Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

infected with trojan.agent svchost.exe


  • This topic is locked This topic is locked
30 replies to this topic

#1 eighteight

eighteight

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 04 February 2012 - 06:16 PM

My computer is infected with some kind of virus. I'm not sure if I have more than one though. The first thing that was happening was that when I did a google search I was redirected to different sites, on multiple occasions. Also I have about 8 boxes that say certain programs have stopped working like "QuickTime has stopped working"

Attached Files

  • Attached File  ark.txt   3.96KB   2 downloads


BC AdBot (Login to Remove)

 


#2 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:07:59 AM

Posted 04 February 2012 - 06:53 PM

Hi,

Please do the following:



Please download DDS from either of these links

LINK 1
LINK 2

and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds to run the tool.
  • When done, two DDS.txt's will open.
  • Save both reports to your desktop.
---------------------------------------------------
Please include the contents of the following in your next reply:

DDS.txt
Attach.txt.


NEXT

Please download aswMBR to your desktop.
  • Double click the aswMBR.exe icon to run it
  • When asked if you want to download Avast's virus definitions please select Yes.
  • Click the Scan button to start the scan
  • On completion of the scan, click the save log button, save it to your desktop and post it in your next reply.
  • You will also notice another file created on the desktop named MBR.dat. Right click that file and select Send To>Compressed (zipped) file. Attach that zipped file in your next reply as well

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#3 eighteight

eighteight
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 04 February 2012 - 10:01 PM

I ran the DDS thing but it didn't work. Attached File  MBR.zip   542bytes   0 downloadsAttached File  aswMBR.txt   2.1KB   1 downloads

#4 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:07:59 AM

Posted 04 February 2012 - 10:08 PM

Hi

Please try the following:


Download OTL to your Desktop
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Select All Users
  • Under the Custom Scan box paste this in
    netsvcs
    %SYSTEMDRIVE%\*.exe
    /md5start
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    /md5stop
    CREATERESTOREPOINT
  • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Post both logs

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#5 eighteight

eighteight
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 05 February 2012 - 08:57 AM

Here are the two logs

Attached Files



#6 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:07:59 AM

Posted 05 February 2012 - 09:20 AM

Hi

Please run the following:

CKScanner
Download CKScanner by askey127 from Here & save it to your Desktop.
  • Doubleclick CKScanner.exe then click Search For Files
  • When the cursor hourglass disappears, click Save List To File
  • A message box will verify the file saved
  • Double-click the CKFiles.txt icon on your desktop then copy/paste the contents in your next reply

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#7 eighteight

eighteight
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 05 February 2012 - 09:23 AM

CKScanner - Additional Security Risks - These are not necessarily bad
c:\program files\adobe\adobe premiere pro cs5\plug-ins\en_us\vstplugins\decrackler1.dll
c:\program files\adobe\adobe premiere pro cs5\plug-ins\en_us\vstplugins\decrackler2.dll
c:\program files\adobe\adobe premiere pro cs5\plug-ins\en_us\vstplugins\decrackler6.dll
c:\program files (x86)\adobe\adobe flash catalyst cs5\plugins\com.adobe.thermo.core_1.0.0.273393\com\adobe\thermo\undo\thermoundosystem$undoabledocumentchangecracker.class
c:\program files (x86)\common files\adobe\adobe contribute cs5\app\configuration\browsers\mozilla run time libraries\dist\idl\nsikeygenthread.idl
c:\program files (x86)\common files\adobe\adobe contribute cs5\app\configuration\browsers\mozilla run time libraries\dist\include\nsikeygenthread.h
c:\users\jorrell\desktop\crack\rld-tsmk.exe
c:\users\jorrell\desktop\crack\tslhost.dll
c:\users\jorrell\desktop\crack\tsm.ex_
c:\users\jorrell\desktop\flash drive\antivirus\stopzilla! v3.1.0.7 + crack\activator.exe
c:\users\jorrell\desktop\flash drive\antivirus\stopzilla! v3.1.0.7 + crack\harvest.nfo
c:\users\jorrell\desktop\flash drive\antivirus\stopzilla! v3.1.0.7 + crack\stopzilla_setup.exe
c:\users\jorrell\desktop\flash drive\antivirus\stopzilla! v3.1.0.7 + crack\torrent_downloaded_from_demonoid.com.txt
c:\users\jorrell\documents\vuze downloads\adobe cs5 master collection keygen only\read first - instructions.txt
c:\users\jorrell\documents\vuze downloads\adobe cs5 master collection keygen only\torrent downloaded from demonoid.com.txt
c:\users\jorrell\documents\vuze downloads\cs5.keygen.j12\cs5.keygen.j12.rar
c:\users\jorrell\documents\vuze downloads\cs5.keygen.j12\torrent downloaded from demonoid.com.txt
c:\users\jorrell\documents\vuze downloads\cs5.keygen.j12\cs5.keygen.j12\joomla12.nfo
c:\users\jorrell\documents\vuze downloads\toon boom animate pro 2 ple + crack\animate pro 2 ple.exe
c:\users\jorrell\documents\vuze downloads\toon boom animate pro 2 ple + crack\animatepro.exe
c:\users\jorrell\documents\vuze downloads\toon boom animate pro 2 ple + crack\instructions.txt
c:\users\jorrell\documents\vuze downloads\toon boom animate pro 2 ple + crack\torrent downloaded from demonoid.me.txt
c:\users\jorrell\downloads\(demonoid.me)-adobe_cs5_master_suite_keygen_joomla12_10185201.905.torrent
c:\users\jorrell\downloads\++demonoid.me++-adobe_cs5_master_collection_keygen_only_10185201.905.torrent
c:\users\jorrell\downloads\adobe_acrobat_pro_x_v10_0_multilingual_crack_keys[demonoid][espns]-[[demonoid.me]].torrent
c:\users\jorrell\downloads\cyberlink_power_director_8_keygen_(socket)-((demonoid.me))_10185201.905.torrent
c:\users\jorrell\downloads\microsoft_office_2010__pro_plus_precracked.5624753.tpb.torrent
c:\users\jorrell\downloads\rosetta_stone_v_3_3_7_crack_13_languages[digitailabyss_me]_o-demonoid.me-o_10185201.905.torrent
c:\users\jorrell\downloads\shank_crackfix_dinky_-demonoid.me-__10185201.905.torrent
c:\users\jorrell\downloads\shank_crack_10185201.905.torrent
c:\users\jorrell\downloads\shank_crack_x-demonoid.me-x_10185201.905.torrent
c:\users\jorrell\downloads\the_sims_medieval_v1_1_crack_only_trivium_x-demonoid.me-x_10185201.905.torrent
c:\users\jorrell\downloads\toon_boom_animate_pro_2_ple_crack-[demonoid.me]_10185201.905.torrent
c:\users\jorrell\downloads\toon_boom_animate_pro_2_ple_crack_x-demonoid.me-x_10185201.905.torrent
c:\users\jorrell\music\itunes\itunes media\music\afroman\jobe bells\09 nutscracker.m4a
hosts 127.0.0.1 activate.adobe.com
hosts 127.0.0.1 practivate.adobe.com
scanner sequence 3.ZZ.11.GGAPII
----- EOF -----

#8 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:07:59 AM

Posted 05 February 2012 - 09:29 AM

There are indications there are pirated programs on your system

We at Bleeping Computer do not condone this activity, not only is it illegal, but it is the number one source of infection that we see, you cannot trust the source of pirated software and you could be opening yourself up to identity theft etc. as well as a compromised system.


Please remove the pirated programs so we may continue to clean it, I do not want to leave an infected system connected to the internet that may infect others.

Once you have removed the pirated programs, then please run the following:


Refer to the ComboFix User's Guide

  • Download ComboFix from one of these locations:

    Link 1
    Link 2

    * IMPORTANT !!! Place ComboFix.exe on your Desktop
  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with ComboFix.
    You can get help on disabling your protection programs here
  • Double click on ComboFix.exe & follow the prompts.
  • Your desktop may go blank. This is normal. It will return when ComboFix is done. ComboFix may reboot your machine. This is normal.
  • When finished, it shall produce a log for you. Post that log in your next reply

    Note:
    Do not mouseclick combofix's window whilst it's running. That may cause it to stall.


    ---------------------------------------------------------------------------------------------
  • Ensure your AntiVirus and AntiSpyware applications are re-enabled.

    ---------------------------------------------------------------------------------------------

NOTE: If you encounter a message "illegal operation attempted on registry key that has been marked for deletion" and no programs will run - please just reboot and that will resolve that error.

Edited by CatByte, 05 February 2012 - 09:29 AM.

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#9 eighteight

eighteight
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 05 February 2012 - 01:05 PM

ComboFix 12-02-05.02 - Jorrell 02/05/2012 12:42:40.2.4 - x64
Microsoft® Windows Vista™ Ultimate 6.0.6002.2.1252.1.1033.18.8190.6048 [GMT -5:00]
Running from: c:\users\Jorrell\Desktop\MEDIA\Virus Removal\ComboFix.exe
AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Jorrell\dds.com
c:\windows\svchost.exe
.
---- Previous Run -------
.
c:\users\Jorrell\AppData\Local\Temp\jna2536005023410233674.dll
c:\users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{99199a7a-eb4b-4560-8373-8bed46f88e11}\chrome.manifest
c:\users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{99199a7a-eb4b-4560-8373-8bed46f88e11}\chrome\xulcache.jar
c:\users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{99199a7a-eb4b-4560-8373-8bed46f88e11}\defaults\preferences\xulcache.js
c:\users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{99199a7a-eb4b-4560-8373-8bed46f88e11}\install.rdf
c:\users\Jorrell\dds.scr
c:\windows\svchost.exe
c:\windows\SwSys1.bmp
c:\windows\SwSys2.bmp
c:\windows\SysWow64\Cache\272512937d9e61a4.fb
c:\windows\SysWow64\Cache\287204568329e189.fb
c:\windows\SysWow64\Cache\28bc8f716fd76a47.fb
c:\windows\SysWow64\Cache\2c53092c95605355.fb
c:\windows\SysWow64\Cache\3917078cb68ec657.fb
c:\windows\SysWow64\Cache\590ba23ce359fd0c.fb
c:\windows\SysWow64\Cache\610289e025a3ee9a.fb
c:\windows\SysWow64\Cache\651c5d3cdbfb8bd1.fb
c:\windows\SysWow64\Cache\6c59ac5e7e7a3ad0.fb
c:\windows\SysWow64\Cache\7e8633393eb2da71.fb
c:\windows\SysWow64\Cache\a8556537add6dfc5.fb
c:\windows\SysWow64\Cache\ad10a52aff5e038d.fb
c:\windows\SysWow64\Cache\bf2bc515f493fa05.fb
c:\windows\SysWow64\Cache\c4d28dca2e7648be.fb
c:\windows\SysWow64\Cache\d201ef9910cd39de.fb
c:\windows\SysWow64\Cache\d2e94710a5708128.fb
c:\windows\SysWow64\Cache\d79b9dfe81484ec4.fb
H:\Autorun.inf
H:\Setup.exe
c:\windows\system32\basesrv.dll . . . . Failed to delete
c:\windows\TEMP\logishrd\LVPrcInj01.dll . . . . Failed to delete
c:\windows\TEMP\logishrd\LVPrcInj02.dll . . . . Failed to delete
.
-- Previous Run --
.
c:\windows\SysWow64\hid.dll . . . is infected!!
.
--------
.
.
((((((((((((((((((((((((( Files Created from 2012-01-05 to 2012-02-05 )))))))))))))))))))))))))))))))
.
.
2012-02-05 17:58 . 2012-02-05 17:58 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2012-02-05 17:58 . 2012-02-05 17:58 -------- d-----w- c:\users\Mcx1\AppData\Local\temp
2012-02-05 17:58 . 2012-02-05 17:58 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-02-05 16:53 . 2012-02-05 16:53 -------- d-----w- c:\program files (x86)\AVG Secure Search
2012-02-02 13:32 . 2009-10-09 21:56 20480 ----a-w- c:\windows\svchost.exe
2012-01-26 02:10 . 2011-11-17 06:53 515968 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2012-01-26 02:10 . 2011-11-16 16:43 442368 ----a-w- c:\windows\system32\winhttp.dll
2012-01-26 02:10 . 2011-11-16 16:42 347136 ----a-w- c:\windows\system32\schannel.dll
2012-01-26 02:10 . 2011-11-16 16:41 1689600 ----a-w- c:\windows\system32\lsasrv.dll
2012-01-26 02:10 . 2011-11-16 16:23 377344 ----a-w- c:\windows\SysWow64\winhttp.dll
2012-01-26 02:10 . 2011-11-16 16:23 278528 ----a-w- c:\windows\SysWow64\schannel.dll
2012-01-26 02:10 . 2011-11-16 16:42 94720 ----a-w- c:\windows\system32\secur32.dll
2012-01-26 02:10 . 2011-11-16 16:24 77312 ----a-w- c:\windows\SysWow64\secur32.dll
2012-01-26 02:10 . 2011-11-16 14:34 11264 ----a-w- c:\windows\system32\lsass.exe
2012-01-18 20:49 . 2012-01-18 20:49 -------- d-----w- c:\users\Jorrell\AppData\Local\LogiShrd
2012-01-18 20:49 . 2012-01-18 20:49 -------- d-----w- c:\program files (x86)\Logitech
2012-01-18 20:48 . 2012-01-18 20:48 -------- d-----w- c:\program files (x86)\Common Files\LogiShrd
2012-01-18 20:48 . 2012-01-26 13:10 -------- d-----w- c:\programdata\LogiShrd
2012-01-18 20:48 . 2012-01-18 20:48 -------- d-----w- c:\program files\Logitech
2012-01-18 20:27 . 2012-01-18 20:27 -------- d-----w- c:\users\Jorrell\AppData\Local\Pinnacle
2012-01-18 20:23 . 2007-03-05 21:36 70656 ----a-w- c:\windows\system32\PCLECoInst64.dll
2012-01-18 20:23 . 2012-01-18 20:23 -------- d-----w- c:\program files (x86)\Common Files\Pinnacle
2012-01-18 20:21 . 2012-01-18 20:21 -------- d-----w- c:\programdata\Pinnacle Studio Ultimate Collection
2012-01-17 03:29 . 2012-01-17 03:29 -------- d-----w- c:\programdata\Studio 12
2012-01-17 03:29 . 2012-01-17 03:29 -------- d-----w- c:\programdata\Pinnacle Studio Plus
2012-01-17 03:29 . 2012-01-17 03:29 -------- d-----w- c:\program files (x86)\Common Files\Yahoo!
2012-01-17 03:26 . 2012-01-18 20:20 -------- d-----w- c:\programdata\Pinnacle
2012-01-17 02:36 . 2007-05-09 14:37 200704 ----a-w- c:\windows\SysWow64\MarvinUsb.ax
2012-01-13 00:42 . 2012-02-02 04:10 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-01-13 00:42 . 2012-01-13 03:05 -------- d-----w- c:\programdata\Malwarebytes
2012-01-13 00:42 . 2011-12-10 20:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-01-11 13:03 . 2011-12-01 15:29 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
2012-01-11 13:03 . 2011-12-01 15:21 2409784 ----a-w- c:\program files (x86)\Windows Mail\OESpamFilter.dat
2012-01-11 13:01 . 2011-11-18 18:07 76800 ----a-w- c:\windows\system32\packager.dll
2012-01-11 13:01 . 2011-11-18 17:47 66560 ----a-w- c:\windows\SysWow64\packager.dll
2012-01-11 00:15 . 2012-02-02 03:57 45016 ----a-w- c:\program files (x86)\Mozilla Firefox\mozutils.dll
2012-01-11 00:15 . 2012-01-11 00:15 626688 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcr80.dll
2012-01-11 00:15 . 2012-01-11 00:15 548864 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcp80.dll
2012-01-11 00:15 . 2012-01-11 00:15 479232 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcm80.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-01 13:23 . 2011-09-18 10:43 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-23 13:57 . 2011-12-15 19:26 2764800 ----a-w- c:\windows\system32\win32k.sys
2011-11-22 01:52 . 2011-11-22 01:52 3813399 ----a-r- c:\users\Jorrell\AppData\Roaming\Microsoft\Installer\{721C0B3A-3E8E-445B-B81E-651699B87944}\easyprint_FPO.exe
2011-11-08 14:58 . 2011-12-15 19:26 2048 ----a-w- c:\windows\system32\tzres.dll
2011-11-08 14:42 . 2011-12-15 19:26 2048 ----a-w- c:\windows\SysWow64\tzres.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{81017EA9-9AA8-4A6A-9734-7AF40E7D593F}"= "c:\program files (x86)\Yahoo!\Companion\Installs\cpn0\YTNavAssist.dll" [2011-01-21 213816]
"{ba14329e-9550-4989-b3f2-9732e92d17cc}"= "c:\program files (x86)\Vuze_Remote\prxtbVuze.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{81017ea9-9aa8-4a6a-9734-7af40e7d593f}]
[HKEY_CLASSES_ROOT\YTNavAssist.YTNavAssistPlugin.1]
[HKEY_CLASSES_ROOT\TypeLib\{A31F34A1-EBD2-45A2-BF6D-231C1B987CC8}]
[HKEY_CLASSES_ROOT\YTNavAssist.YTNavAssistPlugin]
.
[HKEY_CLASSES_ROOT\clsid\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
2011-05-09 08:49 176936 ----a-w- c:\program files (x86)\Vuze_Remote\prxtbVuze.dll
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2012-01-03 21:31 1514152 ----a-w- c:\program files (x86)\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2012-01-03 1514152]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG Secure Search\10.0.0.7\AVG Secure Search_toolbar.dll" [2012-02-05 1811296]
"{ba14329e-9550-4989-b3f2-9732e92d17cc}"= "c:\program files (x86)\Vuze_Remote\prxtbVuze.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CLASSES_ROOT\clsid\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 138240]
"Xvid"="c:\program files (x86)\Xvid\CheckUpdate.exe" [2011-01-17 8192]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2008-02-28 1828136]
"Logitech Vid"="c:\program files (x86)\Logitech\Logitech Vid\vid.exe" [2009-07-16 5458704]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-11-29 421888]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"Adobe Acrobat Speed Launcher"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [2011-09-05 36760]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2011-09-05 2904984]
"NeroFilterCheck"="c:\windows\SysWOW64\NeroCheck.exe" [2001-07-09 155648]
"NBKeyScan"="c:\program files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-02-18 2221352]
"RemoteControl11"="c:\program files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe" [2011-04-20 234792]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"ApnUpdater"="c:\program files (x86)\Ask.com\Updater\Updater.exe" [2012-01-03 1391272]
"DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
"vProt"="c:\program files (x86)\AVG Secure Search\vprot.exe" [2012-02-05 939872]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-01-13 460872]
"LogitechQuickCamRibbon"="c:\program files\Logitech\Logitech WebCam Software\LWS.exe" [2009-10-14 2793304]
.
c:\users\Jorrell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Logitech . Product Registration.lnk - c:\program files\Logitech\Logitech WebCam Software\eReg.exe [2009-10-14 517384]
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files (x86)\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 98632]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
McAfee Security Scan Plus.lnk - c:\program files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe [2010-1-15 255536]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - AVGLDX64
*NewlyCreated* - WS2IFSL
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Zune Launcher"="c:\program files\Zune\ZuneLauncher.exe" [2010-11-11 163568]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Supplementary Scan -------
.
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: &Download by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/201
IE: &Grab video by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/204
IE: Append Link Target to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Do&wnload selected by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/203
IE: Down&load all by Orbit - c:\program files (x86)\Orbitdownloader\orbitmxt.dll/202
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.254
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll
CLSID: {603d3801-bd81-11d0-a3a5-00c04fd706ec} - %SystemRoot%\SysWow64\browseui.dll
FF - ProfilePath - c:\users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\
FF - prefs.js: browser.search.selectedEngine -
FF - prefs.js: browser.startup.homepage - www.google.com
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2504091&SearchSource=2&q=
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true);user_pref(network.protocol-handler.warn-external.dnupdate, false
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
Wow6432Node-HKCU-Run-AdobeBridge - (no file)
Wow6432Node-HKCU-Run-WMPNSCFG - c:\program files (x86)\Windows Media Player\WMPNSCFG.exe
Wow6432Node-HKLM-Run-ROC_roc_dec12 - c:\program files (x86)\AVG Secure Search\ROC_roc_dec12.exe
HKLM-Run-Windows Defender - c:\program files (x86)\Windows Defender\MSASCui.exe
.
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVG_TRAY"="\"c:\\Program Files (x86)\\AVG\\AVG2012\\avgtray.exe\""
"Adobe Reader Speed Launcher"="\"c:\\Program Files (x86)\\Adobe\\Reader 10.0\\Reader\\Reader_sl.exe\""
"Adobe ARM"="\"c:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
"QuickTime Task"="\"c:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime"
"GrooveMonitor"="\"c:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveMonitor.exe\""
"Adobe Acrobat Speed Launcher"="\"c:\\Program Files (x86)\\Adobe\\Acrobat 10.0\\Acrobat\\Acrobat_sl.exe\""
"Acrobat Assistant 8.0"="\"c:\\Program Files (x86)\\Adobe\\Acrobat 10.0\\Acrobat\\Acrotray.exe\""
"NeroFilterCheck"="c:\\Windows\\SysWOW64\\NeroCheck.exe"
"NBKeyScan"="\"c:\\Program Files (x86)\\Nero\\Nero8\\Nero BackItUp\\NBKeyScan.exe\""
"RemoteControl11"="\"c:\\Program Files (x86)\\CyberLink\\PowerDVD11\\PDVD11Serv.exe\""
"SunJavaUpdateSched"="\"c:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe\""
"iTunesHelper"="\"c:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\""
"DSFHost"="c:\\Program Files (x86)\\Staples\\easyprint\\dsfhost.exe"
"ApnUpdater"="\"c:\\Program Files (x86)\\Ask.com\\Updater\\Updater.exe\""
"DivXUpdate"="\"c:\\Program Files (x86)\\DivX\\DivX Update\\DivXUpdate.exe\" /CHECKNOW"
"vProt"="\"c:\\Program Files (x86)\\AVG Secure Search\\vprot.exe\""
"Malwarebytes' Anti-Malware"="\"c:\\Program Files (x86)\\Malwarebytes' Anti-Malware\\mbamgui.exe\" /starttray"
"LogitechQuickCamRibbon"="\"c:\\Program Files\\Logitech\\Logitech WebCam Software\\LWS.exe\" /hide"
"ROC_roc_dec12"="\"c:\\Program Files (x86)\\AVG Secure Search\\ROC_roc_dec12.exe\" /PROMPT /CMPID=roc_dec12"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{329F96B6-DF1E-4328-BFDA-39EA953C1312}]
"ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD11\Common\NavFilter\000.fcl"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-3965637996-2357322813-339026480-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
"??"=hex:d5,ac,82,5a,03,bc,ce,ad,ea,c9,c5,a7,1f,a1,70,31,d7,35,52,d4,ad,f0,76,
7d,31,85,c1,50,0d,8f,71,f3,d8,8c,4e,71,c1,e8,01,a4,40,42,6b,4b,9b,71,90,36,\
"??"=hex:ab,ff,de,9c,7f,f3,f0,d8,b1,e6,bc,c9,25,fc,63,59
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version*Version]
"Version"=hex:d1,7f,81,18,59,ad,66,25,19,97,06,1d,d4,fd,fb,ff,cf,2a,59,46,99,
9e,78,82,f2,04,37,71,f4,a1,6f,ff,48,35,77,e4,94,12,3d,b9,cb,79,cc,34,d5,79,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}]
@Denied: (A 2) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0]
@="Shockwave Flash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}]
@Denied: (A 2) (Everyone)
@=""
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0]
@="FlashBroker"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Minnetonka Audio Software\SurCode Dolby Digital Premiere\Version*Version]
"Version"=hex:d1,7f,81,18,59,ad,66,25,19,97,06,1d,d4,fd,fb,ff,cf,2a,59,46,99,
9e,78,82,f2,04,37,71,f4,a1,6f,ff,48,35,77,e4,94,12,3d,b9,cb,79,cc,34,d5,79,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes]
"SymbolicLinkValue"=hex(6):5c,00,52,00,45,00,47,00,49,00,53,00,54,00,52,00,59,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\DbgagD\1*]
"value"="?\09\03\1c\00+\13?"
.
Completion time: 2012-02-05 13:04:19
ComboFix-quarantined-files.txt 2012-02-05 18:04
.
Pre-Run: 78,680,903,680 bytes free
Post-Run: 78,386,126,848 bytes free
.
- - End Of File - - CDE322EFC082AE4D3546EB2D9D30E5C9

#10 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:07:59 AM

Posted 05 February 2012 - 01:36 PM

Hi

one of your files is still showing as infected, let's see if we can find a replacement

c:\windows\SysWow64\hid.dll . . . is infected!!


please do the following:

Please download SystemLook from one of the links below and save it to your Desktop.
Download Mirror #1
Download Mirror #2

  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:

    :filefind
    *hid*
    
  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#11 eighteight

eighteight
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 05 February 2012 - 02:52 PM

SystemLook 30.07.11 by jpshortstuff
Log created at 14:48 on 05/02/2012 by Jorrell
Administrator - Elevation successful
WARNING: SystemLook running under WOW64. Use SystemLook_x64 for accurate results.

========== filefind ==========

Searching for "*hid*"
C:\Program Files\Tablet\wacomvhid.cat --a---- 7597 bytes [03:44 04/01/2012] [17:10 17/03/2011] 70733EBAA6A6F78D992DB28050DEC608
C:\Program Files\Tablet\wacomvhid.inf --a---- 2053 bytes [03:44 04/01/2012] [17:10 17/03/2011] 31E9DE8DFCCBFDD496D9E321D0D60085
C:\Program Files\Tablet\wacomvhid.sys --a---- 16168 bytes [03:44 04/01/2012] [17:10 17/03/2011] EC1CEB237E365330C1FCFC4876AA0AC0
C:\Program Files (x86)\CyberLink\PowerDVD11\Movie\PK\DVD\control\autohide.kc --a---- 3046 bytes [03:27 09/05/2011] [13:03 14/04/2011] 1C09E7CB1BEB460DDB1FD50631145D5B
C:\Program Files (x86)\Red Kawa\Video Converter App\res\hiddenWindow.html --a---- 117 bytes [13:04 21/09/2009] [13:04 21/09/2009] 0C016C31BF6369424576EB280C105866
C:\Program Files (x86)\Yahoo!\Messenger\skins\Default\VoiceUI\video_hide_pip.png --a---- 434 bytes [00:54 03/01/2011] [21:46 20/04/2010] B45446F5C53F347CDD14382C62BFAC41
C:\Users\Jorrell\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T3FSOH4P\Block_Array_HideShowClear[1].js --a---- 2916 bytes [13:09 26/01/2012] [13:09 26/01/2012] E299B4A62B59FB84A4DF2966FB308483
C:\Users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}\components\dhIDOMHook.xpt --a---- 224 bytes [03:01 24/12/2011] [10:08 17/12/2011] 0E3E66CF97BB7AE6B38D6B817BDF2A27
C:\Users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}\components\dhIDownloadListener.xpt --a---- 248 bytes [03:01 24/12/2011] [10:08 17/12/2011] CFBB391C84CC6BF03E28BFE768DBD42C
C:\Users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}\components\dhIDownloadMgr.xpt --a---- 713 bytes [03:01 24/12/2011] [10:08 17/12/2011] A931734975BEF133E57BACAEC3C002DA
C:\Users\Jorrell\Desktop\MEDIA\Music\DMX\DMX - The Great Depression\Dmx-17-a_minute_for_your_son_(plus_two_hidden_bonus_trac-rns.mp3 --a---- 24313746 bytes [03:52 06/07/2011] [21:07 10/07/2011] 44C24A0E2505CBA9F5B2087AEA229882
C:\Users\Jorrell\Desktop\MEDIA\Music\E\Earth, Wind & Fire-19 cd\Earth, Wind & Fire-Gratitude-1975\Earth,Wind & Fire - Gratitude - 16 - Can't Hide Love.mp3 --a---- 8020102 bytes [03:05 03/01/2011] [18:04 14/05/2009] 77342E9E87DA5232E37645CD33E57163
C:\Users\Jorrell\Desktop\MEDIA\Music\E\Earth, Wind & Fire-19 cd\Earth, Wind & Fire-Greatest Hits\Earth, Wind & Fire - 04 - Can't hide love.mp3 --a---- 5849996 bytes [03:05 03/01/2011] [18:39 12/05/2009] BCF2E5BC9B385907E39A56A2DB73B8C9
C:\Users\Jorrell\Desktop\MEDIA\Music\E\Earth, Wind & Fire-19 cd\Earth, Wind & Firee-The Eternal Dance-1992-CD2\06 - Can't Hide Love.mp3 --a---- 6156607 bytes [03:06 03/01/2011] [04:26 03/01/2011] 7FB90B991636A3D3F59EEDC50BDECAF6
C:\Users\Jorrell\Desktop\MEDIA\Music\J\Jedi Mind Tricks Discography\Jedi Mind Tricks - Violent By Design\Track 21 - Heavenly Design [Remix] [Hidden Track].mp3 --a---- 4061711 bytes [03:52 03/01/2011] [04:27 03/01/2011] F40408957EFE071E661F52AE159F01C6
C:\Users\Jorrell\Desktop\MEDIA\Music\J\Jedi Mind Tricks Discography\Jedi Mind Tricks - Violent By Design\Track 22 - War Ensamble [Hidden Track].mp3 --a---- 4994283 bytes [03:52 03/01/2011] [04:27 03/01/2011] E693E2B6BE29FEA256A5F348E1D14C68
C:\Users\Jorrell\Desktop\MEDIA\Music\K\Kanye West\Kanye West - Late Registration\21 Kanye West - Late (Hidden Track).mp3 --a---- 3701392 bytes [03:52 03/01/2011] [04:22 14/05/2009] 7FB12008FADECD5B5716AAD0D817E4BF
C:\Users\Jorrell\Desktop\MEDIA\Music\Mos Def - The Ecstatic [GeneGeter.com]\04-mos_def-wahid.mp3 --a---- 1932870 bytes [03:55 03/01/2011] [04:24 03/01/2011] ED00402F1980FEE1AC6F55775B746FFB
C:\Users\Jorrell\Desktop\MEDIA\Music\O\OutKast Discography\Outkast-SpeakerboxxxThe_Love_Below-2003\20-outkast-[untitled_hidden_track].mp3 --a---- 12601261 bytes [03:56 03/01/2011] [18:02 19/05/2009] A05F6EC0FC3B9207F4B99A7D70301988
C:\Users\Jorrell\Desktop\MEDIA\Music\Pendulum - Dan's Collection 04\05 - Greatest Hits - Bootleg\Pendulum - 210 - Aphid.mp3 --a---- 6054224 bytes [03:58 03/01/2011] [01:43 11/06/2009] 7FC146BF73ED90E4D7A4DD3F165FB589
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Face of the Ghost\02-ghostface_killah-hideyaface_(el-p_mix)_(feat_el-p)-thhf.mp3 --a---- 4509775 bytes [03:41 29/05/2011] [04:01 29/05/2011] 5AC0937D8B136668298F35BB6404EF9B
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Face of the Ghost\15-ghostface_killah-hideyaface_(prefuse_73_mix)_(feat_el-p)-thhf.mp3 --a---- 4823877 bytes [03:41 29/05/2011] [04:07 29/05/2011] D33FA3E3248C4E28BF55C8312E3B25BC
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Hidden Darts\00-ghostface_killah-hidden_darts_(special_edition)-2007-cd-front-ftd.jpg --a---- 98021 bytes [03:41 29/05/2011] [04:33 29/05/2011] 7B3EA8DF77F0DB377DB9CEE94EFFE458
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Hidden Darts\01-ghostface_killah-hidden_darts-ftd.mp3 --a---- 3410589 bytes [03:41 29/05/2011] [04:12 29/05/2011] 7257C8E33982712FFD30EE425AED47AB
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2008) - The_Wallabee_Champ\Ghostface_Killah-The_Wallabee_Champ-2008-C4\08-ghostface_killah-hidden_darts_(remix).mp3 --a---- 3027760 bytes [03:41 29/05/2011] [17:59 12/06/2011] F8EF3E5D4C6DB778667FF25BB8370921
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\GZA (2008) - D.A.R.T.S\30-gza-hidden_track_1.mp3 --a---- 482319 bytes [03:41 29/05/2011] [03:45 29/05/2011] 269C84D39A29DA988CEFBA801AB0983A
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\GZA (2008) - D.A.R.T.S\31-gza-hidden_track_2.mp3 --a---- 2981708 bytes [03:41 29/05/2011] [04:42 29/05/2011] FCFC0454AC34313482957D836839C1D7
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\J-Love And Method Man - A Taste Of Tical 0 Pt.3\22-method_man-raw_hide_(feat._ol_dirty_bastard_and_raekwon).mp3 --a---- 5517501 bytes [03:41 29/05/2011] [15:31 29/05/2011] 8D4BE704B2D1D2144401055B1C054DAC
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Method Man (1995) - The Riddler Maxi\2.Method Man (1995) - The riddler Hide-out remix.mp3 --a---- 4733812 bytes [03:46 29/05/2011] [06:49 29/05/2011] 5547778766DF5166AF16F3D22858A250
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Method Man (1995) - The Riddler Maxi\4.Method Man (1995) - The riddler Hide-out remix instrumental.mp3 --a---- 5432428 bytes [03:46 29/05/2011] [05:57 29/05/2011] 37C7389C65C51A0EE620CB044D58F220
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Method Man (2008) - Johnny Blaze Strikes\14-method_man-raw_hide_ft._old_dirty_bastard_and_raekwon.mp3 --a---- 5000703 bytes [03:46 29/05/2011] [16:02 12/06/2011] 717F0A25CCC455CC45465CAC357634B5
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Ol Dirty Bastard (1995) - Return to the 36 Chambers\6.Ol Dirty Bastard (1995) - Raw hide.mp3 --a---- 5810630 bytes [03:46 29/05/2011] [16:13 12/06/2011] 9A09D733BA6CFFB972117E84040B5BCD
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Animals\Dragon fly\800px-IC_Gomphidae_wing.jpg --a---- 83048 bytes [16:37 27/04/2011] [19:43 21/03/2008] 743CF2F0F570E3E52296447EEB29BDFF
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Armour\samurai\Do\Do_02\Myochin-Uchidashi-Do-2-webv.gif --a---- 172627 bytes [16:37 27/04/2011] [00:28 29/12/2008] DFBEE1F24EE40EA32B1EC5B6F2856422
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Armour\samurai\Do\Do_02\Myochin-Uchidashi-Do-4-webv.gif --a---- 288056 bytes [16:37 27/04/2011] [00:28 29/12/2008] 93FD73156D687A624A97BCAEF8155B19
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Armour\samurai\Do\Do_02\Myochin-Uchidashi-Do-webver.gif --a---- 187872 bytes [16:37 27/04/2011] [00:28 29/12/2008] 7ABC8925A5475DDAD5E04D8FC36D1985
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideshan.jpg --a---- 49850 bytes [16:38 27/04/2011] [01:56 03/02/2010] D246567A0083AEF5810A0A1A820B6DAE
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyang2.jpg --a---- 46614 bytes [16:38 27/04/2011] [01:55 03/02/2010] D8DAE16D1F75A5D34AEC27FC95BA0411
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyangkick1.jpg --a---- 95339 bytes [16:38 27/04/2011] [01:54 03/02/2010] 0E4761F903E88AE650CF36E5EE69EE45
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyangkick2.jpg --a---- 65974 bytes [16:38 27/04/2011] [01:54 03/02/2010] 3DB5CC56CA91524F45C77E561576056C
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyangonbasket2.jpg --a---- 95707 bytes [16:38 27/04/2011] [01:55 03/02/2010] B5433BAD2086ED4E125E0E63757E7115
C:\Users\Jorrell\Documents\My Games\Skyrim\Saves\Save 412 - Reign Lost Knife Hideout 11.17.53.ess --a---- 5252407 bytes [06:41 30/11/2011] [06:41 30/11/2011] 377141700F04BB7D364CA4E374539750
C:\Windows\inf\hidbth.inf --a---- 4298 bytes [12:40 02/11/2006] [21:24 04/01/2011] 128473A8ABF0CAB873F43D71E1420E01
C:\Windows\inf\hidbth.PNF --a---- 9716 bytes [12:40 02/11/2006] [21:24 04/01/2011] 702861F5A6ED9D0CA9E727398213D9A0
C:\Windows\inf\hiddigi.inf --a---- 5468 bytes [12:40 02/11/2006] [03:00 21/01/2008] EDC1FEBFF3FFE131A3C1996C35C05D6B
C:\Windows\inf\hiddigi.PNF --a---- 9420 bytes [12:40 02/11/2006] [03:00 21/01/2008] D8A9F2F27F6229FA915BE917E7890FE3
C:\Windows\inf\hidserv.inf --a---- 9974 bytes [12:40 02/11/2006] [12:40 02/11/2006] BE0294653AB0C9E907A6105EE4B036B7
C:\Windows\inf\hidserv.PNF --a---- 19952 bytes [12:40 02/11/2006] [03:25 03/01/2011] 0528FC57CEC5CAD77D227308EFCDFACA
C:\Windows\Prefetch\HIDEC.3XE-AF1E4858.pf --a---- 17554 bytes [17:25 05/02/2012] [18:01 05/02/2012] 54A20D1F2834E66E6142183D36C9C719
C:\Windows\Prefetch\HIDEC.3XE-ECCA009B.pf --a---- 17172 bytes [17:37 05/02/2012] [17:37 05/02/2012] D6C5B1F6D6472BBF3A779BFEC5EE5E42
C:\Windows\System32\hid.dll --a---- 22016 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8269CC01940A202BBB9FDF26705DBD67
C:\Windows\System32\hidphone.tsp --a---- 31744 bytes [12:20 02/11/2006] [09:44 02/11/2006] B4B59AC042EE3733A862F26CBC0B17FC
C:\Windows\System32\hidserv.dll --a---- 26112 bytes [16:42 04/01/2011] [06:28 11/04/2009] 84067081F3318162797385E11A8F0582
C:\Windows\System32\en-US\hid.dll.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 70A4545883B0D4E97946ACE7E0BE75E0
C:\Windows\System32\en-US\hidphone.tsp.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] B513B14ACD6CC7BC3BCFB0B90ACF9FE6
C:\Windows\System32\en-US\hidserv.dll.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] E27C46A5394FA29E8F1AEC9D5671D033
C:\Windows\SysWOW64\hid.dll --a---- 22016 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8269CC01940A202BBB9FDF26705DBD67
C:\Windows\SysWOW64\hidphone.tsp --a---- 31744 bytes [12:20 02/11/2006] [09:44 02/11/2006] B4B59AC042EE3733A862F26CBC0B17FC
C:\Windows\SysWOW64\hidserv.dll --a---- 26112 bytes [16:42 04/01/2011] [06:28 11/04/2009] 84067081F3318162797385E11A8F0582
C:\Windows\SysWOW64\en-US\hid.dll.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 70A4545883B0D4E97946ACE7E0BE75E0
C:\Windows\SysWOW64\en-US\hidphone.tsp.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] B513B14ACD6CC7BC3BCFB0B90ACF9FE6
C:\Windows\SysWOW64\en-US\hidserv.dll.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] E27C46A5394FA29E8F1AEC9D5671D033
C:\Windows\winsxs\amd64_battery.inf_31bf3856ad364e35_6.0.6001.18000_none_72462e700c2d96e6\hidbatt.sys --a---- 26624 bytes [02:45 21/01/2008] [02:45 21/01/2008] 68214C82FA6222591873677A72DF2A66
C:\Windows\winsxs\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f\hid.dll.mui --a---- 2048 bytes [15:13 02/11/2006] [15:13 02/11/2006] C314B9FF126E279F0790A9629A54183B
C:\Windows\winsxs\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f\hidserv.dll.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] B2FE83D3833D87E4149843FFE717E011
C:\Windows\winsxs\amd64_hidbth.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_26a3f0212eb00586\hidbth.inf_loc --a---- 1088 bytes [15:13 02/11/2006] [15:13 02/11/2006] 236953BAF992DCF4F2BDB504481A7EA6
C:\Windows\winsxs\amd64_hidbth.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_26a3f0212eb00586\hidbth.sys.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] 33555955DA42F539ADFEE1BA3596988B
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6001.18000_none_7f3158ad0dd10fac\hidbth.inf --a---- 4020 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5A547F73D0222BF90CF12A1AAB78AB88
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6001.18000_none_7f3158ad0dd10fac\hidbth.sys --a---- 34304 bytes [02:46 21/01/2008] [02:46 21/01/2008] 824FD154B9371E42ADB67590BDED5F6C
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6002.18005_none_811cd1b90af2daf8\hidbth.inf --a---- 4298 bytes [16:41 04/01/2011] [02:13 11/04/2009] 128473A8ABF0CAB873F43D71E1420E01
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6002.18005_none_811cd1b90af2daf8\hidbth.sys --a---- 36864 bytes [16:42 04/01/2011] [05:39 11/04/2009] 39F7D79B3401BE029D8451F761D30331
C:\Windows\winsxs\amd64_hiddigi.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_90d48ed991e520d7\hiddigi.inf_loc --a---- 418 bytes [15:13 02/11/2006] [15:13 02/11/2006] 32B9CA4A0CE453FEB270AF905C9D2819
C:\Windows\winsxs\amd64_hiddigi.inf_31bf3856ad364e35_6.0.6001.18000_none_f17ae014fe39679d\hiddigi.inf --a---- 5468 bytes [02:46 21/01/2008] [02:46 21/01/2008] EDC1FEBFF3FFE131A3C1996C35C05D6B
C:\Windows\winsxs\amd64_hidserv.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_8020deaa00fc5562\hidserv.inf_loc --a---- 3450 bytes [15:12 02/11/2006] [15:12 02/11/2006] 4F5C1060E8D641B00F2E756CB6D307C9
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidclass.sys --a---- 48640 bytes [02:46 21/01/2008] [02:46 21/01/2008] 24A20E8293C91610E3D7AE9EA290F79C
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidir.sys --a---- 25600 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5F47839455D01FF6403B008D481A6F5B
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidparse.sys --a---- 31616 bytes [02:46 21/01/2008] [02:46 21/01/2008] B13C6930BE914AA433C320E01B0182F3
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidusb.sys --a---- 15872 bytes [02:46 21/01/2008] [02:46 21/01/2008] 128E2DA8483FDD4DD0C7B3F9ABD6F323
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidclass.sys --a---- 49152 bytes [16:41 04/01/2011] [05:39 11/04/2009] 70B7902B8DDD3C4B88AC3FC278A9B987
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidir.sys --a---- 25600 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5F47839455D01FF6403B008D481A6F5B
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidparse.sys --a---- 31616 bytes [02:46 21/01/2008] [02:46 21/01/2008] B13C6930BE914AA433C320E01B0182F3
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidusb.sys --a---- 15872 bytes [16:42 04/01/2011] [05:39 11/04/2009] 443BDD2D30BB4F00795C797E2CF99EDF
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_8890ab1127d0950a\kbdhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 74555D356D023C8EA5A0C0CE387EA191
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ar-sa_f44a8d81628a6f1c\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 56BED2E3176D199A6F7F308BB0A061A5
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_cs-cz_4593e5a540929c9e\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] EE1D411C136D1FFAB16E06D7094C4E51
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_da-dk_e2cdc5cc36d8989d\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] F5A961B877500AFC7C618AC12E45AA6C
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_de-de_dff95b0838aeed37\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 3FA979FAF62F58C23D1C2D34A41401EC
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_el-gr_888f889b27c455c5\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] D5DA2C1C54F7D3681CB3C48DD1E2B98B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_en-us_88ea3101278cf8fc\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 3BF43153684D28092815FE8C230C1371
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_es-es_88b58de527b3eaa1\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C50F0B7E65F0C7FC56B99BDAD7DB3531
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_fi-fi_27d092921ccddccb\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] A53713876FC142322B708ADD84FBAF66
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_fr-fr_2b6d03e41a860103\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] B1577096FF12F41BCEAFFF1AB9E32D35
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_he-il_6f8cab8600f501f1\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] E742CF1D987E8293DEA227DC4C68447D
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_hu-hu_72dd842bfee5d01f\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] CF15CFCB8076843F77829C37325A050B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_it-it_1594fa2af1b7e681\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 7595FB33678DEE9FDD2BFD5C368542FD
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ja-jp_b7ba7937e4d2f85c\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 59E0314645967754442A12AB51DD40A4
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ko-kr_5b2455ecd743bf72\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 50A21199364F25298C6DFAE3E1B8060F
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_nb-no_43b6d721af68eb2e\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 36E80C4E81767B9AF6E5D1CF37BECD88
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_nl-nl_41f6225fb094f503\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 1A9A20507BCBD036E8982E935A80FC9C
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_pl-pl_88327ce195b762b7\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C3A899A94C90CB1AAC3522813AA75585
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-br_8a8667859440f69b\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 4E2BD6B98AB08AE186124D22AD698BA8
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-pt_8b6836f193b06677\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 92BD57CCFEF5F1B88EAF0E2AB8C46F28
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ru-ru_d20b48b57891f4a3\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 5FCFDEE7A974F75466B249786EABBD15
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_sv-se_6e06332a6fbafefe\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] AA6E676D4768A86D6159097A40082AD9
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_tr-tr_17137d715e7700ef\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 4936754B8BD56808C54A741AFA6ED0CF
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-cn_e8709b6f0eaed30e\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] 7C09937CB8CEF02BA250BD25E48F2770
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-tw_ec6cd8c50c1faf7e\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] C23465EAC3BB41EA07EC9AA5AA8F70D5
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ar-sa_f4aeb9167bc4e406\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] C0A6CF8F2CDE384825CE6488C5D23B44
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_cs-cz_45f8113a59cd1188\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 45F31D3400790CE86C8FDF8876FCC41A
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_da-dk_e331f16150130d87\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 3F1E21B18B20A6DCF9C93B3C32F1C753
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_de-de_e05d869d51e96221\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] C61875BB403CE7DFEE485E0BA04FF7B9
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_el-gr_88f3b43040fecaaf\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 14209B3C404C05BAD54682ABBD565087
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_en-us_894e5c9640c76de6\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 87DBE584124C74B907C823993E75041C
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_es-es_8919b97a40ee5f8b\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] B50F13B415B955E4577E0F96C26DD309
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_fi-fi_2834be27360851b5\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 35249503AB869EA92DE5DB4DC9108E9B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_fr-fr_2bd12f7933c075ed\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 712AFA48C2D70969067BF25DA1CEB3A6
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_he-il_6ff0d71b1a2f76db\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C7DC650861EE3A7FFB64257F9455688E
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_hu-hu_7341afc118204509\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 98DA2E4A1285114B30AB976E09285CDC
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_it-it_15f925c00af25b6b\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 980084BE214B6F5A0A7FE2E31469EAC9
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ja-jp_b81ea4ccfe0d6d46\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 3A5345A65F0542C2D9480D7FA7B05156
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ko-kr_5b888181f07e345c\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C9B3BE242550464FA26D9A2CE2CB0814
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_nb-no_441b02b6c8a36018\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 4CF6A4F6B67F79F2FFFBBFAD6C12F365
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_nl-nl_425a4df4c9cf69ed\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 42F8B36A59013BFCB428134E06CFCC95
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_pl-pl_8896a876aef1d7a1\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C5ACAFC70ECE87974CE17BFC88BEC00E
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-br_8aea931aad7b6b85\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] E3E45020CB676C1B26F0F53B54765E91
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-pt_8bcc6286aceadb61\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 83B45608249142E238EDD7E2B44D477E
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ru-ru_d26f744a91cc698d\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] F7160E96A984ECEBB4E3760D7457DB85
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_sv-se_6e6a5ebf88f573e8\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] E17DC9D689F80F80C07789186E415E0B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_tr-tr_1777a90677b175d9\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] DDEF7EC37E12CD1A1C870C96AE721AA5
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-cn_e8d4c70427e947f8\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] 6F5484122A7F74AF793C099116C7B5DE
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-tw_ecd1045a255a2468\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] 2E292220BBED7DCD91EC3C7418CB9853
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6001.18000_en-us_8ac76d0d24bba5de\kbdhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 74555D356D023C8EA5A0C0CE387EA191
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6000.16609_none_f18fcd509427b0d2\kbdhid.sys --a---- 20480 bytes [02:23 21/01/2008] [02:23 21/01/2008] 2BD825D29261CA26EEE4D7D055EADF7F
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6000.20734_none_f1f3f8e5ad6225bc\kbdhid.sys --a---- 20480 bytes [02:23 21/01/2008] [02:23 21/01/2008] 61EBCE22C92649468C94367521F201E6
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6001.18000_none_f36d095c91565db4\kbdhid.sys --a---- 20480 bytes [02:46 21/01/2008] [02:46 21/01/2008] BF8783A5066CFECF45095459E8010FA7
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6002.18005_none_f55882688e782900\kbdhid.sys --a---- 22528 bytes [16:42 04/01/2011] [05:33 11/04/2009] DBDF75D51464FBC47D0104EC3D572C05
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_32cae3f13fcc196d\hid.dll --a---- 29184 bytes [02:47 21/01/2008] [02:47 21/01/2008] 56697D33950E5E83A4049F477BE7C320
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_32cae3f13fcc196d\hidserv.dll --a---- 24064 bytes [09:43 02/11/2006] [11:17 02/11/2006] 0AA154538544E988429DA2D5AA803A6C
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_34b65cfd3cede4b9\hid.dll --a---- 29184 bytes [02:47 21/01/2008] [02:47 21/01/2008] 56697D33950E5E83A4049F477BE7C320
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_34b65cfd3cede4b9\hidserv.dll --a---- 24064 bytes [16:42 04/01/2011] [07:11 11/04/2009] 59361D38A297755D46A540E450202B2A
C:\Windows\winsxs\amd64_microsoft-windows-optionaltsps.resources_31bf3856ad364e35_6.0.6000.16386_en-us_9c8733734ad66581\hidphone.tsp.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] 5884717BD6EA77918C786A4C67124CBA
C:\Windows\winsxs\amd64_microsoft-windows-optionaltsps_31bf3856ad364e35_6.0.6000.16386_none_3be417cc84552818\hidphone.tsp --a---- 39424 bytes [10:30 02/11/2006] [11:15 02/11/2006] AE865C840368BEEF09E2E2C619E8DB48
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_2b578e6b518a16ca\mouhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 8845E337CACA296F30191461DC94DF55
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ar-sa_971170db8c43f0dc\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 6E6A8ED7A58813BBA4D1174B48D03450
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_cs-cz_e85ac8ff6a4c1e5e\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] F1D82FF63A88C00E3EB5964D9000C418
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_da-dk_8594a92660921a5d\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 9AEBD8878777F4532ED0FCB6AC26BEFB
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_de-de_82c03e6262686ef7\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 621A5799603A84E36D53D19AB1312AFF
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_el-gr_2b566bf5517dd785\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 43E7E32767CCEE89ADBCB94707893370
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_en-us_2bb1145b51467abc\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 5D94DE4EA29ADCC7ECD0CECEB0754AA2
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_es-es_2b7c713f516d6c61\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 27EAA4A86D87F3B476F3EB34C774E2B6
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_fi-fi_ca9775ec46875e8b\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 37A38E8496B36BA58C80B196D5611502
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_fr-fr_ce33e73e443f82c3\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 7E2D3AE110AD5ECCF4983DABA987A534
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_he-il_12538ee02aae83b1\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 963FD8024F8BFE4043BCB10238EFC14D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_hu-hu_15a46786289f51df\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B81B6E250B7AFCAC4AD5847279B5714D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_it-it_b85bdd851b716841\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 168B71477C68D1CF059F9E80261A92FC
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ja-jp_5a815c920e8c7a1c\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C82A30736DFDB000F2AD6B13776DC221
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ko-kr_fdeb394700fd4132\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] BE6F50DBC045C7A477B24547E845F8BF
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_nb-no_e67dba7bd9226cee\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 59847C00AD8FF1F9C85061721F589E4F
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_nl-nl_e4bd05b9da4e76c3\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B02129B38F063C77F17F73F47D6FC179
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_pl-pl_2af9603bbf70e477\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 3B5A034B57A13A7A0D8F6AF027BFE815
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-br_2d4d4adfbdfa785b\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] F9C942107B21D27FD5208B0E95BF011D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-pt_2e2f1a4bbd69e837\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B69841549238BFCA9885B4B4CA008A06
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ru-ru_74d22c0fa24b7663\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 04E523690DCB6D09F5D4A269F5842AD8
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_sv-se_10cd1684997480be\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B0D389C4581970C8CCD170302700C82F
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_tr-tr_b9da60cb883082af\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 9DFD7368F16084DF4CD4A25BFCA8FA89
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-cn_8b377ec9386854ce\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] DAB8DA8A99B1077B7A360ABF45AE2350
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-tw_8f33bc1f35d9313e\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 016983271AC4B837EB608C6173C914CD
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ar-sa_97759c70a57e65c6\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 2886C35CEFC3F1C549276B5054ACB775
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_cs-cz_e8bef49483869348\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 6967677DBDDF2035172CADADBD7A4163
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_da-dk_85f8d4bb79cc8f47\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 414380C5E10EA6ADCD4546B4796888C5
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_de-de_832469f77ba2e3e1\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 35DD9D86A81617507A7F1104E1FDB550
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_el-gr_2bba978a6ab84c6f\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] C61C2E83D8C49CA89A5C6DD04736936D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_en-us_2c153ff06a80efa6\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] F1998497D0CADD1CCAA4C6478D8F931D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_es-es_2be09cd46aa7e14b\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 5C3A2930A07E40C83D26FC130F42F4E0
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_fi-fi_cafba1815fc1d375\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 41BD53C81B918AF6C403CBAAD5E48BEE
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_fr-fr_ce9812d35d79f7ad\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 35C7F6FF22121609CEB62638F039C202
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_he-il_12b7ba7543e8f89b\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 838AFF3F6445EFECB48324E31874F113
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_hu-hu_1608931b41d9c6c9\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] D01127624E2C25AB9FDA1CF1B2C6906A
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_it-it_b8c0091a34abdd2b\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 68C6ED066E595641EFD41703CA18F77C
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ja-jp_5ae5882727c6ef06\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 63B6DEC345B24E88393494103971EC32
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ko-kr_fe4f64dc1a37b61c\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 8F55F54866744DF86BA507FA70D45507
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_nb-no_e6e1e610f25ce1d8\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] A08D864EEDC92D55CAD4B9D7ABA0F0F2
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_nl-nl_e521314ef388ebad\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 10426D6E8348ED3A11AD0ACA57C9D3CB
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_pl-pl_2b5d8bd0d8ab5961\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 6059D46312DA4AB213F528F69EC9C271
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-br_2db17674d734ed45\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 62A6BDDCBF03BBE0D8D8808FC9B88126
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-pt_2e9345e0d6a45d21\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] EDAFFFD40CD5C7C64C13B5AEFE412F77
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ru-ru_753657a4bb85eb4d\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 54F7F6A2D4EE5907A99B6EBD78ECD94F
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_sv-se_11314219b2aef5a8\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 34EDE8A38D53D1F5B41D64E2B790F6E5
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_tr-tr_ba3e8c60a16af799\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 6220813EFD01D0B7E28C5D2B027A0100
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-cn_8b9baa5e51a2c9b8\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] ECD36794E09807E54DCA6E8588622802
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-tw_8f97e7b44f13a628\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C425BDCFE714765FE35E8C99C4F40595
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6001.18000_en-us_2d8e50674e75279e\mouhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 8845E337CACA296F30191461DC94DF55
C:\Windows\winsxs\amd64_msmouse.inf_31bf3856ad364e35_6.0.6000.16609_none_a8756af48d89f7a6\mouhid.sys --a---- 19968 bytes [02:23 21/01/2008] [02:23 21/01/2008] 328F5836F55CCD1E92377873F646288C
C:\Windows\winsxs\amd64_msmouse.inf_31bf3856ad364e35_6.0.6000.20734_none_a8d99689a6c46c90\mouhid.sys --a---- 19968 bytes [02:23 21/01/2008] [02:23 21/01/2008] FB334AF7111C2A7156C42A780BBF4356
C:\Windows\winsxs\amd64_msmouse.inf_31bf3856ad364e35_6.0.6001.18000_none_aa52a7008ab8a488\mouhid.sys --a---- 19968 bytes [02:46 21/01/2008] [02:46 21/01/2008] C2C2BD5C5CE5AAF786DDD74B75D2AC69
C:\Windows\winsxs\Backup\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f.manifest --a---- 3699 bytes [15:15 02/11/2006] [15:14 02/11/2006] B124939BE6980881AC6DDE504FE369F1
C:\Windows\winsxs\Backup\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f_hid.dll.mui_cccd5ae0 --a---- 2048 bytes [15:15 02/11/2006] [15:14 02/11/2006] C314B9FF126E279F0790A9629A54183B
C:\Windows\winsxs\Backup\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f_hidserv.dll.mui_561adfc8 --a---- 3072 bytes [15:15 02/11/2006] [15:14 02/11/2006] B2FE83D3833D87E4149843FFE717E011
C:\Windows\winsxs\Backup\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29.manifest --a---- 3697 bytes [15:15 02/11/2006] [15:14 02/11/2006] 9F1FA27D757026CBE015A636C36F8A77
C:\Windows\winsxs\Backup\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29_hid.dll.mui_cccd5ae0 --a---- 2560 bytes [15:15 02/11/2006] [15:14 02/11/2006] 70A4545883B0D4E97946ACE7E0BE75E0
C:\Windows\winsxs\Backup\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29_hidserv.dll.mui_561adfc8 --a---- 3584 bytes [15:15 02/11/2006] [15:14 02/11/2006] E27C46A5394FA29E8F1AEC9D5671D033
C:\Windows\winsxs\FileMaps\$$_inf_wsearchidxpi_0000_2e6e3f1caf9fca20.cdf-ms --a---- 848 bytes [15:06 02/11/2006] [15:05 02/11/2006] 25B513596A4A535FEC711643D54B3244
C:\Windows\winsxs\FileMaps\$$_inf_wsearchidxpi_0409_2e6e3e8caf9fcb6d.cdf-ms --a---- 824 bytes [15:15 02/11/2006] [15:14 02/11/2006] 2C74D6693E18799E470562FCBC067365
C:\Windows\winsxs\FileMaps\$$_inf_wsearchidxpi_a2c41dc1731a4204.cdf-ms --a---- 840 bytes [15:06 02/11/2006] [15:14 02/11/2006] 03610E0E118F9732816A2B9C2AFEB4AF
C:\Windows\winsxs\Manifests\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f.manifest --a---- 3699 bytes [15:10 02/11/2006] [15:10 02/11/2006] B124939BE6980881AC6DDE504FE369F1
C:\Windows\winsxs\Manifests\amd64_hidbth.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_26a3f0212eb00586.manifest --a---- 2867 bytes [15:10 02/11/2006] [15:10 02/11/2006] 5DD9EF53C5C474D879F529956F42B787
C:\Windows\winsxs\Manifests\amd64_hidbth.inf_31bf3856ad364e35_6.0.6001.18000_none_7f3158ad0dd10fac.manifest --a---- 1671 bytes [02:34 21/01/2008] [02:34 21/01/2008] 9B1B3052BB77EEBA8037206C64B79198
C:\Windows\winsxs\Manifests\amd64_hidbth.inf_31bf3856ad364e35_6.0.6002.18005_none_811cd1b90af2daf8.manifest ------- 1671 bytes [16:31 04/01/2011] [16:31 04/01/2011] 93EBC698C245F11B5325F56306A6081C
C:\Windows\winsxs\Manifests\amd64_hiddigi.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_90d48ed991e520d7.manifest --a---- 3770 bytes [15:10 02/11/2006] [15:10 02/11/2006] F0502D2D7A79159034248842C7C7D8FE
C:\Windows\winsxs\Manifests\amd64_hiddigi.inf_31bf3856ad364e35_6.0.6001.18000_none_f17ae014fe39679d.manifest --a---- 2256 bytes [02:34 21/01/2008] [02:34 21/01/2008] F19B378A1399DC75B15AABDB40495F0B
C:\Windows\winsxs\Manifests\amd64_hidserv.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_8020deaa00fc5562.manifest --a---- 1912 bytes [15:10 02/11/2006] [15:10 02/11/2006] D5A0D49DF849C326AF678BEC38984ADB
C:\Windows\winsxs\Manifests\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6000.16386_none_309421f542e10899.manifest --a---- 8537 bytes [12:31 02/11/2006] [12:19 02/11/2006] A2F1483787D0888201A6CA3B330CA5FA
C:\Windows\winsxs\Manifests\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_32cae3f13fcc196d.manifest --a---- 8492 bytes [02:37 21/01/2008] [02:37 21/01/2008] 2B45FD75C7B8D62C17C20824962B55E6
C:\Windows\winsxs\Manifests\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_34b65cfd3cede4b9.manifest ------- 8492 bytes [16:29 04/01/2011] [06:09 11/04/2009] 5DCBDCAA94B686C6DEEAAC68AD0C685E
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16386_none_c05f4363228808ef.manifest --a---- 8533 bytes [12:32 02/11/2006] [12:23 02/11/2006] 33127BD4802886B54F9DF6137FA96302
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16720_none_c09a28c7225cbddb.manifest ------- 8533 bytes [02:45 04/01/2011] [23:36 27/07/2008] 8FEE4BF7F9A2280545A72040B216FE98
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.20883_none_c0e5e6e83ba85150.manifest ------- 8533 bytes [02:45 04/01/2011] [23:35 27/07/2008] 52B28731F05AF11558CA3E97A3210E98
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18000_none_c296055f1f7319c3.manifest --a---- 8533 bytes [02:37 21/01/2008] [02:37 21/01/2008] FFEEF269BAAE818724332539960BB31A
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18111_none_c28c37a31f7a4c32.manifest ------- 8533 bytes [02:45 04/01/2011] [23:54 27/07/2008] 3DE1D9B0166F0C6B36E292E265AFDF58
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.22230_none_c2ff344c38a90a87.manifest ------- 8533 bytes [02:45 04/01/2011] [00:07 28/07/2008] DB578F534ADBEC88129C8E060B74A4F8
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6002.18005_none_c4817e6b1c94e50f.manifest ------- 8488 bytes [16:30 04/01/2011] [06:09 11/04/2009] 308DFC9E3A1BF3BD9A3A464B5B2196C3
C:\Windows\winsxs\Manifests\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6000.16386_none_3ae8cc477741ca94.manifest --a---- 4497 bytes [12:31 02/11/2006] [09:58 02/11/2006] 5724DE9A85DE7E9825F883C4FD0281BA
C:\Windows\winsxs\Manifests\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_3d1f8e43742cdb68.manifest --a---- 4404 bytes [02:38 21/01/2008] [02:38 21/01/2008] C532C9DF7EEF1E6914B281533F9E9BC3
C:\Windows\winsxs\Manifests\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_3f0b074f714ea6b4.manifest ------- 4452 bytes [16:29 04/01/2011] [05:37 11/04/2009] 00D8C8C83800534FE559B9F7ACC04B57
C:\Windows\winsxs\Manifests\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29.manifest --a---- 3697 bytes [15:10 02/11/2006] [15:10 02/11/2006] 9F1FA27D757026CBE015A636C36F8A77
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16386_none_6440a7df6a2a97b9.manifest --a---- 8527 bytes [12:31 02/11/2006] [10:18 02/11/2006] A50E681399CD51F17B6C3E73F5E21033
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16720_none_647b8d4369ff4ca5.manifest ------- 8527 bytes [02:45 04/01/2011] [23:18 27/07/2008] 146A66C140034926C0209CCF6FE19073
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.20883_none_64c74b64834ae01a.manifest ------- 8527 bytes [02:45 04/01/2011] [23:20 27/07/2008] 143B1258B8B9E708806EB845E2E76E6C
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18000_none_667769db6715a88d.manifest --a---- 8527 bytes [02:38 21/01/2008] [02:38 21/01/2008] CD4DAE54D213B75E87913A70DF98B209
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18111_none_666d9c1f671cdafc.manifest ------- 8527 bytes [02:45 04/01/2011] [23:43 27/07/2008] 57FAA1EA0A3A875DF3F9C58429955BCA
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.22230_none_66e098c8804b9951.manifest ------- 8527 bytes [02:45 04/01/2011] [23:29 27/07/2008] D9571CAF7C08B33CA96A6C786D239D1B
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6002.18005_none_6862e2e7643773d9.manifest ------- 8482 bytes [16:29 04/01/2011] [05:36 11/04/2009] EC58312C845AB8452605CE5EFED6BC17
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_3d1f8e43742cdb68\hid.dll --a---- 22016 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8269CC01940A202BBB9FDF26705DBD67
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_3d1f8e43742cdb68\hidserv.dll --a---- 25600 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8FA640195279ACE21BEA91396A0054FC
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_3f0b074f714ea6b4\hid.dll --a---- 22016 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8269CC01940A202BBB9FDF26705DBD67
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_3f0b074f714ea6b4\hidserv.dll --a---- 26112 bytes [16:42 04/01/2011] [06:28 11/04/2009] 84067081F3318162797385E11A8F0582
C:\Windows\winsxs\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29\hid.dll.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 70A4545883B0D4E97946ACE7E0BE75E0
C:\Windows\winsxs\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29\hidserv.dll.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] E27C46A5394FA29E8F1AEC9D5671D033
C:\Windows\winsxs\x86_microsoft-windows-optionaltsps.resources_31bf3856ad364e35_6.0.6000.16386_en-us_406897ef9278f44b\hidphone.tsp.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] B513B14ACD6CC7BC3BCFB0B90ACF9FE6
C:\Windows\winsxs\x86_microsoft-windows-optionaltsps_31bf3856ad364e35_6.0.6000.16386_none_dfc57c48cbf7b6e2\hidphone.tsp --a---- 31744 bytes [12:20 02/11/2006] [09:44 02/11/2006] B4B59AC042EE3733A862F26CBC0B17FC

-= EOF =-

#12 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:07:59 AM

Posted 05 February 2012 - 02:58 PM

Hi,

My apologies, I have given you the wrong version of system look, you need the 64 bit version

if you could please run that scan again thanks

the 64 bit version can be downloaded from either of the links below

Link 1
Link 2

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#13 eighteight

eighteight
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 05 February 2012 - 06:13 PM

SystemLook 30.07.11 by jpshortstuff
Log created at 18:12 on 05/02/2012 by Jorrell
Administrator - Elevation successful

========== filefind ==========

Searching for "*hid*"
C:\Program Files\Tablet\wacomvhid.cat --a---- 7597 bytes [03:44 04/01/2012] [17:10 17/03/2011] 70733EBAA6A6F78D992DB28050DEC608
C:\Program Files\Tablet\wacomvhid.inf --a---- 2053 bytes [03:44 04/01/2012] [17:10 17/03/2011] 31E9DE8DFCCBFDD496D9E321D0D60085
C:\Program Files\Tablet\wacomvhid.sys --a---- 16168 bytes [03:44 04/01/2012] [17:10 17/03/2011] EC1CEB237E365330C1FCFC4876AA0AC0
C:\Program Files (x86)\CyberLink\PowerDVD11\Movie\PK\DVD\control\autohide.kc --a---- 3046 bytes [03:27 09/05/2011] [13:03 14/04/2011] 1C09E7CB1BEB460DDB1FD50631145D5B
C:\Program Files (x86)\Red Kawa\Video Converter App\res\hiddenWindow.html --a---- 117 bytes [13:04 21/09/2009] [13:04 21/09/2009] 0C016C31BF6369424576EB280C105866
C:\Program Files (x86)\Yahoo!\Messenger\skins\Default\VoiceUI\video_hide_pip.png --a---- 434 bytes [00:54 03/01/2011] [21:46 20/04/2010] B45446F5C53F347CDD14382C62BFAC41
C:\Users\Jorrell\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T3FSOH4P\Block_Array_HideShowClear[1].js --a---- 2916 bytes [13:09 26/01/2012] [13:09 26/01/2012] E299B4A62B59FB84A4DF2966FB308483
C:\Users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}\components\dhIDOMHook.xpt --a---- 224 bytes [03:01 24/12/2011] [10:08 17/12/2011] 0E3E66CF97BB7AE6B38D6B817BDF2A27
C:\Users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}\components\dhIDownloadListener.xpt --a---- 248 bytes [03:01 24/12/2011] [10:08 17/12/2011] CFBB391C84CC6BF03E28BFE768DBD42C
C:\Users\Jorrell\AppData\Roaming\Mozilla\Firefox\Profiles\alu1ha9k.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}\components\dhIDownloadMgr.xpt --a---- 713 bytes [03:01 24/12/2011] [10:08 17/12/2011] A931734975BEF133E57BACAEC3C002DA
C:\Users\Jorrell\Desktop\MEDIA\Music\DMX\DMX - The Great Depression\Dmx-17-a_minute_for_your_son_(plus_two_hidden_bonus_trac-rns.mp3 --a---- 24313746 bytes [03:52 06/07/2011] [21:07 10/07/2011] 44C24A0E2505CBA9F5B2087AEA229882
C:\Users\Jorrell\Desktop\MEDIA\Music\E\Earth, Wind & Fire-19 cd\Earth, Wind & Fire-Gratitude-1975\Earth,Wind & Fire - Gratitude - 16 - Can't Hide Love.mp3 --a---- 8020102 bytes [03:05 03/01/2011] [18:04 14/05/2009] 77342E9E87DA5232E37645CD33E57163
C:\Users\Jorrell\Desktop\MEDIA\Music\E\Earth, Wind & Fire-19 cd\Earth, Wind & Fire-Greatest Hits\Earth, Wind & Fire - 04 - Can't hide love.mp3 --a---- 5849996 bytes [03:05 03/01/2011] [18:39 12/05/2009] BCF2E5BC9B385907E39A56A2DB73B8C9
C:\Users\Jorrell\Desktop\MEDIA\Music\E\Earth, Wind & Fire-19 cd\Earth, Wind & Firee-The Eternal Dance-1992-CD2\06 - Can't Hide Love.mp3 --a---- 6156607 bytes [03:06 03/01/2011] [04:26 03/01/2011] 7FB90B991636A3D3F59EEDC50BDECAF6
C:\Users\Jorrell\Desktop\MEDIA\Music\J\Jedi Mind Tricks Discography\Jedi Mind Tricks - Violent By Design\Track 21 - Heavenly Design [Remix] [Hidden Track].mp3 --a---- 4061711 bytes [03:52 03/01/2011] [04:27 03/01/2011] F40408957EFE071E661F52AE159F01C6
C:\Users\Jorrell\Desktop\MEDIA\Music\J\Jedi Mind Tricks Discography\Jedi Mind Tricks - Violent By Design\Track 22 - War Ensamble [Hidden Track].mp3 --a---- 4994283 bytes [03:52 03/01/2011] [04:27 03/01/2011] E693E2B6BE29FEA256A5F348E1D14C68
C:\Users\Jorrell\Desktop\MEDIA\Music\K\Kanye West\Kanye West - Late Registration\21 Kanye West - Late (Hidden Track).mp3 --a---- 3701392 bytes [03:52 03/01/2011] [04:22 14/05/2009] 7FB12008FADECD5B5716AAD0D817E4BF
C:\Users\Jorrell\Desktop\MEDIA\Music\Mos Def - The Ecstatic [GeneGeter.com]\04-mos_def-wahid.mp3 --a---- 1932870 bytes [03:55 03/01/2011] [04:24 03/01/2011] ED00402F1980FEE1AC6F55775B746FFB
C:\Users\Jorrell\Desktop\MEDIA\Music\O\OutKast Discography\Outkast-SpeakerboxxxThe_Love_Below-2003\20-outkast-[untitled_hidden_track].mp3 --a---- 12601261 bytes [03:56 03/01/2011] [18:02 19/05/2009] A05F6EC0FC3B9207F4B99A7D70301988
C:\Users\Jorrell\Desktop\MEDIA\Music\Pendulum - Dan's Collection 04\05 - Greatest Hits - Bootleg\Pendulum - 210 - Aphid.mp3 --a---- 6054224 bytes [03:58 03/01/2011] [01:43 11/06/2009] 7FC146BF73ED90E4D7A4DD3F165FB589
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Face of the Ghost\02-ghostface_killah-hideyaface_(el-p_mix)_(feat_el-p)-thhf.mp3 --a---- 4509775 bytes [03:41 29/05/2011] [04:01 29/05/2011] 5AC0937D8B136668298F35BB6404EF9B
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Face of the Ghost\15-ghostface_killah-hideyaface_(prefuse_73_mix)_(feat_el-p)-thhf.mp3 --a---- 4823877 bytes [03:41 29/05/2011] [04:07 29/05/2011] D33FA3E3248C4E28BF55C8312E3B25BC
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Hidden Darts\00-ghostface_killah-hidden_darts_(special_edition)-2007-cd-front-ftd.jpg --a---- 98021 bytes [03:41 29/05/2011] [04:33 29/05/2011] 7B3EA8DF77F0DB377DB9CEE94EFFE458
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2007) - Hidden Darts\01-ghostface_killah-hidden_darts-ftd.mp3 --a---- 3410589 bytes [03:41 29/05/2011] [04:12 29/05/2011] 7257C8E33982712FFD30EE425AED47AB
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\Ghostface Killah (2008) - The_Wallabee_Champ\Ghostface_Killah-The_Wallabee_Champ-2008-C4\08-ghostface_killah-hidden_darts_(remix).mp3 --a---- 3027760 bytes [03:41 29/05/2011] [17:59 12/06/2011] F8EF3E5D4C6DB778667FF25BB8370921
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\GZA (2008) - D.A.R.T.S\30-gza-hidden_track_1.mp3 --a---- 482319 bytes [03:41 29/05/2011] [03:45 29/05/2011] 269C84D39A29DA988CEFBA801AB0983A
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\GZA (2008) - D.A.R.T.S\31-gza-hidden_track_2.mp3 --a---- 2981708 bytes [03:41 29/05/2011] [04:42 29/05/2011] FCFC0454AC34313482957D836839C1D7
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part I (RAP)(by dragan09)\J-Love And Method Man - A Taste Of Tical 0 Pt.3\22-method_man-raw_hide_(feat._ol_dirty_bastard_and_raekwon).mp3 --a---- 5517501 bytes [03:41 29/05/2011] [15:31 29/05/2011] 8D4BE704B2D1D2144401055B1C054DAC
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Method Man (1995) - The Riddler Maxi\2.Method Man (1995) - The riddler Hide-out remix.mp3 --a---- 4733812 bytes [03:46 29/05/2011] [06:49 29/05/2011] 5547778766DF5166AF16F3D22858A250
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Method Man (1995) - The Riddler Maxi\4.Method Man (1995) - The riddler Hide-out remix instrumental.mp3 --a---- 5432428 bytes [03:46 29/05/2011] [05:57 29/05/2011] 37C7389C65C51A0EE620CB044D58F220
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Method Man (2008) - Johnny Blaze Strikes\14-method_man-raw_hide_ft._old_dirty_bastard_and_raekwon.mp3 --a---- 5000703 bytes [03:46 29/05/2011] [16:02 12/06/2011] 717F0A25CCC455CC45465CAC357634B5
C:\Users\Jorrell\Desktop\MEDIA\Music\Wu-Tang Clan Part II (RAP)(by dragan09)\Ol Dirty Bastard (1995) - Return to the 36 Chambers\6.Ol Dirty Bastard (1995) - Raw hide.mp3 --a---- 5810630 bytes [03:46 29/05/2011] [16:13 12/06/2011] 9A09D733BA6CFFB972117E84040B5BCD
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Animals\Dragon fly\800px-IC_Gomphidae_wing.jpg --a---- 83048 bytes [16:37 27/04/2011] [19:43 21/03/2008] 743CF2F0F570E3E52296447EEB29BDFF
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Armour\samurai\Do\Do_02\Myochin-Uchidashi-Do-2-webv.gif --a---- 172627 bytes [16:37 27/04/2011] [00:28 29/12/2008] DFBEE1F24EE40EA32B1EC5B6F2856422
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Armour\samurai\Do\Do_02\Myochin-Uchidashi-Do-4-webv.gif --a---- 288056 bytes [16:37 27/04/2011] [00:28 29/12/2008] 93FD73156D687A624A97BCAEF8155B19
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Armour\samurai\Do\Do_02\Myochin-Uchidashi-Do-webver.gif --a---- 187872 bytes [16:37 27/04/2011] [00:28 29/12/2008] 7ABC8925A5475DDAD5E04D8FC36D1985
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideshan.jpg --a---- 49850 bytes [16:38 27/04/2011] [01:56 03/02/2010] D246567A0083AEF5810A0A1A820B6DAE
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyang2.jpg --a---- 46614 bytes [16:38 27/04/2011] [01:55 03/02/2010] D8DAE16D1F75A5D34AEC27FC95BA0411
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyangkick1.jpg --a---- 95339 bytes [16:38 27/04/2011] [01:54 03/02/2010] 0E4761F903E88AE650CF36E5EE69EE45
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyangkick2.jpg --a---- 65974 bytes [16:38 27/04/2011] [01:54 03/02/2010] 3DB5CC56CA91524F45C77E561576056C
C:\Users\Jorrell\Desktop\MEDIA\[001]Digital Projects\Art Reference Photos\Martial arts\Martial Arts Stances\shideyangonbasket2.jpg --a---- 95707 bytes [16:38 27/04/2011] [01:55 03/02/2010] B5433BAD2086ED4E125E0E63757E7115
C:\Users\Jorrell\Documents\My Games\Skyrim\Saves\Save 412 - Reign Lost Knife Hideout 11.17.53.ess --a---- 5252407 bytes [06:41 30/11/2011] [06:41 30/11/2011] 377141700F04BB7D364CA4E374539750
C:\Windows\inf\hidbth.inf --a---- 4298 bytes [12:40 02/11/2006] [21:24 04/01/2011] 128473A8ABF0CAB873F43D71E1420E01
C:\Windows\inf\hidbth.PNF --a---- 9716 bytes [12:40 02/11/2006] [21:24 04/01/2011] 702861F5A6ED9D0CA9E727398213D9A0
C:\Windows\inf\hiddigi.inf --a---- 5468 bytes [12:40 02/11/2006] [03:00 21/01/2008] EDC1FEBFF3FFE131A3C1996C35C05D6B
C:\Windows\inf\hiddigi.PNF --a---- 9420 bytes [12:40 02/11/2006] [03:00 21/01/2008] D8A9F2F27F6229FA915BE917E7890FE3
C:\Windows\inf\hidserv.inf --a---- 9974 bytes [12:40 02/11/2006] [12:40 02/11/2006] BE0294653AB0C9E907A6105EE4B036B7
C:\Windows\inf\hidserv.PNF --a---- 19952 bytes [12:40 02/11/2006] [03:25 03/01/2011] 0528FC57CEC5CAD77D227308EFCDFACA
C:\Windows\Prefetch\HIDEC.3XE-AF1E4858.pf --a---- 17554 bytes [17:25 05/02/2012] [18:01 05/02/2012] 54A20D1F2834E66E6142183D36C9C719
C:\Windows\Prefetch\HIDEC.3XE-ECCA009B.pf --a---- 17172 bytes [17:37 05/02/2012] [17:37 05/02/2012] D6C5B1F6D6472BBF3A779BFEC5EE5E42
C:\Windows\System32\hid.dll --a---- 29184 bytes [02:47 21/01/2008] [02:47 21/01/2008] 56697D33950E5E83A4049F477BE7C320
C:\Windows\System32\hidphone.tsp --a---- 39424 bytes [10:30 02/11/2006] [11:15 02/11/2006] AE865C840368BEEF09E2E2C619E8DB48
C:\Windows\System32\hidserv.dll --a---- 24064 bytes [16:42 04/01/2011] [07:11 11/04/2009] 59361D38A297755D46A540E450202B2A
C:\Windows\System32\drivers\hidbth.sys --a---- 34304 bytes [09:44 02/11/2006] [09:44 02/11/2006] B4881C84A180E75B8C25DC1D726C375F
C:\Windows\System32\drivers\hidclass.sys --a---- 49152 bytes [16:41 04/01/2011] [05:39 11/04/2009] 70B7902B8DDD3C4B88AC3FC278A9B987
C:\Windows\System32\drivers\hidir.sys --a---- 25600 bytes [09:43 02/11/2006] [09:43 02/11/2006] 4E77A77E2C986E8F88F996BB3E1AD829
C:\Windows\System32\drivers\hidparse.sys --a---- 31616 bytes [02:46 21/01/2008] [02:46 21/01/2008] B13C6930BE914AA433C320E01B0182F3
C:\Windows\System32\drivers\hidusb.sys --a---- 15872 bytes [16:42 04/01/2011] [05:39 11/04/2009] 443BDD2D30BB4F00795C797E2CF99EDF
C:\Windows\System32\drivers\kbdhid.sys --a---- 22528 bytes [16:42 04/01/2011] [05:33 11/04/2009] DBDF75D51464FBC47D0104EC3D572C05
C:\Windows\System32\drivers\mouhid.sys --a---- 19968 bytes [09:37 02/11/2006] [02:46 21/01/2008] C2C2BD5C5CE5AAF786DDD74B75D2AC69
C:\Windows\System32\drivers\wacomvhid.sys --a---- 16168 bytes [03:44 04/01/2012] [17:10 17/03/2011] EC1CEB237E365330C1FCFC4876AA0AC0
C:\Windows\System32\drivers\en-US\hidbth.sys.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] 33555955DA42F539ADFEE1BA3596988B
C:\Windows\System32\drivers\en-US\kbdhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 74555D356D023C8EA5A0C0CE387EA191
C:\Windows\System32\drivers\en-US\mouhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 8845E337CACA296F30191461DC94DF55
C:\Windows\System32\DriverStore\en-US\hidbth.inf_loc --a---- 1088 bytes [15:13 02/11/2006] [15:13 02/11/2006] 236953BAF992DCF4F2BDB504481A7EA6
C:\Windows\System32\DriverStore\en-US\hiddigi.inf_loc --a---- 418 bytes [15:13 02/11/2006] [15:13 02/11/2006] 32B9CA4A0CE453FEB270AF905C9D2819
C:\Windows\System32\DriverStore\en-US\hidserv.inf_loc --a---- 3450 bytes [15:12 02/11/2006] [15:12 02/11/2006] 4F5C1060E8D641B00F2E756CB6D307C9
C:\Windows\System32\DriverStore\FileRepository\battery.inf_03570d6d\hidbatt.sys --a---- 26624 bytes [02:45 21/01/2008] [02:45 21/01/2008] 68214C82FA6222591873677A72DF2A66
C:\Windows\System32\DriverStore\FileRepository\battery.inf_26cf2185\hidbatt.sys --a---- 26624 bytes [12:40 02/11/2006] [09:09 02/11/2006] 4C4CE87C10D59B5BE8BC0CB5EF1056E2
C:\Windows\System32\DriverStore\FileRepository\hidbth.inf_0370b1eb\hidbth.inf --a---- 4020 bytes [12:40 02/11/2006] [06:38 02/11/2006] 94280EE85729C6F52375E2FC472004B3
C:\Windows\System32\DriverStore\FileRepository\hidbth.inf_0370b1eb\hidbth.sys --a---- 34304 bytes [12:40 02/11/2006] [09:44 02/11/2006] B4881C84A180E75B8C25DC1D726C375F
C:\Windows\System32\DriverStore\FileRepository\hidbth.inf_46d24e8f\hidbth.inf --a---- 4020 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5A547F73D0222BF90CF12A1AAB78AB88
C:\Windows\System32\DriverStore\FileRepository\hidbth.inf_46d24e8f\hidbth.sys --a---- 34304 bytes [02:46 21/01/2008] [02:46 21/01/2008] 824FD154B9371E42ADB67590BDED5F6C
C:\Windows\System32\DriverStore\FileRepository\hidbth.inf_b16aea5d\hidbth.inf --a---- 4298 bytes [16:41 04/01/2011] [02:13 11/04/2009] 128473A8ABF0CAB873F43D71E1420E01
C:\Windows\System32\DriverStore\FileRepository\hidbth.inf_b16aea5d\hidbth.sys --a---- 36864 bytes [16:42 04/01/2011] [05:39 11/04/2009] 39F7D79B3401BE029D8451F761D30331
C:\Windows\System32\DriverStore\FileRepository\hiddigi.inf_650e70a2\hiddigi.inf --a---- 5468 bytes [02:46 21/01/2008] [02:46 21/01/2008] EDC1FEBFF3FFE131A3C1996C35C05D6B
C:\Windows\System32\DriverStore\FileRepository\hiddigi.inf_cf5047c2\hiddigi.inf --a---- 5468 bytes [12:40 02/11/2006] [06:38 02/11/2006] 9C36F46354F865009D9EB052436B8EE2
C:\Windows\System32\DriverStore\FileRepository\hidserv.inf_5093a9b1\hidserv.inf --a---- 9974 bytes [12:40 02/11/2006] [06:38 02/11/2006] BE0294653AB0C9E907A6105EE4B036B7
C:\Windows\System32\DriverStore\FileRepository\hidserv.inf_5093a9b1\hidserv.PNF --a---- 19952 bytes [03:25 03/01/2011] [03:25 03/01/2011] E7E822B32932A6A55F65668102F41AF6
C:\Windows\System32\DriverStore\FileRepository\input.inf_0f72917a\hidclass.sys --a---- 48640 bytes [02:46 21/01/2008] [02:46 21/01/2008] 24A20E8293C91610E3D7AE9EA290F79C
C:\Windows\System32\DriverStore\FileRepository\input.inf_0f72917a\hidir.sys --a---- 25600 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5F47839455D01FF6403B008D481A6F5B
C:\Windows\System32\DriverStore\FileRepository\input.inf_0f72917a\hidparse.sys --a---- 31616 bytes [02:46 21/01/2008] [02:46 21/01/2008] B13C6930BE914AA433C320E01B0182F3
C:\Windows\System32\DriverStore\FileRepository\input.inf_0f72917a\hidusb.sys --a---- 15872 bytes [02:46 21/01/2008] [02:46 21/01/2008] 128E2DA8483FDD4DD0C7B3F9ABD6F323
C:\Windows\System32\DriverStore\FileRepository\input.inf_26654738\hidclass.sys --a---- 49152 bytes [16:41 04/01/2011] [05:39 11/04/2009] 70B7902B8DDD3C4B88AC3FC278A9B987
C:\Windows\System32\DriverStore\FileRepository\input.inf_26654738\hidir.sys --a---- 25600 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5F47839455D01FF6403B008D481A6F5B
C:\Windows\System32\DriverStore\FileRepository\input.inf_26654738\hidparse.sys --a---- 31616 bytes [02:46 21/01/2008] [02:46 21/01/2008] B13C6930BE914AA433C320E01B0182F3
C:\Windows\System32\DriverStore\FileRepository\input.inf_26654738\hidusb.sys --a---- 15872 bytes [16:42 04/01/2011] [05:39 11/04/2009] 443BDD2D30BB4F00795C797E2CF99EDF
C:\Windows\System32\DriverStore\FileRepository\input.inf_85616b02\hidclass.sys --a---- 48640 bytes [12:40 02/11/2006] [09:43 02/11/2006] A64E5B6648678E635CD8BFEF68CEC8EB
C:\Windows\System32\DriverStore\FileRepository\input.inf_85616b02\hidir.sys --a---- 25600 bytes [12:40 02/11/2006] [09:43 02/11/2006] 4E77A77E2C986E8F88F996BB3E1AD829
C:\Windows\System32\DriverStore\FileRepository\input.inf_85616b02\hidparse.sys --a---- 31616 bytes [12:40 02/11/2006] [09:43 02/11/2006] B9379F84140A47DDDB928A76F2D28E67
C:\Windows\System32\DriverStore\FileRepository\input.inf_85616b02\hidusb.sys --a---- 15872 bytes [12:40 02/11/2006] [09:43 02/11/2006] D02C82CB3A20F391C8AEFF94E8E0BAA1
C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_36381f4d\kbdhid.sys --a---- 20480 bytes [02:23 21/01/2008] [02:23 21/01/2008] 2BD825D29261CA26EEE4D7D055EADF7F
C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_917586af\kbdhid.sys --a---- 22528 bytes [16:42 04/01/2011] [05:33 11/04/2009] DBDF75D51464FBC47D0104EC3D572C05
C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_c5bba9ff\kbdhid.sys --a---- 20480 bytes [12:40 02/11/2006] [09:37 02/11/2006] 2B08052372C1F0DFFC31CDD6E5ABC4B5
C:\Windows\System32\DriverStore\FileRepository\keyboard.inf_d1a065f2\kbdhid.sys --a---- 20480 bytes [02:46 21/01/2008] [02:46 21/01/2008] BF8783A5066CFECF45095459E8010FA7
C:\Windows\System32\DriverStore\FileRepository\msmouse.inf_3af80ae6\mouhid.sys --a---- 19968 bytes [02:23 21/01/2008] [02:23 21/01/2008] 328F5836F55CCD1E92377873F646288C
C:\Windows\System32\DriverStore\FileRepository\msmouse.inf_70041ef7\mouhid.sys --a---- 19968 bytes [12:40 02/11/2006] [09:37 02/11/2006] 8B723ED4D5DBBC47A5F54AF0515BC245
C:\Windows\System32\DriverStore\FileRepository\msmouse.inf_b059871c\mouhid.sys --a---- 19968 bytes [02:46 21/01/2008] [02:46 21/01/2008] C2C2BD5C5CE5AAF786DDD74B75D2AC69
C:\Windows\System32\DriverStore\FileRepository\wacomvhid.inf_88688a86\wacomvhid.cat --a---- 7597 bytes [03:44 04/01/2012] [17:10 17/03/2011] 70733EBAA6A6F78D992DB28050DEC608
C:\Windows\System32\DriverStore\FileRepository\wacomvhid.inf_88688a86\wacomvhid.inf --a---- 2053 bytes [03:44 04/01/2012] [17:10 17/03/2011] 31E9DE8DFCCBFDD496D9E321D0D60085
C:\Windows\System32\DriverStore\FileRepository\wacomvhid.inf_88688a86\wacomvhid.PNF --a---- 8720 bytes [03:45 04/01/2012] [03:45 04/01/2012] AC1F49CA6545A680DD8AF2EB3AED7A92
C:\Windows\System32\DriverStore\FileRepository\wacomvhid.inf_88688a86\wacomvhid.sys --a---- 16168 bytes [03:44 04/01/2012] [17:10 17/03/2011] EC1CEB237E365330C1FCFC4876AA0AC0
C:\Windows\System32\DriverStore\Temp\{b596636c-0c6e-488e-8a5a-a6ea7d5c61ac}\Package\wacomvhid.cat --a---- 7597 bytes [03:44 04/01/2012] [17:10 17/03/2011] 70733EBAA6A6F78D992DB28050DEC608
C:\Windows\System32\en-US\hid.dll.mui --a---- 2048 bytes [15:13 02/11/2006] [15:13 02/11/2006] C314B9FF126E279F0790A9629A54183B
C:\Windows\System32\en-US\hidphone.tsp.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] 5884717BD6EA77918C786A4C67124CBA
C:\Windows\System32\en-US\hidserv.dll.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] B2FE83D3833D87E4149843FFE717E011
C:\Windows\SysWOW64\hid.dll --a---- 22016 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8269CC01940A202BBB9FDF26705DBD67
C:\Windows\SysWOW64\hidphone.tsp --a---- 31744 bytes [12:20 02/11/2006] [09:44 02/11/2006] B4B59AC042EE3733A862F26CBC0B17FC
C:\Windows\SysWOW64\hidserv.dll --a---- 26112 bytes [16:42 04/01/2011] [06:28 11/04/2009] 84067081F3318162797385E11A8F0582
C:\Windows\SysWOW64\en-US\hid.dll.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 70A4545883B0D4E97946ACE7E0BE75E0
C:\Windows\SysWOW64\en-US\hidphone.tsp.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] B513B14ACD6CC7BC3BCFB0B90ACF9FE6
C:\Windows\SysWOW64\en-US\hidserv.dll.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] E27C46A5394FA29E8F1AEC9D5671D033
C:\Windows\winsxs\amd64_battery.inf_31bf3856ad364e35_6.0.6001.18000_none_72462e700c2d96e6\hidbatt.sys --a---- 26624 bytes [02:45 21/01/2008] [02:45 21/01/2008] 68214C82FA6222591873677A72DF2A66
C:\Windows\winsxs\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f\hid.dll.mui --a---- 2048 bytes [15:13 02/11/2006] [15:13 02/11/2006] C314B9FF126E279F0790A9629A54183B
C:\Windows\winsxs\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f\hidserv.dll.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] B2FE83D3833D87E4149843FFE717E011
C:\Windows\winsxs\amd64_hidbth.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_26a3f0212eb00586\hidbth.inf_loc --a---- 1088 bytes [15:13 02/11/2006] [15:13 02/11/2006] 236953BAF992DCF4F2BDB504481A7EA6
C:\Windows\winsxs\amd64_hidbth.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_26a3f0212eb00586\hidbth.sys.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] 33555955DA42F539ADFEE1BA3596988B
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6001.18000_none_7f3158ad0dd10fac\hidbth.inf --a---- 4020 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5A547F73D0222BF90CF12A1AAB78AB88
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6001.18000_none_7f3158ad0dd10fac\hidbth.sys --a---- 34304 bytes [02:46 21/01/2008] [02:46 21/01/2008] 824FD154B9371E42ADB67590BDED5F6C
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6002.18005_none_811cd1b90af2daf8\hidbth.inf --a---- 4298 bytes [16:41 04/01/2011] [02:13 11/04/2009] 128473A8ABF0CAB873F43D71E1420E01
C:\Windows\winsxs\amd64_hidbth.inf_31bf3856ad364e35_6.0.6002.18005_none_811cd1b90af2daf8\hidbth.sys --a---- 36864 bytes [16:42 04/01/2011] [05:39 11/04/2009] 39F7D79B3401BE029D8451F761D30331
C:\Windows\winsxs\amd64_hiddigi.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_90d48ed991e520d7\hiddigi.inf_loc --a---- 418 bytes [15:13 02/11/2006] [15:13 02/11/2006] 32B9CA4A0CE453FEB270AF905C9D2819
C:\Windows\winsxs\amd64_hiddigi.inf_31bf3856ad364e35_6.0.6001.18000_none_f17ae014fe39679d\hiddigi.inf --a---- 5468 bytes [02:46 21/01/2008] [02:46 21/01/2008] EDC1FEBFF3FFE131A3C1996C35C05D6B
C:\Windows\winsxs\amd64_hidserv.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_8020deaa00fc5562\hidserv.inf_loc --a---- 3450 bytes [15:12 02/11/2006] [15:12 02/11/2006] 4F5C1060E8D641B00F2E756CB6D307C9
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidclass.sys --a---- 48640 bytes [02:46 21/01/2008] [02:46 21/01/2008] 24A20E8293C91610E3D7AE9EA290F79C
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidir.sys --a---- 25600 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5F47839455D01FF6403B008D481A6F5B
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidparse.sys --a---- 31616 bytes [02:46 21/01/2008] [02:46 21/01/2008] B13C6930BE914AA433C320E01B0182F3
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6001.18000_none_7c8e354ad87b2111\hidusb.sys --a---- 15872 bytes [02:46 21/01/2008] [02:46 21/01/2008] 128E2DA8483FDD4DD0C7B3F9ABD6F323
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidclass.sys --a---- 49152 bytes [16:41 04/01/2011] [05:39 11/04/2009] 70B7902B8DDD3C4B88AC3FC278A9B987
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidir.sys --a---- 25600 bytes [02:46 21/01/2008] [02:46 21/01/2008] 5F47839455D01FF6403B008D481A6F5B
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidparse.sys --a---- 31616 bytes [02:46 21/01/2008] [02:46 21/01/2008] B13C6930BE914AA433C320E01B0182F3
C:\Windows\winsxs\amd64_input.inf_31bf3856ad364e35_6.0.6002.18005_none_7e79ae56d59cec5d\hidusb.sys --a---- 15872 bytes [16:42 04/01/2011] [05:39 11/04/2009] 443BDD2D30BB4F00795C797E2CF99EDF
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_8890ab1127d0950a\kbdhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 74555D356D023C8EA5A0C0CE387EA191
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ar-sa_f44a8d81628a6f1c\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 56BED2E3176D199A6F7F308BB0A061A5
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_cs-cz_4593e5a540929c9e\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] EE1D411C136D1FFAB16E06D7094C4E51
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_da-dk_e2cdc5cc36d8989d\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] F5A961B877500AFC7C618AC12E45AA6C
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_de-de_dff95b0838aeed37\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 3FA979FAF62F58C23D1C2D34A41401EC
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_el-gr_888f889b27c455c5\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] D5DA2C1C54F7D3681CB3C48DD1E2B98B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_en-us_88ea3101278cf8fc\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 3BF43153684D28092815FE8C230C1371
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_es-es_88b58de527b3eaa1\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C50F0B7E65F0C7FC56B99BDAD7DB3531
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_fi-fi_27d092921ccddccb\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] A53713876FC142322B708ADD84FBAF66
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_fr-fr_2b6d03e41a860103\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] B1577096FF12F41BCEAFFF1AB9E32D35
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_he-il_6f8cab8600f501f1\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] E742CF1D987E8293DEA227DC4C68447D
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_hu-hu_72dd842bfee5d01f\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] CF15CFCB8076843F77829C37325A050B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_it-it_1594fa2af1b7e681\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 7595FB33678DEE9FDD2BFD5C368542FD
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ja-jp_b7ba7937e4d2f85c\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 59E0314645967754442A12AB51DD40A4
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ko-kr_5b2455ecd743bf72\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 50A21199364F25298C6DFAE3E1B8060F
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_nb-no_43b6d721af68eb2e\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 36E80C4E81767B9AF6E5D1CF37BECD88
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_nl-nl_41f6225fb094f503\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 1A9A20507BCBD036E8982E935A80FC9C
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_pl-pl_88327ce195b762b7\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C3A899A94C90CB1AAC3522813AA75585
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-br_8a8667859440f69b\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 4E2BD6B98AB08AE186124D22AD698BA8
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-pt_8b6836f193b06677\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 92BD57CCFEF5F1B88EAF0E2AB8C46F28
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_ru-ru_d20b48b57891f4a3\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 5FCFDEE7A974F75466B249786EABBD15
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_sv-se_6e06332a6fbafefe\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] AA6E676D4768A86D6159097A40082AD9
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_tr-tr_17137d715e7700ef\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 4936754B8BD56808C54A741AFA6ED0CF
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-cn_e8709b6f0eaed30e\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] 7C09937CB8CEF02BA250BD25E48F2770
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-tw_ec6cd8c50c1faf7e\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] C23465EAC3BB41EA07EC9AA5AA8F70D5
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ar-sa_f4aeb9167bc4e406\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] C0A6CF8F2CDE384825CE6488C5D23B44
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_cs-cz_45f8113a59cd1188\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 45F31D3400790CE86C8FDF8876FCC41A
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_da-dk_e331f16150130d87\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 3F1E21B18B20A6DCF9C93B3C32F1C753
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_de-de_e05d869d51e96221\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] C61875BB403CE7DFEE485E0BA04FF7B9
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_el-gr_88f3b43040fecaaf\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 14209B3C404C05BAD54682ABBD565087
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_en-us_894e5c9640c76de6\kbdhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 87DBE584124C74B907C823993E75041C
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_es-es_8919b97a40ee5f8b\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] B50F13B415B955E4577E0F96C26DD309
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_fi-fi_2834be27360851b5\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 35249503AB869EA92DE5DB4DC9108E9B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_fr-fr_2bd12f7933c075ed\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 712AFA48C2D70969067BF25DA1CEB3A6
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_he-il_6ff0d71b1a2f76db\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C7DC650861EE3A7FFB64257F9455688E
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_hu-hu_7341afc118204509\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 98DA2E4A1285114B30AB976E09285CDC
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_it-it_15f925c00af25b6b\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 980084BE214B6F5A0A7FE2E31469EAC9
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ja-jp_b81ea4ccfe0d6d46\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 3A5345A65F0542C2D9480D7FA7B05156
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ko-kr_5b888181f07e345c\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C9B3BE242550464FA26D9A2CE2CB0814
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_nb-no_441b02b6c8a36018\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 4CF6A4F6B67F79F2FFFBBFAD6C12F365
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_nl-nl_425a4df4c9cf69ed\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 42F8B36A59013BFCB428134E06CFCC95
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_pl-pl_8896a876aef1d7a1\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C5ACAFC70ECE87974CE17BFC88BEC00E
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-br_8aea931aad7b6b85\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] E3E45020CB676C1B26F0F53B54765E91
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-pt_8bcc6286aceadb61\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 83B45608249142E238EDD7E2B44D477E
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_ru-ru_d26f744a91cc698d\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] F7160E96A984ECEBB4E3760D7457DB85
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_sv-se_6e6a5ebf88f573e8\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] E17DC9D689F80F80C07789186E415E0B
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_tr-tr_1777a90677b175d9\kbdhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] DDEF7EC37E12CD1A1C870C96AE721AA5
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-cn_e8d4c70427e947f8\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] 6F5484122A7F74AF793C099116C7B5DE
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-tw_ecd1045a255a2468\kbdhid.sys.mui --a---- 2048 bytes [02:24 21/01/2008] [02:24 21/01/2008] 2E292220BBED7DCD91EC3C7418CB9853
C:\Windows\winsxs\amd64_keyboard.inf.resources_31bf3856ad364e35_6.0.6001.18000_en-us_8ac76d0d24bba5de\kbdhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 74555D356D023C8EA5A0C0CE387EA191
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6000.16609_none_f18fcd509427b0d2\kbdhid.sys --a---- 20480 bytes [02:23 21/01/2008] [02:23 21/01/2008] 2BD825D29261CA26EEE4D7D055EADF7F
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6000.20734_none_f1f3f8e5ad6225bc\kbdhid.sys --a---- 20480 bytes [02:23 21/01/2008] [02:23 21/01/2008] 61EBCE22C92649468C94367521F201E6
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6001.18000_none_f36d095c91565db4\kbdhid.sys --a---- 20480 bytes [02:46 21/01/2008] [02:46 21/01/2008] BF8783A5066CFECF45095459E8010FA7
C:\Windows\winsxs\amd64_keyboard.inf_31bf3856ad364e35_6.0.6002.18005_none_f55882688e782900\kbdhid.sys --a---- 22528 bytes [16:42 04/01/2011] [05:33 11/04/2009] DBDF75D51464FBC47D0104EC3D572C05
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_32cae3f13fcc196d\hid.dll --a---- 29184 bytes [02:47 21/01/2008] [02:47 21/01/2008] 56697D33950E5E83A4049F477BE7C320
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_32cae3f13fcc196d\hidserv.dll --a---- 24064 bytes [09:43 02/11/2006] [11:17 02/11/2006] 0AA154538544E988429DA2D5AA803A6C
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_34b65cfd3cede4b9\hid.dll --a---- 29184 bytes [02:47 21/01/2008] [02:47 21/01/2008] 56697D33950E5E83A4049F477BE7C320
C:\Windows\winsxs\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_34b65cfd3cede4b9\hidserv.dll --a---- 24064 bytes [16:42 04/01/2011] [07:11 11/04/2009] 59361D38A297755D46A540E450202B2A
C:\Windows\winsxs\amd64_microsoft-windows-optionaltsps.resources_31bf3856ad364e35_6.0.6000.16386_en-us_9c8733734ad66581\hidphone.tsp.mui --a---- 3072 bytes [15:13 02/11/2006] [15:13 02/11/2006] 5884717BD6EA77918C786A4C67124CBA
C:\Windows\winsxs\amd64_microsoft-windows-optionaltsps_31bf3856ad364e35_6.0.6000.16386_none_3be417cc84552818\hidphone.tsp --a---- 39424 bytes [10:30 02/11/2006] [11:15 02/11/2006] AE865C840368BEEF09E2E2C619E8DB48
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_2b578e6b518a16ca\mouhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 8845E337CACA296F30191461DC94DF55
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ar-sa_971170db8c43f0dc\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 6E6A8ED7A58813BBA4D1174B48D03450
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_cs-cz_e85ac8ff6a4c1e5e\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] F1D82FF63A88C00E3EB5964D9000C418
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_da-dk_8594a92660921a5d\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 9AEBD8878777F4532ED0FCB6AC26BEFB
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_de-de_82c03e6262686ef7\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 621A5799603A84E36D53D19AB1312AFF
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_el-gr_2b566bf5517dd785\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 43E7E32767CCEE89ADBCB94707893370
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_en-us_2bb1145b51467abc\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 5D94DE4EA29ADCC7ECD0CECEB0754AA2
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_es-es_2b7c713f516d6c61\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 27EAA4A86D87F3B476F3EB34C774E2B6
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_fi-fi_ca9775ec46875e8b\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 37A38E8496B36BA58C80B196D5611502
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_fr-fr_ce33e73e443f82c3\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 7E2D3AE110AD5ECCF4983DABA987A534
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_he-il_12538ee02aae83b1\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 963FD8024F8BFE4043BCB10238EFC14D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_hu-hu_15a46786289f51df\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B81B6E250B7AFCAC4AD5847279B5714D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_it-it_b85bdd851b716841\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 168B71477C68D1CF059F9E80261A92FC
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ja-jp_5a815c920e8c7a1c\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C82A30736DFDB000F2AD6B13776DC221
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ko-kr_fdeb394700fd4132\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] BE6F50DBC045C7A477B24547E845F8BF
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_nb-no_e67dba7bd9226cee\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 59847C00AD8FF1F9C85061721F589E4F
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_nl-nl_e4bd05b9da4e76c3\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B02129B38F063C77F17F73F47D6FC179
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_pl-pl_2af9603bbf70e477\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 3B5A034B57A13A7A0D8F6AF027BFE815
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-br_2d4d4adfbdfa785b\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] F9C942107B21D27FD5208B0E95BF011D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_pt-pt_2e2f1a4bbd69e837\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B69841549238BFCA9885B4B4CA008A06
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_ru-ru_74d22c0fa24b7663\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 04E523690DCB6D09F5D4A269F5842AD8
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_sv-se_10cd1684997480be\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] B0D389C4581970C8CCD170302700C82F
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_tr-tr_b9da60cb883082af\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 9DFD7368F16084DF4CD4A25BFCA8FA89
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-cn_8b377ec9386854ce\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] DAB8DA8A99B1077B7A360ABF45AE2350
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.16609_zh-tw_8f33bc1f35d9313e\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 016983271AC4B837EB608C6173C914CD
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ar-sa_97759c70a57e65c6\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 2886C35CEFC3F1C549276B5054ACB775
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_cs-cz_e8bef49483869348\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] 6967677DBDDF2035172CADADBD7A4163
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_da-dk_85f8d4bb79cc8f47\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 414380C5E10EA6ADCD4546B4796888C5
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_de-de_832469f77ba2e3e1\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 35DD9D86A81617507A7F1104E1FDB550
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_el-gr_2bba978a6ab84c6f\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] C61C2E83D8C49CA89A5C6DD04736936D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_en-us_2c153ff06a80efa6\mouhid.sys.mui --a---- 2560 bytes [02:23 21/01/2008] [02:23 21/01/2008] F1998497D0CADD1CCAA4C6478D8F931D
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_es-es_2be09cd46aa7e14b\mouhid.sys.mui --a---- 3072 bytes [02:23 21/01/2008] [02:23 21/01/2008] 5C3A2930A07E40C83D26FC130F42F4E0
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_fi-fi_cafba1815fc1d375\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 41BD53C81B918AF6C403CBAAD5E48BEE
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_fr-fr_ce9812d35d79f7ad\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 35C7F6FF22121609CEB62638F039C202
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_he-il_12b7ba7543e8f89b\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 838AFF3F6445EFECB48324E31874F113
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_hu-hu_1608931b41d9c6c9\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] D01127624E2C25AB9FDA1CF1B2C6906A
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_it-it_b8c0091a34abdd2b\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 68C6ED066E595641EFD41703CA18F77C
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ja-jp_5ae5882727c6ef06\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 63B6DEC345B24E88393494103971EC32
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ko-kr_fe4f64dc1a37b61c\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 8F55F54866744DF86BA507FA70D45507
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_nb-no_e6e1e610f25ce1d8\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] A08D864EEDC92D55CAD4B9D7ABA0F0F2
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_nl-nl_e521314ef388ebad\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 10426D6E8348ED3A11AD0ACA57C9D3CB
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_pl-pl_2b5d8bd0d8ab5961\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 6059D46312DA4AB213F528F69EC9C271
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-br_2db17674d734ed45\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 62A6BDDCBF03BBE0D8D8808FC9B88126
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_pt-pt_2e9345e0d6a45d21\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] EDAFFFD40CD5C7C64C13B5AEFE412F77
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_ru-ru_753657a4bb85eb4d\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 54F7F6A2D4EE5907A99B6EBD78ECD94F
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_sv-se_11314219b2aef5a8\mouhid.sys.mui --a---- 3072 bytes [02:24 21/01/2008] [02:24 21/01/2008] 34EDE8A38D53D1F5B41D64E2B790F6E5
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_tr-tr_ba3e8c60a16af799\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] 6220813EFD01D0B7E28C5D2B027A0100
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-cn_8b9baa5e51a2c9b8\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] ECD36794E09807E54DCA6E8588622802
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6000.20734_zh-tw_8f97e7b44f13a628\mouhid.sys.mui --a---- 2560 bytes [02:24 21/01/2008] [02:24 21/01/2008] C425BDCFE714765FE35E8C99C4F40595
C:\Windows\winsxs\amd64_msmouse.inf.resources_31bf3856ad364e35_6.0.6001.18000_en-us_2d8e50674e75279e\mouhid.sys.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 8845E337CACA296F30191461DC94DF55
C:\Windows\winsxs\amd64_msmouse.inf_31bf3856ad364e35_6.0.6000.16609_none_a8756af48d89f7a6\mouhid.sys --a---- 19968 bytes [02:23 21/01/2008] [02:23 21/01/2008] 328F5836F55CCD1E92377873F646288C
C:\Windows\winsxs\amd64_msmouse.inf_31bf3856ad364e35_6.0.6000.20734_none_a8d99689a6c46c90\mouhid.sys --a---- 19968 bytes [02:23 21/01/2008] [02:23 21/01/2008] FB334AF7111C2A7156C42A780BBF4356
C:\Windows\winsxs\amd64_msmouse.inf_31bf3856ad364e35_6.0.6001.18000_none_aa52a7008ab8a488\mouhid.sys --a---- 19968 bytes [02:46 21/01/2008] [02:46 21/01/2008] C2C2BD5C5CE5AAF786DDD74B75D2AC69
C:\Windows\winsxs\Backup\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f.manifest --a---- 3699 bytes [15:15 02/11/2006] [15:14 02/11/2006] B124939BE6980881AC6DDE504FE369F1
C:\Windows\winsxs\Backup\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f_hid.dll.mui_cccd5ae0 --a---- 2048 bytes [15:15 02/11/2006] [15:14 02/11/2006] C314B9FF126E279F0790A9629A54183B
C:\Windows\winsxs\Backup\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f_hidserv.dll.mui_561adfc8 --a---- 3072 bytes [15:15 02/11/2006] [15:14 02/11/2006] B2FE83D3833D87E4149843FFE717E011
C:\Windows\winsxs\Backup\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29.manifest --a---- 3697 bytes [15:15 02/11/2006] [15:14 02/11/2006] 9F1FA27D757026CBE015A636C36F8A77
C:\Windows\winsxs\Backup\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29_hid.dll.mui_cccd5ae0 --a---- 2560 bytes [15:15 02/11/2006] [15:14 02/11/2006] 70A4545883B0D4E97946ACE7E0BE75E0
C:\Windows\winsxs\Backup\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29_hidserv.dll.mui_561adfc8 --a---- 3584 bytes [15:15 02/11/2006] [15:14 02/11/2006] E27C46A5394FA29E8F1AEC9D5671D033
C:\Windows\winsxs\FileMaps\$$_inf_wsearchidxpi_0000_2e6e3f1caf9fca20.cdf-ms --a---- 848 bytes [15:06 02/11/2006] [15:05 02/11/2006] 25B513596A4A535FEC711643D54B3244
C:\Windows\winsxs\FileMaps\$$_inf_wsearchidxpi_0409_2e6e3e8caf9fcb6d.cdf-ms --a---- 824 bytes [15:15 02/11/2006] [15:14 02/11/2006] 2C74D6693E18799E470562FCBC067365
C:\Windows\winsxs\FileMaps\$$_inf_wsearchidxpi_a2c41dc1731a4204.cdf-ms --a---- 840 bytes [15:06 02/11/2006] [15:14 02/11/2006] 03610E0E118F9732816A2B9C2AFEB4AF
C:\Windows\winsxs\Manifests\amd64_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_bf8a6983a6a4ce5f.manifest --a---- 3699 bytes [15:10 02/11/2006] [15:10 02/11/2006] B124939BE6980881AC6DDE504FE369F1
C:\Windows\winsxs\Manifests\amd64_hidbth.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_26a3f0212eb00586.manifest --a---- 2867 bytes [15:10 02/11/2006] [15:10 02/11/2006] 5DD9EF53C5C474D879F529956F42B787
C:\Windows\winsxs\Manifests\amd64_hidbth.inf_31bf3856ad364e35_6.0.6001.18000_none_7f3158ad0dd10fac.manifest --a---- 1671 bytes [02:34 21/01/2008] [02:34 21/01/2008] 9B1B3052BB77EEBA8037206C64B79198
C:\Windows\winsxs\Manifests\amd64_hidbth.inf_31bf3856ad364e35_6.0.6002.18005_none_811cd1b90af2daf8.manifest ------- 1671 bytes [16:31 04/01/2011] [16:31 04/01/2011] 93EBC698C245F11B5325F56306A6081C
C:\Windows\winsxs\Manifests\amd64_hiddigi.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_90d48ed991e520d7.manifest --a---- 3770 bytes [15:10 02/11/2006] [15:10 02/11/2006] F0502D2D7A79159034248842C7C7D8FE
C:\Windows\winsxs\Manifests\amd64_hiddigi.inf_31bf3856ad364e35_6.0.6001.18000_none_f17ae014fe39679d.manifest --a---- 2256 bytes [02:34 21/01/2008] [02:34 21/01/2008] F19B378A1399DC75B15AABDB40495F0B
C:\Windows\winsxs\Manifests\amd64_hidserv.inf.resources_31bf3856ad364e35_6.0.6000.16386_en-us_8020deaa00fc5562.manifest --a---- 1912 bytes [15:10 02/11/2006] [15:10 02/11/2006] D5A0D49DF849C326AF678BEC38984ADB
C:\Windows\winsxs\Manifests\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6000.16386_none_309421f542e10899.manifest --a---- 8537 bytes [12:31 02/11/2006] [12:19 02/11/2006] A2F1483787D0888201A6CA3B330CA5FA
C:\Windows\winsxs\Manifests\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_32cae3f13fcc196d.manifest --a---- 8492 bytes [02:37 21/01/2008] [02:37 21/01/2008] 2B45FD75C7B8D62C17C20824962B55E6
C:\Windows\winsxs\Manifests\amd64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_34b65cfd3cede4b9.manifest ------- 8492 bytes [16:29 04/01/2011] [06:09 11/04/2009] 5DCBDCAA94B686C6DEEAAC68AD0C685E
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16386_none_c05f4363228808ef.manifest --a---- 8533 bytes [12:32 02/11/2006] [12:23 02/11/2006] 33127BD4802886B54F9DF6137FA96302
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16720_none_c09a28c7225cbddb.manifest ------- 8533 bytes [02:45 04/01/2011] [23:36 27/07/2008] 8FEE4BF7F9A2280545A72040B216FE98
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.20883_none_c0e5e6e83ba85150.manifest ------- 8533 bytes [02:45 04/01/2011] [23:35 27/07/2008] 52B28731F05AF11558CA3E97A3210E98
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18000_none_c296055f1f7319c3.manifest --a---- 8533 bytes [02:37 21/01/2008] [02:37 21/01/2008] FFEEF269BAAE818724332539960BB31A
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18111_none_c28c37a31f7a4c32.manifest ------- 8533 bytes [02:45 04/01/2011] [23:54 27/07/2008] 3DE1D9B0166F0C6B36E292E265AFDF58
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.22230_none_c2ff344c38a90a87.manifest ------- 8533 bytes [02:45 04/01/2011] [00:07 28/07/2008] DB578F534ADBEC88129C8E060B74A4F8
C:\Windows\winsxs\Manifests\amd64_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6002.18005_none_c4817e6b1c94e50f.manifest ------- 8488 bytes [16:30 04/01/2011] [06:09 11/04/2009] 308DFC9E3A1BF3BD9A3A464B5B2196C3
C:\Windows\winsxs\Manifests\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6000.16386_none_3ae8cc477741ca94.manifest --a---- 4497 bytes [12:31 02/11/2006] [09:58 02/11/2006] 5724DE9A85DE7E9825F883C4FD0281BA
C:\Windows\winsxs\Manifests\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_3d1f8e43742cdb68.manifest --a---- 4404 bytes [02:38 21/01/2008] [02:38 21/01/2008] C532C9DF7EEF1E6914B281533F9E9BC3
C:\Windows\winsxs\Manifests\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_3f0b074f714ea6b4.manifest ------- 4452 bytes [16:29 04/01/2011] [05:37 11/04/2009] 00D8C8C83800534FE559B9F7ACC04B57
C:\Windows\winsxs\Manifests\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29.manifest --a---- 3697 bytes [15:10 02/11/2006] [15:10 02/11/2006] 9F1FA27D757026CBE015A636C36F8A77
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16386_none_6440a7df6a2a97b9.manifest --a---- 8527 bytes [12:31 02/11/2006] [10:18 02/11/2006] A50E681399CD51F17B6C3E73F5E21033
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.16720_none_647b8d4369ff4ca5.manifest ------- 8527 bytes [02:45 04/01/2011] [23:18 27/07/2008] 146A66C140034926C0209CCF6FE19073
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6000.20883_none_64c74b64834ae01a.manifest ------- 8527 bytes [02:45 04/01/2011] [23:20 27/07/2008] 143B1258B8B9E708806EB845E2E76E6C
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18000_none_667769db6715a88d.manifest --a---- 8527 bytes [02:38 21/01/2008] [02:38 21/01/2008] CD4DAE54D213B75E87913A70DF98B209
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.18111_none_666d9c1f671cdafc.manifest ------- 8527 bytes [02:45 04/01/2011] [23:43 27/07/2008] 57FAA1EA0A3A875DF3F9C58429955BCA
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6001.22230_none_66e098c8804b9951.manifest ------- 8527 bytes [02:45 04/01/2011] [23:29 27/07/2008] D9571CAF7C08B33CA96A6C786D239D1B
C:\Windows\winsxs\Manifests\x86_netfx-shared_registry_whidbey_31bf3856ad364e35_6.0.6002.18005_none_6862e2e7643773d9.manifest ------- 8482 bytes [16:29 04/01/2011] [05:36 11/04/2009] EC58312C845AB8452605CE5EFED6BC17
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_3d1f8e43742cdb68\hid.dll --a---- 22016 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8269CC01940A202BBB9FDF26705DBD67
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6001.18000_none_3d1f8e43742cdb68\hidserv.dll --a---- 25600 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8FA640195279ACE21BEA91396A0054FC
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_3f0b074f714ea6b4\hid.dll --a---- 22016 bytes [12:12 02/11/2006] [09:46 02/11/2006] 8269CC01940A202BBB9FDF26705DBD67
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_3f0b074f714ea6b4\hidserv.dll --a---- 26112 bytes [16:42 04/01/2011] [06:28 11/04/2009] 84067081F3318162797385E11A8F0582
C:\Windows\winsxs\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29\hid.dll.mui --a---- 2560 bytes [15:13 02/11/2006] [15:13 02/11/2006] 70A4545883B0D4E97946ACE7E0BE75E0
C:\Windows\winsxs\x86_hid-user.resources_31bf3856ad364e35_6.0.6000.16386_en-us_636bcdffee475d29\hidserv.dll.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] E27C46A5394FA29E8F1AEC9D5671D033
C:\Windows\winsxs\x86_microsoft-windows-optionaltsps.resources_31bf3856ad364e35_6.0.6000.16386_en-us_406897ef9278f44b\hidphone.tsp.mui --a---- 3584 bytes [15:13 02/11/2006] [15:13 02/11/2006] B513B14ACD6CC7BC3BCFB0B90ACF9FE6
C:\Windows\winsxs\x86_microsoft-windows-optionaltsps_31bf3856ad364e35_6.0.6000.16386_none_dfc57c48cbf7b6e2\hidphone.tsp --a---- 31744 bytes [12:20 02/11/2006] [09:44 02/11/2006] B4B59AC042EE3733A862F26CBC0B17FC

-= EOF =-

#14 CatByte

CatByte

    bleepin' tiger


  • Malware Response Team
  • 14,664 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Canada
  • Local time:07:59 AM

Posted 05 February 2012 - 07:28 PM

Hi,

Please do the following:

  • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before following the steps below.
  • They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
Copy/paste the text inside the Codebox below into notepad:

Here's how to do that:
Click Start > Run type Notepad click OK.
This will open an empty notepad file:

Copy all the text inside of the code box - Press Ctrl+C (or right click on the highlighted section and choose 'copy')

FCopy::
C:\Windows\winsxs\wow64_microsoft-windows-hid-user_31bf3856ad364e35_6.0.6002.18005_none_3f0b074f714ea6b4\hid.dll | c:\windows\SysWow64\hid.dll

Rootkit::
c:\windows\system32\basesrv.dll
c:\windows\TEMP\logishrd\LVPrcInj01.dll
c:\windows\TEMP\logishrd\LVPrcInj02.dll

ClearJavaCache::

Now paste the copied text into the open notepad - press CTRL+V (or right click and choose 'paste')

Save this file to your desktop, Save this as "CFScript"


Here's how to do that:

1.Click File;
2.Click Save As... Change the directory to your desktop;
3.Change the Save as type to "All Files";
4.Type in the file name: CFScript
5.Click Save ...

Posted Image
  • Referring to the screenshot above, drag CFScript.txt into ComboFix.exe.
  • ComboFix may request an update; please allow it.
  • ComboFix will now run a scan on your system. It may reboot your system when it finishes. This is normal.
  • When finished, it shall produce a log for you.
  • Copy and paste the contents of the log in your next reply.

CAUTION: Do not mouse-click ComboFix's window while it is running. That may cause it to stall.

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015


#15 eighteight

eighteight
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:06:59 AM

Posted 05 February 2012 - 08:12 PM

had to zip, cause file was to large

Attached Files

  • Attached File  log.zip   70.76KB   3 downloads





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users