Uninstaller -> AOL Uninstaller (Choose which Products to Remove)
    AVerMedia M791 PCIe Combo NTSC/ATSC -> AVerMedia M791 PCIe Combo NTSC/ATSC 6.104.64.5
    Bannershop GIF Animator -> Selteco Bannershop GIF Animator
    CameraWindowDC -> Canon Utilities CameraWindow DC
    CameraWindowDVC6 -> Canon Utilities CameraWindow DC_DV 6 for ZoomBrowser EX
    CameraWindowLauncher -> Canon Utilities CameraWindow
    CANON iMAGE GATEWAY Task -> CANON iMAGE GATEWAY Task for ZoomBrowser EX
    Canon Internet Library for ZoomBrowser EX -> Canon Internet Library for ZoomBrowser EX
    Canon MOV Decoder -> Canon MOV Decoder
    Canon MOV Encoder -> Canon MOV Encoder
    HijackThis -> HijackThis 2.0.2
    HOMESTUDENTR -> Microsoft Office Home and Student 2007
    InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} -> CyberLink Power2Go
    InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD} -> NVIDIA ForceWare Network Access Manager
    InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB} -> CyberLink MediaShow
    InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} -> CyberLink PowerDirector
    Malwarebytes' Anti-Malware_is1 -> Malwarebytes' Anti-Malware
    Money2007b -> Microsoft Money Essentials
    MovieEditTask -> Canon MovieEdit Task for ZoomBrowser EX
    MyCamera -> Canon Utilities MyCamera
    MyCameraDC -> Canon Utilities MyCamera DC
    Personal Printing Guide -> Canon Personal Printing Guide
    PhotoStitch -> Canon Utilities PhotoStitch
    RemoteCaptureTask -> Canon Utilities RemoteCapture Task for ZoomBrowser EX
    SoftwareStarterGuide-DCSD40_46 -> Canon Digital Camera Solution Disk 40-46 Software Starter Guide
    SoftwareUpdUtility -> Download Updater (AOL LLC)
    ViewpointMediaPlayer -> Viewpoint Media Player
    WildTangent gateway Master Uninstall -> Gateway Games
    WinLiveSuite_Wave3 -> Windows Live Essentials
    Yahoo! Companion -> Yahoo! Toolbar
    Yahoo! Messenger -> Yahoo! Messenger
    ZoomBrowser EX -> Canon Utilities ZoomBrowser EX
    ZoomBrowser EX Memory Card Utility -> Canon ZoomBrowser EX Memory Card Utility

    [Files/Folders - Created Within 30 Days]
    TT.png -> C:\Users\Owner\Desktop\TT.png -> [2009/06/28 20:43:52 | 00,200,241 | ---- | C | MD5 = 448D42215DA5326560BB8A1CA93C9566] ()
    OTS.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:13 | 00,513,024 | ---- | C | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
    Malwarebytes -> C:\Users\Owner\AppData\Roaming\Malwarebytes -> [2009/06/28 19:30:23 | 00,000,000 | ---D | C]
    Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/06/28 19:30:22 | 00,000,850 | ---- | C | MD5 = 9AD6C291BC07B05FD556F5132E14FCCE] ()
    mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2009/06/28 19:30:19 | 00,038,160 | ---- | C | MD5 = 148D5D488BA502381C2B7B615F7F84CF] (Malwarebytes Corporation)
    mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2009/06/28 19:30:17 | 00,022,040 | ---- | C | MD5 = CEDB73ADD243D2D654A32C191A9DBDB5] (Malwarebytes Corporation)
    Malwarebytes' Anti-Malware -> C:\Program Files (x86)\Malwarebytes' Anti-Malware -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
    Malwarebytes -> C:\ProgramData\Malwarebytes -> [2009/06/28 19:30:17 | 00,000,000 | ---D | C]
    psp -> C:\Users\Owner\Desktop\psp -> [2009/06/28 03:57:16 | 00,000,000 | ---D | C]
    HijackThis.lnk -> C:\Users\Owner\Desktop\HijackThis.lnk -> [2009/06/28 02:04:16 | 00,001,930 | ---- | C | MD5 = 284D8E8B7E19D0413BB2F9BF09BB64A1] ()
    Trend Micro -> C:\Program Files (x86)\Trend Micro -> [2009/06/28 02:04:16 | 00,000,000 | ---D | C]
    Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2009/06/22 18:24:27 | 00,001,919 | ---- | C | MD5 = 95478CD74436938A7C9C41158D8A132A] ()
    Adobe -> C:\Program Files (x86)\Common Files\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
    Adobe -> C:\Program Files (x86)\Adobe -> [2009/06/22 18:24:21 | 00,000,000 | ---D | C]
    NINA.html -> C:\Users\Owner\Documents\NINA.html -> [2009/06/20 02:14:40 | 00,000,989 | ---- | C | MD5 = 4C33571BCB02BECF1362DE1F9DFD2646] ()
    English_PSPX_RegXtras.exe -> C:\Users\Owner\Desktop\English_PSPX_RegXtras.exe -> [2009/06/12 16:14:32 | 15,935,168 | ---- | C | MD5 = 99FAE6E1E7E13FA9AD43336308084709] (Corel )
    Download Manager -> C:\Users\Owner\AppData\Roaming\Download Manager -> [2009/06/12 16:14:25 | 00,000,000 | ---D | C]
    rpcrt4.dll -> C:\Windows\SysNative\rpcrt4.dll -> [2009/06/09 16:57:55 | 01,305,600 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    rpcrt4.dll -> C:\Windows\SysWow64\rpcrt4.dll -> [2009/06/09 16:57:54 | 00,677,376 | ---- | C | MD5 = 0ABE67004EB4C162F4456E64F90A11FD] (Microsoft Corporation)
    localspl.dll -> C:\Windows\SysNative\localspl.dll -> [2009/06/09 16:57:43 | 00,772,608 | ---- | C | MD5 = 6D82554101FFC7F3F048611FB55327BD] (Microsoft Corporation)
    localspl.dll -> C:\Windows\SysWow64\localspl.dll -> [2009/06/09 16:57:43 | 00,623,616 | ---- | C | MD5 = 3F5F5A4D358126FA69C79FB15A4878B8] (Microsoft Corporation)
    mshtml.dll -> C:\Windows\SysWow64\mshtml.dll -> [2009/06/09 16:57:29 | 05,936,128 | ---- | C | MD5 = 89CCF8069B59780BDEF45E345E671347] (Microsoft Corporation)
    ieframe.dll -> C:\Windows\SysWow64\ieframe.dll -> [2009/06/09 16:57:28 | 11,064,832 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    mshtml.dll -> C:\Windows\SysNative\mshtml.dll -> [2009/06/09 16:57:28 | 09,234,432 | ---- | C | MD5 = BAC71BF7A84AD0BDBD58E46B68D9EB81] (Microsoft Corporation)
    ieframe.dll -> C:\Windows\SysNative\ieframe.dll -> [2009/06/09 16:57:27 | 12,454,912 | ---- | C | MD5 = 01C3CB1BB522A96804AF62C635108488] (Microsoft Corporation)
    iertutil.dll -> C:\Windows\SysNative\iertutil.dll -> [2009/06/09 16:57:27 | 02,332,672 | ---- | C | MD5 = 6321C0B8E53C80775BC93BA6898FEFFC] (Microsoft Corporation)
    iertutil.dll -> C:\Windows\SysWow64\iertutil.dll -> [2009/06/09 16:57:27 | 01,985,024 | ---- | C | MD5 = AFA8DE49250609F01EF8D7C488993B45] (Microsoft Corporation)
    urlmon.dll -> C:\Windows\SysWow64\urlmon.dll -> [2009/06/09 16:57:27 | 01,207,808 | ---- | C | MD5 = CC12F6C30002D4C0B9FA7CCE6D52F71D] (Microsoft Corporation)
    mshtml.tlb -> C:\Windows\SysWow64\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    mshtml.tlb -> C:\Windows\SysNative\mshtml.tlb -> [2009/06/09 16:57:26 | 01,638,912 | ---- | C | MD5 = E1E65F6D47527415EB364E21FB37682F] (Microsoft Corporation)
    inetcpl.cpl -> C:\Windows\SysNative\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,538,560 | ---- | C | MD5 = 1D9BFC7F4451057DAC8943DB1FC07EB6] (Microsoft Corporation)
    urlmon.dll -> C:\Windows\SysNative\urlmon.dll -> [2009/06/09 16:57:26 | 01,484,288 | ---- | C | MD5 = D7B749FAD99A86EA743A2A339B887ABA] (Microsoft Corporation)
    inetcpl.cpl -> C:\Windows\SysWow64\inetcpl.cpl -> [2009/06/09 16:57:26 | 01,469,440 | ---- | C | MD5 = 2C1BD1E52DECC9B5F46BA484ED01A68E] (Microsoft Corporation)
    wininet.dll -> C:\Windows\SysNative\wininet.dll -> [2009/06/09 16:57:26 | 01,146,368 | ---- | C | MD5 = 18A01A9307257637D8FB4FA86F4A689F] (Microsoft Corporation)
    wininet.dll -> C:\Windows\SysWow64\wininet.dll -> [2009/06/09 16:57:26 | 00,915,456 | ---- | C | MD5 = D78B62CC91F043CED52F23F0085E7FE2] (Microsoft Corporation)
    iedkcs32.dll -> C:\Windows\SysNative\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,457,728 | ---- | C | MD5 = DE1C1049F2C48DA5CC6BD7B1CC8FDD7F] (Microsoft Corporation)
    iedkcs32.dll -> C:\Windows\SysWow64\iedkcs32.dll -> [2009/06/09 16:57:26 | 00,385,536 | ---- | C | MD5 = B012602C3FD7D55222E9C03BB6213085] (Microsoft Corporation)
    ieui.dll -> C:\Windows\SysNative\ieui.dll -> [2009/06/09 16:57:26 | 00,219,136 | ---- | C | MD5 = 2CF92A1FEFBE01F92D45D2A94DEABEDD] (Microsoft Corporation)
    ie4uinit.exe -> C:\Windows\SysWow64\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,173,056 | ---- | C | MD5 = 6A3FFA937B9C7B19BDA1AB0DE5B4CCDE] (Microsoft Corporation)
    ieui.dll -> C:\Windows\SysWow64\ieui.dll -> [2009/06/09 16:57:26 | 00,164,352 | ---- | C | MD5 = 90E89697993E0800B32A0E7BC615970F] (Microsoft Corporation)
    iesetup.dll -> C:\Windows\SysNative\iesetup.dll -> [2009/06/09 16:57:26 | 00,077,312 | ---- | C | MD5 = 0CA82EF5FD31BE470914F27C3F23C988] (Microsoft Corporation)
    iernonce.dll -> C:\Windows\SysNative\iernonce.dll -> [2009/06/09 16:57:26 | 00,072,192 | ---- | C | MD5 = 2E97D916BA32C2263B2EDC1303588300] (Microsoft Corporation)
    iesetup.dll -> C:\Windows\SysWow64\iesetup.dll -> [2009/06/09 16:57:26 | 00,071,680 | ---- | C | MD5 = 3B88C6AD6525FE839AE465AD6F9CEAB1] (Microsoft Corporation)
    ie4uinit.exe -> C:\Windows\SysNative\ie4uinit.exe -> [2009/06/09 16:57:26 | 00,070,656 | ---- | C | MD5 = 25941103997FEACAF0FEE929171E0DD5] (Microsoft Corporation)
    iernonce.dll -> C:\Windows\SysWow64\iernonce.dll -> [2009/06/09 16:57:26 | 00,055,808 | ---- | C | MD5 = 19267896F66836EAB6C0D458A9C0A7BE] (Microsoft Corporation)
    jsproxy.dll -> C:\Windows\SysNative\jsproxy.dll -> [2009/06/09 16:57:26 | 00,031,744 | ---- | C | MD5 = B5E87364A9099745131012130CDA56D6] (Microsoft Corporation)
    jsproxy.dll -> C:\Windows\SysWow64\jsproxy.dll -> [2009/06/09 16:57:26 | 00,025,600 | ---- | C | MD5 = 5DD32FE00D58AB21A16B91F063EA0CCB] (Microsoft Corporation)
    win32k.sys -> C:\Windows\SysNative\win32k.sys -> [2009/06/09 16:55:58 | 02,745,344 | ---- | C | MD5 = D29C0E2572452DF3819A1FD70DF70960] (Microsoft Corporation)
    sabrina aunt kelly letter.rtf -> C:\Users\Owner\Documents\sabrina aunt kelly letter.rtf -> [2009/06/06 11:56:11 | 00,000,767 | ---- | C | MD5 = 9F27BD1E947E628ED8C075DF231D4BE6] ()
    ZoomBrowser EX.lnk -> C:\Users\Owner\ZoomBrowser EX.lnk -> [2009/06/04 23:26:57 | 00,001,125 | ---- | C | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
    Personal Printing Guide.lnk -> C:\Users\Owner\Personal Printing Guide.lnk -> [2009/06/04 23:26:57 | 00,001,039 | ---- | C | MD5 = 189A154484643D47EF3D7D795C702A43] ()
    INFORMATION - Shortcut.lnk -> C:\Users\Owner\INFORMATION - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,395 | ---- | C | MD5 = 31534B3665D8838EDA892E6E252B1D4D] ()
    Computer - Shortcut.lnk -> C:\Users\Owner\Computer - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,104 | ---- | C | MD5 = FD8F1F54665903B748744026D47A4967] ()
    vi-VN -> C:\Windows\SysWow64\vi-VN -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    eu-ES -> C:\Windows\SysWow64\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    eu-ES -> C:\Windows\SysNative\eu-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    ca-ES -> C:\Windows\SysWow64\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    ca-ES -> C:\Windows\SysNative\ca-ES -> [2009/06/04 05:23:39 | 00,000,000 | ---D | C]
    vi-VN -> C:\Windows\SysNative\vi-VN -> [2009/06/04 05:23:38 | 00,000,000 | ---D | C]
    EventProviders -> C:\Windows\SysNative\EventProviders -> [2009/06/04 04:48:51 | 00,000,000 | ---D | C]
    NlsLexicons0007.dll -> C:\Windows\SysNative\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = AFA4BC5B25F9280C6B954A37BF74C343] (Microsoft Corporation)
    NlsLexicons0007.dll -> C:\Windows\SysWow64\NlsLexicons0007.dll -> [2009/06/04 04:48:35 | 12,240,896 | ---- | C | MD5 = 795166DED9B1B32136B150A12A1DEBAE] (Microsoft Corporation)
    SLsvc.exe -> C:\Windows\SysNative\SLsvc.exe -> [2009/06/04 04:48:32 | 02,582,016 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    FunctionDiscoveryFolder.dll -> C:\Windows\SysNative\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,146,304 | ---- | C | MD5 = 9CD8BD40C8A3A69E875E34B357AE4975] (Microsoft Corporation)
    FunctionDiscoveryFolder.dll -> C:\Windows\SysWow64\FunctionDiscoveryFolder.dll -> [2009/06/04 04:48:32 | 02,134,528 | ---- | C | MD5 = 780E82F54147B3D11F52D3128B727534] (Microsoft Corporation)
    SLCExt.dll -> C:\Windows\SysNative\SLCExt.dll -> [2009/06/04 04:48:32 | 00,710,144 | ---- | C | MD5 = 110967BBD4D778FC0BB04FC9DAEFCB44] (Microsoft Corporation)
    NlsLexicons0009.dll -> C:\Windows\SysNative\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = C8E7E069468BC0DEAFE69375421FE839] (Microsoft Corporation)
    NlsLexicons0009.dll -> C:\Windows\SysWow64\NlsLexicons0009.dll -> [2009/06/04 04:48:31 | 02,644,480 | ---- | C | MD5 = 8629B71343F61E1140243581C63BC0C7] (Microsoft Corporation)
    ntoskrnl.exe -> C:\Windows\SysNative\ntoskrnl.exe -> [2009/06/04 04:48:29 | 04,699,608 | ---- | C | MD5 = 1B60CCC70788044404EEFBBB389FC111] (Microsoft Corporation)
    mssrch.dll -> C:\Windows\SysNative\mssrch.dll -> [2009/06/04 04:48:29 | 02,280,448 | ---- | C | MD5 = A0B762992A52FA8A657A97C34BEEA807] (Microsoft Corporation)
    SLCExt.dll -> C:\Windows\SysWow64\SLCExt.dll -> [2009/06/04 04:48:29 | 01,081,344 | ---- | C | MD5 = 1D40A5268C1517BC445BA0053584C4AA] (Microsoft Corporation)
    msstrc.dll -> C:\Windows\SysNative\msstrc.dll -> [2009/06/04 04:48:29 | 00,078,336 | ---- | C | MD5 = 3CEA019D459582AFE7551F267DDEF23A] (Microsoft Corporation)
    msscntrs.dll -> C:\Windows\SysNative\msscntrs.dll -> [2009/06/04 04:48:29 | 00,073,728 | ---- | C | MD5 = 4702DF71B9AD487C84A90BAAC967615D] (Microsoft Corporation)
    xmlfilter.dll -> C:\Windows\SysNative\xmlfilter.dll -> [2009/06/04 04:48:29 | 00,067,072 | ---- | C | MD5 = A6C454A7E75ACC924E9F2FB8BA4FC8A0] (Microsoft Corporation)
    kd1394.dll -> C:\Windows\SysNative\kd1394.dll -> [2009/06/04 04:48:29 | 00,019,928 | ---- | C | MD5 = 9334A2D1CDB6D4DC4060B94021BB7A59] (Microsoft Corporation)
    msshooks.dll -> C:\Windows\SysNative\msshooks.dll -> [2009/06/04 04:48:29 | 00,011,776 | ---- | C | MD5 = EBCEDFD064A4F210037AD21EC8AFC220] (Microsoft Corporation)
    mssrch.dll -> C:\Windows\SysWow64\mssrch.dll -> [2009/06/04 04:48:27 | 01,480,704 | ---- | C | MD5 = 218B73EA8341EA9FDF018D43052E790A] (Microsoft Corporation)
    wcnwiz2.dll -> C:\Windows\SysWow64\wcnwiz2.dll -> [2009/06/04 04:48:26 | 00,968,192 | ---- | C | MD5 = 0BA42FAEEE97512603876A908EDB6BF4] (Microsoft Corporation)
    WscEapPr.dll -> C:\Windows\SysNative\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,397,312 | ---- | C | MD5 = 543D30393843BEBFF7215CC36AC3B303] (Microsoft Corporation)
    WscEapPr.dll -> C:\Windows\SysWow64\WscEapPr.dll -> [2009/06/04 04:48:26 | 00,291,328 | ---- | C | MD5 = 2E97EB05C0FD5AA7E229481584C73309] (Microsoft Corporation)
    tquery.dll -> C:\Windows\SysNative\tquery.dll -> [2009/06/04 04:48:25 | 02,204,672 | ---- | C | MD5 = 6FF25F418D373097C199E3ACCFA06E78] (Microsoft Corporation)
    icardagt.exe -> C:\Windows\SysNative\icardagt.exe -> [2009/06/04 04:48:25 | 01,381,720 | ---- | C | MD5 = 7CAE6C298C4EF4A9BDB25A0C8BC79AD5] (Microsoft Corporation)
    PresentationNative_v0300.dll -> C:\Windows\SysNative\PresentationNative_v0300.dll -> [2009/06/04 04:48:25 | 01,165,664 | ---- | C | MD5 = 79B7FFFFF8C5F4F1674A47647D0C6FF6] (Microsoft Corporation)
    imapi2fs.dll -> C:\Windows\SysNative\imapi2fs.dll -> [2009/06/04 04:48:25 | 01,146,880 | ---- | C | MD5 = D14B95A4CC72AD0A196FA1C9738FE93C] (Microsoft Corporation)
    wcnwiz2.dll -> C:\Windows\SysNative\wcnwiz2.dll -> [2009/06/04 04:48:25 | 01,085,440 | ---- | C | MD5 = 53A508E583F7EC971BCA8FEA4D861741] (Microsoft Corporation)
    hdaudbus.sys -> C:\Windows\SysNative\drivers\hdaudbus.sys -> [2009/06/04 04:48:25 | 00,948,736 | ---- | C | MD5 = F942C5820205F2FB453243EDFEC82A3D] (Microsoft Corporation)
    infocardcpl.cpl -> C:\Windows\SysNative\infocardcpl.cpl -> [2009/06/04 04:48:25 | 00,046,944 | ---- | C | MD5 = 563AB05EA9F646A7B8B1A83FFD9E27F6] (Microsoft Corporation)
    lsasrv.dll -> C:\Windows\SysNative\lsasrv.dll -> [2009/06/04 04:48:24 | 01,688,064 | ---- | C | MD5 = 5A7CAD479A8729D2B500997404C153D8] (Microsoft Corporation)
    tquery.dll -> C:\Windows\SysWow64\tquery.dll -> [2009/06/04 04:48:24 | 01,576,960 | ---- | C | MD5 = DEB9D08750423069647C3A066CEC7A1B] (Microsoft Corporation)
    RMActivate_isv.exe -> C:\Windows\SysNative\RMActivate_isv.exe -> [2009/06/04 04:48:24 | 00,600,576 | ---- | C | MD5 = E415C8BFF0807B1C74E280BA036B038C] (Microsoft Corporation)
    RMActivate.exe -> C:\Windows\SysNative\RMActivate.exe -> [2009/06/04 04:48:24 | 00,599,552 | ---- | C | MD5 = 5E465CD2D27700DD2A63671EE8153519] (Microsoft Corporation)
    msi.dll -> C:\Windows\SysNative\msi.dll -> [2009/06/04 04:48:23 | 03,108,864 | ---- | C | MD5 = D092AA9740076D7B55BA7E3ECD22DFA7] (Microsoft Corporation)
    ntfs.sys -> C:\Windows\SysNative\drivers\ntfs.sys -> [2009/06/04 04:48:23 | 01,515,496 | ---- | C | MD5 = BAC869DFB98E499BA4D9BB1FB43270E1] (Microsoft Corporation)
    tcpip.sys -> C:\Windows\SysNative\drivers\tcpip.sys -> [2009/06/04 04:48:23 | 01,426,408 | ---- | C | MD5 = 99D07AD0EF2C535610F6573C29BC045E] (Microsoft Corporation)
    sysmain.dll -> C:\Windows\SysNative\sysmain.dll -> [2009/06/04 04:48:23 | 00,886,784 | ---- | C | MD5 = 92D7A8B0F87B036F17D25885937897A6] (Microsoft Corporation)
    PresentationNative_v0300.dll -> C:\Windows\SysWow64\PresentationNative_v0300.dll -> [2009/06/04 04:48:23 | 00,779,136 | ---- | C | MD5 = E5866CA09AC74AC6C1F8501BB60DFD90] (Microsoft Corporation)
    shell32.dll -> C:\Windows\SysNative\shell32.dll -> [2009/06/04 04:48:22 | 12,897,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    ntdll.dll -> C:\Windows\SysNative\ntdll.dll -> [2009/06/04 04:48:22 | 01,582,792 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    RMActivate_isv.exe -> C:\Windows\SysWow64\RMActivate_isv.exe -> [2009/06/04 04:48:22 | 00,526,336 | ---- | C | MD5 = BAE3E8E95A9F62496A38F14D1B36AD10] (Microsoft Corporation)
    msi.dll -> C:\Windows\SysWow64\msi.dll -> [2009/06/04 04:48:21 | 02,241,536 | ---- | C | MD5 = 401DFFDBBBD3F07C747ED1AE2BB88106] (Microsoft Corporation)
    scavenge.dll -> C:\Windows\SysNative\scavenge.dll -> [2009/06/04 04:48:21 | 00,946,688 | ---- | C | MD5 = 589286073C7AB737330CE8642EA38980] (Microsoft Corporation)
    spsys.sys -> C:\Windows\SysNative\drivers\spsys.sys -> [2009/06/04 04:48:21 | 00,594,432 | ---- | C | MD5 = 75C881C65CEF2C7B911EB0A351957368] (Microsoft Corporation)
    secproc.dll -> C:\Windows\SysNative\secproc.dll -> [2009/06/04 04:48:21 | 00,539,136 | ---- | C | MD5 = 267D3A1025626604EEA3E5EE2EA1BEAD] (Microsoft Corporation)
    secproc_isv.dll -> C:\Windows\SysNative\secproc_isv.dll -> [2009/06/04 04:48:21 | 00,538,624 | ---- | C | MD5 = A9A8EB2B3E4746145D1E536B528A7D12] (Microsoft Corporation)
    RMActivate.exe -> C:\Windows\SysWow64\RMActivate.exe -> [2009/06/04 04:48:21 | 00,518,144 | ---- | C | MD5 = 2DC9C62DF0538700978C66F00379C653] (Microsoft Corporation)
    mf.dll -> C:\Windows\SysNative\mf.dll -> [2009/06/04 04:48:20 | 03,547,136 | ---- | C | MD5 = 328DBE4B9FEEF811E4053FA5D5462E6D] (Microsoft Corporation)
    imapi2fs.dll -> C:\Windows\SysWow64\imapi2fs.dll -> [2009/06/04 04:48:20 | 00,677,376 | ---- | C | MD5 = C3EB60969612B265FB7265E76B6AEA6F] (Microsoft Corporation)
    secproc_isv.dll -> C:\Windows\SysWow64\secproc_isv.dll -> [2009/06/04 04:48:20 | 00,476,672 | ---- | C | MD5 = 8CDA3C2DC9B265DAD2589FE0F1A8B4E4] (Microsoft Corporation)
    mmcndmgr.dll -> C:\Windows\SysNative\mmcndmgr.dll -> [2009/06/04 04:48:19 | 03,263,488 | ---- | C | MD5 = 9F498D2409C9F31D2019C3AB528DAD5D] (Microsoft Corporation)
    mf.dll -> C:\Windows\SysWow64\mf.dll -> [2009/06/04 04:48:19 | 02,868,224 | ---- | C | MD5 = 3962F0B55426E75B579974A6C96F5FEA] (Microsoft Corporation)
    msxml3.dll -> C:\Windows\SysNative\msxml3.dll -> [2009/06/04 04:48:19 | 01,804,288 | ---- | C | MD5 = 1BB8A40C45A577B6901A4A21EDDE1B27] (Microsoft Corporation)
    icardagt.exe -> C:\Windows\SysWow64\icardagt.exe -> [2009/06/04 04:48:19 | 00,619,864 | ---- | C | MD5 = EBAE6CE901EDB7F0F794589BF5FDF695] (Microsoft Corporation)
    infocardcpl.cpl -> C:\Windows\SysWow64\infocardcpl.cpl -> [2009/06/04 04:48:19 | 00,035,168 | ---- | C | MD5 = F67843CFD59FB2015823E2CE2D2A65D8] (Microsoft Corporation)
    mmc.exe -> C:\Windows\SysNative\mmc.exe -> [2009/06/04 04:48:18 | 02,715,136 | ---- | C | MD5 = CFAFFCA9AAA29F89CA71C02CE82FF546] (Microsoft Corporation)
    AuxiliaryDisplayCpl.dll -> C:\Windows\SysNative\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:18 | 01,418,752 | ---- | C | MD5 = 4E7D270CF881377567D2090B5ACA077F] (Microsoft Corporation)
    kernel32.dll -> C:\Windows\SysNative\kernel32.dll -> [2009/06/04 04:48:18 | 01,217,536 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    drmv2clt.dll -> C:\Windows\SysNative\drmv2clt.dll -> [2009/06/04 04:48:18 | 01,185,280 | ---- | C | MD5 = 2AD435E35966C65619A272B4831D72BB] (Microsoft Corporation)
    p2psvc.dll -> C:\Windows\SysNative\p2psvc.dll -> [2009/06/04 04:48:18 | 00,836,608 | ---- | C | MD5 = 9AE31D2E1D15C10D91318E0EC149CEAC] (Microsoft Corporation)
    spinstall.exe -> C:\Windows\SysNative\spinstall.exe -> [2009/06/04 04:48:18 | 00,435,712 | ---- | C | MD5 = 374A60A1498CBC697510F305FAE1A583] (Microsoft Corporation)
    spreview.exe -> C:\Windows\SysNative\spreview.exe -> [2009/06/04 04:48:18 | 00,147,456 | ---- | C | MD5 = 7382050E59321AFE64BA4AF46AE81C97] (Microsoft Corporation)
    esent.dll -> C:\Windows\SysNative\esent.dll -> [2009/06/04 04:48:17 | 02,506,752 | ---- | C | MD5 = E21FFFE678FF09BAA6BF5F76BD8805C6] (Microsoft Corporation)
    AuxiliaryDisplayCpl.dll -> C:\Windows\SysWow64\AuxiliaryDisplayCpl.dll -> [2009/06/04 04:48:17 | 01,216,000 | ---- | C | MD5 = 79B0EC7806B563475A211C5B0F9A4B9C] (Microsoft Corporation)
    SearchIndexer.exe -> C:\Windows\SysNative\SearchIndexer.exe -> [2009/06/04 04:48:17 | 00,597,504 | ---- | C | MD5 = A2AC37A1EEF83BD9E912B0EFCBEA06BD] (Microsoft Corporation)
    spwizui.dll -> C:\Windows\SysNative\spwizui.dll -> [2009/06/04 04:48:17 | 00,173,568 | ---- | C | MD5 = 155D06AE01296DBD7287AB50419A0B85] (Microsoft Corporation)
    spwizui.dll -> C:\Windows\SysWow64\spwizui.dll -> [2009/06/04 04:48:17 | 00,164,352 | ---- | C | MD5 = 27E22847E91344C338016F6A4276F041] (Microsoft Corporation)
    wmp.dll -> C:\Windows\SysNative\wmp.dll -> [2009/06/04 04:48:16 | 13,424,640 | ---- | C | MD5 = E4CD65D24DEB8BDE679B62B6626A0FCC] (Microsoft Corporation)
    dfsr.exe -> C:\Windows\SysNative\dfsr.exe -> [2009/06/04 04:48:15 | 03,433,472 | ---- | C | MD5 = C647F468F7DE343DF8C143655C5557D4] (Microsoft Corporation)
    ole32.dll -> C:\Windows\SysNative\ole32.dll -> [2009/06/04 04:48:15 | 01,915,392 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    drmv2clt.dll -> C:\Windows\SysWow64\drmv2clt.dll -> [2009/06/04 04:48:15 | 00,978,432 | ---- | C | MD5 = 7C7C620860819A62F926D7EC0B72C50B] (Microsoft Corporation)
    mssvp.dll -> C:\Windows\SysNative\mssvp.dll -> [2009/06/04 04:48:15 | 00,796,672 | ---- | C | MD5 = D9F0D37D97862C15D1417903B8FCBF5C] (Microsoft Corporation)
    sdohlp.dll -> C:\Windows\SysNative\sdohlp.dll -> [2009/06/04 04:48:15 | 00,499,200 | ---- | C | MD5 = F0E90F35D5FFCF3E474B709124D26159] (Microsoft Corporation)
    spinstall.exe -> C:\Windows\SysWow64\spinstall.exe -> [2009/06/04 04:48:15 | 00,289,792 | ---- | C | MD5 = E953D69576A1BF077E709A0231E4714C] (Microsoft Corporation)
    spreview.exe -> C:\Windows\SysWow64\spreview.exe -> [2009/06/04 04:48:15 | 00,112,640 | ---- | C | MD5 = 73157FFB9EF9E9C61740A5F9CA5C7B17] (Microsoft Corporation)
    shell32.dll -> C:\Windows\SysWow64\shell32.dll -> [2009/06/04 04:48:14 | 11,584,000 | ---- | C | MD5 = 43466A7FF452883B68F52B963023949C] (Microsoft Corporation)
    wlan.tmf -> C:\Windows\SysNative\wlan.tmf -> [2009/06/04 04:48:14 | 02,607,774 | ---- | C | MD5 = 276CD36D47AF3E91238AEE8A5BC49ED7] ()
    MSMPEG2VDEC.DLL -> C:\Windows\SysNative\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:14 | 00,778,752 | ---- | C | MD5 = 6B00BFBCA33958AC95B666B4EE7244CA] (Microsoft Corporation)
    mssvp.dll -> C:\Windows\SysWow64\mssvp.dll -> [2009/06/04 04:48:14 | 00,670,720 | ---- | C | MD5 = 771AF583BC58373A84496CCD52C36E33] (Microsoft Corporation)
    p2psvc.dll -> C:\Windows\SysWow64\p2psvc.dll -> [2009/06/04 04:48:14 | 00,644,608 | ---- | C | MD5 = 0C8E8E61AD1EB0B250B846712C917506] (Microsoft Corporation)
    mssph.dll -> C:\Windows\SysNative\mssph.dll -> [2009/06/04 04:48:14 | 00,501,248 | ---- | C | MD5 = 93655E5D1E940E5A0F73F5A1719A0DA0] (Microsoft Corporation)
    secproc.dll -> C:\Windows\SysWow64\secproc.dll -> [2009/06/04 04:48:14 | 00,472,064 | ---- | C | MD5 = 86950C4B28196F1C678814A5FEA5FD4F] (Microsoft Corporation)
    SearchIndexer.exe -> C:\Windows\SysWow64\SearchIndexer.exe -> [2009/06/04 04:48:14 | 00,441,344 | ---- | C | MD5 = AED0DFF80C6B3914769407E78D7AB21A] (Microsoft Corporation)
    mssphtb.dll -> C:\Windows\SysNative\mssphtb.dll -> [2009/06/04 04:48:14 | 00,312,832 | ---- | C | MD5 = EE60A80BA41AE79AAC95F8788460D536] (Microsoft Corporation)
    mcupdate_GenuineIntel.dll -> C:\Windows\SysNative\mcupdate_GenuineIntel.dll -> [2009/06/04 04:48:14 | 00,223,720 | ---- | C | MD5 = E15C2A9E2448E572A58A7E69CCB8140A] (Microsoft Corporation)
    EhStorAuthn.dll -> C:\Windows\SysNative\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,121,856 | ---- | C | MD5 = E36E7BEC7918708163143693884F6E77] ()
    EhStorAuthn.dll -> C:\Windows\SysWow64\EhStorAuthn.dll -> [2009/06/04 04:48:14 | 00,117,248 | ---- | C | MD5 = 358A03A7A47F0AD71E84306AC635A626] ()
    EhStorPwdMgr.dll -> C:\Windows\SysNative\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,042,496 | ---- | C | MD5 = 8B4D332731F425E6F2B3B4C8B57274CB] (Microsoft Corporation)
    EhStorPwdMgr.dll -> C:\Windows\SysWow64\EhStorPwdMgr.dll -> [2009/06/04 04:48:14 | 00,037,376 | ---- | C | MD5 = 1E73E1591DA1D44E5F865E8ADD8C09FF] (Microsoft Corporation)
    kernel32.dll -> C:\Windows\SysWow64\kernel32.dll -> [2009/06/04 04:48:13 | 00,858,112 | ---- | C | MD5 = A5830F679B5B38AE9700A72087178745] (Microsoft Corporation)
    imapi2.dll -> C:\Windows\SysNative\imapi2.dll -> [2009/06/04 04:48:13 | 00,506,880 | ---- | C | MD5 = ED10D55B28FCD8A6DEA09AE3FE20EC3A] (Microsoft Corporation)
    srv.sys -> C:\Windows\SysNative\drivers\srv.sys -> [2009/06/04 04:48:13 | 00,440,832 | ---- | C | MD5 = 08D8358006D13B61AA3D25EFA558F101] (Microsoft Corporation)
    RMActivate_ssp_isv.exe -> C:\Windows\SysNative\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:13 | 00,413,696 | ---- | C | MD5 = 6C5019724773FF072B14F33ED9CABEC6] (Microsoft Corporation)
    RMActivate_ssp.exe -> C:\Windows\SysNative\RMActivate_ssp.exe -> [2009/06/04 04:48:13 | 00,409,600 | ---- | C | MD5 = 3B8D66CA55261A71B825C0ADD8863C28] (Microsoft Corporation)
    mscoree.dll -> C:\Windows\SysWow64\mscoree.dll -> [2009/06/04 04:48:13 | 00,278,848 | ---- | C | MD5 = 363C34FB89B8ED269659270FB06BEC9F] (Microsoft Corporation)
    WinSAT.exe -> C:\Windows\SysNative\WinSAT.exe -> [2009/06/04 04:48:12 | 03,894,272 | ---- | C | MD5 = 73B0CA77ADC7F52B94CA6DEDEF2A67C7] (Microsoft Corporation)
    Query.dll -> C:\Windows\SysNative\Query.dll -> [2009/06/04 04:48:12 | 02,028,032 | ---- | C | MD5 = 27F479DFA5E1BD942E056888DCF5C270] (Microsoft Corporation)
    ntdll.dll -> C:\Windows\SysWow64\ntdll.dll -> [2009/06/04 04:48:12 | 01,165,088 | ---- | C | MD5 = 6EF8A9B1E0B83DB8009B626F6627C63F] (Microsoft Corporation)
    IMJP10K.DLL -> C:\Windows\SysNative\IMJP10K.DLL -> [2009/06/04 04:48:12 | 00,922,624 | ---- | C | MD5 = 72CD5B8F299ADD9C8ED3520D003D7354] (Microsoft Corporation)
    MSMPEG2VDEC.DLL -> C:\Windows\SysWow64\MSMPEG2VDEC.DLL -> [2009/06/04 04:48:12 | 00,613,888 | ---- | C | MD5 = 9D1EE179965F9DDF964A9EA99D1D70A1] (Microsoft Corporation)
    mscoree.dll -> C:\Windows\SysNative\mscoree.dll -> [2009/06/04 04:48:12 | 00,403,280 | ---- | C | MD5 = 4A68B66078F07BB429A86A7844F3F2A8] (Microsoft Corporation)
    imapi2.dll -> C:\Windows\SysWow64\imapi2.dll -> [2009/06/04 04:48:12 | 00,378,368 | ---- | C | MD5 = 9B0726A03B790E5B82BED44D24009BEF] (Microsoft Corporation)
    uDWM.dll -> C:\Windows\SysNative\uDWM.dll -> [2009/06/04 04:48:12 | 00,367,104 | ---- | C | MD5 = 7B005E3F9825A98312E089CBA0F83DAA] (Microsoft Corporation)
    mssph.dll -> C:\Windows\SysWow64\mssph.dll -> [2009/06/04 04:48:12 | 00,351,744 | ---- | C | MD5 = 351319EF11C263C95FB721AC76F436D6] (Microsoft Corporation)
    sdohlp.dll -> C:\Windows\SysWow64\sdohlp.dll -> [2009/06/04 04:48:12 | 00,324,608 | ---- | C | MD5 = 723F45FB4C5D362EFC64D8F9D9B0B7B7] (Microsoft Corporation)
    mssphtb.dll -> C:\Windows\SysWow64\mssphtb.dll -> [2009/06/04 04:48:12 | 00,203,264 | ---- | C | MD5 = 5E542EDAEFCDA1684463B58C0F86283A] (Microsoft Corporation)
    korwbrkr.dll -> C:\Windows\SysNative\korwbrkr.dll -> [2009/06/04 04:48:12 | 00,180,736 | ---- | C | MD5 = FDD2B6B94CBB830887EED54CDC7C5E18] (Microsoft Corporation)
    WMVCORE.DLL -> C:\Windows\SysNative\WMVCORE.DLL -> [2009/06/04 04:48:11 | 02,900,480 | ---- | C | MD5 = 04E0E4A26E07E2CAB3617648A2B6FD95] (Microsoft Corporation)
    esent.dll -> C:\Windows\SysWow64\esent.dll -> [2009/06/04 04:48:11 | 01,459,200 | ---- | C | MD5 = 22DC784B32BEE306A99F50D6DC2460BC] (Microsoft Corporation)
    IMJP10K.DLL -> C:\Windows\SysWow64\IMJP10K.DLL -> [2009/06/04 04:48:11 | 00,729,600 | ---- | C | MD5 = 5178E1791950054638DA0CC444E2D187] (Microsoft Corporation)
    http.sys -> C:\Windows\SysNative\drivers\http.sys -> [2009/06/04 04:48:11 | 00,606,720 | ---- | C | MD5 = 5E16D9CCA86CE0E117FF1856C6649B33] (Microsoft Corporation)
    DevicePairing.dll -> C:\Windows\SysNative\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,483,328 | ---- | C | MD5 = CF9836A7C6D247235845F6BA61122783] (Microsoft Corporation)
    DevicePairing.dll -> C:\Windows\SysWow64\DevicePairing.dll -> [2009/06/04 04:48:11 | 00,478,208 | ---- | C | MD5 = 74A68B1E09AB06FBFB494179F84544FF] (Microsoft Corporation)
    msshsq.dll -> C:\Windows\SysNative\msshsq.dll -> [2009/06/04 04:48:11 | 00,316,928 | ---- | C | MD5 = AEA31124372857278FE549050206F9F5] (Microsoft Corporation)
    sperror.dll -> C:\Windows\SysNative\sperror.dll -> [2009/06/04 04:48:11 | 00,238,592 | ---- | C | MD5 = 610DBE2A2A14768EC4103B5F6911BD9B] (Microsoft Corporation)
    korwbrkr.dll -> C:\Windows\SysWow64\korwbrkr.dll -> [2009/06/04 04:48:11 | 00,143,872 | ---- | C | MD5 = A35B257A0A45EFCBF548E74E7E883268] (Microsoft Corporation)
    wmp.dll -> C:\Windows\SysWow64\wmp.dll -> [2009/06/04 04:48:10 | 10,625,536 | ---- | C | MD5 = 42C17B457D1A21491A6E10E6EA4DDCD5] (Microsoft Corporation)
    WindowsAnytimeUpgradeCPL.dll -> C:\Windows\SysNative\WindowsAnytimeUpgradeCPL.dll -> [2009/06/04 04:48:10 | 01,673,216 | ---- | C | MD5 = 23E4E5A6876082BADECA7B80DD7B21C0] (Microsoft Corporation)
    IMJP10.IME -> C:\Windows\SysNative\IMJP10.IME -> [2009/06/04 04:48:10 | 01,019,904 | ---- | C | MD5 = ACB086DA910FB73B409D09B1194326C2] (Microsoft Corporation)
    P2PGraph.dll -> C:\Windows\SysNative\P2PGraph.dll -> [2009/06/04 04:48:10 | 00,401,920 | ---- | C | MD5 = 1376F3B79E742A78D40BF045AB7C6542] (Microsoft Corporation)
    RMActivate_ssp.exe -> C:\Windows\SysWow64\RMActivate_ssp.exe -> [2009/06/04 04:48:10 | 00,347,136 | ---- | C | MD5 = 85204698CA6BE51EF1E4CB07FC4986F7] (Microsoft Corporation)
    RMActivate_ssp_isv.exe -> C:\Windows\SysWow64\RMActivate_ssp_isv.exe -> [2009/06/04 04:48:10 | 00,346,624 | ---- | C | MD5 = 4845670F79AD77625176D764CBBFFA7F] (Microsoft Corporation)
    msshsq.dll -> C:\Windows\SysWow64\msshsq.dll -> [2009/06/04 04:48:10 | 00,231,424 | ---- | C | MD5 = B2D4F14BB320E724D23B5F6795BBBC85] (Microsoft Corporation)
    SLC.dll -> C:\Windows\SysWow64\SLC.dll -> [2009/06/04 04:48:10 | 00,228,352 | ---- | C | MD5 = C6DF7A87063D006ECF1FD8156CB6DE3F] (Microsoft Corporation)
    sperror.dll -> C:\Windows\SysWow64\sperror.dll -> [2009/06/04 04:48:10 | 00,190,464 | ---- | C | MD5 = B731203932CC0DBEC910A9AABBFEBD43] (Microsoft Corporation)
    PresentationHostProxy.dll -> C:\Windows\SysWow64\PresentationHostProxy.dll -> [2009/06/04 04:48:10 | 00,041,344 | ---- | C | MD5 = 01D8839404E8752A688D0B69715C28C1] (Microsoft Corporation)
    WMVCORE.DLL -> C:\Windows\SysWow64\WMVCORE.DLL -> [2009/06/04 04:48:09 | 02,386,944 | ---- | C | MD5 = 8BB86C9F2DEEAFF88243368E0B1A78C1] (Microsoft Corporation)
    setupapi.dll -> C:\Windows\SysNative\setupapi.dll -> [2009/06/04 04:48:09 | 01,925,120 | ---- | C | MD5 = BE2E23B3DD533B33338D9B3D826574DA] (Microsoft Corporation)
    msjet40.dll -> C:\Windows\SysWow64\msjet40.dll -> [2009/06/04 04:48:09 | 01,589,248 | ---- | C | MD5 = 7CE1E4240F9FA41EE85683B9EEAB8767] (Microsoft Corporation)
    wevtsvc.dll -> C:\Windows\SysNative\wevtsvc.dll -> [2009/06/04 04:48:09 | 01,491,968 | ---- | C | MD5 = B3564B747D0B059D99E888F8369E56BC] (Microsoft Corporation)
    msxml6.dll -> C:\Windows\SysWow64\msxml6.dll -> [2009/06/04 04:48:09 | 01,336,320 | ---- | C | MD5 = 376099B0E17AA5B2157FF0C2B66F072A] (Microsoft Corporation)
    crypt32.dll -> C:\Windows\SysNative\crypt32.dll -> [2009/06/04 04:48:09 | 01,259,520 | ---- | C | MD5 = 92399DADA49153870A7C178B7116C356] (Microsoft Corporation)
    ndis.sys -> C:\Windows\SysNative\drivers\ndis.sys -> [2009/06/04 04:48:09 | 00,738,264 | ---- | C | MD5 = 65950E07329FCEE8E6516B17C8D0ABB6] (Microsoft Corporation)
    IasMigPlugin.dll -> C:\Windows\SysNative\IasMigPlugin.dll -> [2009/06/04 04:48:09 | 00,581,632 | ---- | C | MD5 = E704B2C60A10A5353333F74E674D9D2C] (Microsoft)
  • edited June 2009
    Storport.sys -> C:\Windows\SysNative\drivers\Storport.sys -> [2009/06/04 04:48:09 | 00,164,328 | ---- | C | MD5 = F78A39ED87D918058A14F36159DE5BDA] (Microsoft Corporation)
    EhStorAPI.dll -> C:\Windows\SysNative\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,131,072 | ---- | C | MD5 = 9ABCF91512AE8120F3E931301E28B6C1] (Microsoft Corporation)
    EhStorAPI.dll -> C:\Windows\SysWow64\EhStorAPI.dll -> [2009/06/04 04:48:09 | 00,120,320 | ---- | C | MD5 = 9E5C1D19851FAE2ACDBA118AB20D55AC] (Microsoft Corporation)
    SearchFilterHost.exe -> C:\Windows\SysNative\SearchFilterHost.exe -> [2009/06/04 04:48:09 | 00,111,616 | ---- | C | MD5 = BBDE232916FC116C8CB46011683AD854] (Microsoft Corporation)
    compcln.exe -> C:\Windows\SysNative\compcln.exe -> [2009/06/04 04:48:09 | 00,056,320 | ---- | C | MD5 = 0168977CBD9CD8F1ED2AB3FC8851044F] (Microsoft Corporation)
    PresentationHostProxy.dll -> C:\Windows\SysNative\PresentationHostProxy.dll -> [2009/06/04 04:48:09 | 00,049,496 | ---- | C | MD5 = 9FB61D236B378F761E926B16436AFAAD] (Microsoft Corporation)
    vssapi.dll -> C:\Windows\SysNative\vssapi.dll -> [2009/06/04 04:48:08 | 01,495,040 | ---- | C | MD5 = 2E10EB73ED1E094E9A113D0798058B88] (Microsoft Corporation)
    Query.dll -> C:\Windows\SysWow64\Query.dll -> [2009/06/04 04:48:08 | 01,381,376 | ---- | C | MD5 = B458B58F7BB97C48D01AC3CF5805AAAC] (Microsoft Corporation)
    qmgr.dll -> C:\Windows\SysNative\qmgr.dll -> [2009/06/04 04:48:08 | 01,081,856 | ---- | C | MD5 = 6D316F4859634071CC25C4FD4589AD2C] (Microsoft Corporation)
    winload.efi -> C:\Windows\SysNative\winload.efi -> [2009/06/04 04:48:08 | 01,078,232 | ---- | C | MD5 = D26F602EB4B8B7D69FFDEC4551902B83] (Microsoft Corporation)
    winload.exe -> C:\Windows\SysNative\winload.exe -> [2009/06/04 04:48:08 | 01,064,920 | ---- | C | MD5 = E50526E2D00E27A27C0454525081604E] (Microsoft Corporation)
    printfilterpipelinesvc.exe -> C:\Windows\SysNative\printfilterpipelinesvc.exe -> [2009/06/04 04:48:08 | 01,030,144 | ---- | C | MD5 = B7EF680BE91D4C2EC93A77FF41AFF518] (Microsoft Corporation)
    IMJP10.IME -> C:\Windows\SysWow64\IMJP10.IME -> [2009/06/04 04:48:08 | 00,883,712 | ---- | C | MD5 = AE4DAA8F0F9AE5EC2DE1ACB5D37AFA55] (Microsoft Corporation)
    user32.dll -> C:\Windows\SysWow64\user32.dll -> [2009/06/04 04:48:08 | 00,648,704 | ---- | C | MD5 = D29FDB5DEDBDC1BD882164DC6DC4DD53] (Microsoft Corporation)
    EncDec.dll -> C:\Windows\SysNative\EncDec.dll -> [2009/06/04 04:48:08 | 00,558,592 | ---- | C | MD5 = 2C17ACB012C53FE4900A3DEB96FCF720] (Microsoft Corporation)
    msexch40.dll -> C:\Windows\SysWow64\msexch40.dll -> [2009/06/04 04:48:08 | 00,409,600 | ---- | C | MD5 = D151AE6587F22CED36C6BF5787C25FCA] (Microsoft Corporation)
    srchadmin.dll -> C:\Windows\SysNative\srchadmin.dll -> [2009/06/04 04:48:08 | 00,347,648 | ---- | C | MD5 = B6D5917CF9FDA3B434AD908559EBD2B3] (Microsoft Corporation)
    systemsf.ebd -> C:\Windows\SysNative\systemsf.ebd -> [2009/06/04 04:48:08 | 00,262,552 | ---- | C | MD5 = B4F9DF6FBA2700C2017B0F766595267B] ()
    infocardapi.dll -> C:\Windows\SysNative\infocardapi.dll -> [2009/06/04 04:48:08 | 00,171,360 | ---- | C | MD5 = CFA0A7E9800D3298A3C24070C0AF53D0] (Microsoft Corporation)
    EhStorShell.dll -> C:\Windows\SysNative\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,123,904 | ---- | C | MD5 = B2E32F41E1D6500F62CAEF5EF2B17196] (Microsoft Corporation)
    EhStorShell.dll -> C:\Windows\SysWow64\EhStorShell.dll -> [2009/06/04 04:48:08 | 00,114,176 | ---- | C | MD5 = 14E4470BF8ACA69A85D741BA99F75F96] (Microsoft Corporation)
    fdBth.dll -> C:\Windows\SysNative\fdBth.dll -> [2009/06/04 04:48:08 | 00,112,640 | ---- | C | MD5 = CC23D5006ED2FF61F033188D971AD1CB] (Microsoft Corporation)
    explorer.exe -> C:\Windows\explorer.exe -> [2009/06/04 04:48:07 | 03,079,168 | ---- | C | MD5 = 6B08E54A451B3F95E4109DBA7E594270] (Microsoft Corporation)
    msxml6.dll -> C:\Windows\SysNative\msxml6.dll -> [2009/06/04 04:48:07 | 01,733,120 | ---- | C | MD5 = 93D7D5D1DBAA7EFA317098C5204DDDA4] (Microsoft Corporation)
    CertEnroll.dll -> C:\Windows\SysNative\CertEnroll.dll -> [2009/06/04 04:48:07 | 01,658,368 | ---- | C | MD5 = 5AF34B08C676F16A070A7D7EF2AB4C3E] (Microsoft Corporation)
    diagperf.dll -> C:\Windows\SysNative\diagperf.dll -> [2009/06/04 04:48:07 | 01,584,128 | ---- | C | MD5 = 7371D6B52B85190971CB3F35FA0CED05] (Microsoft Corporation)
    ole32.dll -> C:\Windows\SysWow64\ole32.dll -> [2009/06/04 04:48:07 | 01,316,864 | ---- | C | MD5 = C50A0AB19094BC362FBA69E105EBCCFD] (Microsoft Corporation)
    msxml3.dll -> C:\Windows\SysWow64\msxml3.dll -> [2009/06/04 04:48:07 | 01,183,232 | ---- | C | MD5 = 5942F272BBEF5A77BF1DCE13BB5FAC8E] (Microsoft Corporation)
    advapi32.dll -> C:\Windows\SysNative\advapi32.dll -> [2009/06/04 04:48:07 | 01,065,472 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    mblctr.exe -> C:\Windows\SysNative\mblctr.exe -> [2009/06/04 04:48:07 | 00,967,168 | ---- | C | MD5 = DB4A027E320B226D33F68C71D85103F6] (Microsoft Corporation)
    rpcss.dll -> C:\Windows\SysNative\rpcss.dll -> [2009/06/04 04:48:07 | 00,719,872 | ---- | C | MD5 = CF8B9A3A5E7DC57724A89D0C3E8CF9EF] (Microsoft Corporation)
    IasMigReader.exe -> C:\Windows\SysWow64\IasMigReader.exe -> [2009/06/04 04:48:07 | 00,463,872 | ---- | C | MD5 = 520FCEF4D87E37C17BB6D554B2A332E8] (Microsoft Corporation)
    EncDec.dll -> C:\Windows\SysWow64\EncDec.dll -> [2009/06/04 04:48:07 | 00,428,544 | ---- | C | MD5 = 27D1A4045917EF6ED42039CC6CDCA719] (Microsoft Corporation)
    P2PGraph.dll -> C:\Windows\SysWow64\P2PGraph.dll -> [2009/06/04 04:48:07 | 00,327,168 | ---- | C | MD5 = CE42E875BFF00D9561C6E1B0FF2C8943] (Microsoft Corporation)
    srchadmin.dll -> C:\Windows\SysWow64\srchadmin.dll -> [2009/06/04 04:48:07 | 00,301,568 | ---- | C | MD5 = 744F08CF9ACFFB1C715191D04DEEE907] (Microsoft Corporation)
    psisrndr.ax -> C:\Windows\SysWow64\psisrndr.ax -> [2009/06/04 04:48:07 | 00,217,088 | ---- | C | MD5 = 31016280DB16915C88EC6829E1628DA4] (Microsoft Corporation)
    d3d9.dll -> C:\Windows\SysNative\d3d9.dll -> [2009/06/04 04:48:06 | 01,930,240 | ---- | C | MD5 = D4175BE7CA634C7BB9205F7EE4F3F7E4] (Microsoft Corporation)
    mmc.exe -> C:\Windows\SysWow64\mmc.exe -> [2009/06/04 04:48:06 | 01,792,512 | ---- | C | MD5 = BB96D0590B491CDEA2EBF6D697BE8976] (Microsoft Corporation)
    comsvcs.dll -> C:\Windows\SysNative\comsvcs.dll -> [2009/06/04 04:48:06 | 01,686,528 | ---- | C | MD5 = 51F2402CA69906A0839CED561BE3C0AA] (Microsoft Corporation)
    browseui.dll -> C:\Windows\SysNative\browseui.dll -> [2009/06/04 04:48:06 | 01,650,688 | ---- | C | MD5 = EE9040473EB1339E75E79A75FA47A825] (Microsoft Corporation)
    VSSVC.exe -> C:\Windows\SysNative\VSSVC.exe -> [2009/06/04 04:48:06 | 01,433,600 | ---- | C | MD5 = B75232DAD33BFD95BF6F0A3E6BFF51E1] (Microsoft Corporation)
    mfc42u.dll -> C:\Windows\SysNative\mfc42u.dll -> [2009/06/04 04:48:06 | 01,357,824 | ---- | C | MD5 = 912655E769785458E6ED439AE2A4E92C] (Microsoft Corporation)
    kerberos.dll -> C:\Windows\SysNative\kerberos.dll -> [2009/06/04 04:48:06 | 00,654,848 | ---- | C | MD5 = F60FA5685C90FDBF97EF0E28681A4004] (Microsoft Corporation)
    riched20.dll -> C:\Windows\SysWow64\riched20.dll -> [2009/06/04 04:48:06 | 00,466,944 | ---- | C | MD5 = 0CFCDE5D9D074D96B78D1F1CBF1AAB1D] (Microsoft Corporation)
    IasMigPlugin.dll -> C:\Windows\SysWow64\IasMigPlugin.dll -> [2009/06/04 04:48:06 | 00,454,144 | ---- | C | MD5 = 9A7E344C3D52EE1A2EF003B33B1C1BF1] (Microsoft)
    gdi32.dll -> C:\Windows\SysWow64\gdi32.dll -> [2009/06/04 04:48:06 | 00,303,616 | ---- | C | MD5 = 05C8C8767E29163FC251164FF6839EA5] (Microsoft Corporation)
    spoolss.dll -> C:\Windows\SysNative\spoolss.dll -> [2009/06/04 04:48:06 | 00,238,080 | ---- | C | MD5 = D48445B07F61CAFE2FE8972AAB4E31B8] (Microsoft Corporation)
    DevicePairingWizard.exe -> C:\Windows\SysNative\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,069,120 | ---- | C | MD5 = 52B40ECFE9814D1C28154EA51E5D93F7] (Microsoft Corporation)
    DevicePairingWizard.exe -> C:\Windows\SysWow64\DevicePairingWizard.exe -> [2009/06/04 04:48:06 | 00,065,536 | ---- | C | MD5 = 5AAE542EBB0F3CA7C1E5E6D5457BA2CE] (Microsoft Corporation)
    milcore.dll -> C:\Windows\SysWow64\milcore.dll -> [2009/06/04 04:48:05 | 02,012,160 | ---- | C | MD5 = C99403A5B641520DAED0021DDA06F272] (Microsoft Corporation)
    mfc42.dll -> C:\Windows\SysNative\mfc42.dll -> [2009/06/04 04:48:05 | 01,395,712 | ---- | C | MD5 = 13E3B46DA1D334762B6AD2E86B12DA94] (Microsoft Corporation)
    WsmSvc.dll -> C:\Windows\SysNative\WsmSvc.dll -> [2009/06/04 04:48:05 | 01,092,096 | ---- | C | MD5 = 42717DB2BE3A075D0F0CD5C927C27A43] (Microsoft Corporation)
    RacEngn.dll -> C:\Windows\SysWow64\RacEngn.dll -> [2009/06/04 04:48:05 | 00,880,640 | ---- | C | MD5 = 9EFF12E09FF0EA85D43A3AC1F1EEBCE9] (Microsoft Corporation)
    Magnify.exe -> C:\Windows\SysWow64\Magnify.exe -> [2009/06/04 04:48:05 | 00,710,144 | ---- | C | MD5 = E47C854A28A81F2939F42CBE9FEA994C] (Microsoft Corporation)
    afd.sys -> C:\Windows\SysNative\drivers\afd.sys -> [2009/06/04 04:48:05 | 00,406,016 | ---- | C | MD5 = 12415CCFD3E7CEC55B5184E67B039FE4] (Microsoft Corporation)
    WMPhoto.dll -> C:\Windows\SysNative\WMPhoto.dll -> [2009/06/04 04:48:05 | 00,379,392 | ---- | C | MD5 = 548EDDC705789D7FD564C5DE5A2B90D9] (Microsoft Corporation)
    netio.sys -> C:\Windows\SysNative\drivers\netio.sys -> [2009/06/04 04:48:05 | 00,347,112 | ---- | C | MD5 = 2E4C6D76DB8FAADCF4A020758CD0B2C5] (Microsoft Corporation)
    bcrypt.dll -> C:\Windows\SysWow64\bcrypt.dll -> [2009/06/04 04:48:05 | 00,275,968 | ---- | C | MD5 = 4ACF748A8E576761E4C610ACAB67B1BC] (Microsoft Corporation)
    SearchProtocolHost.exe -> C:\Windows\SysWow64\SearchProtocolHost.exe -> [2009/06/04 04:48:05 | 00,185,344 | ---- | C | MD5 = B5EF1DA337DB9859709A387638AC5E07] (Microsoft Corporation)
    PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:48:05 | 00,123,256 | ---- | C | MD5 = E7F360082D6949844519BA00E793B09E] (Microsoft Corporation)
    fdBth.dll -> C:\Windows\SysWow64\fdBth.dll -> [2009/06/04 04:48:05 | 00,088,064 | ---- | C | MD5 = D07E4D54CC014C4D3FEB9EFC2304C84E] (Microsoft Corporation)
    SearchFilterHost.exe -> C:\Windows\SysWow64\SearchFilterHost.exe -> [2009/06/04 04:48:05 | 00,087,552 | ---- | C | MD5 = C9EE7FF225EAC1CB9C78C413667CDB80] (Microsoft Corporation)
    dbgeng.dll -> C:\Windows\SysNative\dbgeng.dll -> [2009/06/04 04:48:04 | 02,484,224 | ---- | C | MD5 = 3BBDC794EC79F4776ADCC50F6DDF90AA] (Microsoft Corporation)
    mstscax.dll -> C:\Windows\SysNative\mstscax.dll -> [2009/06/04 04:48:04 | 02,424,320 | ---- | C | MD5 = EF222AE54FF7B3B1055CC83C3DA81B18] (Microsoft Corporation)
    apds.dll -> C:\Windows\SysNative\apds.dll -> [2009/06/04 04:48:04 | 02,112,000 | ---- | C | MD5 = F90ED5EE26169B69A3F915CFD014BA60] (Microsoft Corporation)
    CertEnroll.dll -> C:\Windows\SysWow64\CertEnroll.dll -> [2009/06/04 04:48:04 | 01,112,064 | ---- | C | MD5 = 0053319C4438CDE659AA75C19BBD22F1] (Microsoft Corporation)
    Magnify.exe -> C:\Windows\SysNative\Magnify.exe -> [2009/06/04 04:48:04 | 00,859,648 | ---- | C | MD5 = DFFB91500638FACA4CDEA50E4E1F02F9] (Microsoft Corporation)
    schedsvc.dll -> C:\Windows\SysNative\schedsvc.dll -> [2009/06/04 04:48:04 | 00,843,776 | ---- | C | MD5 = 717C12DF4B7C93FEC97D146AC1342B25] (Microsoft Corporation)
    NaturalLanguage6.dll -> C:\Windows\SysWow64\NaturalLanguage6.dll -> [2009/06/04 04:48:04 | 00,805,376 | ---- | C | MD5 = 1CE4A2790EB4A96F4ED1E4264866AFE6] (Microsoft Corporation)
    dpapimig.exe -> C:\Windows\SysNative\dpapimig.exe -> [2009/06/04 04:48:04 | 00,553,472 | ---- | C | MD5 = 38A245916DE7BD6DF73DE9E98D377213] (Microsoft Corporation)
    eudcedit.exe -> C:\Windows\SysNative\eudcedit.exe -> [2009/06/04 04:48:04 | 00,280,064 | ---- | C | MD5 = EBA67A3AC3DFB2EDDC5E7B967428669A] (Microsoft Corporation)
    iasrecst.dll -> C:\Windows\SysNative\iasrecst.dll -> [2009/06/04 04:48:04 | 00,192,000 | ---- | C | MD5 = 7940F88C3D5BAFEE6749D3FE6CDF0569] (Microsoft Corporation)
    spoolss.dll -> C:\Windows\SysWow64\spoolss.dll -> [2009/06/04 04:48:04 | 00,160,768 | ---- | C | MD5 = E79FDA8D320147FDC347C504B3487F87] (Microsoft Corporation)
    RacEngn.dll -> C:\Windows\SysNative\RacEngn.dll -> [2009/06/04 04:48:03 | 01,244,672 | ---- | C | MD5 = 95F7DB7DD8259D013831E35EE6C7A270] (Microsoft Corporation)
    msctf.dll -> C:\Windows\SysNative\msctf.dll -> [2009/06/04 04:48:03 | 01,040,896 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    gpedit.dll -> C:\Windows\SysNative\gpedit.dll -> [2009/06/04 04:48:03 | 01,013,248 | ---- | C | MD5 = 0BC0B3C27E4A5F4FFD864C6BA7F4F4A6] (Microsoft Corporation)
    gpedit.dll -> C:\Windows\SysWow64\gpedit.dll -> [2009/06/04 04:48:03 | 00,950,784 | ---- | C | MD5 = 4E51A7052D162B2BA85612B486A68A45] (Microsoft Corporation)
    comuid.dll -> C:\Windows\SysNative\comuid.dll -> [2009/06/04 04:48:03 | 00,918,528 | ---- | C | MD5 = 8B95404FC3B191192A70534C5B74C861] (Microsoft Corporation)
    oleaut32.dll -> C:\Windows\SysNative\oleaut32.dll -> [2009/06/04 04:48:03 | 00,847,360 | ---- | C | MD5 = 1785F3FC389381B6F44F52011E47685E] (Microsoft Corporation)
    user32.dll -> C:\Windows\SysNative\user32.dll -> [2009/06/04 04:48:03 | 00,820,224 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    bthprops.cpl -> C:\Windows\SysNative\bthprops.cpl -> [2009/06/04 04:48:03 | 00,668,160 | ---- | C | MD5 = DBC0B012A13C7738871D569005DEB5D1] (Microsoft Corporation)
    evr.dll -> C:\Windows\SysNative\evr.dll -> [2009/06/04 04:48:03 | 00,647,680 | ---- | C | MD5 = AF96CCADA9B7ADB6488DDB6A60374821] (Microsoft Corporation)
    ipsmsnap.dll -> C:\Windows\SysNative\ipsmsnap.dll -> [2009/06/04 04:48:03 | 00,620,544 | ---- | C | MD5 = D1F7EB45DE179124288EE090B6CDE424] (Microsoft Corporation)
    msdrm.dll -> C:\Windows\SysNative\msdrm.dll -> [2009/06/04 04:48:03 | 00,460,288 | ---- | C | MD5 = 37B431C27C022C406E1104378737CF1D] (Microsoft Corporation)
    audiosrv.dll -> C:\Windows\SysNative\audiosrv.dll -> [2009/06/04 04:48:03 | 00,446,464 | ---- | C | MD5 = 79318C744693EC983D20E9337A2F8196] (Microsoft Corporation)
    msvcp60.dll -> C:\Windows\SysWow64\msvcp60.dll -> [2009/06/04 04:48:03 | 00,406,528 | ---- | C | MD5 = 2310A32BB0164552A311BFA02102A3D6] (Microsoft Corporation)
    photowiz.dll -> C:\Windows\SysNative\photowiz.dll -> [2009/06/04 04:48:03 | 00,402,944 | ---- | C | MD5 = A58E57E542EF8F41DC5842F4AB9C9EA5] (Microsoft Corporation)
    es.dll -> C:\Windows\SysNative\es.dll -> [2009/06/04 04:48:03 | 00,361,984 | ---- | C | MD5 = E12F22B73F153DECE721CD45EC05B4AF] (Microsoft Corporation)
    msjtes40.dll -> C:\Windows\SysWow64\msjtes40.dll -> [2009/06/04 04:48:03 | 00,290,816 | ---- | C | MD5 = 79B0463638C7ED08DB71FE3437C95A44] (Microsoft Corporation)
    infocardapi.dll -> C:\Windows\SysWow64\infocardapi.dll -> [2009/06/04 04:48:03 | 00,099,680 | ---- | C | MD5 = E6AA880A6AE64D9C5FED9D7CCC9DA8EF] (Microsoft Corporation)
    slwmi.dll -> C:\Windows\SysNative\slwmi.dll -> [2009/06/04 04:48:03 | 00,088,064 | ---- | C | MD5 = BDFDEBFEB67DEC4A82792E421778805F] (Microsoft Corporation)
    Storprop.dll -> C:\Windows\SysWow64\Storprop.dll -> [2009/06/04 04:48:03 | 00,055,808 | ---- | C | MD5 = 61BB723E9AF2D1505337402F4AE79E94] (Microsoft Corporation)
    quartz.dll -> C:\Windows\SysNative\quartz.dll -> [2009/06/04 04:48:02 | 01,570,304 | ---- | C | MD5 = 7C928C97C0E24CC5FDB13D705C122C09] (Microsoft Corporation)
    advapi32.dll -> C:\Windows\SysWow64\advapi32.dll -> [2009/06/04 04:48:02 | 00,800,768 | ---- | C | MD5 = 50CAA7072C171B9887215C83D52069E4] (Microsoft Corporation)
    msihnd.dll -> C:\Windows\SysNative\msihnd.dll -> [2009/06/04 04:48:02 | 00,503,296 | ---- | C | MD5 = CC5A06E21510501BFAC469B36490FD86] (Microsoft Corporation)
    shlwapi.dll -> C:\Windows\SysNative\shlwapi.dll -> [2009/06/04 04:48:02 | 00,455,680 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    certcli.dll -> C:\Windows\SysNative\certcli.dll -> [2009/06/04 04:48:02 | 00,447,488 | ---- | C | MD5 = C88208718545410FA0F11E06F6E7F01B] (Microsoft Corporation)
    wevtapi.dll -> C:\Windows\SysNative\wevtapi.dll -> [2009/06/04 04:48:02 | 00,394,240 | ---- | C | MD5 = 45B4004F43B48E4A3F12B85891F81221] (Microsoft Corporation)
    msexcl40.dll -> C:\Windows\SysWow64\msexcl40.dll -> [2009/06/04 04:48:02 | 00,339,968 | ---- | C | MD5 = 35525EE95CEDB5E9908CFF676C7A2D97] (Microsoft Corporation)
    WMPhoto.dll -> C:\Windows\SysWow64\WMPhoto.dll -> [2009/06/04 04:48:02 | 00,321,536 | ---- | C | MD5 = 845D8122008558B9A3A5EE81B15C8C46] (Microsoft Corporation)
    psisrndr.ax -> C:\Windows\SysNative\psisrndr.ax -> [2009/06/04 04:48:02 | 00,289,792 | ---- | C | MD5 = F581D89097400BB3142F7E2EA7AF55A2] (Microsoft Corporation)
    mstext40.dll -> C:\Windows\SysWow64\mstext40.dll -> [2009/06/04 04:48:02 | 00,282,624 | ---- | C | MD5 = 946D35645E672E01B35ED194F9BE4F7A] (Microsoft Corporation)
    fltMgr.sys -> C:\Windows\SysNative\drivers\fltMgr.sys -> [2009/06/04 04:48:02 | 00,275,432 | ---- | C | MD5 = E3041BC26D6930D61F42AEDB79C91720] (Microsoft Corporation)
    es.dll -> C:\Windows\SysWow64\es.dll -> [2009/06/04 04:48:02 | 00,268,800 | ---- | C | MD5 = 67058C46504BC12D821F38CF99B7B28F] (Microsoft Corporation)
    WebClnt.dll -> C:\Windows\SysWow64\WebClnt.dll -> [2009/06/04 04:48:02 | 00,199,680 | ---- | C | MD5 = 04C37D8107320312FBAE09926103D5E2] (Microsoft Corporation)
    nlhtml.dll -> C:\Windows\SysNative\nlhtml.dll -> [2009/06/04 04:48:02 | 00,181,248 | ---- | C | MD5 = E02D92397E7F43E47244F33C88BB3DB0] (Microsoft Corporation)
    PresentationSettings.exe -> C:\Windows\SysNative\PresentationSettings.exe -> [2009/06/04 04:48:02 | 00,173,568 | ---- | C | MD5 = 5537EBC1209B3AA1332A03896B1184C3] (Microsoft Corporation)
    SLC.dll -> C:\Windows\SysNative\SLC.dll -> [2009/06/04 04:48:02 | 00,151,552 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    AuxiliaryDisplayDriverLib.dll -> C:\Windows\SysNative\AuxiliaryDisplayDriverLib.dll -> [2009/06/04 04:48:02 | 00,131,072 | ---- | C | MD5 = C96425341E76EE123521C84448C4FFC3] (Microsoft Corporation)
    AuxiliaryDisplayServices.dll -> C:\Windows\SysNative\AuxiliaryDisplayServices.dll -> [2009/06/04 04:48:02 | 00,126,464 | ---- | C | MD5 = FCBF244FE64C227839EC365333CBE79B] (Microsoft Corporation)
    wcnwiz.dll -> C:\Windows\SysNative\wcnwiz.dll -> [2009/06/04 04:48:01 | 01,681,920 | ---- | C | MD5 = 22CB55E35C2FFC08711473738A629BB5] (Microsoft Corporation)
    comsvcs.dll -> C:\Windows\SysWow64\comsvcs.dll -> [2009/06/04 04:48:01 | 01,209,856 | ---- | C | MD5 = 95A5497D129D95D12A46F7848AFFE1DB] (Microsoft Corporation)
    vssapi.dll -> C:\Windows\SysWow64\vssapi.dll -> [2009/06/04 04:48:01 | 01,077,248 | ---- | C | MD5 = 17FC3EDA0162F513E858B8C8FA7FA6E0] (Microsoft Corporation)
    msvcrt.dll -> C:\Windows\SysNative\msvcrt.dll -> [2009/06/04 04:48:01 | 00,621,056 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    devmgr.dll -> C:\Windows\SysNative\devmgr.dll -> [2009/06/04 04:48:01 | 00,498,688 | ---- | C | MD5 = C4A4967907A8820761EEA49FE2A35AE3] (Microsoft Corporation)
    msxbde40.dll -> C:\Windows\SysWow64\msxbde40.dll -> [2009/06/04 04:48:01 | 00,454,656 | ---- | C | MD5 = A02537DD475CC0BAB7FC07F9B44720C0] (Microsoft Corporation)
    WcnNetsh.dll -> C:\Windows\SysNative\WcnNetsh.dll -> [2009/06/04 04:48:01 | 00,238,592 | ---- | C | MD5 = EEB896D38B7A5CC1CC621278254EC9C8] (Microsoft Corporation)
    srvnet.sys -> C:\Windows\SysNative\drivers\srvnet.sys -> [2009/06/04 04:48:01 | 00,143,360 | ---- | C | MD5 = 54F34EF396760EC51ABF85E12CC72ACF] (Microsoft Corporation)
    slwmi.dll -> C:\Windows\SysWow64\slwmi.dll -> [2009/06/04 04:48:01 | 00,067,584 | ---- | C | MD5 = A0D83B84678410994372D7D4BABAF7E0] (Microsoft Corporation)
    DevicePairingProxy.dll -> C:\Windows\SysNative\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,057,856 | ---- | C | MD5 = 63C9915DB262D87566F748E51DA536CF] (Microsoft Corporation)
    DevicePairingProxy.dll -> C:\Windows\SysWow64\DevicePairingProxy.dll -> [2009/06/04 04:48:01 | 00,054,784 | ---- | C | MD5 = 3C7A18013E99EAA45188A7C57B1AA758] (Microsoft Corporation)
    mstscax.dll -> C:\Windows\SysWow64\mstscax.dll -> [2009/06/04 04:48:00 | 02,066,432 | ---- | C | MD5 = 32A920003B5AFB260F86473D9D550457] (Microsoft Corporation)
    authui.dll -> C:\Windows\SysWow64\authui.dll -> [2009/06/04 04:48:00 | 01,985,024 | ---- | C | MD5 = 58C2521D87C494831A625202C80354AD] (Microsoft Corporation)
    msdtctm.dll -> C:\Windows\SysNative\msdtctm.dll -> [2009/06/04 04:48:00 | 01,499,136 | ---- | C | MD5 = 5CB1477EEABBEE128C759283514AFA93] (Microsoft Corporation)
    shdocvw.dll -> C:\Windows\SysNative\shdocvw.dll -> [2009/06/04 04:48:00 | 01,195,520 | ---- | C | MD5 = 52414CF37708E802AA6F058695592DF9] (Microsoft Corporation)
    NetProjW.dll -> C:\Windows\SysNative\NetProjW.dll -> [2009/06/04 04:48:00 | 01,098,240 | ---- | C | MD5 = 61D4DBC6D1C1C98DC935888295A89D01] (Microsoft Corporation)
    wcncsvc.dll -> C:\Windows\SysNative\wcncsvc.dll -> [2009/06/04 04:48:00 | 00,581,120 | ---- | C | MD5 = B4E4C37D0AA6100090A53213EE2BF1C1] (Microsoft Corporation)
    msctfp.dll -> C:\Windows\SysNative\msctfp.dll -> [2009/06/04 04:48:00 | 00,230,400 | ---- | C | MD5 = 21D24F722E08B8E3AA7F19855403C5C2] (Microsoft Corporation)
    fdBthProxy.dll -> C:\Windows\SysNative\fdBthProxy.dll -> [2009/06/04 04:48:00 | 00,012,288 | ---- | C | MD5 = 06422CA4D1F57C78F2BE9722EC20FB0A] (Microsoft Corporation)
    certutil.exe -> C:\Windows\SysNative\certutil.exe -> [2009/06/04 04:47:59 | 01,060,864 | ---- | C | MD5 = C4AA6E59A319E5D51470D1809B1354C4] (Microsoft Corporation)
    propsys.dll -> C:\Windows\SysWow64\propsys.dll -> [2009/06/04 04:47:59 | 00,754,688 | ---- | C | MD5 = 7DACD94118E2D8B6D72F47ADEB0367BF] (Microsoft Corporation)
    gpsvc.dll -> C:\Windows\SysNative\gpsvc.dll -> [2009/06/04 04:47:59 | 00,719,360 | ---- | C | MD5 = A0E1B575BA8F504968CD40C0FAEB2384] (Microsoft Corporation)
    win32spl.dll -> C:\Windows\SysNative\win32spl.dll -> [2009/06/04 04:47:59 | 00,660,480 | ---- | C | MD5 = 1D2CC592516BD0544A107104461688F4] (Microsoft Corporation)
    msrepl40.dll -> C:\Windows\SysWow64\msrepl40.dll -> [2009/06/04 04:47:59 | 00,643,072 | ---- | C | MD5 = A4D9AB211B376EB363550A250A64D84D] (Microsoft Corporation)
    bthprops.cpl -> C:\Windows\SysWow64\bthprops.cpl -> [2009/06/04 04:47:59 | 00,640,512 | ---- | C | MD5 = C0ABD66F31C0B84CD944802E6D3D02C2] (Microsoft Corporation)
    SLCommDlg.dll -> C:\Windows\SysNative\SLCommDlg.dll -> [2009/06/04 04:47:59 | 00,631,296 | ---- | C | MD5 = 77A8C01035EF074AAA930C971A54598B] (Microsoft Corporation)
    msvcp60.dll -> C:\Windows\SysNative\msvcp60.dll -> [2009/06/04 04:47:59 | 00,598,016 | ---- | C | MD5 = FC26F6B403512A3224B16CA59976D1CB] (Microsoft Corporation)
    newdev.dll -> C:\Windows\SysWow64\newdev.dll -> [2009/06/04 04:47:59 | 00,469,504 | ---- | C | MD5 = E1B80644E7125231AAEF62FC2C81C8FE] (Microsoft Corporation)
    w32time.dll -> C:\Windows\SysNative\w32time.dll -> [2009/06/04 04:47:59 | 00,372,736 | ---- | C | MD5 = F14A7DE2EA41883E250892E1E5230A9A] (Microsoft Corporation)
    PresentationHost.exe -> C:\Windows\SysNative\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,354,640 | ---- | C | MD5 = 25A85D10DE6A1D7E1BFC294B82726AC4] (Microsoft Corporation)
    PresentationHost.exe -> C:\Windows\SysWow64\PresentationHost.exe -> [2009/06/04 04:47:59 | 00,323,952 | ---- | C | MD5 = 44E6658E2466566E1AC82E31EAE572F8] (Microsoft Corporation)
    rsaenh.dll -> C:\Windows\SysNative\rsaenh.dll -> [2009/06/04 04:47:59 | 00,289,768 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    spoolsv.exe -> C:\Windows\SysNative\spoolsv.exe -> [2009/06/04 04:47:59 | 00,268,288 | ---- | C | MD5 = EADA445EAEDD1D7DF4C5EB42B3612729] (Microsoft Corporation)
    netbt.sys -> C:\Windows\SysNative\drivers\netbt.sys -> [2009/06/04 04:47:59 | 00,248,320 | ---- | C | MD5 = FC2C792EBDDC8E28DF939D6A92C83D61] (Microsoft Corporation)
    WebClnt.dll -> C:\Windows\SysNative\WebClnt.dll -> [2009/06/04 04:47:59 | 00,218,624 | ---- | C | MD5 = 3E6D05381CF35F75EBB055544A8ED9AC] (Microsoft Corporation)
    Classpnp.sys -> C:\Windows\SysNative\drivers\Classpnp.sys -> [2009/06/04 04:47:59 | 00,164,840 | ---- | C | MD5 = 6B6BEA1421FC416E35B2D17495380104] (Microsoft Corporation)
    iasrecst.dll -> C:\Windows\SysWow64\iasrecst.dll -> [2009/06/04 04:47:59 | 00,119,296 | ---- | C | MD5 = E176452A085570571A38C0CB33B1F99A] (Microsoft Corporation)
    PresentationCFFRasterizerNative_v0300.dll -> C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll -> [2009/06/04 04:47:59 | 00,102,816 | ---- | C | MD5 = 199FBF92E3F750637F2C027A4792949B] (Microsoft Corporation)
    davclnt.dll -> C:\Windows\SysNative\davclnt.dll -> [2009/06/04 04:47:59 | 00,082,432 | ---- | C | MD5 = AAC4DFF79689736D8B316FC05A3E25EC] (Microsoft Corporation)
    explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2009/06/04 04:47:58 | 02,926,592 | ---- | C | MD5 = D07D4C3038F3578FFCE1C0237F2A1253] (Microsoft Corporation)
    certmgr.dll -> C:\Windows\SysNative\certmgr.dll -> [2009/06/04 04:47:58 | 01,748,992 | ---- | C | MD5 = 1E72CD50DB40A2034E37C1D269D518BF] (Microsoft Corporation)
    setupapi.dll -> C:\Windows\SysWow64\setupapi.dll -> [2009/06/04 04:47:58 | 01,591,296 | ---- | C | MD5 = 551F51B66E5EA87A38D8197EB3BDB57A] (Microsoft Corporation)
    crypt32.dll -> C:\Windows\SysWow64\crypt32.dll -> [2009/06/04 04:47:58 | 00,978,944 | ---- | C | MD5 = 6659EC6006FD99A3AF1B8A6306F8BE3C] (Microsoft Corporation)
    msdtcprx.dll -> C:\Windows\SysNative\msdtcprx.dll -> [2009/06/04 04:47:58 | 00,727,552 | ---- | C | MD5 = 649672EED4626058CB740117DD453BFC] (Microsoft Corporation)
    eaphost.tmf -> C:\Windows\SysNative\eaphost.tmf -> [2009/06/04 04:47:58 | 00,700,507 | ---- | C | MD5 = 5D459A67C06671DAAAB378FBA07A1268] ()
    dot3.tmf -> C:\Windows\SysNative\dot3.tmf -> [2009/06/04 04:47:58 | 00,471,992 | ---- | C | MD5 = FBB5C98267F271BE897A47D220BBA131] ()
    mspbde40.dll -> C:\Windows\SysWow64\mspbde40.dll -> [2009/06/04 04:47:58 | 00,368,640 | ---- | C | MD5 = 81379121E6028612D821009636A6BB95] (Microsoft Corporation)
    umpnpmgr.dll -> C:\Windows\SysNative\umpnpmgr.dll -> [2009/06/04 04:47:58 | 00,313,344 | ---- | C | MD5 = FE6B0F59215C9FD9F9D26539C58C8B82] (Microsoft Corporation)
    eudcedit.exe -> C:\Windows\SysWow64\eudcedit.exe -> [2009/06/04 04:47:58 | 00,205,824 | ---- | C | MD5 = 7095D31979FFB0B917987B388779BD01] (Microsoft Corporation)
    d3d9.dll -> C:\Windows\SysWow64\d3d9.dll -> [2009/06/04 04:47:57 | 01,788,416 | ---- | C | MD5 = 8AAEEE8E59A70F37579993D118A34EE0] (Microsoft Corporation)
    WMNetMgr.dll -> C:\Windows\SysNative\WMNetMgr.dll -> [2009/06/04 04:47:57 | 01,245,696 | ---- | C | MD5 = D2C36317F072C58D4AB8C0203010C9B1] (Microsoft Corporation)
    WindowsCodecs.dll -> C:\Windows\SysNative\WindowsCodecs.dll -> [2009/06/04 04:47:57 | 00,841,728 | ---- | C | MD5 = EED4C9B2249DBFC81ADC18DCB7EEF2AB] (Microsoft Corporation)
    PhotoScreensaver.scr -> C:\Windows\SysNative\PhotoScreensaver.scr -> [2009/06/04 04:47:57 | 00,840,704 | ---- | C | MD5 = 7AC5EDC47BA33E02B7D55B6C10E01688] (Microsoft Corporation)
    MPSSVC.dll -> C:\Windows\SysNative\MPSSVC.dll -> [2009/06/04 04:47:57 | 00,603,136 | ---- | C | MD5 = 897E3BAF68BA406A61682AE39C83900C] (Microsoft Corporation)
    wmicmiplugin.dll -> C:\Windows\SysNative\wmicmiplugin.dll -> [2009/06/04 04:47:57 | 00,497,152 | ---- | C | MD5 = FED22F5556D652C9F87BF3255D463C24] (Microsoft Corporation)
    swprv.dll -> C:\Windows\SysNative\swprv.dll -> [2009/06/04 04:47:57 | 00,480,768 | ---- | C | MD5 = 6DE37F4DE19D4EFD9C48C43ADDBC949A] (Microsoft Corporation)
    gdi32.dll -> C:\Windows\SysNative\gdi32.dll -> [2009/06/04 04:47:57 | 00,389,632 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    SLUI.exe -> C:\Windows\SysNative\SLUI.exe -> [2009/06/04 04:47:57 | 00,385,024 | ---- | C | MD5 = 21C15BAC64D61959FD79959F1EAF3DC4] (Microsoft Corporation)
    rdbss.sys -> C:\Windows\SysNative\drivers\rdbss.sys -> [2009/06/04 04:47:57 | 00,287,744 | ---- | C | MD5 = 322DB5C6B55E8D8EE8D6F358B2AAABB1] (Microsoft Corporation)
    msv1_0.dll -> C:\Windows\SysNative\msv1_0.dll -> [2009/06/04 04:47:57 | 00,265,728 | ---- | C | MD5 = 4D7969AF7FFFB45F53CCCEDEBE5A1136] (Microsoft Corporation)
    msltus40.dll -> C:\Windows\SysWow64\msltus40.dll -> [2009/06/04 04:47:57 | 00,241,664 | ---- | C | MD5 = 1A703DA65271886A8DDFB31ACA215DAE] (Microsoft Corporation)
    StructuredQuerySchema.bin -> C:\Windows\SysWow64\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
    StructuredQuerySchema.bin -> C:\Windows\SysNative\StructuredQuerySchema.bin -> [2009/06/04 04:47:57 | 00,107,612 | ---- | C | MD5 = E9E66706083BFE4B0070EE0A5E8D42DB] ()
    davclnt.dll -> C:\Windows\SysWow64\davclnt.dll -> [2009/06/04 04:47:57 | 00,061,440 | ---- | C | MD5 = CFBD2E1FE18B50748A76703A2DC6D4E3] (Microsoft Corporation)
    WMVSDECD.DLL -> C:\Windows\SysNative\WMVSDECD.DLL -> [2009/06/04 04:47:56 | 01,543,680 | ---- | C | MD5 = D4F0833AD5C60422BC63B740D7198EB0] (Microsoft Corporation)
    wercon.exe -> C:\Windows\SysNative\wercon.exe -> [2009/06/04 04:47:56 | 01,394,176 | ---- | C | MD5 = 406121C827A2901E72DAB2197DAE180E] (Microsoft Corporation)
    browseui.dll -> C:\Windows\SysWow64\browseui.dll -> [2009/06/04 04:47:56 | 01,324,032 | ---- | C | MD5 = 4504819D18FAC09B6108D8728467E5B2] (Microsoft Corporation)
    mfc42.dll -> C:\Windows\SysWow64\mfc42.dll -> [2009/06/04 04:47:56 | 01,135,104 | ---- | C | MD5 = 9A8880BE64A67FA72A8F4DC71AF882E1] (Microsoft Corporation)
    ipsecsnp.dll -> C:\Windows\SysNative\ipsecsnp.dll -> [2009/06/04 04:47:56 | 00,935,424 | ---- | C | MD5 = F6FA73DC89FF88360AEDBCE64BF55DD1] (Microsoft Corporation)
    dxgkrnl.sys -> C:\Windows\SysNative\drivers\dxgkrnl.sys -> [2009/06/04 04:47:56 | 00,885,248 | ---- | C | MD5 = E828CDCA431D1F98D33501DFC390079A] (Microsoft Corporation)
    samsrv.dll -> C:\Windows\SysNative\samsrv.dll -> [2009/06/04 04:47:56 | 00,671,744 | ---- | C | MD5 = 60EEC5440C2D05E5FDA04900E45FF717] (Microsoft Corporation)
    netapi32.dll -> C:\Windows\SysNative\netapi32.dll -> [2009/06/04 04:47:56 | 00,648,192 | ---- | C | MD5 = EAA6D9F1C23A5C3375E6D3653F57E7BE] (Microsoft Corporation)
    sqlsrv32.dll -> C:\Windows\SysNative\sqlsrv32.dll -> [2009/06/04 04:47:56 | 00,581,632 | ---- | C | MD5 = 9B385CED28719273914D64556AA2DFC7] (Microsoft Corporation)
    ci.dll -> C:\Windows\SysNative\ci.dll -> [2009/06/04 04:47:56 | 00,380,392 | ---- | C | MD5 = 57D469072472C9F14125A347C522DD18] (Microsoft Corporation)
    shlwapi.dll -> C:\Windows\SysWow64\shlwapi.dll -> [2009/06/04 04:47:56 | 00,353,280 | ---- | C | MD5 = 8246FC0B1759EBE4E0E60BA1BD13C467] (Microsoft Corporation)
    iassdo.dll -> C:\Windows\SysNative\iassdo.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = ED50FAC6BC71FBA60F845A3F683CA056] (Microsoft Corporation)
    msrd3x40.dll -> C:\Windows\SysWow64\msrd3x40.dll -> [2009/06/04 04:47:56 | 00,344,064 | ---- | C | MD5 = 447E79497D059943519434A7D5EA0963] (Microsoft Corporation)
    PortableDeviceApi.dll -> C:\Windows\SysNative\PortableDeviceApi.dll -> [2009/06/04 04:47:56 | 00,324,608 | ---- | C | MD5 = 494B0A9A4DB58EF767DC115512823A8A] (Microsoft Corporation)
    photowiz.dll -> C:\Windows\SysWow64\photowiz.dll -> [2009/06/04 04:47:56 | 00,293,376 | ---- | C | MD5 = ED49ADAF173B23E48A9BA110BD80160F] (Microsoft Corporation)
    usbhub.sys -> C:\Windows\SysNative\drivers\usbhub.sys -> [2009/06/04 04:47:56 | 00,273,920 | ---- | C | MD5 = BB35CD80A2ECECFADC73569B3D70C7D1] (Microsoft Corporation)
    wevtapi.dll -> C:\Windows\SysWow64\wevtapi.dll -> [2009/06/04 04:47:56 | 00,250,368 | ---- | C | MD5 = 4DE3C4D07BAFDE616EFA0ADE076CBAC2] (Microsoft Corporation)
    nlhtml.dll -> C:\Windows\SysWow64\nlhtml.dll -> [2009/06/04 04:47:56 | 00,136,192 | ---- | C | MD5 = 70352EFA22EAFF59D50F0ADF7D27D918] (Microsoft Corporation)
    locale.nls -> C:\Windows\SysWow64\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
    locale.nls -> C:\Windows\SysNative\locale.nls -> [2009/06/04 04:47:55 | 03,662,128 | ---- | C | MD5 = B51BF7934D2B657454F66035AA5BFA03] ()
    authui.dll -> C:\Windows\SysNative\authui.dll -> [2009/06/04 04:47:55 | 02,272,256 | ---- | C | MD5 = 363D07C0F427C72BDE0B6D6492A205C9] (Microsoft Corporation)
    quartz.dll -> C:\Windows\SysWow64\quartz.dll -> [2009/06/04 04:47:55 | 01,314,816 | ---- | C | MD5 = F82BEBFF620C728CD4CC532E5D266D44] (Microsoft Corporation)
    win32spl.dll -> C:\Windows\SysWow64\win32spl.dll -> [2009/06/04 04:47:55 | 00,443,392 | ---- | C | MD5 = C90B296C43EDD9DD1751AD3B590ACDE6] (Microsoft Corporation)
    onex.tmf -> C:\Windows\SysNative\onex.tmf -> [2009/06/04 04:47:55 | 00,395,723 | ---- | C | MD5 = 4E18EBFC135590B5462EEF830224A1B2] ()
    services.exe -> C:\Windows\SysNative\services.exe -> [2009/06/04 04:47:55 | 00,384,512 | ---- | C | MD5 = 934E0B7D77FF78C18D9F8891221B6DE3] (Microsoft Corporation)
    USBSTOR.SYS -> C:\Windows\SysNative\drivers\USBSTOR.SYS -> [2009/06/04 04:47:55 | 00,077,824 | ---- | C | MD5 = B854C1558FCA0C269A38663E8B59B581] (Microsoft Corporation)
    netshell.dll -> C:\Windows\SysWow64\netshell.dll -> [2009/06/04 04:47:54 | 03,174,400 | ---- | C | MD5 = E98E402067978DB38282158F9E8609CA] (Microsoft Corporation)
    apds.dll -> C:\Windows\SysWow64\apds.dll -> [2009/06/04 04:47:54 | 01,730,560 | ---- | C | MD5 = AC40F8899BEC013EB1CA7CCC2D69E00C] (Microsoft Corporation)
    mswstr10.dll -> C:\Windows\SysWow64\mswstr10.dll -> [2009/06/04 04:47:54 | 00,618,496 | ---- | C | MD5 = E0B787702BAF0CF4CEDF8F61B71F8383] (Microsoft Corporation)
  • edited June 2009
    oleaut32.dll -> C:\Windows\SysWow64\oleaut32.dll -> [2009/06/04 04:47:54 | 00,563,712 | ---- | C | MD5 = CA85552B1A307CB03FF1A1D2D12CB1C5] (Microsoft Corporation)
    comdlg32.dll -> C:\Windows\SysNative\comdlg32.dll -> [2009/06/04 04:47:54 | 00,549,888 | ---- | C | MD5 = AA09B70F619CBF499EFC22E7A63E3CE6] (Microsoft Corporation)
    kerberos.dll -> C:\Windows\SysWow64\kerberos.dll -> [2009/06/04 04:47:54 | 00,497,664 | ---- | C | MD5 = 9E419B0C91886247B004002126A733A2] (Microsoft Corporation)
    odbc32.dll -> C:\Windows\SysNative\odbc32.dll -> [2009/06/04 04:47:54 | 00,462,848 | ---- | C | MD5 = 8583DDE24C687658FCB8080FCF0BE618] (Microsoft Corporation)
    QAGENTRT.DLL -> C:\Windows\SysNative\QAGENTRT.DLL -> [2009/06/04 04:47:54 | 00,409,600 | ---- | C | MD5 = A5B10C845E7538C60C0F5D87A57CB3F5] (Microsoft Corporation)
    winhttp.dll -> C:\Windows\SysWow64\winhttp.dll -> [2009/06/04 04:47:54 | 00,375,808 | ---- | C | MD5 = 6B0373ED07C3523D74070085E0BF8FD2] (Microsoft Corporation)
    mswsock.dll -> C:\Windows\SysNative\mswsock.dll -> [2009/06/04 04:47:54 | 00,304,128 | ---- | C | MD5 = BB08D93011B82883EC33C7707A9627BE] (Microsoft Corporation)
    ws2_32.dll -> C:\Windows\SysNative\ws2_32.dll -> [2009/06/04 04:47:54 | 00,264,704 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    dnsapi.dll -> C:\Windows\SysNative\dnsapi.dll -> [2009/06/04 04:47:54 | 00,221,696 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    msv1_0.dll -> C:\Windows\SysWow64\msv1_0.dll -> [2009/06/04 04:47:54 | 00,215,040 | ---- | C | MD5 = A24D2F08743454A51F688BA4AE5863A1] (Microsoft Corporation)
    WcnNetsh.dll -> C:\Windows\SysWow64\WcnNetsh.dll -> [2009/06/04 04:47:54 | 00,165,376 | ---- | C | MD5 = 2999CA596EB9E4BEDBA65EF2A47EECB1] (Microsoft Corporation)
    propdefs.dll -> C:\Windows\SysNative\propdefs.dll -> [2009/06/04 04:47:54 | 00,080,896 | ---- | C | MD5 = C332027B1DDAA66141217AFFBFB73754] (Microsoft Corporation)
    mfc42u.dll -> C:\Windows\SysWow64\mfc42u.dll -> [2009/06/04 04:47:53 | 01,160,704 | ---- | C | MD5 = 1DC99BA7265ACF7A5E19A924800EB823] (Microsoft Corporation)
    WerFaultSecure.exe -> C:\Windows\SysNative\WerFaultSecure.exe -> [2009/06/04 04:47:53 | 01,114,112 | ---- | C | MD5 = C457FFC56D38D295B0E57E8550589710] (Microsoft Corporation)
    winresume.efi -> C:\Windows\SysNative\winresume.efi -> [2009/06/04 04:47:53 | 00,992,728 | ---- | C | MD5 = 19CE8FF54DE700D7EAF98D96B6FECF11] (Microsoft Corporation)
    msctf.dll -> C:\Windows\SysWow64\msctf.dll -> [2009/06/04 04:47:53 | 00,807,424 | ---- | C | MD5 = E3C3BD69701CE6B7B17101E4F7740534] (Microsoft Corporation)
    netlogon.dll -> C:\Windows\SysNative\netlogon.dll -> [2009/06/04 04:47:53 | 00,717,312 | ---- | C | MD5 = A3F1B171702CA04744EE514243B45BFB] (Microsoft Corporation)
    msvcrt.dll -> C:\Windows\SysWow64\msvcrt.dll -> [2009/06/04 04:47:53 | 00,679,936 | ---- | C | MD5 = F5E991236960137B1F5449C5E5DF4656] (Microsoft Corporation)
    PhotoMetadataHandler.dll -> C:\Windows\SysNative\PhotoMetadataHandler.dll -> [2009/06/04 04:47:53 | 00,470,016 | ---- | C | MD5 = AA866B1970E18CD92DAD3B32611598A4] (Microsoft Corporation)
    emdmgmt.dll -> C:\Windows\SysNative\emdmgmt.dll -> [2009/06/04 04:47:53 | 00,399,360 | ---- | C | MD5 = A9B18B63A4FD6BAAB83326706D857FAB] (Microsoft Corporation)
    eapphost.dll -> C:\Windows\SysNative\eapphost.dll -> [2009/06/04 04:47:53 | 00,261,632 | ---- | C | MD5 = E0159CE395B31F746AA26D0A6996DB29] (Microsoft Corporation)
    newdev.dll -> C:\Windows\SysNative\newdev.dll -> [2009/06/04 04:47:53 | 00,215,552 | ---- | C | MD5 = 42BE9AE02DF6B7FB112E70E7CE825CED] (Microsoft Corporation)
    WinSCard.dll -> C:\Windows\SysNative\WinSCard.dll -> [2009/06/04 04:47:53 | 00,190,464 | ---- | C | MD5 = B1D4BB8DFD7128A90982562268920724] (Microsoft Corporation)
    eapphost.dll -> C:\Windows\SysWow64\eapphost.dll -> [2009/06/04 04:47:53 | 00,183,808 | ---- | C | MD5 = 3AB4023CBD406AC33AB8CDFF6C8079A0] (Microsoft Corporation)
    FWPKCLNT.SYS -> C:\Windows\SysNative\drivers\FWPKCLNT.SYS -> [2009/06/04 04:47:53 | 00,166,888 | ---- | C | MD5 = DC83A8659514AB95972B13C71F50D0CB] (Microsoft Corporation)
    mrxdav.sys -> C:\Windows\SysNative\drivers\mrxdav.sys -> [2009/06/04 04:47:53 | 00,139,264 | ---- | C | MD5 = 7C1DE4AA96DC0C071611F9E7DE02A68D] (Microsoft Corporation)
    xmlfilter.dll -> C:\Windows\SysWow64\xmlfilter.dll -> [2009/06/04 04:47:53 | 00,056,320 | ---- | C | MD5 = 7C0FC379D4B066C2D2189792DED0E4AA] (Microsoft Corporation)
    wlanpref.dll -> C:\Windows\SysNative\wlanpref.dll -> [2009/06/04 04:47:52 | 01,792,512 | ---- | C | MD5 = CFAC4A69ED38D8A3BF7D1EE3DBC1840E] (Microsoft Corporation)
    winresume.exe -> C:\Windows\SysNative\winresume.exe -> [2009/06/04 04:47:52 | 00,981,480 | ---- | C | MD5 = 68B5B3D21475AB5F4270E98010D3565A] (Microsoft Corporation)
    azroles.dll -> C:\Windows\SysNative\azroles.dll -> [2009/06/04 04:47:52 | 00,894,976 | ---- | C | MD5 = 78480FA9495F5F207043A17D8E799C5E] (Microsoft Corporation)
    usp10.dll -> C:\Windows\SysNative\usp10.dll -> [2009/06/04 04:47:52 | 00,621,568 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    IPSECSVC.DLL -> C:\Windows\SysNative\IPSECSVC.DLL -> [2009/06/04 04:47:52 | 00,533,504 | ---- | C | MD5 = 89A5560671C2D8B4A4B51F3E1AA069D8] (Microsoft Corporation)
    sqlsrv32.dll -> C:\Windows\SysWow64\sqlsrv32.dll -> [2009/06/04 04:47:52 | 00,524,288 | ---- | C | MD5 = A052F8FF7D6C6C32BCDCDA745134E569] (Microsoft Corporation)
    odbc32.dll -> C:\Windows\SysWow64\odbc32.dll -> [2009/06/04 04:47:52 | 00,409,600 | ---- | C | MD5 = 676AEC53D9D3E74A556089E665C3B586] (Microsoft Corporation)
    msrd2x40.dll -> C:\Windows\SysWow64\msrd2x40.dll -> [2009/06/04 04:47:52 | 00,319,488 | ---- | C | MD5 = 9A4B7595905E5A0DD530ECD23F77A578] (Microsoft Corporation)
    wevtutil.exe -> C:\Windows\SysNative\wevtutil.exe -> [2009/06/04 04:47:52 | 00,248,832 | ---- | C | MD5 = 27F21278BE6223D44D86FD4382E2D4A9] (Microsoft Corporation)
    MMDevAPI.dll -> C:\Windows\SysNative\MMDevAPI.dll -> [2009/06/04 04:47:52 | 00,203,776 | ---- | C | MD5 = 303C4EB5C2FB40F194E2B24CAD7148EF] (Microsoft Corporation)
    secur32.dll -> C:\Windows\SysWow64\secur32.dll -> [2009/06/04 04:47:52 | 00,077,312 | ---- | C | MD5 = 7BC0997C62B9FF56D63EAD4B66E55861] (Microsoft Corporation)
    propdefs.dll -> C:\Windows\SysWow64\propdefs.dll -> [2009/06/04 04:47:52 | 00,071,680 | ---- | C | MD5 = 88E1D14E26CB222D6B94AF85490E37F8] (Microsoft Corporation)
    milcore.dll -> C:\Windows\SysNative\milcore.dll -> [2009/06/04 04:47:51 | 02,570,240 | ---- | C | MD5 = B77AD1818DBD476245B1281016E075E4] (Microsoft Corporation)
    dbgeng.dll -> C:\Windows\SysWow64\dbgeng.dll -> [2009/06/04 04:47:51 | 01,856,512 | ---- | C | MD5 = 447983959A8CF49C4CC3B65DED69AF28] (Microsoft Corporation)
    shdocvw.dll -> C:\Windows\SysWow64\shdocvw.dll -> [2009/06/04 04:47:51 | 01,068,032 | ---- | C | MD5 = 2AA4117EE5F4765AD8404DCF9D552C71] (Microsoft Corporation)
    WsmSvc.dll -> C:\Windows\SysWow64\WsmSvc.dll -> [2009/06/04 04:47:51 | 00,747,008 | ---- | C | MD5 = 01874D4689C212460FBABF0ECD7CB7F7] (Microsoft Corporation)
    WSDApi.dll -> C:\Windows\SysNative\WSDApi.dll -> [2009/06/04 04:47:51 | 00,441,856 | ---- | C | MD5 = D485E7EA44BEE4CF783CE3566C3119D2] (Microsoft Corporation)
    Wldap32.dll -> C:\Windows\SysNative\Wldap32.dll -> [2009/06/04 04:47:51 | 00,328,704 | ---- | C | MD5 = ADC1964755BB12485A15070A4D4F2697] (Microsoft Corporation)
    iasnap.dll -> C:\Windows\SysNative\iasnap.dll -> [2009/06/04 04:47:51 | 00,213,504 | ---- | C | MD5 = 3232D6CA64C56F49A806674721A6F029] (Microsoft Corporation)
    wevtutil.exe -> C:\Windows\SysWow64\wevtutil.exe -> [2009/06/04 04:47:51 | 00,163,840 | ---- | C | MD5 = 2C2DE9CD93DD4F11F8715B7334EB40A7] (Microsoft Corporation)
    mssitlb.dll -> C:\Windows\SysNative\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,552 | ---- | C | MD5 = 1EE53C36447CE03E4E65F201E0D547DD] (Microsoft Corporation)
    mssitlb.dll -> C:\Windows\SysWow64\mssitlb.dll -> [2009/06/04 04:47:51 | 00,087,040 | ---- | C | MD5 = B9E13F49530213AB974E070A60DEB97B] (Microsoft Corporation)
    msscb.dll -> C:\Windows\SysNative\msscb.dll -> [2009/06/04 04:47:51 | 00,044,544 | ---- | C | MD5 = A44E61A183FD6D65C655E31A330ECA7E] (Microsoft Corporation)
    mmcndmgr.dll -> C:\Windows\SysWow64\mmcndmgr.dll -> [2009/06/04 04:47:50 | 02,167,808 | ---- | C | MD5 = 99BFB01E148169E6E8DA7B7232F874CE] (Microsoft Corporation)
    wmpmde.dll -> C:\Windows\SysNative\wmpmde.dll -> [2009/06/04 04:47:50 | 01,090,048 | ---- | C | MD5 = 4745415AE82069D623A805B69916F42E] (Microsoft Corporation)
    mcmde.dll -> C:\Windows\SysNative\mcmde.dll -> [2009/06/04 04:47:50 | 01,074,176 | ---- | C | MD5 = C34EA290A77FC029AC223234F210F665] (Microsoft Corporation)
    usp10.dll -> C:\Windows\SysWow64\usp10.dll -> [2009/06/04 04:47:50 | 00,502,272 | ---- | C | MD5 = 5A8E28037289FCCBF7AD3FC57DF7048F] (Microsoft Corporation)
    iassam.dll -> C:\Windows\SysNative\iassam.dll -> [2009/06/04 04:47:50 | 00,242,176 | ---- | C | MD5 = 97C86944F4FA60DEB053E2D4733CD3AA] (Microsoft Corporation)
    msiscsi.sys -> C:\Windows\SysNative\drivers\msiscsi.sys -> [2009/06/04 04:47:50 | 00,215,528 | ---- | C | MD5 = E4FDF99599F27EC25D2CF6D754243520] (Microsoft Corporation)
    gameux.dll -> C:\Windows\SysNative\gameux.dll -> [2009/06/04 04:47:49 | 01,927,680 | ---- | C | MD5 = 4697694DDF74F76E37D3E76EE4468CE4] (Microsoft Corporation)
    propsys.dll -> C:\Windows\SysNative\propsys.dll -> [2009/06/04 04:47:49 | 00,923,136 | ---- | C | MD5 = FE13271EF661F8BE83A1A0D3366164D0] (Microsoft Corporation)
    netlogon.dll -> C:\Windows\SysWow64\netlogon.dll -> [2009/06/04 04:47:49 | 00,592,896 | ---- | C | MD5 = 95DAECF0FB120A7B5DA679CC54E37DDE] (Microsoft Corporation)
    winsrv.dll -> C:\Windows\SysNative\winsrv.dll -> [2009/06/04 04:47:49 | 00,450,560 | ---- | C | MD5 = 36F234FD1AA7BAE559BB1C483FC76286] (Microsoft Corporation)
    devmgr.dll -> C:\Windows\SysWow64\devmgr.dll -> [2009/06/04 04:47:49 | 00,378,368 | ---- | C | MD5 = 5CAA965A14ADBDEF4359F3D2BEA9D9F7] (Microsoft Corporation)
    schannel.dll -> C:\Windows\SysNative\schannel.dll -> [2009/06/04 04:47:49 | 00,335,360 | ---- | C | MD5 = F870ECC00D60B40E0894414F7833B002] (Microsoft Corporation)
    schannel.dll -> C:\Windows\SysWow64\schannel.dll -> [2009/06/04 04:47:49 | 00,268,800 | ---- | C | MD5 = 17038AA83CCC0E1573FCE458CA790380] (Microsoft Corporation)
    adsldpc.dll -> C:\Windows\SysWow64\adsldpc.dll -> [2009/06/04 04:47:49 | 00,199,168 | ---- | C | MD5 = E9B9C1B98C8D6D48407E1C1203EAC659] (Microsoft Corporation)
    drvinst.exe -> C:\Windows\SysWow64\drvinst.exe -> [2009/06/04 04:47:49 | 00,194,048 | ---- | C | MD5 = 488F6147CBBF38ADFA29710537E02E61] (Microsoft Corporation)
    srv2.sys -> C:\Windows\SysNative\drivers\srv2.sys -> [2009/06/04 04:47:49 | 00,174,592 | ---- | C | MD5 = EFCA77E9F9FDAB1DE37CC473066DC715] (Microsoft Corporation)
    cryptsvc.dll -> C:\Windows\SysNative\cryptsvc.dll -> [2009/06/04 04:47:49 | 00,166,912 | ---- | C | MD5 = 18918613E63F387CDE4D95CA7D49DCF7] (Microsoft Corporation)
    msctfp.dll -> C:\Windows\SysWow64\msctfp.dll -> [2009/06/04 04:47:49 | 00,084,992 | ---- | C | MD5 = 89C91775A8332D9DB03AFE8A884185F9] (Microsoft Corporation)
    bthserv.dll -> C:\Windows\SysNative\bthserv.dll -> [2009/06/04 04:47:49 | 00,053,760 | ---- | C | MD5 = 22E65FFD640F16968F855F5B3528D366] (Microsoft Corporation)
    rtffilt.dll -> C:\Windows\SysNative\rtffilt.dll -> [2009/06/04 04:47:49 | 00,042,496 | ---- | C | MD5 = 97A11F16ACF1904145B92DBB687CC156] (Microsoft Corporation)
    msscb.dll -> C:\Windows\SysWow64\msscb.dll -> [2009/06/04 04:47:49 | 00,035,328 | ---- | C | MD5 = F85134BF76CB335A39F8D7BC4173D4FB] (Microsoft Corporation)
    fdBthProxy.dll -> C:\Windows\SysWow64\fdBthProxy.dll -> [2009/06/04 04:47:49 | 00,009,728 | ---- | C | MD5 = BF741696C521FF5503CDE10E36345E4D] (Microsoft Corporation)
    wcnwiz.dll -> C:\Windows\SysWow64\wcnwiz.dll -> [2009/06/04 04:47:48 | 01,533,440 | ---- | C | MD5 = 9EF2D0475B0DC496ACD0B7034D593840] (Microsoft Corporation)
    WMVSDECD.DLL -> C:\Windows\SysWow64\WMVSDECD.DLL -> [2009/06/04 04:47:48 | 01,382,912 | ---- | C | MD5 = 487565A576DCBA47D2E44FA116E15D64] (Microsoft Corporation)
    WindowsCodecs.dll -> C:\Windows\SysWow64\WindowsCodecs.dll -> [2009/06/04 04:47:48 | 00,712,704 | ---- | C | MD5 = F7F4AD3D174CB5EC3C12F04C99478B84] (Microsoft Corporation)
    adtschema.dll -> C:\Windows\SysWow64\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = EC43D9CC95C3BB5FEFDBCF22D375E1F5] (Microsoft Corporation)
    adtschema.dll -> C:\Windows\SysNative\adtschema.dll -> [2009/06/04 04:47:48 | 00,617,984 | ---- | C | MD5 = 99AA51A6AE40DED4A74776E6E1C066C1] (Microsoft Corporation)
    mscms.dll -> C:\Windows\SysNative\mscms.dll -> [2009/06/04 04:47:48 | 00,519,680 | ---- | C | MD5 = 87B1E9B5DBFADA04D9FFDC52D16CB000] (Microsoft Corporation)
    evr.dll -> C:\Windows\SysWow64\evr.dll -> [2009/06/04 04:47:48 | 00,485,888 | ---- | C | MD5 = 2495C4204C63678F8FD5D488CA7DAD26] (Microsoft Corporation)
    vds.exe -> C:\Windows\SysNative\vds.exe -> [2009/06/04 04:47:48 | 00,454,656 | ---- | C | MD5 = 294945381DFA7CE58CECF0A9896AF327] (Microsoft Corporation)
    comdlg32.dll -> C:\Windows\SysWow64\comdlg32.dll -> [2009/06/04 04:47:48 | 00,450,560 | ---- | C | MD5 = 4AA2A0E26CEF1A803741253DCF9A1503] (Microsoft Corporation)
    PhotoMetadataHandler.dll -> C:\Windows\SysWow64\PhotoMetadataHandler.dll -> [2009/06/04 04:47:48 | 00,425,472 | ---- | C | MD5 = BE7C04C89126072D368D3DDCE0710985] (Microsoft Corporation)
    winlogon.exe -> C:\Windows\SysNative\winlogon.exe -> [2009/06/04 04:47:48 | 00,405,504 | ---- | C | MD5 = 6D0773A3A65D28B663F334C90441D01A] (Microsoft Corporation)
    WSDApi.dll -> C:\Windows\SysWow64\WSDApi.dll -> [2009/06/04 04:47:48 | 00,355,328 | ---- | C | MD5 = 5FF741BF7F6DB47F1F03E9B995DC2D3C] (Microsoft Corporation)
    Wldap32.dll -> C:\Windows\SysWow64\Wldap32.dll -> [2009/06/04 04:47:48 | 00,287,744 | ---- | C | MD5 = B8A609FB5EFB4E44FC1355B1C01C64BC] (Microsoft Corporation)
    services.exe -> C:\Windows\SysWow64\services.exe -> [2009/06/04 04:47:48 | 00,279,552 | ---- | C | MD5 = D4E6D91C1349B7BFB3599A6ADA56851B] (Microsoft Corporation)
    volsnap.sys -> C:\Windows\SysNative\drivers\volsnap.sys -> [2009/06/04 04:47:48 | 00,269,288 | ---- | C | MD5 = 5280AADA24AB36B01A84A6424C475C8D] (Microsoft Corporation)
    taskeng.exe -> C:\Windows\SysNative\taskeng.exe -> [2009/06/04 04:47:48 | 00,265,216 | ---- | C | MD5 = 2009F2E44758BECD3195B40D0B3650B3] (Microsoft Corporation)
    scrrun.dll -> C:\Windows\SysNative\scrrun.dll -> [2009/06/04 04:47:48 | 00,198,656 | ---- | C | MD5 = EB3D80F14D593C3ABCCEE58464BFE59C] (Microsoft Corporation)
    imapi.dll -> C:\Windows\SysNative\imapi.dll -> [2009/06/04 04:47:48 | 00,151,040 | ---- | C | MD5 = 50BABB0E2AD8A8C5B692D0D030FDFA03] (Microsoft Corporation)
    qintlgnt.ime -> C:\Windows\SysWow64\qintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = EABE8490A252D8B2020357D560A93850] (Microsoft Corporation)
    cintlgnt.ime -> C:\Windows\SysWow64\cintlgnt.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = E04FA091879E982F77024DF9461649E3] (Microsoft Corporation)
    chajei.ime -> C:\Windows\SysWow64\chajei.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 50AE4C1B7A68DE9FFD3D433C93BA270A] (Microsoft Corporation)
    quick.ime -> C:\Windows\SysWow64\quick.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 1171CEB628BA19D69182935FF81DE24E] (Microsoft Corporation)
    phon.ime -> C:\Windows\SysWow64\phon.ime -> [2009/06/04 04:47:48 | 00,124,928 | ---- | C | MD5 = 008EA1117A5F3A1866FCC94F34D1424E] (Microsoft Corporation)
    reg.exe -> C:\Windows\SysNative\reg.exe -> [2009/06/04 04:47:48 | 00,074,240 | ---- | C | MD5 = 314053DF55929FED67215E871EC7CEDF] (Microsoft Corporation)
    partmgr.sys -> C:\Windows\SysNative\drivers\partmgr.sys -> [2009/06/04 04:47:48 | 00,073,176 | ---- | C | MD5 = F9B5EDA4C17A2BE7663F064DBF0FE254] (Microsoft Corporation)
    fdProxy.dll -> C:\Windows\SysNative\fdProxy.dll -> [2009/06/04 04:47:48 | 00,065,536 | ---- | C | MD5 = 9DD626CC4FB7CAAC19B2F4C33CD6A2A3] (Microsoft Corporation)
    mimefilt.dll -> C:\Windows\SysWow64\mimefilt.dll -> [2009/06/04 04:47:48 | 00,041,984 | ---- | C | MD5 = FAF53B680C7DE42328EAE23638934D10] (Microsoft Corporation)
    mimefilt.dll -> C:\Windows\SysNative\mimefilt.dll -> [2009/06/04 04:47:48 | 00,038,912 | ---- | C | MD5 = D48FBAFD097E23E6BB255A09FA7EF06D] (Microsoft Corporation)
    brcpl.dll -> C:\Windows\SysNative\brcpl.dll -> [2009/06/04 04:47:47 | 01,538,560 | ---- | C | MD5 = EF6D2BC5AF87B6DDFB52245FF77046B7] (Microsoft Corporation)
    wdc.dll -> C:\Windows\SysNative\wdc.dll -> [2009/06/04 04:47:47 | 01,234,432 | ---- | C | MD5 = 832726DEFA39BBA2D34C9E20CEA471C0] (Microsoft Corporation)
    mswdat10.dll -> C:\Windows\SysWow64\mswdat10.dll -> [2009/06/04 04:47:47 | 00,856,064 | ---- | C | MD5 = 7483E59A7A7A7891ACD4C63EE97D1BF1] (Microsoft Corporation)
    CertEnrollUI.dll -> C:\Windows\SysNative\CertEnrollUI.dll -> [2009/06/04 04:47:47 | 00,810,496 | ---- | C | MD5 = 777FED68045FC30A869237A10277075F] (Microsoft Corporation)
    stobject.dll -> C:\Windows\SysNative\stobject.dll -> [2009/06/04 04:47:47 | 00,748,544 | ---- | C | MD5 = 2539DFDB16F616B60D9D6858D36C5710] (Microsoft Corporation)
    msdtcprx.dll -> C:\Windows\SysWow64\msdtcprx.dll -> [2009/06/04 04:47:47 | 00,560,640 | ---- | C | MD5 = EF9E3316F1106998D1904C3578C63C32] (Microsoft Corporation)
    ksecdd.sys -> C:\Windows\SysNative\drivers\ksecdd.sys -> [2009/06/04 04:47:47 | 00,514,536 | ---- | C | MD5 = FB88B233AF3D6204F19D85934C102BA7] (Microsoft Corporation)
    wcncsvc.dll -> C:\Windows\SysWow64\wcncsvc.dll -> [2009/06/04 04:47:47 | 00,413,696 | ---- | C | MD5 = A3CD60FD826381B49F03832590E069AF] (Microsoft Corporation)
    ipsmsnap.dll -> C:\Windows\SysWow64\ipsmsnap.dll -> [2009/06/04 04:47:47 | 00,396,288 | ---- | C | MD5 = C192DD0C53FD0616AC31A9E0ADAE0C39] (Microsoft Corporation)
    msdrm.dll -> C:\Windows\SysWow64\msdrm.dll -> [2009/06/04 04:47:47 | 00,332,288 | ---- | C | MD5 = 9A4156DE0BBC936B2F61EEFC376E7DFC] (Microsoft Corporation)
    certcli.dll -> C:\Windows\SysWow64\certcli.dll -> [2009/06/04 04:47:47 | 00,323,584 | ---- | C | MD5 = AC48FD62E22C4425879FCA5A63F50497] (Microsoft Corporation)
    rasmans.dll -> C:\Windows\SysNative\rasmans.dll -> [2009/06/04 04:47:47 | 00,309,760 | ---- | C | MD5 = 3AD83E4046C43BE510DE681588ACB8AF] (Microsoft Corporation)
    pdh.dll -> C:\Windows\SysNative\pdh.dll -> [2009/06/04 04:47:47 | 00,307,712 | ---- | C | MD5 = 185A819D9AC5A1D7F387C45F476CFE32] (Microsoft Corporation)
    offfilt.dll -> C:\Windows\SysNative\offfilt.dll -> [2009/06/04 04:47:47 | 00,280,064 | ---- | C | MD5 = C87C18A68AA8BFE1AAFB2E5A19518191] (Microsoft Corporation)
    PortableDeviceApi.dll -> C:\Windows\SysWow64\PortableDeviceApi.dll -> [2009/06/04 04:47:47 | 00,241,152 | ---- | C | MD5 = B26C0D2B2186AC508B5EFF976BB7FF9D] (Microsoft Corporation)
    taskeng.exe -> C:\Windows\SysWow64\taskeng.exe -> [2009/06/04 04:47:47 | 00,169,984 | ---- | C | MD5 = E5BBFC283D6F5D69B41E464676361020] (Microsoft Corporation)
    dnsapi.dll -> C:\Windows\SysWow64\dnsapi.dll -> [2009/06/04 04:47:47 | 00,168,448 | ---- | C | MD5 = F7683EC1225435144F28B611546BA5F2] (Microsoft Corporation)
    dhcpcsvc6.dll -> C:\Windows\SysNative\dhcpcsvc6.dll -> [2009/06/04 04:47:47 | 00,163,328 | ---- | C | MD5 = 956148910C7EB6A8C095D9B4E6F94E62] (Microsoft Corporation)
    inetpp.dll -> C:\Windows\SysNative\inetpp.dll -> [2009/06/04 04:47:47 | 00,156,160 | ---- | C | MD5 = A5A54257E6FD4AF082CCB0470AD4FC98] (Microsoft Corporation)
    rasl2tp.sys -> C:\Windows\SysNative\drivers\rasl2tp.sys -> [2009/06/04 04:47:47 | 00,124,928 | ---- | C | MD5 = AC7BC4D42A7E558718DFDEC599BBFC2C] (Microsoft Corporation)
    reg.exe -> C:\Windows\SysWow64\reg.exe -> [2009/06/04 04:47:47 | 00,061,952 | ---- | C | MD5 = DE4E8E68DE8CFBEB1B5C6B6E6022D98C] (Microsoft Corporation)
    msjter40.dll -> C:\Windows\SysWow64\msjter40.dll -> [2009/06/04 04:47:47 | 00,061,440 | ---- | C | MD5 = 534FD777CB2684392411CE7BCBBDF78E] (Microsoft Corporation)
    rtffilt.dll -> C:\Windows\SysWow64\rtffilt.dll -> [2009/06/04 04:47:47 | 00,038,400 | ---- | C | MD5 = D066FF44590F6F7433F60674C74394C6] (Microsoft Corporation)
    WMNetMgr.dll -> C:\Windows\SysWow64\WMNetMgr.dll -> [2009/06/04 04:47:46 | 00,996,352 | ---- | C | MD5 = 3159B65312AEC7CDFAD346D5A1C5068B] (Microsoft Corporation)
    certutil.exe -> C:\Windows\SysWow64\certutil.exe -> [2009/06/04 04:47:46 | 00,799,744 | ---- | C | MD5 = 4533F3B0E9AD11A1C02B191F5D873DE2] (Microsoft Corporation)
    PhotoScreensaver.scr -> C:\Windows\SysWow64\PhotoScreensaver.scr -> [2009/06/04 04:47:46 | 00,704,512 | ---- | C | MD5 = AAC78A91ED32BC0CA7FC8AEC39975016] (Microsoft Corporation)
    wiaservc.dll -> C:\Windows\SysNative\wiaservc.dll -> [2009/06/04 04:47:46 | 00,572,416 | ---- | C | MD5 = 15825C1FBFB8779992CB65087F316AF5] (Microsoft Corporation)
    RelMon.dll -> C:\Windows\SysNative\RelMon.dll -> [2009/06/04 04:47:46 | 00,539,136 | ---- | C | MD5 = 86EA84AC57D94A553006850123D22F50] (Microsoft Corporation)
    sysmon.ocx -> C:\Windows\SysNative\sysmon.ocx -> [2009/06/04 04:47:46 | 00,475,648 | ---- | C | MD5 = 889D851AD03063E01F7866B1D10044CF] (Microsoft Corporation)
    mtxclu.dll -> C:\Windows\SysNative\mtxclu.dll -> [2009/06/04 04:47:46 | 00,361,984 | ---- | C | MD5 = 663A071E67EB7052637E1549BF1A28B5] (Microsoft Corporation)
    clfs.sys -> C:\Windows\SysNative\clfs.sys -> [2009/06/04 04:47:46 | 00,361,448 | ---- | C | MD5 = 3DCA9A18B204939CFB24BEA53E31EB48] (Microsoft Corporation)
    winspool.drv -> C:\Windows\SysNative\winspool.drv -> [2009/06/04 04:47:46 | 00,342,016 | ---- | C | MD5 = 715628F11CFC90962DBEFEA24556863F] (Microsoft Corporation)
    msihnd.dll -> C:\Windows\SysWow64\msihnd.dll -> [2009/06/04 04:47:46 | 00,332,800 | ---- | C | MD5 = DC14113D196060C83BDD99D20E4DBE8E] (Microsoft Corporation)
    rsaenh.dll -> C:\Windows\SysWow64\rsaenh.dll -> [2009/06/04 04:47:46 | 00,241,128 | ---- | C | MD5 = E14170AEA125119B98FA2BDE3FF4F462] (Microsoft Corporation)
    scrobj.dll -> C:\Windows\SysNative\scrobj.dll -> [2009/06/04 04:47:46 | 00,227,328 | ---- | C | MD5 = D03E2F3215490A268B3DA59AADF10524] (Microsoft Corporation)
    pnpsetup.dll -> C:\Windows\SysNative\pnpsetup.dll -> [2009/06/04 04:47:46 | 00,207,872 | ---- | C | MD5 = 91413FA55670EB3036425C4F31826CF4] (Microsoft Corporation)
    fundisc.dll -> C:\Windows\SysNative\fundisc.dll -> [2009/06/04 04:47:46 | 00,174,080 | ---- | C | MD5 = 7F80E2C493079E9D42CCECC715790E10] (Microsoft Corporation)
    ndiswan.sys -> C:\Windows\SysNative\drivers\ndiswan.sys -> [2009/06/04 04:47:46 | 00,169,472 | ---- | C | MD5 = F8158771905260982CE724076419EF19] (Microsoft Corporation)
    MMDevAPI.dll -> C:\Windows\SysWow64\MMDevAPI.dll -> [2009/06/04 04:47:46 | 00,150,528 | ---- | C | MD5 = 56B5914070B2C243DFB3D186070DA89D] (Microsoft Corporation)
    sysclass.dll -> C:\Windows\SysNative\sysclass.dll -> [2009/06/04 04:47:46 | 00,115,200 | ---- | C | MD5 = C46E68C6B94705F95C9C7D8BFD7BD9BD] (Microsoft Corporation)
    raspptp.sys -> C:\Windows\SysNative\drivers\raspptp.sys -> [2009/06/04 04:47:46 | 00,098,816 | ---- | C | MD5 = 23386E9952025F5F21C368971E2E7301] (Microsoft Corporation)
    msscntrs.dll -> C:\Windows\SysWow64\msscntrs.dll -> [2009/06/04 04:47:46 | 00,060,416 | ---- | C | MD5 = 2657D7BB993F49B1A3C554D766FA09F9] (Microsoft Corporation)
    msstrc.dll -> C:\Windows\SysWow64\msstrc.dll -> [2009/06/04 04:47:46 | 00,043,008 | ---- | C | MD5 = 3618C1D17AF65C2405009AE02160D298] (Microsoft Corporation)
    msshooks.dll -> C:\Windows\SysWow64\msshooks.dll -> [2009/06/04 04:47:46 | 00,011,776 | ---- | C | MD5 = 582BE479E7E286BB3B31C5A4C3DC3987] (Microsoft Corporation)
    appwiz.cpl -> C:\Windows\SysNative\appwiz.cpl -> [2009/06/04 04:47:45 | 01,321,472 | ---- | C | MD5 = 8565BEDF9ACD28A9A1FFAADC93F957C5] (Microsoft Corporation)
    sethc.exe -> C:\Windows\SysNative\sethc.exe -> [2009/06/04 04:47:45 | 00,776,192 | ---- | C | MD5 = 7E5B8772130C5E66DE982E7033805E2F] (Microsoft Corporation)
    inetcomm.dll -> C:\Windows\SysWow64\inetcomm.dll -> [2009/06/04 04:47:45 | 00,738,816 | ---- | C | MD5 = AC9415A1AF0F49570F7515A7131AE2E1] (Microsoft Corporation)
    msinfo32.exe -> C:\Windows\SysNative\msinfo32.exe -> [2009/06/04 04:47:45 | 00,488,960 | ---- | C | MD5 = A4AF702E6BB80D014C56EDE22C6BC423] (Microsoft Corporation)
    netapi32.dll -> C:\Windows\SysWow64\netapi32.dll -> [2009/06/04 04:47:45 | 00,467,456 | ---- | C | MD5 = C94108296530A097B2E1E18C101E4703] (Microsoft Corporation)
    acpi.sys -> C:\Windows\SysNative\drivers\acpi.sys -> [2009/06/04 04:47:45 | 00,325,608 | ---- | C | MD5 = 1965AAFFAB07E3FB03C77F81BEBA3547] (Microsoft Corporation)
    mtxclu.dll -> C:\Windows\SysWow64\mtxclu.dll -> [2009/06/04 04:47:45 | 00,310,272 | ---- | C | MD5 = 601C4575875A03798498558D0DB1C91A] (Microsoft Corporation)
    wisptis.exe -> C:\Windows\SysNative\wisptis.exe -> [2009/06/04 04:47:45 | 00,287,744 | ---- | C | MD5 = EC587CF25B60660B988218445CB10573] (Microsoft Corporation)
    mfplat.dll -> C:\Windows\SysNative\mfplat.dll -> [2009/06/04 04:47:45 | 00,276,992 | ---- | C | MD5 = A17EA1F3A658C80B6493E50351F940CF] (Microsoft Corporation)
    usbport.sys -> C:\Windows\SysNative\drivers\usbport.sys -> [2009/06/04 04:47:45 | 00,259,584 | ---- | C | MD5 = A60FDA63F3901AE49C244FF988427A9C] (Microsoft Corporation)
    adsldpc.dll -> C:\Windows\SysNative\adsldpc.dll -> [2009/06/04 04:47:45 | 00,231,936 | ---- | C | MD5 = 80B8B7FF3AADD2156EE969C048644CAF] (Microsoft Corporation)
    iasrad.dll -> C:\Windows\SysNative\iasrad.dll -> [2009/06/04 04:47:45 | 00,198,144 | ---- | C | MD5 = 2C234A4AD19475408E937816ECE96327] (Microsoft Corporation)
    pci.sys -> C:\Windows\SysNative\drivers\pci.sys -> [2009/06/04 04:47:45 | 00,178,664 | ---- | C | MD5 = 47AB1E0FC9D0E12BB53BA246E3A0906D] (Microsoft Corporation)
    fundisc.dll -> C:\Windows\SysWow64\fundisc.dll -> [2009/06/04 04:47:45 | 00,153,088 | ---- | C | MD5 = 4EDA94333BDB75B1BC0A7610BED34F00] (Microsoft Corporation)
    dhcpcsvc6.dll -> C:\Windows\SysWow64\dhcpcsvc6.dll -> [2009/06/04 04:47:45 | 00,130,560 | ---- | C | MD5 = DFB6B71CDABA9DFB49C9D2B318B97A1A] (Microsoft Corporation)
    cryptsvc.dll -> C:\Windows\SysWow64\cryptsvc.dll -> [2009/06/04 04:47:45 | 00,129,024 | ---- | C | MD5 = FB27772BEAF8E1D28CCD825C09DA939B] (Microsoft Corporation)
    msiexec.exe -> C:\Windows\SysNative\msiexec.exe -> [2009/06/04 04:47:45 | 00,125,440 | ---- | C | MD5 = AC545DF9370A3E1BF538E403ABE51CC0] (Microsoft Corporation)
    dfshim.dll -> C:\Windows\SysNative\dfshim.dll -> [2009/06/04 04:47:45 | 00,108,864 | ---- | C | MD5 = DCEB990982F68B6D8392505433C787D0] (Microsoft Corporation)
    dfshim.dll -> C:\Windows\SysWow64\dfshim.dll -> [2009/06/04 04:47:45 | 00,093,512 | ---- | C | MD5 = 2D82E6A9D1F8095F81BDDA21E369D3D2] (Microsoft Corporation)
    mscories.dll -> C:\Windows\SysWow64\mscories.dll -> [2009/06/04 04:47:45 | 00,080,720 | ---- | C | MD5 = 9CEDC24DC2A88624A4431C96A13C0C94] (Microsoft Corporation)
    rasdiag.dll -> C:\Windows\SysNative\rasdiag.dll -> [2009/06/04 04:47:45 | 00,065,536 | ---- | C | MD5 = 78C9AB22333F1FA642222CD18ABC50C9] (Microsoft Corporation)
    TsWpfWrp.exe -> C:\Windows\SysWow64\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,035,680 | ---- | C | MD5 = 7EE55302291DD7AA5C2237B0CC7D49E1] (Microsoft Corporation)
    TsWpfWrp.exe -> C:\Windows\SysNative\TsWpfWrp.exe -> [2009/06/04 04:47:45 | 00,034,624 | ---- | C | MD5 = FB4D090E203E7A5E0D58EDE957296406] (Microsoft Corporation)
    hidserv.dll -> C:\Windows\SysWow64\hidserv.dll -> [2009/06/04 04:47:45 | 00,026,112 | ---- | C | MD5 = 84067081F3318162797385E11A8F0582] (Microsoft Corporation)
    gameux.dll -> C:\Windows\SysWow64\gameux.dll -> [2009/06/04 04:47:44 | 01,696,768 | ---- | C | MD5 = 9B8F915F1DA844B94700868520C239ED] (Microsoft Corporation)
    chsbrkr.dll -> C:\Windows\SysWow64\chsbrkr.dll -> [2009/06/04 04:47:44 | 01,671,680 | ---- | C | MD5 = 9996E936E9926108FBEDED4171B129B7] (Microsoft Corporation)
    cryptui.dll -> C:\Windows\SysNative\cryptui.dll -> [2009/06/04 04:47:44 | 01,035,776 | ---- | C | MD5 = A361672E1AE1581B475F035607F4FD87] (Microsoft Corporation)
    wdc.dll -> C:\Windows\SysWow64\wdc.dll -> [2009/06/04 04:47:44 | 01,020,928 | ---- | C | MD5 = 1959E5AAEE0D988C10F19CEC7DFF2242] (Microsoft Corporation)
    printui.dll -> C:\Windows\SysNative\printui.dll -> [2009/06/04 04:47:44 | 00,980,480 | ---- | C | MD5 = 91ECB960A6E54B48F6901E36DF8EEBAA] (Microsoft Corporation)
    Utilman.exe -> C:\Windows\SysNative\Utilman.exe -> [2009/06/04 04:47:44 | 00,785,920 | ---- | C | MD5 = 106A5163D2A23CC82C4C94FE7AEF5841] (Microsoft Corporation)
    autofmt.exe -> C:\Windows\SysNative\autofmt.exe -> [2009/06/04 04:47:44 | 00,722,944 | ---- | C | MD5 = A2E4854AF96353AD33D4F167085A4A7B] (Microsoft Corporation)
    termsrv.dll -> C:\Windows\SysNative\termsrv.dll -> [2009/06/04 04:47:44 | 00,547,328 | ---- | C | MD5 = 5CDD30BC217082DAC71A9878D9BFD566] (Microsoft Corporation)
    mrxsmb10.sys -> C:\Windows\SysNative\drivers\mrxsmb10.sys -> [2009/06/04 04:47:44 | 00,273,408 | ---- | C | MD5 = D35768909607B7B4F827B2105DD6B6CF] (Microsoft Corporation)
    shsvcs.dll -> C:\Windows\SysWow64\shsvcs.dll -> [2009/06/04 04:47:44 | 00,247,296 | ---- | C | MD5 = C818C44C201898399BF999BB6B35D4E3] (Microsoft Corporation)
    tcpipcfg.dll -> C:\Windows\SysNative\tcpipcfg.dll -> [2009/06/04 04:47:44 | 00,238,080 | ---- | C | MD5 = F8F08779E7D997913607B0146710CC04] (Microsoft Corporation)
    osk.exe -> C:\Windows\SysNative\osk.exe -> [2009/06/04 04:47:44 | 00,212,480 | ---- | C | MD5 = 8A777C49978A4E03C4F1442E8FDC5CC2] (Microsoft Corporation)
    WFP.TMF -> C:\Windows\SysNative\WFP.TMF -> [2009/06/04 04:47:44 | 00,207,968 | ---- | C | MD5 = 424F4F52583C8AB4D27A34A6B71B6E95] ()
    AudioSes.dll -> C:\Windows\SysNative\AudioSes.dll -> [2009/06/04 04:47:44 | 00,190,976 | ---- | C | MD5 = EEFDA2A090E8000740D46B09DCDBEAFF] (Microsoft Corporation)
    mrxsmb.sys -> C:\Windows\SysNative\drivers\mrxsmb.sys -> [2009/06/04 04:47:44 | 00,135,168 | ---- | C | MD5 = A6C23405A24C0C48A246D4F23F0A387D] (Microsoft Corporation)
    imapi.dll -> C:\Windows\SysWow64\imapi.dll -> [2009/06/04 04:47:44 | 00,107,520 | ---- | C | MD5 = C399E29AC25746CDC126DC621F41F219] (Microsoft Corporation)
    SLUINotify.dll -> C:\Windows\SysNative\SLUINotify.dll -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = FD74B4B7C2088E390A30C85A896FC3AF] (Microsoft Corporation)
    msiexec.exe -> C:\Windows\SysWow64\msiexec.exe -> [2009/06/04 04:47:44 | 00,073,216 | ---- | C | MD5 = C559672F31ABE6BA7277DD73C4502238] (Microsoft Corporation)
    iasdatastore.dll -> C:\Windows\SysNative\iasdatastore.dll -> [2009/06/04 04:47:44 | 00,065,536 | ---- | C | MD5 = 11F1BAD4698745ABE18C96059D43E4D9] (Microsoft Corporation)
    termdd.sys -> C:\Windows\SysNative\drivers\termdd.sys -> [2009/06/04 04:47:44 | 00,062,440 | ---- | C | MD5 = 8C19678D22649EC002EF2282EAE92F98] (Microsoft Corporation)
    pnidui.dll -> C:\Windows\SysNative\pnidui.dll -> [2009/06/04 04:47:43 | 02,024,960 | ---- | C | MD5 = DE95622B09554A70DB4F035D197330BF] (Microsoft Corporation)
    pnidui.dll -> C:\Windows\SysWow64\pnidui.dll -> [2009/06/04 04:47:43 | 01,823,744 | ---- | C | MD5 = 75AD59B9B12EB194486BE8D97B062994] (Microsoft Corporation)
    connect.dll -> C:\Windows\SysNative\connect.dll -> [2009/06/04 04:47:43 | 01,691,648 | ---- | C | MD5 = A322BB42609E9D728C9440FB2685F04D] (Microsoft Corporation)
    rdpencom.dll -> C:\Windows\SysNative\rdpencom.dll -> [2009/06/04 04:47:43 | 00,708,608 | ---- | C | MD5 = 37CA04B27F4E31F850B899FD06F725F0] (Microsoft Corporation)
    autofmt.exe -> C:\Windows\SysWow64\autofmt.exe -> [2009/06/04 04:47:43 | 00,636,416 | ---- | C | MD5 = 34DA5AE04CA114B23D93CD9D4D05FCB7] (Microsoft Corporation)
    dsound.dll -> C:\Windows\SysNative\dsound.dll -> [2009/06/04 04:47:43 | 00,522,752 | ---- | C | MD5 = EA47AF4FBF17580D093C0C36C4E49921] (Microsoft Corporation)
    volmgrx.sys -> C:\Windows\SysNative\drivers\volmgrx.sys -> [2009/06/04 04:47:43 | 00,408,024 | ---- | C | MD5 = CEC5AC15277D75D9E5DEC2E1C6EAF877] (Microsoft Corporation)
    WindowsCodecsExt.dll -> C:\Windows\SysNative\WindowsCodecsExt.dll -> [2009/06/04 04:47:43 | 00,387,584 | ---- | C | MD5 = E3A1F826BB40A8065043D26126D9B189] (Microsoft Corporation)
    scansetting.dll -> C:\Windows\SysNative\scansetting.dll -> [2009/06/04 04:47:43 | 00,302,080 | ---- | C | MD5 = 2C64BABEEB0510D508F61DA4CAF5C276] (Microsoft Corporation)
    dhcpcsvc.dll -> C:\Windows\SysNative\dhcpcsvc.dll -> [2009/06/04 04:47:43 | 00,268,288 | ---- | C | MD5 = 3ED0321127CE70ACDAABBF77E157C2A7] (Microsoft Corporation)
    WerFault.exe -> C:\Windows\SysNative\WerFault.exe -> [2009/06/04 04:47:43 | 00,260,608 | ---- | C | MD5 = 407048A328C3D585FF67D40F11E243D2] (Microsoft Corporation)
    ncrypt.dll -> C:\Windows\SysNative\ncrypt.dll -> [2009/06/04 04:47:43 | 00,253,952 | ---- | C | MD5 = 38FEE5CE9CD15E56BF48A7360048C4AB] (Microsoft Corporation)
    iassdo.dll -> C:\Windows\SysWow64\iassdo.dll -> [2009/06/04 04:47:43 | 00,252,928 | ---- | C | MD5 = 5A1B9A7761FB1BA3A42C8F7F0EB49994] (Microsoft Corporation)
    winmm.dll -> C:\Windows\SysNative\winmm.dll -> [2009/06/04 04:47:43 | 00,211,968 | ---- | C | MD5 = DC2D7A3DE9D5DFB63AD2BA98ADB89D62] (Microsoft Corporation)
    scrrun.dll -> C:\Windows\SysWow64\scrrun.dll -> [2009/06/04 04:47:43 | 00,172,032 | ---- | C | MD5 = 3DB1530CDD7AEF2BCFA6FB77D097CDDA] (Microsoft Corporation)
    imm32.dll -> C:\Windows\SysWow64\imm32.dll -> [2009/06/04 04:47:43 | 00,116,224 | ---- | C | MD5 = B8FBE5F40B09F5D20E1E5CCFEF893D62] (Microsoft Corporation)
    Kswdmcap.ax -> C:\Windows\SysWow64\Kswdmcap.ax -> [2009/06/04 04:47:43 | 00,093,696 | ---- | C | MD5 = FD44B4D9129EDD68BBD0A26683024EF9] (Microsoft Corporation)
    slmgr.vbs -> C:\Windows\SysWow64\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
    slmgr.vbs -> C:\Windows\SysNative\slmgr.vbs -> [2009/06/04 04:47:43 | 00,092,918 | ---- | C | MD5 = BCDBB5CEA1E8AEA0FA353691EB003728] ()
    iasads.dll -> C:\Windows\SysNative\iasads.dll -> [2009/06/04 04:47:43 | 00,078,336 | ---- | C | MD5 = 1D5474E8A7F8E48515D83BBB1A1E9E47] (Microsoft Corporation)
    drvinst.exe -> C:\Windows\SysNative\drvinst.exe -> [2009/06/04 04:47:43 | 00,061,440 | ---- | C | MD5 = 638DC235181C5202CE6C8232DF854DDE] (Microsoft Corporation)
    crashdmp.sys -> C:\Windows\SysNative\drivers\crashdmp.sys -> [2009/06/04 04:47:43 | 00,039,400 | ---- | C | MD5 = 4F4E1093ADFBAE48544DA6E7CCF09FE4] (Microsoft Corporation)
    spcmsg.dll -> C:\Windows\SysNative\spcmsg.dll -> [2009/06/04 04:47:43 | 00,014,336 | ---- | C | MD5 = 5AA31D330226F764CDC6FBAF21B4F2AB] (Microsoft Corporation)
    spcmsg.dll -> C:\Windows\SysWow64\spcmsg.dll -> [2009/06/04 04:47:43 | 00,013,312 | ---- | C | MD5 = 12013A429B4F658D33CB71CA0C7F8703] (Microsoft Corporation)
    netcenter.dll -> C:\Windows\SysNative\netcenter.dll -> [2009/06/04 04:47:42 | 02,420,224 | ---- | C | MD5 = 1094A477FFE9169220B8FCDF6801C3D7] (Microsoft Corporation)
    appwiz.cpl -> C:\Windows\SysWow64\appwiz.cpl -> [2009/06/04 04:47:42 | 01,122,304 | ---- | C | MD5 = 19DF185D42AA0DE80AD78C58D4A4E936] (Microsoft Corporation)
    pidgenx.dll -> C:\Windows\SysWow64\pidgenx.dll -> [2009/06/04 04:47:42 | 01,107,968 | ---- | C | MD5 = 48EFB6849AA0F6785D05EB468E13F17F] (Microsoft Corporation)
    pidgenx.dll -> C:\Windows\SysNative\pidgenx.dll -> [2009/06/04 04:47:42 | 01,093,120 | ---- | C | MD5 = BAE7C9674D1EADB7671BD349ABE4A421] (Microsoft Corporation)
    mmsys.cpl -> C:\Windows\SysNative\mmsys.cpl -> [2009/06/04 04:47:42 | 01,060,352 | ---- | C | MD5 = 78943DD269AD01EBC65FC8F78E3DF8DC] (Microsoft Corporation)
    rasdlg.dll -> C:\Windows\SysNative\rasdlg.dll -> [2009/06/04 04:47:42 | 00,911,872 | ---- | C | MD5 = 39872A309B2DB96738AF44402F7BD43C] (Microsoft Corporation)
    azroles.dll -> C:\Windows\SysWow64\azroles.dll -> [2009/06/04 04:47:42 | 00,757,248 | ---- | C | MD5 = 9AFFE233D49471292E8328FA5775B9DA] (Microsoft Corporation)
    prnntfy.dll -> C:\Windows\SysNative\prnntfy.dll -> [2009/06/04 04:47:42 | 00,708,608 | ---- | C | MD5 = 580378414BDF681BCC6B6388FB3F0061] (Microsoft Corporation)
    CertEnrollUI.dll -> C:\Windows\SysWow64\CertEnrollUI.dll -> [2009/06/04 04:47:42 | 00,633,856 | ---- | C | MD5 = 039F5070FD21A0FA3ABA305E393F75E7] (Microsoft Corporation)
    vdsdyn.dll -> C:\Windows\SysNative\vdsdyn.dll -> [2009/06/04 04:47:42 | 00,571,904 | ---- | C | MD5 = AF887F37C42E829159E90BADF03592B3] (Microsoft Corporation)
    sysmon.ocx -> C:\Windows\SysWow64\sysmon.ocx -> [2009/06/04 04:47:42 | 00,389,632 | ---- | C | MD5 = D665F6708EE24DF5B9A0E095ED52ED73] (Microsoft Corporation)
    untfs.dll -> C:\Windows\SysNative\untfs.dll -> [2009/06/04 04:47:42 | 00,372,224 | ---- | C | MD5 = D77DD0E9D3A5C9B1A8E1DB8FF674D25D] (Microsoft Corporation)
    msrpc.sys -> C:\Windows\SysNative\drivers\msrpc.sys -> [2009/06/04 04:47:42 | 00,310,760 | ---- | C | MD5 = DC6CCF440CDEDE4293DB41C37A5060A5] (Microsoft Corporation)
    InkEd.dll -> C:\Windows\SysNative\InkEd.dll -> [2009/06/04 04:47:42 | 00,276,480 | ---- | C | MD5 = 1ED0E10D2766B5F89A656F8EE7FACF6F] (Microsoft Corporation)
    winspool.drv -> C:\Windows\SysWow64\winspool.drv -> [2009/06/04 04:47:42 | 00,258,048 | ---- | C | MD5 = 2D1179CDEC6B7400105E68F6AC9B4EFE] (Microsoft Corporation)
    pdh.dll -> C:\Windows\SysWow64\pdh.dll -> [2009/06/04 04:47:42 | 00,242,176 | ---- | C | MD5 = 295363D4317820AED0D527E15B90A8ED] (Microsoft Corporation)
    dhcpcsvc.dll -> C:\Windows\SysWow64\dhcpcsvc.dll -> [2009/06/04 04:47:42 | 00,204,288 | ---- | C | MD5 = 9028559C132146FB75EB7ACF384B086A] (Microsoft Corporation)
    spp.dll -> C:\Windows\SysNative\spp.dll -> [2009/06/04 04:47:42 | 00,188,928 | ---- | C | MD5 = 85515E689B247D6992E0D191400E3F79] (Microsoft Corporation)
    secproc_ssp.dll -> C:\Windows\SysNative\secproc_ssp.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 607C2824E75789BEB3EE0807157401C4] (Microsoft Corporation)
    secproc_ssp_isv.dll -> C:\Windows\SysNative\secproc_ssp_isv.dll -> [2009/06/04 04:47:42 | 00,160,768 | ---- | C | MD5 = 0B55AC0ADA7F3335A2517413579CA37B] (Microsoft Corporation)
    diskpart.exe -> C:\Windows\SysNative\diskpart.exe -> [2009/06/04 04:47:42 | 00,149,504 | ---- | C | MD5 = E2F1B0AC853231F9FA2901642D4484A5] (Microsoft Corporation)
    SCardSvr.dll -> C:\Windows\SysNative\SCardSvr.dll -> [2009/06/04 04:47:42 | 00,147,968 | ---- | C | MD5 = FD1CDCF108D5EF3366F00D18B70FB89B] (Microsoft Corporation)
    userenv.dll -> C:\Windows\SysNative\userenv.dll -> [2009/06/04 04:47:42 | 00,137,216 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    IPHLPAPI.DLL -> C:\Windows\SysNative\IPHLPAPI.DLL -> [2009/06/04 04:47:42 | 00,126,976 | ---- | C | MD5 = A9D70295BA8F31D5EA118B0A6B74183E] (Microsoft Corporation)
    ipfltdrv.sys -> C:\Windows\SysNative\drivers\ipfltdrv.sys -> [2009/06/04 04:47:42 | 00,067,584 | ---- | C | MD5 = D8AABC341311E4780D6FCE8C73C0AD81] (Microsoft Corporation)
    mup.sys -> C:\Windows\SysNative\drivers\mup.sys -> [2009/06/04 04:47:42 | 00,059,880 | ---- | C | MD5 = 0CC49F78D8ACA0877D885F149084E543] (Microsoft Corporation)
    SyncCenter.dll -> C:\Windows\SysWow64\SyncCenter.dll -> [2009/06/04 04:47:41 | 02,205,184 | ---- | C | MD5 = 4ACEA0C4BB15ACE55E3AE5EC4E88DD55] (Microsoft Corporation)
    chsbrkr.dll -> C:\Windows\SysNative\chsbrkr.dll -> [2009/06/04 04:47:41 | 01,676,800 | ---- | C | MD5 = FC4F0F9303170DC6212A2B3EA6613FF4] (Microsoft Corporation)
    certmgr.dll -> C:\Windows\SysWow64\certmgr.dll -> [2009/06/04 04:47:41 | 01,502,720 | ---- | C | MD5 = 423CFD439195B8178208DE7BEEE52540] (Microsoft Corporation)
    wmpmde.dll -> C:\Windows\SysWow64\wmpmde.dll -> [2009/06/04 04:47:41 | 00,867,328 | ---- | C | MD5 = 0C9F94C3BB100C1FE1C06A8EB4B88283] (Microsoft Corporation)
    wlansvc.dll -> C:\Windows\SysNative\wlansvc.dll -> [2009/06/04 04:47:41 | 00,616,448 | ---- | C | MD5 = 1C3D795E47E0B851274AD7BC407DC048] (Microsoft Corporation)
    comuid.dll -> C:\Windows\SysWow64\comuid.dll -> [2009/06/04 04:47:41 | 00,593,408 | ---- | C | MD5 = C01CF069D98F0E9ED9E8012099D26DC7] (Microsoft Corporation)
    msjetoledb40.dll -> C:\Windows\SysWow64\msjetoledb40.dll -> [2009/06/04 04:47:41 | 00,368,640 | ---- | C | MD5 = 52CB0185C73E1BA86CC7F726F22523C3] ()
    winlogon.exe -> C:\Windows\SysWow64\winlogon.exe -> [2009/06/04 04:47:41 | 00,314,368 | ---- | C | MD5 = 898E7C06A350D4A1A64A9EA264D55452] (Microsoft Corporation)
    dskquoui.dll -> C:\Windows\SysNative\dskquoui.dll -> [2009/06/04 04:47:41 | 00,237,056 | ---- | C | MD5 = 8A63AB1A1D518A9D34984222AEC6E924] (Microsoft Corporation)
    ncrypt.dll -> C:\Windows\SysWow64\ncrypt.dll -> [2009/06/04 04:47:41 | 00,204,288 | ---- | C | MD5 = A57260867734FB1F68241ECA3D589F76] (Microsoft Corporation)
    iashlpr.dll -> C:\Windows\SysNative\iashlpr.dll -> [2009/06/04 04:47:41 | 00,085,504 | ---- | C | MD5 = C6913E3D07D4BD2E69CB7E85CCE80EC8] (Microsoft Corporation)
    mscories.dll -> C:\Windows\SysNative\mscories.dll -> [2009/06/04 04:47:41 | 00,073,024 | ---- | C | MD5 = 084A7BC9EFA170199620214EB36464C9] (Microsoft Corporation)
    disk.sys -> C:\Windows\SysNative\drivers\disk.sys -> [2009/06/04 04:47:41 | 00,067,032 | ---- | C | MD5 = B0107E40ECDB5FA692EBF832F295D905] (Microsoft Corporation)
    kdcom.dll -> C:\Windows\SysNative\kdcom.dll -> [2009/06/04 04:47:41 | 00,019,432 | ---- | C | MD5 = 62D59EBED0B1004BCD9FA3E4F878D766] (Microsoft Corporation)
    onex.dll -> C:\Windows\SysNative\onex.dll -> [2009/06/04 04:47:40 | 01,740,288 | ---- | C | MD5 = DED15764B578A26BE9E45E7692820549] (Microsoft Corporation)
    inetcomm.dll -> C:\Windows\SysNative\inetcomm.dll -> [2009/06/04 04:47:40 | 00,974,848 | ---- | C | MD5 = BDB83CDF73775DC4F244970F73FB2A97] (Microsoft Corporation)
    autoconv.exe -> C:\Windows\SysNative\autoconv.exe -> [2009/06/04 04:47:40 | 00,750,592 | ---- | C | MD5 = DD1CBF567D20DA1B0A22246ADFC4FADE] (Microsoft Corporation)
    autochk.exe -> C:\Windows\SysNative\autochk.exe -> [2009/06/04 04:47:40 | 00,734,720 | ---- | C | MD5 = E24D4475713CB382A720D003BDDA9628] (Microsoft Corporation)
    sethc.exe -> C:\Windows\SysWow64\sethc.exe -> [2009/06/04 04:47:40 | 00,627,200 | ---- | C | MD5 = 291B27D159AE56A049C1526AF4B3957E] (Microsoft Corporation)
    imkr80.ime -> C:\Windows\SysWow64\imkr80.ime -> [2009/06/04 04:47:40 | 00,413,696 | ---- | C | MD5 = E3E821B879CF04AA13865D5E6A1FC2A0] (Microsoft Corporation)
    WindowsCodecsExt.dll -> C:\Windows\SysWow64\WindowsCodecsExt.dll -> [2009/06/04 04:47:40 | 00,347,648 | ---- | C | MD5 = 73B702923D1CB50E2CCB3A7C1EBD8F22] (Microsoft Corporation)
    rasapi32.dll -> C:\Windows\SysNative\rasapi32.dll -> [2009/06/04 04:47:40 | 00,337,408 | ---- | C | MD5 = A4F3F34A7146D8633FA8D346535A9CAA] (Microsoft Corporation)
    untfs.dll -> C:\Windows\SysWow64\untfs.dll -> [2009/06/04 04:47:40 | 00,324,096 | ---- | C | MD5 = D30A7946B3207C9DBE40361E3B083716] (Microsoft Corporation)
    diskraid.exe -> C:\Windows\SysNative\diskraid.exe -> [2009/06/04 04:47:40 | 00,308,224 | ---- | C | MD5 = A6691BF542941E5B0925C49A460AE6B6] (Microsoft Corporation)
    rastls.dll -> C:\Windows\SysNative\rastls.dll -> [2009/06/04 04:47:40 | 00,281,088 | ---- | C | MD5 = 6D25CF2F1DC6C51BC8D6D8884F723C20] (Microsoft Corporation)
    taskcomp.dll -> C:\Windows\SysWow64\taskcomp.dll -> [2009/06/04 04:47:40 | 00,270,336 | ---- | C | MD5 = 67ECC768ADB04591CBCF15783CB2A817] (Microsoft Corporation)
    ntprint.dll -> C:\Windows\SysNative\ntprint.dll -> [2009/06/04 04:47:40 | 00,257,024 | ---- | C | MD5 = 24DC07F75E0683A3D4AB16FA38290A18] (Microsoft Corporation)
    iassam.dll -> C:\Windows\SysWow64\iassam.dll -> [2009/06/04 04:47:40 | 00,182,272 | ---- | C | MD5 = 240B65CDA06C38733DF9B65E1D314BC7] (Microsoft Corporation)
    scrobj.dll -> C:\Windows\SysWow64\scrobj.dll -> [2009/06/04 04:47:40 | 00,180,224 | ---- | C | MD5 = 01DDF42F77DA1348173C5DC8CB28BDC2] (Microsoft Corporation)
    spp.dll -> C:\Windows\SysWow64\spp.dll -> [2009/06/04 04:47:40 | 00,142,336 | ---- | C | MD5 = 43AEF7355D24090CA7C24C83846BD981] (Microsoft Corporation)
    netiohlp.dll -> C:\Windows\SysNative\netiohlp.dll -> [2009/06/04 04:47:40 | 00,140,800 | ---- | C | MD5 = 9041A0B145B7F9CB5D2F363683AEFFD4] (Microsoft Corporation)
    samlib.dll -> C:\Windows\SysNative\samlib.dll -> [2009/06/04 04:47:40 | 00,099,328 | ---- | C | MD5 = 5279672A8BDAF3CFB0A4C6E0591987AC] (Microsoft Corporation)
    secur32.dll -> C:\Windows\SysNative\secur32.dll -> [2009/06/04 04:47:40 | 00,094,720 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    mpr.dll -> C:\Windows\SysNative\mpr.dll -> [2009/06/04 04:47:40 | 00,084,992 | ---- | C | MD5 = B3EBBD687BDFCBBBBCB6115B682D1845] (Microsoft Corporation)
    PSHED.DLL -> C:\Windows\SysNative\PSHED.DLL -> [2009/06/04 04:47:40 | 00,055,272 | ---- | C | MD5 = 9E693C6146932B5369DFFA584E805EF6] (Microsoft Corporation)
    mssprxy.dll -> C:\Windows\SysNative\mssprxy.dll -> [2009/06/04 04:47:40 | 00,040,448 | ---- | C | MD5 = 595BAC1B188813CEAE88A599738E60F8] (Microsoft Corporation)
    rtutils.dll -> C:\Windows\SysWow64\rtutils.dll -> [2009/06/04 04:47:40 | 00,036,352 | ---- | C | MD5 = A32608F048861AD3544AEFBF0126D33F] (Microsoft Corporation)
    WMVENCOD.DLL -> C:\Windows\SysNative\WMVENCOD.DLL -> [2009/06/04 04:47:39 | 01,891,840 | ---- | C | MD5 = B7286BBA2B00EAE42401EDF591204C06] (Microsoft Corporation)
    WMVDECOD.DLL -> C:\Windows\SysWow64\WMVDECOD.DLL -> [2009/06/04 04:47:39 | 01,548,288 | ---- | C | MD5 = FC27104CAF57E34BF501A84DF655F8F2] (Microsoft Corporation)
    PerfCenterCPL.dll -> C:\Windows\SysNative\PerfCenterCPL.dll -> [2009/06/04 04:47:39 | 01,444,352 | ---- | C | MD5 = 4AB65F090554EE12F94E79CF3D6349E6] (Microsoft Corporation)
    printui.dll -> C:\Windows\SysWow64\printui.dll -> [2009/06/04 04:47:39 | 00,869,888 | ---- | C | MD5 = C4F3693767A2B93A64C6D67CFC2DAC63] (Microsoft Corporation)
    autoconv.exe -> C:\Windows\SysWow64\autoconv.exe -> [2009/06/04 04:47:39 | 00,656,896 | ---- | C | MD5 = 15B7BDA10B91FE62466F2A18682C16E8] (Microsoft Corporation)
    autochk.exe -> C:\Windows\SysWow64\autochk.exe -> [2009/06/04 04:47:39 | 00,643,072 | ---- | C | MD5 = 10761177A6EBE45843F443E99509F5E7] (Microsoft Corporation)
    psisdecd.dll -> C:\Windows\SysNative\psisdecd.dll -> [2009/06/04 04:47:39 | 00,375,808 | ---- | C | MD5 = 694A11BD75ED2C947955C367F4B6032A] (Microsoft Corporation)
    scecli.dll -> C:\Windows\SysNative\scecli.dll -> [2009/06/04 04:47:39 | 00,235,520 | ---- | C | MD5 = 9922ADB6DCA8F0F5EA038BEFF339C08B] (Microsoft Corporation)
    portcls.sys -> C:\Windows\SysNative\drivers\portcls.sys -> [2009/06/04 04:47:39 | 00,218,112 | ---- | C | MD5 = 7B7820082CACF593D6FF343D082A3AA3] (Microsoft Corporation)
    profsvc.dll -> C:\Windows\SysNative\profsvc.dll -> [2009/06/04 04:47:39 | 00,178,176 | ---- | C | MD5 = E058CE4FC2449D8BFA14739C83B7FF2A] (Microsoft Corporation)
    srvsvc.dll -> C:\Windows\SysNative\srvsvc.dll -> [2009/06/04 04:47:39 | 00,176,640 | ---- | C | MD5 = 967D7CB076CD1969156247D03B92CECA] (Microsoft Corporation)
    rpchttp.dll -> C:\Windows\SysNative\rpchttp.dll -> [2009/06/04 04:47:39 | 00,164,352 | ---- | C | MD5 = 38B65E838C4AC307DEC37035865F9486] (Microsoft Corporation)
    ntmarta.dll -> C:\Windows\SysNative\ntmarta.dll -> [2009/06/04 04:47:39 | 00,159,232 | ---- | C | MD5 = EE3718BCF5CEF1C457C10A745E410959] (Microsoft Corporation)
    ecache.sys -> C:\Windows\SysNative\drivers\ecache.sys -> [2009/06/04 04:47:39 | 00,155,112 | ---- | C | MD5 = 5F94962BE5A62DB6E447FF6470C4F48A] (Microsoft Corporation)
    iasnap.dll -> C:\Windows\SysWow64\iasnap.dll -> [2009/06/04 04:47:39 | 00,150,528 | ---- | C | MD5 = 1E767541B585BB3ED02FF33BC60E92A7] (Microsoft Corporation)
    cscript.exe -> C:\Windows\SysWow64\cscript.exe -> [2009/06/04 04:47:39 | 00,135,168 | ---- | C | MD5 = 63F2534E7E063B4F2054433597D7A1B9] (Microsoft Corporation)
    iassvcs.dll -> C:\Windows\SysNative\iassvcs.dll -> [2009/06/04 04:47:39 | 00,088,576 | ---- | C | MD5 = 1AFBEDE3E360444FEE090FC3ED428E70] (Microsoft Corporation)
    volmgr.sys -> C:\Windows\SysNative\drivers\volmgr.sys -> [2009/06/04 04:47:39 | 00,067,048 | ---- | C | MD5 = 2B7E885ED951519A12C450D24535DFCA] (Microsoft Corporation)
    onex.dll -> C:\Windows\SysWow64\onex.dll -> [2009/06/04 04:47:38 | 01,541,120 | ---- | C | MD5 = B64AC7967D6B9FB2D6152AC768A1CB88] (Microsoft Corporation)
    iphlpsvc.dll -> C:\Windows\SysNative\iphlpsvc.dll -> [2009/06/04 04:47:38 | 00,223,744 | ---- | C | MD5 = CD033D871A83E918B14F43F7E7590819] (Microsoft Corporation)
    mswsock.dll -> C:\Windows\SysWow64\mswsock.dll -> [2009/06/04 04:47:38 | 00,223,232 | ---- | C | MD5 = 8617350C9B590B63E620881092751BCB] (Microsoft Corporation)
    osk.exe -> C:\Windows\SysWow64\osk.exe -> [2009/06/04 04:47:38 | 00,182,272 | ---- | C | MD5 = 877F2939794EBA4F3D1BB967007E99E8] (Microsoft Corporation)
    basecsp.dll -> C:\Windows\SysNative\basecsp.dll -> [2009/06/04 04:47:38 | 00,153,064 | ---- | C | MD5 = 34889A7CC7EF7B0972994C7814F782D3] (Microsoft Corporation)
    basecsp.dll -> C:\Windows\SysWow64\basecsp.dll -> [2009/06/04 04:47:38 | 00,130,024 | ---- | C | MD5 = 23A732A29E183E9874C86FD93CC7B9B9] (Microsoft Corporation)
    powrprof.dll -> C:\Windows\SysNative\powrprof.dll -> [2009/06/04 04:47:38 | 00,123,392 | ---- | C | MD5 = 7823A58BF0FE3CAAA555C12B5CF91290] (Microsoft Corporation)
    userenv.dll -> C:\Windows\SysWow64\userenv.dll -> [2009/06/04 04:47:38 | 00,108,544 | ---- | C | MD5 = 665417528489096BBCB8AEA46D3DA924] (Microsoft Corporation)
    dwm.exe -> C:\Windows\SysNative\dwm.exe -> [2009/06/04 04:47:38 | 00,098,304 | ---- | C | MD5 = 449F5AB17863698F12F0BC8E99079AA6] (Microsoft Corporation)
    audiodg.exe -> C:\Windows\SysWow64\audiodg.exe -> [2009/06/04 04:47:38 | 00,088,576 | ---- | C | MD5 = 3437B9E218A2E4586BEF4F7A3BD00777] (Microsoft Corporation)
    iasacct.dll -> C:\Windows\SysNative\iasacct.dll -> [2009/06/04 04:47:38 | 00,072,704 | ---- | C | MD5 = 24E4A41DB1DEBE62C0012EF6D9BEEB28] (Microsoft Corporation)
    Dumpata.sys -> C:\Windows\SysNative\drivers\Dumpata.sys -> [2009/06/04 04:47:38 | 00,029,656 | ---- | C | MD5 = 7E7270D67964C9EDDE6BFDAAC07B7999] (Microsoft Corporation)
    kdusb.dll -> C:\Windows\SysNative\kdusb.dll -> [2009/06/04 04:47:38 | 00,022,504 | ---- | C | MD5 = BDD7206C3FE4895F133DE5615DD6B492] (Microsoft Corporation)
    spldr.sys -> C:\Windows\SysNative\drivers\spldr.sys -> [2009/06/04 04:47:38 | 00,019,432 | ---- | C | MD5 = 386C3C63F00A7040C7EC5E384217E89D] (Microsoft Corporation)
    networkmap.dll -> C:\Windows\SysNative\networkmap.dll -> [2009/06/04 04:47:37 | 03,235,328 | ---- | C | MD5 = C3EB4555E37E75906185C1B8D2158237] (Microsoft Corporation)
    wpccpl.dll -> C:\Windows\SysNative\wpccpl.dll -> [2009/06/04 04:47:37 | 01,882,624 | ---- | C | MD5 = 7241639333A70BA66D9AEFA5D9E55A80] (Microsoft Corporation)
  • edited June 2009
    themecpl.dll -> C:\Windows\SysNative\themecpl.dll -> [2009/06/04 04:47:37 | 01,301,504 | ---- | C | MD5 = 7D09CA1126E311DEF73D83F30CD81692] (Microsoft Corporation)
    rdpencom.dll -> C:\Windows\SysWow64\rdpencom.dll -> [2009/06/04 04:47:37 | 00,612,864 | ---- | C | MD5 = FBA13EE4F0838CB6C340128DACF9CF12] (Microsoft Corporation)
    mspaint.exe -> C:\Windows\SysNative\mspaint.exe -> [2009/06/04 04:47:37 | 00,593,408 | ---- | C | MD5 = EC0A7FB35A11EEF77C76781E122BAF0C] (Microsoft Corporation)
    msftedit.dll -> C:\Windows\SysWow64\msftedit.dll -> [2009/06/04 04:47:37 | 00,564,224 | ---- | C | MD5 = 3A72AB0BAF2DC1AE0BA6E1EE28FFCC0B] (Microsoft Corporation)
    scesrv.dll -> C:\Windows\SysNative\scesrv.dll -> [2009/06/04 04:47:37 | 00,399,360 | ---- | C | MD5 = 495EB57ACF30983AA441B70A8DE2B7ED] (Microsoft Corporation)
    RelMon.dll -> C:\Windows\SysWow64\RelMon.dll -> [2009/06/04 04:47:37 | 00,340,992 | ---- | C | MD5 = 859E02E3346DC681DFAC96225D2797C6] (Microsoft Corporation)
    tapisrv.dll -> C:\Windows\SysNative\tapisrv.dll -> [2009/06/04 04:47:37 | 00,318,976 | ---- | C | MD5 = CC2562B4D55E0B6A4758C65407F63B79] (Microsoft Corporation)
    wow64win.dll -> C:\Windows\SysNative\wow64win.dll -> [2009/06/04 04:47:37 | 00,301,568 | ---- | C | MD5 = 8FE910915F14C9C6A9561D8032B603D3] (Microsoft Corporation)
    regsvc.dll -> C:\Windows\SysNative\regsvc.dll -> [2009/06/04 04:47:37 | 00,206,848 | ---- | C | MD5 = 44B9D8EC2F3EF3A0EFB00857AF70D861] (Microsoft Corporation)
    winmm.dll -> C:\Windows\SysWow64\winmm.dll -> [2009/06/04 04:47:37 | 00,189,952 | ---- | C | MD5 = 934511EFE4461F84CA946B9C0321F365] (Microsoft Corporation)
    ks.sys -> C:\Windows\SysNative\drivers\ks.sys -> [2009/06/04 04:47:37 | 00,188,416 | ---- | C | MD5 = 6DF6A6E5642D97B07214B1FBED4A15B3] (Microsoft Corporation)
    exfat.sys -> C:\Windows\SysNative\drivers\exfat.sys -> [2009/06/04 04:47:37 | 00,187,904 | ---- | C | MD5 = 486844F47B6636044A42454614ED4523] (Microsoft Corporation)
    Faultrep.dll -> C:\Windows\SysNative\Faultrep.dll -> [2009/06/04 04:47:37 | 00,176,640 | ---- | C | MD5 = 90D65E758F4087A529C0703EF322F780] (Microsoft Corporation)
    wusa.exe -> C:\Windows\SysNative\wusa.exe -> [2009/06/04 04:47:37 | 00,147,968 | ---- | C | MD5 = 663F13995CF313674C18B4591EA2BF08] (Microsoft Corporation)
    dnsrslvr.dll -> C:\Windows\SysNative\dnsrslvr.dll -> [2009/06/04 04:47:37 | 00,117,760 | ---- | C | MD5 = 21D16B37257370975C7457C3A5EFA530] (Microsoft Corporation)
    WinSCard.dll -> C:\Windows\SysWow64\WinSCard.dll -> [2009/06/04 04:47:37 | 00,115,712 | ---- | C | MD5 = 627920CFF5DFCF8CF54CF2D592D61307] (Microsoft Corporation)
    logman.exe -> C:\Windows\SysNative\logman.exe -> [2009/06/04 04:47:37 | 00,070,144 | ---- | C | MD5 = ADAE934EECFDD8BF8ABBEF10D80381AB] (Microsoft Corporation)
    wsepno.dll -> C:\Windows\SysNative\wsepno.dll -> [2009/06/04 04:47:37 | 00,024,064 | ---- | C | MD5 = 5B24E50355A79CD48ED369D8D747411A] (Microsoft Corporation)WerFaultSecure.exe -> C:\Windows\SysWow64\WerFaultSecure.exe -> [2009/06/04 04:47:36 | 00,860,160 | ---- | C | MD5 = DA06BE393317EA5756B218633A537B47] (Microsoft Corporation)
    Utilman.exe -> C:\Windows\SysWow64\Utilman.exe -> [2009/06/04 04:47:36 | 00,638,976 | ---- | C | MD5 = 10FB8976B556A75098868CFFAD6DC576] (Microsoft Corporation)
    stobject.dll -> C:\Windows\SysWow64\stobject.dll -> [2009/06/04 04:47:36 | 00,586,752 | ---- | C | MD5 = 8EAE44A2EBCBB5D12C5454573EA1F621] (Microsoft Corporation)
    prnntfy.dll -> C:\Windows\SysWow64\prnntfy.dll -> [2009/06/04 04:47:36 | 00,551,936 | ---- | C | MD5 = 429A7B2973A57B1EF405DF270CF3F90C] (Microsoft Corporation)
    AudioEng.dll -> C:\Windows\SysWow64\AudioEng.dll -> [2009/06/04 04:47:36 | 00,396,800 | ---- | C | MD5 = DA7478BA9E41B60B3D5DA456E253002A] (Microsoft Corporation)
    mscms.dll -> C:\Windows\SysWow64\mscms.dll -> [2009/06/04 04:47:36 | 00,391,680 | ---- | C | MD5 = 5F1DEC3824E566457F53F24F493FEF08] (Microsoft Corporation)
    shsvcs.dll -> C:\Windows\SysNative\shsvcs.dll -> [2009/06/04 04:47:36 | 00,301,568 | ---- | C | MD5 = 2AD15758174DCC7993FF3C00A955DD66] (Microsoft Corporation)
    diskraid.exe -> C:\Windows\SysWow64\diskraid.exe -> [2009/06/04 04:47:36 | 00,230,912 | ---- | C | MD5 = 206B492CC40E0E0C01F6EA73F724AB9A] (Microsoft Corporation)
    WerFault.exe -> C:\Windows\SysWow64\WerFault.exe -> [2009/06/04 04:47:36 | 00,217,088 | ---- | C | MD5 = 7BEDD051B53821B040EAD42DB0724848] (Microsoft Corporation)
    mfplat.dll -> C:\Windows\SysWow64\mfplat.dll -> [2009/06/04 04:47:36 | 00,208,896 | ---- | C | MD5 = C732992FF9798F2ACBF86314F0E4A6F5] (Microsoft Corporation)
    SndVol.exe -> C:\Windows\SysWow64\SndVol.exe -> [2009/06/04 04:47:36 | 00,197,632 | ---- | C | MD5 = 96DD35AB1C1420E0CD70EF9ECD32B825] (Microsoft Corporation)
    offfilt.dll -> C:\Windows\SysWow64\offfilt.dll -> [2009/06/04 04:47:36 | 00,194,560 | ---- | C | MD5 = 06588D3E301B53D24281DACEE3C34FE3] (Microsoft Corporation)
    msnetobj.dll -> C:\Windows\SysWow64\msnetobj.dll -> [2009/06/04 04:47:36 | 00,179,712 | ---- | C | MD5 = 584C4A26F210B823BBF73BB985CAA2CE] (Microsoft Corporation)
    apphelp.dll -> C:\Windows\SysWow64\apphelp.dll -> [2009/06/04 04:47:36 | 00,171,008 | ---- | C | MD5 = 1107BD574A84367735FEC38B9BD64E6B] (Microsoft Corporation)
    wscript.exe -> C:\Windows\SysWow64\wscript.exe -> [2009/06/04 04:47:36 | 00,155,648 | ---- | C | MD5 = 1259E03DCD5F265B23DB738FB075DF8C] (Microsoft Corporation)
    secproc_ssp_isv.dll -> C:\Windows\SysWow64\secproc_ssp_isv.dll -> [2009/06/04 04:47:36 | 00,152,576 | ---- | C | MD5 = 7167087FBBBAB7518B7E171508A7AEE7] (Microsoft Corporation)
    secproc_ssp.dll -> C:\Windows\SysWow64\secproc_ssp.dll -> [2009/06/04 04:47:36 | 00,152,064 | ---- | C | MD5 = 4805AA783E9CA8E60F1AA6F3E1199D83] (Microsoft Corporation)
    authz.dll -> C:\Windows\SysNative\authz.dll -> [2009/06/04 04:47:36 | 00,143,360 | ---- | C | MD5 = 5EF9205E045643A5A75A82B116395B25] (Microsoft Corporation)
    mstlsapi.dll -> C:\Windows\SysNative\mstlsapi.dll -> [2009/06/04 04:47:36 | 00,139,264 | ---- | C | MD5 = 0DDD4DDE7C1FD5C3C8C4CB378CC9766F] (Microsoft Corporation)
    odbccp32.dll -> C:\Windows\SysWow64\odbccp32.dll -> [2009/06/04 04:47:36 | 00,114,688 | ---- | C | MD5 = A1B46928E107D770053E6B4D248298A5] (Microsoft Corporation)
    adsmsext.dll -> C:\Windows\SysWow64\adsmsext.dll -> [2009/06/04 04:47:36 | 00,075,264 | ---- | C | MD5 = 27FC7C228999D739C11F76120A121525] (Microsoft Corporation)
    wsnmp32.dll -> C:\Windows\SysNative\wsnmp32.dll -> [2009/06/04 04:47:36 | 00,061,952 | ---- | C | MD5 = 57120423BC6342F0EAE16E3720184D5A] (Microsoft Corporation)
    TSTheme.exe -> C:\Windows\SysNative\TSTheme.exe -> [2009/06/04 04:47:36 | 00,045,568 | ---- | C | MD5 = 73EE3ACB4284F47FEE55F2DFA634C3FB] (Microsoft Corporation)
    usercpl.dll -> C:\Windows\SysNative\usercpl.dll -> [2009/06/04 04:47:35 | 01,279,488 | ---- | C | MD5 = F59E9C431922D78F771B47BD78974A00] (Microsoft Corporation)
    wer.dll -> C:\Windows\SysNative\wer.dll -> [2009/06/04 04:47:35 | 01,110,528 | ---- | C | MD5 = 589CDC23CCDC419C36DDD200BEB00944] (Microsoft Corporation)
    systemcpl.dll -> C:\Windows\SysNative\systemcpl.dll -> [2009/06/04 04:47:35 | 00,995,328 | ---- | C | MD5 = 423AE00736BE9C4679975B31B9B06E16] (Microsoft Corporation)
    cryptui.dll -> C:\Windows\SysWow64\cryptui.dll -> [2009/06/04 04:47:35 | 00,971,264 | ---- | C | MD5 = 248A1F31ABB58DDDDC01490EF0BDC777] (Microsoft Corporation)
    timedate.cpl -> C:\Windows\SysNative\timedate.cpl -> [2009/06/04 04:47:35 | 00,881,152 | ---- | C | MD5 = 11449A34FFF4A84C0C81339107C39BDE] (Microsoft Corporation)
    ipsecsnp.dll -> C:\Windows\SysWow64\ipsecsnp.dll -> [2009/06/04 04:47:35 | 00,759,296 | ---- | C | MD5 = 0170442A2DF1127A9F4330FDDAEC35F6] (Microsoft Corporation)
    themeui.dll -> C:\Windows\SysNative\themeui.dll -> [2009/06/04 04:47:35 | 00,688,640 | ---- | C | MD5 = A83ABA8C35FC10E8CECF4A241ECAFA9F] (Microsoft Corporation)
    dsound.dll -> C:\Windows\SysWow64\dsound.dll -> [2009/06/04 04:47:35 | 00,444,416 | ---- | C | MD5 = 84B8827562B005C118CADBA0F25DB2C6] (Microsoft Corporation)
    wlangpui.dll -> C:\Windows\SysWow64\wlangpui.dll -> [2009/06/04 04:47:35 | 00,399,360 | ---- | C | MD5 = 6A4ACF2A646637BEA955A7263AE0C424] (Microsoft Corporation)
    zipfldr.dll -> C:\Windows\SysNative\zipfldr.dll -> [2009/06/04 04:47:35 | 00,387,072 | ---- | C | MD5 = 5F5EEC2778893CA2EC3A423FBDC10F6F] (Microsoft Corporation)
    bcrypt.dll -> C:\Windows\SysNative\bcrypt.dll -> [2009/06/04 04:47:35 | 00,306,688 | ---- | C | MD5 = 02EE316487BCC8F4F6017CAD538365CC] (Microsoft Corporation)
    rastls.dll -> C:\Windows\SysWow64\rastls.dll -> [2009/06/04 04:47:35 | 00,244,224 | ---- | C | MD5 = 010A3B1255F9B35E6EB7BB97C57CA086] (Microsoft Corporation)
    wow64.dll -> C:\Windows\SysNative\wow64.dll -> [2009/06/04 04:47:35 | 00,234,496 | ---- | C | MD5 = 813C216E14005CB42BBD1B037FCF030F] (Microsoft Corporation)
    wscntfy.dll -> C:\Windows\SysWow64\wscntfy.dll -> [2009/06/04 04:47:35 | 00,223,744 | ---- | C | MD5 = 0B5AC46982E77CAF3EC1D55C9AC6AB56] (Microsoft Corporation)
    dot3svc.dll -> C:\Windows\SysNative\dot3svc.dll -> [2009/06/04 04:47:35 | 00,208,896 | ---- | C | MD5 = 1A7156DD1E850E9914E5E991E3225B94] (Microsoft Corporation)
    pnpsetup.dll -> C:\Windows\SysWow64\pnpsetup.dll -> [2009/06/04 04:47:35 | 00,181,760 | ---- | C | MD5 = 24843AC00885464EA397FE56CBCBAAD7] (Microsoft Corporation)
    wshom.ocx -> C:\Windows\SysNative\wshom.ocx -> [2009/06/04 04:47:35 | 00,144,384 | ---- | C | MD5 = C9FEA5BABF18D825C65CBF0AD50EC59A] (Microsoft Corporation)
    odbccp32.dll -> C:\Windows\SysNative\odbccp32.dll -> [2009/06/04 04:47:35 | 00,126,976 | ---- | C | MD5 = FE884FEE6FD382CFCC9C3C05133A874D] (Microsoft Corporation)
    diskpart.exe -> C:\Windows\SysWow64\diskpart.exe -> [2009/06/04 04:47:35 | 00,119,808 | ---- | C | MD5 = A9F36F9BEC6F23F5B6EDF1EB4D1AA452] (Microsoft Corporation)
    Kswdmcap.ax -> C:\Windows\SysNative\Kswdmcap.ax -> [2009/06/04 04:47:35 | 00,115,200 | ---- | C | MD5 = F307C2E569AD9BDA64E3F6D9E78B5AAD] (Microsoft Corporation)
    mrxsmb20.sys -> C:\Windows\SysNative\drivers\mrxsmb20.sys -> [2009/06/04 04:47:35 | 00,105,984 | ---- | C | MD5 = 37ABC27460F9D532EFDCC0116B7E5E48] (Microsoft Corporation)
    console.dll -> C:\Windows\SysNative\console.dll -> [2009/06/04 04:47:35 | 00,104,448 | ---- | C | MD5 = C04642A57835AEA3D66AE0D896E0F6D1] (Microsoft Corporation)
    ulib.dll -> C:\Windows\SysWow64\ulib.dll -> [2009/06/04 04:47:35 | 00,099,840 | ---- | C | MD5 = 5C9541EFCE477BFCFFD0EF9B1A175457] (Microsoft Corporation)
    IPHLPAPI.DLL -> C:\Windows\SysWow64\IPHLPAPI.DLL -> [2009/06/04 04:47:35 | 00,091,648 | ---- | C | MD5 = 4FE8425F21B3F0F8C4B4726351D43EAA] (Microsoft Corporation)
    rastapi.dll -> C:\Windows\SysNative\rastapi.dll -> [2009/06/04 04:47:35 | 00,081,408 | ---- | C | MD5 = 8F8E0EE62D73C72015D43E91BBF62B01] (Microsoft Corporation)
    gpapi.dll -> C:\Windows\SysWow64\gpapi.dll -> [2009/06/04 04:47:35 | 00,075,264 | ---- | C | MD5 = 0F420E81062757EA8363CBACD4D40D6D] (Microsoft Corporation)
    rastapi.dll -> C:\Windows\SysWow64\rastapi.dll -> [2009/06/04 04:47:35 | 00,069,632 | ---- | C | MD5 = 1D6B95871DC006190964B04E5657E35F] (Microsoft Corporation)
    iasdatastore.dll -> C:\Windows\SysWow64\iasdatastore.dll -> [2009/06/04 04:47:35 | 00,047,104 | ---- | C | MD5 = 68EF5A4ECAB4FE38ACE1B7DBA86EEC71] (Microsoft Corporation)
    perfdisk.dll -> C:\Windows\SysNative\perfdisk.dll -> [2009/06/04 04:47:35 | 00,035,328 | ---- | C | MD5 = 67FB44CEBAFF6FB5A01920F9B311C76E] (Microsoft Corporation)
    fdProxy.dll -> C:\Windows\SysWow64\fdProxy.dll -> [2009/06/04 04:47:35 | 00,024,064 | ---- | C | MD5 = ABAEAEE763E287BDD39094C4165E1F3F] (Microsoft Corporation)
    tsbyuv.dll -> C:\Windows\SysNative\tsbyuv.dll -> [2009/06/04 04:47:35 | 00,014,336 | ---- | C | MD5 = D5A1C956A2A8F757D6141600078D40CE] (Microsoft Corporation)
    WMVENCOD.DLL -> C:\Windows\SysWow64\WMVENCOD.DLL -> [2009/06/04 04:47:34 | 01,575,936 | ---- | C | MD5 = 0832B2F03FDF247F048A2A07810CF5CC] (Microsoft Corporation)
    sud.dll -> C:\Windows\SysNative\sud.dll -> [2009/06/04 04:47:34 | 01,382,912 | ---- | C | MD5 = 71D1DE39CC39BFB59563820AA364EEE1] (Microsoft Corporation)
    powercpl.dll -> C:\Windows\SysNative\powercpl.dll -> [2009/06/04 04:47:34 | 00,898,560 | ---- | C | MD5 = 3096A3E497003224B4E48BAC11C6778C] (Microsoft Corporation)
    slcc.dll -> C:\Windows\SysNative\slcc.dll -> [2009/06/04 04:47:34 | 00,810,496 | ---- | C | MD5 = 424CE0D3BDE733C21914B7C415F2EF36] (Microsoft Corporation)
    wpcao.dll -> C:\Windows\SysNative\wpcao.dll -> [2009/06/04 04:47:34 | 00,690,688 | ---- | C | MD5 = D6D7D64E008500DB45A1E02A13DC1EEA] (Microsoft Corporation)
    autoplay.dll -> C:\Windows\SysNative\autoplay.dll -> [2009/06/04 04:47:34 | 00,667,648 | ---- | C | MD5 = 8039D279CCFB4DA0B1AA41D8E70369BE] (Microsoft Corporation)
    pcaui.dll -> C:\Windows\SysNative\pcaui.dll -> [2009/06/04 04:47:34 | 00,617,984 | ---- | C | MD5 = 1B63115D4A0D3B7B53A30CC426722BDD] (Microsoft Corporation)
    vdsdyn.dll -> C:\Windows\SysWow64\vdsdyn.dll -> [2009/06/04 04:47:34 | 00,507,904 | ---- | C | MD5 = 759CAC5C047B3DE16E2A59351527DBB3] (Microsoft Corporation)
    IKEEXT.DLL -> C:\Windows\SysNative\IKEEXT.DLL -> [2009/06/04 04:47:34 | 00,454,656 | ---- | C | MD5 = 0C9EA6E654E7B0471741E343A6C671AF] (Microsoft Corporation)
    imkr80.ime -> C:\Windows\SysNative\imkr80.ime -> [2009/06/04 04:47:34 | 00,437,248 | ---- | C | MD5 = 54550E0ECC435DE30244F15857A8002B] (Microsoft Corporation)
    zipfldr.dll -> C:\Windows\SysWow64\zipfldr.dll -> [2009/06/04 04:47:34 | 00,342,528 | ---- | C | MD5 = 7D80F287AEEDD39C03E118E0EBD3311E] (Microsoft Corporation)
    modemui.dll -> C:\Windows\SysNative\modemui.dll -> [2009/06/04 04:47:34 | 00,302,592 | ---- | C | MD5 = 0C31659ABF8C63995E355B330ACB3AE2] (Microsoft Corporation)
    rasapi32.dll -> C:\Windows\SysWow64\rasapi32.dll -> [2009/06/04 04:47:34 | 00,286,720 | ---- | C | MD5 = 3CB863B78642405371CB3A71C07E2382] (Microsoft Corporation)
    ntprint.dll -> C:\Windows\SysWow64\ntprint.dll -> [2009/06/04 04:47:34 | 00,216,064 | ---- | C | MD5 = 16FF3D15D12BFBB0B805FFE71BE3FA15] (Microsoft Corporation)
    wscript.exe -> C:\Windows\SysNative\wscript.exe -> [2009/06/04 04:47:34 | 00,166,912 | ---- | C | MD5 = 895083A7A0C4A75C6F8825895050ABB7] (Microsoft Corporation)
    SmartcardCredentialProvider.dll -> C:\Windows\SysNative\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:34 | 00,161,280 | ---- | C | MD5 = C501852F1CA40FFC55363ACC0D2DF5BA] (Microsoft Corporation)
    iasrad.dll -> C:\Windows\SysWow64\iasrad.dll -> [2009/06/04 04:47:34 | 00,158,208 | ---- | C | MD5 = A080A841827D71F86ACEDC48F3B5AF64] (Microsoft Corporation)
    mscorier.dll -> C:\Windows\SysWow64\mscorier.dll -> [2009/06/04 04:47:34 | 00,155,456 | ---- | C | MD5 = 39F8C798CD91E03A26C3A733108CCE41] (Microsoft Corporation)
    mscorier.dll -> C:\Windows\SysNative\mscorier.dll -> [2009/06/04 04:47:34 | 00,154,960 | ---- | C | MD5 = BA47897793A16976F4CD9694920C9781] (Microsoft Corporation)
    wusa.exe -> C:\Windows\SysWow64\wusa.exe -> [2009/06/04 04:47:34 | 00,140,800 | ---- | C | MD5 = 10BE37532F4AD750958AB53A786F74BD] (Microsoft Corporation)
    netiohlp.dll -> C:\Windows\SysWow64\netiohlp.dll -> [2009/06/04 04:47:34 | 00,104,448 | ---- | C | MD5 = 3BA9CEAB6B6BB30ACACC1937C074532D] (Microsoft Corporation)
    wlanhlp.dll -> C:\Windows\SysNative\wlanhlp.dll -> [2009/06/04 04:47:34 | 00,097,792 | ---- | C | MD5 = BF89EBF91E1559FA8773AFB4372F40E8] (Microsoft Corporation)
    tdx.sys -> C:\Windows\SysNative\drivers\tdx.sys -> [2009/06/04 04:47:34 | 00,094,720 | ---- | C | MD5 = 458919C8C42E398DC4802178D5FFEE27] (Microsoft Corporation)
    regapi.dll -> C:\Windows\SysNative\regapi.dll -> [2009/06/04 04:47:34 | 00,089,088 | ---- | C | MD5 = 94CCD9D329BD894E3385CD43F613D554] (Microsoft Corporation)
    hdwwiz.exe -> C:\Windows\SysNative\hdwwiz.exe -> [2009/06/04 04:47:34 | 00,080,896 | ---- | C | MD5 = 10F17F3418B50C563BDB4D80D2D7F2C0] (Microsoft Corporation)
    newdev.exe -> C:\Windows\SysNative\newdev.exe -> [2009/06/04 04:47:34 | 00,075,776 | ---- | C | MD5 = D0EA1BB7D305DA7F138795CCDBF13040] (Microsoft Corporation)
    iashlpr.dll -> C:\Windows\SysWow64\iashlpr.dll -> [2009/06/04 04:47:34 | 00,070,656 | ---- | C | MD5 = 24468F62F811EC51F1DE9FA080E7D2C1] (Microsoft Corporation)
    findstr.exe -> C:\Windows\SysWow64\findstr.exe -> [2009/06/04 04:47:34 | 00,060,928 | ---- | C | MD5 = 186954438DE3DDBF0B46F895B7936DE3] (Microsoft Corporation)
    logman.exe -> C:\Windows\SysWow64\logman.exe -> [2009/06/04 04:47:34 | 00,057,344 | ---- | C | MD5 = D29E2C7FECB1F1027DAE779B00A3E956] (Microsoft Corporation)
    wshbth.dll -> C:\Windows\SysNative\wshbth.dll -> [2009/06/04 04:47:34 | 00,044,032 | ---- | C | MD5 = 2A70994A408D889715DE6A527679397E] (Microsoft Corporation)
    DeviceEject.exe -> C:\Windows\SysNative\DeviceEject.exe -> [2009/06/04 04:47:34 | 00,026,624 | ---- | C | MD5 = F03360A8A3059D14FEA41E6BF6E704F0] (Microsoft Corporation)
    msisip.dll -> C:\Windows\SysNative\msisip.dll -> [2009/06/04 04:47:34 | 00,022,528 | ---- | C | MD5 = 916E8C67A8D845378E26ACEE7C1CB16F] (Microsoft Corporation)
    chtbrkr.dll -> C:\Windows\SysNative\chtbrkr.dll -> [2009/06/04 04:47:33 | 06,100,480 | ---- | C | MD5 = AC8C3CBCA02EBC0FAE7B1A00C4DCEADC] (Microsoft Corporation)
    accessibilitycpl.dll -> C:\Windows\SysNative\accessibilitycpl.dll -> [2009/06/04 04:47:33 | 02,680,832 | ---- | C | MD5 = 9E341BB55760A87268862E40DBA1CEF0] (Microsoft Corporation)
    netcenter.dll -> C:\Windows\SysWow64\netcenter.dll -> [2009/06/04 04:47:33 | 02,225,664 | ---- | C | MD5 = 28622FC22E0D46EE0A494EF084235F74] (Microsoft Corporation)
    themecpl.dll -> C:\Windows\SysWow64\themecpl.dll -> [2009/06/04 04:47:33 | 01,152,000 | ---- | C | MD5 = 7AF5FFF227F2365B2E37C61F5DC84A01] (Microsoft Corporation)
    wer.dll -> C:\Windows\SysWow64\wer.dll -> [2009/06/04 04:47:33 | 00,876,032 | ---- | C | MD5 = 8BE000F9A0B0FF7194AAEFB02C9BDE99] (Microsoft Corporation)
    rasdlg.dll -> C:\Windows\SysWow64\rasdlg.dll -> [2009/06/04 04:47:33 | 00,825,856 | ---- | C | MD5 = 2DD6AF8E97F59C9D39329BBC2A81F13F] (Microsoft Corporation)
    mstsc.exe -> C:\Windows\SysNative\mstsc.exe -> [2009/06/04 04:47:33 | 00,731,648 | ---- | C | MD5 = B9ECFA30BE99EEEA2948A27D85E1F52E] (Microsoft Corporation)
    pnpui.dll -> C:\Windows\SysNative\pnpui.dll -> [2009/06/04 04:47:33 | 00,691,712 | ---- | C | MD5 = 0E5D010E4BA6C9477AE6BD4D35F334F4] (Microsoft Corporation)
    riched20.dll -> C:\Windows\SysNative\riched20.dll -> [2009/06/04 04:47:33 | 00,606,208 | ---- | C | MD5 = A66325E43C09902374854B285DAC1548] (Microsoft Corporation)
    ncryptui.dll -> C:\Windows\SysNative\ncryptui.dll -> [2009/06/04 04:47:33 | 00,589,312 | ---- | C | MD5 = C4EB35DAE78F0FA60E17729E460A157F] (Microsoft Corporation)
    udfs.sys -> C:\Windows\SysNative\drivers\udfs.sys -> [2009/06/04 04:47:33 | 00,299,008 | ---- | C | MD5 = FAF2640A2A76ED03D449E443194C4C34] (Microsoft Corporation)
    apphelp.dll -> C:\Windows\SysNative\apphelp.dll -> [2009/06/04 04:47:33 | 00,200,704 | ---- | C | MD5 = F33E804A031F160D128AB78990DE7C91] (Microsoft Corporation)
    imm32.dll -> C:\Windows\SysNative\imm32.dll -> [2009/06/04 04:47:33 | 00,163,840 | ---- | C | Unable to obtain MD5] (Microsoft Corporation)
    vdsutil.dll -> C:\Windows\SysNative\vdsutil.dll -> [2009/06/04 04:47:33 | 00,157,696 | ---- | C | MD5 = 220349D1D90EE438AD031EBEF5F6D7A3] (Microsoft Corporation)
    cscript.exe -> C:\Windows\SysNative\cscript.exe -> [2009/06/04 04:47:33 | 00,147,968 | ---- | C | MD5 = FDD38054BABF076AA91DD02A2F1501C0] (Microsoft Corporation)
    ulib.dll -> C:\Windows\SysNative\ulib.dll -> [2009/06/04 04:47:33 | 00,128,000 | ---- | C | MD5 = 10D22E8EF75C8E63007492B524A008F8] (Microsoft Corporation)
    wshext.dll -> C:\Windows\SysNative\wshext.dll -> [2009/06/04 04:47:33 | 00,101,888 | ---- | C | MD5 = 6DC1F2034B8ECAB0C7848A9B522076AB] (Microsoft Corporation)
    pacer.sys -> C:\Windows\SysNative\drivers\pacer.sys -> [2009/06/04 04:47:33 | 00,094,208 | ---- | C | MD5 = C5AB7F0809392D0DA027F4A2A81BFA31] (Microsoft Corporation)
    wshext.dll -> C:\Windows\SysWow64\wshext.dll -> [2009/06/04 04:47:33 | 00,090,112 | ---- | C | MD5 = 9C50130E941A24805A608E6F3D2A3C8F] (Microsoft Corporation)
    iassvcs.dll -> C:\Windows\SysWow64\iassvcs.dll -> [2009/06/04 04:47:33 | 00,076,288 | ---- | C | MD5 = CAC183ABA07231B031EC0627E3A4A618] (Microsoft Corporation)
    feclient.dll -> C:\Windows\SysNative\feclient.dll -> [2009/06/04 04:47:33 | 00,068,608 | ---- | C | MD5 = D7924B0F3AB5574BF59CA2892BE8961A] (Microsoft Corporation)
    wsnmp32.dll -> C:\Windows\SysWow64\wsnmp32.dll -> [2009/06/04 04:47:33 | 00,050,688 | ---- | C | MD5 = 1EDE113859276E4B0F19B80F39E2CC95] (Microsoft Corporation)
    usbehci.sys -> C:\Windows\SysNative\drivers\usbehci.sys -> [2009/06/04 04:47:33 | 00,049,664 | ---- | C | MD5 = 827E44DE934A736EA31E91D353EB126F] (Microsoft Corporation)
    networkmap.dll -> C:\Windows\SysWow64\networkmap.dll -> [2009/06/04 04:47:32 | 03,072,000 | ---- | C | MD5 = 681D46C02A26F00C5F767B78BDAC7D1E] (Microsoft Corporation)
    PerfCenterCPL.dll -> C:\Windows\SysWow64\PerfCenterCPL.dll -> [2009/06/04 04:47:32 | 01,248,768 | ---- | C | MD5 = 1B360BE74EEF51393234D23552AEE403] (Microsoft Corporation)
    slcc.dll -> C:\Windows\SysWow64\slcc.dll -> [2009/06/04 04:47:32 | 00,777,216 | ---- | C | MD5 = 3CEADB7938575606D5334E44A7274B92] (Microsoft Corporation)
    powercpl.dll -> C:\Windows\SysWow64\powercpl.dll -> [2009/06/04 04:47:32 | 00,723,968 | ---- | C | MD5 = 8DDC387167FA0234F3656EB34C78BFFB] (Microsoft Corporation)
    timedate.cpl -> C:\Windows\SysWow64\timedate.cpl -> [2009/06/04 04:47:32 | 00,714,240 | ---- | C | MD5 = 45D4135CFA747CDFCF7CB247A6399002] (Microsoft Corporation)
    mstsc.exe -> C:\Windows\SysWow64\mstsc.exe -> [2009/06/04 04:47:32 | 00,678,400 | ---- | C | MD5 = 4F7A9842012D948EB16DC7B8B91366FE] (Microsoft Corporation)
    qedit.dll -> C:\Windows\SysNative\qedit.dll -> [2009/06/04 04:47:32 | 00,619,008 | ---- | C | MD5 = C4E2A5EC3D4AB3D0652F6A70FDE24C78] (Microsoft Corporation)
    srcore.dll -> C:\Windows\SysNative\srcore.dll -> [2009/06/04 04:47:32 | 00,474,624 | ---- | C | MD5 = 8BD38D1BF56559DF5E28EA74ADA63A07] (Microsoft Corporation)
    rasplap.dll -> C:\Windows\SysNative\rasplap.dll -> [2009/06/04 04:47:32 | 00,389,632 | ---- | C | MD5 = F59CF3BFE865EB795C5DE5850F48B321] (Microsoft Corporation)
    rasppp.dll -> C:\Windows\SysNative\rasppp.dll -> [2009/06/04 04:47:32 | 00,306,176 | ---- | C | MD5 = 4500B574CB7F5ED6EE8E0BBC72AE2E31] (Microsoft Corporation)
    scansetting.dll -> C:\Windows\SysWow64\scansetting.dll -> [2009/06/04 04:47:32 | 00,245,760 | ---- | C | MD5 = E60FA45D987DBA869B28532E2F0E6B76] (Microsoft Corporation)
    SndVolSSO.dll -> C:\Windows\SysNative\SndVolSSO.dll -> [2009/06/04 04:47:32 | 00,177,664 | ---- | C | MD5 = 5C8C51B679B947F3DF948533C0926240] (Microsoft Corporation)
    tcpmon.dll -> C:\Windows\SysNative\tcpmon.dll -> [2009/06/04 04:47:32 | 00,168,960 | ---- | C | MD5 = 74D59F72104C9FF8D154D1AB372A5A57] (Microsoft Corporation)
    msutb.dll -> C:\Windows\SysWow64\msutb.dll -> [2009/06/04 04:47:32 | 00,163,328 | ---- | C | MD5 = C6DA42ADA0C5FC8CB05744229D632B47] (Microsoft Corporation)
    wshom.ocx -> C:\Windows\SysWow64\wshom.ocx -> [2009/06/04 04:47:32 | 00,135,168 | ---- | C | MD5 = 8992F45DED6B63B919BDEB6D270FF9C8] (Microsoft Corporation)
    ntmarta.dll -> C:\Windows\SysWow64\ntmarta.dll -> [2009/06/04 04:47:32 | 00,121,344 | ---- | C | MD5 = CD08EEC61C591AF59A39F4363C567D30] (Microsoft Corporation)
    oleprn.dll -> C:\Windows\SysNative\oleprn.dll -> [2009/06/04 04:47:32 | 00,115,712 | ---- | C | MD5 = D00EE9DF8224EAED0690EF80FFAE9EAA] (Microsoft Corporation)
    powrprof.dll -> C:\Windows\SysWow64\powrprof.dll -> [2009/06/04 04:47:32 | 00,098,816 | ---- | C | MD5 = 9A7F4B2EDACD11444D048AA19CBB26AF] (Microsoft Corporation)
    wanarp.sys -> C:\Windows\SysNative\drivers\wanarp.sys -> [2009/06/04 04:47:32 | 00,086,528 | ---- | C | MD5 = B8E7049622300D20BA6D8BE0C47C0CFD] (Microsoft Corporation)
    mstlsapi.dll -> C:\Windows\SysWow64\mstlsapi.dll -> [2009/06/04 04:47:32 | 00,084,992 | ---- | C | MD5 = EE60FC8F65B94C392DE0F75533C014FB] (Microsoft Corporation)
    iasacct.dll -> C:\Windows\SysWow64\iasacct.dll -> [2009/06/04 04:47:32 | 00,058,880 | ---- | C | MD5 = 8F29E2E9FA5830317158BB6AE5D2BBA0] (Microsoft Corporation)
    iasads.dll -> C:\Windows\SysWow64\iasads.dll -> [2009/06/04 04:47:32 | 00,057,344 | ---- | C | MD5 = 1111EA117266132F5057ED8F35C47ACD] (Microsoft Corporation)
    dataclen.dll -> C:\Windows\SysNative\dataclen.dll -> [2009/06/04 04:47:32 | 00,048,640 | ---- | C | MD5 = FC15E96BE5E1B1002C72AD91677E5577] (Microsoft Corporation)
    ifmon.dll -> C:\Windows\SysNative\ifmon.dll -> [2009/06/04 04:47:32 | 00,036,352 | ---- | C | MD5 = DD49BE6A0BB0136BBAE9AF0A0BD15F52] (Microsoft Corporation)
    mssprxy.dll -> C:\Windows\SysWow64\mssprxy.dll -> [2009/06/04 04:47:32 | 00,033,280 | ---- | C | MD5 = FEA6D21F78922D641A0C9346D885133B] (Microsoft Corporation)
    lpk.dll -> C:\Windows\SysWow64\lpk.dll -> [2009/06/04 04:47:32 | 00,023,552 | ---- | C | MD5 = DF37346EA13082E3E1B423B54014E641] (Microsoft Corporation)
    tsbyuv.dll -> C:\Windows\SysWow64\tsbyuv.dll -> [2009/06/04 04:47:32 | 00,012,288 | ---- | C | MD5 = 8A057FA5B3C6B982C7D819618770BC2D] (Microsoft Corporation)
    icardres.dll -> C:\Windows\SysWow64\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 34B7FA82A85231348C170EF39B636DB4] (Microsoft Corporation)
    icardres.dll -> C:\Windows\SysNative\icardres.dll -> [2009/06/04 04:47:32 | 00,009,048 | ---- | C | MD5 = 2CA500FCA65202221265909F14B0A9AE] (Microsoft Corporation)
    accessibilitycpl.dll -> C:\Windows\SysWow64\accessibilitycpl.dll -> [2009/06/04 04:47:31 | 02,515,968 | ---- | C | MD5 = 941486AB385556BF6A62342F8CA15BD8] (Microsoft Corporation)
    wlanpref.dll -> C:\Windows\SysWow64\wlanpref.dll -> [2009/06/04 04:47:31 | 01,671,680 | ---- | C | MD5 = 2EC3531A49A6937446259C540EDE4535] (Microsoft Corporation)
    connect.dll -> C:\Windows\SysWow64\connect.dll -> [2009/06/04 04:47:31 | 01,645,568 | ---- | C | MD5 = 36509ECC02172D09507A16FAD12C566F] (Microsoft Corporation)
    sud.dll -> C:\Windows\SysWow64\sud.dll -> [2009/06/04 04:47:31 | 01,224,192 | ---- | C | MD5 = F9F9E7F0D4EBAC06334C9BF76C9E11B4] (Microsoft Corporation)
    usercpl.dll -> C:\Windows\SysWow64\usercpl.dll -> [2009/06/04 04:47:31 | 01,123,840 | ---- | C | MD5 = E3CE1997725EE8E14F7B4A7CD746538E] (Microsoft Corporation)
    systemcpl.dll -> C:\Windows\SysWow64\systemcpl.dll -> [2009/06/04 04:47:31 | 00,842,240 | ---- | C | MD5 = 2A7D73202A7299CD35AC6D0D96128B5B] (Microsoft Corporation)
    WMVXENCD.DLL -> C:\Windows\SysNative\WMVXENCD.DLL -> [2009/06/04 04:47:31 | 00,622,592 | ---- | C | MD5 = 5413960D8A16697626FED4A1F1508856] (Microsoft Corporation)
    themeui.dll -> C:\Windows\SysWow64\themeui.dll -> [2009/06/04 04:47:31 | 00,615,424 | ---- | C | MD5 = 4CF66D8014ECB3BF517E38C5B90AAC74] (Microsoft Corporation)
    autoplay.dll -> C:\Windows\SysWow64\autoplay.dll -> [2009/06/04 04:47:31 | 00,516,608 | ---- | C | MD5 = 2AE61DEF9112DA8948EEAB3631FF4525] (Microsoft Corporation)
    qdvd.dll -> C:\Windows\SysWow64\qdvd.dll -> [2009/06/04 04:47:31 | 00,497,152 | ---- | C | MD5 = 971F512A83EC50B8A72C8F8BFBF4E5B2] (Microsoft Corporation)
    wlangpui.dll -> C:\Windows\SysNative\wlangpui.dll -> [2009/06/04 04:47:31 | 00,489,984 | ---- | C | MD5 = 5C1E2FBBBE6F14FAAFA8AAA20C7E2D71] (Microsoft Corporation)
    pcaui.dll -> C:\Windows\SysWow64\pcaui.dll -> [2009/06/04 04:47:31 | 00,464,384 | ---- | C | MD5 = 7E05BE3F599B3F0C46389241C6820C8B] (Microsoft Corporation)
    BFE.DLL -> C:\Windows\SysNative\BFE.DLL -> [2009/06/04 04:47:31 | 00,458,240 | ---- | C | MD5 = FFB96C2589FFA60473EAD78B39FBDE29] (Microsoft Corporation)
    qdvd.dll -> C:\Windows\SysNative\qdvd.dll -> [2009/06/04 04:47:31 | 00,352,256 | ---- | C | MD5 = 354315DD7C8DF536E7B08E922CB9AA18] (Microsoft Corporation)
    thawbrkr.dll -> C:\Windows\SysNative\thawbrkr.dll -> [2009/06/04 04:47:31 | 00,317,440 | ---- | C | MD5 = 4F9D5C5FEC7DCAA32EA82FAC7215D1C3] (Microsoft Corporation)
    raschap.dll -> C:\Windows\SysNative\raschap.dll -> [2009/06/04 04:47:31 | 00,295,936 | ---- | C | MD5 = BFDF69526CB6476992540D4C477CC27A] (Microsoft Corporation)
    scksp.dll -> C:\Windows\SysNative\scksp.dll -> [2009/06/04 04:47:31 | 00,186,880 | ---- | C | MD5 = 4B2512952CCD6C2C7E610F21E28A5163] (Microsoft Corporation)
    authz.dll -> C:\Windows\SysWow64\authz.dll -> [2009/06/04 04:47:31 | 00,079,872 | ---- | C | MD5 = 1AE011BB950A5E0B05023D2AFEC3666D] (Microsoft Corporation)
    newdev.exe -> C:\Windows\SysWow64\newdev.exe -> [2009/06/04 04:47:31 | 00,074,752 | ---- | C | MD5 = DD251E13AAAA5F5AF09934759A4E1FC5] (Microsoft Corporation)
    wlanhlp.dll -> C:\Windows\SysWow64\wlanhlp.dll -> [2009/06/04 04:47:31 | 00,068,096 | ---- | C | MD5 = 8D544AC1B7AA7FB9DFF0C3E7DA6AD295] (Microsoft Corporation)
    samlib.dll -> C:\Windows\SysWow64\samlib.dll -> [2009/06/04 04:47:31 | 00,057,344 | ---- | C | MD5 = 453DE2958C885527E20C79A3FEFE6AF7] (Microsoft Corporation)
    mmci.dll -> C:\Windows\SysWow64\mmci.dll -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = CBBFCB6801D0A9F9BD4D477284C86D1C] (Microsoft Corporation)
    cmmon32.exe -> C:\Windows\SysNative\cmmon32.exe -> [2009/06/04 04:47:31 | 00,052,224 | ---- | C | MD5 = 900006FA862F2E631168C8F9CFE33AC1] (Microsoft Corporation)
    rtutils.dll -> C:\Windows\SysNative\rtutils.dll -> [2009/06/04 04:47:31 | 00,050,688 | ---- | C | MD5 = 5A2008B581F4759CC7A25BBAD9BFD2B7] (Microsoft Corporation)
    npfs.sys -> C:\Windows\SysNative\drivers\npfs.sys -> [2009/06/04 04:47:31 | 00,044,544 | ---- | C | MD5 = B298874F8E0EA93F06EC40AA8D146478] (Microsoft Corporation)
    iaspolcy.dll -> C:\Windows\SysNative\iaspolcy.dll -> [2009/06/04 04:47:31 | 00,037,888 | ---- | C | MD5 = 559C060F694FCA4FC0A538DD6D7C4489] (Microsoft Corporation)
    fc.exe -> C:\Windows\SysNative\fc.exe -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 9382063462441C0D2452A40CFE8CAC43] (Microsoft Corporation)
    hidserv.dll -> C:\Windows\SysNative\hidserv.dll -> [2009/06/04 04:47:31 | 00,024,064 | ---- | C | MD5 = 59361D38A297755D46A540E450202B2A] (Microsoft Corporation)
    kbdhid.sys -> C:\Windows\SysNative\drivers\kbdhid.sys -> [2009/06/04 04:47:31 | 00,022,528 | ---- | C | MD5 = DBDF75D51464FBC47D0104EC3D572C05] (Microsoft Corporation)
    wscisvif.dll -> C:\Windows\SysNative\wscisvif.dll -> [2009/06/04 04:47:31 | 00,020,992 | ---- | C | MD5 = EBFA7A306C65010DED108F5A26598642] (Microsoft Corporation)
    spwinsat.dll -> C:\Windows\SysNative\spwinsat.dll -> [2009/06/04 04:47:31 | 00,013,824 | ---- | C | MD5 = 1EAE8FB082D759DAD2ED990843E9C0C2] (Microsoft Corporation)
    SyncCenter.dll -> C:\Windows\SysNative\SyncCenter.dll -> [2009/06/04 04:47:30 | 02,575,360 | ---- | C | MD5 = E55DE59CD89138BD973602F9F202E84D] (Microsoft Corporation)
    WMPEncEn.dll -> C:\Windows\SysNative\WMPEncEn.dll -> [2009/06/04 04:47:30 | 02,043,904 | ---- | C | MD5 = BBEF15F506B97522B918D09A3662F9B0] (Microsoft Corporation)
    msftedit.dll -> C:\Windows\SysNative\msftedit.dll -> [2009/06/04 04:47:30 | 00,735,232 | ---- | C | MD5 = 554BD984C71129A8BD4450BE8170695C] (Microsoft Corporation)
    msscp.dll -> C:\Windows\SysNative\msscp.dll -> [2009/06/04 04:47:30 | 00,534,528 | ---- | C | MD5 = 1AD1CC73AC29E7139A32B54DBE235635] (Microsoft Corporation)
    wpcao.dll -> C:\Windows\SysWow64\wpcao.dll -> [2009/06/04 04:47:30 | 00,532,992 | ---- | C | MD5 = 5D2FDA874FED0D3FEDF41F5961663F3B] (Microsoft Corporation)
    msinfo32.exe -> C:\Windows\SysWow64\msinfo32.exe -> [2009/06/04 04:47:30 | 00,408,064 | ---- | C | MD5 = D3D1CE8FF30786D50272DA3085149904] (Microsoft Corporation)
    wlanmsm.dll -> C:\Windows\SysNative\wlanmsm.dll -> [2009/06/04 04:47:30 | 00,353,792 | ---- | C | MD5 = DE52345E9E9684205D1AF593DC5B30F4] (Microsoft Corporation)
    mscandui.dll -> C:\Windows\SysNative\mscandui.dll -> [2009/06/04 04:47:30 | 00,289,792 | ---- | C | MD5 = FD18A06BA0BF4E535E6DE153C9525960] (Microsoft Corporation)
    tapisrv.dll -> C:\Windows\SysWow64\tapisrv.dll -> [2009/06/04 04:47:30 | 00,242,688 | ---- | C | MD5 = D7673E4B38CE21EE54C59EEEB65E2483] (Microsoft Corporation)
    fastfat.sys -> C:\Windows\SysNative\drivers\fastfat.sys -> [2009/06/04 04:47:30 | 00,198,144 | ---- | C | MD5 = 1A4BEE34277784619DDAF0422C0C6E23] (Microsoft Corporation)
    dsprop.dll -> C:\Windows\SysNative\dsprop.dll -> [2009/06/04 04:47:30 | 00,164,864 | ---- | C | MD5 = FD5AE1C64B86B4BEFEF2691306183E09] (Microsoft Corporation)
    scksp.dll -> C:\Windows\SysWow64\scksp.dll -> [2009/06/04 04:47:30 | 00,140,288 | ---- | C | MD5 = 74B514A1FB5742CFB0DDC700D832D166] (Microsoft Corporation)
    vdsutil.dll -> C:\Windows\SysWow64\vdsutil.dll -> [2009/06/04 04:47:30 | 00,128,000 | ---- | C | MD5 = FE7742C93F6904A9B08BC6749C039CE9] (Microsoft Corporation)
    rpchttp.dll -> C:\Windows\SysWow64\rpchttp.dll -> [2009/06/04 04:47:30 | 00,127,488 | ---- | C | MD5 = 305460BC9F6C2888D291ADCB23FC5AE1] (Microsoft Corporation)
    rdpwsx.dll -> C:\Windows\SysNative\rdpwsx.dll -> [2009/06/04 04:47:30 | 00,117,760 | ---- | C | MD5 = 06BEFFD308C5796D3D6FD2FAD267A6C2] (Microsoft Corporation)
    pintlgnt.ime -> C:\Windows\SysWow64\pintlgnt.ime -> [2009/06/04 04:47:30 | 00,089,088 | ---- | C | MD5 = 1298AE079E74D8691BF1722CF1E32F67] (Microsoft Corporation)
    smss.exe -> C:\Windows\SysNative\smss.exe -> [2009/06/04 04:47:30 | 00,075,264 | ---- | C | MD5 = C17704EA5B0F83D78F1377075FFE1C89] (Microsoft Corporation)
    regapi.dll -> C:\Windows\SysWow64\regapi.dll -> [2009/06/04 04:47:30 | 00,067,584 | ---- | C | MD5 = A6250DF429D0D78DACFBC6B87074E584] (Microsoft Corporation)
    PnPUnattend.exe -> C:\Windows\SysNative\PnPUnattend.exe -> [2009/06/04 04:47:30 | 00,064,512 | ---- | C | MD5 = 1BC046E369CDF1201AFDA63FBD071630] (Microsoft Corporation)
    feclient.dll -> C:\Windows\SysWow64\feclient.dll -> [2009/06/04 04:47:30 | 00,054,272 | ---- | C | MD5 = 965AC9FBF2C67231C157E99C03C58D24] (Microsoft Corporation)
    rekeywiz.exe -> C:\Windows\SysNative\rekeywiz.exe -> [2009/06/04 04:47:30 | 00,051,200 | ---- | C | MD5 = 40335F6499E5A2EF9C74B499E5B97F9C] (Microsoft Corporation)
    certprop.dll -> C:\Windows\SysNative\certprop.dll -> [2009/06/04 04:47:30 | 00,049,664 | ---- | C | MD5 = 5A268127633C7EE2A7FB87F39D748D56] (Microsoft Corporation)
    msimtf.dll -> C:\Windows\SysNative\msimtf.dll -> [2009/06/04 04:47:30 | 00,041,472 | ---- | C | MD5 = 84F9BAD395DADAFA8E46BE7946B18ECD] (Microsoft Corporation)
    printfilterpipelineprxy.dll -> C:\Windows\SysNative\printfilterpipelineprxy.dll -> [2009/06/04 04:47:30 | 00,035,840 | ---- | C | MD5 = 7D58ED6F0A190ACA4043C4BD0A14B94E] (Microsoft Corporation)
    wscui.cpl -> C:\Windows\SysNative\wscui.cpl -> [2009/06/04 04:47:29 | 01,738,752 | ---- | C | MD5 = 2A81DBACEF86D5698880BE8C0035F5A2] (Microsoft Corporation)
    wscui.cpl -> C:\Windows\SysWow64\wscui.cpl -> [2009/06/04 04:47:29 | 01,689,600 | ---- | C | MD5 = 62C92BE2414AC9D0BC0196CA52D2CD2B] (Microsoft Corporation)
    WMPEncEn.dll -> C:\Windows\SysWow64\WMPEncEn.dll -> [2009/06/04 04:47:29 | 01,642,496 | ---- | C | MD5 = 52C8CD06900B5B9FC4EF5C880D5AD9CB] (Microsoft Corporation)
    mmsys.cpl -> C:\Windows\SysWow64\mmsys.cpl -> [2009/06/04 04:47:29 | 01,102,848 | ---- | C | MD5 = 69405254E704895F4F519422818D35B6] (Microsoft Corporation)
    FWPUCLNT.DLL -> C:\Windows\SysNative\FWPUCLNT.DLL -> [2009/06/04 04:47:29 | 00,779,776 | ---- | C | MD5 = 7972615E382EF39785FD45F136F64D8C] (Microsoft Corporation)
    wiaaut.dll -> C:\Windows\SysNative\wiaaut.dll -> [2009/06/04 04:47:29 | 00,669,184 | ---- | C | MD5 = 4309F5CDE2396B8B1649633186F48A8F] (Microsoft Corporation)
    wmpeffects.dll -> C:\Windows\SysNative\wmpeffects.dll -> [2009/06/04 04:47:29 | 00,557,056 | ---- | C | MD5 = 903D3F4BD98DF8023B764AD677126C9F] (Microsoft Corporation)
    qedit.dll -> C:\Windows\SysWow64\qedit.dll -> [2009/06/04 04:47:29 | 00,505,344 | ---- | C | MD5 = 8F960A1A3D9A7B829FD9DCE2689030F6] (Microsoft Corporation)
    ncryptui.dll -> C:\Windows\SysWow64\ncryptui.dll -> [2009/06/04 04:47:29 | 00,445,952 | ---- | C | MD5 = 29215EAF81447CB95F82FDE671751330] (Microsoft Corporation)
    winhttp.dll -> C:\Windows\SysNative\winhttp.dll -> [2009/06/04 04:47:29 | 00,439,808 | ---- | C | MD5 = 780473D0EEB23D40F1EEE69A70719399] (Microsoft Corporation)
    dpapimig.exe -> C:\Windows\SysWow64\dpapimig.exe -> [2009/06/04 04:47:29 | 00,407,040 | ---- | C | MD5 = 29B84718CDCBCA66A47B64AA2B02318F] (Microsoft Corporation)
    unimdm.tsp -> C:\Windows\SysNative\unimdm.tsp -> [2009/06/04 04:47:29 | 00,320,000 | ---- | C | MD5 = 8139F933EF1559D4E7187E48F93EA136] (Microsoft Corporation)
    AUDIOKSE.dll -> C:\Windows\SysNative\AUDIOKSE.dll -> [2009/06/04 04:47:29 | 00,313,856 | ---- | C | MD5 = E08935E54CEE225BEB3CC220CBCC734A] (Microsoft Corporation)
    scesrv.dll -> C:\Windows\SysWow64\scesrv.dll -> [2009/06/04 04:47:29 | 00,306,176 | ---- | C | MD5 = D90911B3FA05D7B930C1286084B404DE] (Microsoft Corporation)
    psisdecd.dll -> C:\Windows\SysWow64\psisdecd.dll -> [2009/06/04 04:47:29 | 00,293,376 | ---- | C | MD5 = 16628EE6CDFDA509820509D7E65F3F62] (Microsoft Corporation)
    certreq.exe -> C:\Windows\SysWow64\certreq.exe -> [2009/06/04 04:47:29 | 00,215,552 | ---- | C | MD5 = 56C182F55BF68556C974E9AD32BF56BF] (Microsoft Corporation)
    fontext.dll -> C:\Windows\SysNative\fontext.dll -> [2009/06/04 04:47:29 | 00,163,328 | ---- | C | MD5 = 0C8E0E7E708BDE406315F3C1A653B0E3] (Microsoft Corporation)
    Faultrep.dll -> C:\Windows\SysWow64\Faultrep.dll -> [2009/06/04 04:47:29 | 00,147,456 | ---- | C | MD5 = 77784A2BD5912A4EC6284255865526BC] (Microsoft Corporation)
    AudioSes.dll -> C:\Windows\SysWow64\AudioSes.dll -> [2009/06/04 04:47:29 | 00,115,712 | ---- | C | MD5 = 7258434974EA735725FD2D4A65C5E821] (Microsoft Corporation)
    oleprn.dll -> C:\Windows\SysWow64\oleprn.dll -> [2009/06/04 04:47:29 | 00,097,792 | ---- | C | MD5 = 23E10EC351836F14606CCCFF5C6CF292] (Microsoft Corporation)
    dot3msm.dll -> C:\Windows\SysNative\dot3msm.dll -> [2009/06/04 04:47:29 | 00,092,160 | ---- | C | MD5 = 1F97A9910F45BA77802DE68D35BD2829] (Microsoft Corporation)
    hdwwiz.exe -> C:\Windows\SysWow64\hdwwiz.exe -> [2009/06/04 04:47:29 | 00,080,384 | ---- | C | MD5 = 1BAF5FE4C31D20CF805B2FA7A7C2B886] (Microsoft Corporation)
    dot3msm.dll -> C:\Windows\SysWow64\dot3msm.dll -> [2009/06/04 04:47:29 | 00,075,264 | ---- | C | MD5 = 7366AB74CF8489749AC4CBFBAEE9F9E2] (Microsoft Corporation)
    mpr.dll -> C:\Windows\SysWow64\mpr.dll -> [2009/06/04 04:47:29 | 00,068,608 | ---- | C | MD5 = 1F94EA31C9543B855F53BDAC7792DA4E] (Microsoft Corporation)
    rekeywiz.exe -> C:\Windows\SysWow64\rekeywiz.exe -> [2009/06/04 04:47:29 | 00,043,520 | ---- | C | MD5 = 79DB32BA1FED01EC05A5D5158CF1A279] (Microsoft Corporation)
    iaspolcy.dll -> C:\Windows\SysWow64\iaspolcy.dll -> [2009/06/04 04:47:29 | 00,033,792 | ---- | C | MD5 = 97C89AA7146D73B387AADAA11D8B56F1] (Microsoft Corporation)
    whealogr.dll -> C:\Windows\SysNative\whealogr.dll -> [2009/06/04 04:47:29 | 00,033,280 | ---- | C | MD5 = F937669EAA18DF36D4ECDE87FE011152] (Microsoft Corporation)
    perfdisk.dll -> C:\Windows\SysWow64\perfdisk.dll -> [2009/06/04 04:47:29 | 00,031,744 | ---- | C | MD5 = 9104EDD1D3BF91AD079A73FBB515E492] (Microsoft Corporation)
    wsdchngr.dll -> C:\Windows\SysNative\wsdchngr.dll -> [2009/06/04 04:47:29 | 00,025,600 | ---- | C | MD5 = 8E10B36901325C1ABE28E71FB8E437D9] (Microsoft Corporation)
    wscisvif.dll -> C:\Windows\SysWow64\wscisvif.dll -> [2009/06/04 04:47:29 | 00,017,920 | ---- | C | MD5 = D0A95E567224B4C347CBDD6541E5D928] (Microsoft Corporation)
    spcinstrumentation.man -> C:\Windows\SysWow64\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
    spcinstrumentation.man -> C:\Windows\SysNative\spcinstrumentation.man -> [2009/06/04 04:47:29 | 00,009,239 | ---- | C | MD5 = 6F7C27002EA0F9496070A1150C977DEC] ()
    netshell.dll -> C:\Windows\SysNative\netshell.dll -> [2009/06/04 04:47:28 | 03,341,312 | ---- | C | MD5 = AA6FAA30D3D0D4424DBA3D74D1CA1E14] (Microsoft Corporation)
    MSMPEG2ENC.DLL -> C:\Windows\SysNative\MSMPEG2ENC.DLL -> [2009/06/04 04:47:28 | 00,644,608 | ---- | C | MD5 = 68C35C27C32BDAFAF6E8705B839E9A45] (Microsoft Corporation)
    rasgcw.dll -> C:\Windows\SysWow64\rasgcw.dll -> [2009/06/04 04:47:28 | 00,642,560 | ---- | C | MD5 = 94B67798159ACB26D7104E55903B6FEF] (Microsoft Corporation)
    FWPUCLNT.DLL -> C:\Windows\SysWow64\FWPUCLNT.DLL -> [2009/06/04 04:47:28 | 00,595,456 | ---- | C | MD5 = B0D12F4344EB2AE96E487D2DF6F74413] (Microsoft Corporation)
    wmdrmdev.dll -> C:\Windows\SysNative\wmdrmdev.dll -> [2009/06/04 04:47:28 | 00,539,136 | ---- | C | MD5 = 9E703EC2E91C9071D75E34F1A7327ECA] (Microsoft Corporation)
    rasplap.dll -> C:\Windows\SysWow64\rasplap.dll -> [2009/06/04 04:47:28 | 00,376,832 | ---- | C | MD5 = 9DC3723519F52B6BC63EACD4BD411313] (Microsoft Corporation)
    drmmgrtn.dll -> C:\Windows\SysNative\drmmgrtn.dll -> [2009/06/04 04:47:28 | 00,365,568 | ---- | C | MD5 = 482F86F951A6A884F8A4361A67260FE8] (Microsoft Corporation)
    certreq.exe -> C:\Windows\SysNative\certreq.exe -> [2009/06/04 04:47:28 | 00,259,072 | ---- | C | MD5 = C8C33F31398217BC62D0B12FF456BB7D] (Microsoft Corporation)
    msutb.dll -> C:\Windows\SysNative\msutb.dll -> [2009/06/04 04:47:28 | 00,227,840 | ---- | C | MD5 = AD27B41DA928C0338E6F364BE928D3F7] (Microsoft Corporation)
    msnetobj.dll -> C:\Windows\SysNative\msnetobj.dll -> [2009/06/04 04:47:28 | 00,221,696 | ---- | C | MD5 = BAB9E1E8D5C9DEFDCCC5736CC1FEC38B] (Microsoft Corporation)
    wlanui.dll -> C:\Windows\SysNative\wlanui.dll -> [2009/06/04 04:47:28 | 00,218,624 | ---- | C | MD5 = 808F32604D3A77A113C768380A1F61F8] (Microsoft Corporation)
    rdpwd.sys -> C:\Windows\SysNative\drivers\rdpwd.sys -> [2009/06/04 04:47:28 | 00,209,920 | ---- | C | MD5 = B1D741C87CEA8D7282146366CC9C3F81] (Microsoft Corporation)
    netplwiz.dll -> C:\Windows\SysNative\netplwiz.dll -> [2009/06/04 04:47:28 | 00,197,632 | ---- | C | MD5 = 55F61E2EBBAC854879B2016F2383BC83] (Microsoft Corporation)
    scecli.dll -> C:\Windows\SysWow64\scecli.dll -> [2009/06/04 04:47:28 | 00,177,152 | ---- | C | MD5 = 8FC182167381E9915651267044105EE1] (Microsoft Corporation)
    SndVol.exe -> C:\Windows\SysNative\SndVol.exe -> [2009/06/04 04:47:28 | 00,172,032 | ---- | C | MD5 = 7A31C805A372EB80D84C5562481F82F7] (Microsoft Corporation)
    tcpipcfg.dll -> C:\Windows\SysWow64\tcpipcfg.dll -> [2009/06/04 04:47:28 | 00,170,496 | ---- | C | MD5 = E4060CFE50F87C72316CB0FDB20E4913] (Microsoft Corporation)
    rmcast.sys -> C:\Windows\SysNative\drivers\rmcast.sys -> [2009/06/04 04:47:28 | 00,140,288 | ---- | C | MD5 = F913517BB2F3A73EC6B9B65E5DC7B420] (Microsoft Corporation)
    tcpmon.dll -> C:\Windows\SysWow64\tcpmon.dll -> [2009/06/04 04:47:28 | 00,135,168 | ---- | C | MD5 = BB0EB921877A1A7EF15AE2D97A71CBA9] (Microsoft Corporation)
    SmartcardCredentialProvider.dll -> C:\Windows\SysWow64\SmartcardCredentialProvider.dll -> [2009/06/04 04:47:28 | 00,134,656 | ---- | C | MD5 = B25DBBA6C63A61FF4AFDB5ADAB4E70CB] (Microsoft Corporation)
    shsetup.dll -> C:\Windows\SysNative\shsetup.dll -> [2009/06/04 04:47:28 | 00,121,856 | ---- | C | MD5 = 25467BCC0718C01F3A96C85468B19334] (Microsoft Corporation)
    MSNP.ax -> C:\Windows\SysNative\MSNP.ax -> [2009/06/04 04:47:28 | 00,101,376 | ---- | C | MD5 = 3C4D4C68A9D63F01AF18B6ECC7274B8A] (Microsoft Corporation)
    conime.exe -> C:\Windows\SysNative\conime.exe -> [2009/06/04 04:47:28 | 00,086,528 | ---- | C | MD5 = 00E1D5F656B13C00CC31CEB6B43C1D69] (Microsoft Corporation)
    fdWSD.dll -> C:\Windows\SysWow64\fdWSD.dll -> [2009/06/04 04:47:28 | 00,067,072 | ---- | C | MD5 = 4BAEC13BCAA595639EBB5185278DEFEA] (Microsoft Corporation)
    dimsroam.dll -> C:\Windows\SysNative\dimsroam.dll -> [2009/06/04 04:47:28 | 00,064,512 | ---- | C | MD5 = 69CD3A812AF2187751F99FDD86E8EE50] (Microsoft Corporation)
    cmmon32.exe -> C:\Windows\SysWow64\cmmon32.exe -> [2009/06/04 04:47:28 | 00,049,152 | ---- | C | MD5 = 86497C6A9825B6252804D5C4E189AA67] (Microsoft Corporation)
    tcpipreg.sys -> C:\Windows\SysNative\drivers\tcpipreg.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = FF0C49DB68D4F451343EF06ABAEA3DC9] (Microsoft Corporation)
    watchdog.sys -> C:\Windows\SysNative\drivers\watchdog.sys -> [2009/06/04 04:47:28 | 00,040,448 | ---- | C | MD5 = 2F956EA22FCCE4C9F15C64175C891A1E] (Microsoft Corporation)
    TSTheme.exe -> C:\Windows\SysWow64\TSTheme.exe -> [2009/06/04 04:47:28 | 00,038,400 | ---- | C | MD5 = 1904DBA08C2D63CE2025CAD78F5DF2BB] (Microsoft Corporation)
    PnPutil.exe -> C:\Windows\SysNative\PnPutil.exe -> [2009/06/04 04:47:28 | 00,036,864 | ---- | C | MD5 = 96C9A012901B35AAC91360D8698929C3] (Microsoft Corporation)
    uxsms.dll -> C:\Windows\SysNative\uxsms.dll -> [2009/06/04 04:47:28 | 00,032,768 | ---- | C | MD5 = D76E231E4850BB3F88A3D9A78DF191E3] (Microsoft Corporation)
    USBCAMD2.sys -> C:\Windows\SysNative\drivers\USBCAMD2.sys -> [2009/06/04 04:47:28 | 00,032,640 | ---- | C | MD5 = D46BDF1C810138E2D3B985FA3A7AB05E] (Microsoft Corporation)
    whealogr.dll -> C:\Windows\SysWow64\whealogr.dll -> [2009/06/04 04:47:28 | 00,031,232 | ---- | C | MD5 = 72F1789EBA824BB977DB83B0A0B57B26] (Microsoft Corporation)
    spwinsat.dll -> C:\Windows\SysWow64\spwinsat.dll -> [2009/06/04 04:47:28 | 00,011,776 | ---- | C | MD5 = DEAD790AF988C4C70B6371FC02AA9104] (Microsoft Corporation)
    MSVidCtl.dll -> C:\Windows\SysNative\MSVidCtl.dll -> [2009/06/04 04:47:27 | 02,535,424 | ---- | C | MD5 = 5448FF8A9527E46C85B48801254C5C24] (Microsoft Corporation)
    oobefldr.dll -> C:\Windows\SysNative\oobefldr.dll -> [2009/06/04 04:47:27 | 02,438,656 | ---- | C | MD5 = 8E29B921BC400F51276F781C4CFB87F6] (Microsoft Corporation)
    oobefldr.dll -> C:\Windows\SysWow64\oobefldr.dll -> [2009/06/04 04:47:27 | 02,153,472 | ---- | C | MD5 = 16FC5B430123238E522B18E63C257AF8] (Microsoft Corporation)
    WMVDECOD.DLL -> C:\Windows\SysNative\WMVDECOD.DLL -> [2009/06/04 04:47:27 | 01,702,912 | ---- | C | MD5 = 3568FCAB1FC248397EF81231D53F598C] (Microsoft Corporation)
    MSVidCtl.dll -> C:\Windows\SysWow64\MSVidCtl.dll -> [2009/06/04 04:47:27 | 01,544,704 | ---- | C | MD5 = 73F97C8899429EFAEE8C8944DCC08C2E] (Microsoft Corporation)
    wmdrmsdk.dll -> C:\Windows\SysNative\wmdrmsdk.dll -> [2009/06/04 04:47:27 | 00,688,128 | ---- | C | MD5 = A949AA49376F8CB91D19EA8A7ADC94D4] (Microsoft Corporation)
    WMVXENCD.DLL -> C:\Windows\SysWow64\WMVXENCD.DLL -> [2009/06/04 04:47:27 | 00,657,408 | ---- | C | MD5 = EABB7AF39A6587B57AA70EFD8ECD2661] (Microsoft Corporation)
    blackbox.dll -> C:\Windows\SysNative\blackbox.dll -> [2009/06/04 04:47:27 | 00,616,448 | ---- | C | MD5 = 89CA6D83DCB5D41FBF4D23BE5343F8A8] (Microsoft Corporation)
    wiaaut.dll -> C:\Windows\SysWow64\wiaaut.dll -> [2009/06/04 04:47:27 | 00,547,840 | ---- | C | MD5 = 6E45D15DAAA98D105AB3280D2BCA7C13] (Microsoft Corporation)
    cmdial32.dll -> C:\Windows\SysNative\cmdial32.dll -> [2009/06/04 04:47:27 | 00,521,216 | ---- | C | MD5 = 32AC6D36688923ECAE89B438BEFD6DB2] (Microsoft Corporation)
    cmdial32.dll -> C:\Windows\SysWow64\cmdial32.dll -> [2009/06/04 04:47:27 | 00,481,792 | ---- | C | MD5 = 72EC7D98F26B962414899C83F20A9442] (Microsoft Corporation)
    shwebsvc.dll -> C:\Windows\SysWow64\shwebsvc.dll -> [2009/06/04 04:47:27 | 00,425,472 | ---- | C | MD5 = 3F1B146BBB4F11E26543938F42257B86] (Microsoft Corporation)
    taskcomp.dll -> C:\Windows\SysNative\taskcomp.dll -> [2009/06/04 04:47:27 | 00,409,600 | ---- | C | MD5 = 065A9580FA32807EB895EE4D512FEC1D] (Microsoft Corporation)
    wlanmsm.dll -> C:\Windows\SysWow64\wlanmsm.dll -> [2009/06/04 04:47:27 | 00,293,376 | ---- | C | MD5 = 9D7C0037F4EFA36C35F7B5A48940B4F4] (Microsoft Corporation)
    raschap.dll -> C:\Windows\SysWow64\raschap.dll -> [2009/06/04 04:47:27 | 00,281,088 | ---- | C | MD5 = 82A79D5BE740D0AE9C91AA6DE4B3AC5A] (Microsoft Corporation)
    unimdm.tsp -> C:\Windows\SysWow64\unimdm.tsp -> [2009/06/04 04:47:27 | 00,280,064 | ---- | C | MD5 = B96B60EC821F86D445C9739A0F3DED59] (Microsoft Corporation)
    rasppp.dll -> C:\Windows\SysWow64\rasppp.dll -> [2009/06/04 04:47:27 | 00,259,584 | ---- | C | MD5 = 8B645890A93F1FBBC7DA3E07CC72D762] (Microsoft Corporation)
    wlanui.dll -> C:\Windows\SysWow64\wlanui.dll -> [2009/06/04 04:47:27 | 00,202,752 | ---- | C | MD5 = 94FF7D87E0639701DF79A40C436149C5] (Microsoft Corporation)
    nwifi.sys -> C:\Windows\SysNative\drivers\nwifi.sys -> [2009/06/04 04:47:27 | 00,187,392 | ---- | C | MD5 = 2007B826C4ACD94AE32232B41F0842B9] (Microsoft Corporation)
    wdmaud.drv -> C:\Windows\SysWow64\wdmaud.drv -> [2009/06/04 04:47:27 | 00,167,424 | ---- | C | MD5 = 4DF066ECEE5A7B20BF8B39EF4D646600] (Microsoft Corporation)
    fontext.dll -> C:\Windows\SysWow64\fontext.dll -> [2009/06/04 04:47:27 | 00,142,336 | ---- | C | MD5 = 88198AEB7F71DD2F8B6176533D70F63E] (Microsoft Corporation)
  • edited June 2009
    ll -> C:\Windows\SysWow64\networkexplorer.dll -> [2009/06/04 04:47:25 | 02,226,688 | ---- | C | MD5 = 04044BF8E6989BE45FA718C24407CA28] (Microsoft Corporation)
    WMADMOD.DLL -> C:\Windows\SysNative\WMADMOD.DLL -> [2009/06/04 04:47:25 | 00,946,176 | ---- | C | MD5 = 51031E18169332575721D7B7A6E5EE52] (Microsoft Corporation)
    wmdrmnet.dll -> C:\Windows\SysNative\wmdrmnet.dll -> [2009/06/04 04:47:25 | 00,428,032 | ---- | C | MD5 = 991C17B9FA553A2F474142CD68312974] (Microsoft Corporation)
    msscp.dll -> C:\Windows\SysWow64\msscp.dll -> [2009/06/04 04:47:25 | 00,414,208 | ---- | C | MD5 = 501F9CDADC4BF4069BC90B3C2BB298AE] (Microsoft Corporation)
    thawbrkr.dll -> C:\Windows\SysWow64\thawbrkr.dll -> [2009/06/04 04:47:25 | 00,313,344 | ---- | C | MD5 = 1D74B130D34A945CA5795C92C1BF8E93] (Microsoft Corporation)
    wmpeffects.dll -> C:\Windows\SysWow64\wmpeffects.dll -> [2009/06/04 04:47:25 | 00,303,616 | ---- | C | MD5 = 3F7572CD9C6DB0B25FE0863F36FF6B76] (Microsoft Corporation)
    AUDIOKSE.dll -> C:\Windows\SysWow64\AUDIOKSE.dll -> [2009/06/04 04:47:25 | 00,274,944 | ---- | C | MD5 = 0495EEF29F5B39AB4763BF5DE28FA3AA] (Microsoft Corporation)
    mstask.dll -> C:\Windows\SysNative\mstask.dll -> [2009/06/04 04:47:25 | 00,235,008 | ---- | C | MD5 = F54D10EA2FE5EC846603A4CABDD6F235] (Microsoft Corporation)
    mpg2splt.ax -> C:\Windows\SysNative\mpg2splt.ax -> [2009/06/04 04:47:25 | 00,227,328 | ---- | C | MD5 = 28AC7FEA182333C38AB9322530B591F3] (Microsoft Corporation)
    wpdwcn.dll -> C:\Windows\SysNative\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,223,232 | ---- | C | MD5 = CB57138FA7554ABCEA9F8307253A632C] (Microsoft Corporation)
    InkEd.dll -> C:\Windows\SysWow64\InkEd.dll -> [2009/06/04 04:47:25 | 00,217,600 | ---- | C | MD5 = D2A8D0EE4EEAAE913A19AC37E2CD07ED] (Microsoft Corporation)
    mdminst.dll -> C:\Windows\SysNative\mdminst.dll -> [2009/06/04 04:47:25 | 00,215,552 | ---- | C | MD5 = 0257570C58B4F482AC65B87B1D9E7FBA] (Microsoft Corporation)
    PortableDeviceTypes.dll -> C:\Windows\SysNative\PortableDeviceTypes.dll -> [2009/06/04 04:47:25 | 00,214,528 | ---- | C | MD5 = 7326B6CA36F40384EF4817DDA09344CF] (Microsoft Corporation)
    wpdwcn.dll -> C:\Windows\SysWow64\wpdwcn.dll -> [2009/06/04 04:47:25 | 00,203,776 | ---- | C | MD5 = 5D9C083A316B1FEE442E9B3505C357E5] (Microsoft Corporation)
    credui.dll -> C:\Windows\SysNative\credui.dll -> [2009/06/04 04:47:25 | 00,190,976 | ---- | C | MD5 = 77C276A0E431203EE56E52600A2575EA] (Microsoft Corporation)
    WSDMon.dll -> C:\Windows\SysWow64\WSDMon.dll -> [2009/06/04 04:47:25 | 00,177,664 | ---- | C | MD5 = 0EB1CC5EBFCAAB7DBAEE881E2887F7F9] (Microsoft Corporation)
    wpcsvc.dll -> C:\Windows\SysWow64\wpcsvc.dll -> [2009/06/04 04:47:25 | 00,140,288 | ---- | C | MD5 = CFC5A04558F5070CEE3E3A7809F3FF52] (Microsoft Corporation)
    gpresult.exe -> C:\Windows\SysWow64\gpresult.exe -> [2009/06/04 04:47:25 | 00,128,000 | ---- | C | MD5 = F01C34454A2DBA34439C2FB2B6CDDB9A] (Microsoft Corporation)
    softkbd.dll -> C:\Windows\SysWow64\softkbd.dll -> [2009/06/04 04:47:25 | 00,125,952 | ---- | C | MD5 = 39351FB421C6450FBDDB51B4FBA0155D] (Microsoft Corporation)
    msctfui.dll -> C:\Windows\SysNative\msctfui.dll -> [2009/06/04 04:47:25 | 00,113,664 | ---- | C | MD5 = 724B0A07CD1B32E90A770CD94ADDFA03] (Microsoft Corporation)
    logagent.exe -> C:\Windows\SysNative\logagent.exe -> [2009/06/04 04:47:25 | 00,112,640 | ---- | C | MD5 = 3CADC3DB8333B2162CA0CC8EF8062D75] (Microsoft Corporation)
    adsmsext.dll -> C:\Windows\SysNative\adsmsext.dll -> [2009/06/04 04:47:25 | 00,105,472 | ---- | C | MD5 = C6E7B39C1AB4B8DC6883EFC72A770BED] (Microsoft Corporation)
    logagent.exe -> C:\Windows\SysWow64\logagent.exe -> [2009/06/04 04:47:25 | 00,094,720 | ---- | C | MD5 = C634E1F76E1FCA6D010F279A2FFF95E6] (Microsoft Corporation)
    sendmail.dll -> C:\Windows\SysWow64\sendmail.dll -> [2009/06/04 04:47:25 | 00,069,632 | ---- | C | MD5 = ED3CA4BCB1F7C14B369019BEC6A4448D] (Microsoft Corporation)
    cipher.exe -> C:\Windows\SysWow64\cipher.exe -> [2009/06/04 04:47:25 | 00,058,368 | ---- | C | MD5 = 9E447B628CBF81F006218E7B6127B7E2] (Microsoft Corporation)
    cdd.dll -> C:\Windows\SysNative\cdd.dll -> [2009/06/04 04:47:25 | 00,047,104 | ---- | C | MD5 = 40D8CB1E16C541327FFFFA3F756A3656] (Microsoft Corporation)
    deskmon.dll -> C:\Windows\SysNative\deskmon.dll -> [2009/06/04 04:47:25 | 00,046,592 | ---- | C | MD5 = 5070DA479999F0525FA2BBB3160E76D1] (Microsoft Corporation)
    wscapi.dll -> C:\Windows\SysWow64\wscapi.dll -> [2009/06/04 04:47:25 | 00,033,280 | ---- | C | MD5 = A0F4852A5DB9754BEC06F84B400AE743] (Microsoft Corporation)
    msimtf.dll -> C:\Windows\SysWow64\msimtf.dll -> [2009/06/04 04:47:25 | 00,031,232 | ---- | C | MD5 = AC6B8F8058EE27932F9AF8A2D959D201] (Microsoft Corporation)
    ifmon.dll -> C:\Windows\SysWow64\ifmon.dll -> [2009/06/04 04:47:25 | 00,029,696 | ---- | C | MD5 = 17CBA378C42E4525A3BC9DDD77EF5DD2] (Microsoft Corporation)
    version.dll -> C:\Windows\SysNative\version.dll -> [2009/06/04 04:47:25 | 00,027,136 | ---- | C | MD5 = EA3D2B63BA304EB6EDABBAFA21599B47] (Microsoft Corporation)
    WMSPDMOD.DLL -> C:\Windows\SysNative\WMSPDMOD.DLL -> [2009/06/04 04:47:24 | 00,818,688 | ---- | C | MD5 = 5B3949DE5697E40FC3CA7084649E7F88] (Microsoft Corporation)
    wmdrmdev.dll -> C:\Windows\SysWow64\wmdrmdev.dll -> [2009/06/04 04:47:24 | 00,418,304 | ---- | C | MD5 = 717F6AD9E35383E2AA5C6B946AAD23AF] (Microsoft Corporation)
    MediaMetadataHandler.dll -> C:\Windows\SysNative\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,403,456 | ---- | C | MD5 = A037DCD348601056CF65E701D4D60738] (Microsoft Corporation)
    MediaMetadataHandler.dll -> C:\Windows\SysWow64\MediaMetadataHandler.dll -> [2009/06/04 04:47:24 | 00,356,864 | ---- | C | MD5 = 8DDFDF8A433DC09F92ACA1F3DE4DE067] (Microsoft Corporation)
    drmmgrtn.dll -> C:\Windows\SysWow64\drmmgrtn.dll -> [2009/06/04 04:47:24 | 00,284,672 | ---- | C | MD5 = D01817B15EFF45054FC24D63AD183F72] (Microsoft Corporation)
    WSDMon.dll -> C:\Windows\SysNative\WSDMon.dll -> [2009/06/04 04:47:24 | 00,214,016 | ---- | C | MD5 = DE0EED5106BD03CE11CDBF690285FE6C] (Microsoft Corporation)
    input.dll -> C:\Windows\SysWow64\input.dll -> [2009/06/04 04:47:24 | 00,200,704 | ---- | C | MD5 = A763901E05BBF173CE4C01D1E82B20D3] (Microsoft Corporation)
    MSAC3ENC.DLL -> C:\Windows\SysNative\MSAC3ENC.DLL -> [2009/06/04 04:47:24 | 00,193,536 | ---- | C | MD5 = ECF31DDAF1F479889671C1C8A376EBDA] (Microsoft Corporation)
    mpg2splt.ax -> C:\Windows\SysWow64\mpg2splt.ax -> [2009/06/04 04:47:24 | 00,177,664 | ---- | C | MD5 = 5AF065566779B0D716EA413816B73AD4] (Microsoft Corporation)
    puiapi.dll -> C:\Windows\SysWow64\puiapi.dll -> [2009/06/04 04:47:24 | 00,166,400 | ---- | C | MD5 = D1F4E028FDC4F8BACB94E07B44969C4E] (Microsoft Corporation)
    mprapi.dll -> C:\Windows\SysNative\mprapi.dll -> [2009/06/04 04:47:24 | 00,129,536 | ---- | C | MD5 = F77B49A32331FA80F11C86877A6700DB] (Microsoft Corporation)
    SMBHelperClass.dll -> C:\Windows\SysNative\SMBHelperClass.dll -> [2009/06/04 04:47:24 | 00,116,736 | ---- | C | MD5 = 7168FF41C6B0145D846AECE996220A9E] (Microsoft)
    dmsynth.dll -> C:\Windows\SysWow64\dmsynth.dll -> [2009/06/04 04:47:24 | 00,105,472 | ---- | C | MD5 = 8527C6F8DFF8CD9502FC4688CCBAEF77] (Microsoft Corporation)
    mprapi.dll -> C:\Windows\SysWow64\mprapi.dll -> [2009/06/04 04:47:24 | 00,097,792 | ---- | C | MD5 = 56E315ACFB08A177B4D01E42B9044DB5] (Microsoft Corporation)
    olepro32.dll -> C:\Windows\SysWow64\olepro32.dll -> [2009/06/04 04:47:24 | 00,088,576 | ---- | C | MD5 = A944A73CEC5921B871542FE5CC5E03E4] (Microsoft Corporation)
    smb.sys -> C:\Windows\SysNative\drivers\smb.sys -> [2009/06/04 04:47:24 | 00,088,064 | ---- | C | MD5 = 290B6F6A0EC4FCDFC90F5CB6D7020473] (Microsoft Corporation)
    msctfui.dll -> C:\Windows\SysWow64\msctfui.dll -> [2009/06/04 04:47:24 | 00,085,504 | ---- | C | MD5 = 7570C39D5CA95CFF5E3D49789A347542] (Microsoft Corporation)
    fdSSDP.dll -> C:\Windows\SysNative\fdSSDP.dll -> [2009/06/04 04:47:24 | 00,083,968 | ---- | C | MD5 = DDCDE414B6DB14707DBD504EB23EF13E] (Microsoft Corporation)
    rshx32.dll -> C:\Windows\SysNative\rshx32.dll -> [2009/06/04 04:47:24 | 00,053,760 | ---- | C | MD5 = 6F7B7F50E25C99E7AFA466565920DC36] (Microsoft Corporation)
    FwRemoteSvr.dll -> C:\Windows\SysNative\FwRemoteSvr.dll -> [2009/06/04 04:47:24 | 00,050,176 | ---- | C | MD5 = 14DC30962660BA05F1F54EB11AA5A2B4] (Microsoft Corporation)
    deskadp.dll -> C:\Windows\SysNative\deskadp.dll -> [2009/06/04 04:47:24 | 00,049,664 | ---- | C | MD5 = 0ADC37AC189C7DE1EF753AA89B23AF5B] (Microsoft Corporation)
    wshbth.dll -> C:\Windows\SysWow64\wshbth.dll -> [2009/06/04 04:47:24 | 00,034,304 | ---- | C | MD5 = EFA80360111D8D179E39E314A49C9ED4] (Microsoft Corporation)
    cscdll.dll -> C:\Windows\SysNative\cscdll.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 884C24919B57C1B03B21DD62399D1491] (Microsoft Corporation)
    Apphlpdm.dll -> C:\Windows\SysWow64\Apphlpdm.dll -> [2009/06/04 04:47:24 | 00,028,672 | ---- | C | MD5 = 2C4AC5541ADB54DEF9244F87F9AD6AF8] (Microsoft Corporation)
    ExplorerFrame.dll -> C:\Windows\SysWow64\ExplorerFrame.dll -> [2009/06/04 04:47:24 | 00,020,992 | ---- | C | MD5 = 61216539E55DDF2F78E421E7EF140650] (Microsoft Corporation)
    version.dll -> C:\Windows\SysWow64\version.dll -> [2009/06/04 04:47:24 | 00,020,480 | ---- | C | MD5 = 69827805A221C21450BA22F4326A2EE3] (Microsoft Corporation)
    fc.exe -> C:\Windows\SysWow64\fc.exe -> [2009/06/04 04:47:24 | 00,019,968 | ---- | C | MD5 = 3105CFE0ADAAED21148597001478E89F] (Microsoft Corporation)
    rasdial.exe -> C:\Windows\SysNative\rasdial.exe -> [2009/06/04 04:47:24 | 00,018,944 | ---- | C | MD5 = 7C2E6D36766468987CDA22A2C499A8A5] (Microsoft Corporation)
    msisip.dll -> C:\Windows\SysWow64\msisip.dll -> [2009/06/04 04:47:24 | 00,016,384 | ---- | C | MD5 = 2955A48BE10FD1F7A112B0A890A6271D] (Microsoft Corporation)
    hidusb.sys -> C:\Windows\SysNative\drivers\hidusb.sys -> [2009/06/04 04:47:24 | 00,015,872 | ---- | C | MD5 = 443BDD2D30BB4F00795C797E2CF99EDF] (Microsoft Corporation)
    networkexplorer.dll -> C:\Windows\SysNative\networkexplorer.dll -> [2009/06/04 04:47:23 | 02,247,168 | ---- | C | MD5 = E572915DB4DAD7F062D99334D9F10BFF] (Microsoft Corporation)
    WMADMOD.DLL -> C:\Windows\SysWow64\WMADMOD.DLL -> [2009/06/04 04:47:23 | 00,758,784 | ---- | C | MD5 = D3679C1B53E4E1BF9B99AFB0FD3966B1] (Microsoft Corporation)
    wmpps.dll -> C:\Windows\SysNative\wmpps.dll -> [2009/06/04 04:47:23 | 00,434,176 | ---- | C | MD5 = 6B80D55576B222FDF6F8407D6237EFC6] (Microsoft Corporation)
    wmdrmnet.dll -> C:\Windows\SysWow64\wmdrmnet.dll -> [2009/06/04 04:47:23 | 00,347,648 | ---- | C | MD5 = A8D2C8BE9C499266A485264FD55819FF] (Microsoft Corporation)
    eapp3hst.dll -> C:\Windows\SysNative\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,291,840 | ---- | C | MD5 = 05ECDC5250F707C729BB5D3B08285EA6] (Microsoft Corporation)
    wscntfy.dll -> C:\Windows\SysNative\wscntfy.dll -> [2009/06/04 04:47:23 | 00,231,424 | ---- | C | MD5 = 70DD82E202BD8022452DC8D2B73231AA] (Microsoft Corporation)
    wdmaud.drv -> C:\Windows\SysNative\wdmaud.drv -> [2009/06/04 04:47:23 | 00,212,992 | ---- | C | MD5 = 35FBB6F5993C9EE70CDB72CC8AAB5D38] (Microsoft Corporation)
    mfps.dll -> C:\Windows\SysNative\mfps.dll -> [2009/06/04 04:47:23 | 00,194,560 | ---- | C | MD5 = E01582FE7EFCA6F3AD64377D62E7A1D7] (Microsoft Corporation)
    eapp3hst.dll -> C:\Windows\SysWow64\eapp3hst.dll -> [2009/06/04 04:47:23 | 00,187,904 | ---- | C | MD5 = 1303F1E8C79BDB50EA942B7494761EB8] (Microsoft Corporation)
    PortableDeviceTypes.dll -> C:\Windows\SysWow64\PortableDeviceTypes.dll -> [2009/06/04 04:47:23 | 00,160,768 | ---- | C | MD5 = 290A5AA84C6F06E0B82E94F419FEE9C5] (Microsoft Corporation)
    aaclient.dll -> C:\Windows\SysNative\aaclient.dll -> [2009/06/04 04:47:23 | 00,151,552 | ---- | C | MD5 = B153AAE12936788390696BE6B34186C6] (Microsoft Corporation)
    mydocs.dll -> C:\Windows\SysNative\mydocs.dll -> [2009/06/04 04:47:23 | 00,143,360 | ---- | C | MD5 = 9031F95454316C6FC229D0FE4A535CD8] (Microsoft Corporation)
    aaclient.dll -> C:\Windows\SysWow64\aaclient.dll -> [2009/06/04 04:47:23 | 00,136,192 | ---- | C | MD5 = 11CBE5E2940FC6CBD041779B0F707E6F] (Microsoft Corporation)
    tintlgnt.ime -> C:\Windows\SysWow64\tintlgnt.ime -> [2009/06/04 04:47:23 | 00,125,952 | ---- | C | MD5 = AE240477D5C1EB209D172FE9D9D0C121] (Microsoft Corporation)
    PortableDeviceClassExtension.dll -> C:\Windows\SysNative\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,105,472 | ---- | C | MD5 = 2631DE1DA75E6D589520F19E6BEB85C9] (Microsoft Corporation)
    dmusic.dll -> C:\Windows\SysWow64\dmusic.dll -> [2009/06/04 04:47:23 | 00,101,888 | ---- | C | MD5 = 0FEA204289B8C5EAC19C1BC3809ECCF0] (Microsoft Corporation)
    dxg.sys -> C:\Windows\SysNative\drivers\dxg.sys -> [2009/06/04 04:47:23 | 00,098,816 | ---- | C | MD5 = 59E9264A96CA82C5CCFBE14523934104] (Microsoft Corporation)
    PortableDeviceClassExtension.dll -> C:\Windows\SysWow64\PortableDeviceClassExtension.dll -> [2009/06/04 04:47:23 | 00,094,720 | ---- | C | MD5 = 5A87FD90634C9A05157469DA2441EBB4] (Microsoft Corporation)
    fdWCN.dll -> C:\Windows\SysNative\fdWCN.dll -> [2009/06/04 04:47:23 | 00,089,088 | ---- | C | MD5 = 4EA0133FC219D00F63816D7FF540989A] (Microsoft Corporation)
    gpapi.dll -> C:\Windows\SysNative\gpapi.dll -> [2009/06/04 04:47:23 | 00,084,480 | ---- | C | MD5 = 899F834C330A96A80EC36DAEDA2FF018] (Microsoft Corporation)
    SMBHelperClass.dll -> C:\Windows\SysWow64\SMBHelperClass.dll -> [2009/06/04 04:47:23 | 00,083,456 | ---- | C | MD5 = 81638E6E467193699B5A800732ECBDE4] (Microsoft)
    MSNP.ax -> C:\Windows\SysWow64\MSNP.ax -> [2009/06/04 04:47:23 | 00,080,896 | ---- | C | MD5 = BDDE0F9ED0F89E16B63401D9EC033870] (Microsoft Corporation)
    PNPXAssoc.dll -> C:\Windows\SysNative\PNPXAssoc.dll -> [2009/06/04 04:47:23 | 00,075,264 | ---- | C | MD5 = A486EC7C6D3345448DC7E4475B531FE8] (Microsoft Corporation)
    fdWCN.dll -> C:\Windows\SysWow64\fdWCN.dll -> [2009/06/04 04:47:23 | 00,069,120 | ---- | C | MD5 = 78700DB5A0C319A9C3765F0673140092] (Microsoft Corporation)
    fdSSDP.dll -> C:\Windows\SysWow64\fdSSDP.dll -> [2009/06/04 04:47:23 | 00,068,096 | ---- | C | MD5 = 443C5961CACD4ABC16648874AF06E4A0] (Microsoft Corporation)
    Storprop.dll -> C:\Windows\SysNative\Storprop.dll -> [2009/06/04 04:47:23 | 00,065,024 | ---- | C | MD5 = 0B6A036AC887DC20E677BF26A319C3A9] (Microsoft Corporation)
    dot3cfg.dll -> C:\Windows\SysNative\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,062,976 | ---- | C | MD5 = E9B3B0104D974AF4BA592C3B0FC30875] (Microsoft Corporation)
    rrinstaller.exe -> C:\Windows\SysNative\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,060,416 | ---- | C | MD5 = EAC71F00589AE3F845E5F9FEC5939E09] (Microsoft Corporation)
    rrinstaller.exe -> C:\Windows\SysWow64\rrinstaller.exe -> [2009/06/04 04:47:23 | 00,053,248 | ---- | C | MD5 = F6A9BE76DC7FA60BB9E3B14E504CB22F] (Microsoft Corporation)
    rasdiag.dll -> C:\Windows\SysWow64\rasdiag.dll -> [2009/06/04 04:47:23 | 00,052,736 | ---- | C | MD5 = 1361CD59C411F47E2E2829B9A44BADD4] (Microsoft Corporation)
    hbaapi.dll -> C:\Windows\SysNative\hbaapi.dll -> [2009/06/04 04:47:23 | 00,051,200 | ---- | C | MD5 = A4DE833AF637E17827D199BEF8322000] (Microsoft Corporation)
    dot3cfg.dll -> C:\Windows\SysWow64\dot3cfg.dll -> [2009/06/04 04:47:23 | 00,049,664 | ---- | C | MD5 = 07D79E9B1569ECC5EFC487E9F4C8235D] (Microsoft Corporation)
    hidclass.sys -> C:\Windows\SysNative\drivers\hidclass.sys -> [2009/06/04 04:47:23 | 00,049,152 | ---- | C | MD5 = 70B7902B8DDD3C4B88AC3FC278A9B987] (Microsoft Corporation)
    l2nacp.dll -> C:\Windows\SysWow64\l2nacp.dll -> [2009/06/04 04:47:23 | 00,048,128 | ---- | C | MD5 = 44DA7EE9F50381DBA0F63BB2401DC8FD] (Microsoft Corporation)
    ftp.exe -> C:\Windows\SysNative\ftp.exe -> [2009/06/04 04:47:23 | 00,047,616 | ---- | C | MD5 = 83E4DD677E0DF98294E273DCEC39E53E] (Microsoft Corporation)
    bthci.dll -> C:\Windows\SysNative\bthci.dll -> [2009/06/04 04:47:23 | 00,046,592 | ---- | C | MD5 = 47F2A54950EEDD33A9C3889CF3B1B436] (Microsoft Corporation)
    ftp.exe -> C:\Windows\SysWow64\ftp.exe -> [2009/06/04 04:47:23 | 00,041,984 | ---- | C | MD5 = 1E2940E465AA5B2C4840E8D220BF1F32] (Microsoft Corporation)
    bthudtask.exe -> C:\Windows\SysWow64\bthudtask.exe -> [2009/06/04 04:47:23 | 00,034,304 | ---- | C | MD5 = 7F5936A3FF5E83272EA1DC8985B2A228] (Microsoft Corporation)
    cscapi.dll -> C:\Windows\SysWow64\cscapi.dll -> [2009/06/04 04:47:23 | 00,031,744 | ---- | C | MD5 = D922592AB65C5D9B88B30B4510A3464E] (Microsoft Corporation)
    tdi.sys -> C:\Windows\SysNative\drivers\tdi.sys -> [2009/06/04 04:47:23 | 00,026,112 | ---- | C | MD5 = C39A90534C5B1E28B8BC8B38A3900AFF] (Microsoft Corporation)
    msjint40.dll -> C:\Windows\SysWow64\msjint40.dll -> [2009/06/04 04:47:23 | 00,024,576 | ---- | C | MD5 = 9371540C7231BC156501AB933F269762] (Microsoft Corporation)
    cscdll.dll -> C:\Windows\SysWow64\cscdll.dll -> [2009/06/04 04:47:23 | 00,022,016 | ---- | C | MD5 = C1BB3EF5FAFCBC9573DEEB57E8DF9309] (Microsoft Corporation)
    wsdchngr.dll -> C:\Windows\SysWow64\wsdchngr.dll -> [2009/06/04 04:47:23 | 00,020,992 | ---- | C | MD5 = 4DBA143F06BAD1DF935CB9603140CF2A] (Microsoft Corporation)
    MsCtfMonitor.dll -> C:\Windows\SysWow64\MsCtfMonitor.dll -> [2009/06/04 04:47:23 | 00,019,456 | ---- | C | MD5 = 43E1054C713C48D252A1826C5E14AACA] (Microsoft Corporation)
    rasdial.exe -> C:\Windows\SysWow64\rasdial.exe -> [2009/06/04 04:47:23 | 00,016,896 | ---- | C | MD5 = CE89D942BECC4E4350FC76D4A0443997] (Microsoft Corporation)
    CHxReadingStringIME.dll -> C:\Windows\SysNative\CHxReadingStringIME.dll -> [2009/06/04 04:47:23 | 00,012,800 | ---- | C | MD5 = D1CC48039B7914C42A48A19DF56489BC] (Microsoft Corporation)
    MSMPEG2ENC.DLL -> C:\Windows\SysWow64\MSMPEG2ENC.DLL -> [2009/06/04 04:47:22 | 00,506,880 | ---- | C | MD5 = 64C738D1F96D1D04CAAAD5F5FB72A85D] (Microsoft Corporation)
    eappcfg.dll -> C:\Windows\SysNative\eappcfg.dll -> [2009/06/04 04:47:22 | 00,211,456 | ---- | C | MD5 = 03FDED7449428CE493432EE35FE5A2FB] (Microsoft Corporation)
    SLLUA.exe -> C:\Windows\SysNative\SLLUA.exe -> [2009/06/04 04:47:22 | 00,190,464 | ---- | C | MD5 = 3C4AFFB870029E26CDEB5F41DA1982ED] (Microsoft Corporation)
    MSAC3ENC.DLL -> C:\Windows\SysWow64\MSAC3ENC.DLL -> [2009/06/04 04:47:22 | 00,160,256 | ---- | C | MD5 = 7F2D7F2D147A600518351E8F8ECBB114] (Microsoft Corporation)
    eappcfg.dll -> C:\Windows\SysWow64\eappcfg.dll -> [2009/06/04 04:47:22 | 00,135,680 | ---- | C | MD5 = 5D0FE613570CABE3992F7DBCD68E61D1] (Microsoft Corporation)
    eappgnui.dll -> C:\Windows\SysNative\eappgnui.dll -> [2009/06/04 04:47:22 | 00,104,448 | ---- | C | MD5 = B013D8A6989CC1603F15BE372E779329] (Microsoft Corporation)
    mfps.dll -> C:\Windows\SysWow64\mfps.dll -> [2009/06/04 04:47:22 | 00,098,816 | ---- | C | MD5 = EFD23147B334B686E614A9B8806DBAA6] (Microsoft Corporation)
    dfsc.sys -> C:\Windows\SysNative\drivers\dfsc.sys -> [2009/06/04 04:47:22 | 00,097,792 | ---- | C | MD5 = 36CD31121F228E7E79BAE60AA45764C6] (Microsoft Corporation)
    eappgnui.dll -> C:\Windows\SysWow64\eappgnui.dll -> [2009/06/04 04:47:22 | 00,093,696 | ---- | C | MD5 = BBE1CD4620CBA35F383E5C499F5CECA5] (Microsoft Corporation)
    nslookup.exe -> C:\Windows\SysWow64\nslookup.exe -> [2009/06/04 04:47:22 | 00,082,944 | ---- | C | MD5 = BCAA8437FC3CC898C76BA120F88CFBCD] (Microsoft Corporation)
    tscupgrd.exe -> C:\Windows\SysWow64\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,063,488 | ---- | C | MD5 = C349AED1B0201258217ADBCEEA49623A] (Microsoft Corporation)
    tscupgrd.exe -> C:\Windows\SysNative\tscupgrd.exe -> [2009/06/04 04:47:22 | 00,062,464 | ---- | C | MD5 = AACD89BC01844644FF70EE7C62A249EE] (Microsoft Corporation)
    fdeploy.dll -> C:\Windows\SysWow64\fdeploy.dll -> [2009/06/04 04:47:22 | 00,053,760 | ---- | C | MD5 = BFEB58743A6D96B609DA0F1FD0ACE4EB] (Microsoft Corporation)
    tsgqec.dll -> C:\Windows\SysWow64\tsgqec.dll -> [2009/06/04 04:47:22 | 00,053,248 | ---- | C | MD5 = 197A6855F30CE60D3C93E6072EF742A7] (Microsoft Corporation)
    networkitemfactory.dll -> C:\Windows\SysNative\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,052,224 | ---- | C | MD5 = 9E0B212585249A2B14547A0599ECAEF2] (Microsoft Corporation)
    cbsra.exe -> C:\Windows\SysNative\cbsra.exe -> [2009/06/04 04:47:22 | 00,047,104 | ---- | C | MD5 = 170AC0E881F1132921F0093B4285800B] (Microsoft Corporation)
    bitsigd.dll -> C:\Windows\SysNative\bitsigd.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 980F1A36B970F5AE361C5C2A90C9E972] (Microsoft Corporation)
    slcinst.dll -> C:\Windows\SysNative\slcinst.dll -> [2009/06/04 04:47:22 | 00,046,592 | ---- | C | MD5 = 2FE0D0DA82A9C680F3A911D95819080B] (Microsoft Corporation)
    tsgqec.dll -> C:\Windows\SysNative\tsgqec.dll -> [2009/06/04 04:47:22 | 00,045,056 | ---- | C | MD5 = C767BC5E320C4621A2A1980BD2D3E9F2] (Microsoft Corporation)
    slcinst.dll -> C:\Windows\SysWow64\slcinst.dll -> [2009/06/04 04:47:22 | 00,042,496 | ---- | C | MD5 = FE78D886A33624E0FA74164B274DE7A8] (Microsoft Corporation)
    hbaapi.dll -> C:\Windows\SysWow64\hbaapi.dll -> [2009/06/04 04:47:22 | 00,041,472 | ---- | C | MD5 = 9F4C8DA21AC626BFB92DD9C7C6FF7F23] (Microsoft Corporation)
    wscapi.dll -> C:\Windows\SysNative\wscapi.dll -> [2009/06/04 04:47:22 | 00,040,448 | ---- | C | MD5 = 2CAB7B034B867AAB48D298F93D04BD3E] (Microsoft Corporation)
    networkitemfactory.dll -> C:\Windows\SysWow64\networkitemfactory.dll -> [2009/06/04 04:47:22 | 00,039,936 | ---- | C | MD5 = A479AE2DA6D04C4DBC3A76C4B6347E78] (Microsoft Corporation)
    ocsetup.exe -> C:\Windows\SysNative\ocsetup.exe -> [2009/06/04 04:47:22 | 00,038,400 | ---- | C | MD5 = 3D46EF4CA4FFF3E5B2F20762E0717FA1] (Microsoft Corporation)
    ocsetup.exe -> C:\Windows\SysWow64\ocsetup.exe -> [2009/06/04 04:47:22 | 00,035,840 | ---- | C | MD5 = BC89C1733F25EEADD9C765D2C9C0E8B8] (Microsoft Corporation)
    mfpmp.exe -> C:\Windows\SysNative\mfpmp.exe -> [2009/06/04 04:47:22 | 00,034,304 | ---- | C | MD5 = 9A04DEFE7359B182DB5DBE84483CB5FE] (Microsoft Corporation)
    FwRemoteSvr.dll -> C:\Windows\SysWow64\FwRemoteSvr.dll -> [2009/06/04 04:47:22 | 00,028,672 | ---- | C | MD5 = 42608AE9AF2641EE473A1797C25CFFC2] (Microsoft Corporation)
    ipconfig.exe -> C:\Windows\SysWow64\ipconfig.exe -> [2009/06/04 04:47:22 | 00,026,624 | ---- | C | MD5 = A5CBBED853E6183D4E067B42B73A20DA] (Microsoft Corporation)
    msacm32.drv -> C:\Windows\SysNative\msacm32.drv -> [2009/06/04 04:47:22 | 00,025,600 | ---- | C | MD5 = 9A328CC4E4490E929E30332AC902CAC1] (Microsoft Corporation)
    mfpmp.exe -> C:\Windows\SysWow64\mfpmp.exe -> [2009/06/04 04:47:22 | 00,024,576 | ---- | C | MD5 = 8F5F5038465559C754D0C72FF74660D4] (Microsoft Corporation)
    msacm32.drv -> C:\Windows\SysWow64\msacm32.drv -> [2009/06/04 04:47:22 | 00,021,504 | ---- | C | MD5 = 166F004D73EA2CF4AC61800CA469458D] (Microsoft Corporation)
    gpupdate.exe -> C:\Windows\SysWow64\gpupdate.exe -> [2009/06/04 04:47:22 | 00,016,896 | ---- | C | MD5 = BADB6B77C2C9F729528543D79418429F] (Microsoft Corporation)
    mmcico.dll -> C:\Windows\SysWow64\mmcico.dll -> [2009/06/04 04:47:22 | 00,012,800 | ---- | C | MD5 = E1A0CB2579D30466E43957E98B68A586] (Microsoft Corporation)
    CHxReadingStringIME.dll -> C:\Windows\SysWow64\CHxReadingStringIME.dll -> [2009/06/04 04:47:22 | 00,010,752 | ---- | C | MD5 = 3048B1D3029D5D8424E018BD7FBFDA75] (Microsoft Corporation)
    wmpps.dll -> C:\Windows\SysWow64\wmpps.dll -> [2009/06/04 04:47:21 | 00,131,072 | ---- | C | MD5 = 94BEEEBD916F7836EEF2CCA38218BD31] (Microsoft Corporation)
    cdrom.sys -> C:\Windows\SysNative\drivers\cdrom.sys -> [2009/06/04 04:47:21 | 00,079,872 | ---- | C | MD5 = C025AA69BE3D0D25C7A2E746EF6F94FC] (Microsoft Corporation)
    vss_ps.dll -> C:\Windows\SysNative\vss_ps.dll -> [2009/06/04 04:47:21 | 00,060,416 | ---- | C | MD5 = 71C53455C533E3DD8A93466B123DDB39] (Microsoft Corporation)
    odbcconf.dll -> C:\Windows\SysNative\odbcconf.dll -> [2009/06/04 04:47:21 | 00,045,056 | ---- | C | MD5 = 2C70DC0FD91CFEFB9B047DAA27E112FD] (Microsoft Corporation)
    odbcconf.dll -> C:\Windows\SysWow64\odbcconf.dll -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 87F1B6EF700AF7C0BCEBE380964EE9DE] (Microsoft Corporation)
    RNDISMP.sys -> C:\Windows\SysNative\drivers\RNDISMP.sys -> [2009/06/04 04:47:21 | 00,040,960 | ---- | C | MD5 = 0EAA68043CDED5DC83351A4931E66987] (Microsoft Corporation)
    bthudtask.exe -> C:\Windows\SysNative\bthudtask.exe -> [2009/06/04 04:47:21 | 00,035,840 | ---- | C | MD5 = 69BDE89D95561C06DC1FF5497C7D2648] (Microsoft Corporation)
    usbohci.sys -> C:\Windows\SysNative\drivers\usbohci.sys -> [2009/06/04 04:47:21 | 00,024,064 | ---- | C | MD5 = E406B003A354776D317762694956B0FC] (Microsoft Corporation)
    midimap.dll -> C:\Windows\SysNative\midimap.dll -> [2009/06/04 04:47:21 | 00,020,480 | ---- | C | MD5 = 62BDB059ED8AE0C63E33BBF990941E0F] (Microsoft Corporation)
    winrnr.dll -> C:\Windows\SysWow64\winrnr.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = C411C80F90D6732380352B98B37BBD53] (Microsoft Corporation)
    NcdProp.dll -> C:\Windows\SysWow64\NcdProp.dll -> [2009/06/04 04:47:21 | 00,019,968 | ---- | C | MD5 = 1C4DB2F8A68BF7BF891E76C429129DFD] (Microsoft Corporation)
    usb8023.sys -> C:\Windows\SysNative\drivers\usb8023.sys -> [2009/06/04 04:47:21 | 00,019,456 | ---- | C | MD5 = F4F8D86E6FCAB839438B23DFAFC7951F] (Microsoft Corporation)
    vdmdbg.dll -> C:\Windows\SysWow64\vdmdbg.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = DF1F51D2938A403BFE671B13A12FA434] (Microsoft Corporation)
    midimap.dll -> C:\Windows\SysWow64\midimap.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 83199EF88D691E730B80666E29F90D58] (Microsoft Corporation)
    inetppui.dll -> C:\Windows\SysNative\inetppui.dll -> [2009/06/04 04:47:21 | 00,017,408 | ---- | C | MD5 = 7B207E9923716BD040FF56C9EC1DF7B2] (Microsoft Corporation)
    iscsilog.dll -> C:\Windows\SysNative\iscsilog.dll -> [2009/06/04 04:47:21 | 00,016,384 | ---- | C | MD5 = C8EFA4244000C88E92B0DB80C63AFAE0] (Microsoft Corporation)
    slwga.dll -> C:\Windows\SysWow64\slwga.dll -> [2009/06/04 04:47:21 | 00,012,288 | ---- | C | MD5 = DA887F28054D78EE8637BEBB924A2DB5] (Microsoft Corporation)
    RacUR.xml -> C:\Windows\SysWow64\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
    RacUR.xml -> C:\Windows\SysNative\RacUR.xml -> [2009/06/04 04:47:21 | 00,009,212 | ---- | C | MD5 = 07400BC21119204892795F015052CDF4] ()
    wmploc.DLL -> C:\Windows\SysNative\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,968 | ---- | C | MD5 = 23462A3BDBD5EF4DE119950176054455] (Microsoft Corporation)
    wmploc.DLL -> C:\Windows\SysWow64\wmploc.DLL -> [2009/06/04 04:47:20 | 08,147,456 | ---- | C | MD5 = CC41E8691F0685EA9A820E40FE541500] (Microsoft Corporation)
    stream.sys -> C:\Windows\SysNative\drivers\stream.sys -> [2009/06/04 04:47:20 | 00,068,224 | ---- | C | MD5 = EB69069B969F4252A3BDE2BB3621811E] (Microsoft Corporation)
    raspppoe.sys -> C:\Windows\SysNative\drivers\raspppoe.sys -> [2009/06/04 04:47:20 | 00,050,176 | ---- | C | MD5 = 4517FBF8B42524AFE4EDE1DE102AAE3E] (Microsoft Corporation)
    f3ahvoas.dll -> C:\Windows\SysNative\f3ahvoas.dll -> [2009/06/04 04:47:20 | 00,033,280 | ---- | C | MD5 = 1BC63DDF769D3D6887565F774E177B7A] (Microsoft Corporation)
    Diskdump.sys -> C:\Windows\SysNative\drivers\Diskdump.sys -> [2009/06/04 04:47:20 | 00,019,968 | ---- | C | MD5 = 3333213D1902942196D7BFF8E34FFB7F] (Microsoft Corporation)
    wow64cpu.dll -> C:\Windows\SysNative\wow64cpu.dll -> [2009/06/04 04:47:20 | 00,017,408 | ---- | C | MD5 = CA9EECC6092B9C2CE86D95C04B51BA20] (Microsoft Corporation)
    spwmp.dll -> C:\Windows\SysNative\spwmp.dll -> [2009/06/04 04:47:20 | 00,009,216 | ---- | C | MD5 = 304C0C318EF9E45FF0934DA87C34FA32] (Microsoft Corporation)
    spwmp.dll -> C:\Windows\SysWow64\spwmp.dll -> [2009/06/04 04:47:20 | 00,007,680 | ---- | C | MD5 = 9D7330628360245D3FB8779C831BCCDE] (Microsoft Corporation)
    msdxm.ocx -> C:\Windows\SysNative\msdxm.ocx -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
    dxmasf.dll -> C:\Windows\SysNative\dxmasf.dll -> [2009/06/04 04:47:20 | 00,005,120 | ---- | C | MD5 = E4C856263F52D597C2F1819022E58008] (Microsoft Corporation)
    msdxm.ocx -> C:\Windows\SysWow64\msdxm.ocx -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
    dxmasf.dll -> C:\Windows\SysWow64\dxmasf.dll -> [2009/06/04 04:47:20 | 00,004,096 | ---- | C | MD5 = C9237B2D9148427AFD512A7318E273BC] (Microsoft Corporation)
    f3ahvoas.dll -> C:\Windows\SysWow64\f3ahvoas.dll -> [2009/06/04 04:47:19 | 00,007,680 | ---- | C | MD5 = F42DC8DD28EC15507F44B801273E758E] (Microsoft Corporation)
    msimsg.dll -> C:\Windows\SysNative\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = FCD84867883C365A24C61E50AF8A6DB9] (Microsoft Corporation)
    msimsg.dll -> C:\Windows\SysWow64\msimsg.dll -> [2009/06/04 04:47:19 | 00,002,560 | ---- | C | MD5 = ED21401F1E2F6BC2F54C462BB66D0D6B] (Microsoft Corporation)
    mferror.dll -> C:\Windows\SysWow64\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = A5C978DD5B123D6070B2076FF3B36600] (Microsoft Corporation)
    mferror.dll -> C:\Windows\SysNative\mferror.dll -> [2009/06/04 04:47:19 | 00,002,048 | ---- | C | MD5 = 45415CC9CE3979EDC93F9856D9ED22BF] (Microsoft Corporation)
    wdscore.dll -> C:\Windows\SysWow64\wdscore.dll -> [2009/06/04 04:47:13 | 00,218,624 | ---- | C | MD5 = E7D0F91E44D9D3B2116FA549BDCDB756] (Microsoft Corporation)
    drvstore.dll -> C:\Windows\SysWow64\drvstore.dll -> [2009/06/04 04:47:08 | 00,247,808 | ---- | C | MD5 = 6A7908973D49248E4018E8E61B3DCDAA] (Microsoft Corporation)
    SmiEngine.dll -> C:\Windows\SysNative\SmiEngine.dll -> [2009/06/04 04:46:42 | 00,936,448 | ---- | C | MD5 = 925ECB3366EDFCB50B04DFAA5A529B63] (Microsoft Corporation)
    wdscore.dll -> C:\Windows\SysNative\wdscore.dll -> [2009/06/04 04:46:40 | 00,293,888 | ---- | C | MD5 = A6BCDC241B6578C7DB57B5973B99FE7E] (Microsoft Corporation)
    PkgMgr.exe -> C:\Windows\SysNative\PkgMgr.exe -> [2009/06/04 04:46:40 | 00,138,752 | ---- | C | MD5 = 8832EFA58F39033442841A6535396A40] (Microsoft Corporation)
    drvstore.dll -> C:\Windows\SysNative\drvstore.dll -> [2009/06/04 04:46:35 | 00,315,904 | ---- | C | MD5 = 403C9B0E7D827337611FBA20EBC7692C] (Microsoft Corporation)
    KGyGaAvL.sys -> C:\Windows\SysWow64\KGyGaAvL.sys -> [2009/05/28 00:06:52 | 00,000,848 | -HS- | C | MD5 = 04B0435CF26A43D9171E7A896C7BB94E] ()
    basefx.INI -> C:\Windows\basefx.INI -> [2009/05/08 00:05:54 | 00,000,032 | ---- | C | MD5 = 51A542B2C1A87F328D1FAEF3BFF9942E] ()
    wininit.ini -> C:\Windows\wininit.ini -> [2009/04/23 19:46:49 | 00,000,062 | ---- | C | MD5 = 7F5DCD8C80133A018F72B06098070165] ()
    Lexstat.ini -> C:\Windows\Lexstat.ini -> [2009/04/19 22:21:32 | 00,000,311 | ---- | C | MD5 = 627D15C11A096E3173D3A5D67181E526] ()
    lxbcserv.dll -> C:\Windows\SysWow64\lxbcserv.dll -> [2009/04/19 22:20:24 | 01,224,704 | ---- | C | MD5 = 1A177DE6130FA7CB474C59967E409331] ( )
    lxbcusb1.dll -> C:\Windows\SysWow64\lxbcusb1.dll -> [2009/04/19 22:20:24 | 00,995,328 | ---- | C | MD5 = B2F331C2315DC96A266E4839167CF638] ( )
    lxbcpmui.dll -> C:\Windows\SysWow64\lxbcpmui.dll -> [2009/04/19 22:20:24 | 00,643,072 | ---- | C | MD5 = AC42E2C9F3F1A22F6BC8C7EA591488B3] ( )
    lxbcinpa.dll -> C:\Windows\SysWow64\lxbcinpa.dll -> [2009/04/19 22:20:24 | 00,413,696 | ---- | C | MD5 = B558D56A0BAE0B522535554BE896AC9E] ( )
    lxbcutil.dll -> C:\Windows\SysWow64\lxbcutil.dll -> [2009/04/19 22:20:24 | 00,413,696 | ---- | C | MD5 = B34F89AAF289F207CF818CA2DB93AFDB] ()
    lxbciesc.dll -> C:\Windows\SysWow64\lxbciesc.dll -> [2009/04/19 22:20:24 | 00,397,312 | ---- | C | MD5 = 268DB9ECA6A0D22789AC25866813E287] ( )
    LXBCinst.dll -> C:\Windows\SysWow64\LXBCinst.dll -> [2009/04/19 22:20:24 | 00,274,432 | ---- | C | MD5 = 2E72EE59F400C9DAACB98B6DF3FC556F] ()
    lxbcprox.dll -> C:\Windows\SysWow64\lxbcprox.dll -> [2009/04/19 22:20:24 | 00,163,840 | ---- | C | MD5 = 011D5DF398ED437A2CD8E52E11DD1A60] ( )
    lxbcpplc.dll -> C:\Windows\SysWow64\lxbcpplc.dll -> [2009/04/19 22:20:24 | 00,094,208 | ---- | C | MD5 = C4A287E04936CAB866AD966EC6CDA220] ( )
    lxbchbn3.dll -> C:\Windows\SysWow64\lxbchbn3.dll -> [2009/04/19 22:20:23 | 00,696,320 | ---- | C | MD5 = 48BE097D8BC190806AC2572C04B22D99] ( )
    lxbccomc.dll -> C:\Windows\SysWow64\lxbccomc.dll -> [2009/04/19 22:20:23 | 00,684,032 | ---- | C | MD5 = FC3844A7E993C20CD411635DEF63F04D] ( )
    lxbclmpm.dll -> C:\Windows\SysWow64\lxbclmpm.dll -> [2009/04/19 22:20:23 | 00,585,728 | ---- | C | MD5 = B81077ABFAC6B52A84B5947697102BF6] ( )
    lxbccomm.dll -> C:\Windows\SysWow64\lxbccomm.dll -> [2009/04/19 22:20:23 | 00,421,888 | ---- | C | MD5 = 0AEC06606824F4E26DE6A782B869681E] ( )
    PIC.dll -> C:\Windows\PIC.dll -> [2009/02/28 04:53:50 | 00,294,912 | ---- | C | MD5 = D189A21EE0C68C0252B76D10B3A5D13D] ()
    mhotkey_reg.ini -> C:\Windows\mhotkey_reg.ini -> [2009/02/28 04:53:50 | 00,000,870 | ---- | C | MD5 = 3EC0ABB69217F14CA1D106CB514411B9] ()
    tcpmon.ini -> C:\Windows\SysWow64\tcpmon.ini -> [2008/01/20 22:50:05 | 00,060,124 | ---- | C | MD5 = 47F22CAD4A16BB40153555D631546B94] ()
    SP207.INI -> C:\Windows\SysWow64\SP207.INI -> [2006/11/02 09:27:46 | 00,000,518 | ---- | C | MD5 = 37D06B03D94D1A7F5DD1691B7BD9E5BF] ()
    win.ini -> C:\Windows\win.ini -> [2006/11/02 08:34:27 | 00,000,329 | ---- | C | MD5 = 59D8B45C73128A57CDE668ACB68DB23F] ()
    system.ini -> C:\Windows\system.ini -> [2006/11/02 08:34:27 | 00,000,219 | ---- | C | MD5 = 286A9EDB379DC3423A528B0864A0F111] ()

    [Files/Folders - Modified Within 30 Days]
    tmvsthfud.bin -> C:\Windows\SysNative\drivers\etc\tmvsthfud.bin -> [2009/06/29 13:17:38 | 00,000,761 | ---- | M | MD5 = 01505BB3F7004537F4F2C0FBBA349A1F] ()
    tmvsthfss.bin -> C:\Windows\SysNative\drivers\etc\tmvsthfss.bin -> [2009/06/29 13:17:38 | 00,000,761 | ---- | M | MD5 = 01505BB3F7004537F4F2C0FBBA349A1F] ()
    NTUSER.DAT -> C:\Users\Owner\NTUSER.DAT -> [2009/06/29 13:16:21 | 02,883,584 | -HS- | M | Unable to obtain MD5] ()
    User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> C:\Windows\tasks\User_Feed_Synchronization-{842192FB-A70C-4C86-825C-D08B5B860BAA}.job -> [2009/06/29 12:35:20 | 00,000,434 | -H-- | M | MD5 = 2CBF1EC42EC00BE69693F90DCBEBD315] ()
    7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 -> [2009/06/29 11:39:23 | 00,004,784 | -H-- | M | Unable to obtain MD5] ()
    7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 -> [2009/06/29 11:39:23 | 00,004,784 | -H-- | M | Unable to obtain MD5] ()
    bootstat.dat -> C:\Windows\bootstat.dat -> [2009/06/29 09:39:29 | 00,067,584 | --S- | M | MD5 = E44FBED4C9633B3235AA63CF3762E938] ()
    qmgr1.dat -> C:\ProgramData\Microsoft\Network\Downloader\qmgr1.dat -> [2009/06/29 06:07:53 | 04,194,304 | ---- | M | Unable to obtain MD5] ()
    qmgr0.dat -> C:\ProgramData\Microsoft\Network\Downloader\qmgr0.dat -> [2009/06/29 06:07:53 | 04,194,304 | ---- | M | Unable to obtain MD5] ()
    PublishedRacMonSWITable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonSWITable.DAT -> [2009/06/29 00:27:13 | 00,064,752 | ---- | M | MD5 = F785608573958A88EF6B687718BFE137] ()
    PublishedRacMonAFLTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonAFLTable.DAT -> [2009/06/29 00:27:13 | 00,005,520 | ---- | M | MD5 = 1A98E8A24AF7EB773E92981A2C3416F2] ()
    PublishedRacMonIndex.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonIndex.DAT -> [2009/06/29 00:27:13 | 00,001,896 | ---- | M | MD5 = CBE6F7716AA186AB75B08AD01CA80298] ()
    PublishedRacMonOSFTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonOSFTable.DAT -> [2009/06/29 00:27:13 | 00,001,656 | ---- | M | MD5 = 7D5277203ECC6B5D6DB8F1E5673EDED6] ()
    PublishedRacMonHFLTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonHFLTable.DAT -> [2009/06/29 00:27:13 | 00,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
    PublishedRacMonCLKTable.DAT -> C:\ProgramData\Microsoft\RAC\PublishedData\PublishedRacMonCLKTable.DAT -> [2009/06/29 00:27:13 | 00,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
    TT.png -> C:\Users\Owner\Desktop\TT.png -> [2009/06/28 20:43:53 | 00,200,241 | ---- | M | MD5 = 448D42215DA5326560BB8A1CA93C9566] ()
    PerfStringBackup.INI -> C:\Windows\SysNative\PerfStringBackup.INI -> [2009/06/28 20:19:25 | 00,690,960 | ---- | M | MD5 = 6D315A3A78114F7172DFE18E65E0CEF3] ()
    perfh009.dat -> C:\Windows\SysNative\perfh009.dat -> [2009/06/28 20:19:25 | 00,595,446 | ---- | M | MD5 = 0890AF57E84C4686C035B19BD0F52C11] ()
    perfc009.dat -> C:\Windows\SysNative\perfc009.dat -> [2009/06/28 20:19:25 | 00,101,144 | ---- | M | MD5 = 40F75DF9DD3EA03B6B6EAC6D580A7001] ()
    index.dat -> C:\Windows\Temp\History\History.IE5\index.dat -> [2009/06/28 20:12:14 | 00,016,384 | -HS- | M | MD5 = D7A950FEFD60DBAA01DF2D85FEFB3862] ()
    index.dat -> C:\Windows\Temp\Cookies\index.dat -> [2009/06/28 20:12:14 | 00,016,384 | -HS- | M | MD5 = D7A950FEFD60DBAA01DF2D85FEFB3862] ()
    index.dat -> C:\Windows\Temp\Temporary Internet Files\Content.IE5\index.dat -> [2009/06/28 20:12:14 | 00,016,384 | -HS- | M | MD5 = B4F12D40A795E5027B2449E247A3F0C5] ()
    LogConfigTemp.xml -> C:\Windows\SysNative\LogConfigTemp.xml -> [2009/06/28 20:12:13 | 00,000,000 | ---- | M | Unable to obtain MD5] ()
    SA.DAT -> C:\Windows\tasks\SA.DAT -> [2009/06/28 20:12:10 | 00,000,006 | -H-- | M | MD5 = F1A6CD5ADAAB953A6764EA364E17BFB8] ()
    NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TMContainer00000000000000000001.regtrans-ms -> C:\Users\Owner\NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TMContainer00000000000000000001.regtrans-ms -> [2009/06/28 20:11:22 | 00,524,288 | -HS- | M | Unable to obtain MD5] ()
    NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TM.blf -> C:\Users\Owner\NTUSER.DAT{c328fef1-6a85-11db-9fbd-cf3689cba3de}.TM.blf -> [2009/06/28 20:11:22 | 00,065,536 | -HS- | M | Unable to obtain MD5] ()
    IconCache.db -> C:\Users\Owner\AppData\Local\IconCache.db -> [2009/06/28 20:11:14 | 02,247,259 | -H-- | M | MD5 = FFF34285C5015093BFC4122C5398DF0D] ()
    OTS.exe -> C:\Users\Owner\Desktop\OTS.exe -> [2009/06/28 19:33:15 | 00,513,024 | ---- | M | MD5 = 478630CAFFDAE36F755A1F272EBD360B] (OldTimer Tools)
    Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2009/06/28 19:30:22 | 00,000,850 | ---- | M | MD5 = 9AD6C291BC07B05FD556F5132E14FCCE] ()
    HijackThis.lnk -> C:\Users\Owner\Desktop\HijackThis.lnk -> [2009/06/28 02:04:16 | 00,001,930 | ---- | M | MD5 = 284D8E8B7E19D0413BB2F9BF09BB64A1] ()
    Lexstat.ini -> C:\Windows\Lexstat.ini -> [2009/06/24 12:56:55 | 00,000,311 | ---- | M | MD5 = 627D15C11A096E3173D3A5D67181E526] ()
    opa12.dat -> C:\ProgramData\Microsoft\OFFICE\DATA\opa12.dat -> [2009/06/23 11:18:08 | 00,008,306 | ---- | M | MD5 = 737CDA847BDC74D1F9DF1CBF3CBE8FCC] ()
    Adobe Reader 9.lnk -> C:\Users\Public\Desktop\Adobe Reader 9.lnk -> [2009/06/22 18:24:27 | 00,001,919 | ---- | M | MD5 = 95478CD74436938A7C9C41158D8A132A] ()
    FNTCACHE.DAT -> C:\Windows\SysNative\FNTCACHE.DAT -> [2009/06/20 02:49:09 | 00,314,840 | ---- | M | MD5 = BEF51E6334DC76E1023DB45874DD8B25] ()
    NINA.html -> C:\Users\Owner\Documents\NINA.html -> [2009/06/20 02:14:40 | 00,000,989 | ---- | M | MD5 = 4C33571BCB02BECF1362DE1F9DFD2646] ()
    GDIPFONTCACHEV1.DAT -> C:\Users\Owner\AppData\Local\GDIPFONTCACHEV1.DAT -> [2009/06/20 01:36:13 | 00,079,576 | ---- | M | MD5 = 65865A851CF981E578A5C68CD4DE3E23] ()
    mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2009/06/17 11:27:56 | 00,038,160 | ---- | M | MD5 = 148D5D488BA502381C2B7B615F7F84CF] (Malwarebytes Corporation)
    mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2009/06/17 11:27:46 | 00,022,040 | ---- | M | MD5 = CEDB73ADD243D2D654A32C191A9DBDB5] (Malwarebytes Corporation)
    English_PSPX_RegXtras.exe -> C:\Users\Owner\Desktop\English_PSPX_RegXtras.exe -> [2009/06/12 16:17:31 | 15,935,168 | ---- | M | MD5 = 99FAE6E1E7E13FA9AD43336308084709] (Corel )
    KGyGaAvL.sys -> C:\Windows\SysWow64\KGyGaAvL.sys -> [2009/06/12 16:13:33 | 00,000,848 | -HS- | M | MD5 = 04B0435CF26A43D9171E7A896C7BB94E] ()
    sabrina aunt kelly letter.rtf -> C:\Users\Owner\Documents\sabrina aunt kelly letter.rtf -> [2009/06/06 11:56:11 | 00,000,767 | ---- | M | MD5 = 9F27BD1E947E628ED8C075DF231D4BE6] ()
    ZoomBrowser EX.lnk -> C:\Users\Owner\ZoomBrowser EX.lnk -> [2009/06/04 23:26:57 | 00,001,125 | ---- | M | MD5 = 0AF35F26CEB1DFAED8478A225ABBD470] ()
    Personal Printing Guide.lnk -> C:\Users\Owner\Personal Printing Guide.lnk -> [2009/06/04 23:26:57 | 00,001,039 | ---- | M | MD5 = 189A154484643D47EF3D7D795C702A43] ()
    INFORMATION - Shortcut.lnk -> C:\Users\Owner\INFORMATION - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,395 | ---- | M | MD5 = 31534B3665D8838EDA892E6E252B1D4D] ()
    Computer - Shortcut.lnk -> C:\Users\Owner\Computer - Shortcut.lnk -> [2009/06/04 23:26:57 | 00,000,104 | ---- | M | MD5 = FD8F1F54665903B748744026D47A4967] ()
    mrt.exe -> C:\Windows\SysNative\mrt.exe -> [2009/06/01 13:16:48 | 25,255,368 | ---- | M | MD5 = 24E45FA8FF7D125B8E7BFE3DAD8F042D] (Microsoft Corporation)
    basefx.INI -> C:\Windows\basefx.INI -> [2009/05/31 09:40:40 | 00,000,032 | ---- | M | MD5 = 51A542B2C1A87F328D1FAEF3BFF9942E] ()
    Owner.dat -> C:\ProgramData\Microsoft\User Account Pictures\Owner.dat -> [2009/04/11 15:52:28 | 00,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] ()
    nvuninst.exe -> C:\Windows\Temp\{8C72CC07-17CA-409E-B92B-23313BE78A58}\{EFB7D050-CAD2-11D4-B34D-00105A1C23DD}\nvuninst.exe -> [2008/10/02 14:08:02 | 00,501,280 | ---- | M | MD5 = DD27501AFBA41A787AAA3AF70DC2E0B6] (NVIDIA Corporation)
    mfc80u.dll -> C:\Windows\Temp\tismsi\mfc80u.dll -> [2008/07/29 17:04:22 | 01,652,736 | ---- | M | MD5 = 21EE912784A013DC44071ECC4F932388] (Microsoft Corporation)
    atl80.dll -> C:\Windows\Temp\tismsi\atl80.dll -> [2008/07/29 17:04:22 | 00,113,152 | ---- | M | MD5 = 8AD2485047CC64CB04B66040E62FE5FD] (Microsoft Corporation)
    mfcm80.dll -> C:\Windows\Temp\tismsi\mfcm80.dll -> [2008/07/29 17:04:22 | 00,065,536 | ---- | M | MD5 = 4FF468C640DEBC678D6E57617D523806] (Microsoft Corporation)
    mfcm80u.dll -> C:\Windows\Temp\tismsi\mfcm80u.dll -> [2008/07/29 17:04:22 | 00,064,000 | ---- | M | MD5 = 47ACD0AEA4A32EF2B446B01076C62D28] (Microsoft Corporation)
    mfc80.dll -> C:\Windows\Temp\tismsi\mfc80.dll -> [2008/07/29 17:04:20 | 01,656,320 | ---- | M | MD5 = 9173F70AF60C0A864EECDFB3342DC789] (Microsoft Corporation)
    msvcp80.dll -> C:\Windows\Temp\tismsi\msvcp80.dll -> [2008/07/29 17:04:20 | 01,061,376 | ---- | M | MD5 = C332DB81197E6E5D4A67D3789DBEB02A] (Microsoft Corporation)
    msvcr80.dll -> C:\Windows\Temp\tismsi\msvcr80.dll -> [2008/07/29 17:04:20 | 00,796,672 | ---- | M | MD5 = 4D89F6191DB56CFA659388378F3DD688] (Microsoft Corporation)
    msvcm80.dll -> C:\Windows\Temp\tismsi\msvcm80.dll -> [2008/07/29 17:04:20 | 00,516,096 | ---- | M | MD5 = 60A6DE55AA50D57A01B7148B0A7EA139] (Microsoft Corporation)
    libexpat.dll -> C:\Windows\Temp\tismsi\libexpat.dll -> [2008/07/29 17:04:20 | 00,181,424 | ---- | M | MD5 = B95C7E50A4934887CFC59C159A576458] ()
    GENKEY64.dll -> C:\Windows\Temp\tismsi\GENKEY64.dll -> [2008/07/29 17:04:18 | 00,036,200 | ---- | M | MD5 = 6D9906DA60C335E84AAD92895D07BF47] ()
    < End of report >
    [/code]
  • edited June 2009
    Information
    That's looking clean now, how are things running ?



    Step 1

    Open OTScanIt. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

    [Registry - Safe List]
    < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    YN -> {5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.]
    The fix should only take a very short time and then you will be asked if you want to reboot. Choose Yes.
    Warning: This fix is for this user only. DO NOT duplicate this fix or you risk damaging your own system





    Step 2

    Kaspersky Online Scanner .
    Your Antivirus and/or Antispyware may give a warning during the scan. This is perfectly normal
    NOTE:- This scan is best done from IE (Internet Explorer)

    NOTE:- Vista users should start IE by Start(Vista Orb) >> Internet Explorer >> Right-Click Run As Admin
    Go Here http://www.kaspersky.com/kos/eng/partner/default/kavwebscan.html

    Read the Requirements and limitations before you click Accept.
    Once the database has downloaded, click My Computer in the left pane
    Now go and put the kettle on !
    When the scan has completed, click Save Report As...
    Enter a name for the file in the Filename: text box and then click the down arrow to the right of Save as type: and select text file (*.txt)
    Click Save - by default the file will be saved to your Desktop, but you can change this if you wish.


    **Note**

    To optimize scanning time and produce a more sensible report for review:
    • Close any open programs.
    • Turn off the real-time scanner of all antivirus or antispyware programs while performing the online scan.

    Note for Internet Explorer 7 users: If at any time you have trouble viewing the accept button of the license, click on the Zoom tool located at the bottom right of the IE window and set the zoom to 75%. Once the license is accepted, reset to 100%.



    Logs/Information to Post in Reply
    Please post the following logs/Information in your reply
    Some of the logs I request will be quite large, You may need to split them over a couple of replies.
    • OTScanIt Log
    • Kaspersky Log
    • How are things running now ?
  • edited June 2009
    [Registry - Safe List]
    Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
    < End of fix log >
    OTS by OldTimer - Version 3.0.9.0 fix logfile created on 06302009_125740

    this is what i got and i never got a if i want to reboot!
  • edited June 2009
    Ninapearl wrote:
    i never got a if i want to reboot!
    That's Ok, it obviously didn't need a reboot to complete :)
  • edited June 2009
    im sorry ima noom :( it not working right the kaspersky i don't know if im not doing it right i dono im so greatful for ya help and sorry to be such a bother got a message saying not downloaded right
  • edited June 2009
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 4:33:35 PM, on 6/30/2009
    Platform: Windows Vista SP2 (WinNT 6.00.1906)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal
    Running processes:
    C:\Windows\MHotKey.exe
    C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Windows\ChiFuncExt.exe
    C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
    C:\Program Files (x86)\Java\jre6\bin\jusched.exe
    C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
    C:\Windows\CNYHKey.exe
    C:\Program Files (x86)\Common Files\aol\1240197259\ee\aolsoftware.exe
    C:\Windows\ModLedKey.exe
    C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
    C:\PROGRA~2\AOL9~1.1\waol.exe
    C:\PROGRA~2\AOL9~1.1\shellmon.exe
    C:\Program Files (x86)\Internet Explorer\IELowutil.exe
    C:\Program Files (x86)\Common Files\AOL\Topspeed\3.0\aoltpsd3.exe
    C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&s=1&o=vp64&d=0209&m=lx6810-01
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: AOL Toolbar Loader - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
    O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
    O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar.dll
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [LchDrvKey] LchDrvKey.exe
    O4 - HKLM\..\Run: [LedKey] CNYHKey.exe
    O4 - HKLM\..\Run: [UpdatePDRShortCut] "C:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "Software\CyberLink\PowerDirector\7.0"
    O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
    O4 - HKLM\..\Run: [HostManager] "C:\Program Files (x86)\Common Files\AOL\1240197259\ee\AOLSoftware.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
    O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\SysWOW64\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; AOL 9.1; AOLBuild 4334.5006; Windows NT 6.0; WOW64; Trident/4.0; GTB6; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.5.30729; .NET CLR 3.0.30729)" -"http://www.playhub.com/sports-games/313/Sewer-Run.html"
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
    O4 - Global Startup: SmartCopy.lnk = C:\Program Files (x86)\Northstar\SmartCopy\SmartCopy.exe
    O4 - Global Startup: SmartLauncher.lnk = C:\Program Files (x86)\Northstar\SmartLauncher\SmartLauncher.exe
    O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
    O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader2.cab
    O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
    O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
    O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Unknown owner - C:\Windows\system32\agr64svc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe
    O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
    O23 - Service: Empowering Technology Service (ETService) - Unknown owner - C:\Program Files\GATEWAY\Gateway Recovery Management\Service\ETService.exe
    O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
    O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: lxbc_device - - C:\Windows\system32\lxbccoms.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: ForceWare IP service (nSvcIp) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
    O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
    O23 - Service: Trend Micro Proxy Service (TmProxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
    --
    End of file - 11028 bytes
  • edited June 2009
    Try this one instead

    Active Scan
    Your Antivirus and/or Antispyware may give a warning during the scan. This is perfectly normal
    NOTE:- Vista users should start IE by Start(Vista Orb) >> Internet Explorer >> Right-Click Run As Admin
    Please go to this site Link >> ActiveScan << LINK
    • Click the Scan Now button
    • Follow the prompts to install the Active X if necessary
    • Go and make a cup of tea/coffee/beverage of your choice and watch some TV :)
    • When the scan is finished, a report will be generated
    • Next to Scan Details click the small export to notepad button and save the report to your desktop.
    • Please post the report in your reply.
  • edited June 2009
    I GOT IT TO WORK :p I POSTED IT UBOVE THE MESSAGE U SENT THANKS AGAIN<3
  • edited June 2009
    You posted a HJT log, not a Kaspersky log ?
  • edited July 2009
    this is from activescan



    ;***********************************************************************************************************************************************************************************
    ANALYSIS: 2009-07-01 01:56:34
    PROTECTIONS: 2
    MALWARE: 17
    SUSPECTS: 0
    ;***********************************************************************************************************************************************************************************
    PROTECTIONS
    Description Version Active Updated
    ;===================================================================================================================================================================================
    Trend Micro AntiVirus 17.1.1250 Yes Yes
    Windows Defender 1.1.1505.0 No Yes
    ;===================================================================================================================================================================================
    MALWARE
    Id Description Type Active Severity Disinfectable Disinfected Location
    ;===================================================================================================================================================================================
    00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@casalemedia[2].txt
    00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@doubleclick[2].txt
    00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@atdmt[1].txt
    00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@fastclick[2].txt
    00167747 Cookie/Azjmp TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@azjmp[1].txt
    00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@ad.yieldmanager[1].txt
    00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@apmebf[1].txt
    00168076 Cookie/BurstNet TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@burstnet[2].txt
    00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@bs.serving-sys[1].txt
    00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@bs.serving-sys[2].txt
    00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@advertising[2].txt
    00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@statse.webtrendslive[1].txt
    00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@ads.pointroll[1].txt
    00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@overture[2].txt
    00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@questionmarket[1].txt
    00194327 Cookie/Go TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@go[1].txt
    00262020 Cookie/Atwola TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@atwola[1].txt
    00286732 Cookie/Cgi-bin TrackingCookie No 0 Yes No C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Cookies\owner@www3.addfreestats[1].txt
    ;===================================================================================================================================================================================
    SUSPECTS
    Sent Location pV��
    �9
    ;===================================================================================================================================================================================
    ;===================================================================================================================================================================================
    VULNERABILITIES
    Id Severity Description pV��
    �9
    ;===================================================================================================================================================================================
    ;===================================================================================================================================================================================
  • edited July 2009
    That looks fine, are there any problems now ?
  • edited July 2009
    oH EM GEE thanks soooo much i was sooo scared! lol im just a worried freak!! i guess ever since i did the ots it seems like it got better :P thanks soooooo much for taking ur time and helping me i am so greatful! im having problems with my son's laptop! but im not going to post here i don't want to be a bother thanks again so much! u have a wonderful day and again thanks<333333333
Sign In or Register to comment.